
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Reklamy všude, vyskakují, příjíždějí..
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Reklamy všude, vyskakují, příjíždějí..
Dobrý den, jsem na kamarádovém PC a při prohlížení mu vyskakují reklamy téměř při každém přesměrování na jinou stránku, při každém kliknutí a dokonce přijíždějí ze stran. Prosím o radu.
Re: Reklamy všude, vyskakují, příjíždějí..
Logfile of random's system information tool 1.10 (written by random/random)
Run by Tomáš at 2014-12-20 15:04:16
Microsoft Windows 8.1
System drive C: has 786 GB (86%) free of 912 GB
Total RAM: 7375 MB (76% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:04:23, on 20. 12. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal
Running processes:
C:\Users\Tomáš\AppData\Local\MiPhoneManager\main\MiPhoneHelper.exe
C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe
C:\Program Files\WindowsApps\Evernote.Evernote_2.3.6.0_x86__q4d96b2w5wcc2\EvernoteMetro.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_246.exe
C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_246.exe
C:\Program Files\trend micro\Tomáš.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo13.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: BS Player ControlBar B Toolbar - {31264a33-a653-46c4-af49-1232c59a7da5} - C:\Users\Tomáš\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_P.dll
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll
O2 - BHO: CrossriderApp0035510 - {11111111-1111-1111-1111-110311551110} - C:\Program Files (x86)\iWebar\iWebar-bho.dll (file missing)
O2 - BHO: CrossriderApp0048292 - {11111111-1111-1111-1111-110411821192} - C:\Program Files (x86)\Sense\Sense-bho.dll
O2 - BHO: BS Player ControlBar B - {31264a33-a653-46c4-af49-1232c59a7da5} - C:\Users\Tomáš\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_P.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: ShopperProBHO - {A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} - C:\ProgramData\ShopperPro\ShopperPro.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O3 - Toolbar: BS Player ControlBar B Toolbar - {31264a33-a653-46c4-af49-1232c59a7da5} - C:\Users\Tomáš\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_P.dll
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [Intel AppUp(SM) center] "C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe" --domain-id F0399437-FD0C-4A48-B101-F0314A6172E4
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [SPDriver] C:\Program Files (x86)\ShopperPro\JSDriver\1.38.0.1436\jsdrv.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [SPDriver] C:\Program Files (x86)\ShopperPro\JSDriver\1.38.0.1436\jsdrv.exe
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\Tomáš\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\Run: [MiPhoneManager] "C:\Users\Tomáš\AppData\Local\MiPhoneManager\main\MiPhoneHelper.exe"
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
O4 - Global Startup: GamePark klient 2.lnk = C:\Program Files\GamePark2\gpcl.exe
O4 - Global Startup: McAfee Security Scan Plus.lnk = C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: AtherosSvc - Qualcomm Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: Conexant Audio Message Service (CxAudMsg) - Unknown owner - C:\windows\system32\CxAudMsg64.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: globalUpdate Update Service (globalUpdatem) (globalUpdatem) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: ShopperPro Update (SPBIUpd) - ShopperPro - C:\Program Files\Common Files\ShopperPro\spbiu.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Toolbar Service (TBSrv) - ClientConnect Ltd. - C:\Program Files (x86)\Tbccint\ToolbarService\ToolbarService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: YouTubeAcceleratorService - GOOBZO - C:\Program Files (x86)\YouTube Accelerator\YouTubeAcceleratorService.exe
O23 - Service: ZAtheros Bt and Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
--
End of file - 11603 bytes
======Listing Processes======
wininit.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\atiesrxx.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
C:\windows\system32\CxAudMsg64.exe
dashost.exe {edaf984f-58d3-49d7-8d6097ecd338b387}
"C:\Program Files\Common Files\ShopperPro\spbiu.exe" /service
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Tbccint\ToolbarService\ToolbarService.exe"
"C:\Program Files (x86)\YouTube Accelerator\YouTubeAcceleratorService.exe" -start -scm
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-73cc5c76-068d-40ff-b811-fbb503db822b -SystemEventPortName:HostProcess-7bb0e4ba-dcdb-472e-99b0-94dbc69ba836 -IoCancelEventPortName:HostProcess-2542abb8-782a-49ee-ae4d-239fb74b5c7c -NonStateChangingEventPortName:HostProcess-2d5d8411-109d-4934-8236-07216c122c49 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:24edce42-b332-4d10-864d-7e53a7dbc61d -DeviceGroupId:WudfDefaultDevicePool
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\WINDOWS\System32\WinLogon.exe -SpecialSession
-hiberboot
atieclxx
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet
taskhostex.exe
C:\WINDOWS\Explorer.EXE
C:\Windows\System32\skydrive.exe -Embedding
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
"C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe" -autostart
"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
"C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe"
C:\WINDOWS\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Windows\RTFTrack.exe"
"C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe"
"C:\Users\Tomáš\AppData\Local\MiPhoneManager\main\MiPhoneHelper.exe"
"C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe"
"C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe" --domain-id F0399437-FD0C-4A48-B101-F0314A6172E4
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files\WindowsApps\Evernote.Evernote_2.3.6.0_x86__q4d96b2w5wcc2\EvernoteMetro.exe" -ServerName:App.AppXcm5cntgqx4fv1et6j63tndxjhxc09r4k.mca
"C:\WINDOWS\system32\AuthHost.exe" -AuthHostBrokerActivated 00000fb4_00000001_02cabfd4
"C:\Program Files\WindowsApps\Microsoft.Reader_6.3.9654.17499_x64__8wekyb3d8bbwe\glcnd.exe" -ServerName:Microsoft.Reader.AppXtszmc7avrx02s7n8gch63tzwg517wd9k.mca
taskhost.exe $(Arg0)
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=3188.2dbbaa0.1654036146 "C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_246.dll" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" E7CF176E110C211B 3188 "\\.\pipe\gecko-crash-server-pipe.3188" plugin
"C:\WINDOWS\SYSTEM32\Macromed\Flash\FlashPlayerPlugin_15_0_0_246.exe" --proxy-stub-channel=Flash3160.6C7F6188.19462 --host-broker-channel=Flash3160.6C7F6188.23918 --host-pid=3160 --host-npapi-version=27 --plugin-path="C:\WINDOWS\SYSTEM32\Macromed\Flash\NPSWF32_15_0_0_246.dll"
"C:\WINDOWS\SYSTEM32\Macromed\Flash\FlashPlayerPlugin_15_0_0_246.exe" --channel=6080.00D5F234.43638618 --proxy-stub-channel=Flash3160.6C7F6188.19462 --plugin-path="C:\WINDOWS\SYSTEM32\Macromed\Flash\NPSWF32_15_0_0_246.dll" --host-npapi-version=27 --type=renderer
C:\WINDOWS\system32\wbem\wmiprvse.exe
taskeng.exe {D65CE6DF-EA80-4FB9-BEBC-3A3990748951}
taskeng.exe {DFDD8FE4-102B-4061-B32D-BC4ADA2398AF}
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe6_ Global\UsGthrCtrlFltPipeMssGthrPipe6 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 584 588 596 65536 592
"C:\Users\Tomáš\Desktop\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-1.job - C:\Program Files (x86)\iWebar\iWebar-codedownloader.exe /OGOXMSTaZ /pDqtrlDOq=task /oLZQl='iWebar' /KYRtZb=35510 /qiNDqQJti='000171' /JDSHST='0' /EMmLA='eyJkYXRhIjp7ImRhdGUiOiJFNUt3c210eWNBZTEsZjI3MzRkNmEtM2ZiZi00MDZhLTkxNTktZGYyOWY0ZmE0MDI5LCIsInVucSI6ImYyNzM0ZDZhLTNmYmYtNDA2YS05MTU5LWRmMjlmNGZhNDAyOSJ9fQ==' /mxwZpuudV=DFCE174A7F9F4870A64D1313FC95CF0BIE /YWMaVKMn=3e4ff1599a7aefe85968f70db1893b0e /lGSOyLqYE=1_34_05_12 /fYAWA=1.34.5.12 /odoDOXJB=1400588213 /OsanQil=http://stats.clientstaticserv.com /xlKiZf=http://errors.clientstaticserv.com /ulcVIuM=http://js.clientstaticserv.com /xUZKC=ch /hrdQe /ebtNROk='http://update.clientstaticserv.com/ie_c ... pdate.json' /pDqtrlDOq='task' /sytryKqkV=''
C:\WINDOWS\tasks\c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-2.job - C:\Program Files (x86)\iWebar\c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-2.exe /lTGtd /oLZQl='iWebar' /KYRtZb=35510 /qiNDqQJti='000171' /JDSHST='0' /EMmLA='eyJkYXRhIjp7ImRhdGUiOiJFNUt3c210eWNBZTEsZjI3MzRkNmEtM2ZiZi00MDZhLTkxNTktZGYyOWY0ZmE0MDI5LCIsInVucSI6ImYyNzM0ZDZhLTNmYmYtNDA2YS05MTU5LWRmMjlmNGZhNDAyOSJ9fQ==' /mxwZpuudV=DFCE174A7F9F4870A64D1313FC95CF0BIE /YWMaVKMn=3e4ff1599a7aefe85968f70db1893b0e /lGSOyLqYE=1_34_05_12 /odoDOXJB=1400588213 /OsanQil=http://stats.clientstaticserv.com /xlKiZf=http://errors.clientstaticserv.com /AAiQHTk=11111111-1111-1111-1111-110311551110 /xUZKC=ch /hrdQe /ebtNROk='http://update.clientstaticserv.com/ie_e ... pdate.json' /pDqtrlDOq='task' /sytryKqkV=''
C:\WINDOWS\tasks\c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-3.job - C:\Program Files (x86)\iWebar\c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-3.exe /YdBhaER=XHy7CHszBscqpGqdDZa0/J7gyHhWPrfIAi9pniP7HJBV7xAYUurOyi6tm69kqswMG9Zdh3QjPCO/f1DWtUCUGPYT0Zjf9+uYBpU3NkBOBjI8DZHLIUNuGr4ljudrXckFNeT9woCdboJST49ofz7lbu7qrbfRBzCGaGgetk+WnJgxdKan9Y6nxmYAe76Mih6UkFqWjNjKSgKuDjlwfXvo/9tgVgVXrLR6CNfDIPozWB2GTApyXs0lS/iNR4BsM3cGvAzWDUIoumyx0NHu/Iwp7uMD8f2Uz752B2rUo9s1oLOVMJLF9AkP11c90ynt0WsK0JpnvXARBrLdpbiOim+5LzsiVtJpQMDo0lF0wQMcX4+peOh53iDpKgxIdLisQUWftLbbOS8mO75woPnryiaxB+se9SSc+xtEp8485fnthL4my5L1qMJSnL4rNqocn8rlJJr7vjjezQvLCe/ZTznh6rrhmBbh3mSHwg4UtwMfVatv8Aw/eO3/ioWozLy3q53sGmn8Dihptt8sH+aqUb//5Upoie1hyv/pvoHiKR9KUPGyslpZj5/bOKgC+9xxWyImpQpghV35wO7YQ/l5longn/iMJosgTiYB6g6tn+WrTg7DwTqKSgfjFxjE99EvIYZHQp4Mh+ceS0dMclzoZNVwIaet/B52h04KyUpqkDyag0S/odRyBQAUPZ9blkzSAmAS0kpaYHz5Hv3VQGk+8hOr17Z49wLD5nEvW8c11K1IREbMmPtneUg2v7wknWIZf2nlQm1KwepPOASz57lirN19q1hpZBhtNtn+hyzcFrLfuhahUVV8xEa3CtV2c5jMr7BHgWNWEVCItHOq7LcAQ98AAjMm6zOkaegaE8X9phXqgN3cg+RZNddA6/qyoFCqg6Cl08j9mpTdelLNpT7jQRQKCa8Y+y6R4fLBAdxh3Apz0ISKwETXSufaLe8RzpkORDE2MqbWWKCl1Rpg+65XhHhAxNAgZsOT1B5+vZGsFYhRDlBZ6gd+UgXJIISMXXwaMYSYV9WubETR/iWI0QY3lp+tndeYAfbPat64VzKDOGfof1FDc+2W9VyRmkge4LN/ZqefxYNI91WXC4SdVxf6lqS+0RI9/rGgOSzL0Oxi3wh6MbFwrT78pXTROIdtSYuqj+es9TvgHtGfRlekwireTGbm3RUDyJR0L+yZSU7FqP7ewR+u8iGK0kMTrqSpcBQVpYQgwwiF81E4UGC4Z32NbaJqUls5rDi+5pbj0ABYONVDFE6x/lKZPuMeiOyLo8wk6dWGLBYBe+RsbufAe6G90aE+QjMskJaWXbU+kohgWwGOk/hPZqQ2fQh3S+eSvjAefRUx2v4LlgEyB2L1e7uwNenLKmg2tklBRzpZJ0F3JZAomX2WvlfQdXYg/6YFBlpIow0YaYtFbdt4miwR8nxqzL+MOEl2/5EMRQUVq/1bnBZCQmbt4r6gegOdKSsvyI4z5+djQuNQBGMHI4WPJco3/GQY0wGDVAodkDyrWL6OSw1uiTcsmgR8PT4NBUcB+rIOV5DbXQ8hMaOO7QKp3oUH1nFCucGl+BDq3uMx4R3zrzX0WXfl6vFPyB1cLJfXJBYXpPoP3XuIThorFY4Qh8ImB2GjLvhcBVLxIw11lzlFW4ylPCUDjPhm+0Hg3X3EmZ5K0hRJjFrWZWIhk+IofhzzHXMqIYCjifrlWxgU5Qw4dfFY1Kc=
C:\WINDOWS\tasks\c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-4.job - C:\Program Files (x86)\iWebar\c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-4.exe /qzAYTnf /oLZQl='iWebar' /MiYRUXVB='C:\Program Files (x86)\iWebar\35510.xpi' /KYRtZb=35510 /qiNDqQJti='000171' /JDSHST='0' /EMmLA='eyJkYXRhIjp7ImRhdGUiOiJFNUt3c210eWNBZTEsZjI3MzRkNmEtM2ZiZi00MDZhLTkxNTktZGYyOWY0ZmE0MDI5LCIsInVucSI6ImYyNzM0ZDZhLTNmYmYtNDA2YS05MTU5LWRmMjlmNGZhNDAyOSJ9fQ==' /mxwZpuudV=DFCE174A7F9F4870A64D1313FC95CF0BIE /YWMaVKMn=3e4ff1599a7aefe85968f70db1893b0e /lGSOyLqYE=1_34_05_12 /fYAWA=1.34.5.12 /odoDOXJB=1400588213 /OsanQil=http://stats.clientstaticserv.com /xlKiZf=http://errors.clientstaticserv.com /mhSoTAHiO=300 /VDfYtvCLJ=2eb528f3-950d-48a3-be4b-5d7de6c8331e@a41e199b-6ca4-4d23-ab87-73f2d1973314.com /FxhxrZDHn=0.94 /qdMKFFO=a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510 /peyHmD=https://w9u6a2p6.ssl.hwcdn.net/plugin/f ... /35510.rdf /HwhSWnx='iWebar' /wfFdoqBL='iWebar' /wyXCD='iWebar' /xUZKC=ch /hrdQe /nVFybPgr /eWXmMpIeV /ebtNROk='http://update.clientstaticserv.com/ff_a ... pdate.json' /pDqtrlDOq='task' /sytryKqkV=''
C:\WINDOWS\tasks\c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-5.job - C:\Program Files (x86)\iWebar\c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-5.exe /TlDWOWuU /oLZQl='iWebar' /KYRtZb=35510 /qiNDqQJti='000171' /JDSHST='0' /EMmLA='eyJkYXRhIjp7ImRhdGUiOiJFNUt3c210eWNBZTEsZjI3MzRkNmEtM2ZiZi00MDZhLTkxNTktZGYyOWY0ZmE0MDI5LCIsInVucSI6ImYyNzM0ZDZhLTNmYmYtNDA2YS05MTU5LWRmMjlmNGZhNDAyOSJ9fQ==' /mxwZpuudV=DFCE174A7F9F4870A64D1313FC95CF0BIE /YWMaVKMn=3e4ff1599a7aefe85968f70db1893b0e /lGSOyLqYE=1_34_05_12 /odoDOXJB=1400588213 /OsanQil=http://stats.clientstaticserv.com /xlKiZf=http://errors.clientstaticserv.com /GgSNUq=http://ipgeoapi.com/ /mRLoz=http://update.clientstaticserv.com /huoixAEZ=2 /JjXBhaF=http://logs.clientstaticserv.com /ebtNROk='http://update.clientstaticserv.com/upda ... pdate.json' /pDqtrlDOq='task' /sytryKqkV=''
C:\WINDOWS\tasks\c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-6.job - C:\Program Files (x86)\iWebar\iWebar-novainstaller.exe /DteSD /pDqtrlDOq=task /oLZQl='iWebar' /KYRtZb=35510 /qiNDqQJti='000171' /JDSHST='0' /EMmLA='eyJkYXRhIjp7ImRhdGUiOiJFNUt3c210eWNBZTEsZjI3MzRkNmEtM2ZiZi00MDZhLTkxNTktZGYyOWY0ZmE0MDI5LCIsInVucSI6ImYyNzM0ZDZhLTNmYmYtNDA2YS05MTU5LWRmMjlmNGZhNDAyOSJ9fQ==' /mxwZpuudV=DFCE174A7F9F4870A64D1313FC95CF0BIE /YWMaVKMn=3e4ff1599a7aefe85968f70db1893b0e /lGSOyLqYE=1_34_05_12 /fYAWA=1.34.5.12 /odoDOXJB=1400588213 /OsanQil=http://stats.clientstaticserv.com /xlKiZf=http://errors.clientstaticserv.com /ulcVIuM=http://js.clientstaticserv.com /xUZKC=ch /RncmDCar /GIDjAJx='nova' /ebtNROk='http://update.clientstaticserv.com/nova ... pdate.json' /pDqtrlDOq='task' /sytryKqkV=''
C:\WINDOWS\tasks\c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-7.job - C:\Program Files (x86)\iWebar\iWebar-nova.exe /oLZQl='iWebar' /KYRtZb=35510 /qiNDqQJti='000171' /JDSHST='0' /EMmLA='eyJkYXRhIjp7ImRhdGUiOiJFNUt3c210eWNBZTEsZjI3MzRkNmEtM2ZiZi00MDZhLTkxNTktZGYyOWY0ZmE0MDI5LCIsInVucSI6ImYyNzM0ZDZhLTNmYmYtNDA2YS05MTU5LWRmMjlmNGZhNDAyOSJ9fQ==' /mxwZpuudV=DFCE174A7F9F4870A64D1313FC95CF0BIE /YWMaVKMn=3e4ff1599a7aefe85968f70db1893b0e /lGSOyLqYE=1_34_05_12 /fYAWA=1.34.5.12 /odoDOXJB=1400588213 /OsanQil=http://stats.clientstaticserv.com /xlKiZf=http://errors.clientstaticserv.com /ulcVIuM=http://js.clientstaticserv.com /xUZKC=ch /RncmDCar /GIDjAJx='nova' /ebtNROk='http://update.clientstaticserv.com/nova ... pdate.json' /pDqtrlDOq='task' /sytryKqkV=''
C:\WINDOWS\tasks\d4e590bb-8214-4c59-8429-13fb7d7180b5-1.job - C:\Program Files (x86)\Sense\Sense-codedownloader.exe /Rocje /ldwqMeEj=task /BNSOW='Sense' /HZbtpM=48292 /mUUnDGbr='000805' /wtLUN='0' /cDyCH='eyJkYXRhIjp7ImRhdGUiOiJFNUt3c210eWNBZTEsNTU5NWM3YjktMDE1Yi00NzU0LWE0MzYtYTczMWQxYjVmYTZlLCIsInVucSI6IjU1OTVjN2I5LTAxNWItNDc1NC1hNDM2LWE3MzFkMWI1ZmE2ZSJ9fQ==' /tiPGm=EE59EA965B8242C4A6D2247B53FD4743IE /ukjYoYsHH=26d6757310acc1e0b33a4d3bada30b76 /tOvdulK=1_34_04_10 /RppKetCFK=1.34.4.10 /hsZosTq=1400591798 /czSXVWUv=http://stats.clientdemostack.com /GgxZoSR=http://errors.clientdemostack.com /giKxZUQ=http://js.clientdemostack.com /KnGsmi=ie /YylzXDJkE /comtgSxKp='http://update.clientdemostack.com/ie_co ... pdate.json' /ldwqMeEj='task' /SQYYGPDAa=''
C:\WINDOWS\tasks\d4e590bb-8214-4c59-8429-13fb7d7180b5-2.job - C:\Program Files (x86)\Sense\d4e590bb-8214-4c59-8429-13fb7d7180b5-2.exe /KwLSfiV /BNSOW='Sense' /HZbtpM=48292 /mUUnDGbr='000805' /wtLUN='0' /cDyCH='eyJkYXRhIjp7ImRhdGUiOiJFNUt3c210eWNBZTEsNTU5NWM3YjktMDE1Yi00NzU0LWE0MzYtYTczMWQxYjVmYTZlLCIsInVucSI6IjU1OTVjN2I5LTAxNWItNDc1NC1hNDM2LWE3MzFkMWI1ZmE2ZSJ9fQ==' /tiPGm=EE59EA965B8242C4A6D2247B53FD4743IE /ukjYoYsHH=26d6757310acc1e0b33a4d3bada30b76 /tOvdulK=1_34_04_10 /hsZosTq=1400591798 /czSXVWUv=http://stats.clientdemostack.com /GgxZoSR=http://errors.clientdemostack.com /DiNzW=11111111-1111-1111-1111-110411821192 /KnGsmi=ie /YylzXDJkE /comtgSxKp='http://update.clientdemostack.com/ie_en ... pdate.json' /ldwqMeEj='task' /SQYYGPDAa=''
C:\WINDOWS\tasks\d4e590bb-8214-4c59-8429-13fb7d7180b5-3.job - C:\Program Files (x86)\Sense\d4e590bb-8214-4c59-8429-13fb7d7180b5-3.exe /sLqHCnF=YeKDHI2Zg/3FPRmhpPYHEDh9ABgNjN0qkFj9ZUF7FmflFzZoqC7vwhPitECSBg0ocYSjC0axK7W4cCv3MRalM4R9p0u1J/VPccq47BjITZSttWrrmBjMeouLDQlfNHGuR7nAhP1MMHxAuxfbxNek6eAyfNutX+dvebsjhHkeVCRNF8CnfCiufD2eMo5ZWfuHkOP4EdbitzUugyjBs/6gJc+ygqrS1b7HuxwoGdIfNd7WGPyouENHwqD1jqMSADOmr4O0LEzjVr6DQLL6KWpxUF6TmQ7GOuF6YlOXaarPZZjifIYqWuCLMXB93dsLug89ksasZresgNSuOT7UpYpesS1Dnmmu/oRvOiJs4NXMhcudb/8IoEbUS3DVD0gXs5+bfUP0JY1wPSaWWDKcL0meyHVzlgDJXoShziIU+Cnrs73SBGJCVmV4iW8150EUUost7xT5xFi+M1Rmc6znZCCwJ3I2j4jRUdePCU46CFUAllxBaAAmyUljASuXgnuOWxa+XJy2cwHgV/BUHYSrRHntu3B+d+5zQJZr8uiC61mUPJ4EY1b5WTZ9cMscUAzrd4zRmxQ2OmIb1p90VlbQb7Wo+4X8XW9ZHIfHNiiQ+bGCfbDNAMJJs2lI0+hOujya05qBxjmXu/RRaMMXimkd3GH6MozHmDCJqGPPBuui/mV8x1xZfGgc8lDF5vKiF5BAYUzPLB6Jzyz8f5gAR9KHughWwXjMxbuLgaTUvduVKCFMdPMDhTnUqR+yOId5Jf2AfHJNGK4sidJt0WcunoAhdzDfihpSx8BZ5B4qKaD1EtOpkO1AgZ+/uKsdkYDJL70dADS0vT9Z43opd5QJKfYBllPyAkvTNt+NpZN3zb8qHw+FVGLrOuM6tCQb5MZF4COZbT3rZ/M8/6uOTvFFKoXDuEN8lrcFCWxeXCI5Qp3OipOE1hTcmmRxdojyMIuACiEC/9a3WY8b9WxaTdnAGrUjJwgVXoxHtgbHK/QxCzSVQTD7KTdzTOVdWlOzo6FKdpQ7PXOOmtd73561HR0KH93+TW4pi65KEwzuc5jJ6CrjeWEtSqlaoc1ZOs/B4VrtSjnQknT+I5zXbSGDGiGFqI+zSIiDUOoTDXBfOYRccKCmeT1KRN3nA/Id0n1Bnrwq6sYO/3B+a4AhASIlFx8Z2DvfCVw7RdRxJBtElAT0XM6d45EeW4MoQKS3vRlXJLlHjsym9rNQk1hkaR+Tp3WFE5LEi5MvpGSKRGt3SwLq4Xo8MkQ6I150jqEcwely5xxASZGHhw+RpR8aZ19n0yE4Mt/4wU1SWmmDrLJa2GN5wVWPnUxuy/JLsGQYau3alqcRuTNK+dHWGKfnempwavbLCr1mEO0aTpozj758I02xcK+9n2uq/zyyA/PwgRuALyc/6gHQTdgUSvI5OQXosdMZvBWcTL6h8NN39h/UswlhISwbhuMsiXqlRra1wTtkvx4JwJDa8burOZ/7VSlTvN+NExDfqUbBHsFxpvXEt7ayAH0Nsh7wutG9a7ijR6GvW9LW68yr+HNu
C:\WINDOWS\tasks\d4e590bb-8214-4c59-8429-13fb7d7180b5-4.job - C:\Program Files (x86)\Sense\d4e590bb-8214-4c59-8429-13fb7d7180b5-4.exe /BhEQVzt /BNSOW='Sense' /Fsqwaryji='C:\Program Files (x86)\Sense\48292.xpi' /HZbtpM=48292 /mUUnDGbr='000805' /wtLUN='0' /cDyCH='eyJkYXRhIjp7ImRhdGUiOiJFNUt3c210eWNBZTEsNTU5NWM3YjktMDE1Yi00NzU0LWE0MzYtYTczMWQxYjVmYTZlLCIsInVucSI6IjU1OTVjN2I5LTAxNWItNDc1NC1hNDM2LWE3MzFkMWI1ZmE2ZSJ9fQ==' /tiPGm=EE59EA965B8242C4A6D2247B53FD4743IE /ukjYoYsHH=26d6757310acc1e0b33a4d3bada30b76 /tOvdulK=1_34_04_10 /RppKetCFK=1.34.4.10 /hsZosTq=1400591798 /czSXVWUv=http://stats.clientdemostack.com /GgxZoSR=http://errors.clientdemostack.com /cWsUxgAdy=300 /iAKXh=143f44cf-d99c-4e45-8cd9-ef929de77aa8@bdbf6038-0097-480c-8d8e-fc48e28131a8.com /XKRpiT=0.94 /LAuXjYKUK=a143f44cfd99c4e458cd9ef929de77aa8bdbf60380097480c8d8efc48e28131a8com48292 /yZRbmwvPB=https://w9u6a2p6.ssl.hwcdn.net/plugin/f ... /48292.rdf /ZkXTo='Sense' /bJmfDhS='.' /cuvEJFfx='Object Browser' /KnGsmi=ie /YylzXDJkE /PGivmcuzh /zsilm /comtgSxKp='http://update.clientdemostack.com/ff_ag ... pdate.json' /ldwqMeEj='task' /SQYYGPDAa=''
C:\WINDOWS\tasks\d4e590bb-8214-4c59-8429-13fb7d7180b5-5.job - C:\Program Files (x86)\Sense\d4e590bb-8214-4c59-8429-13fb7d7180b5-5.exe /rawdata=d+d7TR6QO82cHJVuiRpY65S42587ea3ioFW5sOJ/b5QE08PcbL8Ia5vuAsGbHx+bgbexxFB5cUbCIeB0Ppk36kYVcmkAvAF22WEYfzfhTfAnnBAeCdxBYMr6PngSMDrsNT0JYHp67k2GWD3lHrKRyJwTsd9lP8TupsTs3/rtxt1mul3slAIkj/qPoIMdS9Rv+uFR1bVZpcWBMF4sgIrXo0HDnYIQjD/jyOa6geVbADrQPUiIWMc/O2SqkUmnsrRNbxUrwlzp2RTIRTW9fR/p75BD/FHbzuCFj0Iza250Gir/MFDaWhZqh32UThoaS1JsMjoTNbT6IxjApnbAGnfikJmRwuNDoSTdfEmOq49h6pW98ibvrbv8gohTPkHbkmx2IeBXSo5NInSO3NItFOeRL29yiykzI3h2fB4hAETisnyb/zlJuxQb7nN5LAykk8ON0LUz63vloljIavXzEHTteTFcgNM4R+JdR4O+q0nqvO452Zq8ySNUac7H7WbZ4JfOQDaM+GvPMphxQ3pbHuc4KaJre2spbnP8VF5XzRI32xgJaXYbQEbcuJTnGYYvke8xxQXiaG/GCYouAaDhHvr1U8LExXdI7rVgiCLrZVmSxTHydQxy0wER8tOZgYh2b8MtTcxXUd+Fx+4CAMpAj6wKWS6Fh2dJjZrazug+NFSGpcXBxrZF2MCwo1ycgzs/gYWs/w5fYF+Y44uMFqXF4GyRqgG6PQeAxfCgk6EoEWLkLDvGF8ndfhnN7EF2ZNrK/mY64f2qeiNI3kcIqV4nAs/gXHrpedXU4jaaNgT29F3hsIXIDrrG7OnTXvKE8eE5XVySPmC4dn+z1fHZPkjKAksukHKEkFG58B2nwmSprijUE8WtRos8OBGJrXbfdd1G5gc0K3zMgdng4t+3PQbk68k2sF3UcVknhAWn+T/SLt7EgolTobvKERbfYV4DULCeYXTe9UTeJQiaVL9QEgwEAmTqIUUzd914tOhWaaFT2isoBgHVlg5vK8rWjgiJ2ToXeWRd
C:\WINDOWS\tasks\d4e590bb-8214-4c59-8429-13fb7d7180b5-6.job - C:\Program Files (x86)\Sense\Sense-nova.exe /rawdata=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
C:\WINDOWS\tasks\d4e590bb-8214-4c59-8429-13fb7d7180b5-7.job - C:\Program Files (x86)\Sense\Sense-nova.exe /BNSOW='Sense' /HZbtpM==48292 /mUUnDGbr='000805' /wtLUN='0' /cDyCH='eyJkYXRhIjp7ImRhdGUiOiJFNUt3c210eWNBZTEsNTU5NWM3YjktMDE1Yi00NzU0LWE0MzYtYTczMWQxYjVmYTZlLCIsInVucSI6IjU1OTVjN2I5LTAxNWItNDc1NC1hNDM2LWE3MzFkMWI1ZmE2ZSJ9fQ==' /tiPGm=EE59EA965B8242C4A6D2247B53FD4743IE /ukjYoYsHH=26d6757310acc1e0b33a4d3bada30b76 /tOvdulK=1_34_04_10 /RppKetCFK=1.34.4.10 /hsZosTq=1400591798 /czSXVWUv=http://stats.clientdemostack.com /GgxZoSR=http://errors.clientdemostack.com /giKxZUQ=http://js.clientdemostack.com /KnGsmi=ie /QJNTQTUj /GUjBoYkYU='nova' /comtgSxKp='http://update.clientdemostack.com/novar ... pdate.json' /ldwqMeEj='task' /SQYYGPDAa=''
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-408076529-4275691943-932605528-1002Core.job - C:\Users\Tomáš\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-408076529-4275691943-932605528-1002UA.job - C:\Users\Tomáš\AppData\Local\Facebook\Update\FacebookUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineCore.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineUA.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\SPBIW_UpdateTask_Time_3831343734303930342d4137345a376c453278345a41.job - C:\WINDOWS\system32\wscript.exe //B "C:\ProgramData\ShopperPro\spbihe.js" spbiu.exe /invoke /f:check_services /l:0
=========Mozilla firefox=========
ProfilePath - C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\tg7wyvdt.default
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "https://www.seznam.cz/"
prefs.js - "keyword.URL" - false
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 15.0.0.246 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_246.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10]
"Description"=globalUpdate Update
"Path"=C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4]
"Description"=globalUpdate Update
"Path"=C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 15.0.0.246 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_15_0_0_246.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL
C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\tg7wyvdt.default\extensions\
143f44cf-d99c-4e45-8cd9-ef929de77aa8@bdbf6038-0097-480c-8d8e-fc48e28131a8.com
{746505DC-0E21-4667-97F8-72EA6BCF5EEF}
C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\tg7wyvdt.default\searchplugins\
bs-player-controlbar-b-customized-web-search.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311551110}]
iWebar - C:\Program Files (x86)\iWebar\iWebar-bho64.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411821192}]
Sense - C:\Program Files (x86)\Sense\Sense-bho64.dll [2014-05-20 702464]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}]
Shopper Pro - C:\ProgramData\ShopperPro\ShopperPro64.dll [2014-12-15 501608]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 688528]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01}]
MSS+ Identifier - C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll [2014-04-09 96128]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311551110}]
iWebar - C:\Program Files (x86)\iWebar\iWebar-bho.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411821192}]
Sense - C:\Program Files (x86)\Sense\Sense-bho.dll [2014-05-20 524288]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31264a33-a653-46c4-af49-1232c59a7da5}]
BS Player ControlBar B Toolbar - C:\Users\Tomáš\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_P.dll [2014-09-30 423744]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}]
Shopper Pro - C:\ProgramData\ShopperPro\ShopperPro.dll [2014-12-15 419176]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{31264A33-A653-46C4-AF49-1232C59A7DA5} - BS Player ControlBar B Toolbar - C:\Users\Tomáš\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_P.dll [2014-09-30 423744]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{31264a33-a653-46c4-af49-1232c59a7da5} - BS Player ControlBar B Toolbar - C:\Users\Tomáš\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_P.dll [2014-09-30 423744]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2013-03-05 2876816]
"RtsFT"=C:\WINDOWS\RTFTrack.exe [2013-04-10 6339656]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [2013-02-04 899680]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SACpl.exe [2012-06-13 1647616]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2013-11-29 17097200]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2013-11-29 193008]
"BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2010-03-13 112512]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2013-01-25 131712]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-10-28 3675352]
"SPDriver"=C:\Program Files (x86)\ShopperPro\JSDriver\1.38.0.1436\jsdrv.exe [2014-12-15 3224576]
"Facebook Update"=C:\Users\Tomáš\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-06-26 138096]
"MiPhoneManager"=C:\Users\Tomáš\AppData\Local\MiPhoneManager\main\MiPhoneHelper.exe [2014-11-21 147728]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2012-04-19 217088]
"Intel AppUp(SM) center"=C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [2012-07-12 155488]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"SPDriver"=C:\Program Files (x86)\ShopperPro\JSDriver\1.38.0.1436\jsdrv.exe [2014-12-15 3224576]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-07-04 766688]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2013-01-25 131712]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
GamePark klient 2.lnk - C:\Program Files\GamePark2\gpcl.exe
McAfee Security Scan Plus.lnk - C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableCAD"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"midi2"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-12-20 15:04:17 ----D---- C:\Program Files\trend micro
2014-12-20 15:04:16 ----D---- C:\rsit
2014-12-15 01:34:09 ----D---- C:\Xiaomi
2014-12-15 01:25:58 ----D---- C:\ProgramData\Thunder Network
2014-12-15 01:18:53 ----A---- C:\WINDOWS\system32\WinUSBCoInstaller2.dll
2014-12-15 01:12:24 ----D---- C:\Users\Tomáš\AppData\Roaming\Xiaomi
2014-12-14 21:56:21 ----A---- C:\WINDOWS\system32\poqexec.exe
2014-12-14 21:56:20 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2014-12-11 13:28:30 ----D---- C:\WINDOWS\system32\appraiser
2014-12-11 02:23:42 ----A---- C:\WINDOWS\SYSWOW64\DeviceSetupStatusProvider.dll
2014-12-11 02:23:42 ----A---- C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
2014-12-11 02:23:23 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2014-12-11 02:23:23 ----A---- C:\WINDOWS\system32\crypt32.dll
2014-12-11 02:23:21 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2014-12-11 02:23:21 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2014-12-11 02:23:20 ----A---- C:\WINDOWS\system32\appraiser.dll
2014-12-11 02:23:20 ----A---- C:\WINDOWS\system32\aepic.dll
2014-12-11 02:23:19 ----A---- C:\WINDOWS\system32\invagent.dll
2014-12-11 02:23:19 ----A---- C:\WINDOWS\system32\aeinv.dll
2014-12-11 02:23:18 ----A---- C:\WINDOWS\system32\generaltel.dll
2014-12-11 02:23:18 ----A---- C:\WINDOWS\system32\devinv.dll
2014-12-11 02:23:17 ----A---- C:\WINDOWS\system32\aepdu.dll
2014-12-11 02:23:15 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2014-12-11 02:23:15 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2014-12-11 02:22:53 ----AC---- C:\WINDOWS\system32\drivers\sdbus.sys
2014-12-11 02:22:53 ----AC---- C:\WINDOWS\system32\drivers\intelpep.sys
2014-12-11 02:22:53 ----AC---- C:\WINDOWS\system32\drivers\dumpsd.sys
2014-12-11 02:22:53 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2014-12-11 02:22:51 ----A---- C:\WINDOWS\system32\mshtml.dll
2014-12-11 02:22:50 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2014-12-11 02:22:46 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2014-12-11 02:22:46 ----A---- C:\WINDOWS\system32\ieframe.dll
2014-12-11 02:22:45 ----A---- C:\WINDOWS\system32\wininet.dll
2014-12-11 02:22:45 ----A---- C:\WINDOWS\system32\jscript9.dll
2014-12-11 02:22:44 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2014-12-11 02:22:44 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2014-12-11 02:22:44 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2014-12-11 02:22:44 ----A---- C:\WINDOWS\system32\urlmon.dll
2014-12-11 02:22:44 ----A---- C:\WINDOWS\system32\iertutil.dll
2014-12-11 02:22:43 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2014-12-11 02:22:43 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2014-12-11 02:22:43 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2014-12-11 02:22:42 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2014-12-11 02:22:42 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2014-12-11 02:22:42 ----A---- C:\WINDOWS\system32\msfeeds.dll
2014-12-11 02:22:42 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2014-12-11 02:22:41 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2014-12-11 02:22:41 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2014-12-11 02:22:41 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2014-12-11 02:22:41 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2014-12-11 02:22:41 ----A---- C:\WINDOWS\system32\webcheck.dll
2014-12-11 02:22:41 ----A---- C:\WINDOWS\system32\vbscript.dll
2014-12-11 02:22:41 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2014-12-11 02:22:41 ----A---- C:\WINDOWS\system32\iepeers.dll
2014-12-11 02:22:41 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2014-12-11 02:22:41 ----A---- C:\WINDOWS\system32\dxtrans.dll
2014-12-11 02:22:40 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2014-12-11 02:22:40 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2014-12-11 02:22:40 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2014-12-11 02:22:40 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2014-12-11 02:22:40 ----A---- C:\WINDOWS\system32\mshtmled.dll
2014-12-11 02:22:40 ----A---- C:\WINDOWS\system32\jscript.dll
2014-12-11 02:22:40 ----A---- C:\WINDOWS\system32\inetcomm.dll
2014-12-09 19:02:06 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerInstaller.exe
2014-12-09 13:34:41 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-12-03 15:27:14 ----D---- C:\Program Files\McAfee Security Scan
2014-12-01 14:05:10 ----D---- C:\ProgramData\McAfee Security Scan
2014-12-01 14:05:10 ----D---- C:\ProgramData\McAfee
2014-11-26 23:49:54 ----D---- C:\Program Files (x86)\Tbccint
2014-11-26 23:49:50 ----D---- C:\ProgramData\Tbccint
2014-11-26 23:49:41 ----D---- C:\Users\Tomáš\AppData\Roaming\BSplayer Pro
2014-11-26 23:49:41 ----D---- C:\Users\Tomáš\AppData\Roaming\BSplayer
2014-11-26 23:49:32 ----D---- C:\Program Files (x86)\Webteh
2014-11-26 23:36:53 ----D---- C:\Users\Tomáš\AppData\Roaming\Mozilla
2014-11-26 23:36:47 ----D---- C:\ProgramData\Mozilla
2014-11-26 23:36:47 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-11-25 17:41:10 ----D---- C:\Users\Tomáš\AppData\Roaming\WinRAR
======List of files/folders modified in the last 1 month======
2014-12-20 15:04:17 ----RD---- C:\Program Files
2014-12-20 15:04:13 ----D---- C:\WINDOWS\Prefetch
2014-12-20 15:00:00 ----D---- C:\WINDOWS\system32\sru
2014-12-20 14:55:48 ----RD---- C:\WINDOWS\System32
2014-12-20 14:55:48 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2014-12-20 14:55:47 ----D---- C:\WINDOWS\Inf
2014-12-20 14:53:15 ----D---- C:\WINDOWS\Temp
2014-12-20 13:46:35 ----D---- C:\WINDOWS\system32\Tasks
2014-12-20 00:41:28 ----AD---- C:\ProgramData\Temp
2014-12-20 00:28:06 ----D---- C:\WINDOWS\system32\NDF
2014-12-19 13:28:23 ----SHD---- C:\System Volume Information
2014-12-19 13:12:35 ----D---- C:\WINDOWS\Microsoft.NET
2014-12-18 11:33:22 ----D---- C:\WINDOWS\system32\config
2014-12-18 11:26:56 ----D---- C:\WINDOWS\WinSxS
2014-12-18 11:26:56 ----D---- C:\WINDOWS\CbsTemp
2014-12-17 21:51:24 ----D---- C:\WINDOWS\AppReadiness
2014-12-17 10:51:23 ----HD---- C:\Program Files\WindowsApps
2014-12-16 12:26:34 ----D---- C:\Program Files\Common Files\ShopperPro
2014-12-16 12:25:50 ----D---- C:\Program Files (x86)\ShopperPro
2014-12-15 17:42:05 ----D---- C:\WINDOWS\SysWOW64
2014-12-15 01:25:58 ----HD---- C:\ProgramData
2014-12-15 01:23:59 ----D---- C:\WINDOWS\system32\DriverStore
2014-12-13 16:27:00 ----D---- C:\WINDOWS\rescache
2014-12-11 17:07:57 ----D---- C:\WINDOWS\system32\catroot
2014-12-11 13:28:30 ----SD---- C:\WINDOWS\system32\CompatTel
2014-12-11 13:28:30 ----SD---- C:\ProgramData\Microsoft
2014-12-11 13:28:30 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2014-12-11 13:28:30 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2014-12-11 13:28:30 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2014-12-11 13:28:30 ----D---- C:\WINDOWS\system32\cs-CZ
2014-12-11 13:28:27 ----D---- C:\WINDOWS\system32\drivers
2014-12-11 13:28:26 ----D---- C:\WINDOWS\PolicyDefinitions
2014-12-11 13:28:26 ----D---- C:\Program Files\Internet Explorer
2014-12-11 13:28:26 ----D---- C:\Program Files (x86)\Internet Explorer
2014-12-11 13:14:32 ----D---- C:\WINDOWS\system32\MRT
2014-12-11 13:10:07 ----A---- C:\WINDOWS\system32\MRT.exe
2014-12-11 02:20:21 ----D---- C:\WINDOWS\system32\catroot2
2014-12-10 20:14:21 ----D---- C:\WINDOWS\LiveKernelReports
2014-12-09 15:07:29 ----RD---- C:\Program Files (x86)
2014-12-01 14:05:37 ----SD---- C:\Users\Tomáš\AppData\Roaming\Microsoft
2014-12-01 14:05:04 ----D---- C:\WINDOWS\Tasks
2014-11-26 22:10:48 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 amd_sata;amd_sata; C:\WINDOWS\System32\drivers\amd_sata.sys [2012-11-30 80552]
R0 amd_xata;amd_xata; C:\WINDOWS\System32\drivers\amd_xata.sys [2012-11-30 26280]
R0 amdkmpfd;@oem13.inf,%AMDKMPFD_svcdesc%;AMD PCI Root Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmpfd.sys [2013-02-14 37472]
R0 LHDmgr;LHDmgr; C:\WINDOWS\System32\DRIVERS\LhdX64.sys [2013-11-29 39008]
R1 dtsoftbus01;@oem58.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [2014-05-20 283064]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2014-04-30 71680]
R2 AODDriver4.2;AODDriver4.2; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2012-04-09 57472]
R2 SPDRIVER_1.38.0.1436;SPDRIVER_1.38.0.1436; \??\C:\Program Files (x86)\ShopperPro\JSDriver\1.38.0.1436\jsdrv.sys [2014-12-15 52584]
R3 ACPIVPC;@oem55.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\WINDOWS\System32\drivers\AcpiVpc.sys [2013-11-29 33560]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2014-07-21 13209088]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2014-07-21 626688]
R3 athr;@oem10.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\system32\DRIVERS\athw8x.sys [2013-03-25 3776000]
R3 AtiHDAudioService;@oem2.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdW86.sys [2013-04-23 98744]
R3 BTATH_BUS;@oem60.inf,%BTATH_BUS.SVCDESC%;Qualcomm Atheros Bluetooth Bus; C:\WINDOWS\System32\drivers\btath_bus.sys [2013-01-25 34384]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2014-04-28 599240]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-03-18 81920]
R3 CnxtHdAudService;@oem6.inf,%UAAFunctionDriverForHdAudio.SvcDesc%;Conexant UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\CHDRT64.sys [2013-02-26 1680992]
R3 ETD;@oem8.inf,%PS2DeviceDesc%;ELAN PS/2 Port Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys [2013-02-27 355664]
R3 L1C;@netl1c63x64.inf,%L1C.Service.DispName%;NDIS Miniport – ovladač pro řadič Qualcomm Atheros AR81xx PCI-E Ethernet; C:\WINDOWS\system32\DRIVERS\L1C63x64.sys [2013-06-18 129224]
R3 rtsuvc;@oem39.inf,%rtsuvc.DeviceDesc%;Lenovo EasyCamera; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [2013-04-10 8243272]
R3 SPBIUpdd;ShopperPro UpdateD; \??\C:\Program Files\Common Files\ShopperPro\spbiw.sys [2014-12-15 41856]
R3 usbfilter;AMD USB Filter Driver; C:\WINDOWS\system32\DRIVERS\usbfilter.sys [2012-08-28 58536]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2014-04-30 38912]
S2 AODDriver4.2.0;AODDriver4.2.0; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2012-04-09 57472]
S2 APXACC;AppEx Networks Accelerator LWF; C:\WINDOWS\system32\DRIVERS\appexDrv.sys [2013-04-18 219360]
S3 AthBTPort;@oem5.inf,%BTHSUPPORT.SvcDesc%;Qualcomm Atheros Virtual Bluetooth Class; C:\WINDOWS\system32\DRIVERS\btath_flt.sys [2013-01-25 89168]
S3 BTATH_A2DP;@oem4.inf,%BTATH_A2DP.SvcDesc%;Bluetooth A2DP Audio Driver; C:\WINDOWS\system32\drivers\btath_a2dp.sys [2013-01-25 346192]
S3 btath_avdt;@oem4.inf,%btath_avdt.SvcDesc%;Qualcomm Atheros Bluetooth AVDT Service; C:\WINDOWS\system32\drivers\btath_avdt.sys [2013-01-25 115280]
S3 BTATH_HCRP;@oem7.inf,%BTATH_HCRP.SvcDesc%;Bluetooth HCRP Server driver; C:\WINDOWS\System32\drivers\btath_hcrp.sys [2013-01-25 179432]
S3 BTATH_LWFLT;@oem16.inf,%BTATH_LWFLT%;Bluetooth LWFLT Device; C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys [2013-01-25 77464]
S3 BTATH_RCP;@oem11.inf,%BTATH_RCP%;Bluetooth AVRCP Device; C:\WINDOWS\System32\drivers\btath_rcp.sys [2013-01-25 136424]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2013-08-22 53248]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2014-03-18 226304]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2014-07-24 118272]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-07-24 1200640]
S3 dg_ssudbus;@oem64.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2014-01-22 108800]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2014-03-18 167424]
S3 RSUSBVSTOR;@oem59.inf,%RSUSBVSTOR.SvcDesc%;RtsUVStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUVStor.sys [2013-03-18 327752]
S3 ssudmdm;@oem66.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2014-01-22 206080]
S3 ssudserd;@oem67.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Diagnostic Serial Port(DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudserd.sys [2014-01-22 206080]
S3 WinUsb;@winusb.inf,%WinUSB_SvcDesc%;Ovladač WinUsb; C:\WINDOWS\system32\DRIVERS\WinUsb.sys [2013-08-22 78848]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2014-07-21 239616]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2013-04-25 361984]
R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2013-01-25 227456]
R2 CxAudMsg;Conexant Audio Message Service; C:\windows\system32\CxAudMsg64.exe [2012-12-03 202400]
R2 SPBIUpd;ShopperPro Update; C:\Program Files\Common Files\ShopperPro\spbiu.exe [2014-12-15 2346880]
R2 TBSrv;Toolbar Service; C:\Program Files (x86)\Tbccint\ToolbarService\ToolbarService.exe [2014-09-30 350528]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S2 globalUpdate;globalUpdate Update Service (globalUpdate); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-05-20 68608]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-19 116648]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-12-09 267440]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 globalUpdatem;globalUpdate Update Service (globalUpdatem); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-05-20 68608]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-19 116648]
S3 McComponentHostService;McAfee Security Scan Component Host Service; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [2014-04-09 289256]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 51456888]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-12-09 114800]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 174440]
-----------------EOF-----------------
Run by Tomáš at 2014-12-20 15:04:16
Microsoft Windows 8.1
System drive C: has 786 GB (86%) free of 912 GB
Total RAM: 7375 MB (76% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:04:23, on 20. 12. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal
Running processes:
C:\Users\Tomáš\AppData\Local\MiPhoneManager\main\MiPhoneHelper.exe
C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe
C:\Program Files\WindowsApps\Evernote.Evernote_2.3.6.0_x86__q4d96b2w5wcc2\EvernoteMetro.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_246.exe
C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_246.exe
C:\Program Files\trend micro\Tomáš.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo13.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: BS Player ControlBar B Toolbar - {31264a33-a653-46c4-af49-1232c59a7da5} - C:\Users\Tomáš\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_P.dll
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll
O2 - BHO: CrossriderApp0035510 - {11111111-1111-1111-1111-110311551110} - C:\Program Files (x86)\iWebar\iWebar-bho.dll (file missing)
O2 - BHO: CrossriderApp0048292 - {11111111-1111-1111-1111-110411821192} - C:\Program Files (x86)\Sense\Sense-bho.dll
O2 - BHO: BS Player ControlBar B - {31264a33-a653-46c4-af49-1232c59a7da5} - C:\Users\Tomáš\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_P.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: ShopperProBHO - {A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} - C:\ProgramData\ShopperPro\ShopperPro.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O3 - Toolbar: BS Player ControlBar B Toolbar - {31264a33-a653-46c4-af49-1232c59a7da5} - C:\Users\Tomáš\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_P.dll
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [Intel AppUp(SM) center] "C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe" --domain-id F0399437-FD0C-4A48-B101-F0314A6172E4
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [SPDriver] C:\Program Files (x86)\ShopperPro\JSDriver\1.38.0.1436\jsdrv.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [SPDriver] C:\Program Files (x86)\ShopperPro\JSDriver\1.38.0.1436\jsdrv.exe
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\Tomáš\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\Run: [MiPhoneManager] "C:\Users\Tomáš\AppData\Local\MiPhoneManager\main\MiPhoneHelper.exe"
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
O4 - Global Startup: GamePark klient 2.lnk = C:\Program Files\GamePark2\gpcl.exe
O4 - Global Startup: McAfee Security Scan Plus.lnk = C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\youtube accelerator\ytalsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: AtherosSvc - Qualcomm Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: Conexant Audio Message Service (CxAudMsg) - Unknown owner - C:\windows\system32\CxAudMsg64.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: globalUpdate Update Service (globalUpdatem) (globalUpdatem) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: ShopperPro Update (SPBIUpd) - ShopperPro - C:\Program Files\Common Files\ShopperPro\spbiu.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Toolbar Service (TBSrv) - ClientConnect Ltd. - C:\Program Files (x86)\Tbccint\ToolbarService\ToolbarService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: YouTubeAcceleratorService - GOOBZO - C:\Program Files (x86)\YouTube Accelerator\YouTubeAcceleratorService.exe
O23 - Service: ZAtheros Bt and Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
--
End of file - 11603 bytes
======Listing Processes======
wininit.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\atiesrxx.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
C:\windows\system32\CxAudMsg64.exe
dashost.exe {edaf984f-58d3-49d7-8d6097ecd338b387}
"C:\Program Files\Common Files\ShopperPro\spbiu.exe" /service
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Tbccint\ToolbarService\ToolbarService.exe"
"C:\Program Files (x86)\YouTube Accelerator\YouTubeAcceleratorService.exe" -start -scm
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-73cc5c76-068d-40ff-b811-fbb503db822b -SystemEventPortName:HostProcess-7bb0e4ba-dcdb-472e-99b0-94dbc69ba836 -IoCancelEventPortName:HostProcess-2542abb8-782a-49ee-ae4d-239fb74b5c7c -NonStateChangingEventPortName:HostProcess-2d5d8411-109d-4934-8236-07216c122c49 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:24edce42-b332-4d10-864d-7e53a7dbc61d -DeviceGroupId:WudfDefaultDevicePool
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\WINDOWS\System32\WinLogon.exe -SpecialSession
-hiberboot
atieclxx
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet
taskhostex.exe
C:\WINDOWS\Explorer.EXE
C:\Windows\System32\skydrive.exe -Embedding
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
"C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe" -autostart
"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
"C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe"
C:\WINDOWS\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Windows\RTFTrack.exe"
"C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe"
"C:\Users\Tomáš\AppData\Local\MiPhoneManager\main\MiPhoneHelper.exe"
"C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe"
"C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe" --domain-id F0399437-FD0C-4A48-B101-F0314A6172E4
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files\WindowsApps\Evernote.Evernote_2.3.6.0_x86__q4d96b2w5wcc2\EvernoteMetro.exe" -ServerName:App.AppXcm5cntgqx4fv1et6j63tndxjhxc09r4k.mca
"C:\WINDOWS\system32\AuthHost.exe" -AuthHostBrokerActivated 00000fb4_00000001_02cabfd4
"C:\Program Files\WindowsApps\Microsoft.Reader_6.3.9654.17499_x64__8wekyb3d8bbwe\glcnd.exe" -ServerName:Microsoft.Reader.AppXtszmc7avrx02s7n8gch63tzwg517wd9k.mca
taskhost.exe $(Arg0)
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=3188.2dbbaa0.1654036146 "C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_246.dll" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" E7CF176E110C211B 3188 "\\.\pipe\gecko-crash-server-pipe.3188" plugin
"C:\WINDOWS\SYSTEM32\Macromed\Flash\FlashPlayerPlugin_15_0_0_246.exe" --proxy-stub-channel=Flash3160.6C7F6188.19462 --host-broker-channel=Flash3160.6C7F6188.23918 --host-pid=3160 --host-npapi-version=27 --plugin-path="C:\WINDOWS\SYSTEM32\Macromed\Flash\NPSWF32_15_0_0_246.dll"
"C:\WINDOWS\SYSTEM32\Macromed\Flash\FlashPlayerPlugin_15_0_0_246.exe" --channel=6080.00D5F234.43638618 --proxy-stub-channel=Flash3160.6C7F6188.19462 --plugin-path="C:\WINDOWS\SYSTEM32\Macromed\Flash\NPSWF32_15_0_0_246.dll" --host-npapi-version=27 --type=renderer
C:\WINDOWS\system32\wbem\wmiprvse.exe
taskeng.exe {D65CE6DF-EA80-4FB9-BEBC-3A3990748951}
taskeng.exe {DFDD8FE4-102B-4061-B32D-BC4ADA2398AF}
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe6_ Global\UsGthrCtrlFltPipeMssGthrPipe6 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 584 588 596 65536 592
"C:\Users\Tomáš\Desktop\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-1.job - C:\Program Files (x86)\iWebar\iWebar-codedownloader.exe /OGOXMSTaZ /pDqtrlDOq=task /oLZQl='iWebar' /KYRtZb=35510 /qiNDqQJti='000171' /JDSHST='0' /EMmLA='eyJkYXRhIjp7ImRhdGUiOiJFNUt3c210eWNBZTEsZjI3MzRkNmEtM2ZiZi00MDZhLTkxNTktZGYyOWY0ZmE0MDI5LCIsInVucSI6ImYyNzM0ZDZhLTNmYmYtNDA2YS05MTU5LWRmMjlmNGZhNDAyOSJ9fQ==' /mxwZpuudV=DFCE174A7F9F4870A64D1313FC95CF0BIE /YWMaVKMn=3e4ff1599a7aefe85968f70db1893b0e /lGSOyLqYE=1_34_05_12 /fYAWA=1.34.5.12 /odoDOXJB=1400588213 /OsanQil=http://stats.clientstaticserv.com /xlKiZf=http://errors.clientstaticserv.com /ulcVIuM=http://js.clientstaticserv.com /xUZKC=ch /hrdQe /ebtNROk='http://update.clientstaticserv.com/ie_c ... pdate.json' /pDqtrlDOq='task' /sytryKqkV=''
C:\WINDOWS\tasks\c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-2.job - C:\Program Files (x86)\iWebar\c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-2.exe /lTGtd /oLZQl='iWebar' /KYRtZb=35510 /qiNDqQJti='000171' /JDSHST='0' /EMmLA='eyJkYXRhIjp7ImRhdGUiOiJFNUt3c210eWNBZTEsZjI3MzRkNmEtM2ZiZi00MDZhLTkxNTktZGYyOWY0ZmE0MDI5LCIsInVucSI6ImYyNzM0ZDZhLTNmYmYtNDA2YS05MTU5LWRmMjlmNGZhNDAyOSJ9fQ==' /mxwZpuudV=DFCE174A7F9F4870A64D1313FC95CF0BIE /YWMaVKMn=3e4ff1599a7aefe85968f70db1893b0e /lGSOyLqYE=1_34_05_12 /odoDOXJB=1400588213 /OsanQil=http://stats.clientstaticserv.com /xlKiZf=http://errors.clientstaticserv.com /AAiQHTk=11111111-1111-1111-1111-110311551110 /xUZKC=ch /hrdQe /ebtNROk='http://update.clientstaticserv.com/ie_e ... pdate.json' /pDqtrlDOq='task' /sytryKqkV=''
C:\WINDOWS\tasks\c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-3.job - C:\Program Files (x86)\iWebar\c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-3.exe /YdBhaER=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
C:\WINDOWS\tasks\c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-4.job - C:\Program Files (x86)\iWebar\c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-4.exe /qzAYTnf /oLZQl='iWebar' /MiYRUXVB='C:\Program Files (x86)\iWebar\35510.xpi' /KYRtZb=35510 /qiNDqQJti='000171' /JDSHST='0' /EMmLA='eyJkYXRhIjp7ImRhdGUiOiJFNUt3c210eWNBZTEsZjI3MzRkNmEtM2ZiZi00MDZhLTkxNTktZGYyOWY0ZmE0MDI5LCIsInVucSI6ImYyNzM0ZDZhLTNmYmYtNDA2YS05MTU5LWRmMjlmNGZhNDAyOSJ9fQ==' /mxwZpuudV=DFCE174A7F9F4870A64D1313FC95CF0BIE /YWMaVKMn=3e4ff1599a7aefe85968f70db1893b0e /lGSOyLqYE=1_34_05_12 /fYAWA=1.34.5.12 /odoDOXJB=1400588213 /OsanQil=http://stats.clientstaticserv.com /xlKiZf=http://errors.clientstaticserv.com /mhSoTAHiO=300 /VDfYtvCLJ=2eb528f3-950d-48a3-be4b-5d7de6c8331e@a41e199b-6ca4-4d23-ab87-73f2d1973314.com /FxhxrZDHn=0.94 /qdMKFFO=a2eb528f3950d48a3be4b5d7de6c8331ea41e199b6ca44d23ab8773f2d1973314com35510 /peyHmD=https://w9u6a2p6.ssl.hwcdn.net/plugin/f ... /35510.rdf /HwhSWnx='iWebar' /wfFdoqBL='iWebar' /wyXCD='iWebar' /xUZKC=ch /hrdQe /nVFybPgr /eWXmMpIeV /ebtNROk='http://update.clientstaticserv.com/ff_a ... pdate.json' /pDqtrlDOq='task' /sytryKqkV=''
C:\WINDOWS\tasks\c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-5.job - C:\Program Files (x86)\iWebar\c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-5.exe /TlDWOWuU /oLZQl='iWebar' /KYRtZb=35510 /qiNDqQJti='000171' /JDSHST='0' /EMmLA='eyJkYXRhIjp7ImRhdGUiOiJFNUt3c210eWNBZTEsZjI3MzRkNmEtM2ZiZi00MDZhLTkxNTktZGYyOWY0ZmE0MDI5LCIsInVucSI6ImYyNzM0ZDZhLTNmYmYtNDA2YS05MTU5LWRmMjlmNGZhNDAyOSJ9fQ==' /mxwZpuudV=DFCE174A7F9F4870A64D1313FC95CF0BIE /YWMaVKMn=3e4ff1599a7aefe85968f70db1893b0e /lGSOyLqYE=1_34_05_12 /odoDOXJB=1400588213 /OsanQil=http://stats.clientstaticserv.com /xlKiZf=http://errors.clientstaticserv.com /GgSNUq=http://ipgeoapi.com/ /mRLoz=http://update.clientstaticserv.com /huoixAEZ=2 /JjXBhaF=http://logs.clientstaticserv.com /ebtNROk='http://update.clientstaticserv.com/upda ... pdate.json' /pDqtrlDOq='task' /sytryKqkV=''
C:\WINDOWS\tasks\c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-6.job - C:\Program Files (x86)\iWebar\iWebar-novainstaller.exe /DteSD /pDqtrlDOq=task /oLZQl='iWebar' /KYRtZb=35510 /qiNDqQJti='000171' /JDSHST='0' /EMmLA='eyJkYXRhIjp7ImRhdGUiOiJFNUt3c210eWNBZTEsZjI3MzRkNmEtM2ZiZi00MDZhLTkxNTktZGYyOWY0ZmE0MDI5LCIsInVucSI6ImYyNzM0ZDZhLTNmYmYtNDA2YS05MTU5LWRmMjlmNGZhNDAyOSJ9fQ==' /mxwZpuudV=DFCE174A7F9F4870A64D1313FC95CF0BIE /YWMaVKMn=3e4ff1599a7aefe85968f70db1893b0e /lGSOyLqYE=1_34_05_12 /fYAWA=1.34.5.12 /odoDOXJB=1400588213 /OsanQil=http://stats.clientstaticserv.com /xlKiZf=http://errors.clientstaticserv.com /ulcVIuM=http://js.clientstaticserv.com /xUZKC=ch /RncmDCar /GIDjAJx='nova' /ebtNROk='http://update.clientstaticserv.com/nova ... pdate.json' /pDqtrlDOq='task' /sytryKqkV=''
C:\WINDOWS\tasks\c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-7.job - C:\Program Files (x86)\iWebar\iWebar-nova.exe /oLZQl='iWebar' /KYRtZb=35510 /qiNDqQJti='000171' /JDSHST='0' /EMmLA='eyJkYXRhIjp7ImRhdGUiOiJFNUt3c210eWNBZTEsZjI3MzRkNmEtM2ZiZi00MDZhLTkxNTktZGYyOWY0ZmE0MDI5LCIsInVucSI6ImYyNzM0ZDZhLTNmYmYtNDA2YS05MTU5LWRmMjlmNGZhNDAyOSJ9fQ==' /mxwZpuudV=DFCE174A7F9F4870A64D1313FC95CF0BIE /YWMaVKMn=3e4ff1599a7aefe85968f70db1893b0e /lGSOyLqYE=1_34_05_12 /fYAWA=1.34.5.12 /odoDOXJB=1400588213 /OsanQil=http://stats.clientstaticserv.com /xlKiZf=http://errors.clientstaticserv.com /ulcVIuM=http://js.clientstaticserv.com /xUZKC=ch /RncmDCar /GIDjAJx='nova' /ebtNROk='http://update.clientstaticserv.com/nova ... pdate.json' /pDqtrlDOq='task' /sytryKqkV=''
C:\WINDOWS\tasks\d4e590bb-8214-4c59-8429-13fb7d7180b5-1.job - C:\Program Files (x86)\Sense\Sense-codedownloader.exe /Rocje /ldwqMeEj=task /BNSOW='Sense' /HZbtpM=48292 /mUUnDGbr='000805' /wtLUN='0' /cDyCH='eyJkYXRhIjp7ImRhdGUiOiJFNUt3c210eWNBZTEsNTU5NWM3YjktMDE1Yi00NzU0LWE0MzYtYTczMWQxYjVmYTZlLCIsInVucSI6IjU1OTVjN2I5LTAxNWItNDc1NC1hNDM2LWE3MzFkMWI1ZmE2ZSJ9fQ==' /tiPGm=EE59EA965B8242C4A6D2247B53FD4743IE /ukjYoYsHH=26d6757310acc1e0b33a4d3bada30b76 /tOvdulK=1_34_04_10 /RppKetCFK=1.34.4.10 /hsZosTq=1400591798 /czSXVWUv=http://stats.clientdemostack.com /GgxZoSR=http://errors.clientdemostack.com /giKxZUQ=http://js.clientdemostack.com /KnGsmi=ie /YylzXDJkE /comtgSxKp='http://update.clientdemostack.com/ie_co ... pdate.json' /ldwqMeEj='task' /SQYYGPDAa=''
C:\WINDOWS\tasks\d4e590bb-8214-4c59-8429-13fb7d7180b5-2.job - C:\Program Files (x86)\Sense\d4e590bb-8214-4c59-8429-13fb7d7180b5-2.exe /KwLSfiV /BNSOW='Sense' /HZbtpM=48292 /mUUnDGbr='000805' /wtLUN='0' /cDyCH='eyJkYXRhIjp7ImRhdGUiOiJFNUt3c210eWNBZTEsNTU5NWM3YjktMDE1Yi00NzU0LWE0MzYtYTczMWQxYjVmYTZlLCIsInVucSI6IjU1OTVjN2I5LTAxNWItNDc1NC1hNDM2LWE3MzFkMWI1ZmE2ZSJ9fQ==' /tiPGm=EE59EA965B8242C4A6D2247B53FD4743IE /ukjYoYsHH=26d6757310acc1e0b33a4d3bada30b76 /tOvdulK=1_34_04_10 /hsZosTq=1400591798 /czSXVWUv=http://stats.clientdemostack.com /GgxZoSR=http://errors.clientdemostack.com /DiNzW=11111111-1111-1111-1111-110411821192 /KnGsmi=ie /YylzXDJkE /comtgSxKp='http://update.clientdemostack.com/ie_en ... pdate.json' /ldwqMeEj='task' /SQYYGPDAa=''
C:\WINDOWS\tasks\d4e590bb-8214-4c59-8429-13fb7d7180b5-3.job - C:\Program Files (x86)\Sense\d4e590bb-8214-4c59-8429-13fb7d7180b5-3.exe /sLqHCnF=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
C:\WINDOWS\tasks\d4e590bb-8214-4c59-8429-13fb7d7180b5-4.job - C:\Program Files (x86)\Sense\d4e590bb-8214-4c59-8429-13fb7d7180b5-4.exe /BhEQVzt /BNSOW='Sense' /Fsqwaryji='C:\Program Files (x86)\Sense\48292.xpi' /HZbtpM=48292 /mUUnDGbr='000805' /wtLUN='0' /cDyCH='eyJkYXRhIjp7ImRhdGUiOiJFNUt3c210eWNBZTEsNTU5NWM3YjktMDE1Yi00NzU0LWE0MzYtYTczMWQxYjVmYTZlLCIsInVucSI6IjU1OTVjN2I5LTAxNWItNDc1NC1hNDM2LWE3MzFkMWI1ZmE2ZSJ9fQ==' /tiPGm=EE59EA965B8242C4A6D2247B53FD4743IE /ukjYoYsHH=26d6757310acc1e0b33a4d3bada30b76 /tOvdulK=1_34_04_10 /RppKetCFK=1.34.4.10 /hsZosTq=1400591798 /czSXVWUv=http://stats.clientdemostack.com /GgxZoSR=http://errors.clientdemostack.com /cWsUxgAdy=300 /iAKXh=143f44cf-d99c-4e45-8cd9-ef929de77aa8@bdbf6038-0097-480c-8d8e-fc48e28131a8.com /XKRpiT=0.94 /LAuXjYKUK=a143f44cfd99c4e458cd9ef929de77aa8bdbf60380097480c8d8efc48e28131a8com48292 /yZRbmwvPB=https://w9u6a2p6.ssl.hwcdn.net/plugin/f ... /48292.rdf /ZkXTo='Sense' /bJmfDhS='.' /cuvEJFfx='Object Browser' /KnGsmi=ie /YylzXDJkE /PGivmcuzh /zsilm /comtgSxKp='http://update.clientdemostack.com/ff_ag ... pdate.json' /ldwqMeEj='task' /SQYYGPDAa=''
C:\WINDOWS\tasks\d4e590bb-8214-4c59-8429-13fb7d7180b5-5.job - C:\Program Files (x86)\Sense\d4e590bb-8214-4c59-8429-13fb7d7180b5-5.exe /rawdata=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
C:\WINDOWS\tasks\d4e590bb-8214-4c59-8429-13fb7d7180b5-6.job - C:\Program Files (x86)\Sense\Sense-nova.exe /rawdata=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
C:\WINDOWS\tasks\d4e590bb-8214-4c59-8429-13fb7d7180b5-7.job - C:\Program Files (x86)\Sense\Sense-nova.exe /BNSOW='Sense' /HZbtpM==48292 /mUUnDGbr='000805' /wtLUN='0' /cDyCH='eyJkYXRhIjp7ImRhdGUiOiJFNUt3c210eWNBZTEsNTU5NWM3YjktMDE1Yi00NzU0LWE0MzYtYTczMWQxYjVmYTZlLCIsInVucSI6IjU1OTVjN2I5LTAxNWItNDc1NC1hNDM2LWE3MzFkMWI1ZmE2ZSJ9fQ==' /tiPGm=EE59EA965B8242C4A6D2247B53FD4743IE /ukjYoYsHH=26d6757310acc1e0b33a4d3bada30b76 /tOvdulK=1_34_04_10 /RppKetCFK=1.34.4.10 /hsZosTq=1400591798 /czSXVWUv=http://stats.clientdemostack.com /GgxZoSR=http://errors.clientdemostack.com /giKxZUQ=http://js.clientdemostack.com /KnGsmi=ie /QJNTQTUj /GUjBoYkYU='nova' /comtgSxKp='http://update.clientdemostack.com/novar ... pdate.json' /ldwqMeEj='task' /SQYYGPDAa=''
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-408076529-4275691943-932605528-1002Core.job - C:\Users\Tomáš\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-408076529-4275691943-932605528-1002UA.job - C:\Users\Tomáš\AppData\Local\Facebook\Update\FacebookUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineCore.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineUA.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\SPBIW_UpdateTask_Time_3831343734303930342d4137345a376c453278345a41.job - C:\WINDOWS\system32\wscript.exe //B "C:\ProgramData\ShopperPro\spbihe.js" spbiu.exe /invoke /f:check_services /l:0
=========Mozilla firefox=========
ProfilePath - C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\tg7wyvdt.default
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "https://www.seznam.cz/"
prefs.js - "keyword.URL" - false
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 15.0.0.246 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_246.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10]
"Description"=globalUpdate Update
"Path"=C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4]
"Description"=globalUpdate Update
"Path"=C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 15.0.0.246 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_15_0_0_246.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL
C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\tg7wyvdt.default\extensions\
143f44cf-d99c-4e45-8cd9-ef929de77aa8@bdbf6038-0097-480c-8d8e-fc48e28131a8.com
{746505DC-0E21-4667-97F8-72EA6BCF5EEF}
C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\tg7wyvdt.default\searchplugins\
bs-player-controlbar-b-customized-web-search.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311551110}]
iWebar - C:\Program Files (x86)\iWebar\iWebar-bho64.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411821192}]
Sense - C:\Program Files (x86)\Sense\Sense-bho64.dll [2014-05-20 702464]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}]
Shopper Pro - C:\ProgramData\ShopperPro\ShopperPro64.dll [2014-12-15 501608]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 688528]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01}]
MSS+ Identifier - C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll [2014-04-09 96128]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311551110}]
iWebar - C:\Program Files (x86)\iWebar\iWebar-bho.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411821192}]
Sense - C:\Program Files (x86)\Sense\Sense-bho.dll [2014-05-20 524288]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31264a33-a653-46c4-af49-1232c59a7da5}]
BS Player ControlBar B Toolbar - C:\Users\Tomáš\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_P.dll [2014-09-30 423744]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}]
Shopper Pro - C:\ProgramData\ShopperPro\ShopperPro.dll [2014-12-15 419176]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{31264A33-A653-46C4-AF49-1232C59A7DA5} - BS Player ControlBar B Toolbar - C:\Users\Tomáš\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_P.dll [2014-09-30 423744]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{31264a33-a653-46c4-af49-1232c59a7da5} - BS Player ControlBar B Toolbar - C:\Users\Tomáš\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_P.dll [2014-09-30 423744]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2013-03-05 2876816]
"RtsFT"=C:\WINDOWS\RTFTrack.exe [2013-04-10 6339656]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [2013-02-04 899680]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SACpl.exe [2012-06-13 1647616]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2013-11-29 17097200]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2013-11-29 193008]
"BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2010-03-13 112512]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2013-01-25 131712]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-10-28 3675352]
"SPDriver"=C:\Program Files (x86)\ShopperPro\JSDriver\1.38.0.1436\jsdrv.exe [2014-12-15 3224576]
"Facebook Update"=C:\Users\Tomáš\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-06-26 138096]
"MiPhoneManager"=C:\Users\Tomáš\AppData\Local\MiPhoneManager\main\MiPhoneHelper.exe [2014-11-21 147728]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2012-04-19 217088]
"Intel AppUp(SM) center"=C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [2012-07-12 155488]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"SPDriver"=C:\Program Files (x86)\ShopperPro\JSDriver\1.38.0.1436\jsdrv.exe [2014-12-15 3224576]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-07-04 766688]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2013-01-25 131712]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
GamePark klient 2.lnk - C:\Program Files\GamePark2\gpcl.exe
McAfee Security Scan Plus.lnk - C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableCAD"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"midi2"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-12-20 15:04:17 ----D---- C:\Program Files\trend micro
2014-12-20 15:04:16 ----D---- C:\rsit
2014-12-15 01:34:09 ----D---- C:\Xiaomi
2014-12-15 01:25:58 ----D---- C:\ProgramData\Thunder Network
2014-12-15 01:18:53 ----A---- C:\WINDOWS\system32\WinUSBCoInstaller2.dll
2014-12-15 01:12:24 ----D---- C:\Users\Tomáš\AppData\Roaming\Xiaomi
2014-12-14 21:56:21 ----A---- C:\WINDOWS\system32\poqexec.exe
2014-12-14 21:56:20 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2014-12-11 13:28:30 ----D---- C:\WINDOWS\system32\appraiser
2014-12-11 02:23:42 ----A---- C:\WINDOWS\SYSWOW64\DeviceSetupStatusProvider.dll
2014-12-11 02:23:42 ----A---- C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
2014-12-11 02:23:23 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2014-12-11 02:23:23 ----A---- C:\WINDOWS\system32\crypt32.dll
2014-12-11 02:23:21 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2014-12-11 02:23:21 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2014-12-11 02:23:20 ----A---- C:\WINDOWS\system32\appraiser.dll
2014-12-11 02:23:20 ----A---- C:\WINDOWS\system32\aepic.dll
2014-12-11 02:23:19 ----A---- C:\WINDOWS\system32\invagent.dll
2014-12-11 02:23:19 ----A---- C:\WINDOWS\system32\aeinv.dll
2014-12-11 02:23:18 ----A---- C:\WINDOWS\system32\generaltel.dll
2014-12-11 02:23:18 ----A---- C:\WINDOWS\system32\devinv.dll
2014-12-11 02:23:17 ----A---- C:\WINDOWS\system32\aepdu.dll
2014-12-11 02:23:15 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2014-12-11 02:23:15 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2014-12-11 02:22:53 ----AC---- C:\WINDOWS\system32\drivers\sdbus.sys
2014-12-11 02:22:53 ----AC---- C:\WINDOWS\system32\drivers\intelpep.sys
2014-12-11 02:22:53 ----AC---- C:\WINDOWS\system32\drivers\dumpsd.sys
2014-12-11 02:22:53 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2014-12-11 02:22:51 ----A---- C:\WINDOWS\system32\mshtml.dll
2014-12-11 02:22:50 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2014-12-11 02:22:46 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2014-12-11 02:22:46 ----A---- C:\WINDOWS\system32\ieframe.dll
2014-12-11 02:22:45 ----A---- C:\WINDOWS\system32\wininet.dll
2014-12-11 02:22:45 ----A---- C:\WINDOWS\system32\jscript9.dll
2014-12-11 02:22:44 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2014-12-11 02:22:44 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2014-12-11 02:22:44 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2014-12-11 02:22:44 ----A---- C:\WINDOWS\system32\urlmon.dll
2014-12-11 02:22:44 ----A---- C:\WINDOWS\system32\iertutil.dll
2014-12-11 02:22:43 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2014-12-11 02:22:43 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2014-12-11 02:22:43 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2014-12-11 02:22:42 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2014-12-11 02:22:42 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2014-12-11 02:22:42 ----A---- C:\WINDOWS\system32\msfeeds.dll
2014-12-11 02:22:42 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2014-12-11 02:22:41 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2014-12-11 02:22:41 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2014-12-11 02:22:41 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2014-12-11 02:22:41 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2014-12-11 02:22:41 ----A---- C:\WINDOWS\system32\webcheck.dll
2014-12-11 02:22:41 ----A---- C:\WINDOWS\system32\vbscript.dll
2014-12-11 02:22:41 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2014-12-11 02:22:41 ----A---- C:\WINDOWS\system32\iepeers.dll
2014-12-11 02:22:41 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2014-12-11 02:22:41 ----A---- C:\WINDOWS\system32\dxtrans.dll
2014-12-11 02:22:40 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2014-12-11 02:22:40 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2014-12-11 02:22:40 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2014-12-11 02:22:40 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2014-12-11 02:22:40 ----A---- C:\WINDOWS\system32\mshtmled.dll
2014-12-11 02:22:40 ----A---- C:\WINDOWS\system32\jscript.dll
2014-12-11 02:22:40 ----A---- C:\WINDOWS\system32\inetcomm.dll
2014-12-09 19:02:06 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerInstaller.exe
2014-12-09 13:34:41 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-12-03 15:27:14 ----D---- C:\Program Files\McAfee Security Scan
2014-12-01 14:05:10 ----D---- C:\ProgramData\McAfee Security Scan
2014-12-01 14:05:10 ----D---- C:\ProgramData\McAfee
2014-11-26 23:49:54 ----D---- C:\Program Files (x86)\Tbccint
2014-11-26 23:49:50 ----D---- C:\ProgramData\Tbccint
2014-11-26 23:49:41 ----D---- C:\Users\Tomáš\AppData\Roaming\BSplayer Pro
2014-11-26 23:49:41 ----D---- C:\Users\Tomáš\AppData\Roaming\BSplayer
2014-11-26 23:49:32 ----D---- C:\Program Files (x86)\Webteh
2014-11-26 23:36:53 ----D---- C:\Users\Tomáš\AppData\Roaming\Mozilla
2014-11-26 23:36:47 ----D---- C:\ProgramData\Mozilla
2014-11-26 23:36:47 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-11-25 17:41:10 ----D---- C:\Users\Tomáš\AppData\Roaming\WinRAR
======List of files/folders modified in the last 1 month======
2014-12-20 15:04:17 ----RD---- C:\Program Files
2014-12-20 15:04:13 ----D---- C:\WINDOWS\Prefetch
2014-12-20 15:00:00 ----D---- C:\WINDOWS\system32\sru
2014-12-20 14:55:48 ----RD---- C:\WINDOWS\System32
2014-12-20 14:55:48 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2014-12-20 14:55:47 ----D---- C:\WINDOWS\Inf
2014-12-20 14:53:15 ----D---- C:\WINDOWS\Temp
2014-12-20 13:46:35 ----D---- C:\WINDOWS\system32\Tasks
2014-12-20 00:41:28 ----AD---- C:\ProgramData\Temp
2014-12-20 00:28:06 ----D---- C:\WINDOWS\system32\NDF
2014-12-19 13:28:23 ----SHD---- C:\System Volume Information
2014-12-19 13:12:35 ----D---- C:\WINDOWS\Microsoft.NET
2014-12-18 11:33:22 ----D---- C:\WINDOWS\system32\config
2014-12-18 11:26:56 ----D---- C:\WINDOWS\WinSxS
2014-12-18 11:26:56 ----D---- C:\WINDOWS\CbsTemp
2014-12-17 21:51:24 ----D---- C:\WINDOWS\AppReadiness
2014-12-17 10:51:23 ----HD---- C:\Program Files\WindowsApps
2014-12-16 12:26:34 ----D---- C:\Program Files\Common Files\ShopperPro
2014-12-16 12:25:50 ----D---- C:\Program Files (x86)\ShopperPro
2014-12-15 17:42:05 ----D---- C:\WINDOWS\SysWOW64
2014-12-15 01:25:58 ----HD---- C:\ProgramData
2014-12-15 01:23:59 ----D---- C:\WINDOWS\system32\DriverStore
2014-12-13 16:27:00 ----D---- C:\WINDOWS\rescache
2014-12-11 17:07:57 ----D---- C:\WINDOWS\system32\catroot
2014-12-11 13:28:30 ----SD---- C:\WINDOWS\system32\CompatTel
2014-12-11 13:28:30 ----SD---- C:\ProgramData\Microsoft
2014-12-11 13:28:30 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2014-12-11 13:28:30 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2014-12-11 13:28:30 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2014-12-11 13:28:30 ----D---- C:\WINDOWS\system32\cs-CZ
2014-12-11 13:28:27 ----D---- C:\WINDOWS\system32\drivers
2014-12-11 13:28:26 ----D---- C:\WINDOWS\PolicyDefinitions
2014-12-11 13:28:26 ----D---- C:\Program Files\Internet Explorer
2014-12-11 13:28:26 ----D---- C:\Program Files (x86)\Internet Explorer
2014-12-11 13:14:32 ----D---- C:\WINDOWS\system32\MRT
2014-12-11 13:10:07 ----A---- C:\WINDOWS\system32\MRT.exe
2014-12-11 02:20:21 ----D---- C:\WINDOWS\system32\catroot2
2014-12-10 20:14:21 ----D---- C:\WINDOWS\LiveKernelReports
2014-12-09 15:07:29 ----RD---- C:\Program Files (x86)
2014-12-01 14:05:37 ----SD---- C:\Users\Tomáš\AppData\Roaming\Microsoft
2014-12-01 14:05:04 ----D---- C:\WINDOWS\Tasks
2014-11-26 22:10:48 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 amd_sata;amd_sata; C:\WINDOWS\System32\drivers\amd_sata.sys [2012-11-30 80552]
R0 amd_xata;amd_xata; C:\WINDOWS\System32\drivers\amd_xata.sys [2012-11-30 26280]
R0 amdkmpfd;@oem13.inf,%AMDKMPFD_svcdesc%;AMD PCI Root Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmpfd.sys [2013-02-14 37472]
R0 LHDmgr;LHDmgr; C:\WINDOWS\System32\DRIVERS\LhdX64.sys [2013-11-29 39008]
R1 dtsoftbus01;@oem58.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [2014-05-20 283064]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2014-04-30 71680]
R2 AODDriver4.2;AODDriver4.2; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2012-04-09 57472]
R2 SPDRIVER_1.38.0.1436;SPDRIVER_1.38.0.1436; \??\C:\Program Files (x86)\ShopperPro\JSDriver\1.38.0.1436\jsdrv.sys [2014-12-15 52584]
R3 ACPIVPC;@oem55.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\WINDOWS\System32\drivers\AcpiVpc.sys [2013-11-29 33560]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2014-07-21 13209088]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2014-07-21 626688]
R3 athr;@oem10.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\system32\DRIVERS\athw8x.sys [2013-03-25 3776000]
R3 AtiHDAudioService;@oem2.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdW86.sys [2013-04-23 98744]
R3 BTATH_BUS;@oem60.inf,%BTATH_BUS.SVCDESC%;Qualcomm Atheros Bluetooth Bus; C:\WINDOWS\System32\drivers\btath_bus.sys [2013-01-25 34384]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2014-04-28 599240]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-03-18 81920]
R3 CnxtHdAudService;@oem6.inf,%UAAFunctionDriverForHdAudio.SvcDesc%;Conexant UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\CHDRT64.sys [2013-02-26 1680992]
R3 ETD;@oem8.inf,%PS2DeviceDesc%;ELAN PS/2 Port Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys [2013-02-27 355664]
R3 L1C;@netl1c63x64.inf,%L1C.Service.DispName%;NDIS Miniport – ovladač pro řadič Qualcomm Atheros AR81xx PCI-E Ethernet; C:\WINDOWS\system32\DRIVERS\L1C63x64.sys [2013-06-18 129224]
R3 rtsuvc;@oem39.inf,%rtsuvc.DeviceDesc%;Lenovo EasyCamera; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [2013-04-10 8243272]
R3 SPBIUpdd;ShopperPro UpdateD; \??\C:\Program Files\Common Files\ShopperPro\spbiw.sys [2014-12-15 41856]
R3 usbfilter;AMD USB Filter Driver; C:\WINDOWS\system32\DRIVERS\usbfilter.sys [2012-08-28 58536]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2014-04-30 38912]
S2 AODDriver4.2.0;AODDriver4.2.0; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2012-04-09 57472]
S2 APXACC;AppEx Networks Accelerator LWF; C:\WINDOWS\system32\DRIVERS\appexDrv.sys [2013-04-18 219360]
S3 AthBTPort;@oem5.inf,%BTHSUPPORT.SvcDesc%;Qualcomm Atheros Virtual Bluetooth Class; C:\WINDOWS\system32\DRIVERS\btath_flt.sys [2013-01-25 89168]
S3 BTATH_A2DP;@oem4.inf,%BTATH_A2DP.SvcDesc%;Bluetooth A2DP Audio Driver; C:\WINDOWS\system32\drivers\btath_a2dp.sys [2013-01-25 346192]
S3 btath_avdt;@oem4.inf,%btath_avdt.SvcDesc%;Qualcomm Atheros Bluetooth AVDT Service; C:\WINDOWS\system32\drivers\btath_avdt.sys [2013-01-25 115280]
S3 BTATH_HCRP;@oem7.inf,%BTATH_HCRP.SvcDesc%;Bluetooth HCRP Server driver; C:\WINDOWS\System32\drivers\btath_hcrp.sys [2013-01-25 179432]
S3 BTATH_LWFLT;@oem16.inf,%BTATH_LWFLT%;Bluetooth LWFLT Device; C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys [2013-01-25 77464]
S3 BTATH_RCP;@oem11.inf,%BTATH_RCP%;Bluetooth AVRCP Device; C:\WINDOWS\System32\drivers\btath_rcp.sys [2013-01-25 136424]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2013-08-22 53248]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2014-03-18 226304]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2014-07-24 118272]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-07-24 1200640]
S3 dg_ssudbus;@oem64.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2014-01-22 108800]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2014-03-18 167424]
S3 RSUSBVSTOR;@oem59.inf,%RSUSBVSTOR.SvcDesc%;RtsUVStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUVStor.sys [2013-03-18 327752]
S3 ssudmdm;@oem66.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2014-01-22 206080]
S3 ssudserd;@oem67.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Diagnostic Serial Port(DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudserd.sys [2014-01-22 206080]
S3 WinUsb;@winusb.inf,%WinUSB_SvcDesc%;Ovladač WinUsb; C:\WINDOWS\system32\DRIVERS\WinUsb.sys [2013-08-22 78848]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2014-07-21 239616]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2013-04-25 361984]
R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2013-01-25 227456]
R2 CxAudMsg;Conexant Audio Message Service; C:\windows\system32\CxAudMsg64.exe [2012-12-03 202400]
R2 SPBIUpd;ShopperPro Update; C:\Program Files\Common Files\ShopperPro\spbiu.exe [2014-12-15 2346880]
R2 TBSrv;Toolbar Service; C:\Program Files (x86)\Tbccint\ToolbarService\ToolbarService.exe [2014-09-30 350528]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S2 globalUpdate;globalUpdate Update Service (globalUpdate); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-05-20 68608]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-19 116648]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-12-09 267440]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 globalUpdatem;globalUpdate Update Service (globalUpdatem); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-05-20 68608]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-19 116648]
S3 McComponentHostService;McAfee Security Scan Component Host Service; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [2014-04-09 289256]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 51456888]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-12-09 114800]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 174440]
-----------------EOF-----------------
Re: Reklamy všude, vyskakují, příjíždějí..
Zdravim 
Je tam toho hodne
Odinstalujte McAfee Security Scan
Stahnete AdwCleaner https://toolslib.net/downloads/finish/1/ a ulozte ho na plochu.
Ukoncete vsechny programy, jinak to AdwCleaner udela za vas.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Kliknete na Scan a pockejte, az kontrola dobehne.
Pak kliknete na Clean
Program zacne pracovat (muze dojit k restartu pc) a vyplivne log (pripadne bude zde C:\AdwCleaner\AdwCleaner [S?].txt ). Ten mi sem zkopirujte.
Postupujte podle navodu kolegy
Postupujte podle navodu kolegy

Je tam toho hodne



Ukoncete vsechny programy, jinak to AdwCleaner udela za vas.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Kliknete na Scan a pockejte, az kontrola dobehne.
Pak kliknete na Clean
Program zacne pracovat (muze dojit k restartu pc) a vyplivne log (pripadne bude zde C:\AdwCleaner\AdwCleaner [S?].txt ). Ten mi sem zkopirujte.

vyosek píše:Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
- Ulozte nejlepe na plochu
- Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
- Probehne vytvoreni zalohy a nasledne prohledavani
- Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte

vyosek píše:Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
- Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
- Do okna vlozte skript nize
Kód: Vybrat vše
autoclean; autoclean; resethosts; emptyclsid; IEdefaults; FFdefaults; CHRdefaults; emptyIEcache; emptyFFcache; emptyCHRcache; emptyalltemp; emptyflash; emptyjava; emptyrecycle.bin;
- Nasledne kliknete na Run Script
- PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: Reklamy všude, vyskakují, příjíždějí..
# AdwCleaner v4.105 - Report created 20/12/2014 at 15:36:26
# Updated 08/12/2014 by Xplode
# Database : 2014-12-08.2 [Local]
# Operating System : Windows 8.1 (64 bits)
# Username : Tomáš - THOMASO
# Running from : C:\Users\Tomáš\Desktop\adwcleaner_4.105.exe
# Option : Clean
***** [ Services ] *****
[#] Service Deleted : globalUpdate
[#] Service Deleted : globalUpdatem
Service Deleted : SPBIUpd
Service Deleted : SPBIUpdd
Service Deleted : TBSrv
Service Deleted : YouTubeAcceleratorService
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\ShopperPro
Folder Deleted : C:\ProgramData\Tbccint
Folder Deleted : C:\Program Files (x86)\globalUpdate
Folder Deleted : C:\Program Files (x86)\Sense
Folder Deleted : C:\Program Files (x86)\ShopperPro
Folder Deleted : C:\Program Files (x86)\Tbccint
Folder Deleted : C:\Program Files (x86)\YouTube Accelerator
Folder Deleted : C:\Users\TOM~1\AppData\Local\Temp\BS_Player_ControlBar_B
Folder Deleted : C:\Users\Public\Documents\Goobzo
Folder Deleted : C:\Users\Public\Documents\ShopperPro
Folder Deleted : C:\Users\Tomáš\AppData\Local\globalUpdate
Folder Deleted : C:\Users\Tomáš\AppData\Local\Tbccint
Folder Deleted : C:\Users\Tomáš\AppData\LocalLow\iWebar
Folder Deleted : C:\Users\Tomáš\AppData\LocalLow\PriceGong
Folder Deleted : C:\Users\Tomáš\AppData\LocalLow\Sense
Folder Deleted : C:\Users\Tomáš\AppData\LocalLow\Tbccint
Folder Deleted : C:\Users\Tomáš\AppData\LocalLow\BS_Player_ControlBar_B
Folder Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\tg7wyvdt.default\Extensions\{746505DC-0E21-4667-97F8-72EA6BCF5EEF}
Folder Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\tg7wyvdt.default\Extensions\143f44cf-d99c-4e45-8cd9-ef929de77aa8@bdbf6038-0097-480c-8d8e-fc48e28131a8.com
Folder Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\cigiagpbkapepgklncnajbakkpkopmam
Folder Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\dfohdbmjdkfijghgklbickfnaepghgba
[/!\] Not Deleted ( Junction ) : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\cigiagpbkapepgklncnajbakkpkopmam
[/!\] Not Deleted ( Junction ) : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\dfohdbmjdkfijghgklbickfnaepghgba
File Deleted : C:\END
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\tg7wyvdt.default\searchplugins\bs-player-controlbar-b-customized-web-search.xml
File Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_api.ciuvo.com_0.localstorage
File Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_api.ciuvo.com_0.localstorage-journal
File Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage
File Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal
File Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage
File Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage-journal
***** [ Scheduled Tasks ] *****
Task Deleted : globalUpdateUpdateTaskMachineCore
Task Deleted : globalUpdateUpdateTaskMachineUA
Task Deleted : ShopperPro
Task Deleted : ShopperProJSUpd
Task Deleted : SPDriver
Task Deleted : YTAUpdate_logon
Task Deleted : c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-1
Task Deleted : c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-2
Task Deleted : c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-3
Task Deleted : c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-4
Task Deleted : c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-5
Task Deleted : c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-6
Task Deleted : c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-7
Task Deleted : d4e590bb-8214-4c59-8429-13fb7d7180b5-1
Task Deleted : d4e590bb-8214-4c59-8429-13fb7d7180b5-2
Task Deleted : d4e590bb-8214-4c59-8429-13fb7d7180b5-3
Task Deleted : d4e590bb-8214-4c59-8429-13fb7d7180b5-4
Task Deleted : d4e590bb-8214-4c59-8429-13fb7d7180b5-5
Task Deleted : d4e590bb-8214-4c59-8429-13fb7d7180b5-6
Task Deleted : d4e590bb-8214-4c59-8429-13fb7d7180b5-7
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.superfish.com
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ShopperPro.DLL
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Key Deleted : HKLM\SOFTWARE\Classes\ShopperPro.ShopperProBHO
Key Deleted : HKLM\SOFTWARE\Classes\ShopperPro.ShopperProBHO.1
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SPDriver]
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IECT3329621
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0035510.BHO
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0035510.BHO.1
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0035510.Sandbox
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0035510.Sandbox.1
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0048292.BHO
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0048292.BHO.1
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0048292.Sandbox
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0048292.Sandbox.1
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT3329621
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{58FDA6AF-67D8-4198-B7CD-94B17532C8D5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3A1209A4-8568-40F0-9B5E-4A06A2A06417}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{31264A33-A653-46C4-AF49-1232C59A7DA5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110311551110}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110411821192}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220322552210}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220422822292}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03C0AC00-86DE-4B55-81BA-2E7CD61C51B1}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355555510}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550455825592}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366556610}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660466826692}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{8FB1A663-2820-468B-95C4-5060A4C5F413}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440344554410}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440444824492}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31264A33-A653-46C4-AF49-1232C59A7DA5}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311551110}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411821192}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{31264A33-A653-46C4-AF49-1232C59A7DA5}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110311551110}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110411821192}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{31264A33-A653-46C4-AF49-1232C59A7DA5}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110311551110}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3A1209A4-8568-40F0-9B5E-4A06A2A06417}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{31264A33-A653-46C4-AF49-1232C59A7DA5}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{31264A33-A653-46C4-AF49-1232C59A7DA5}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{31264A33-A653-46C4-AF49-1232C59A7DA5}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{3A1209A4-8568-40F0-9B5E-4A06A2A06417}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{31264A33-A653-46C4-AF49-1232C59A7DA5}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110311551110}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110411821192}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220322552210}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220422822292}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{03C0AC00-86DE-4B55-81BA-2E7CD61C51B1}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355555510}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550455825592}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366556610}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660466826692}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311551110}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411821192}
Value Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{31264A33-A653-46C4-AF49-1232C59A7DA5}]
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3C1262F5-95DB-4368-8C17-F059F6206862}
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\GlobalUpdate
Key Deleted : HKCU\Software\Goobzo
Key Deleted : HKCU\Software\InstalledBrowserExtensions
Key Deleted : HKCU\Software\ShopperPro
Key Deleted : HKCU\Software\Tbccint
Key Deleted : HKCU\Software\Tbccint_HKLM
Key Deleted : HKCU\Software\AppDataLow\Toolbar
Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
Key Deleted : HKCU\Software\AppDataLow\Software\iWebar
Key Deleted : HKCU\Software\AppDataLow\Software\PriceGong
Key Deleted : HKCU\Software\AppDataLow\Software\Sense
Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar
Key Deleted : HKCU\Software\AppDataLow\Software\Tbccint
Key Deleted : HKCU\Software\AppDataLow\Software\TbccintSearchScopes
Key Deleted : HKCU\Software\AppDataLow\Software\BS_Player_ControlBar_B
Key Deleted : HKLM\SOFTWARE\Conduit
Key Deleted : HKLM\SOFTWARE\GlobalUpdate
Key Deleted : HKLM\SOFTWARE\Goobzo
Key Deleted : HKLM\SOFTWARE\InstalledBrowserExtensions
Key Deleted : HKLM\SOFTWARE\iWebar
Key Deleted : HKLM\SOFTWARE\Sense
Key Deleted : HKLM\SOFTWARE\ShopperPro
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\iWebar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Sense
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ShopperPro
Key Deleted : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions
Key Deleted : [x64] HKLM\SOFTWARE\Sense
Key Deleted : [x64] HKLM\SOFTWARE\ShopperPro
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\speedbit.com
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\trovi.com
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.trovi.com
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17416
-\\ Mozilla Firefox v34.0.5 (x86 cs)
[tg7wyvdt.default\prefs.js] - Line Deleted : user_pref("CT3329621_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\":1417042521337,\"isWithState\":\"\",\"timeFromStart\":0,\"timeFromPrev\":0}]");
[tg7wyvdt.default\prefs.js] - Line Deleted : user_pref("Smartbar.TBHomepagesList", "");
[tg7wyvdt.default\prefs.js] - Line Deleted : user_pref("Smartbar.TBSearchEngineList", "");
[tg7wyvdt.default\prefs.js] - Line Deleted : user_pref("Smartbar.TBSearchUrlList", "");
[tg7wyvdt.default\prefs.js] - Line Deleted : user_pref("Smartbar.keywordURLSelectedCTID", "CT3329621");
[tg7wyvdt.default\prefs.js] - Line Deleted : user_pref("extensions.a143f44cfd99c4e458cd9ef929de77aa8bdbf60380097480c8d8efc48e28131a8com48292.48292.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssf[...]
[tg7wyvdt.default\prefs.js] - Line Deleted : user_pref("extensions.crossrider.bic", "149f11c7cfc479abf21192201cda85fe");
[tg7wyvdt.default\prefs.js] - Line Deleted : user_pref("smartbar.addressBarOwnerCTID", "CT3329621");
[tg7wyvdt.default\prefs.js] - Line Deleted : user_pref("smartbar.conduitHomepageList", "hxxp://trovi.com/?UM=4&ctid=CT3329621&SearchSource=13&CUI=UN29678006613189624");
[tg7wyvdt.default\prefs.js] - Line Deleted : user_pref("smartbar.conduitSearchAddressUrlList", "hxxp://trovi.com/ResultsExt.aspx?ctid=CT3329621&SearchSource=2&CUI=UN29678006613189624&UM=4&q=");
[tg7wyvdt.default\prefs.js] - Line Deleted : user_pref("smartbar.defaultSearchOwnerCTID", "CT3329621");
[tg7wyvdt.default\prefs.js] - Line Deleted : user_pref("smartbar.homePageOwnerCTID", "CT3329621");
[tg7wyvdt.default\prefs.js] - Line Deleted : user_pref("smartbar.homepageList", "hxxp://trovi.com/?UM=4&ctid=CT3329621&SearchSource=13&CUI=UN29678006613189624");
[tg7wyvdt.default\prefs.js] - Line Deleted : user_pref("smartbar.machineId", "3NDXK4S3ASUNWUPBJVXAMWJETLT9CTAOXZ07+SZEFCWZQ26/JP4B3ZFGP/KLLGPPA8K5OXLK/KKXASGNU1ZNDG");
[tg7wyvdt.default\prefs.js] - Line Deleted : user_pref("smartbar.searchAddressUrlList", "hxxp://trovi.com/ResultsExt.aspx?ctid=CT3329621&SearchSource=2&CUI=UN29678006613189624&UM=4&q=");
-\\ Google Chrome v39.0.2171.95
*************************
AdwCleaner[R0].txt - [19726 octets] - [20/12/2014 15:34:06]
AdwCleaner[S0].txt - [19240 octets] - [20/12/2014 15:36:26]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [19301 octets] ##########
# Updated 08/12/2014 by Xplode
# Database : 2014-12-08.2 [Local]
# Operating System : Windows 8.1 (64 bits)
# Username : Tomáš - THOMASO
# Running from : C:\Users\Tomáš\Desktop\adwcleaner_4.105.exe
# Option : Clean
***** [ Services ] *****
[#] Service Deleted : globalUpdate
[#] Service Deleted : globalUpdatem
Service Deleted : SPBIUpd
Service Deleted : SPBIUpdd
Service Deleted : TBSrv
Service Deleted : YouTubeAcceleratorService
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\ShopperPro
Folder Deleted : C:\ProgramData\Tbccint
Folder Deleted : C:\Program Files (x86)\globalUpdate
Folder Deleted : C:\Program Files (x86)\Sense
Folder Deleted : C:\Program Files (x86)\ShopperPro
Folder Deleted : C:\Program Files (x86)\Tbccint
Folder Deleted : C:\Program Files (x86)\YouTube Accelerator
Folder Deleted : C:\Users\TOM~1\AppData\Local\Temp\BS_Player_ControlBar_B
Folder Deleted : C:\Users\Public\Documents\Goobzo
Folder Deleted : C:\Users\Public\Documents\ShopperPro
Folder Deleted : C:\Users\Tomáš\AppData\Local\globalUpdate
Folder Deleted : C:\Users\Tomáš\AppData\Local\Tbccint
Folder Deleted : C:\Users\Tomáš\AppData\LocalLow\iWebar
Folder Deleted : C:\Users\Tomáš\AppData\LocalLow\PriceGong
Folder Deleted : C:\Users\Tomáš\AppData\LocalLow\Sense
Folder Deleted : C:\Users\Tomáš\AppData\LocalLow\Tbccint
Folder Deleted : C:\Users\Tomáš\AppData\LocalLow\BS_Player_ControlBar_B
Folder Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\tg7wyvdt.default\Extensions\{746505DC-0E21-4667-97F8-72EA6BCF5EEF}
Folder Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\tg7wyvdt.default\Extensions\143f44cf-d99c-4e45-8cd9-ef929de77aa8@bdbf6038-0097-480c-8d8e-fc48e28131a8.com
Folder Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\cigiagpbkapepgklncnajbakkpkopmam
Folder Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\dfohdbmjdkfijghgklbickfnaepghgba
[/!\] Not Deleted ( Junction ) : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\cigiagpbkapepgklncnajbakkpkopmam
[/!\] Not Deleted ( Junction ) : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\dfohdbmjdkfijghgklbickfnaepghgba
File Deleted : C:\END
File Deleted : C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\tg7wyvdt.default\searchplugins\bs-player-controlbar-b-customized-web-search.xml
File Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_api.ciuvo.com_0.localstorage
File Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_api.ciuvo.com_0.localstorage-journal
File Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage
File Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal
File Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage
File Deleted : C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage-journal
***** [ Scheduled Tasks ] *****
Task Deleted : globalUpdateUpdateTaskMachineCore
Task Deleted : globalUpdateUpdateTaskMachineUA
Task Deleted : ShopperPro
Task Deleted : ShopperProJSUpd
Task Deleted : SPDriver
Task Deleted : YTAUpdate_logon
Task Deleted : c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-1
Task Deleted : c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-2
Task Deleted : c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-3
Task Deleted : c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-4
Task Deleted : c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-5
Task Deleted : c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-6
Task Deleted : c4c8aa3a-1eaa-4b43-b0b7-6c11df4daae7-7
Task Deleted : d4e590bb-8214-4c59-8429-13fb7d7180b5-1
Task Deleted : d4e590bb-8214-4c59-8429-13fb7d7180b5-2
Task Deleted : d4e590bb-8214-4c59-8429-13fb7d7180b5-3
Task Deleted : d4e590bb-8214-4c59-8429-13fb7d7180b5-4
Task Deleted : d4e590bb-8214-4c59-8429-13fb7d7180b5-5
Task Deleted : d4e590bb-8214-4c59-8429-13fb7d7180b5-6
Task Deleted : d4e590bb-8214-4c59-8429-13fb7d7180b5-7
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.superfish.com
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ShopperPro.DLL
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Key Deleted : HKLM\SOFTWARE\Classes\ShopperPro.ShopperProBHO
Key Deleted : HKLM\SOFTWARE\Classes\ShopperPro.ShopperProBHO.1
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SPDriver]
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IECT3329621
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0035510.BHO
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0035510.BHO.1
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0035510.Sandbox
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0035510.Sandbox.1
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0048292.BHO
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0048292.BHO.1
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0048292.Sandbox
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0048292.Sandbox.1
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT3329621
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{58FDA6AF-67D8-4198-B7CD-94B17532C8D5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3A1209A4-8568-40F0-9B5E-4A06A2A06417}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{31264A33-A653-46C4-AF49-1232C59A7DA5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110311551110}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110411821192}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220322552210}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220422822292}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03C0AC00-86DE-4B55-81BA-2E7CD61C51B1}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355555510}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550455825592}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366556610}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660466826692}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{8FB1A663-2820-468B-95C4-5060A4C5F413}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440344554410}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440444824492}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31264A33-A653-46C4-AF49-1232C59A7DA5}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311551110}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411821192}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{31264A33-A653-46C4-AF49-1232C59A7DA5}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110311551110}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110411821192}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{31264A33-A653-46C4-AF49-1232C59A7DA5}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110311551110}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3A1209A4-8568-40F0-9B5E-4A06A2A06417}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{31264A33-A653-46C4-AF49-1232C59A7DA5}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{31264A33-A653-46C4-AF49-1232C59A7DA5}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{31264A33-A653-46C4-AF49-1232C59A7DA5}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{3A1209A4-8568-40F0-9B5E-4A06A2A06417}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{31264A33-A653-46C4-AF49-1232C59A7DA5}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110311551110}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110411821192}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220322552210}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220422822292}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{03C0AC00-86DE-4B55-81BA-2E7CD61C51B1}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355555510}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550455825592}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366556610}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660466826692}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311551110}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411821192}
Value Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{31264A33-A653-46C4-AF49-1232C59A7DA5}]
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3C1262F5-95DB-4368-8C17-F059F6206862}
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\GlobalUpdate
Key Deleted : HKCU\Software\Goobzo
Key Deleted : HKCU\Software\InstalledBrowserExtensions
Key Deleted : HKCU\Software\ShopperPro
Key Deleted : HKCU\Software\Tbccint
Key Deleted : HKCU\Software\Tbccint_HKLM
Key Deleted : HKCU\Software\AppDataLow\Toolbar
Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
Key Deleted : HKCU\Software\AppDataLow\Software\iWebar
Key Deleted : HKCU\Software\AppDataLow\Software\PriceGong
Key Deleted : HKCU\Software\AppDataLow\Software\Sense
Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar
Key Deleted : HKCU\Software\AppDataLow\Software\Tbccint
Key Deleted : HKCU\Software\AppDataLow\Software\TbccintSearchScopes
Key Deleted : HKCU\Software\AppDataLow\Software\BS_Player_ControlBar_B
Key Deleted : HKLM\SOFTWARE\Conduit
Key Deleted : HKLM\SOFTWARE\GlobalUpdate
Key Deleted : HKLM\SOFTWARE\Goobzo
Key Deleted : HKLM\SOFTWARE\InstalledBrowserExtensions
Key Deleted : HKLM\SOFTWARE\iWebar
Key Deleted : HKLM\SOFTWARE\Sense
Key Deleted : HKLM\SOFTWARE\ShopperPro
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\iWebar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Sense
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ShopperPro
Key Deleted : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions
Key Deleted : [x64] HKLM\SOFTWARE\Sense
Key Deleted : [x64] HKLM\SOFTWARE\ShopperPro
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\speedbit.com
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\trovi.com
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.trovi.com
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17416
-\\ Mozilla Firefox v34.0.5 (x86 cs)
[tg7wyvdt.default\prefs.js] - Line Deleted : user_pref("CT3329621_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\":1417042521337,\"isWithState\":\"\",\"timeFromStart\":0,\"timeFromPrev\":0}]");
[tg7wyvdt.default\prefs.js] - Line Deleted : user_pref("Smartbar.TBHomepagesList", "");
[tg7wyvdt.default\prefs.js] - Line Deleted : user_pref("Smartbar.TBSearchEngineList", "");
[tg7wyvdt.default\prefs.js] - Line Deleted : user_pref("Smartbar.TBSearchUrlList", "");
[tg7wyvdt.default\prefs.js] - Line Deleted : user_pref("Smartbar.keywordURLSelectedCTID", "CT3329621");
[tg7wyvdt.default\prefs.js] - Line Deleted : user_pref("extensions.a143f44cfd99c4e458cd9ef929de77aa8bdbf60380097480c8d8efc48e28131a8com48292.48292.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssf[...]
[tg7wyvdt.default\prefs.js] - Line Deleted : user_pref("extensions.crossrider.bic", "149f11c7cfc479abf21192201cda85fe");
[tg7wyvdt.default\prefs.js] - Line Deleted : user_pref("smartbar.addressBarOwnerCTID", "CT3329621");
[tg7wyvdt.default\prefs.js] - Line Deleted : user_pref("smartbar.conduitHomepageList", "hxxp://trovi.com/?UM=4&ctid=CT3329621&SearchSource=13&CUI=UN29678006613189624");
[tg7wyvdt.default\prefs.js] - Line Deleted : user_pref("smartbar.conduitSearchAddressUrlList", "hxxp://trovi.com/ResultsExt.aspx?ctid=CT3329621&SearchSource=2&CUI=UN29678006613189624&UM=4&q=");
[tg7wyvdt.default\prefs.js] - Line Deleted : user_pref("smartbar.defaultSearchOwnerCTID", "CT3329621");
[tg7wyvdt.default\prefs.js] - Line Deleted : user_pref("smartbar.homePageOwnerCTID", "CT3329621");
[tg7wyvdt.default\prefs.js] - Line Deleted : user_pref("smartbar.homepageList", "hxxp://trovi.com/?UM=4&ctid=CT3329621&SearchSource=13&CUI=UN29678006613189624");
[tg7wyvdt.default\prefs.js] - Line Deleted : user_pref("smartbar.machineId", "3NDXK4S3ASUNWUPBJVXAMWJETLT9CTAOXZ07+SZEFCWZQ26/JP4B3ZFGP/KLLGPPA8K5OXLK/KKXASGNU1ZNDG");
[tg7wyvdt.default\prefs.js] - Line Deleted : user_pref("smartbar.searchAddressUrlList", "hxxp://trovi.com/ResultsExt.aspx?ctid=CT3329621&SearchSource=2&CUI=UN29678006613189624&UM=4&q=");
-\\ Google Chrome v39.0.2171.95
*************************
AdwCleaner[R0].txt - [19726 octets] - [20/12/2014 15:34:06]
AdwCleaner[S0].txt - [19240 octets] - [20/12/2014 15:36:26]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [19301 octets] ##########
Re: Reklamy všude, vyskakují, příjíždějí..
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.4.0 (11.29.2014:1)
OS: Windows 8.1 x64
Ran by Tom ç on so 20. 12. 2014 at 15:39:56,84
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
~~~ Files
~~~ Folders
~~~ FireFox
Successfully deleted the following from C:\Users\Tom ç\AppData\Roaming\mozilla\firefox\profiles\tg7wyvdt.default\prefs.js
user_pref("valueApps.storage.mam_gk_userId", "34616261613038642D353362332D343935632D613736312D623431336366666162353432");
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on so 20. 12. 2014 at 15:43:42,65
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.4.0 (11.29.2014:1)
OS: Windows 8.1 x64
Ran by Tom ç on so 20. 12. 2014 at 15:39:56,84
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
~~~ Files
~~~ Folders
~~~ FireFox
Successfully deleted the following from C:\Users\Tom ç\AppData\Roaming\mozilla\firefox\profiles\tg7wyvdt.default\prefs.js
user_pref("valueApps.storage.mam_gk_userId", "34616261613038642D353362332D343935632D613736312D623431336366666162353432");
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on so 20. 12. 2014 at 15:43:42,65
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Re: Reklamy všude, vyskakují, příjíždějí..
Celý výpis ze Zoek se mi sem nevejde .. není možnost ho poslat někam jinam ? 

- cernohous13
- VIP in memoriam
- Příspěvky: 8721
- Registrován: 09 pro 2006 06:19
- Bydliště: Jablonec nad Nisou
- Kontaktovat uživatele:
Re: Reklamy všude, vyskakují, příjíždějí..
Ahoj, rozděl do více příspěvků - kolega si to přebere 

Doporučení:
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím
-------------------------------------------------------------------------------------------------
> Podpora fóra <
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím

-------------------------------------------------------------------------------------------------
> Podpora fóra <
Re: Reklamy všude, vyskakují, příjíždějí..
Presne jak pise kolega, nejlepe je vlozit to primo sem, klidne na vice casti. Je to pak pro mne nejprehlednejsi. Kdyby to bylo nejak extremne dlouhe, tak mi to poslete na mail (adresa v mem podpisu). Ale tam se muze stat, ze neco prehlednu, z toho poznamkoveho bloku se cte spatne 
18.1. pro neaktivitu
http://forum.viry.cz/viewtopic.php?f=12&t=123975

18.1. pro neaktivitu

Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).