Takze vse snad probehlo uspesne
Vlastne pri psani " netdiag /test:winsock /v > c:\bbb.txt " do cmd se ozvala hlaska:
C:\Windows\system32>netdiag /test:winsock /v > c:\bbb.txt
netdiag není názvem vnitřního ani vnějšího příkazu,
spustitelného programu nebo dávkového souboru.
soubor bbb.txt jsem nasel ale byl prazdny a 0b, takze sem ho smazal
odkaz na soubor aaa.txt
http://leteckaposta.cz/124626374
Jinak vam chci podekovat, zkousel jsem internet, a funguje. Po napsani
netsh winsock reset
a
netsh int ip reset resetlog.txt
se internet rozjel, ackoli Microsoft Teredo, sitovy adapter, stale ukazuje chybu 10, coz mi ale nejak nevadi
vkladam log z AdwCleaner
# AdwCleaner v4.112 - Logfile created 22/03/2015 at 15:44:26
# Updated 09/03/2015 by Xplode
# Database : 2015-03-22.1 [Server]
# Operating system : Windows 7 Home Premium Service Pack 1 (x64)
# Username : Toshiba - TOSHIBA-TOSH
# Running from : C:\Users\Toshiba\Desktop\adwcleaner_4.112.exe
# Option : Cleaning
***** [ Services ] *****
[#] Service Deleted : DatamngrCoordinator
Service Deleted : wStLib64
[#] Service Deleted : WinRing0_1_2_0
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\Ask
[#] Folder Deleted : C:\ProgramData\BitGuard
[#] Folder Deleted : C:\ProgramData\Browser Manager
[#] Folder Deleted : C:\ProgramData\BrowserProtect
Folder Deleted : C:\ProgramData\Goobzo
Folder Deleted : C:\ProgramData\ShopperPro
Folder Deleted : C:\ProgramData\wincert
Folder Deleted : C:\Program Files (x86)\Ask.com
Folder Deleted : C:\Program Files (x86)\buenosearch LTD
Folder Deleted : C:\Program Files (x86)\MediaPlayerV1
Folder Deleted : C:\Program Files (x86)\MediaViewerV1
Folder Deleted : C:\Program Files (x86)\MediaViewV1
Folder Deleted : C:\Program Files (x86)\Mobogenie
Folder Deleted : C:\Program Files (x86)\Object Browser
Folder Deleted : C:\Program Files (x86)\Sense
Folder Deleted : C:\Program Files (x86)\ShopperPro
Folder Deleted : C:\Program Files (x86)\Torntv V9.0
Folder Deleted : C:\Program Files (x86)\TornTV.com
Folder Deleted : C:\Program Files (x86)\YouTube Accelerator
Folder Deleted : C:\Windows\installer\{86d4b82a-abed-442a-be86-96357b70f4fe}
Folder Deleted : C:\Users\Toshiba\AppData\Local\Temp\buenosearch LTD
Folder Deleted : C:\Users\Toshiba\AppData\Local\Temp\DCE
Folder Deleted : C:\Users\Toshiba\AppData\Local\Temp\mt_ffx
Folder Deleted : C:\Program Files\DCE
Folder Deleted : C:\Users\Toshiba\AppData\Local\apn
Folder Deleted : C:\Users\Toshiba\AppData\Local\genienext
Folder Deleted : C:\Users\Toshiba\AppData\Local\iLivid
Folder Deleted : C:\Users\Toshiba\AppData\Local\ilividmoviestoolbardla
Folder Deleted : C:\Users\Toshiba\AppData\Local\Mobogenie
Folder Deleted : C:\Users\Toshiba\AppData\Local\shopwit
Folder Deleted : C:\Users\Toshiba\AppData\Local\SwvUpdater
Folder Deleted : C:\Users\Toshiba\AppData\LocalLow\ilividmoviestoolbardla
Folder Deleted : C:\Users\Toshiba\AppData\LocalLow\Object Browser
Folder Deleted : C:\Users\Toshiba\AppData\LocalLow\Sense
Folder Deleted : C:\Users\Toshiba\AppData\Roaming\BabSolution
Folder Deleted : C:\Users\Toshiba\AppData\Roaming\buenosearch LTD
Folder Deleted : C:\Users\Toshiba\AppData\Roaming\HoolappforAndroid
Folder Deleted : C:\Users\Toshiba\AppData\Roaming\newnext.me
Folder Deleted : C:\Users\Toshiba\AppData\Roaming\OpenCandy
Folder Deleted : C:\Users\Toshiba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mobogenie
Folder Deleted : C:\Users\Toshiba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TornTV.com
Folder Deleted : C:\Users\Toshiba\Documents\Mobogenie
Folder Deleted : C:\Users\Toshiba\AppData\Roaming\Mozilla\Firefox\Profiles\lr6rkdbb.default\Extensions\{746505DC-0E21-4667-97F8-72EA6BCF5EEF}
Folder Deleted : C:\Users\Toshiba\AppData\Roaming\Mozilla\Firefox\Profiles\lr6rkdbb.default\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
Folder Deleted : C:\Users\Toshiba\AppData\Roaming\Mozilla\Firefox\Profiles\lr6rkdbb.default\Extensions\
9321b276-2c2e-4c5f-bd04-b8118e512707@c0c8a2d6-3275-4cac-a0b2-52e936311db9.com
Folder Deleted : C:\Users\Toshiba\AppData\Roaming\Mozilla\Firefox\Profiles\lr6rkdbb.default\Extensions\
143f44cf-d99c-4e45-8cd9-ef929de77aa8@bdbf6038-0097-480c-8d8e-fc48e28131a8.com
Folder Deleted : C:\Users\Toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\dfohdbmjdkfijghgklbickfnaepghgba
Folder Deleted : C:\Users\Toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\kfgaibfbmkjgmimhbbaikfnpkkjkpoan
Folder Deleted : C:\Users\Toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbmegnmpleoagolcnjnejdacakedpcgd
Folder Deleted : C:\Users\Toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob
[/!\] Not Deleted ( Junction ) : C:\Users\Toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\dfohdbmjdkfijghgklbickfnaepghgba
File Deleted : C:\Users\Toshiba\AppData\Local\Temp\Uninstall.exe
File Deleted : C:\Windows\System32\drivers\wStLib64.sys
File Deleted : C:\Users\Toshiba\daemonprocess.txt
File Deleted : C:\Users\Toshiba\AppData\Roaming\Mozilla\Firefox\Profiles\lr6rkdbb.default\user.js
File Deleted : C:\Users\Toshiba\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.buenosearch.com_0.localstorage
File Deleted : C:\Users\Toshiba\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage
File Deleted : C:\Users\Toshiba\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_inst.shoppingate.info_0.localstorage
File Deleted : C:\Users\Toshiba\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage
File Deleted : C:\Users\Toshiba\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-devtools_devtools_0.localstorage
File Deleted : C:\Users\Toshiba\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pafkbggdmjlpgkdkcbjmhmfcdpncadgh_0.localstorage
File Deleted : C:\Users\Toshiba\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxps_inst.shoppingate.info_0.localstorage
***** [ Scheduled tasks ] *****
Task Deleted : EPUpdater
Task Deleted : Hoolapp For Android
Task Deleted : Hoolapp Init
Task Deleted : Object Browser-chromeinstaller
Task Deleted : Object Browser-codedownloader
Task Deleted : Object Browser-enabler
Task Deleted : Object Browser-firefoxinstaller
Task Deleted : Object Browser-updater
Task Deleted : Scheduled Update for Ask Toolbar
Task Deleted : Sense-codedownloader
Task Deleted : Sense-enabler
Task Deleted : Sense-updater
Task Deleted : ShopperPro
Task Deleted : ShopperProJSUpd
Task Deleted : SPDriver
Task Deleted : Shop-wit
Task Deleted : ShopperProUpd
Task Deleted : 00e1002c-7029-4aa8-96af-5a4f99b861b7-1
Task Deleted : 00e1002c-7029-4aa8-96af-5a4f99b861b7-3
Task Deleted : 00e1002c-7029-4aa8-96af-5a4f99b861b7-4
Task Deleted : 00e1002c-7029-4aa8-96af-5a4f99b861b7-5
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaojmikegpiepcfdkkjaplodkpfmlo
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\acfoobbgoakpihljnfedbcfaipcdlfhk
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\ojhagnahfpegocdhlopgljpaafeogmcc
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaabcbmongicmdegkmmfgdickgnnob
Key Deleted : HKCU\Software\MICROSOFT\INTERNET EXPLORER\DOMSTORAGE\superfish.com
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\
www.superfish.com
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\
www.superfish.com
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ShopperPro.DLL
Key Deleted : HKLM\SOFTWARE\Classes\buenosearch.buenosearchappCore
Key Deleted : HKLM\SOFTWARE\Classes\buenosearch.buenosearchappCore.1
Key Deleted : HKLM\SOFTWARE\Classes\buenosearch.buenosearchdskBnd
Key Deleted : HKLM\SOFTWARE\Classes\buenosearch.buenosearchdskBnd.1
Key Deleted : HKLM\SOFTWARE\Classes\buenosearch.buenosearchHlpr
Key Deleted : HKLM\SOFTWARE\Classes\buenosearch.buenosearchHlpr.1
Key Deleted : HKLM\SOFTWARE\Classes\esrv.buenosearchESrvc
Key Deleted : HKLM\SOFTWARE\Classes\esrv.buenosearchESrvc.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\Mobogenie.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Value Deleted : HKLM\SYSTEM\ControlSet001\Control\Session Manager\AppCertDlls [x64]
Value Deleted : HKLM\SYSTEM\ControlSet001\Control\Session Manager\AppCertDlls [x86]
Value Deleted : HKLM\SYSTEM\ControlSet002\Control\Session Manager\AppCertDlls [x64]
Value Deleted : HKLM\SYSTEM\ControlSet002\Control\Session Manager\AppCertDlls [x86]
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\ShopperPro.exe
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{37EB75F2-7392-4DBE-B5AD-147EC6D7BF5F}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{58FDA6AF-67D8-4198-B7CD-94B17532C8D5}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{67FCE87F-F3EF-4A3C-87C2-8BD46E68807B}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C007DADD-132A-624C-088E-59EE6CF0711F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5B6E533F-F78F-4525-B316-312BAF1295D1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{828DC97A-2277-4E10-92A9-4907FA0922A9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8322EB6E-B594-41F6-A30B-CF3F800E1874}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F1C81E40-2485-4DB6-8C9D-04BD596B281E}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03C0AC00-86DE-4B55-81BA-2E7CD61C51B1}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{33575A26-D9CF-40C6-8A3E-116F17201C7F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{67FCE87F-F3EF-4A3C-87C2-8BD46E68807B}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{8FB1A663-2820-468B-95C4-5060A4C5F413}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{E6772887-C1E1-405E-94BB-D8760A1CF8DF}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EC2BAE47-25AF-4CE9-9E78-10627A49C9EA}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F1C81E40-2485-4DB6-8C9D-04BD596B281E}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{828DC97A-2277-4E10-92A9-4907FA0922A9}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F1C81E40-2485-4DB6-8C9D-04BD596B281E}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{828DC97A-2277-4E10-92A9-4907FA0922A9}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A40DC6C5-79D0-4CA8-A185-8FF989AF1115}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F1C81E40-2485-4DB6-8C9D-04BD596B281E}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0CE54B23-E41E-4F18-A84A-24C15AFE4B0E}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4584F24D-30A4-4790-9880-CED43470C43B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{708D0DD7-FBC0-4437-B525-C098F450A62C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EC2BAE47-25AF-4CE9-9E78-10627A49C9EA}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{828DC97A-2277-4E10-92A9-4907FA0922A9}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{EC2BAE47-25AF-4CE9-9E78-10627A49C9EA}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{00000000-6E41-4FD3-8538-502F5495E5FC}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{03C0AC00-86DE-4B55-81BA-2E7CD61C51B1}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{33575A26-D9CF-40C6-8A3E-116F17201C7F}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0CE54B23-E41E-4F18-A84A-24C15AFE4B0E}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4584F24D-30A4-4790-9880-CED43470C43B}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{23C97085-9DF8-445C-A7CC-D4CC2B9B47DA}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Deleted : HKCU\Software\1ClickDownload
Key Deleted : HKCU\Software\APN DTX
Key Deleted : HKCU\Software\APN
Key Deleted : HKCU\Software\Ask.com
Key Deleted : HKCU\Software\BABSOLUTION
Key Deleted : HKCU\Software\buenosearch LTD
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\DataMngr
Key Deleted : HKCU\Software\GOffers
Key Deleted : HKCU\Software\Goobzo
Key Deleted : HKCU\Software\ilividmoviestoolbardla
Key Deleted : HKCU\Software\InstallCore
Key Deleted : HKCU\Software\InstalledBrowserExtensions
Key Deleted : HKCU\Software\ShopperPro
Key Deleted : HKCU\Software\UpdateStar
Key Deleted : HKCU\Software\AppDataLow\Software\AskToolbar
Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
Key Deleted : HKCU\Software\AppDataLow\Software\Object Browser
Key Deleted : HKCU\Software\AppDataLow\Software\Sense
Key Deleted : HKLM\SOFTWARE\DataMngr
Key Deleted : HKLM\SOFTWARE\Goobzo
Key Deleted : HKLM\SOFTWARE\InstalledBrowserExtensions
Key Deleted : HKLM\SOFTWARE\MediaPlayerV1
Key Deleted : HKLM\SOFTWARE\MediaViewerV1
Key Deleted : HKLM\SOFTWARE\MediaViewV1
Key Deleted : HKLM\SOFTWARE\Object Browser
Key Deleted : HKLM\SOFTWARE\Sense
Key Deleted : HKLM\SOFTWARE\ShopperPro
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\shopwit
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\1ClickDownload
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Bueno Chrome Toolbar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ilividmoviestoolbardlaIE
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Mobogenie
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Object Browser
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Sense
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ShopperPro
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Key Deleted : [x64] HKLM\SOFTWARE\Goobzo
Key Deleted : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions
Key Deleted : HKLM\SOFTWARE\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF
Key Deleted : HKLM\SOFTWARE\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFE535C35F99574E8340BFA75BF92C2
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ask.com
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\icq.com
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\
www.search.ask.com
***** [ Web browsers ] *****
-\\ Internet Explorer v11.0.9600.17631
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Secondary Start Pages]
-\\ Mozilla Firefox v28.0 (cs)
[lr6rkdbb.default\prefs.js] - Line Deleted : user_pref("browser.search.defaultengine", "Ask.com");
[lr6rkdbb.default\prefs.js] - Line Deleted : user_pref("browser.search.defaultenginename", "Ask.com");
[lr6rkdbb.default\prefs.js] - Line Deleted : user_pref("browser.search.order.1", "Ask.com");
[lr6rkdbb.default\prefs.js] - Line Deleted : user_pref("extensions.asktb.ff-original-keyword-url", "");
-\\ Google Chrome v40.0.2214.115
[C:\Users\Toshiba\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://en.softonic.com/s/{searchTerms}
[C:\Users\Toshiba\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://ratemyserver.net/index.php?iname={searchTerms}&page=item_db&quick=1&isearch=Search
[C:\Users\Toshiba\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://
www.buenosearch.com/?q={searchTerms}&ba ... &as=3&ac=0
-\\ Chromium v
[C:\Users\Toshiba\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://en.softonic.com/s/{searchTerms}
[C:\Users\Toshiba\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://ratemyserver.net/index.php?iname={searchTerms}&page=item_db&quick=1&isearch=Search
[C:\Users\Toshiba\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://
www.buenosearch.com/?q={searchTerms}&ba ... &as=3&ac=0
-\\ Opera v28.0.1750.40
[C:\Users\Toshiba\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://en.softonic.com/s/{searchTerms}
[C:\Users\Toshiba\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://ratemyserver.net/index.php?iname={searchTerms}&page=item_db&quick=1&isearch=Search
[C:\Users\Toshiba\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://
www.buenosearch.com/?q={searchTerms}&ba ... &as=3&ac=0
*************************
AdwCleaner[R0].txt - [24251 bytes] - [22/03/2015 15:41:25]
AdwCleaner[S0].txt - [23610 bytes] - [22/03/2015 15:44:26]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [23670 bytes] ##########
a hned pod nej vkladam novy log FRST
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015
Ran by Toshiba (administrator) on TOSHIBA-TOSH on 22-03-2015 15:50:18
Running from C:\Users\Toshiba\Desktop
Loaded Profiles: Toshiba (Available profiles: Toshiba)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Opera)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
(TOSHIBA Corporation) C:\Windows\System32\TODDSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe
(Toshiba Europe GmbH) C:\Program Files\TOSHIBA\Registration\ToshibaReminder.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe
(forum.viry.cz) C:\Users\Toshiba\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(Microsoft Corporation) C:\Windows\SysWOW64\PING.EXE
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [TosNC] => C:\Program Files\Toshiba\BulletinBoard\TosNcCore.exe [595816 2010-04-23] (TOSHIBA Corporation)
HKLM\...\Run: [TosReelTimeMonitor] => C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe [38304 2010-07-09] (TOSHIBA Corporation)
HKLM\...\Run: [Toshiba TEMPRO] => C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe [1050072 2010-05-11] (Toshiba Europe GmbH)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11101800 2010-07-28] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2120808 2010-07-28] (Realtek Semiconductor)
HKLM\...\Run: [TPwrMain] => C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [566184 2010-09-28] (TOSHIBA Corporation)
HKLM\...\Run: [SmoothView] => C:\Program Files\Toshiba\SmoothView\SmoothView.exe [570680 2009-08-13] (TOSHIBA Corporation)
HKLM\...\Run: [00TCrdMain] => C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [915320 2010-05-10] (TOSHIBA Corporation)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2052392 2010-03-10] (Synaptics Incorporated)
HKLM\...\Run: [SmartFaceVWatcher] => C:\Program Files\Toshiba\SmartFaceV\SmartFaceVWatcher.exe [238080 2009-10-19] (TOSHIBA Corporation)
HKLM\...\Run: [TosSENotify] => C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [709976 2010-02-05] (TOSHIBA Corporation)
HKLM\...\Run: [TosVolRegulator] => C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe [24376 2009-11-11] (TOSHIBA Corporation)
HKLM\...\Run: [Toshiba Registration] => C:\Program Files\Toshiba\Registration\ToshibaReminder.exe [136136 2010-04-19] (Toshiba Europe GmbH)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2120808 2010-07-28] (Realtek Semiconductor)
HKLM\...\Run: [RtsCM] => C:\Windows\RTSCM64.EXE [147160 2014-07-10] (Realtek Semiconductor Corp.)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2010-10-05] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [SVPWUTIL] => C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe [352256 2010-03-03] (TOSHIBA)
HKLM-x32\...\Run: [HWSetup] => C:\Program Files\TOSHIBA\Utilities\HWSetup.exe [423936 2010-03-04] (TOSHIBA Electronics, Inc.)
HKLM-x32\...\Run: [KeNotify] => C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe [34160 2010-08-15] (TOSHIBA CORPORATION)
HKLM-x32\...\Run: [TWebCamera] => C:\Program Files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe [2454840 2010-05-01] (TOSHIBA CORPORATION.)
HKLM-x32\...\Run: [ToshibaServiceStation] => C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe [1294136 2009-10-06] (TOSHIBA Corporation)
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-4070645214-4084749353-2593867723-1000\...\MountPoints2: F - F:\Setup\rsrc\autorun.exe
HKU\S-1-5-21-4070645214-4084749353-2593867723-1000\...\MountPoints2: {f24c1104-6eda-11e3-bd44-b870f4c7c3f8} - G:\setup.exe
HKU\S-1-5-18\...\Run: [TOSHIBA Online Product Information] => C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe [4581280 2010-03-03] (TOSHIBA)
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-4070645214-4084749353-2593867723-1000\Software\Microsoft\Internet Explorer\Main,Start Page =
https://mysearch.avg.com?cid={4AF53A54- ... 2014-04-08 15:20:15&v=18.1.9.799&pid=safeguard&sg=&sap=hp
HKU\S-1-5-21-4070645214-4084749353-2593867723-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://toshiba.msn.com
SearchScopes: HKLM -> {717BC016-6CC3-449B-A2CB-1A3DAAA750E0} URL =
http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKLM-x32 -> {291E6004-E2B8-4A57-95BC-13EF9664A506} URL =
http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-4070645214-4084749353-2593867723-1000 -> {1503C97A-B5D4-4DEB-9411-729C46884085} URL =
http://www.zbozi.cz/?q={searchTerms}&r= ... arch_13415
SearchScopes: HKU\S-1-5-21-4070645214-4084749353-2593867723-1000 -> {26C27856-0030-48F0-81F2-FDBDC0879CD1} URL =
http://www.amazon.co.uk/gp/search?ie=UT ... nkCode=ur2
SearchScopes: HKU\S-1-5-21-4070645214-4084749353-2593867723-1000 -> {281837C2-9D7E-4FDC-921D-5818CA4EE7E5} URL =
http://tv.seznam.cz/hledej?w={searchTer ... arch_13415
SearchScopes: HKU\S-1-5-21-4070645214-4084749353-2593867723-1000 -> {291E6004-E2B8-4A57-95BC-13EF9664A506} URL =
SearchScopes: HKU\S-1-5-21-4070645214-4084749353-2593867723-1000 -> {57BE1B24-4E73-4545-A6EF-CDF9484AEE94} URL =
http://slovnik.seznam.cz/?q={searchTerm ... arch_13415
SearchScopes: HKU\S-1-5-21-4070645214-4084749353-2593867723-1000 -> {65AAC993-E030-48B1-978D-8D5AD4694021} URL =
http://www.novinky.cz/hledej?w={searchT ... arch_13415
SearchScopes: HKU\S-1-5-21-4070645214-4084749353-2593867723-1000 -> {717BC016-6CC3-449B-A2CB-1A3DAAA750E0} URL =
SearchScopes: HKU\S-1-5-21-4070645214-4084749353-2593867723-1000 -> {81FF5AF3-0624-448A-A3B4-CFA852B2A175} URL =
http://search.seznam.cz/?q={searchTerms ... arch_13415
SearchScopes: HKU\S-1-5-21-4070645214-4084749353-2593867723-1000 -> {83D0FC06-2E89-439D-B879-C8C66AF8A9CE} URL =
http://encyklopedie.seznam.cz/search?q= ... arch_13415
SearchScopes: HKU\S-1-5-21-4070645214-4084749353-2593867723-1000 -> {8D1626DC-56C1-43E9-AA2F-B97FBDEC8F37} URL =
http://slovnik.seznam.cz/?q={searchTerm ... arch_13415
SearchScopes: HKU\S-1-5-21-4070645214-4084749353-2593867723-1000 -> {B5A850EB-211A-4C49-8927-FED0DED96407} URL =
http://www.firmy.cz/?q={searchTerms}&so ... arch_13415
SearchScopes: HKU\S-1-5-21-4070645214-4084749353-2593867723-1000 -> {CA1871D0-5917-479D-8A28-6B4B552CAC34} URL =
http://rover.ebay.com/rover/1/710-71511 ... earchTerms}
SearchScopes: HKU\S-1-5-21-4070645214-4084749353-2593867723-1000 -> {E7B0018C-2728-49BC-A61A-663955623883} URL =
http://www.mapy.cz/?query={searchTerms} ... arch_13415
BHO: Sense -> {11111111-1111-1111-1111-110411821192} -> C:\Program Files (x86)\Sense\Sense-bho64.dll No File
BHO: No Name -> {27B4851A-3207-45A2-B947-BE8AFE6163AB} -> No File
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
BHO: Skype add-on for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2013-04-15] (Skype Technologies S.A.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: No Name -> {11111111-1111-1111-1111-110411821192} -> No File
BHO-x32: No Name -> {27B4851A-3207-45A2-B947-BE8AFE6163AB} -> No File
BHO-x32: Search Helper -> {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} -> C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2010-05-14] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-06-17] (Oracle Corporation)
BHO-x32: Pomocná služba pro přihlášení ke službě Windows Live ID -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
BHO-x32: Windows Live Messenger Companion Helper -> {9FDDE16B-836F-4806-AB1F-1455CBEFF289} -> C:\Program Files (x86)\Windows Live\Companion\companioncore.dll [2010-09-23] (Microsoft Corporation)
BHO-x32: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-04-15] (Skype Technologies S.A.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: No Name -> {c6673938-a52b-4dc6-af05-783e7e2c8b65} -> No File
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-06-17] (Oracle Corporation)
BHO-x32: TOSHIBA Media Controller Plug-in -> {F3C88694-EFFA-4d78-B409-54B7B2535B14} -> C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll [2010-03-19] (<TOSHIBA>)
Handler-x32: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - C:\Program Files (x86)\Belarc\BelarcAdvisor\System\BAVoilaX.dll [2013-04-16] (Belarc, Inc.)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2013-04-15] (Skype Technologies S.A.)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-04-15] (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
FireFox:
========
FF ProfilePath: C:\Users\Toshiba\AppData\Roaming\Mozilla\Firefox\Profiles\lr6rkdbb.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll [2015-02-05] ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll [2015-02-05] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1207148.dll [2013-12-05] (Adobe Systems, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=10.21.2 -> C:\Windows\SysWOW64\npDeployJava1.dll [2013-06-17] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.21.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2013-06-17] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-09-23] (Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-06] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-06] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-4070645214-4084749353-2593867723-1000: @nsroblox.roblox.com/launcher -> C:\Users\Toshiba\AppData\Local\Roblox\Versions\version-6c381b4cfd5a4f96\\NPRobloxProxy.dll [2013-01-01] ( ROBLOX Corporation)
FF Plugin HKU\S-1-5-21-4070645214-4084749353-2593867723-1000: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\Toshiba\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll [2014-07-24] (Skype Limited)
FF Plugin HKU\S-1-5-21-4070645214-4084749353-2593867723-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Toshiba\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-03-23] (Unity Technologies ApS)
FF HKLM-x32\...\Firefox\Extensions: [
ext@MediaPlayerV1alpha3626.net] - C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha3626\ff
FF HKLM-x32\...\Firefox\Extensions: [
ext@MediaViewerV1alpha1052.net] - C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha1052\ff
FF HKLM-x32\...\Firefox\Extensions: [
ext@MediaViewV1alpha3877.net] - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha3877\ff
FF HKLM-x32\...\Thunderbird\Extensions: [
msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: No Name - C:\Users\Toshiba\AppData\Roaming\Mozilla\Firefox\Profiles\lr6rkdbb.default\extensions\{746505DC-0E21-4667-97F8-72EA6BCF5EEF} [Not Found]
FF Extension: No Name - C:\Users\Toshiba\AppData\Roaming\Mozilla\Firefox\Profiles\lr6rkdbb.default\extensions\
9321b276-2c2e-4c5f-bd04-b8118e512707@c0c8a2d6-3275-4cac-a0b2-52e936311db9.com [Not Found]
FF Extension: No Name - C:\Users\Toshiba\AppData\Roaming\Mozilla\Firefox\Profiles\lr6rkdbb.default\extensions\
143f44cf-d99c-4e45-8cd9-ef929de77aa8@bdbf6038-0097-480c-8d8e-fc48e28131a8.com [Not Found]
FF Extension: No Name - C:\Users\Toshiba\AppData\Roaming\Mozilla\Firefox\Profiles\lr6rkdbb.default\extensions\
ascsurfingprotection@iobit.com [Not Found]
FF Extension: No Name - C:\Program Files (x86)\IObit Apps Toolbar\FF [Not Found]
FF Extension: No Name - C:\Program Files (x86)\McAfee\SiteAdvisor [Not Found]
Chrome:
=======
CHR HomePage: Default -> hxxp://
www.buenosearch.com/?babsrc=HP_ss&mntrI ... 3&tsp=5212
CHR StartupUrls: Default -> "hxxp://
www.buenosearch.com/?babsrc=HP_ss&mntrI ... 3&tsp=5212", "
https://mysearch.avg.com?cid={4AF53A54- ... 2014-04-08 15:20:15&v=18.1.9.799&pid=safeguard&sg=&sap=hp"
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Profile: C:\Users\Toshiba\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\Toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-07-22]
CHR Extension: (Google Drive) - C:\Users\Toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-03-05]
CHR Extension: (Seznam Lištička - Email) - C:\Users\Toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2015-03-05]
CHR Extension: (YouTube) - C:\Users\Toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-03-05]
CHR Extension: (Media View) - C:\Users\Toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcllmcijmanccnojaidkfelbepckgffe [2014-07-20]
CHR Extension: (AdBlock) - C:\Users\Toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-08-18]
CHR Extension: (Skype Click to Call) - C:\Users\Toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2014-07-20]
CHR Extension: (No Name) - C:\Users\Toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-23]
CHR Extension: (Seznam Lištička - Rychlá volba) - C:\Users\Toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2014-07-22]
CHR Extension: (Gmail) - C:\Users\Toshiba\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-05]
CHR HKLM-x32\...\Chrome\Extension: [baglapjmljpheogokiiknebdfcoilnag] - C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha1052\ch\MediaViewerV1alpha1052.crx [Not Found]
CHR HKLM-x32\...\Chrome\Extension: [dcllmcijmanccnojaidkfelbepckgffe] - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha3877\ch\MediaViewV1alpha3877.crx [Not Found]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-04-15]
Opera:
=======
OPR Extension: (Adblock Plus) - C:\Users\Toshiba\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp [2014-08-21]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S4 IconMan_R; C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe [1811456 2010-08-27] (Realsil Microelectronics Inc.) [File not signed]
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2013-07-05] ()
S3 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [124368 2010-05-11] (Toshiba Europe GmbH)
S4 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe [2409272 2013-12-10] (TuneUp Software)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2013-12-27] (Disc Soft Ltd)
R3 rtsuvc; C:\Windows\System32\DRIVERS\rtsuvc.sys [8873688 2014-07-10] (Realtek Semiconductor Corp.)
S3 Tosrfcom; No ImagePath
S3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys [11880 2012-09-19] (TuneUp Software)
U2 DCE; No ImagePath
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-03-22 15:50 - 2015-03-22 15:51 - 00023173 _____ () C:\Users\Toshiba\Desktop\FRST.txt
2015-03-22 15:49 - 2015-03-22 15:49 - 00029696 _____ () C:\Users\Toshiba\AppData\Local\MSGBOX.EXE
2015-03-22 15:49 - 2015-03-22 15:49 - 00015327 _____ () C:\Users\Toshiba\Desktop\LM.bat
2015-03-22 15:47 - 2015-03-22 15:47 - 00023891 _____ () C:\Users\Toshiba\Desktop\AdwCleaner[S0].txt
2015-03-22 15:41 - 2015-03-22 15:45 - 00000000 ____D () C:\AdwCleaner
2015-03-22 15:24 - 2015-03-22 15:24 - 00000000 ____D () C:\Windows\Tasks\ImCleanDisabled
2015-03-22 15:06 - 2015-03-22 15:06 - 00000099 _____ () C:\Users\Toshiba\Desktop\aaa.txt
2015-03-22 15:05 - 2015-03-22 15:01 - 02171392 _____ () C:\Users\Toshiba\Desktop\adwcleaner_4.112.exe
2015-03-22 15:05 - 2015-03-22 15:00 - 03681088 _____ (AVG Technologies CZ, s.r.o.) C:\Users\Toshiba\Desktop\avg_remover_stf_x64_2015_5501.exe
2015-03-22 12:33 - 2015-03-22 12:33 - 00000137 _____ () C:\Users\Toshiba\Desktop\enum.txt
2015-03-22 12:13 - 2015-03-22 12:13 - 00002143 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belarc Advisor.lnk
2015-03-22 12:13 - 2015-03-22 12:13 - 00000000 ____D () C:\Program Files (x86)\Belarc
2015-03-22 12:06 - 2015-03-22 15:50 - 00000000 ____D () C:\FRST
2015-03-22 12:05 - 2015-03-22 11:58 - 02095616 _____ (Farbar) C:\Users\Toshiba\Desktop\FRST64.exe
2015-03-22 12:05 - 2015-03-22 11:57 - 00112640 _____ (forum.viry.cz) C:\Users\Toshiba\Desktop\FRSTLauncher.exe
2015-03-22 12:05 - 2015-03-22 11:56 - 03823952 _____ () C:\Users\Toshiba\Desktop\advisorinstaller.exe
2015-03-09 19:29 - 2015-03-09 21:08 - 883640320 _____ () C:\Users\Toshiba\Downloads\NOVINKY!!-Odstřelovač-5-Sniper-5-Legacy-2014-DVDRip-akční--XviD-cz.avi
2015-03-06 20:27 - 2015-03-06 21:56 - 821041032 _____ () C:\Users\Toshiba\Downloads\Zeleny-srsen.cz.avi
2015-03-06 09:54 - 2015-03-06 09:54 - 00003170 _____ () C:\Windows\System32\Tasks\UNELEVATE_985
2015-03-05 19:02 - 2015-03-05 22:38 - 1927510748 _____ () C:\Users\Toshiba\Downloads\Lovec-trolů-HQ-CZ-DABING.avi
2015-03-02 18:35 - 2015-03-02 18:35 - 00000000 ____D () C:\Users\Toshiba\AppData\Local\Steam
2015-03-01 20:55 - 2015-02-16 16:20 - 00033856 ____H (LogMeIn, Inc.) C:\Windows\system32\hamachi.sys
2015-03-01 20:54 - 2015-03-01 20:54 - 00000000 ____D () C:\Users\Toshiba\AppData\Local\LogMeIn
2015-03-01 20:54 - 2015-03-01 20:54 - 00000000 ____D () C:\ProgramData\LogMeIn
2015-03-01 20:49 - 2015-03-01 20:50 - 13879350 _____ () C:\Users\Toshiba\Downloads\hamachi-setup.exe
2015-03-01 20:42 - 2015-03-01 20:42 - 00000222 _____ () C:\Users\Toshiba\Desktop\Unturned.url
2015-02-20 11:31 - 2015-03-22 15:46 - 00003640 _____ () C:\Windows\setupact.log
2015-02-20 11:31 - 2015-02-20 11:31 - 00000000 _____ () C:\Windows\setuperr.log
2015-02-20 11:29 - 2015-03-22 15:34 - 00033128 _____ () C:\Windows\PFRO.log
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-03-22 15:48 - 2013-04-27 09:32 - 00000000 ___RD () C:\Users\Toshiba\Desktop\Nová složka
2015-03-22 15:47 - 2014-08-31 20:29 - 00000000 ____D () C:\Program Files (x86)\Steam
2015-03-22 15:46 - 2014-01-10 17:05 - 00002260 _____ () C:\Windows\Tasks\Sense-firefoxinstaller.job
2015-03-22 15:46 - 2014-01-10 17:05 - 00002222 _____ () C:\Windows\Tasks\Sense-chromeinstaller.job
2015-03-22 15:46 - 2013-02-08 17:48 - 00000948 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-03-22 15:46 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-03-22 15:45 - 2013-01-25 15:11 - 00000000 ____D () C:\Users\Toshiba
2015-03-22 15:45 - 2009-07-14 05:45 - 00019248 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-03-22 15:45 - 2009-07-14 05:45 - 00019248 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-03-22 15:44 - 2009-07-14 16:18 - 04241174 _____ () C:\Windows\system32\perfh005.dat
2015-03-22 15:44 - 2009-07-14 16:18 - 01391236 _____ () C:\Windows\system32\perfc005.dat
2015-03-22 15:44 - 2009-07-14 06:13 - 04288888 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-03-22 15:35 - 2013-02-15 08:56 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-03-22 15:33 - 2010-11-22 17:21 - 00000000 ____D () C:\ProgramData\McAfee
2015-03-22 15:33 - 2010-11-22 17:21 - 00000000 ____D () C:\Program Files (x86)\McAfee
2015-03-22 15:26 - 2013-06-27 18:56 - 00000000 ____D () C:\Program Files\McAfee
2015-03-22 15:03 - 2013-02-08 17:48 - 00000952 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-03-22 15:02 - 2013-03-07 19:21 - 00000936 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4070645214-4084749353-2593867723-1000UA.job
2015-03-22 12:04 - 2013-03-07 19:21 - 00000914 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4070645214-4084749353-2593867723-1000Core.job
2015-03-21 12:16 - 2013-01-25 14:42 - 01449409 _____ () C:\Windows\WindowsUpdate.log
2015-03-16 16:00 - 2014-08-21 18:30 - 00003840 _____ () C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1408642241
2015-03-16 16:00 - 2014-08-21 18:30 - 00000000 ____D () C:\Program Files (x86)\Opera
2015-03-14 22:37 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF
2015-03-14 22:36 - 2014-06-29 13:25 - 00000000 ____D () C:\Users\Toshiba\AppData\Roaming\IObit
2015-03-14 22:36 - 2013-01-30 19:57 - 00000000 ____D () C:\Users\Toshiba\AppData\Roaming\Skype
2015-03-14 22:36 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\registration
2015-03-14 22:35 - 2015-01-29 10:01 - 00000000 ____D () C:\Users\Toshiba\Documents\call of juarez
2015-03-14 22:35 - 2014-08-27 11:02 - 00000000 ____D () C:\Users\Toshiba\AppData\Roaming\TeamViewer
2015-03-14 22:35 - 2014-08-21 18:31 - 00000000 ____D () C:\Users\Toshiba\AppData\Roaming\Opera Software
2015-03-14 22:35 - 2014-08-07 21:23 - 00000000 ____D () C:\Users\Toshiba\Desktop\Escape the Fate
2015-03-14 22:35 - 2014-07-21 14:28 - 00000000 ____D () C:\Users\Toshiba\Desktop\ElariaRO Small Client
2015-03-14 22:35 - 2014-06-06 22:35 - 00000000 ____D () C:\Users\Toshiba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MKJogo
2015-03-14 22:35 - 2014-05-06 20:48 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-03-14 22:35 - 2014-04-21 17:13 - 00000000 ____D () C:\Users\Toshiba\AppData\Roaming\Mozilla
2015-03-14 22:34 - 2015-01-29 09:45 - 00000000 ____D () C:\Program Files (x86)\Techland
2015-03-14 22:34 - 2014-08-27 11:02 - 00000000 ____D () C:\Program Files (x86)\TeamViewer
2015-03-14 22:34 - 2014-07-15 20:00 - 00000000 ____D () C:\ProgramData\Enkord
2015-03-14 22:34 - 2014-07-10 21:21 - 00000000 ____D () C:\Program Files (x86)\Capcom
2015-03-14 22:34 - 2014-06-29 13:27 - 00000000 ____D () C:\ProgramData\IObit
2015-03-14 22:34 - 2014-06-29 13:26 - 00000000 ____D () C:\Program Files (x86)\IObit
2015-03-14 22:34 - 2014-06-06 22:35 - 00000000 ____D () C:\Program Files (x86)\MKJogo
2015-03-14 22:34 - 2014-04-09 21:09 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-03-11 19:54 - 2014-01-10 16:04 - 00000000 ____D () C:\ProgramData\TEMP
2015-03-11 19:15 - 2014-07-06 09:18 - 00000000 ____D () C:\Program Files\Common Files\ShopperPro
2015-03-01 20:42 - 2013-05-26 15:37 - 00000000 ____D () C:\Users\Toshiba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2015-03-01 14:55 - 2014-07-06 09:18 - 00004250 _____ () C:\Windows\System32\Tasks\SPBIW_UpdateTask_Time_313438373237343137392d235b783432415b45345a2d6c
2015-02-20 11:31 - 2009-07-14 05:45 - 00411408 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-02-20 11:28 - 2014-06-30 15:15 - 78921728 _____ () C:\Windows\system32\config\software.iodefrag.bak
2015-02-20 11:28 - 2014-06-30 15:15 - 00688128 _____ () C:\Windows\system32\config\default.iodefrag.bak
2015-02-20 11:28 - 2014-06-30 15:15 - 00061440 _____ () C:\Windows\system32\config\sam.iodefrag.bak
2015-02-20 11:28 - 2014-06-30 15:15 - 00024576 _____ () C:\Windows\system32\config\security.iodefrag.bak
==================== Files in the root of some directories =======
2013-04-18 18:18 - 2013-04-18 18:18 - 0006111 _____ () C:\Users\Toshiba\AppData\Roaming\1574.exe
2013-04-14 10:20 - 2013-04-14 10:20 - 0000174 _____ () C:\Users\Toshiba\AppData\Roaming\1BBE.exe
2013-04-18 18:18 - 2013-04-18 18:18 - 0034944 _____ () C:\Users\Toshiba\AppData\Roaming\2E.exe
2013-04-14 09:56 - 2013-04-14 09:56 - 0000174 _____ () C:\Users\Toshiba\AppData\Roaming\711C.exe
2013-04-12 21:08 - 2013-04-12 21:08 - 0000173 _____ () C:\Users\Toshiba\AppData\Roaming\7135.exe
2013-04-18 19:21 - 2013-04-18 19:21 - 0006111 _____ () C:\Users\Toshiba\AppData\Roaming\9291.exe
2013-04-18 19:21 - 2013-04-18 19:21 - 0034944 _____ () C:\Users\Toshiba\AppData\Roaming\9E84.exe
2013-04-24 18:15 - 2013-04-24 18:15 - 0000094 _____ () C:\Users\Toshiba\AppData\Roaming\B7E9.exe
2013-04-23 13:12 - 2013-04-23 13:12 - 0000000 _____ () C:\Users\Toshiba\AppData\Roaming\C4B5.tmp
2014-02-13 21:21 - 2015-02-16 21:21 - 0000076 _____ () C:\Users\Toshiba\AppData\Roaming\WB.CFG
2015-03-22 15:49 - 2015-03-22 15:49 - 0029696 _____ () C:\Users\Toshiba\AppData\Local\MSGBOX.EXE
2014-07-10 18:59 - 2014-07-10 18:59 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2013-01-30 19:59 - 2013-01-30 19:59 - 0000056 ____H () C:\ProgramData\ezsidmv.dat
2013-01-30 20:27 - 2011-02-25 07:19 - 0000785 _____ () C:\ProgramData\HOW TO DECRYPT FILES.txt
Some content of TEMP:
====================
C:\Users\Toshiba\AppData\Local\Temp\BundleSweetIMSetup.exe
C:\Users\Toshiba\AppData\Local\Temp\Delta.exe
C:\Users\Toshiba\AppData\Local\Temp\DeltaTB.exe
C:\Users\Toshiba\AppData\Local\Temp\MybabylonTB.exe
C:\Users\Toshiba\AppData\Local\Temp\Quarantine.exe
C:\Users\Toshiba\AppData\Local\Temp\sqlite3.dll
C:\Users\Toshiba\AppData\Local\Temp\WSSetup.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-03-17 01:11
==================== End Of Log ============================