Stránka 1 z 1

Tak jsem tu zase :) A prosím o kontrolu logu prosím :)

Napsal: 24 dub 2015 22:02
od HornyCZ
Moc děkuji za vaší ochotu a předem děkuji za odpověď a snahu :)
  • Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 20-04-2015
    Ran by okayokay-pc (administrator) on VIQULINKA on 24-04-2015 21:55:41
    Running from C:\Users\okayokay-pc\Desktop
    Loaded Profiles: okayokay-pc (Available profiles: okayokay-pc)
    Platform: Windows 8.1 (X64) OS Language: Čeština (Česká republika)
    Internet Explorer Version 11 (Default browser: FF)
    Boot Mode: Normal
    Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

    ==================== Processes (Whitelisted) =================

    (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

    (ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe
    (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
    (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
    (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
    (Microsoft Corporation) C:\Windows\System32\dasHost.exe
    (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
    (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
    (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
    (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
    (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
    (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
    (Qualcomm Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
    (Intel Corporation) C:\Windows\System32\igfxpers.exe
    (Microsoft Corporation) C:\Windows\System32\StikyNot.exe
    () C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe
    (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
    (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
    (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
    (ASUS) C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe
    (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
    (ASUS) C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnWMI.exe
    (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
    (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
    (Qualcomm Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
    (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
    (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
    (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
    (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
    (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
    (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
    (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe
    (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
    (ASUS) C:\Program Files\ASUS\P4G\BatteryLife.exe
    (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
    (ASUSTek Computer Inc.) C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe
    (ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
    (ASUSTeK Computer Inc.) C:\Program Files\ASUS\ASUS VivoBook\VivoBook.exe
    (Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
    () C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe
    (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe
    (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe
    (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe
    (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe
    (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
    (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe
    (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
    (Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17477_none_fa2b7d3b9b36c7b4\TiWorker.exe


    ==================== Registry (Whitelisted) ==================

    (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

    HKLM-x32\...\Winlogon: [Userinit] [X]
    Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
    HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [129664 2012-12-28] ( (Qualcomm Atheros Commnucations))
    HKU\S-1-5-21-36292207-1243957256-28351842-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [31682144 2015-03-25] (Skype Technologies S.A.)
    HKU\S-1-5-21-36292207-1243957256-28351842-1001\...\Run: [RESTART_STICKY_NOTES] => C:\Windows\System32\StikyNot.exe [479744 2014-10-29] (Microsoft Corporation)
    HKU\S-1-5-21-36292207-1243957256-28351842-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\Bubbles.scr [788480 2014-10-29] (Microsoft Corporation)
    ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
    ShellIconOverlayIdentifiers: [AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7190} => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.10.123\ASUSWSShellExt64.dll [2012-03-13] (ASUS Cloud Corporation.)
    ShellIconOverlayIdentifiers: [AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D808} => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.10.123\ASUSWSShellExt64.dll [2012-03-13] (ASUS Cloud Corporation.)
    ShellIconOverlayIdentifiers: [AsusWSShellExt_U] -> {1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4D} => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.10.123\ASUSWSShellExt64.dll [2012-03-13] (ASUS Cloud Corporation.)
    ShellIconOverlayIdentifiers-x32: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2015-03-15] (Microsoft Corporation)
    ShellIconOverlayIdentifiers-x32: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2015-03-15] (Microsoft Corporation)
    ShellIconOverlayIdentifiers-x32: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2015-03-15] (Microsoft Corporation)

    ==================== Internet (Whitelisted) ====================

    (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

    HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
    HKU\S-1-5-21-36292207-1243957256-28351842-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/?pc=SKY2&ocid=SKY2DHP&osmkt=en-ww
    SearchScopes: HKLM-x32 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
    SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-21-36292207-1243957256-28351842-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
    SearchScopes: HKU\S-1-5-21-36292207-1243957256-28351842-1001 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
    BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-03-15] (Microsoft Corporation)
    BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
    BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
    BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-03-15] (Microsoft Corporation)
    BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2015-02-10] (Microsoft Corporation)
    BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
    BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
    BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2015-03-15] (Microsoft Corporation)
    Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-02-03] (Microsoft Corporation)
    Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
    Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
    Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
    Tcpip\Parameters: [DhcpNameServer] 89.190.65.200 89.190.64.20

    FireFox:
    ========
    FF ProfilePath: C:\Users\okayokay-pc\AppData\Roaming\Mozilla\Firefox\Profiles\zbxssnxh.default
    FF NewTab: about:newtab
    FF Homepage: about:home
    FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_17_0_0_169.dll [2015-04-14] ()
    FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
    FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_169.dll [2015-04-14] ()
    FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel Corporation)
    FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel Corporation)
    FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2014-12-14] (Microsoft Corporation)
    FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
    FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2014-12-14] (Microsoft Corporation)
    FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation)
    FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-04] (Google Inc.)
    FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-04] (Google Inc.)
    FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2014-08-03] (Adobe Systems Inc.)
    FF SearchPlugin: C:\Users\okayokay-pc\AppData\Roaming\Mozilla\Firefox\Profiles\zbxssnxh.default\searchplugins\badoo.xml [2014-09-17]
    FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
    StartMenuInternet: FIREFOX.EXE - C:\Program Files\Nightly\firefox.exe

    Chrome:
    =======
    CHR Profile: C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default
    CHR Extension: (Google Docs) - C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-03-11]
    CHR Extension: (Google Drive) - C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-03-11]
    CHR Extension: (Raindrops) - C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\bcipapbfhdnmgihoimbjiadmhpcgcnil [2014-09-30]
    CHR Extension: (YouTube) - C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-03-11]
    CHR Extension: (Google Search) - C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-03-11]
    CHR Extension: (Bookmark Manager) - C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-04-22]
    CHR Extension: (Skype Click to Call) - C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2014-03-13]
    CHR Extension: (Google Wallet) - C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-03-11]
    CHR Extension: (Gmail) - C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-03-11]
    CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14]

    ==================== Services (Whitelisted) =================

    (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

    R3 ASUS InstantOn; C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe [277120 2012-04-13] (ASUS)
    R3 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [226944 2012-12-28] (Qualcomm Atheros Commnucations) [File not signed]
    S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-29] (Microsoft Corporation)
    R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
    R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
    R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2714800 2015-02-10] (Microsoft Corporation)
    R3 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [129856 2012-06-27] (Intel Corporation)
    R3 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-06-25] (Intel Corporation)
    R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
    R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [969016 2014-11-21] (Malwarebytes Corporation)
    R3 WakeupService; C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe [45488 2012-12-20] (ASUSTek Computer Inc.)
    R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
    R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)
    R3 ZAtheros Bt and Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2012-12-28] (Atheros) [File not signed]

    ==================== Drivers (Whitelisted) ====================

    (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

    R3 ATP; C:\Windows\System32\drivers\AsusTP.sys [65784 2013-01-16] (ASUS Corporation)
    R3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2012-12-28] (Qualcomm Atheros)
    R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-09-24] (Microsoft Corporation)
    R3 kbfiltr; C:\Windows\System32\drivers\kbfiltr.sys [14992 2012-08-02] ( )
    R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2014-11-21] (Malwarebytes Corporation)
    R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [129752 2015-04-24] (Malwarebytes Corporation)
    R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2014-11-21] (Malwarebytes Corporation)
    R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)

    ==================== NetSvcs (Whitelisted) ===================

    (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
  • Additional scan result of Farbar Recovery Scan Tool (x64) Version: 20-04-2015
    Ran by okayokay-pc at 2015-04-24 21:54:49
    Running from C:\Users\okayokay-pc\Desktop
    Boot Mode: Normal
    ==========================================================


    ==================== Security Center ========================

    (If an entry is included in the fixlist, it will be removed.)

    AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

    ==================== Installed Programs ======================

    (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

    Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.169 - Adobe Systems Incorporated)
    Adobe Reader X (10.1.11) MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}) (Version: 10.1.11 - Adobe Systems Incorporated)
    Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
    Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
    Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
    Alcor Micro USB Card Reader (HKLM-x32\...\AmUStor) (Version: 3.4.117.01527 - Alcor Micro Corp.)
    Alcor Micro USB Card Reader (x32 Version: 3.4.117.01527 - Alcor Micro Corp.) Hidden
    ASUS Instant Connect (HKLM-x32\...\{89ECB85A-D933-4CEA-9116-5CBC9C2ED95B}) (Version: 1.2.8 - ASUS)
    ASUS InstantOn (HKLM-x32\...\{749F674B-2674-47E8-879C-5626A06B2A91}) (Version: 3.0.5 - ASUS)
    ASUS LifeFrame3 (HKLM-x32\...\{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}) (Version: 3.1.13 - ASUS)
    ASUS Live Update (HKLM-x32\...\{FA540E67-095C-4A1B-97BA-4D547DEC9AF4}) (Version: 3.1.8 - ASUS)
    ASUS Power4Gear Hybrid (HKLM\...\{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}) (Version: 2.1.7 - ASUS)
    ASUS S200 Product Demo (HKLM-x32\...\{5E396FE4-6110-41C9-9B1F-2F30A4A13715}) (Version: 1.0.0 - ASUS)
    ASUS Screen Saver (HKLM\...\{0FBEEDF8-30FA-4FA3-B31F-C9C7E7E8DFA2}) (Version: 1.0.1 - ASUS)
    ASUS Smart Gesture (HKLM-x32\...\{4D3286A6-F6AB-498A-82A4-E4F040529F3D}) (Version: 1.1.3 - ASUS)
    ASUS Splendid Video Enhancement Technology (HKLM-x32\...\{0969AF05-4FF6-4C00-9406-43599238DE0D}) (Version: 2.01.0002 - ASUS)
    ASUS Tutor (HKLM-x32\...\{58172D66-2F69-4215-9AEC-ED8196023736}) (Version: 1.0.8 - ASUS)
    ASUS USB Charger Plus (HKLM-x32\...\{A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}) (Version: 2.1.5 - ASUS)
    ASUS VivoBook (HKLM\...\{04FDBE69-F9FD-42A2-9008-E5CE7F60C6BE}) (Version: 1.0.26 - ASUS)
    ASUS WebStorage Sync Agent (HKLM-x32\...\ASUS WebStorage) (Version: 1.1.10.123 - ASUS Cloud Corporation)
    Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.7 - Atheros Communications Inc.)
    ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0027 - ASUS)
    Badoo Desktop (HKLM-x32\...\{D0AF8BD9-79A6-45D6-8B71-25281B1300A7}) (Version: 1.6.58.1220 - Badoo)
    D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
    Dropbox (HKU\S-1-5-21-36292207-1243957256-28351842-1001\...\Dropbox) (Version: 2.6.24 - Dropbox, Inc.)
    Fotogaléria (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
    Fotogalerie (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
    Fotótár (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
    Galeria fotografii (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
    Google Chrome (HKLM-x32\...\Google Chrome) (Version: 42.0.2311.90 - Google Inc.)
    Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
    Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden
    Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation)
    Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.3347 - Intel Corporation)
    Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
    Malwarebytes Anti-Malware verze 2.0.4.1028 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation)
    Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
    Microsoft Office 365 ProPlus - cs-cz (HKLM\...\O365ProPlusRetail - cs-cz) (Version: 15.0.4701.1002 - Microsoft Corporation)
    Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
    Microsoft Office Professional 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation)
    Microsoft SkyDrive (HKU\S-1-5-21-36292207-1243957256-28351842-1001\...\SkyDriveSetup.exe) (Version: 16.4.6013.0910 - Microsoft Corporation)
    Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
    Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
    Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
    Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
    Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
    Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 35.0a1 - Mozilla)
    MyBitCast 2.0 (HKLM-x32\...\MyBitCast) (Version: 2.0 - ASUS)
    Nightly 36.0a1 (x64 en-US) (HKLM\...\Nightly 36.0a1 (x64 en-US)) (Version: 36.0a1 - Mozilla)
    Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4701.1002 - Microsoft Corporation) Hidden
    Office 15 Click-to-Run Licensing Component (Version: 15.0.4701.1002 - Microsoft Corporation) Hidden
    Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4701.1002 - Microsoft Corporation) Hidden
    Podstawowe programy Windows Live (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
    Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.0.218 - Qualcomm Atheros Communications)
    Qualcomm Atheros Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 10.0 - Qualcomm Atheros)
    Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6798 - Realtek Semiconductor Corp.)
    Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft)
    Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
    Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.3.16540.9015 - Microsoft Corporation)
    Skype™ 7.3 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.3.101 - Skype Technologies S.A.)
    Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
    Windows Driver Package - ASUS (ATP) Mouse (01/10/2013 1.0.0.170) (HKLM\...\4A9DE1E9EBC800B7F01739D4DE7363EF6751BDF5) (Version: 01/10/2013 1.0.0.170 - ASUS)
    Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation)
    WinFlash (HKLM-x32\...\{8F21291E-0444-4B1D-B9F9-4370A73E346D}) (Version: 2.41.1 - ASUS)
    WinRAR 5.01 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)

    ==================== Custom CLSID (selected items): ==========================

    (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

    CustomCLSID: HKU\S-1-5-21-36292207-1243957256-28351842-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\okayokay-pc\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation)
    CustomCLSID: HKU\S-1-5-21-36292207-1243957256-28351842-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\okayokay-pc\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation)
    CustomCLSID: HKU\S-1-5-21-36292207-1243957256-28351842-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\okayokay-pc\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation)
    CustomCLSID: HKU\S-1-5-21-36292207-1243957256-28351842-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\okayokay-pc\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\FileSyncApi64.dll (Microsoft Corporation)
    CustomCLSID: HKU\S-1-5-21-36292207-1243957256-28351842-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\okayokay-pc\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
    CustomCLSID: HKU\S-1-5-21-36292207-1243957256-28351842-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\okayokay-pc\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
    CustomCLSID: HKU\S-1-5-21-36292207-1243957256-28351842-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\okayokay-pc\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
    CustomCLSID: HKU\S-1-5-21-36292207-1243957256-28351842-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\okayokay-pc\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)

    ==================== Restore Points =========================

    23-03-2015 21:18:17 Naplánovaný kontrolní bod
    07-04-2015 19:05:20 Windows Update
    15-04-2015 20:44:40 Windows Update
    22-04-2015 18:58:38 Windows Update
    24-04-2015 19:03:29 avast! antivirus system restore point

    ==================== Hosts content: ==========================

    (If needed Hosts: directive could be included in the fixlist to reset Hosts.)

    2013-08-22 14:25 - 2015-04-24 20:59 - 00000753 ____A C:\WINDOWS\system32\Drivers\etc\hosts

    127.0.0.1 localhost

    ==================== Scheduled Tasks (whitelisted) =============

    (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

    Task: {062B2A6B-DBE8-4D75-8321-43495A7059D4} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxcontent => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-24] (Microsoft Corporation)
    Task: {0F92A006-C9EA-4AFB-A46D-E9144E97766E} - System32\Tasks\ASUS USB Charger Plus => C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [2012-09-18] (ASUSTek Computer Inc.)
    Task: {15207341-7F91-45B5-923D-77BB959B832C} - \ASUS Patch for Touch Panel No Task File <==== ATTENTION
    Task: {183D6759-4632-4BD2-A6F5-C3068CC9E909} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-03-11] (Google Inc.)
    Task: {1EBB11B0-4B79-4733-8F38-D782C4D7C545} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-02-10] (Microsoft Corporation)
    Task: {31DEA0AE-BA67-4046-A79E-D40719177945} - System32\Tasks\ASUS VivoBook => C:\Program Files\ASUS\ASUS VivoBook\VivoBook.exe [2012-12-25] (ASUSTeK Computer Inc.)
    Task: {340B8E24-DB9A-40E0-8671-27A14DABC907} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2015-03-15] (Microsoft Corporation)
    Task: {41CBE208-B663-4401-9439-E85C56DE28BC} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2015-03-15] (Microsoft Corporation)
    Task: {4A72C680-DC63-4ED0-9DB7-9254E9333085} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-04-15] (Microsoft Corporation)
    Task: {4CD2D2F2-DF39-4F34-B20E-F39F7FB29F60} - System32\Tasks\ASUS P4G => C:\Program Files\ASUS\P4G\BatteryLife.exe [2012-08-24] (ASUS)
    Task: {4EE6A9DD-3213-4960-B3B1-D3ACF63FD4E4} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2015-03-15] (Microsoft Corporation)
    Task: {597A52D5-B31E-40B6-82CC-57B9865C834A} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-03-24] (Microsoft Corporation)
    Task: {5A309A9D-78AC-469C-AF72-ABDBB68F4876} - System32\Tasks\Microsoft\Windows\Setup\gwx\runappraiser => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-24] (Microsoft Corporation)
    Task: {68C28E35-E568-4847-A251-830775FC5F43} - System32\Tasks\ASUS Live Update => C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [2012-07-25] (ASUSTeK Computer Inc.)
    Task: {6C49087B-D15A-49C2-BDB4-249630B40AA0} - \RegClean Pro_UPDATES No Task File <==== ATTENTION
    Task: {7B582EBB-BAD5-44FB-AA00-7D2AE504A7C2} - System32\Tasks\ASUS Splendid ACMON => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2012-11-29] (ASUS)
    Task: {8383D82D-B48B-4F77-8795-4D78EC4BA07C} - System32\Tasks\ASUS Touchpad Launcher (x64) => C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe [2013-01-16] (AsusTek)
    Task: {9F7A383E-34F0-40BE-82C1-135C0F8E5002} - System32\Tasks\ASUS Splendid ColorU => C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe [2012-11-29] ()
    Task: {BAB0BC2D-9BB5-4D0F-AF93-59B471188E91} - \RegClean Pro_DEFAULT No Task File <==== ATTENTION
    Task: {BE1EE08A-5618-43C5-9EB1-A54B1C8A7492} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-03-11] (Google Inc.)
    Task: {C3B2E072-D8AB-4DBB-866A-B4445AA423FF} - \avastBCLRestartS-1-5-21-36292207-1243957256-28351842-1001 No Task File <==== ATTENTION
    Task: {C667D5F0-683B-41CA-A75B-2152E6269781} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
    Task: {DFC4E633-F4F4-48D7-8454-38033A0D4A68} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-24] (Microsoft Corporation)
    Task: {E0164CCE-AACB-4764-B92F-CD436ACB5A0B} - System32\Tasks\{75ABC5FA-5EE6-4D62-9E70-507661C63F9F} => pcalua.exe -a "C:\Program Files (x86)\Mv2Player\Mv2PlayerPlus.exe" -d "C:\Program Files (x86)\Mv2Player"
    Task: {ECE7EDEC-5CDE-4FD6-BC6F-D75B935B0A08} - \RegClean Pro No Task File <==== ATTENTION
    Task: {EDA88410-3E5B-4613-906C-4D563A3639E1} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-02-10] (Microsoft Corporation)
    Task: {F2C89EFE-BA47-4859-AAD6-7CB988A93CB4} - System32\Tasks\Norton Product InstallerIdle => C:\Users\OKAYOK~1\AppData\Local\Temp\is1219359723\18122B8A_stp\SymInstallStub.exe <==== ATTENTION
    Task: {F9916D50-4C0C-4D49-BB8A-1AE79084ECAB} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-04-14] (Adobe Systems Incorporated)
    Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
    Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\WINDOWS\Tasks\Norton Product InstallerIdle.job => C:\Users\OKAYOK~1\AppData\Local\Temp\is1219359723\18122B8A_stp\SymInstallStub.exe

    ==================== Loaded Modules (whitelisted) ==============

    2014-12-14 12:24 - 2014-05-20 08:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
    2012-12-28 13:07 - 2012-12-28 13:07 - 00011264 _____ () C:\Program Files (x86)\Bluetooth Suite\Modules\ActivateDesktopDebugger\ActivateDesktopDebugger.dll
    2012-12-28 13:04 - 2012-12-28 13:04 - 00084480 _____ () C:\Program Files (x86)\Bluetooth Suite\Modules\Map\MAP.dll
    2014-01-29 23:02 - 2014-01-29 23:02 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
    2012-12-28 13:09 - 2012-12-28 13:09 - 00012928 _____ () C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe
    2012-08-24 18:26 - 2012-08-24 18:26 - 00031360 _____ () C:\Program Files\ASUS\P4G\DevMng.dll
    2013-08-22 08:19 - 2013-08-22 07:54 - 00049664 _____ () C:\WINDOWS\system32\WinMetadata\Windows.Graphics.winmd
    2013-08-22 08:19 - 2013-08-22 07:54 - 00030208 _____ () C:\WINDOWS\system32\WinMetadata\Windows.Foundation.winmd
    2012-11-29 18:15 - 2012-11-29 18:15 - 00171224 _____ () C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe
    2013-02-18 17:03 - 2012-06-25 11:41 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll

    ==================== Alternate Data Streams (whitelisted) =========

    (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

    AlternateDataStreams: C:\ProgramData\TEMP:C5831B98
    AlternateDataStreams: C:\Users\okayokay-pc\OneDrive:ms-properties

    ==================== Safe Mode (whitelisted) ===================

    (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


    ==================== EXE Association (whitelisted) ===============

    (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


    ==================== Internet Explorer trusted/restricted ===============

    (If an entry is included in the fixlist, the associated entry will be removed from the registry.)

    IE trusted site: HKU\S-1-5-21-36292207-1243957256-28351842-1001\...\sharepoint.com -> hxxps://sionhighschool.sharepoint.com


    ==================== Other Areas ============================

    (Currently there is no automatic fix for this section.)

    HKU\S-1-5-21-36292207-1243957256-28351842-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\okayokay-pc\Desktop\11146006_1078282468865224_978787482_n.jpg
    DNS Servers: 89.190.65.200 - 89.190.64.20

    ==================== MSCONFIG/TASK MANAGER disabled items ==

    (Currently there is no automatic fix for this section.)

    MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
    MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
    MSCONFIG\startupreg: ASUSPRP => "C:\Program Files (x86)\ASUS\APRP\APRP.EXE"
    MSCONFIG\startupreg: ASUSWebStorage => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.10.123\AsusWSPanel.exe /S
    MSCONFIG\startupreg: DisableS3S4 => c:\windows\temp\DisableS3S464\sethigh.cmd
    MSCONFIG\startupreg: RtHDVBg => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /MAXX3
    MSCONFIG\startupreg: RTHDVCPL => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
    HKLM\...\StartupApproved\Run32: => "AvastUI.exe"
    HKU\S-1-5-21-36292207-1243957256-28351842-1001\...\StartupApproved\Run: => "Skype"

    ==================== Accounts: =============================

    Administrator (S-1-5-21-36292207-1243957256-28351842-500 - Administrator - Disabled)
    Guest (S-1-5-21-36292207-1243957256-28351842-501 - Limited - Disabled)
    okayokay-pc (S-1-5-21-36292207-1243957256-28351842-1001 - Administrator - Enabled) => C:\Users\okayokay-pc

    ==================== Faulty Device Manager Devices =============


    ==================== Event log errors: =========================

    Application errors:
    ==================
    Error: (04/24/2015 09:12:44 PM) (Source: SideBySide) (EventID: 35) (User: )
    Description: Generování kontextu aktivace pro UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0"1 se nezdařilo. Chyba v souboru manifestu nebo zásady UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0"2 na řádku UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0"3.
    Identita komponenty nalezená v manifestu nesouhlasí s identitou požadované komponenty.
    Odkaz je UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0".
    Definice je UccApi,processorArchitecture="x86",type="win32",version="15.0.0.0".
    Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

    Error: (04/24/2015 08:39:25 PM) (Source: SideBySide) (EventID: 35) (User: )
    Description: Generování kontextu aktivace pro UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0"1 se nezdařilo. Chyba v souboru manifestu nebo zásady UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0"2 na řádku UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0"3.
    Identita komponenty nalezená v manifestu nesouhlasí s identitou požadované komponenty.
    Odkaz je UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0".
    Definice je UccApi,processorArchitecture="x86",type="win32",version="15.0.0.0".
    Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

    Error: (04/24/2015 07:19:30 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: Název chybující aplikace: MsMpEng.exe, verze: 4.7.205.0, časové razítko: 0x54cb5aeb
    Název chybujícího modulu: mpengine.dll, verze: 1.1.9700.0, časové razítko: 0x51d28fcb
    Kód výjimky: 0xc0000005
    Posun chyby: 0x00000000005615b7
    ID chybujícího procesu: 0x700
    Čas spuštění chybující aplikace: 0xMsMpEng.exe0
    Cesta k chybující aplikaci: MsMpEng.exe1
    Cesta k chybujícímu modulu: MsMpEng.exe2
    ID zprávy: MsMpEng.exe3
    Úplný název chybujícího balíčku: MsMpEng.exe4
    ID aplikace související s chybujícím balíčkem: MsMpEng.exe5

    Error: (04/23/2015 06:34:48 AM) (Source: SideBySide) (EventID: 35) (User: )
    Description: Generování kontextu aktivace pro UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0"1 se nezdařilo. Chyba v souboru manifestu nebo zásady UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0"2 na řádku UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0"3.
    Identita komponenty nalezená v manifestu nesouhlasí s identitou požadované komponenty.
    Odkaz je UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0".
    Definice je UccApi,processorArchitecture="x86",type="win32",version="15.0.0.0".
    Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

    Error: (04/22/2015 09:04:55 PM) (Source: SideBySide) (EventID: 35) (User: )
    Description: Generování kontextu aktivace pro UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0"1 se nezdařilo. Chyba v souboru manifestu nebo zásady UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0"2 na řádku UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0"3.
    Identita komponenty nalezená v manifestu nesouhlasí s identitou požadované komponenty.
    Odkaz je UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0".
    Definice je UccApi,processorArchitecture="x86",type="win32",version="15.0.0.0".
    Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

    Error: (04/22/2015 09:17:57 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: VIQULINKA)
    Description: windows_ie_ac_0013

    Error: (04/22/2015 09:17:57 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: VIQULINKA)
    Description: oice_15_974fa576_32c1d314_b033

    Error: (04/22/2015 09:17:57 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: VIQULINKA)
    Description: oice_15_974fa576_32c1d314_8bd3

    Error: (04/22/2015 09:17:57 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: VIQULINKA)
    Description: oice_15_974fa576_32c1d314_33c93

    Error: (04/22/2015 09:17:57 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: VIQULINKA)
    Description: oice_15_974fa576_32c1d314_323a3


    System errors:
    =============
    Error: (04/24/2015 08:52:00 PM) (Source: DCOM) (EventID: 10010) (User: VIQULINKA)
    Description: {D63B10C5-BB46-4990-A94F-E40B9D520160}

    Error: (04/24/2015 09:24:36 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
    Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.

    Error: (04/24/2015 09:24:35 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
    Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.

    Error: (04/24/2015 09:24:35 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
    Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.

    Error: (04/24/2015 09:24:34 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
    Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.

    Error: (04/24/2015 09:24:34 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
    Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.

    Error: (04/24/2015 08:56:40 PM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: )
    Description: 4

    Error: (04/24/2015 08:34:25 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
    Description: Služba Windows Search byla nečekaně ukončena. Stalo se to 2 krát. Následující opravná akce bude spuštěna za 30000 milisekund: Restartovat službu.

    Error: (04/24/2015 08:34:25 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
    Description: Služba Služba zařazování tisku byla nečekaně ukončena. Stalo se to 2 krát. Následující opravná akce bude spuštěna za 5000 milisekund: Restartovat službu.

    Error: (04/24/2015 08:34:25 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
    Description: Služba Intel(R) Capability Licensing Service Interface byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 0 milisekund: Restartovat službu.


    Microsoft Office Sessions:
    =========================

    CodeIntegrity Errors:
    ===================================
    Date: 2015-04-24 21:38:25.195
    Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.


    ==================== Memory info ===========================

    Processor: Intel(R) Celeron(R) CPU 847 @ 1.10GHz
    Percentage of memory in use: 36%
    Total physical RAM: 3979.61 MB
    Available physical RAM: 2538.66 MB
    Total Pagefile: 4683.61 MB
    Available Pagefile: 3050.98 MB
    Total Virtual: 131072 MB
    Available Virtual: 131071.8 MB

    ==================== Drives ================================

    Drive c: (OS) (Fixed) (Total:118.8 GB) (Free:39.23 GB) NTFS ==>[System with boot components (obtained from reading drive)]
    Drive d: (Data) (Fixed) (Total:157.55 GB) (Free:157.22 GB) NTFS
    Drive e: (PUBLIC) (Removable) (Total:7.45 GB) (Free:3.91 GB) FAT32

    ==================== MBR & Partition Table ==================

    ========================================================
    Disk: 0 (Size: 298.1 GB) (Disk ID: 1FEB4A9B)

    Partition: GPT Partition Type.

    ========================================================
    Disk: 1 (MBR Code: Windows XP) (Size: 7.5 GB) (Disk ID: C3072E18)
    Partition 1: (Not Active) - (Size=7.4 GB) - (Type=0C)

    ==================== End Of Log ============================

Re: Tak jsem tu zase :) A prosím o kontrolu logu prosím :)

Napsal: 25 dub 2015 10:20
od Rudy
Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.

Re: Tak jsem tu zase :) A prosím o kontrolu logu prosím :)

Napsal: 26 dub 2015 13:35
od HornyCZ
Děkuji za odpověď, ale tento krok jsem už učinil sám :) A výsledkem bylo následné odstranění několika problémů a mám pocit, že několik z nich jsou vloženy do karantény. Ty vám k této odpovědi doložím

AdwCleaner[RO]

  • # AdwCleaner v4.202 - Log vytvořen 24/04/2015 v 20:31:26
    # Aktualizováno 23/04/2015 by Xplode
    # Databáze : 2015-04-23.2 [Server]
    # Operační system : Windows 8.1 (x64)
    # Uživatelské jméno : okayokay-pc - VIQULINKA
    # Spuštěno z : C:\Users\okayokay-pc\Downloads\adwcleaner_4.202.exe
    # Nastavení : Sken

    ***** [ Služby ] *****

    Služba Nalezeno : sp_rsdrv2
    Služba Nalezeno : {572f484b-455f-44b0-9d6a-da3ad2071365}w64
    Služba Nalezeno : {646e947e-f0e6-4d0e-b21e-d62ca97183e2}Gw64
    Služba Nalezeno : {646e947e-f0e6-4d0e-b21e-d62ca97183e2}w64

    ***** [ Soubory / Složky ] *****

    Složka Nalezeno : C:\Program Files (x86)\Probit Software
    Složka Nalezeno : C:\Program Files (x86)\webporpoise
    Složka Nalezeno : C:\Users\okayokay-pc\AppData\Local\pay-by-ads
    Složka Nalezeno : C:\Users\okayokay-pc\AppData\Roaming\Probit Software
    Soubor Nalezeno : C:\END
    Soubor Nalezeno : C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_bsplayer.en.softonic.com_0.localstorage
    Soubor Nalezeno : C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_bsplayer.en.softonic.com_0.localstorage-journal
    Soubor Nalezeno : C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_cs.reimageplus.com_0.localstorage
    Soubor Nalezeno : C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_cs.reimageplus.com_0.localstorage-journal
    Soubor Nalezeno : C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_en.softonic.com_0.localstorage
    Soubor Nalezeno : C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_en.softonic.com_0.localstorage-journal
    Soubor Nalezeno : C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_mozilla-firefox.en.softonic.com_0.localstorage
    Soubor Nalezeno : C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_mozilla-firefox.en.softonic.com_0.localstorage-journal
    Soubor Nalezeno : C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_plarium.com_0.localstorage
    Soubor Nalezeno : C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_plarium.com_0.localstorage-journal
    Soubor Nalezeno : C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_vlc-windows-8.en.softonic.com_0.localstorage
    Soubor Nalezeno : C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_vlc-windows-8.en.softonic.com_0.localstorage-journal
    Soubor Nalezeno : C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_wlogin.icq.com_0.localstorage
    Soubor Nalezeno : C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_wlogin.icq.com_0.localstorage-journal
    Soubor Nalezeno : C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.mysearchpage.net_0.localstorage
    Soubor Nalezeno : C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.mysearchpage.net_0.localstorage-journal
    Soubor Nalezeno : C:\Users\okayokay-pc\AppData\Roaming\Mozilla\Firefox\Profiles\zbxssnxh.default\searchplugins\dsrlte.xml
    Soubor Nalezeno : C:\WINDOWS\System32\drivers\{572f484b-455f-44b0-9d6a-da3ad2071365}w64.sys
    Soubor Nalezeno : C:\WINDOWS\System32\drivers\{646e947e-f0e6-4d0e-b21e-d62ca97183e2}Gw64.sys
    Soubor Nalezeno : C:\WINDOWS\System32\drivers\{646e947e-f0e6-4d0e-b21e-d62ca97183e2}w64.sys
    Soubor Nalezeno : C:\WINDOWS\System32\roboot64.exe

    ***** [ Naplánované úlohy ] *****

    Úloha Nalezeno : Yahoo! Search
    Úloha Nalezeno : Yahoo! Search Updater

    ***** [ Zástupci ] *****


    ***** [ Registry ] *****

    Hodnota Nalezeno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{31264A33-A653-46C4-AF49-1232C59A7DA5}]
    Klíč Nalezeno : HKCU\Software\Classes\keepmysearch
    Klíč Nalezeno : HKCU\Software\Easy Speed Check
    Klíč Nalezeno : HKCU\Software\Google\Chrome\Extensions\fcfenmboojpjinhpgggodefccipikbpd
    Klíč Nalezeno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ask.com
    Klíč Nalezeno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\icq.com
    Klíč Nalezeno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6EDDD673-7548-421E-A704-4704A324F88E}
    Klíč Nalezeno : HKCU\Software\webporpoise
    Klíč Nalezeno : [x64] HKCU\Software\Easy Speed Check
    Klíč Nalezeno : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6EDDD673-7548-421E-A704-4704A324F88E}
    Klíč Nalezeno : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{8A244612-A1F7-11E0-95C0-E71F4824019B}
    Klíč Nalezeno : [x64] HKCU\Software\webporpoise
    Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
    Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{3A1209A4-8568-40F0-9B5E-4A06A2A06417}
    Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
    Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
    Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
    Klíč Nalezeno : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
    Klíč Nalezeno : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
    Klíč Nalezeno : HKLM\SOFTWARE\Classes\Toolbar.CT3329621
    Klíč Nalezeno : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
    Klíč Nalezeno : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
    Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D1DAC034-9FD9-4C13-A388-D2E10E57707F}
    Klíč Nalezeno : HKLM\SOFTWARE\webporpoise
    Klíč Nalezeno : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Update webporpoise
    Klíč Nalezeno : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Util webporpoise
    Klíč Nalezeno : [x64] HKLM\SOFTWARE\Classes\CLSID\{31264A33-A653-46C4-AF49-1232C59A7DA5}
    Klíč Nalezeno : [x64] HKLM\SOFTWARE\Classes\CLSID\{3A1209A4-8568-40F0-9B5E-4A06A2A06417}
    Klíč Nalezeno : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
    Klíč Nalezeno : [x64] HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
    Klíč Nalezeno : [x64] HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
    Klíč Nalezeno : [x64] HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
    Klíč Nalezeno : [x64] HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
    Klíč Nalezeno : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\webporpoise

    ***** [ Prohlížeče ] *****

    -\\ Internet Explorer v11.0.9600.17416


    -\\ Mozilla Firefox v

    [zbxssnxh.default] - Řádek Nalezeno : user_pref("browser.newtab.url", "hxxp://rts.dsrlte.com/?m=tab&affID=na");

    -\\ Google Chrome v42.0.2311.90

    [C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Nalezeno [Extension] : aaaaabcbmongicmdegkmmfgdickgnnob
    [C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Nalezeno [Extension] : fcfenmboojpjinhpgggodefccipikbpd

    *************************

    AdwCleaner[R0].txt - [7220 bytů] - [24/04/2015 20:31:26]

    ########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [7278 bytů] ##########

AdwCleaner[SO]



  • # AdwCleaner v4.202 - Log vytvořen 24/04/2015 v 20:34:07
    # Aktualizováno 23/04/2015 by Xplode
    # Databáze : 2015-04-23.2 [Server]
    # Operační system : Windows 8.1 (x64)
    # Uživatelské jméno : okayokay-pc - VIQULINKA
    # Spuštěno z : C:\Users\okayokay-pc\Downloads\adwcleaner_4.202.exe
    # Nastavení : Čištění

    ***** [ Služby ] *****

    Služba Smazáno : {572f484b-455f-44b0-9d6a-da3ad2071365}w64
    Služba Smazáno : {646e947e-f0e6-4d0e-b21e-d62ca97183e2}Gw64
    Služba Smazáno : {646e947e-f0e6-4d0e-b21e-d62ca97183e2}w64

    ***** [ Soubory / Složky ] *****

    Složka Smazáno : C:\Program Files (x86)\Probit Software
    Složka Smazáno : C:\Program Files (x86)\webporpoise
    Složka Smazáno : C:\Users\okayokay-pc\AppData\Local\pay-by-ads
    Složka Smazáno : C:\Users\okayokay-pc\AppData\Roaming\Probit Software
    Soubor Smazáno : C:\END
    Soubor Smazáno : C:\WINDOWS\System32\roboot64.exe
    Soubor Smazáno : C:\WINDOWS\System32\drivers\{572f484b-455f-44b0-9d6a-da3ad2071365}w64.sys
    Soubor Smazáno : C:\WINDOWS\System32\drivers\{646e947e-f0e6-4d0e-b21e-d62ca97183e2}Gw64.sys
    Soubor Smazáno : C:\WINDOWS\System32\drivers\{646e947e-f0e6-4d0e-b21e-d62ca97183e2}w64.sys
    Soubor Smazáno : C:\Users\okayokay-pc\AppData\Roaming\Mozilla\Firefox\Profiles\zbxssnxh.default\searchplugins\dsrlte.xml
    Soubor Smazáno : C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_bsplayer.en.softonic.com_0.localstorage
    Soubor Smazáno : C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_bsplayer.en.softonic.com_0.localstorage-journal
    Soubor Smazáno : C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_cs.reimageplus.com_0.localstorage
    Soubor Smazáno : C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_cs.reimageplus.com_0.localstorage-journal
    Soubor Smazáno : C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_en.softonic.com_0.localstorage
    Soubor Smazáno : C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_en.softonic.com_0.localstorage-journal
    Soubor Smazáno : C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_mozilla-firefox.en.softonic.com_0.localstorage
    Soubor Smazáno : C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_mozilla-firefox.en.softonic.com_0.localstorage-journal
    Soubor Smazáno : C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_plarium.com_0.localstorage
    Soubor Smazáno : C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_plarium.com_0.localstorage-journal
    Soubor Smazáno : C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_vlc-windows-8.en.softonic.com_0.localstorage
    Soubor Smazáno : C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_vlc-windows-8.en.softonic.com_0.localstorage-journal
    Soubor Smazáno : C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_wlogin.icq.com_0.localstorage
    Soubor Smazáno : C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_wlogin.icq.com_0.localstorage-journal
    Soubor Smazáno : C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.mysearchpage.net_0.localstorage
    Soubor Smazáno : C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.mysearchpage.net_0.localstorage-journal

    ***** [ Naplánované úlohy ] *****

    Úloha Smazáno : Yahoo! Search
    Úloha Smazáno : Yahoo! Search Updater

    ***** [ Zástupci ] *****


    ***** [ Registry ] *****

    Klíč Smazáno : HKCU\Software\Google\Chrome\Extensions\fcfenmboojpjinhpgggodefccipikbpd
    Klíč Smazáno : HKCU\Software\Classes\keepmysearch
    Klíč Smazáno : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Update webporpoise
    Klíč Smazáno : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Util webporpoise
    Klíč Smazáno : HKLM\SOFTWARE\Classes\Toolbar.CT3329621
    Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
    Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
    Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
    Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{3A1209A4-8568-40F0-9B5E-4A06A2A06417}
    Klíč Smazáno : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
    Klíč Smazáno : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
    Klíč Smazáno : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
    Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D1DAC034-9FD9-4C13-A388-D2E10E57707F}
    Klíč Smazáno : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
    Klíč Smazáno : [x64] HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
    Klíč Smazáno : [x64] HKLM\SOFTWARE\Classes\CLSID\{3A1209A4-8568-40F0-9B5E-4A06A2A06417}
    Klíč Smazáno : [x64] HKLM\SOFTWARE\Classes\CLSID\{31264A33-A653-46C4-AF49-1232C59A7DA5}
    Klíč Smazáno : [x64] HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
    Klíč Smazáno : [x64] HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
    Hodnota Smazáno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{31264A33-A653-46C4-AF49-1232C59A7DA5}]
    Klíč Smazáno : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{8A244612-A1F7-11E0-95C0-E71F4824019B}
    Klíč Smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6EDDD673-7548-421E-A704-4704A324F88E}
    Klíč Smazáno : HKCU\Software\Easy Speed Check
    Klíč Smazáno : HKCU\Software\webporpoise
    Klíč Smazáno : HKLM\SOFTWARE\webporpoise
    Klíč Smazáno : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\webporpoise
    Klíč Smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ask.com
    Klíč Smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\icq.com

    ***** [ Prohlížeče ] *****

    -\\ Internet Explorer v11.0.9600.17416


    -\\ Mozilla Firefox v

    [zbxssnxh.default\prefs.js] - Řádek Smazáno : user_pref("browser.newtab.url", "hxxp://rts.dsrlte.com/?m=tab&affID=na");

    -\\ Google Chrome v42.0.2311.90

    [C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Extension] : aaaaabcbmongicmdegkmmfgdickgnnob
    [C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Extension] : fcfenmboojpjinhpgggodefccipikbpd

    *************************

    AdwCleaner[R0].txt - [7408 bytů] - [24/04/2015 20:31:26]
    AdwCleaner[S0].txt - [6735 bytů] - [24/04/2015 20:34:07]

    ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [6793 bytů] ##########



AdwCleaner [Quarintine]




  • C:\Program Files (x86)\webporpoise\7za.exe->C:\AdwCleaner\Quarantine\C\Program Files (x86)\webporpoise\7za.exe.vir
    C:\Program Files (x86)\webporpoise\dgihlahjcobhicckdihcglcaolmmbgbn.crx->C:\AdwCleaner\Quarantine\C\Program Files (x86)\webporpoise\dgihlahjcobhicckdihcglcaolmmbgbn.crx.vir
    C:\Program Files (x86)\webporpoise\updatewebporpoise.InstallState->C:\AdwCleaner\Quarantine\C\Program Files (x86)\webporpoise\updatewebporpoise.InstallState.vir
    C:\Program Files (x86)\webporpoise\webporpoise.ico->C:\AdwCleaner\Quarantine\C\Program Files (x86)\webporpoise\webporpoise.ico.vir
    C:\Program Files (x86)\webporpoise\webporpoiseUninstall.exe->C:\AdwCleaner\Quarantine\C\Program Files (x86)\webporpoise\webporpoiseUninstall.exe.vir
    C:\Program Files (x86)\webporpoise\bin\646e947ef0e64d0eb21e.dll->C:\AdwCleaner\Quarantine\C\Program Files (x86)\webporpoise\bin\646e947ef0e64d0eb21e.dll.vir
    C:\Program Files (x86)\webporpoise\bin\646e947ef0e64d0eb21e64.dll->C:\AdwCleaner\Quarantine\C\Program Files (x86)\webporpoise\bin\646e947ef0e64d0eb21e64.dll.vir
    C:\Program Files (x86)\webporpoise\bin\7za.exe->C:\AdwCleaner\Quarantine\C\Program Files (x86)\webporpoise\bin\7za.exe.vir
    C:\Program Files (x86)\webporpoise\bin\BrowserAdapter.7z->C:\AdwCleaner\Quarantine\C\Program Files (x86)\webporpoise\bin\BrowserAdapter.7z.vir
    C:\Program Files (x86)\webporpoise\bin\sqlite3.dll->C:\AdwCleaner\Quarantine\C\Program Files (x86)\webporpoise\bin\sqlite3.dll.vir
    C:\Program Files (x86)\webporpoise\bin\utilwebporpoise.InstallState->C:\AdwCleaner\Quarantine\C\Program Files (x86)\webporpoise\bin\utilwebporpoise.InstallState.vir
    C:\Program Files (x86)\webporpoise\bin\webporpoise.BOAS.zip->C:\AdwCleaner\Quarantine\C\Program Files (x86)\webporpoise\bin\webporpoise.BOAS.zip.vir
    C:\Program Files (x86)\webporpoise\bin\webporpoise.BrowserAdapter.exe->C:\AdwCleaner\Quarantine\C\Program Files (x86)\webporpoise\bin\webporpoise.BrowserAdapter.exe.vir
    C:\Program Files (x86)\webporpoise\bin\webporpoise.BrowserAdapter64.exe->C:\AdwCleaner\Quarantine\C\Program Files (x86)\webporpoise\bin\webporpoise.BrowserAdapter64.exe.vir
    C:\Program Files (x86)\webporpoise\bin\webporpoise.PurBrowse.zip->C:\AdwCleaner\Quarantine\C\Program Files (x86)\webporpoise\bin\webporpoise.PurBrowse.zip.vir
    C:\Program Files (x86)\webporpoise\bin\webporpoise.PurBrowse64.exe->C:\AdwCleaner\Quarantine\C\Program Files (x86)\webporpoise\bin\webporpoise.PurBrowse64.exe.vir
    C:\Program Files (x86)\webporpoise\bin\webporpoise.PurBrowseG.zip->C:\AdwCleaner\Quarantine\C\Program Files (x86)\webporpoise\bin\webporpoise.PurBrowseG.zip.vir
    C:\Program Files (x86)\webporpoise\bin\{572f484b-455f-44b0-9d6a-da3ad2071365}.dll->C:\AdwCleaner\Quarantine\C\Program Files (x86)\webporpoise\bin\{572f484b-455f-44b0-9d6a-da3ad2071365}.dll.vir
    C:\Program Files (x86)\webporpoise\bin\{646e947e-f0e6-4d0e-b21e-d62ca97183e2}.dll->C:\AdwCleaner\Quarantine\C\Program Files (x86)\webporpoise\bin\{646e947e-f0e6-4d0e-b21e-d62ca97183e2}.dll.vir
    C:\Program Files (x86)\webporpoise\bin\{646e947e-f0e6-4d0e-b21e-d62ca97183e2}64.dll->C:\AdwCleaner\Quarantine\C\Program Files (x86)\webporpoise\bin\{646e947e-f0e6-4d0e-b21e-d62ca97183e2}64.dll.vir
    C:\Program Files (x86)\webporpoise\bin\plugins\webporpoise.GCUpdate.dll->C:\AdwCleaner\Quarantine\C\Program Files (x86)\webporpoise\bin\plugins\webporpoise.GCUpdate.dll.vir
    C:\Program Files (x86)\webporpoise\bin\plugins\webporpoise.Msvcmon.dll->C:\AdwCleaner\Quarantine\C\Program Files (x86)\webporpoise\bin\plugins\webporpoise.Msvcmon.dll.vir
    C:\Program Files (x86)\webporpoise\bin\plugins\webporpoise.PurBrowseG.dll->C:\AdwCleaner\Quarantine\C\Program Files (x86)\webporpoise\bin\plugins\webporpoise.PurBrowseG.dll.vir
    C:\Users\okayokay-pc\AppData\Local\pay-by-ads\Yahoo! Search\1.3.8.2\app.ini->C:\AdwCleaner\Quarantine\C\Users\okayokay-pc\AppData\Local\pay-by-ads\Yahoo! Search\1.3.8.2\app.ini.vir
    C:\Users\okayokay-pc\AppData\Local\pay-by-ads\Yahoo! Search\1.3.8.2\ffxtn.dll->C:\AdwCleaner\Quarantine\C\Users\okayokay-pc\AppData\Local\pay-by-ads\Yahoo! Search\1.3.8.2\ffxtn.dll.vir
    C:\Users\okayokay-pc\AppData\Local\pay-by-ads\Yahoo! Search\1.3.8.2\ieds.xml->C:\AdwCleaner\Quarantine\C\Users\okayokay-pc\AppData\Local\pay-by-ads\Yahoo! Search\1.3.8.2\ieds.xml.vir
    C:\Users\okayokay-pc\AppData\Local\pay-by-ads\Yahoo! Search\1.3.8.2\rvt.js->C:\AdwCleaner\Quarantine\C\Users\okayokay-pc\AppData\Local\pay-by-ads\Yahoo! Search\1.3.8.2\rvt.js.vir
    C:\Users\okayokay-pc\AppData\Local\pay-by-ads\Yahoo! Search\1.3.8.2\serp.js->C:\AdwCleaner\Quarantine\C\Users\okayokay-pc\AppData\Local\pay-by-ads\Yahoo! Search\1.3.8.2\serp.js.vir
    C:\Users\okayokay-pc\AppData\Local\pay-by-ads\Yahoo! Search\1.3.8.2\sqlite.dll->C:\AdwCleaner\Quarantine\C\Users\okayokay-pc\AppData\Local\pay-by-ads\Yahoo! Search\1.3.8.2\sqlite.dll.vir
    C:\Users\okayokay-pc\AppData\Local\pay-by-ads\Yahoo! Search\1.3.15.4\app.ini->C:\AdwCleaner\Quarantine\C\Users\okayokay-pc\AppData\Local\pay-by-ads\Yahoo! Search\1.3.15.4\app.ini.vir
    C:\Users\okayokay-pc\AppData\Local\pay-by-ads\Yahoo! Search\1.3.15.4\firefoxt.dll->C:\AdwCleaner\Quarantine\C\Users\okayokay-pc\AppData\Local\pay-by-ads\Yahoo! Search\1.3.15.4\firefoxt.dll.vir
    C:\Users\okayokay-pc\AppData\Local\pay-by-ads\Yahoo! Search\1.3.15.4\ieds.xml->C:\AdwCleaner\Quarantine\C\Users\okayokay-pc\AppData\Local\pay-by-ads\Yahoo! Search\1.3.15.4\ieds.xml.vir
    C:\Users\okayokay-pc\AppData\Local\pay-by-ads\Yahoo! Search\1.3.15.4\res.dll->C:\AdwCleaner\Quarantine\C\Users\okayokay-pc\AppData\Local\pay-by-ads\Yahoo! Search\1.3.15.4\res.dll.vir
    C:\Users\okayokay-pc\AppData\Local\pay-by-ads\Yahoo! Search\1.3.15.4\rvt.js->C:\AdwCleaner\Quarantine\C\Users\okayokay-pc\AppData\Local\pay-by-ads\Yahoo! Search\1.3.15.4\rvt.js.vir
    C:\Users\okayokay-pc\AppData\Local\pay-by-ads\Yahoo! Search\1.3.15.4\serp.js->C:\AdwCleaner\Quarantine\C\Users\okayokay-pc\AppData\Local\pay-by-ads\Yahoo! Search\1.3.15.4\serp.js.vir
    C:\Users\okayokay-pc\AppData\Local\pay-by-ads\Yahoo! Search\1.3.15.4\sqlite.dll->C:\AdwCleaner\Quarantine\C\Users\okayokay-pc\AppData\Local\pay-by-ads\Yahoo! Search\1.3.15.4\sqlite.dll.vir
    C:\END->C:\AdwCleaner\Quarantine\C\END.vir
    C:\WINDOWS\System32\roboot64.exe->C:\AdwCleaner\Quarantine\C\WINDOWS\System32\roboot64.exe.vir
    C:\WINDOWS\System32\drivers\{572f484b-455f-44b0-9d6a-da3ad2071365}w64.sys->C:\AdwCleaner\Quarantine\C\WINDOWS\System32\drivers\{572f484b-455f-44b0-9d6a-da3ad2071365}w64.sys.vir
    C:\WINDOWS\System32\drivers\{646e947e-f0e6-4d0e-b21e-d62ca97183e2}Gw64.sys->C:\AdwCleaner\Quarantine\C\WINDOWS\System32\drivers\{646e947e-f0e6-4d0e-b21e-d62ca97183e2}Gw64.sys.vir
    C:\WINDOWS\System32\drivers\{646e947e-f0e6-4d0e-b21e-d62ca97183e2}w64.sys->C:\AdwCleaner\Quarantine\C\WINDOWS\System32\drivers\{646e947e-f0e6-4d0e-b21e-d62ca97183e2}w64.sys.vir
    C:\Users\okayokay-pc\AppData\Roaming\Mozilla\Firefox\Profiles\zbxssnxh.default\searchplugins\dsrlte.xml->C:\AdwCleaner\Quarantine\C\Users\okayokay-pc\AppData\Roaming\Mozilla\Firefox\Profiles\zbxssnxh.default\searchplugins\dsrlte.xml.vir
    C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_bsplayer.en.softonic.com_0.localstorage->C:\AdwCleaner\Quarantine\C\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_bsplayer.en.softonic.com_0.localstorage.vir
    C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_bsplayer.en.softonic.com_0.localstorage-journal->C:\AdwCleaner\Quarantine\C\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_bsplayer.en.softonic.com_0.localstorage-journal.vir
    C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_cs.reimageplus.com_0.localstorage->C:\AdwCleaner\Quarantine\C\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_cs.reimageplus.com_0.localstorage.vir
    C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_cs.reimageplus.com_0.localstorage-journal->C:\AdwCleaner\Quarantine\C\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_cs.reimageplus.com_0.localstorage-journal.vir
    C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_en.softonic.com_0.localstorage->C:\AdwCleaner\Quarantine\C\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_en.softonic.com_0.localstorage.vir
    C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_en.softonic.com_0.localstorage-journal->C:\AdwCleaner\Quarantine\C\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_en.softonic.com_0.localstorage-journal.vir
    C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_mozilla-firefox.en.softonic.com_0.localstorage->C:\AdwCleaner\Quarantine\C\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_mozilla-firefox.en.softonic.com_0.localstorage.vir
    C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_mozilla-firefox.en.softonic.com_0.localstorage-journal->C:\AdwCleaner\Quarantine\C\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_mozilla-firefox.en.softonic.com_0.localstorage-journal.vir
    C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_plarium.com_0.localstorage->C:\AdwCleaner\Quarantine\C\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_plarium.com_0.localstorage.vir
    C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_plarium.com_0.localstorage-journal->C:\AdwCleaner\Quarantine\C\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_plarium.com_0.localstorage-journal.vir
    C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_vlc-windows-8.en.softonic.com_0.localstorage->C:\AdwCleaner\Quarantine\C\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_vlc-windows-8.en.softonic.com_0.localstorage.vir
    C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_vlc-windows-8.en.softonic.com_0.localstorage-journal->C:\AdwCleaner\Quarantine\C\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_vlc-windows-8.en.softonic.com_0.localstorage-journal.vir
    C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_wlogin.icq.com_0.localstorage->C:\AdwCleaner\Quarantine\C\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_wlogin.icq.com_0.localstorage.vir
    C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_wlogin.icq.com_0.localstorage-journal->C:\AdwCleaner\Quarantine\C\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_wlogin.icq.com_0.localstorage-journal.vir
    C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.mysearchpage.net_0.localstorage->C:\AdwCleaner\Quarantine\C\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.mysearchpage.net_0.localstorage.vir
    C:\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.mysearchpage.net_0.localstorage-journal->C:\AdwCleaner\Quarantine\C\Users\okayokay-pc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.mysearchpage.net_0.localstorage-journal.vir

Re: Tak jsem tu zase :) A prosím o kontrolu logu prosím :)

Napsal: 26 dub 2015 16:15
od Rudy
Dejte nový log FRST.

Re: Tak jsem tu zase :) A prosím o kontrolu logu prosím :)

Napsal: 29 dub 2015 10:26
od HornyCZ
Ten FRST log co jsem vám poslal, tak ten byl dělaný už po spuštění AdwClaner-u :) Omlouvám se, udělal jsem už krok dopředu :)

Re: Tak jsem tu zase :) A prosím o kontrolu logu prosím :)

Napsal: 29 dub 2015 17:29
od Rudy
Otevřte poznámkový blok a zkopírujte do něj:
Start
HKLM-x32\...\Winlogon: [Userinit] [X]
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
C:\Program Files (x86)\Skype\Toolbars
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14]
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
Task: {15207341-7F91-45B5-923D-77BB959B832C} - \ASUS Patch for Touch Panel No Task File <==== ATTENTION
ask: {6C49087B-D15A-49C2-BDB4-249630B40AA0} - \RegClean Pro_UPDATES No Task File <==== ATTENTION
Task: {BAB0BC2D-9BB5-4D0F-AF93-59B471188E91} - \RegClean Pro_DEFAULT No Task File <==== ATTENTION
Task: {C3B2E072-D8AB-4DBB-866A-B4445AA423FF} - \avastBCLRestartS-1-5-21-36292207-1243957256-28351842-1001 No Task File <==== ATTENTION
Task: {ECE7EDEC-5CDE-4FD6-BC6F-D75B935B0A08} - \RegClean Pro No Task File <==== ATTENTION
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
AlternateDataStreams: C:\ProgramData\TEMP:C5831B98
AlternateDataStreams: C:\Users\okayokay-pc\OneDrive:ms-properties
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Re: Tak jsem tu zase :) A prosím o kontrolu logu prosím :)

Napsal: 03 kvě 2015 12:00
od HornyCZ
Tak tady je výsledek Fixlogu :)

  • Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 02-05-2015
    Ran by okayokay-pc at 2015-05-03 12:53:41 Run:1
    Running from C:\Users\okayokay-pc\Desktop
    Loaded Profiles: okayokay-pc (Available profiles: okayokay-pc)
    Boot Mode: Normal
    ==============================================

    Content of fixlist:
    *****************
    Start
    HKLM-x32\...\Winlogon: [Userinit] [X]
    ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
    HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
    SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
    C:\Program Files (x86)\Skype\Toolbars
    Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
    Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
    CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14]
    R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
    R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
    Task: {15207341-7F91-45B5-923D-77BB959B832C} - \ASUS Patch for Touch Panel No Task File <==== ATTENTION
    ask: {6C49087B-D15A-49C2-BDB4-249630B40AA0} - \RegClean Pro_UPDATES No Task File <==== ATTENTION
    Task: {BAB0BC2D-9BB5-4D0F-AF93-59B471188E91} - \RegClean Pro_DEFAULT No Task File <==== ATTENTION
    Task: {C3B2E072-D8AB-4DBB-866A-B4445AA423FF} - \avastBCLRestartS-1-5-21-36292207-1243957256-28351842-1001 No Task File <==== ATTENTION
    Task: {ECE7EDEC-5CDE-4FD6-BC6F-D75B935B0A08} - \RegClean Pro No Task File <==== ATTENTION
    Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    AlternateDataStreams: C:\ProgramData\TEMP:C5831B98
    AlternateDataStreams: C:\Users\okayokay-pc\OneDrive:ms-properties
    End
    *****************

    HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon\\Userinit => Value was restored successfully.
    "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avast" => Key deleted successfully.
    HKCR\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => Key not found.
    "HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully.
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully.
    HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
    HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
    HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
    "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}" => Key deleted successfully.
    "HKCR\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}" => Key deleted successfully.
    C:\Program Files (x86)\Skype\Toolbars => Moved successfully.
    "HKCR\PROTOCOLS\Handler\skypec2c" => Key deleted successfully.
    "HKCR\CLSID\{91774881-D725-4E58-B298-07617B9B86A8}" => Key deleted successfully.
    HKCR\Wow6432Node\PROTOCOLS\Handler\skypec2c => Key not found.
    "HKCR\Wow6432Node\CLSID\{91774881-D725-4E58-B298-07617B9B86A8}" => Key deleted successfully.
    "HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl" => Key deleted successfully.
    "C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx" => File/Directory not found.
    c2cautoupdatesvc => Unable to stop service
    c2cautoupdatesvc => Service deleted successfully.
    c2cpnrsvc => Unable to stop service
    c2cpnrsvc => Service deleted successfully.
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{15207341-7F91-45B5-923D-77BB959B832C}" => Key deleted successfully.
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{15207341-7F91-45B5-923D-77BB959B832C}" => Key deleted successfully.
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ASUS Patch for Touch Panel" => Key deleted successfully.
    ask: {6C49087B-D15A-49C2-BDB4-249630B40AA0} - \RegClean Pro_UPDATES No Task File <==== ATTENTION => Error: No automatic fix found for this entry.
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BAB0BC2D-9BB5-4D0F-AF93-59B471188E91}" => Key deleted successfully.
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BAB0BC2D-9BB5-4D0F-AF93-59B471188E91}" => Key deleted successfully.
    HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\RegClean Pro_DEFAULT => Key not found.
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C3B2E072-D8AB-4DBB-866A-B4445AA423FF}" => Key deleted successfully.
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C3B2E072-D8AB-4DBB-866A-B4445AA423FF}" => Key deleted successfully.
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\avastBCLRestartS-1-5-21-36292207-1243957256-28351842-1001" => Key deleted successfully.
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{ECE7EDEC-5CDE-4FD6-BC6F-D75B935B0A08}" => Key deleted successfully.
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{ECE7EDEC-5CDE-4FD6-BC6F-D75B935B0A08}" => Key deleted successfully.
    HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\RegClean Pro => Key not found.
    C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
    C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
    C:\ProgramData\TEMP => ":C5831B98" ADS removed successfully.
    C:\Users\okayokay-pc\OneDrive => ":ms-properties" ADS removed successfully.


    The system needed a reboot.

    ==== End of Fixlog 12:53:55 ====

Re: Tak jsem tu zase :) A prosím o kontrolu logu prosím :)

Napsal: 03 kvě 2015 17:24
od Rudy
Smazáno. Je ještě nějaký problém?

Re: Tak jsem tu zase :) A prosím o kontrolu logu prosím :)

Napsal: 03 kvě 2015 20:19
od HornyCZ
Myslím že ne, naprostá spokojenost :) Velice děkuji :)

Re: Tak jsem tu zase :) A prosím o kontrolu logu prosím :)

Napsal: 03 kvě 2015 20:28
od Rudy
Rádo se stalo! :)