Stránka 1 z 2

vyskakují neznámé webové stránky bez jakékoliv činnosti

Napsal: 19 pro 2015 07:47
od Happygirl.
Dobrý den, moc Vás prosím o kontrolu, neustále se mi otevírají nové stránky, a případně že jsem na nějaké webové, tak se přepne na nějakou reklamu. Děkuji moc



Logfile of random's system information tool 1.10 (written by random/random)
Run by Vojta at 2015-12-19 07:45:51
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 2 GB (1%) free of 296 GB
Total RAM: 3068 MB (47% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 7:46:06, on 19.12.2015
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.19705)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\rundll32.exe
C:\Windows\system32\rundll32.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\LuckyBrowse\app\luckybrowse.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Hewlett-Packard\TouchSmart\Media\TSMAgent.exe
C:\Program Files\Hewlett-Packard\Media\TV\TVAgent.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Programy\PowerISO\PWRISOVM.EXE
C:\Programy\Winamp\winampa.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
D:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe
C:\Program Files\DivX\DivX Update\DivXUpdate.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Lexmark S300-S400 Series\lxeamon.exe
C:\Program Files\Lexmark S300-S400 Series\ezprint.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\ProgramData\Macrovision\FLEXnet Connect\6\ISUSPM.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Users\Vojta\AppData\Local\Akamai\netsession_win.exe
C:\Program Files\Hewlett-Packard\Media\DVD\DVDAgent.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe
C:\Users\Vojta\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Vojta\AppData\Local\Akamai\netsession_win.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Hewlett-Packard\Shared\hpqToaster.exe
C:\Windows\system32\conime.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_20_0_0_235.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_20_0_0_235.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Vojta\Downloads\RSIT(1).exe
C:\Program Files\trend micro\Vojta.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
O2 - BHO: Lexmark Panel nástrojů - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Lexmark - {D2C5E510-BE6D-42CC-9F61-E4F939078474} - C:\Program Files\Lexmark Printable Web\bho.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Lexmark Panel nástrojů - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [DVDAgent] "C:\Program Files\Hewlett-Packard\Media\DVD\DVDAgent.exe"
O4 - HKLM\..\Run: [TSMAgent] "C:\Program Files\Hewlett-Packard\TouchSmart\Media\TSMAgent.exe"
O4 - HKLM\..\Run: [CLMLServer for HP TouchSmart] "C:\Program Files\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe"
O4 - HKLM\..\Run: [TVAgent] "C:\Program Files\Hewlett-Packard\Media\TV\TVAgent.exe"
O4 - HKLM\..\Run: [UCam_Menu] "C:\Program Files\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe" "C:\Program Files\Hewlett-Packard\Media\Webcam" update "Software\Hewlett-Packard\Media\Webcam"
O4 - HKLM\..\Run: [UpdatePSTShortCut] "C:\Program Files\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\DVD Suite" UpdateWithCreateOnce "Software\CyberLink\PowerStarter"
O4 - HKLM\..\Run: [HP Health Check Scheduler] c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [WirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Programy\PowerISO\PWRISOVM.EXE
O4 - HKLM\..\Run: [WinampAgent] C:\Programy\Winamp\winampa.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [GrooveMonitor] "D:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [SmartMenu] %ProgramFiles%\Hewlett-Packard\HP MediaSmart\SmartMenu.exe
O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKLM\..\Run: [Aeria Ignite] "C:\Program Files\Aeria Games\Ignite\aeriaignite.exe" silent
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [lxeamon.exe] "C:\Program Files\Lexmark S300-S400 Series\lxeamon.exe"
O4 - HKLM\..\Run: [EzPrint] "C:\Program Files\Lexmark S300-S400 Series\ezprint.exe"
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
O4 - HKCU\..\Run: [ISUSPM] "C:\ProgramData\Macrovision\FLEXnet Connect\6\ISUSPM.exe" -scheduler
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [EA Core] "C:\Program Files\Electronic Arts\EADM\Core.exe" -silent
O4 - HKCU\..\Run: [Akamai NetSession Interface] "C:\Users\Vojta\AppData\Local\Akamai\netsession_win.exe"
O4 - HKCU\..\Run: [T-Mobile CManager] "C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe" -autorun
O4 - HKCU\..\Run: [chromium] C:\Users\Vojta\AppData\Local\Google\Chrome\Application\chrome.exe --no-startup-window
O4 - HKCU\..\RunOnce: [Application Restart #5] C:\Users\Vojta\AppData\Local\Google\Chrome\Application\chrome.exe --disable-breakpad --enable-experimental-extension-apis --flag-switches-begin --flag-switches-end --force-fieldtrials --keep-alive-for-test --load-component-extension="C:\Users\Vojta\AppData\Local\Style Rush\Component" --silent-launch --restore-last-session
O4 - HKCU\..\RunOnce: [Adobe Speed Launcher] 1450506559
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://D:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre7\bin\jp2iexp.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre7\bin\jp2iexp.dll
O15 - Trusted Zone: http://*.aeriagames.com
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - D:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_52c73ccb\aestsrv.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: CodeMeter Runtime Server (CodeMeter.exe) - WIBU-SYSTEMS AG - C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe
O23 - Service: @C:\Program Files\DigitalPersona\Bin\DpHostW.exe,-128 (DpHost) - DigitalPersona, Inc. - C:\Program Files\DigitalPersona\Bin\DpHostW.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: HP Service (hpsrv) - Hewlett-Packard Corporation - C:\Windows\system32\Hpservice.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: lxea_device - - C:\Windows\system32\lxeacoms.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\Windows\system32\GameMon.des.exe (file missing)
O23 - Service: Recovery Service for Windows - Unknown owner - C:\Program Files\SMINST\BLService.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
O23 - Service: Secure Storage (SecStore) - Unknown owner - C:\Windows\system32\secpro.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_52c73ccb\STacSV.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: TV Background Capture Service (TVBCS) (TVCapSvc) - Unknown owner - C:\Program Files\Hewlett-Packard\Media\TV\Kernel\TV\TVCapSvc.exe
O23 - Service: TV Task Scheduler (TVTS) (TVSched) - Unknown owner - C:\Program Files\Hewlett-Packard\Media\TV\Kernel\TV\TVSched.exe
O23 - Service: Validity Fingerprint Service (vfsFPService) - Validity Sensors, Inc. - C:\Windows\system32\vfsFPService.exe

--
End of file - 11178 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\Magnet Downloader-codedownloader.job - C:\Program Files\Magnet Downloader\Magnet Downloader-codedownloader.exe /reinstallapp /agentregpath='Magnet Downloader' /appid=45508 /srcid='000647' /subid='0' /zdata='0' /bic=5F1256854BF14381A91C55465B9EFE7CIE /verifier=e42b212e22a9f620be4ff84801d881a7 /installerversion=1_29_153 /installerfullversion=1.29.153.3 /installationtime=1384071956 /statsdomain=http://stats.srvstatsdata.com /errorsdomain=http://errors.srvstatsdata.com /codedownloaddomain=http://cr.install-daddy.com /allusers /externallog=''
C:\Windows\tasks\Magnet Downloader-updater.job - C:\Program Files\Magnet Downloader\Magnet Downloader-updater.exe /runupdater /agentregpath='Magnet Downloader' /appid=45508 /srcid='000647' /subid='0' /zdata='0' /bic=5F1256854BF14381A91C55465B9EFE7CIE /verifier=e42b212e22a9f620be4ff84801d881a7 /installerversion=1_29_153 /installationtime=1384071956 /statsdomain=http://stats.srvstatsdata.com /errorsdomain=http://errors.srvstatsdata.com /monetizationdomain=http://stats.syncstatsdata.com /geoserviceurl=http://ipgeoapi.com/ /updatejsondomain=http://update.srvstatsdata.com /updaterversion=2 /externallog=''

=========Mozilla firefox=========

ProfilePath - C:\Users\Vojta\AppData\Roaming\Mozilla\Firefox\Profiles\wz2s2bkc.default-1400313064800

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"

"{20a82645-c095-46ed-80e3-08825760534b}"=C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"otis@digitalpersona.com"=C:\Program Files\DigitalPersona\Bin\FirefoxExt\


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.235 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_20_0_0_235.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\system32\Adobe\Director\np32dsw.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@alawar.com/npapi]
"Description"=
"Path"=C:\Windows\npapi.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0]
"Description"=DivX VOD Helper Plug-in
"Path"=C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX Web Player Plug-In,version=1.0.0]
"Description"=DivX Web Player
"Path"=C:\Program Files\DivX\DivX Web Player\npdivx32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.67.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.67.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.41105.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@ngm.nexoneu.com/NxGame]
"Description"=Nexon Game Controller
"Path"=C:\ProgramData\NexonEU\NGM\npNxGameeu.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=6.0.12.69]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.69]
"Description"=6.0.12.69
"Path"=C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.29.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.29.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.0.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.1.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll


C:\Program Files\Mozilla Firefox\plugins\
np-mswmp.dll
NPOFF12.DLL
nppdf32.dll
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

C:\Users\Vojta\AppData\Roaming\Mozilla\Firefox\Profiles\wz2s2bkc.default-1400313064800\extensions\
deskCutv2@gmail.com

C:\Users\Vojta\AppData\Roaming\Mozilla\Firefox\Profiles\wz2s2bkc.default-1400313064800\searchplugins\
mystartsearch.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1017A80C-6F09-4548-A84D-EDD6AC9525F0}]
Lexmark Panel nástrojů - C:\Program Files\Lexmark Toolbar\toolband.dll [2008-05-22 372736]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-08-18 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D2C5E510-BE6D-42CC-9F61-E4F939078474}]
Lexmark - C:\Program Files\Lexmark Printable Web\bho.dll [2008-05-22 180224]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-08-18 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{1017A80C-6F09-4548-A84D-EDD6AC9525F0} - Lexmark Panel nástrojů - C:\Program Files\Lexmark Toolbar\toolband.dll [2008-05-22 372736]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2008-08-29 61440]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2008-07-24 1348904]
"DVDAgent"=C:\Program Files\Hewlett-Packard\Media\DVD\DVDAgent.exe [2008-11-28 1148200]
"TSMAgent"=C:\Program Files\Hewlett-Packard\TouchSmart\Media\TSMAgent.exe [2008-12-25 1316136]
"CLMLServer for HP TouchSmart"=C:\Program Files\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe [2008-12-25 189736]
"TVAgent"=C:\Program Files\Hewlett-Packard\Media\TV\TVAgent.exe [2009-05-11 202024]
"UCam_Menu"=C:\Program Files\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe [2008-11-14 218408]
"UpdatePSTShortCut"=C:\Program Files\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe [2008-11-26 210216]
"HP Health Check Scheduler"=c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe [2008-10-09 75008]
"WirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2008-12-08 432432]
"PWRISOVM.EXE"=C:\Programy\PowerISO\PWRISOVM.EXE [2009-03-15 180224]
"WinampAgent"=C:\Programy\Winamp\winampa.exe [2009-07-01 37888]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2009-05-14 2029640]
"ISUSScheduler"=C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2004-06-16 81920]
"GrooveMonitor"=D:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"SmartMenu"=C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe [2008-11-18 914224]
"DivXMediaServer"=C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe [2014-02-14 450560]
"Aeria Ignite"=C:\Program Files\Aeria Games\Ignite\aeriaignite.exe [2013-06-06 1925656]
"DivXUpdate"=C:\Program Files\DivX\DivX Update\DivXUpdate.exe [2014-01-10 1861968]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-11-20 1021128]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2014-07-25 256896]
"lxeamon.exe"=C:\Program Files\Lexmark S300-S400 Series\lxeamon.exe [2011-01-24 770728]
"EzPrint"=C:\Program Files\Lexmark S300-S400 Series\ezprint.exe [2011-01-24 148280]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LightScribe Control Panel"=C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2008-06-09 2363392]
"ISUSPM Startup"=C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe [2004-06-16 221184]
"ISUSPM"=C:\ProgramData\Macrovision\FLEXnet Connect\6\ISUSPM.exe [2007-07-12 226904]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2010-04-01 357696]
"uTorrent"=C:\Program Files\uTorrent\uTorrent.exe [2012-02-09 738168]
"EA Core"=C:\Program Files\Electronic Arts\EADM\Core.exe [2009-03-28 3325952]
"Akamai NetSession Interface"=C:\Users\Vojta\AppData\Local\Akamai\netsession_win.exe [2015-09-10 4691384]
"T-Mobile CManager"=C:\Program Files\T-Mobile\Web'n'walk Manager\Manager.exe [2015-08-06 2162152]
"chromium"=C:\Users\Vojta\AppData\Local\Google\Chrome\Application\chrome.exe [2011-06-06 1011768]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Application Restart #5"=C:\Users\Vojta\AppData\Local\Google\Chrome\Application\chrome.exe [2011-06-06 1011768]
"Adobe Speed Launcher"=1450506559 []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"= []
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=D:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=0
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"msacm.l3codecp"=l3codecp.acm
"VIDC.XVID"=xvidvfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.lameacm"=lameACM.acm
"VIDC.FFDS"=ff_vfw.dll
"vidc.VP60"=C:\Windows\system32\vp6vfw.dll
"vidc.VP61"=C:\Windows\system32\vp6vfw.dll
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"vidc.DIVX"=DivX.dll
"vidc.yv12"=DivX.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2015-12-19 03:13:54 ----SHD---- C:\Config.Msi
2015-12-18 06:53:33 ----D---- C:\Program Files\ZIP RAR ACE Password Recovery
2015-12-18 06:49:43 ----D---- C:\Users\Vojta\AppData\Roaming\ZIP RAR ACE Password Recovery
2015-12-17 16:00:05 ----A---- C:\ComboFix.txt
2015-12-17 15:57:15 ----SHD---- C:\$RECYCLE.BIN
2015-12-17 15:17:23 ----D---- C:\ComboFix
2015-12-12 20:55:26 ----D---- C:\Users\Vojta\AppData\Roaming\SimpleFiles
2015-12-12 20:54:27 ----D---- C:\ProgramData\LuckyBrowse
2015-12-12 20:54:27 ----D---- C:\Program Files\LuckyBrowse
2015-12-10 03:33:49 ----A---- C:\Windows\system32\d3d10level9.dll
2015-12-10 03:33:49 ----A---- C:\Windows\system32\d3d10_1.dll
2015-12-10 03:33:48 ----A---- C:\Windows\system32\d3d10warp.dll
2015-12-10 03:33:48 ----A---- C:\Windows\system32\d3d10core.dll
2015-12-10 03:33:48 ----A---- C:\Windows\system32\d3d10_1core.dll
2015-12-10 03:33:48 ----A---- C:\Windows\system32\d2d1.dll
2015-12-10 03:33:47 ----A---- C:\Windows\system32\win32k.sys
2015-12-10 03:33:47 ----A---- C:\Windows\system32\user32.dll
2015-12-10 03:33:47 ----A---- C:\Windows\system32\FntCache.dll
2015-12-10 03:33:47 ----A---- C:\Windows\system32\d3d10.dll
2015-12-10 03:33:46 ----A---- C:\Windows\system32\DWrite.dll
2015-12-10 03:31:37 ----A---- C:\Windows\system32\els.dll
2015-12-10 03:28:37 ----A---- C:\Windows\system32\tzres.dll
2015-12-10 03:27:42 ----A---- C:\Windows\system32\comsvcs.dll
2015-12-10 03:27:42 ----A---- C:\Windows\system32\catsrvut.dll
2015-12-10 03:26:24 ----A---- C:\Windows\system32\drivers\rmcast.sys
2015-12-09 09:11:52 ----A---- C:\Windows\system32\mshtml.dll
2015-12-09 09:11:48 ----A---- C:\Windows\system32\ieframe.dll
2015-12-09 09:11:40 ----A---- C:\Windows\system32\vbscript.dll
2015-12-09 09:11:38 ----A---- C:\Windows\system32\jscript.dll
2015-12-09 09:11:37 ----A---- C:\Windows\system32\urlmon.dll
2015-12-09 09:11:36 ----A---- C:\Windows\system32\msfeeds.dll
2015-12-09 09:11:35 ----A---- C:\Windows\system32\wininet.dll
2015-12-09 09:11:35 ----A---- C:\Windows\system32\mstime.dll
2015-12-09 09:11:34 ----A---- C:\Windows\system32\iertutil.dll
2015-12-09 09:11:33 ----A---- C:\Windows\system32\iedkcs32.dll
2015-12-09 09:11:33 ----A---- C:\Windows\system32\dxtrans.dll
2015-12-09 09:11:32 ----A---- C:\Windows\system32\msrating.dll
2015-12-09 09:11:32 ----A---- C:\Windows\system32\dxtmsft.dll
2015-12-09 09:11:31 ----A---- C:\Windows\system32\webcheck.dll
2015-12-09 09:11:31 ----A---- C:\Windows\system32\ieui.dll
2015-12-09 09:11:31 ----A---- C:\Windows\system32\iepeers.dll
2015-12-09 09:11:30 ----A---- C:\Windows\system32\url.dll
2015-12-09 09:11:30 ----A---- C:\Windows\system32\occache.dll
2015-12-09 09:11:30 ----A---- C:\Windows\system32\iesysprep.dll
2015-12-09 09:11:29 ----A---- C:\Windows\system32\mshtmled.dll
2015-12-09 09:11:29 ----A---- C:\Windows\system32\ieUnatt.exe
2015-12-09 09:11:29 ----A---- C:\Windows\system32\iesetup.dll
2015-12-09 09:11:28 ----A---- C:\Windows\system32\msfeedsbs.dll
2015-12-09 09:11:28 ----A---- C:\Windows\system32\licmgr10.dll
2015-12-09 09:11:27 ----A---- C:\Windows\system32\iernonce.dll
2015-12-09 09:11:25 ----A---- C:\Windows\system32\jsproxy.dll
2015-12-09 09:11:25 ----A---- C:\Windows\system32\ie4uinit.exe
2015-12-09 09:11:25 ----A---- C:\Windows\system32\corpol.dll
2015-12-09 09:11:24 ----A---- C:\Windows\system32\msfeedssync.exe

======List of files/folders modified in the last 1 month======

2015-12-19 07:46:03 ----D---- C:\Windows\Prefetch
2015-12-19 07:45:53 ----D---- C:\Program Files\trend micro
2015-12-19 07:45:52 ----D---- C:\Windows\temp
2015-12-19 07:30:48 ----D---- C:\Users\Vojta\AppData\Roaming\uTorrent
2015-12-19 07:27:40 ----AD---- C:\ProgramData\Temp
2015-12-19 05:00:04 ----A---- C:\Windows\system32\dcicache.dll
2015-12-19 04:20:30 ----D---- C:\Windows\Microsoft.NET
2015-12-19 04:20:16 ----SHD---- C:\System Volume Information
2015-12-19 04:00:46 ----D---- C:\ProgramData
2015-12-19 03:59:42 ----A---- C:\Windows\system32\thunk.dll
2015-12-19 03:41:24 ----SHD---- C:\Windows\Installer
2015-12-19 03:26:57 ----D---- C:\Windows\System32
2015-12-19 03:26:57 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-12-19 03:26:38 ----D---- C:\Windows\inf
2015-12-18 06:53:33 ----RD---- C:\Program Files
2015-12-18 06:37:20 ----D---- C:\Windows
2015-12-17 16:00:13 ----D---- C:\Qoobox
2015-12-17 15:55:00 ----A---- C:\Windows\system.ini
2015-12-17 15:49:06 ----D---- C:\Windows\system32\drivers
2015-12-17 15:49:06 ----D---- C:\Windows\AppPatch
2015-12-17 15:49:04 ----D---- C:\Program Files\Common Files
2015-12-15 13:55:09 ----D---- C:\Windows\system32\drivers\etc
2015-12-13 07:29:21 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2015-12-12 21:00:55 ----D---- C:\Windows\system32\Tasks
2015-12-12 20:54:23 ----D---- C:\Program Files\Mozilla Firefox
2015-12-10 16:42:27 ----RSD---- C:\Windows\assembly
2015-12-10 15:28:03 ----D---- C:\Program Files\Battle.net
2015-12-10 15:19:43 ----D---- C:\Windows\Debug
2015-12-10 15:17:00 ----D---- C:\Windows\rescache
2015-12-10 06:29:23 ----D---- C:\Program Files\Internet Explorer
2015-12-10 06:29:21 ----D---- C:\Windows\system32\migration
2015-12-10 06:29:14 ----D---- C:\Windows\system32\XPSViewer
2015-12-10 06:29:13 ----D---- C:\Windows\system32\sk-SK
2015-12-10 06:29:13 ----D---- C:\Windows\system32\cs-CZ
2015-12-10 06:29:13 ----D---- C:\Windows\ehome
2015-12-10 03:42:33 ----D---- C:\ProgramData\Microsoft Help
2015-12-10 03:41:00 ----D---- C:\Windows\winsxs
2015-12-10 03:36:49 ----D---- C:\Program Files\Microsoft Silverlight
2015-12-10 03:34:13 ----D---- C:\Windows\system32\catroot
2015-12-10 03:31:31 ----D---- C:\Windows\system32\catroot2
2015-12-10 03:25:06 ----D---- C:\Windows\system32\MRT
2015-12-10 03:08:00 ----A---- C:\Windows\system32\mrt.exe
2015-12-07 17:53:45 ----D---- C:\Users\Vojta\AppData\Roaming\Winamp
2015-12-06 12:46:04 ----D---- C:\Program Files\Hearthstone
2015-12-04 06:25:26 ----D---- C:\Windows\Tasks
2015-12-03 06:54:43 ----D---- C:\Hry
2015-12-02 13:25:18 ----N---- C:\Windows\system32\MpSigStub.exe
2015-11-28 10:15:49 ----D---- C:\Filmy

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 hpdskflt;HP Filter; C:\Windows\system32\DRIVERS\hpdskflt.sys [2008-03-27 24424]
R0 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-05-02 691696]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2009-05-14 107256]
R1 ewdcsc2k;ewdcsc2k; C:\Windows\system32\drivers\ewdcsc2k.sys [2015-09-01 126112]
R1 SCDEmu;SCDEmu; C:\Windows\system32\drivers\SCDEmu.sys [2009-03-15 56268]
R2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2010-04-23 281760]
R2 eamon;eamon; C:\Windows\system32\DRIVERS\eamon.sys [2009-05-14 114472]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2009-05-14 93312]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2010-04-23 25888]
R2 RMCAST;Ovladač protokolu RMCAST (Pgm); C:\Windows\system32\DRIVERS\RMCAST.sys [2015-11-05 113664]
R3 Accelerometer;HP Accelerometer; C:\Windows\system32\DRIVERS\Accelerometer.sys [2008-03-27 34664]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2008-12-31 4172288]
R3 AVerAF15;HP DVB-T TV Tuner; C:\Windows\System32\Drivers\AVerAF15.sys [2008-07-04 280448]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl6.sys [2009-07-09 1331192]
R3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-11 22528]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-21 92160]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2009-06-17 30208]
R3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2008-06-23 80424]
R3 btwavdt;Bluetooth AVDT; C:\Windows\system32\drivers\btwavdt.sys [2008-06-23 81960]
R3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2008-06-23 16168]
R3 enecir;ENE CIR Receiver; C:\Windows\system32\DRIVERS\enecir.sys [2008-09-04 54784]
R3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2009-04-11 236544]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys [2007-06-18 16768]
R3 huawei_enumerator;huawei_enumerator; C:\Windows\system32\DRIVERS\ew_jubusenum.sys [2012-04-23 76544]
R3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys [2008-10-23 107360]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-11 148992]
R3 RTL8169;Realtek 8169 NT Driver; C:\Windows\system32\DRIVERS\Rtlh86.sys [2008-08-06 124928]
R3 STHDA;IDT High Definition Audio CODEC; C:\Windows\system32\DRIVERS\stwrt.sys [2008-10-26 391168]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2008-07-24 201264]
R3 usbvideo;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2013-07-12 134272]
R3 WinUSB;WinUSB Service; C:\Windows\system32\DRIVERS\WinUSB.sys [2009-07-14 34944]
R3 WudfPf;@%SystemRoot%\system32\drivers\Wudfpf.sys,-1000; C:\Windows\system32\drivers\WudfPf.sys [2012-07-26 66560]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2011-04-21 508416]
S3 catchme;catchme; \??\C:\Users\Vojta\AppData\Local\Temp\catchme.sys []
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 EagleXNt;EagleXNt; \??\C:\Windows\system32\drivers\EagleXNt.sys []
S3 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device; C:\Windows\system32\DRIVERS\ew_hwusbdev.sys [2010-07-27 102784]
S3 ew_usbenumfilter;huawei_CompositeFilter; C:\Windows\system32\DRIVERS\ew_usbenumfilter.sys [2010-03-20 11136]
S3 FsUsbExDisk;FsUsbExDisk; \??\C:\Windows\system32\FsUsbExDisk.SYS [2009-03-31 36608]
S3 GarenaPEngine;GarenaPEngine; \??\C:\Users\Vojta\AppData\Local\Temp\MKF9C6E.tmp []
S3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 26176]
S3 huawei_cdcacm;huawei_cdcacm; C:\Windows\system32\DRIVERS\ew_jucdcacm.sys [2012-04-23 95616]
S3 huawei_cdcecm;huawei_cdcecm; C:\Windows\system32\DRIVERS\ew_jucdcecm.sys [2012-04-23 70016]
S3 huawei_ext_ctrl;huawei_ext_ctrl; C:\Windows\system32\DRIVERS\ew_juextctrl.sys [2012-04-23 27520]
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\Windows\system32\DRIVERS\ewusbmdm.sys [2011-12-31 199168]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys []
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 NETw3v32;Intel(R) PRO/Wireless 3945ABG Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw3v32.sys [2008-01-21 2225664]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2007-09-17 21632]
S3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2008-01-21 88576]
S3 ss_bbus;SAMSUNG USB Mobile Device (WDM); C:\Windows\system32\DRIVERS\ss_bbus.sys [2009-03-20 90112]
S3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter); C:\Windows\system32\DRIVERS\ss_bmdfl.sys [2009-03-20 14976]
S3 ss_bmdm;SAMSUNG USB Mobile Modem; C:\Windows\system32\DRIVERS\ss_bmdm.sys [2009-03-20 121856]
S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys [2014-08-15 45056]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 35328]
S3 vtany;vtany; \??\C:\Windows\vtany.sys []
S3 W700bus;Sony Ericsson W700 Driver driver (WDM); C:\Windows\system32\DRIVERS\W700bus.sys [2006-02-19 61536]
S3 W700mdfl;Sony Ericsson W700 USB WMC Modem Filter; C:\Windows\system32\DRIVERS\W700mdfl.sys [2006-02-19 9264]
S3 W700mdm;Sony Ericsson W700 USB WMC Modem Driver; C:\Windows\system32\DRIVERS\W700mdm.sys [2006-02-19 97056]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2012-07-26 155136]
S3 xhunter1;xhunter1; \??\C:\Windows\xhunter1.sys []
S3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller; C:\Windows\system32\DRIVERS\yk60x86.sys [2006-11-02 194048]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-03 81088]
R2 AESTFilters;Andrea ST Filters Service; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_52c73ccb\aestsrv.exe [2008-06-27 77824]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2015-01-19 60744]
R2 Ati External Event Utility;Ati External Event Utility; C:\Windows\system32\Ati2evxx.exe [2008-12-31 724992]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 CodeMeter.exe;CodeMeter Runtime Server; C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe [2012-07-19 2568120]
R2 DpHost;@C:\Program Files\DigitalPersona\Bin\DpHostW.exe,-128; C:\Program Files\DigitalPersona\Bin\DpHostW.exe [2009-09-29 322624]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2009-05-14 731840]
R2 ezSharedSvc;Easybits Shared Services for Windows; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 HP Health Check Service;HP Health Check Service; c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [2008-10-09 94208]
R2 hpsrv;HP Service; C:\Windows\system32\Hpservice.exe [2008-03-18 19456]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2008-06-09 73728]
R2 lxea_device;lxea_device; C:\Windows\system32\lxeacoms.exe [2010-04-14 598696]
R2 MbnExt;Mobile Broadband Extension Service; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 Recovery Service for Windows;Recovery Service for Windows; C:\Program Files\SMINST\BLService.exe [2008-12-17 365952]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared files\RichVideo.exe [2008-09-15 241734]
R2 SecStore;Secure Storage; C:\Windows\system32\secpro.exe [2012-12-14 61440]
R2 STacSV;Audio Service; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_52c73ccb\STacSV.exe [2008-10-26 237657]
R2 TVCapSvc;TV Background Capture Service (TVBCS); C:\Program Files\Hewlett-Packard\Media\TV\Kernel\TV\TVCapSvc.exe [2008-11-26 296320]
R2 TVSched;TV Task Scheduler (TVTS); C:\Program Files\Hewlett-Packard\Media\TV\Kernel\TV\TVSched.exe [2008-11-26 116096]
R2 vfsFPService;Validity Fingerprint Service; C:\Windows\system32\vfsFPService.exe [2008-11-18 599344]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 1529728]
R3 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2008-10-23 223232]
R3 WPFFontCache_v0400;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2014-04-11 772296]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2014-12-11 315496]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-13 269504]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2014-04-11 45744]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2009-05-14 20680]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; D:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2015-11-07 147624]
S3 npggsvc;nProtect GameGuard Service; C:\Windows\system32\GameMon.des [2012-01-01 3931352]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2014-08-28 833728]
S4 Com4QLBEx;Com4QLBEx; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2008-11-19 222512]
S4 FsUsbExService;FsUsbExService; C:\Windows\system32\FsUsbExService.Exe [2009-03-31 233472]
S4 lxeaCATSCustConnectService;lxeaCATSCustConnectService; C:\Windows\system32\spool\DRIVERS\W32X86\3\\lxeaserv.exe [2010-04-14 193192]
S4 NetMsmqActivator;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; c:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; c:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; c:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2008-04-07 430592]
S4 xsherlock;xsherlock; C:\Windows\system32\xsherlock.xem [2012-06-04 670816]

-----------------EOF-----------------

Re: vyskakují neznámé webové stránky bez jakékoliv činnosti

Napsal: 19 pro 2015 09:31
od Márty84
Zdravim :)

:!: :???: Kdo tam co provadel s ComboFixem??? :twisted:

:arrow: Uvolnete nejake misto na disku, system se dusi.

:arrow: Stahnete AdwCleaner https://toolslib.net/downloads/finish/1/ a ulozte ho na plochu.
Ukoncete vsechny programy, jinak to AdwCleaner udela za vas.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Kliknete na Scan a pockejte, az kontrola dobehne.
Pak kliknete na Cleaning
Program zacne pracovat (muze dojit k restartu pc) a vyplivne log (pripadne bude zde C:\AdwCleaner\AdwCleaner[C?].txt ). Ten mi sem zkopirujte.

Re: vyskakují neznámé webové stránky bez jakékoliv činnosti

Napsal: 19 pro 2015 09:41
od Happygirl.
No s combofixem to zkoušel soused, protože už to bylo neúnosné jak nefungovaly stránky ani základní.





# AdwCleaner v5.025 - Logfile created 19/12/2015 at 09:28:18
# Updated 13/12/2015 by Xplode
# Database : 2015-12-13.2 [Server]
# Operating system : Windows Vista (TM) Home Premium Service Pack 2 (x86)
# Username : Vojta - VOJTA-PC
# Running from : C:\Users\Vojta\Downloads\adwcleaner_5.025.exe
# Option : Cleaning
# Support : http://toolslib.net/forum

***** [ Services ] *****


***** [ Folders ] *****

[-] Folder Deleted : C:\Program Files\Magnet Downloader
[-] Folder Deleted : C:\Program Files\LuckyBrowse
[!] Folder Not Deleted : C:\Program Files\Magnet Downloader
[-] Folder Deleted : C:\ProgramData\IHProtectUpDate
[-] Folder Deleted : C:\ProgramData\LuckyBrowse
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\LuckyBrowse
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vaudix
[-] Folder Deleted : C:\Users\Vojta\AppData\Local\globalUpdate
[-] Folder Deleted : C:\Users\Vojta\AppData\Local\Amigo
[-] Folder Deleted : C:\Users\Vojta\AppData\Local\Magnet Downloader
[!] Folder Not Deleted : C:\Users\Vojta\AppData\Local\Magnet Downloader
[-] Folder Deleted : C:\Users\Vojta\AppData\Local\Google\Chrome\User Data\Default\Extensions\dfcfkhnlpcoafpoepljegijlkinbhjgb
[-] Folder Deleted : C:\Users\Vojta\AppData\Roaming\SimpleFiles
[-] Folder Deleted : C:\Users\Vojta\AppData\Roaming\Systweak
[-] Folder Deleted : C:\Users\Vojta\AppData\Roaming\Mozilla\Firefox\Profiles\wz2s2bkc.default-1400313064800\Extensions\deskCutv2@gmail.com
[#] Folder Deleted : C:\Windows\system32\Tasks\LuckyBrowse

***** [ Files ] *****

[-] File Deleted : C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat
[-] File Deleted : C:\Users\Vojta\AppData\Roaming\Mozilla\Firefox\Profiles\wz2s2bkc.default-1400313064800\Extensions\yahooprotected@gmail.com.xpi
[-] File Deleted : C:\Users\Vojta\AppData\Roaming\Mozilla\Firefox\Profiles\wz2s2bkc.default-1400313064800\searchplugins\mystartsearch.xml
[-] File Deleted : C:\Users\Vojta\AppData\Roaming\Mozilla\Firefox\Profiles\wz2s2bkc.default-1400313064800\user.js

***** [ DLLs ] *****


***** [ Shortcuts ] *****

[-] Shortcut Disinfected : C:\Users\Public\Desktop\Mozilla Firefox.lnk
[-] Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[-] Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Postal 2 Share The Pain\Play Postal 2 Share The Pain Online with GameSpy Arcade.lnk
[-] Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Postal 2 Share The Pain\Online Links\Postal 2 Share The Pain Official Web Site.lnk
[-] Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Postal 2 Share The Pain\Online Links\Postal 2 Share The Pain Tech Support.lnk
[-] Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\2K Games\Borderlands 2\Borderlands 2.lnk
[-] Shortcut Disinfected : C:\Users\Vojta\Desktop\Google Chrome.lnk
[-] Shortcut Disinfected : C:\Users\Vojta\Desktop\Play Minecraft.lnk
[-] Shortcut Disinfected : C:\Users\Vojta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[-] Shortcut Disinfected : C:\Users\Vojta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk
[-] Shortcut Disinfected : C:\Users\Vojta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk
[-] Shortcut Disinfected : C:\Users\Vojta\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[-] Shortcut Disinfected : C:\Users\Vojta\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk

***** [ Scheduled tasks ] *****

[-] Task Deleted : Magnet Downloader-enabler
[-] Task Deleted : Magnet Downloader-codedownloader
[-] Task Deleted : LuckyBrowse
[-] Task Deleted : Magnet Downloader-codedownloader
[-] Task Deleted : Magnet Downloader-updater
[-] Task Deleted : Magnet Downloader-codedownloader
[-] Task Deleted : Magnet Downloader-updater

***** [ Registry ] *****

[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\ICQ\ICQToolBar
[-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
[-] Key Deleted : HKLM\SOFTWARE\Classes\driverscanner
[-] Key Deleted : HKLM\SOFTWARE\Classes\ToolBand.EasyHideBtn
[-] Key Deleted : HKLM\SOFTWARE\Classes\ToolBand.EasyHideBtn.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\ToolBand.Localizer
[-] Key Deleted : HKLM\SOFTWARE\Classes\ToolBand.Localizer.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\ToolBand.NameHighlighter
[-] Key Deleted : HKLM\SOFTWARE\Classes\ToolBand.NameHighlighter.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\ToolBand.NameHighlighterStatistics
[-] Key Deleted : HKLM\SOFTWARE\Classes\ToolBand.NameHighlighterStatistics.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\ToolBand.SkypeIEHelper
[-] Key Deleted : HKLM\SOFTWARE\Classes\ToolBand.SkypeIEHelper.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\ToolBand.SNameProxy
[-] Key Deleted : HKLM\SOFTWARE\Classes\ToolBand.SNameProxy.1
[-] Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WdsManPro
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures [Magnet Downloader-codedownloader.job]
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures [Magnet Downloader-codedownloader.job.fp]
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures [Magnet Downloader-enabler.job]
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures [Magnet Downloader-enabler.job.fp]
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures [Magnet Downloader-updater.job]
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures [Magnet Downloader-updater.job.fp]
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION [Magnet Downloader-bg.exe]
[-] Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0045508.BHO
[-] Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0045508.Sandbox
[-] Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0045508.Sandbox.1
[-] Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\jifflliplgeajjdhmkcfnngfpgbjonjg
[-] Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\niogeckbkdcabhnapjbkeiklablhjoca
[-] Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\dfcfkhnlpcoafpoepljegijlkinbhjgb
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{937936AF-28CA-4973-B8AE-F250406149A2}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C007DADD-132A-624C-088E-59EE6CF0711F}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{761F6A83-F007-49E4-8EAC-CDB6808EF06F}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{76C45B18-A29E-43EA-AAF8-AF55C2E1AE17}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{96EF404C-24C7-43D0-9096-4CCC8BB7CCAC}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{97720195-206A-42AE-8E65-260B9BA5589F}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{97D69524-BB57-4185-9C7F-5F05593B771A}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{986F7A5A-9676-47E1-8642-F41F8C3FCF82}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B18788A4-92BD-440E-A4D1-380C36531119}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F83D1872-D9FF-47F8-B5A0-49CC51E24EE8}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3CCC052E-BDEE-408A-BEA7-90914EF2964B}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{61F47056-E400-43D3-AF1E-AB7DFFD4C4AD}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E2B98EEA-EE55-4E9B-A8C1-6E5288DF785A}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
[!] Key Not Deleted : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{3E288F79-03E4-4983-A48E-0D879B51FF19}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{937936AF-28CA-4973-B8AE-F250406149A2}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{32099AAC-C132-4136-9E9A-4E364A424E17}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{855F3B16-6D32-4FE6-8A56-BBB695989046}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95289393-33EA-4F8D-B952-483415B9C955}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{32099AAC-C132-4136-9E9A-4E364A424E17}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{855F3B16-6D32-4FE6-8A56-BBB695989046}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95289393-33EA-4F8D-B952-483415B9C955}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3d0b2ee8-8ecc-4430-b87d-b2f618cdfd36}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6c1e71ab-ee19-4ff0-9615-c9fa01c1232a}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{c2f77859-c8a1-482e-8367-d480ee1b4899}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{d270b3e8-8459-4f75-88c3-e28f7faf8892}
[-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{32099AAC-C132-4136-9E9A-4E364A424E17}]
[-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{EF99BD32-C1FB-11D2-892F-0090271D4F88}]
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{855F3B16-6D32-4FE6-8A56-BBB695989046}]
[-] Key Deleted : HKCU\Software\1ClickDownload
[-] Key Deleted : HKCU\Software\Conduit
[-] Key Deleted : HKCU\Software\dt soft\daemon tools toolbar
[-] Key Deleted : HKCU\Software\InstalledBrowserExtensions
[-] Key Deleted : HKCU\Software\SimpleFiles
[-] Key Deleted : HKCU\Software\YahooPartnerToolbar
[-] Key Deleted : HKCU\Software\Yahoo\Companion
[-] Key Deleted : HKCU\Software\Yahoo\YFriendsBar
[-] Key Deleted : HKCU\Software\AppDataLow\Software\Magnet Downloader
[-] Key Deleted : HKLM\SOFTWARE\DivX\Install\Setup\WizardLayout\ConduitToolbar
[-] Key Deleted : HKLM\SOFTWARE\dt soft\daemon tools toolbar
[-] Key Deleted : HKLM\SOFTWARE\ICQ\ICQToolbar
[-] Key Deleted : HKLM\SOFTWARE\SimpleFiles
[-] Key Deleted : HKLM\SOFTWARE\Trymedia Systems
[-] Key Deleted : HKLM\SOFTWARE\mystartsearchSoftware
[-] Key Deleted : HKLM\SOFTWARE\Yahoo\Companion
[-] Key Deleted : HKLM\SOFTWARE\WdsManPro
[-] Key Deleted : HKLM\SOFTWARE\LuckyBrowse
[-] Key Deleted : HKLM\SOFTWARE\Magnet Downloader
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Magnet Downloader
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\daemon tools toolbar
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Magnet Downloader
[-] Key Deleted : HKU\.DEFAULT\Software\AppDataLow\Software\Magnet Downloader
[-] Key Deleted : HKU\.DEFAULT\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\Magnet Downloader
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{37691517-3ce2-45ca-bae1-b680b16f10ea}
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{5A1B2049-862E-4CF8-B7C8-65D0AD2AF66C}
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{37691517-3ce2-45ca-bae1-b680b16f10ea}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{5A1B2049-862E-4CF8-B7C8-65D0AD2AF66C}
[-] Data Restored : HKLM\SOFTWARE\Clients\StartMenuInternet\Google Chrome\shell\open\command []

***** [ Web browsers ] *****

[-] [C:\Users\Vojta\AppData\Roaming\Mozilla\Firefox\Profiles\wz2s2bkc.default-1400313064800\prefs.js] [Preference] Deleted : user_pref("browser.newtab.url", "chrome://quick_start/content/index.html");
[-] [C:\Users\Vojta\AppData\Roaming\Mozilla\Firefox\Profiles\wz2s2bkc.default-1400313064800\prefs.js] [Preference] Deleted : user_pref("browser.search.defaultenginename", "mystartsearch");
[-] [C:\Users\Vojta\AppData\Roaming\Mozilla\Firefox\Profiles\wz2s2bkc.default-1400313064800\prefs.js] [Preference] Deleted : user_pref("browser.search.selectedEngine", "mystartsearch");
[-] [C:\Users\Vojta\AppData\Roaming\Mozilla\Firefox\Profiles\wz2s2bkc.default-1400313064800\prefs.js] [Preference] Deleted : user_pref("extensions.quick_start.enable_search1", false);
[-] [C:\Users\Vojta\AppData\Roaming\Mozilla\Firefox\Profiles\wz2s2bkc.default-1400313064800\prefs.js] [Preference] Deleted : user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false);

*************************

:: "Tracing" keys removed
:: Winsock settings cleared

*************************

C:\AdwCleaner[R1].txt - [16753 bytes] - [29/11/2012 10:50:35]
C:\AdwCleaner[R2].txt - [1448 bytes] - [29/11/2012 10:58:14]
C:\AdwCleaner[S1].txt - [17357 bytes] - [29/11/2012 10:51:01]

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [14136 bytes] ##########

Re: vyskakují neznámé webové stránky bez jakékoliv činnosti

Napsal: 19 pro 2015 09:44
od Márty84
Kdybyste cetla pravidla fora http://forum.viry.cz/viewtopic.php?f=12&t=5601 , docetla byste se mimo jine toto
2. Před položením dotazu použijte tlačítko Hledat. Možná již někdo problém podobným Vašemu řešil. Pokud ale ve vyřešeném tématu budou aplikovány různé utility\aplikace, nespouštějte je. Utility se používají až na pokyn rádce, jelikož mohou mazat stopy po havěti a v rukou ne-oborníka může mít jejich použití nedozírné následky.

3. Zvláště utilitu ComboFix nespouštějte i když Vám ji poradil kamarád\nějaký rádoby odborný web. Naše fórum je jediné z CZ-SK antivirových fór, která mají právo luštit logy z ComboFixu a mámě též plnou podporu autora této utility a přístup k nejaktuálnějším informacím a návodům.
CF smaze veskere stopy pripadne nakazy a ja ted muzu tak akorat varit z vody, jak se rika :(
Takze bez doporuceni ho uz rozhodne nepouzivejte, jinak muze byt priste pomoc odmitnuta.
A taky upozornuji, ze se cisteni mozna protahne a vysledek neni vubec jisty :?: Uvidime :)




:arrow: Udelejte kontrolu s MBAM. Test nastavte podle tohoto navodu (cili Vlastni sken vsech disku) http://forum.viry.cz/viewtopic.php?f=29&t=144868 a dejte sem vysledky. Predem nic nemazte, miva obcas falesne detekce

Re: vyskakují neznámé webové stránky bez jakékoliv činnosti

Napsal: 19 pro 2015 09:45
od Happygirl.
Pořád ještě vyskakujou reklamy:(

Re: vyskakují neznámé webové stránky bez jakékoliv činnosti

Napsal: 19 pro 2015 21:22
od Márty84
To byl jen prvni krok, pokracujte dale jak jsem psal...

Márty84 píše: :arrow: Udelejte kontrolu s MBAM. Test nastavte podle tohoto navodu (cili Vlastni sken vsech disku) viewtopic.php?f=29&t=144868 a dejte sem vysledky. Predem nic nemazte, miva obcas falesne detekce

Re: vyskakují neznámé webové stránky bez jakékoliv činnosti

Napsal: 20 pro 2015 00:53
od Happygirl.
Malwarebytes Anti-Malware
www.malwarebytes.org

Datum skenování: 19.12.2015
Čas skenování: 10:30:34
Protokol: viry.txt
Správce: Ano

Verze: 2.2.0.1024
Databáze malwaru: v2015.12.19.02
Databáze rootkitů: v2015.12.18.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Ochrana programu: Vypnuto

OS: Windows Vista Service Pack 2
CPU: x86
Souborový systém: NTFS
Uživatel: Vojta

Typ skenu: Vlastní sken
Výsledek: Dokončeno
Prohledaných objektů: 610244
Uplynulý čas: 6 hod, 16 min, 6 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Zapnuto
Sken hloubkových rootkitů: Zapnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 0
(Nenalezeny žádné škodlivé položky)

Moduly: 3
PUP.Optional.CrossRider, C:\Users\Vojta\AppData\Local\Style Rush\{0FA33732-14F1-987C-AEA3-6D77D506A1A7}\wzpi.dll, , [0de1e9bd98f35cda13ea126a13f116ea],
PUP.Optional.CrossRider, C:\Users\Vojta\AppData\Local\Style Rush\{0FA33732-14F1-987C-AEA3-6D77D506A1A7}\StyleRush.dll, , [3ab4ced8a5e6be780ec84a3184802ad6],
PUP.Optional.CrossAd.Gen, C:\Users\Vojta\AppData\Local\Style Rush\{0FA33732-14F1-987C-AEA3-6D77D506A1A7}\{C5D9E05D-3981-73AF-E3EB-D535F5DC94DC}.dat, , [b43adec85f2c9a9c8d31d0df9c6844bc],

Klíče registru: 1576
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{0D2E16B6-B1B1-487D-F64D-AAC5B7462B77}, , [86683d69eba0f83eb81e82f95ca87d83],
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\Style Rush, , [f4faf2b4850650e6fa83aa03877bfa06],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{104FE6AA-DC1B-432F-AEE2-7D1795841CDF}, , [d91504a2c8c394a2279f0094d1322fd1],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{107B4758-A2DA-4927-B03D-CDE6A0F39728}, , [ca244660068582b45273d0c49e65847c],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{107DD839-5484-4146-8662-D07F8FFD8FA6}, , [3bb3574ff79446f0b2143f5533d0a15f],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{10C4BF8D-4587-4C59-91A9-9A4F6B304FF4}, , [0fdf9a0c0685fd39794db7ddbf44b54b],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{10E0260B-9BC6-4810-8DB3-2FDA5394F8A2}, , [658963430a81ce6808bdafe58e7540c0],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{10ECA6C4-5641-4A57-A7FE-34CB43EF76B0}, , [b33b0b9bf5962b0ba91db4e0f50e3fc1],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{11011991-53A8-4F1E-9881-C98BFB9EC0DE}, , [22cce0c60d7e5ed87154c3d1659eba46],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1128F0BF-1F27-4230-84C5-3A25E6F427D9}, , [3eb0d7cf5833e353cef71381ee15b848],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{118191C7-FA7F-41B8-9AC1-D029162E471B}, , [e30b188e8209ec4abf07bbd9f21112ee],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{11B4019D-C91F-417C-90AD-62CE944CB7E7}, , [e00ecadc018ab383d4f22e66ea198d73],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{124A9852-B8F7-429B-9999-68BC7D5C2724}, , [a747dfc798f35adc4e77187cd0332dd3],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1284CA0E-E96D-402A-A970-F4995DF8D6B9}, , [b539abfb454636007b4bcec67b882ad6],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{128AB5C8-B484-40F1-BA8E-6550ECC617FF}, , [c9258d190e7dd462bb0b286c27dc5ca4],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{12A5AB37-D290-4067-A96D-F2BF8E75BC58}, , [b836eabc2d5ec076fec88c08cf34c23e],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{12A6173D-38B1-446B-976F-19E9205CB85C}, , [7a7470361d6e989e269fc1d3679c946c],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1317DE57-1216-46AA-9960-1B9F531651B1}, , [4aa405a1206b61d5ecd93c58d42f59a7],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{13286AC7-4FDC-48C1-99E8-B27A1A6C2AAB}, , [f3fb139359324bebd7ef7420768d17e9],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1330990C-7F6E-472D-9ACC-532933C9D436}, , [6a8491156c1f73c37b4b99fbc73c669a],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1335026E-6304-4B6B-8EF8-C7AEB54670C1}, , [9e504165c0cb0e284680a5ef6a99926e],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{135D84C3-E0B8-4DC8-9C93-6576376F8C8D}, , [f3fba9fd1c6fb284a6202c682bd852ae],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1378BDDD-A2AE-4D70-9482-4AC0B28B388A}, , [6e80287e96f51224bf06f59fef145aa6],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{13EA5EEC-F5FC-45BA-91E3-B434D2A392FD}, , [dc12bbebeba07db9bc090a8af40fd22e],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{13EE5A4A-C151-44DC-8589-525EED74A71F}, , [c628edb9385360d603c36c285aa93dc3],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{13FA24EB-50E0-4269-BA3C-18271039EC41}, , [3cb2e5c1afdc8da9f3d3cbc949bab14f],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1440EADF-FF24-43B8-923E-9DFE5789F2C6}, , [9a5450567b10c67011b5e9abe81b21df],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1443E789-FF09-4412-9C37-835C5E61844E}, , [19d5d6d055366bcb21a5eca8897ab050],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{144D8329-64D0-4501-90E5-DF80453C1DA3}, , [28c6475f3c4f270f9c2aa3f1d52e956b],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1460D4FE-3671-4494-9F67-9EABCE9E5215}, , [48a6e4c213785ed8487eade7857eab55],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{149F7CAD-F723-43F0-AC2D-9B9D1D7ED745}, , [2dc15f47018a76c08144cec6fc072cd4],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{14C3F4E2-1F15-4E0C-8BD0-A6F25D6B7597}, , [727c2a7cddae71c55c6a9301f0139070],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{14C92807-DBD9-41AE-9155-B022B35CA6EC}, , [c02ea0067f0c42f44e77eea6d03316ea],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{151D8A37-CB03-4E1C-976A-E3589AAC3F3B}, , [c12d673f6229e452b80d2074748fac54],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{15C58878-D982-4D18-A6FE-C282B2FE90A7}, , [31bda1057912e6508144e6ae60a3eb15],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{15F6C646-ABA9-4FFE-896F-AA184A932913}, , [2ac43b6b3d4ece6816af880c0cf756aa],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{161FB2C5-1AC8-4715-8BC8-CAA44E676E9F}, , [1dd1d3d3820980b6497ddeb68f74f50b],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{16986420-BADD-4357-8A60-19C68A3445AC}, , [6b838422107be84e80464e46778cd52b],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{16DC9723-5AAD-487B-832A-DCC8DCBABA46}, , [43abd3d30685f93d8441bdd7db287e82],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{16E3D9BB-9B36-41C8-859E-18B6A33C93EA}, , [a747574fc9c28bab15b0633116ed0000],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{16EBECD6-A2B4-4F1B-A623-FB7612EC71A0}, , [7f6f8224870486b008be395bec17e719],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{16FED7CC-C401-4835-A026-D079FEA9A14F}, , [8d61287e0a81f442b115aaea59aa669a],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1731E02D-74DD-4F37-B74B-2DC4666839B1}, , [e5099610e4a750e69135930119ea1be5],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{174B2335-23D2-4CA8-BC3C-EFBD2DDEA8FE}, , [47a712942f5c00364a7c03916a99eb15],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{174CECC7-F8E4-44CE-9AF5-6652D2965AA1}, , [29c5c9ddd5b6280e9630f99b01023ac6],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{179D03DA-E34C-4107-8F4E-AC80A98CD354}, , [faf4a501444754e2a124c3d17b8850b0],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{17EA1AD2-DDF6-465F-BBD5-F2C2599580D2}, , [f5f961458902e650f0d6068e2fd4fd03],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{18757B96-ABA7-41B2-817C-571C4B3CE8C5}, , [5a949214a5e6c17531948311c83b33cd],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{189C5F83-E242-4501-A816-2F29128BBFEA}, , [836b5c4a583356e0ebdbc8cc05fec13f],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{18CAF3BC-B214-4F64-825B-3CA5296B7DE6}, , [30bea5012e5d84b2fbcbdeb606fd17e9],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{190A0801-3A32-41C7-8C38-378A5F43216C}, , [8a64f5b15a310e28467f3f550300aa56],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{19257EC7-24FF-40F6-B9D2-852E3BAEBFD6}, , [4da16d39eba0af8701c5464ea55e09f7],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1956E8B2-807E-4AC5-959A-357B4849F71B}, , [7f6f76304942d5614f76058f659e3ac6],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{19A5AF0E-3676-451A-B32D-CFF676F25DFF}, , [df0f8a1cadde9b9b44813a5adc272ad6],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{19C0995D-97C6-46D8-8549-4A29FF4A6483}, , [8b633d69137882b49036efa54cb726da],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{19D6ECF8-56BA-4DE3-BEFC-79F293B27015}, , [13db2680c8c379bd24a1474d22e124dc],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1A0428AC-2F46-4FC0-AAFD-2EB667588DDA}, , [ee00584e98f388aeb90d2074ea194db3],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1A18EC14-963E-4D8C-808E-A2855CFC9851}, , [6a84287ecac14cea7452ade7c63d8d73],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1A86E7C5-4225-4A04-BA1F-B7741A7C60BF}, , [af3f5f470e7dd2642d991d77739048b8],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1A9F7B2D-6840-4D96-8039-D310B6E11EB6}, , [bb33b3f349424aecbf06c3d158ab8977],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1AB135FF-D193-4509-B61E-5EA18F445E73}, , [7678b3f3abe056e0923490045ea5718f],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1AE5EDDC-CD8B-4FFE-868C-6179B281402E}, , [ac425c4aa6e5d3639f266b29778c639d],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1B056A35-5143-467A-99BF-8E2A8ABACD13}, , [22cc46608ffc6dc9e1e5a2f212f17f81],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1B1868F6-4CEC-4509-B2E7-5A1B6D2973B7}, , [8e6005a115763df903c33064b25157a9],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1B23BEC5-AADE-4DE9-B2D5-C1E83AB5483F}, , [b9355e488ffc62d46b5b494bac57de22],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1B30226D-B5AE-402F-87DA-3582205BB878}, , [f6f8970f7d0ec373c7fe801410f3639d],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1B33F4EE-3129-4641-9232-A626695170FB}, , [35b9fda9464569cd15b0296b9172fd03],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1BC2FD93-53FF-4A3B-A4F8-FFDED1C02639}, , [faf4980eff8ccf67a620fb999d668e72],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1BF12A76-CECC-4822-839D-2EDFFCE8C0A3}, , [6f7f842291fa3ff7794c039125dedc24],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1C09FB82-22CC-4A23-B312-C07EA9EDA693}, , [f3fb574f2d5e2016ad186e26af54de22],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1C18C33B-502F-44FB-BE61-344725DA1D53}, , [7e705d495635162054724153dd265ba5],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1C1DDEDC-4D5A-4550-B5C7-975B6AECAF81}, , [14da3d690388c472aa1bd2c2838012ee],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1C663D5A-DC14-4AE8-BF47-BCAE898844ED}, , [5f8fedb9b6d593a3854042526f948d73],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1C9A0F5B-315F-4D02-B5B9-B85999B7E334}, , [618dfbabc0cbef475d690490d72c4db3],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1C9F850C-7E43-4906-BBA3-306D79F6A0A5}, , [4aa41d8923681b1b4086f1a3da2929d7],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1CB32BB6-CE1D-4C67-ABC7-5FE753E1DEBC}, , [e40a4a5cddae9d99dbeb24700102d927],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1CF7ED44-B44D-4909-A987-CF8AB6745859}, , [ea042185a5e60f27a6207a1a25de42be],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1D1E4CF9-E7CF-48D1-BAE9-2E69D9F1D14F}, , [f2fc11952566ee4826a0ddb7cc3749b7],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1D25FF56-2857-4CC2-A697-A9136CC3B79D}, , [a8469c0a8cff2313398d8311d72c7090],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1D39C273-18D0-4858-848E-6E172B4C5FAC}, , [28c68c1a9eeda98d18ad5b397f8443bd],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1D5F6F95-7846-4C9E-89EB-349CEB1D2256}, , [c22c7b2bd8b33ef86b5b464e6d9620e0],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1DC1D24A-E347-4DAE-8365-3485C255FB17}, , [915d990d18731323dde8494b12f1d22e],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1DFDAB1F-DD2F-47C6-A79B-FEFB80EC1AE0}, , [a6485a4c6922df57cdf9f79d2cd7fb05],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1E2457F9-CA92-48DC-8959-CAAD43642126}, , [f2fc06a091fac670972f0b892bd87987],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1E4E4B3F-1805-47FF-B2A0-70A9786234C0}, , [b03e9d0905869a9cb5117321d92aa15f],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1EBD19FE-B1F1-4081-AEB4-EA51873441A3}, , [c42a8125a8e344f280464351976cbe42],
PUP.Optional.CrossRider, HKU\S-1-5-21-118211837-1974094559-23580359-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1EC678FA-C7EB-43AC-91FA-97E5D3CB9FB6}, , [7d710a9c4d3e8ea804c2eca8946f35cb],

Re: vyskakují neznámé webové stránky bez jakékoliv činnosti

Napsal: 20 pro 2015 00:57
od Happygirl.
Data registru: 0
(Nenalezeny žádné škodlivé položky)

Složky: 10
PUP.Optional.CrossAd.Gen, C:\Users\Vojta\AppData\Roaming\Mozilla\Firefox\Profiles\wz2s2bkc.default-1400313064800\jetpack\@9125C038AF98A6201C23DD8762BF69C69125, , [8d61e3c32467e84e00709fde29d9ac54],
PUP.Optional.CrossAd.Gen, C:\Users\Vojta\AppData\Roaming\Mozilla\Firefox\Profiles\wz2s2bkc.default-1400313064800\jetpack\@9125C038AF98A6201C23DD8762BF69C69125\simple-storage, , [8d61e3c32467e84e00709fde29d9ac54],
PUP.Optional.MagnetTV, C:\Program Files\Magnet.TV, , [78763670b8d32115e76aa2f254ae51af],
PUP.Optional.MagnetTV, C:\Users\Vojta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Magnet-TV.com, , [05e9d8cec6c5bc7a1b37cfc55aa8b44c],
PUP.Optional.CrossAd.Gen, C:\Users\Vojta\AppData\Local\Style Rush\Component, , [b43adec85f2c9a9c8d31d0df9c6844bc],
PUP.Optional.CrossAd.Gen, C:\Users\Vojta\AppData\Local\Style Rush, , [b43adec85f2c9a9c8d31d0df9c6844bc],
PUP.Optional.CrossAd.Gen, C:\Users\Vojta\AppData\Local\Style Rush\Component2, , [b43adec85f2c9a9c8d31d0df9c6844bc],
PUP.Optional.CrossAd.Gen, C:\Users\Vojta\AppData\Local\Style Rush\{0FA33732-14F1-987C-AEA3-6D77D506A1A7}, , [b43adec85f2c9a9c8d31d0df9c6844bc],
PUP.Optional.Yontoo, C:\Users\Vojta\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdhdffdfplgjbehlmeikjfckgdpkdebd\1.0.5823.31341_0, , [638b594d4e3d0e28a5a5f8bbdd27669a],
PUP.Optional.Yontoo, C:\Users\Vojta\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdhdffdfplgjbehlmeikjfckgdpkdebd, , [638b594d4e3d0e28a5a5f8bbdd27669a],

Soubory: 35
PUP.Optional.CrossRider, C:\Users\Vojta\AppData\Local\Style Rush\{0FA33732-14F1-987C-AEA3-6D77D506A1A7}\wzpi.dll, , [0de1e9bd98f35cda13ea126a13f116ea],
PUP.Optional.CrossRider, C:\Users\Vojta\AppData\Local\Style Rush\{0FA33732-14F1-987C-AEA3-6D77D506A1A7}\StyleRush.dll, , [3ab4ced8a5e6be780ec84a3184802ad6],
PUP.Optional.MagnetDownloader, C:\AdwCleaner\Quarantine\C\Program Files\Magnet Downloader\Magnet Downloader-bg.exe.vir, , [925c287ed2b9290ddbca8aa67d8415eb],
PUP.Optional.CrossRider, C:\AdwCleaner\Quarantine\C\Program Files\Magnet Downloader\Magnet Downloader-buttonutil.dll.vir, , [32bc8224503bd26462b961599d646e92],
PUP.Optional.MagnetDownloader, C:\AdwCleaner\Quarantine\C\Program Files\Magnet Downloader\Magnet Downloader-buttonutil.exe.vir, , [e20cd1d57c0f2e08c0e583ad669b2cd4],
PUP.Optional.MagnetDownloader, C:\AdwCleaner\Quarantine\C\Program Files\Magnet Downloader\Magnet Downloader-codedownloader.exe.vir, , [3faf6c3a5a31c175297c55db17eab54b],
PUP.Optional.MagnetDownloader, C:\AdwCleaner\Quarantine\C\Program Files\Magnet Downloader\Magnet Downloader-updater.exe.vir, , [7777b0f68cffb08600a5d95754ad35cb],
PUP.Optional.CrossRider, C:\AdwCleaner\Quarantine\C\Program Files\Magnet Downloader\Uninstall.exe.vir, , [eb033076f09b5adcd061a4fcf40c11ef],
PUP.Optional.CrossRider, C:\AdwCleaner\Quarantine\C\Program Files\Magnet Downloader\utils.exe.vir, , [4f9f3274ed9ee452ed7f53d9be42966a],
PUP.Optional.ScramblePacker, C:\Program Files\Magnet.TV\magnet-downloaderIE.exe, , [648a4660cfbcc07675d864ceaa57837d],
RiskWare.Tool.CK, C:\Program Files\InstallShield Installation Information\{1998BD34-1AAB-4169-ACFF-67342E2AF9B4}\_Backup\Gothic3.exe, , [a846a4028209ac8a1407b99a30d08878],
PUP.Optional.MagnetDownloader, C:\Qoobox\Quarantine\C\Program Files\Magnet Downloader\MaGNet downloader-bho.dll.vir, , [ac42c9ddcbc0a78f04a1939d78891ae6],
PUP.Optional.CrossRider, C:\Users\Vojta\AppData\Local\Style Rush\{0FA33732-14F1-987C-AEA3-6D77D506A1A7}\{E9F36691-CFBE-B8DF-B81D-2273BA4A29FF}.dll, , [86683d69eba0f83eb81e82f95ca87d83],
PUP.Optional.MindSpark, C:\Users\Vojta\Downloads\HeroicPlaySetup2.5.5.52.^AFD^fox000^^.exe, , [f3fb82242368e94d19d85a513cc836ca],
PUP.Optional.OneClickDownloader, C:\Users\Vojta\Downloads\Warhammer_40.exe, , [2ec01096e6a5b97daaa6ac85fd04a35d],
PUP.Optional.OneClickDownloader, C:\Users\Vojta\Downloads\Warhammer_40000__Dawn_of_War__Dark_Crusade_(2006)_PC.exe, , [36b8cbdb414afe381d3340f1c1401be5],
PUP.Optional.CrossRider, C:\Windows\System32\Tasks\Style Rush, , [02ec83237e0d9f97fb7faeff18ea956b],
PUP.Optional.CrossAd.Gen, C:\Users\Vojta\AppData\Roaming\Mozilla\Firefox\Profiles\wz2s2bkc.default-1400313064800\extensions\@9125C038AF98A6201C23DD8762BF69C69125.xpi, , [39b59313d8b3d75f9d686025b44fb34d],
PUP.Optional.CrossAd.Gen, C:\Users\Vojta\AppData\Roaming\Mozilla\Firefox\Profiles\wz2s2bkc.default-1400313064800\jetpack\@9125C038AF98A6201C23DD8762BF69C69125\simple-storage\store.json, , [8d61e3c32467e84e00709fde29d9ac54],
PUP.Optional.MagnetTV, C:\Program Files\Magnet.TV\magnet-downloader10.crx, , [78763670b8d32115e76aa2f254ae51af],
PUP.Optional.MagnetTV, C:\Users\Vojta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Magnet-TV.com\MagnetTV.lnk, , [05e9d8cec6c5bc7a1b37cfc55aa8b44c],
PUP.Optional.CrossAd.Gen, C:\Users\Vojta\AppData\Local\Style Rush\Component\config.json, , [b43adec85f2c9a9c8d31d0df9c6844bc],
PUP.Optional.CrossAd.Gen, C:\Users\Vojta\AppData\Local\Style Rush\Component\hello.js, , [b43adec85f2c9a9c8d31d0df9c6844bc],
PUP.Optional.CrossAd.Gen, C:\Users\Vojta\AppData\Local\Style Rush\Component\log.html, , [b43adec85f2c9a9c8d31d0df9c6844bc],
PUP.Optional.CrossAd.Gen, C:\Users\Vojta\AppData\Local\Style Rush\Component\manifest.json, , [b43adec85f2c9a9c8d31d0df9c6844bc],
PUP.Optional.CrossAd.Gen, C:\Users\Vojta\AppData\Local\Style Rush\Component\scriptTagContext.js, , [b43adec85f2c9a9c8d31d0df9c6844bc],
PUP.Optional.CrossAd.Gen, C:\Users\Vojta\AppData\Local\Style Rush\Component\tmp_bg.js, , [b43adec85f2c9a9c8d31d0df9c6844bc],
PUP.Optional.CrossAd.Gen, C:\Users\Vojta\AppData\Local\Style Rush\Component\uconfig.json, , [b43adec85f2c9a9c8d31d0df9c6844bc],
PUP.Optional.CrossAd.Gen, C:\Users\Vojta\AppData\Local\Style Rush\Component2\plugin, , [b43adec85f2c9a9c8d31d0df9c6844bc],
PUP.Optional.CrossAd.Gen, C:\Users\Vojta\AppData\Local\Style Rush\{0FA33732-14F1-987C-AEA3-6D77D506A1A7}\c.dat, , [b43adec85f2c9a9c8d31d0df9c6844bc],
PUP.Optional.CrossAd.Gen, C:\Users\Vojta\AppData\Local\Style Rush\{0FA33732-14F1-987C-AEA3-6D77D506A1A7}\{C5D9E05D-3981-73AF-E3EB-D535F5DC94DC}.dat, , [b43adec85f2c9a9c8d31d0df9c6844bc],
PUP.Optional.Yontoo, C:\Users\Vojta\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdhdffdfplgjbehlmeikjfckgdpkdebd\1.0.5823.31341_0\manifest.json, , [638b594d4e3d0e28a5a5f8bbdd27669a],
PUP.Optional.Yontoo, C:\Users\Vojta\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdhdffdfplgjbehlmeikjfckgdpkdebd\1.0.5823.31341_0\background.js, , [638b594d4e3d0e28a5a5f8bbdd27669a],
PUP.Optional.Yontoo, C:\Users\Vojta\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdhdffdfplgjbehlmeikjfckgdpkdebd\1.0.5823.31341_0\content.js, , [638b594d4e3d0e28a5a5f8bbdd27669a],
PUP.Optional.Yontoo, C:\Users\Vojta\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdhdffdfplgjbehlmeikjfckgdpkdebd\1.0.5823.31341_0\icon.png, , [638b594d4e3d0e28a5a5f8bbdd27669a],

Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)


(end)

Re: vyskakují neznámé webové stránky bez jakékoliv činnosti

Napsal: 20 pro 2015 12:54
od Márty84
Vsechny nalezy nechte odstranit. Po odstraneni a restartu pc test s MBAM zopakujte, at vime, jestli se to nevraci. Napiste vysledek testu a podle nej zvolim dalsi postup.

Re: vyskakují neznámé webové stránky bez jakékoliv činnosti

Napsal: 22 pro 2015 14:05
od Happygirl.
Po vymazání se nelze připojit k internetu, jinými zařízeními ano ale ne tim pocitacem

Re: vyskakují neznámé webové stránky bez jakékoliv činnosti

Napsal: 22 pro 2015 20:21
od Márty84
vyosek píše: :arrow: Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
  • Ulozte nejlepe na plochu
  • Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
  • Probehne vytvoreni zalohy a nasledne prohledavani
  • Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte

:arrow: Postupujte podle navodu kolegy
vyosek píše: :arrow: Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do okna vlozte skript nize
  • Kód: Vybrat vše

    autoclean;
    autoclean;
    resethosts;
    emptyclsid;
    IEdefaults;
    FFdefaults;
    CHRdefaults;
    emptyIEcache;
    emptyFFcache;
    emptyCHRcache;
    emptyalltemp;
    emptyflash;
    emptyjava;
    emptyrecycle.bin;
  • Nasledne kliknete na Run Script
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem

:arrow: Pak zkontrolujte nastaveni pripojeni a zopakujte ten test s MBAM, jak jsem psal.

Re: vyskakují neznámé webové stránky bez jakékoliv činnosti

Napsal: 23 pro 2015 09:26
od Happygirl.
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.1 (11.24.2015)
Operating System: Windows Vista (TM) Home Premium x86
Ran by Vojta (Administrator) on st 23.12.2015 at 9:09:27,76
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 7

Successfully deleted: C:\ProgramData\alawarwrapper (Folder)
Successfully deleted: C:\users\Public\Documents\alawarwrapper (Folder)
Successfully deleted: C:\Users\Vojta\AppData\Local\alawarwrapper (Folder)
Successfully deleted: C:\Users\Vojta\AppData\Roaming\alawarentertainment (Folder)
Successfully deleted: C:\Users\Vojta\AppData\Roaming\Mozilla\Firefox\Profiles\wz2s2bkc.default-1400313064800\user.js (File)
Successfully deleted: C:\Users\Vojta\AppData\Roaming\wyupdate au (Folder)
Successfully deleted: C:\Windows\System32\ai_recyclebin (Folder)

Deleted the following from C:\Users\Vojta\AppData\Roaming\Mozilla\Firefox\Profiles\wz2s2bkc.default-1400313064800\prefs.js
user_pref(browser.search.searchengine.alias, mystartsearch);
user_pref(browser.search.searchengine.desc, this is my first firefox searchEngine);
user_pref(browser.search.searchengine.iconURL, hxxp://www.mystartsearch.com/favicon.ico);
user_pref(browser.search.searchengine.name, mystartsearch);
user_pref(browser.search.searchengine.ptid, ima);
user_pref(browser.search.searchengine.uid, TOSHIBAXMK3255GSX_69RHC3KETXX69RHC3KET);
user_pref(browser.search.searchengine.url, hxxp://www.mystartsearch.com/web/?type=ds&ts=1 ... BAXMK3255G



Registry: 4

Successfully deleted: HKLM\Software\Wow6432Node\Google\Chrome\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd (Registry Key)
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} (Registry Key)
Successfully deleted: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{95289393-33EA-4F8D-B952-483415B9C955} (Registry Key)
Successfully deleted: HKLM\Software\Microsoft\Internet Explorer\Search\\SearchAssistant (Registry Value)




~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on st 23.12.2015 at 9:12:48,90
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Re: vyskakují neznámé webové stránky bez jakékoliv činnosti

Napsal: 23 pro 2015 11:42
od Happygirl.
Zoek.exe v5.0.0.1 Updated 22-December-2015
Tool run by Vojta on st 23.12.2015 at 9:28:13,94.
Microsoft® Windows Vista™ Home Premium 6.0.6002 Service Pack 2 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Vojta\Downloads\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

23.12.2015 9:29:58 Zoek.exe System Restore Point Created Successfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

127.0.0.1 localhost
::1 localhost

==== Empty Folders Check ======================

C:\Program Files\Malwarebytes' Anti-Malware deleted successfully
C:\PROGRA~2\Turbine deleted successfully
C:\Users\Vojta\AppData\Roaming\Malwarebytes deleted successfully
C:\Users\Vojta\AppData\Roaming\Media Player Classic deleted successfully
C:\Users\Vojta\AppData\Roaming\PeerNetworking deleted successfully
C:\Users\Vojta\AppData\Roaming\WinRAR deleted successfully

==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{13926BD2-D71B-4A68-875D-F118D840524B} deleted successfully
successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A2A8240D-B0B3-4B0E-84EA-146E39B355F} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AE69A84-6F7A-42AA-93F8-E93DC683A4} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AE7B3651-C0F2-43D2-8547-9EAF25BA9C7} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AE831E9E-BA9B-4818-968F-F3CC9FBD4381} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AE8D0915-5204-4F52-963C-5768BF01FB1} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AE9B73CC-2FFA-4E79-8045-56F2A559DA5} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AEA244DA-5A1F-47A7-AA80-EE928DF45F73} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AEA24BB-266D-4E45-8B77-706B9DF9CE63} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AEAA97CE-382-46BF-83D9-99FC74E4E949} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AEBB34FB-FC67-45E6-AC8B-70CAAE476120} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AEFD9F75-E452-46FD-8112-EF2A38D5965} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AF14F08A-199E-4D64-827D-F4D2FA3D73C} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AF1B7A46-7D7F-4DCC-B7E8-F9B5BBB35CB} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AF30B9A6-4C3A-4076-9C8C-3D94C7585CE3} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B1005D28-66FE-438D-AE75-93681D90C981} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B104611B-520A-49B0-9CC1-65AA8455385D} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BE839A79-F99F-4CC7-85C4-134D16A815} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BE876FA-1F78-49BC-BA5B-41169BE9577} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BE8E5F73-7A32-49E4-8F2D-86A9A6DA168} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BEB6E76D-58A2-4BBD-B681-6E2A8BF1C097} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BEBF2884-924F-4CA3-B917-E23929FB5E6C} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BEC8A4AD-5FEB-4227-A9D3-239E6668AD4} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BED2B578-3EFE-4E8A-A6FE-AA341C993518} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BEEB71E1-84A-45CE-B1F7-37BEB056EA18} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BF1360-230C-4101-A090-939269DF752} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BF23FB1C-AA30-4B4A-A254-8C31DDF45B77} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BF459421-136A-4D9C-A1B4-E087BCFBD24E} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CA2FFECE-546B-4ACF-9522-5D9E51AC9D4} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CA376A12-2DB9-4B20-BF7C-DD6F41E1E88} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CA3C20F5-1A03-4C98-8BD1-66103DED2BF0} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CA475283-BBC4-4D0A-883E-4E4C176C34B4} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CA515EC3-7D37-4E76-BF7C-A3BA958F4C} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CA744E43-4CB2-44F1-9D74-2C88982187} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CA78852-2641-42E9-BA77-28B5C32D93E8} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CA951FF2-C4CD-4F2B-AE57-47623E4B7FA1} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CABA130-EF87-4318-BB68-43B2EDDD3EB} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CABB8D93-ACE7-47E6-8440-95AF25FFF6D4} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CAC9922E-F2FB-4658-B10-5D54AECD8189} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CADFAEA7-8B16-491A-A2B4-DCF6D97CA59} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CAED586A-AA9D-473D-A16B-527F1DEAC7A1} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CB0D193C-8A20-4CF6-AE46-5DFD4D3052E5} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CB1AB1EE-7EF5-4365-823E-DCCF23AF49EA} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CB1CA963-FD8A-42A8-AF14-62711389687F} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CB246034-DC65-4530-86C5-CCEF739959AD} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CB337587-C0FF-4C45-A3C2-242ED045BEDD} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CB5D265C-5EE7-4109-80CE-50F7BC3B39AA} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CB8A761-AFE3-4059-B0B9-A4118F2E763E} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CB8C67EE-5EE7-4E0A-8DA6-D540312B775C} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CBB1E43E-D7ED-41E0-9ABE-5EFA8BE92E3D} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CBC0836A-D17-4BBE-B9F4-D9CBDCACBA7C} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CBCDDF7D-4CBC-412D-8F1D-D8B6EF943273} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CBED89E0-2847-4D80-BC7A-E5598DB594DA} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CC13DBE-432B-4303-8E93-7075D9F56D1} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CC18E3F2-5F65-455A-9258-39FCC9C1B9E6} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CC1D6029-7110-4E12-991C-5ED65498FB} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CC2FA3A5-7BCA-4565-B325-FE79B7911E10} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CC323EBC-558C-4107-A82D-44E22DC1D635} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CC45239C-F5FB-4F9A-B83C-F85BFB6D8B52} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CC4F996C-3F2B-4B70-9F4F-69D12DE8443A} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CC5ED031-13F4-41C9-BEC1-5416494A2DC} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CC5EEAA-9E4E-4035-AD1D-CFA2EC5C62} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CC68FF7C-CCAE-4EB8-933D-4A4B3D6BD1B} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CC6C7868-8AC1-4205-A87B-58AC125379E6} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CC83AD4F-4EAB-43C0-97A8-02F8515B7D3} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CC8F0BA3-C809-42D3-88D-1A70E91D175C} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CC92FB87-C2E6-4FE4-93F-18E278E5D67} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CC989DE-F31D-408B-92E6-5ABDB9557BA6} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CC9CBD1A-3501-4F28-9517-6A777EF0D389} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CCA6C908-9FA4-4E67-8865-49C9EA62BE14} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CCC36455-59A3-4A12-86BB-89B7A7EBEBCA} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CCCF4B9F-426D-42EE-8123-2F6FF1A6852} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CCDC8704-FD7-4C9F-A370-C8BA945A7BB0} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CCE5A071-1A6C-40EE-A77C-E7E08A454D} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CCEED9DA-3943-40D7-825F-9282804A751} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CCF4C7E8-308E-44B6-A338-EB3B8B52B481} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CCF4DA5A-2589-41F2-AE1C-ECF4E09EF687} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CCF566D4-1251-4A07-8284-9002C287D5D} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CD069616-4C5C-4503-B782-72DD8DFCB3B2} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CD0733DE-A1B0-45C9-B62A-3C742C4374F} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CD0CFAB9-B4A-46EE-A798-8677CD30C97} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F21CB940-3081-49B1-AE3D-E6A0D72DA366} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F2267C8B-D6F-4DA3-871A-7BECF5C7A5E3} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F277B3A9-CDA9-461F-9D1-578214A33A5E} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F2829AAB-93EB-4C58-985A-C42B77ABBA3} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F2920B36-6E2D-4F90-BE1D-B55394AB6DE9} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F29E4446-ADD0-4A20-AFA2-A03D07075} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F2B590FC-3BEB-4444-A34B-7BA33A6FBEE} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F2B8107A-8E92-4300-91C4-60CCA115C188} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F2D11AD-ED27-46FA-AB6C-1FEC3632FDD2} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F2F362FC-A83-4ECA-8AD0-6D4DE2891E3} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F2FAB3B1-D06D-48F7-B79C-1756EF85279} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F2FEEEF6-69CE-42AF-B84E-97B5ABE0F021} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F317733A-3814-4520-A741-A68BB94F7E6} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F31AC13A-68C5-4DDC-82B2-E8BDA4A80D1} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F31B184A-778-442D-8732-C088593EA170} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F33AC3-4630-48BC-BB6C-423634921F9E} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F3454F94-3BEB-491D-B13A-1ADDCE4CFF8} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F349E7AE-E60A-4248-99EE-40D3169A767} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F34F035D-1DE9-4C07-84E-E544257F5EFE} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F35E3A8-817-4741-A697-57C071F1E021} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F35E7453-138E-4734-A532-CAEB7E371916} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F36917DF-9EB9-41FC-85F-2DC8DF34E47E} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F389880C-26D0-4259-8DA1-6B662A4DA166} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F3A86A3B-4C8C-4806-9632-DA841EA8624} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F3AA54F0-A584-4BFC-9D6E-97F1506BC1F} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F3B8C3D-BF7-4096-A3E2-BDE86852AF3} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F3BF519C-37F8-465D-8DEF-EB51114A85A0} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F3D8A85-D060-4429-BCD2-7127F49BA163} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F3FBDFAE-5FA0-453B-A864-FFE22C7513} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F411E927-B417-4D73-B941-6AA8376C9EF} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F4278F56-DE72-4429-B0B0-E3E53391F8E3} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F427E871-AEBB-431E-A758-58F6B428C9F5} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F42A94EA-CABD-4866-ACDC-A8354D5A44AF} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F4320B88-46B5-41AC-B6B6-45FDE96A739} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F43C2342-C0AC-4F53-BEDB-EAF3DCE87584} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F44359A5-CD9F-4BF9-AAD2-9C42ED24F3B} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F455292F-6811-4BD7-AA51-11E2E460BA64} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F46020A-3628-4AF2-98C-2FFE15EA091} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F4665EF4-F02D-47CD-99AC-4AF73BF89232} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F472F132-19C0-4FE4-816A-3E15A8175E5C} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F4747354-24DB-4A2C-9744-16C446A8F70} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F4840251-677-4A86-B6F9-EA58C664B66F} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F48967C5-FCD9-42F7-A2C8-39C5673F75D} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F4BA4D-1B11-4B21-893D-A91F2AB84A1} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F4BE4410-D795-4396-B7EC-984D33D2E035} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F4CC2C58-568D-4BB6-A240-45EC833A649A} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F4CED1A6-E872-4C1A-8171-4AFA32FF9CF7} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F4D131F2-1CE6-4F4B-BE88-D653D46114} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F4D9FFE-F8D2-4BDA-AC5C-7B4016A37798} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F4E4E8D1-C8A5-4F00-9FCD-EE67D71D357} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5063A3C-BC89-4BFC-A743-D170155721CB} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5079337-CE0F-46AB-91EE-1A4DBF63FB1} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F50847AD-E6A3-4FAA-A1B1-6F4619F59FD} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5173B63-58D0-4E36-B279-496310EB292} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F51B128-84DC-45F2-9F38-851CBEAB892F} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F521C0FD-4B5B-4327-A3C4-C745165CF6F7} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F53B44BF-9018-4821-9996-DAE8A64D4EB8} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5621046-296B-45D0-A2BC-9B6617B6B119} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F56F6877-F340-4FC4-AFF2-FCE2F7D5C932} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5962E17-A663-44A0-BC67-9C4B2C051D0} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5AA532-5958-4C73-93D2-B04F2C13A4} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5AC7F10-195F-4429-BD81-17C413829C4} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5AFDE36-18E5-46A5-A23F-68957D3FE30} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5B1FFE3-2C4A-45E9-8DBF-14E18C70147A} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5BBBD2-376F-4DA3-97F2-E12FCACE3C86} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5D13180-ADC7-4DCF-B447-979BA957EB1} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5D5F967-C730-438C-A4F9-75BBD9D3CF1D} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5DCE8FA-2F4D-4102-93B6-70398AF5A3D} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5E3B1C8-6444-46BD-9D23-67F7D0DBEC68} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5ECBDFA-2B94-45E7-9649-DE8E2CE3B5} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5F6B585-2D7C-4EB1-89CA-7ECEDA6146C0} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5F9ABA5-BEAF-4C20-8EA5-21517D7A1B3} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F61673A0-D959-4F54-80E0-2CC61064E80} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F61736BE-4168-4B0D-AF12-7FB5DE62F77} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F625D3AF-EA9B-4F83-AFC3-C4F215567FB} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F62E4137-9C0A-4AF0-8528-DC9D66E6AB4A} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F63506A9-3559-4B7F-B455-CC1BAEED42DF} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F640905A-E36E-4D91-B7B5-A12BF134CA6} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F65403B6-9CFE-4BC0-BD3E-168DA1A46FA} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F66FE6CB-A80D-4C1D-AE4C-37BFE7E2C3F3} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F6738A7D-C1E-43E3-92D8-31994D97139} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F678661-FA57-48B0-B99-58D25AE6A2D0} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F682771-F666-44E0-8044-804DCE3F33FD} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F68CC6B8-2FA-480E-B7C3-7CB5EFE2D2E2} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F68E030D-B1A3-47F6-95C3-17BA68B07F78} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F691A814-DE95-482C-8C5-8294B39E6594} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F6AE2A3-66F2-45DC-B394-39C3C7E1BD9D} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F6BF8EEC-1404-4819-A481-76A8A0253C8B} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F6CF1A09-1755-484F-9CF4-C5ED94D19272} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F6CF6261-26E8-4912-A2FC-1EF28D1539E5} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F6D1237-17A1-4F84-BB7C-3EA4A1B611D1} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F6F20857-B08A-4840-AEEE-FA8FEBC4A34} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F6F2F206-3372-4587-BBBE-7245F9BF25D} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F73091CD-8D90-45EF-934-1B530A96CE7} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F73330AD-92E7-4B60-90DC-37EC71C5EF3} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F73CAFCB-93DB-4465-899C-ED562F5F6EB} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F741F747-363-49CC-9971-D348D8F09F7} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F75917D5-77D2-49AB-97B0-8F5981B85D} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F784F695-2164-4A3A-9022-AB1CDFE4A0B5} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F7939ED-D259-4C41-BCCF-C259CA8B3DAE} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F7A027B7-9CDA-4766-A65-2B7284CEECA2} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F7C614D1-39AD-4AD3-80AF-1D954F91368} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F7C6C257-D806-42EC-9616-468651B21D8A} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F7E4449C-80B0-446B-9332-1CE91C138D3} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F7E61497-2CD2-4582-9FD2-989335B893D9} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F7F48362-EEED-44C4-9066-D17159F085C6} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F7F898AE-F4B5-472C-A18-275178C049B1} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F814A6B4-2339-4411-9180-FB47CD585F5} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F81569EF-82CF-4CB4-9376-464BFEEDFBB2} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F83DEE96-AEC5-49D7-9AD-C1534229EC8} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F841C6F6-9FAE-47DD-B519-55B8A26F3AC} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F844EA26-8A5A-4F9A-8C1C-E0ECC01AA451} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F845E1DD-D99-49D6-B8A1-2B6A908C7F2A} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F846553-1218-48F1-8F56-A07331EE371} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F84E008E-53F-42A6-9FAD-98A2338F8532} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F8694805-16BC-433F-A2D-D77B1320EE9} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F8804690-BFE1-46F2-8A50-B9182061856F} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F891F796-5246-4986-8825-32FE99FE57D} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F896906A-9878-48D4-A28E-21A9157F67E} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F8BD610-D92A-4BE6-A8C1-54A86F3323B8} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F8C037B3-C027-4FAB-9AA1-F8A7509272F} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F8C29A4D-2685-4338-8262-82F995A8F34} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F8C67F61-1045-4C58-93F7-62B1B1DA1CCD} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F8E8D55-9989-47BE-8030-5CA443BD307D} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F8FE7C7-2349-4576-8299-EDC0115EE6E0} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F920F188-35F6-419B-9A34-1EE779F892A} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9342C8-7B20-4401-9873-574182ABF65C} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F947748E-18E-416C-915F-689AB98F4188} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F94AE63F-2805-49F1-AA3-F9811379358A} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9543C3C-94AA-4282-A385-F630229917} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F956D117-3145-4A1F-AC4-209AF2588D37} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F957D35B-F31F-4AB5-A051-974DE1F3685} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F959206B-96EF-40F8-8BA3-228158BD141} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F960158-B2F0-4DE8-8642-2D3D93B0CAC1} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F974B52D-A122-44AE-86CC-691D86FCA0C6} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9849447-1DAF-424F-B98C-36CF973CDBB} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F98698FA-4473-4B2C-822F-E3E1952BA9EF} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F98E2DF4-35DB-45C4-9439-9CC23C9A3BAC} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9934B3-2879-40BE-8ECE-972ADD957CE8} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F99D3529-C87E-4DD3-B523-F43ACA9BAB} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9ABA1AC-EC3-4505-A4EF-14803EF236E4} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9B6CD53-D84E-41B1-9553-F754D03B3EC6} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9C3295-3036-45F5-9833-74C19336BEF7} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9D7FA9A-F9E7-4C13-9C66-5C5549E12822} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9D841D0-B21D-451C-8D5-CF7B6EC7E28} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9F35632-F24-4A34-BCE5-AC25255C53E} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FA073637-5E2E-4FF3-9E6A-9D438188FA14} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FA22A493-F37-4CBB-A1D9-C61F2E608A7F} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FA27543C-869C-4ECA-B41D-2480BA64756D} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FA2A4046-4DA5-401F-B02-184A62EBF3B} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FA2DDC47-18D9-429B-9B79-EEF5B65E2E8} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FA5D2BA1-1442-4EC3-996D-D679D749C45} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FA62CCC-6F23-4017-83B2-3E69FCCC7C8E} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FA671676-10E6-4813-9A3D-EAF025F2E39} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FA71A402-6CB-4170-AB8A-D641466D4369} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FA764126-6A41-48C9-B65D-A05E7812F4B} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FA89061D-AA1A-4566-8CA7-9975B9C24E2} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FA8D7BA1-933C-4544-838D-F774D67C9B} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FAB36049-FD59-4A66-80FD-C14B3D66989} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FAB954-2E-4D94-B9EE-29548CBBAAF} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FACEE087-5ADA-410A-A0EF-449B3F81B98} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FAD39061-EDD-4E23-8858-34D3B72BD9C6} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FB04AD54-104-47EB-AA6C-30156D3F72F} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FB06BBCC-DE9B-4141-9690-B78ED1D1121F} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FB07FFBD-7FF5-4BB8-996-44D74B3D94D9} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FB611AB7-2D77-4BDC-B228-45ADC467482} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FB677F6C-A055-44C4-B1DB-B784F687468A} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FB78E303-29D2-4ECC-864A-C39FE9D79D9} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FB7CDAFF-3E57-43C0-B631-E38FC16D4C8A} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FB8C44DB-327B-4A2E-90EF-2721D1131DEE} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FBBAC235-E27D-42A1-849-2D496E526CA7} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FBC6E8E5-8A92-4908-949-19AE503A57B6} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FBCA2641-B9B-406F-826B-C2EA52D0DB48} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FBDBA1C2-FEE1-4082-9BC0-EC1F1848724} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FBDF08-3B11-4196-B2CE-36E185628739} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FBFC81D6-3ACB-418D-A92D-F8448BA1A2C} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FC05C341-7573-4AC3-BAEC-CE85655CAEE} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FC06F6DD-3AF6-4FF6-AF75-E553F6294332} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FC18E130-CC38-4C1E-BB4B-BA8DDD2A20BA} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FC1DF324-8D27-4D19-9147-F44A3B39B1DF} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FC241F04-7230-413D-AB7D-E3BB249A4632} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FC29C3C1-5449-4D85-AF2F-86D7B185FF4} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FC2D4FFB-DBCF-44A3-A969-9B9AD5E9539} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FC3C1EC6-988A-4629-A83D-7BDA6D9145CF} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FC4452C6-30D3-4DD7-AD94-B1298869B3} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FC740101-E8E1-439F-BBC2-E8F149D8AA6} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FC80C708-9673-437F-A79-DF3DF72FF8DE} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FCB60185-E1DE-450C-B9A8-57E94459E1E} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FCC1757E-284A-4FDF-BB90-A7DC759929B} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FCCA1A19-C668-4213-B667-7E3B8C52D9} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FCD8AC77-6383-45E6-B41C-C7EA43E04E3} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FCED21D3-DCA7-4B9C-9EA0-7F596FD5B9E} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FCF61F1D-ADF6-4DEC-B98A-48B11E53BE35} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FD0537D6-2770-46BA-9180-D4855CFE6A28} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FD16B4EF-2F6-4E0D-8A6E-BE7AD2911A89} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FD1B0F61-EC83-4649-855E-22767C7C1D} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FD21A9F8-5135-4ABD-B568-1B234ED4A5A6} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FD29ED98-B96E-43D7-A7DA-292AEA9B065} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FD31D490-A06C-4F33-AAB4-AB946717B36} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FD3F26D-6C23-4CCD-B7FE-69B7B67191BF} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FD4079B3-1DAD-4E27-9135-2D51B3349C9} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FD446F28-594B-4A33-A57B-DB7A41868DCD} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FD4F9E51-44C9-4C48-8962-447B77A16B4F} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FD544021-880F-421F-9E42-4B7E1CE2FF6} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FD70AFD-723E-4B69-A716-27175DF44EA7} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FD7CEF4C-933F-4ED5-A59-32C311AB26E7} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FD83F36C-8CF8-40EE-8E45-29AD8D97A9B} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FD86318E-896-420C-B3D5-F0F6A00EC63} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FD989AC3-742-4C8B-B17D-E5E7966C4EC4} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FD9D534-F5BB-48FF-96F2-6C42023E3B5} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FDA2B587-21CE-40D1-BC2-75A323FF2977} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FDAABBA5-AF3A-4049-8533-15E496DBF9B6} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FDACA4C4-A606-4E74-B752-6CB83038864} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FDB0F9D9-A9D7-4859-9BAB-D0FB5F4E2BB4} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FDB6049-F2EB-4B93-BA53-15C29F0A2FE} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FDB7F6AA-C86D-41F4-B181-B3955DD424B} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FDCD746C-AD64-46D1-B0A-77ECB14DC1FD} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FDD273A9-4CCE-4DAD-A656-22CE27D23CA5} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FDD44D1D-8930-41CA-BDDE-1C475C9F36D} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FDE86E4E-699-4B4C-B8E9-16BC435E35CA} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FDF217A7-F5AC-46C2-A6D2-5732F1269DD4} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FE0FDA47-4A69-4F05-AFBA-776321839C20} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FE3FAD67-86F4-43D7-B423-D10A84D6612} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FE4FE530-DB3C-4F4E-8375-DD55B5B0E621} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FE566BA8-F8A7-43B3-AA20-17D996DF83F5} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FE6D2447-6116-4FE2-AA6D-B7C98557A7B8} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FE6D6004-134B-4B0D-8CFE-7D3DEBA766} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FE90BAA5-4EE4-4724-A68A-F2F0FE5C8E3} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FE953BB2-2264-4904-A313-E6EB015E3AD} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FEA30BCE-959E-45BA-9646-9C116ECC1A9} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FEBCD484-947F-4D6E-9893-9AE29C94A29} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FED27188-4649-43BD-A69-A739A6ED525E} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FEDB7FF2-4A27-4924-AAC2-A637FA9B714} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FEE54013-48EB-41EF-A772-B1CC6A56FCE} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FEEE2239-277-4F53-9AC9-9EC558CA8794} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FEEEB154-9FBD-4FC9-A25D-57151D8A0DF} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FEF9245-DDC1-48EC-8FCD-A6CE0BF30D2} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FEFEB422-9EE3-44A0-81BB-3284CC45B28} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF04DD57-845F-4A28-903F-5D48EAEB3713} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF118757-B94B-4900-B92F-B471B082651B} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF162E4C-E8E3-4A3D-8A5A-90665B305C4C} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF1BC00B-5E40-4B13-B86-B16C4DF4DCF1} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF2D08-D990-4EFD-9F6D-7A593ED5DCEB} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF4FA98F-CABC-48BB-AF6E-7E94DC37131D} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF544B32-9FE0-423F-847A-C44E87698F74} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF55CB87-FA07-42A5-8CB7-2CE84A5C4B9F} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF7952C7-DB33-4A35-BB6C-A29219369445} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF7E224A-8F1E-4680-853-54365F11C8D9} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF85F135-8A11-44E5-8AA9-52824196570} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF8A61A0-A407-4E5D-978E-819A4E35365B} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FFA1EE1A-64E3-4A59-A53-255DAFF4D0DC} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FFAC2B3C-3A04-44A3-9425-30A6BC0149F} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FFD6FC86-A754-4077-A11A-EFDCB9295AB} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FFE8BC12-21DA-477E-A3A1-35F3BE6145B0} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FFF97EB0-7B50-4D98-89E8-5ADB3B84261} deleted successfully

==== Deleting CLSID Registry Values ======================

HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{336D0C35-8A85-403a-B9D2-65C292C39087} deleted successfully
HKEY_USERS\S-1-5-21-118211837-1974094559-23580359-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{DE9C389F-3316-41A7-809B-AA305ED9D922} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\{AEB6717E-7E19-11d0-97EE-00C04FD91972} deleted successfully

==== Deleting Services ======================


==== FireFox Fix ======================

Deleted from C:\Users\Vojta\AppData\Roaming\Mozilla\Firefox\Profiles\wz2s2bkc.default-1400313064800\prefs.js:
user_pref("browser.startup.homepage", "http://www.seznam.cz/");
user_pref("browser.search.useDBForOrder", true);

Added to C:\Users\Vojta\AppData\Roaming\Mozilla\Firefox\Profiles\wz2s2bkc.default-1400313064800\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

==== Deleting Files \ Folders ======================

C:\PROGRA~2\Špidla Data Processing, s.r.o not found
C:\Windows\system32\Tasks\Style Rush2 deleted
C:\Program Files\Yahoo! deleted
C:\PROGRA~2\UpdaterLog.txt deleted
C:\PROGRA~2\{CC71B1CB-A2E4-4CF7-8EDB-A0E290BA1604} deleted
C:\PROGRA~2\Package Cache deleted
C:\Users\Vojta\AppData\Local\Unity deleted
C:\Users\Vojta\AppData\LocalLow\Unity deleted
C:\Windows\system32\GroupPolicy\Machine deleted
C:\Windows\system32\GroupPolicy\User deleted
C:\Windows\system32\GroupPolicy\gpt.ini deleted
C:\Users\Vojta\AppData\Roaming\Mozilla\Firefox\Profiles\wz2s2bkc.default-1400313064800\jetpack deleted
"C:\ProgramData\cm-lock" not deleted

==== Firefox Start and Search pages ======================

ProfilePath: C:\Users\Vojta\AppData\Roaming\Mozilla\Firefox\Profiles\wz2s2bkc.default-1400313064800
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

==== Firefox Proxy Settings ======================

ProfilePath: C:\Users\Vojta\AppData\Roaming\Mozilla\Firefox\Profiles\wz2s2bkc.default-1400313064800
user_pref("network.proxy.autoconfig_url", "http://kkkkk/");
user_pref("network.proxy.no_proxies_on", "");
user_pref("network.proxy.type", 2);

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"otis@digitalpersona.com"="C:\Program Files\DigitalPersona\Bin\FirefoxExt" [11.11.2009 15:05]
[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]
"otis@digitalpersona.com"="C:\Program Files\DigitalPersona\Bin\firefoxext" [11.11.2009 15:05]

==== Firefox Extensions ======================

ProfilePath: C:\Users\Vojta\AppData\Roaming\Mozilla\Firefox\Profiles\wz2s2bkc.default-1400313064800
- Discover Treasure - %ProfilePath%\extensions\{6ce93503-91d9-4093-b6e9-5fb69f2948bd}.xpi

AppDir: C:\Program Files\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Users\Vojta\AppData\Roaming\Mozilla\Firefox\Profiles\wz2s2bkc.default-1400313064800
647670C013AD60DA6F94B6881E6AC9E4 - C:\Program Files\Adobe\Reader 10.0\Reader\browser\nppdf32.dll - Adobe Acrobat
39309FEDDFA73FAE29EC99A07A55A3E8 - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll - Adobe Acrobat
0CA4180B21C6B728578F3B0433BB740E - C:\Program Files\VideoLAN\VLC\npvlc.dll - VLC Web Plugin
3D1497F3F1A344FFB733CE616BB9096D - C:\Program Files\Google\Update\1.3.29.1\npGoogleUpdate3.dll - Google Update
2CDA67C1309CA966D8EFEE4EE0D6CA92 - C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll - RealPlayer Version Plugin
5DB82B8C515C875AE58E1B8B5997416B - C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll - RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit)
FFF2362F6B4A46D4BC1D147E79A7547B - C:\ProgramData\NexonEU\NGM\npNxGameeu.dll - Nexon Game Controller
AB87EEFFD18F2BAAFC274E7075EA6C67 - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll - Windows Presentation Foundation / Windows Presentation Foundation
C45A130CA14334073C0FF795897A1D22 - c:\Program Files\Microsoft Silverlight\5.1.41105.0\npctrl.dll - Silverlight Plug-In
14D06C3796CE3F6BA8F43CDF3AD65D76 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll - Java(TM) Platform SE 7 U67
0A6E5E3BEF374AA2F47071E7374EAD7B - C:\Program Files\Java\jre7\bin\dtplugin\npdeployJava1.dll - Java Deployment Toolkit 7.0.670.1
5B92CB0A3EEE50F6B9AE036B4F9B0F0C - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll - Google Earth Plugin
997FD370A65D2DD67C97E565E66EF8E6 - C:\Program Files\DivX\DivX Web Player\npdivx32.dll - DivX Plus Web Player
86244E1B6D062BBE2B91AA5DA7376806 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll - DivX VOD Helper Plug-in
E2318E8514ABF50E3ECEDAB9465A90A1 - C:\Windows\system32\Adobe\Director\np32dsw.dll - Shockwave for Director / Shockwave for Director
5DF56521E8985BFD8F21A3D97A4D4574 - C:\Windows\system32\Macromed\Flash\NPSWF32_20_0_0_235.dll - Shockwave Flash
FBD4466AB7AFBFA324C77C20B95D0B82 - C:\IGG\twclient_us\npthinclient.dll - Thinclient
16E021336015A88C338889517AC8FDBC - C:\Users\Vojta\AppData\Roaming\IGG\Web3D\1.0.0.38\NPIGGWeb3DUpdater.dll - IGG Web3D Updater NP Plugin for Mozilla
4C8F3B45A1C7AAC854DC80E5FD644591 - C:\Users\Vojta\AppData\Roaming\IGG\Web3D\1.0.0.38\NPJoyConnectShell.dll - JoyConnectShell NP Plugin for Mozilla
B24F014C6DDA5A39CE7FCB2A8B862C5A - c:\Program Files\Microsoft Silverlight\5.1.41105.0\npctrlui.dll - Microsoft® Silverlight


==== Chromium Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
bmgfnbnofnkpbadjaghpkdbjfdonamfa - C:\ProgramData\Vaudix\bmgfnbnofnkpbadjaghpkdbjfdonamfa.crx[]
bnaofehpfkkhmjcedblodlggljcchdcb - C:\ProgramData\Vaudix\bnaofehpfkkhmjcedblodlggljcchdcb.crx[]

==== Chromium Startpages ======================

C:\Users\Vojta\AppData\Local\Google\Chrome\User Data\Default\Preferences
"homepage": "http://www.mystartsearch.com/?type=hp&t ... X69RHC3KET",
"urls_to_restore_on_startup": [ "http://start.atarata.cz/" ]


==== Chromium Fix ======================

C:\Users\Vojta\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_eemcgdkfndhakfknompkggombfjjjeno_0.localstorage deleted successfully
C:\Users\Vojta\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pdhdffdfplgjbehlmeikjfckgdpkdebd_0.localstorage deleted successfully
C:\Users\Vojta\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ls.hit.gemius.pl_0.localstorage deleted successfully
C:\Users\Vojta\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.seznam.cz_0.localstorage deleted successfully
C:\Users\Vojta\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.tipsport.cz_0.localstorage deleted successfully
C:\Users\Vojta\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_aukro.cz_0.localstorage deleted successfully
C:\Users\Vojta\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_ls.hit.gemius.pl_0.localstorage deleted successfully
C:\Users\Vojta\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_reklama2.viry.cz_0.localstorage deleted successfully
C:\Users\Vojta\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_start.atarata.cz_0.localstorage deleted successfully
C:\Users\Vojta\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.google.cz_0.localstorage deleted successfully
C:\Users\Vojta\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.viry.cz_0.localstorage deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.msn.com/"
"Use Search Asst"="yes"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{cf34d395-9ff1-49a0-98a5-8db1636431b1}"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{cf34d395-9ff1-49a0-98a5-8db1636431b1}] not found

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.msn.com/"
"Use Search Asst"="no"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"

==== All HKLM and HKCU SearchScopes ======================

HKLM\SearchScopes "DefaultScope"=""
HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
HKCU\SearchScopes "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"
HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms}
HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTer ... ORM=IE8SRC
HKCU\SearchScopes\{CFF4DB9B-135F-47c0-9269-B4C6572FD61A} - http://www.bing.com/search?q={searchTer ... DF&pc=MSE1

==== Reset Google Chrome ======================

C:\Users\Vojta\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Vojta\AppData\Local\Google\Chrome\User Data\Default\Preferences.bad was reset successfully
C:\Users\Vojta\AppData\Local\Yandex\YandexBrowser\User Data\Default\Preferences was reset successfully
C:\Users\Vojta\AppData\Local\Yandex\YandexBrowser\User Data\Default\Preferences.old was reset successfully
C:\Users\Vojta\AppData\Roaming\Opera Software\Opera Stable\Preferences was reset successfully
C:\Users\Vojta\AppData\Roaming\Opera Software\Opera Stable\Preferences.old was reset successfully
C:\Users\Vojta\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{444C1E70-2B86-AF10-548C-22361AE5DE47} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{C6E2367D-1DCE-4FFC-D381-8BD65319503B} deleted successfully
HKEY_LOCAL_MACHINE\Software\Policies\Google deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\bmgfnbnofnkpbadjaghpkdbjfdonamfa deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\bnaofehpfkkhmjcedblodlggljcchdcb deleted successfully
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\UnityWebPlayer deleted successfully

==== Empty IE Cache ======================

C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Vojta\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Vojta\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot

==== Empty FireFox Cache ======================

C:\Users\Vojta\AppData\Local\Mozilla\Firefox\Profiles\o8tk4kpp.default\Cache emptied successfully
C:\Users\Vojta\AppData\Local\Mozilla\Firefox\Profiles\wz2s2bkc.default-1400313064800\cache2 emptied successfully

==== Empty Chrome Cache ======================

C:\Users\Vojta\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=102 folders=59 204626056 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\temp emptied successfully
C:\Users\Default User\AppData\Local\temp emptied successfully
C:\Users\hedev\AppData\Local\temp emptied successfully
C:\Users\Public\AppData\Local\temp emptied successfully
C:\Users\Vojta\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\Vojta\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\ProgramData\cm-lock" not deleted
"C:\Users\Vojta\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found

==== EOF on st 23.12.2015 at 11:34:43,60 ======================

Re: vyskakují neznámé webové stránky bez jakékoliv činnosti

Napsal: 23 pro 2015 21:50
od Márty84
Fajn, pokracujte dale :thumbsup:

Re: vyskakují neznámé webové stránky bez jakékoliv činnosti

Napsal: 29 pro 2015 14:10
od Happygirl.
Dobrý den, program malware bytes anti-malware nenašel žádnou hrozbu. Mám znovu vložit log z RSIT?