Stránka 1 z 2

MPC Cleaner v PC, prosim o pomoc

Napsal: 07 bře 2016 18:14
od Aiwon
Dobrý den, jak uz je v nadpisu napsano, pritelkyne ma v PC MPC cleaner, ktery samozrejme nejde odstranit a haprujou webove stranky. Prikladam log z RSIT, budu velice vdecny kdyz se mi na to nekdo podiva. Dekuji...


Logfile of random's system information tool 1.10 (written by random/random)
Run by Tereza at 2016-03-07 18:08:06
Microsoft Windows 8.1 Pro
System drive C: has 75 GB (66%) free of 114 GB
Total RAM: 3273 MB (56% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:08:21, on 7. 3. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\MPC Cleaner\MPCTray.exe
C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe
C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Tereza.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll
O4 - HKLM\..\Run: [CStart8] "C:\Program Files (x86)\CStart8\CStart8Tray64.exe" /STARTUP
O4 - HKLM\..\Run: [LWS] C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe -hide
O4 - HKLM\..\Run: [MSStp] C:\Windows\inf\msstp.vbe
O4 - HKLM\..\Run: [mnckfadSrv] C:\Windows\system32\mnckfad.vbe
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\Tereza\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs:
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MPC Core Protect Service (MPCProtectService) - DotC United Inc - C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 6917 bytes

======Listing Processes======





wininit.exe


C:\Windows\system32\lsass.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
atieclxx
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe"
C:\Windows\system32\svchost.exe -k imgsvc

taskhostex.exe
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\MPC Cleaner\MPCTray.exe"
"C:\Program Files (x86)\MPC Cleaner\MPCTray64.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation

C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\SysWOW64\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
dashost.exe {dcd25623-bded-40a6-892395acba9f701a}
"C:\Program Files (x86)\CStart8\CStart8Tray64.exe" /STARTUP
"C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe" -hide
"C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe" /hide
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="820.0.1528402646\1908422656" --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,24,52 --gpu-vendor-id=0x1002 --gpu-device-id=0x990e --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=13.251.0.0 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files\Windows Defender\MpCmdRun.exe" SpyNetServiceDss -RestrictPrivileges -AccessKey 7F88E022-BD84-CD23-F792-4D7F0C7469EF -Reinvoke
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/7DaySingleProfile/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A4/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="820.3.1366638184\115225029" --font-cache-shared-handle=4024 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/7DaySingleProfile/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A4/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="820.9.852716337\1517244797" --font-cache-shared-handle=6300 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/7DaySingleProfile/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A4/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="820.10.351279278\94322014" --font-cache-shared-handle=4476 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/7DaySingleProfile/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A4/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="820.11.27262565\1644618760" --font-cache-shared-handle=4560 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/7DaySingleProfile/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A4/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="820.13.1006155457\251973534" --font-cache-shared-handle=5824 /prefetch:673131151
"C:\Windows\System32\Taskmgr.exe" /2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/7DaySingleProfile/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A4/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="820.16.535224902\229095377" --font-cache-shared-handle=5496 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/7DaySingleProfile/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A4/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="820.19.722523228\877225097" --font-cache-shared-handle=2400 /prefetch:673131151
"C:\Program Files\Windows Defender\MSASCui.exe" /ScanNow

"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe4_ Global\UsGthrCtrlFltPipeMssGthrPipe4 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 560 564 572 65536 568

"C:\Users\Tereza\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-43179661-112877574-1838037710-1001Core.job - C:\Users\Tereza\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-43179661-112877574-1838037710-1001UA.job - C:\Users\Tereza\AppData\Local\Facebook\Update\FacebookUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_40\bin\ssv.dll [2015-03-31 551848]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 690392]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-31 212904]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll [2015-03-31 460712]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-31 172968]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-05-08 21437568]
"Facebook Update"=C:\Users\Tereza\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-09-20 138096]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-02-12 8641240]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"CStart8"=C:\Program Files (x86)\CStart8\CStart8Tray64.exe [2013-10-03 3138656]
"LWS"=C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe [2012-09-12 204136]
"MSStp"=C:\Windows\inf\msstp.vbe [2014-03-05 1584]
"mnckfadSrv"=C:\Windows\system32\mnckfad.vbe []
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2012-11-05 89184]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=lvcod64.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-03-07 18:08:06 ----D---- C:\rsit
2016-03-07 18:08:06 ----D---- C:\Program Files\trend micro
2016-02-28 18:02:49 ----D---- C:\Program Files (x86)\Adobe
2016-02-11 15:05:04 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2016-02-11 15:05:04 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-02-11 15:05:04 ----A---- C:\Windows\system32\mshtml.dll
2016-02-11 15:05:04 ----A---- C:\Windows\system32\iertutil.dll
2016-02-11 15:05:03 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2016-02-11 15:05:03 ----A---- C:\Windows\system32\urlmon.dll
2016-02-11 15:05:03 ----A---- C:\Windows\system32\ieframe.dll
2016-02-11 15:05:02 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-02-10 16:09:19 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2016-02-10 16:09:19 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2016-02-10 16:09:19 ----A---- C:\Windows\system32\EncDec.dll
2016-02-10 16:09:19 ----A---- C:\Windows\system32\CPFilters.dll
2016-02-10 16:09:18 ----A---- C:\Windows\SYSWOW64\mtxoci.dll
2016-02-10 16:09:18 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2016-02-10 16:09:18 ----A---- C:\Windows\SYSWOW64\cfgbkend.dll
2016-02-10 16:09:18 ----A---- C:\Windows\system32\mtxoci.dll
2016-02-10 16:09:18 ----A---- C:\Windows\system32\cfgbkend.dll
2016-02-10 16:08:09 ----A---- C:\Windows\SYSWOW64\glcndFilter.dll
2016-02-10 16:08:09 ----A---- C:\Windows\system32\Windows.Data.Pdf.dll
2016-02-10 16:08:09 ----A---- C:\Windows\system32\glcndFilter.dll
2016-02-10 16:08:08 ----A---- C:\Windows\SYSWOW64\Windows.Data.Pdf.dll
2016-02-10 16:07:52 ----A---- C:\Windows\system32\invagent.dll
2016-02-10 16:07:52 ----A---- C:\Windows\system32\generaltel.dll
2016-02-10 16:07:52 ----A---- C:\Windows\system32\devinv.dll
2016-02-10 16:07:52 ----A---- C:\Windows\system32\CompatTelRunner.exe
2016-02-10 16:07:52 ----A---- C:\Windows\system32\appraiser.dll
2016-02-10 16:07:52 ----A---- C:\Windows\system32\aeinv.dll
2016-02-10 16:07:52 ----A---- C:\Windows\system32\acmigration.dll
2016-02-10 16:07:45 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2016-02-10 16:07:45 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2016-02-10 16:07:45 ----A---- C:\Windows\SYSWOW64\certcli.dll
2016-02-10 16:07:45 ----A---- C:\Windows\system32\msv1_0.dll
2016-02-10 16:07:45 ----A---- C:\Windows\system32\lsasrv.dll
2016-02-10 16:07:45 ----A---- C:\Windows\system32\kerberos.dll
2016-02-10 16:07:45 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-02-10 16:07:45 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-02-10 16:07:45 ----A---- C:\Windows\system32\dpapisrv.dll
2016-02-10 16:07:45 ----A---- C:\Windows\system32\certcli.dll
2016-02-10 16:07:33 ----A---- C:\Windows\system32\win32k.sys
2016-02-10 16:07:31 ----A---- C:\Windows\system32\shell32.dll
2016-02-10 16:07:30 ----A---- C:\Windows\system32\twinui.dll
2016-02-10 16:07:29 ----A---- C:\Windows\SYSWOW64\twinui.dll
2016-02-10 16:07:28 ----A---- C:\Windows\SYSWOW64\shell32.dll
2016-02-10 16:07:28 ----A---- C:\Windows\SYSWOW64\authui.dll
2016-02-10 16:07:28 ----A---- C:\Windows\system32\authui.dll
2016-02-10 16:06:21 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-02-10 16:06:20 ----A---- C:\Windows\SYSWOW64\WinTypes.dll
2016-02-10 16:06:20 ----A---- C:\Windows\SYSWOW64\wincorlib.dll
2016-02-10 16:06:20 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2016-02-10 16:06:20 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2016-02-10 16:06:20 ----A---- C:\Windows\SYSWOW64\combase.dll
2016-02-10 16:06:20 ----A---- C:\Windows\system32\WinTypes.dll
2016-02-10 16:06:20 ----A---- C:\Windows\system32\ntdll.dll
2016-02-10 16:06:20 ----A---- C:\Windows\system32\microsoft-windows-system-events.dll
2016-02-10 16:06:20 ----A---- C:\Windows\system32\KernelBase.dll
2016-02-10 16:06:20 ----A---- C:\Windows\system32\combase.dll
2016-02-10 16:06:19 ----A---- C:\Windows\SYSWOW64\WinSync.dll
2016-02-10 16:06:19 ----A---- C:\Windows\system32\WinSync.dll
2016-02-10 16:06:19 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2016-02-10 16:06:15 ----A---- C:\Windows\system32\jscript9.dll
2016-02-10 16:06:14 ----A---- C:\Windows\SYSWOW64\wininet.dll
2016-02-10 16:06:14 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2016-02-10 16:06:14 ----A---- C:\Windows\system32\wininet.dll
2016-02-10 16:06:13 ----A---- C:\Windows\SYSWOW64\hlink.dll
2016-02-10 16:06:13 ----A---- C:\Windows\system32\msfeeds.dll
2016-02-10 16:06:13 ----A---- C:\Windows\system32\hlink.dll
2016-02-10 16:06:13 ----A---- C:\Windows\system32\actxprxy.dll
2016-02-10 16:06:12 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2016-02-10 16:06:12 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2016-02-10 16:06:12 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2016-02-10 16:06:12 ----A---- C:\Windows\SYSWOW64\jscript.dll
2016-02-10 16:06:12 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2016-02-10 16:06:12 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2016-02-10 16:06:12 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2016-02-10 16:06:12 ----A---- C:\Windows\system32\webcheck.dll
2016-02-10 16:06:12 ----A---- C:\Windows\system32\vbscript.dll
2016-02-10 16:06:12 ----A---- C:\Windows\system32\jscript.dll
2016-02-10 16:06:12 ----A---- C:\Windows\system32\inetcomm.dll
2016-02-10 16:06:12 ----A---- C:\Windows\system32\iedkcs32.dll
2016-02-10 16:06:12 ----A---- C:\Windows\system32\ieapfltr.dll
2016-02-10 16:06:12 ----A---- C:\Windows\system32\ie4uinit.exe
2016-02-10 16:03:52 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2016-02-10 16:03:52 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2016-02-10 16:03:52 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2016-02-10 16:03:52 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2016-02-10 16:03:52 ----A---- C:\Windows\system32\wuwebv.dll
2016-02-10 16:03:52 ----A---- C:\Windows\system32\WUSettingsProvider.dll
2016-02-10 16:03:52 ----A---- C:\Windows\system32\wudriver.dll
2016-02-10 16:03:52 ----A---- C:\Windows\system32\wucltux.dll
2016-02-10 16:03:52 ----A---- C:\Windows\system32\wuaueng.dll
2016-02-10 16:03:52 ----A---- C:\Windows\system32\wuauclt.exe
2016-02-10 16:03:52 ----A---- C:\Windows\system32\wuapp.exe
2016-02-10 16:03:52 ----A---- C:\Windows\system32\wuapi.dll
2016-02-10 16:03:50 ----A---- C:\Windows\system32\rdpudd.dll
2016-02-10 16:03:50 ----A---- C:\Windows\system32\rdpcorets.dll

======List of files/folders modified in the last 1 month======

2016-03-07 18:08:06 ----RD---- C:\Program Files
2016-03-07 18:07:51 ----D---- C:\Windows\Prefetch
2016-03-07 18:07:38 ----D---- C:\Windows\Temp
2016-03-07 18:00:00 ----D---- C:\Windows\system32\sru
2016-03-07 17:49:50 ----RD---- C:\Windows\System32
2016-03-07 17:49:50 ----D---- C:\Windows\Inf
2016-03-07 17:49:50 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-03-07 17:46:54 ----D---- C:\Windows
2016-03-07 17:45:38 ----D---- C:\Windows\SoftwareDistribution
2016-03-07 17:43:13 ----D---- C:\Windows\Tasks
2016-03-07 17:43:13 ----D---- C:\Windows\system32\Tasks
2016-03-07 17:43:09 ----D---- C:\Program Files\CCleaner
2016-03-07 17:42:56 ----HD---- C:\Program Files\WindowsApps
2016-03-07 17:42:56 ----D---- C:\Windows\AppReadiness
2016-03-07 17:41:36 ----D---- C:\Windows\debug
2016-03-07 16:31:01 ----D---- C:\Windows\Microsoft.NET
2016-03-06 16:45:24 ----D---- C:\Kaja
2016-03-06 11:53:53 ----D---- C:\Windows\system32\drivers
2016-03-06 11:53:47 ----D---- C:\Windows\system32\drivers\UMDF
2016-03-05 16:36:18 ----D---- C:\Windows\system32\catroot2
2016-03-05 10:35:24 ----D---- C:\Windows\Panther
2016-03-05 10:04:39 ----SHD---- C:\System Volume Information
2016-03-04 12:20:32 ----D---- C:\Windows\system32\config
2016-03-04 11:30:26 ----D---- C:\Windows\WinSxS
2016-03-02 18:20:39 ----SHD---- C:\Windows\Installer
2016-03-02 18:20:31 ----D---- C:\Windows\SysWOW64
2016-02-28 18:02:49 ----RD---- C:\Program Files (x86)
2016-02-28 18:02:46 ----D---- C:\ProgramData\Adobe
2016-02-27 11:14:52 ----D---- C:\Program Files (x86)\MPC Cleaner
2016-02-26 19:34:31 ----D---- C:\Windows\CbsTemp
2016-02-26 19:34:22 ----SD---- C:\Windows\SYSWOW64\GWX
2016-02-26 19:34:22 ----SD---- C:\Windows\system32\GWX
2016-02-24 18:11:39 ----D---- C:\Users\Tereza\AppData\Roaming\Systweak
2016-02-17 19:40:16 ----D---- C:\Terka
2016-02-13 09:28:16 ----D---- C:\Windows\rescache
2016-02-13 09:26:47 ----RD---- C:\Windows\assembly
2016-02-11 22:34:13 ----D---- C:\Windows\SYSWOW64\cs-CZ
2016-02-11 22:34:13 ----D---- C:\Windows\system32\cs-CZ
2016-02-11 22:34:12 ----RD---- C:\Windows\ToastData
2016-02-11 22:34:12 ----D---- C:\Program Files\Internet Explorer
2016-02-11 22:34:12 ----D---- C:\Program Files (x86)\Internet Explorer
2016-02-11 22:34:11 ----D---- C:\Windows\system32\wbem
2016-02-11 15:06:41 ----D---- C:\ProgramData\Microsoft Help
2016-02-11 15:06:08 ----D---- C:\Windows\system32\appraiser
2016-02-11 15:06:08 ----D---- C:\Windows\apppatch
2016-02-11 15:05:36 ----D---- C:\Program Files\Windows Journal
2016-02-10 15:53:49 ----D---- C:\Windows\system32\MRT
2016-02-10 15:51:36 ----A---- C:\Windows\system32\MRT.exe
2016-02-09 14:22:59 ----HD---- C:\ProgramData
2016-02-09 14:22:12 ----D---- C:\ProgramData\Solvusoft
2016-02-09 11:03:46 ----A---- C:\Windows\win.ini

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 Wof;Windows Overlay File System Filter Driver; C:\Windows\system32\drivers\Wof.sys [2014-03-13 157016]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\system32\drivers\HWiNFO64A.SYS [2014-05-18 31648]
R1 MPCKpt;MPCKpt; C:\Windows\system32\DRIVERS\MPCKpt.sys [2016-02-26 59112]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2013-12-13 13207552]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2013-12-13 626176]
R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\Windows\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
R3 usbaudio;@wdma_usb.inf,%USBAudio.SvcDesc%;Ovladač zvuků USB (WDM); C:\Windows\system32\drivers\usbaudio.sys [2014-03-18 121088]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2014-06-21 212736]
S3 dg_ssudbus;@oem7.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2014-01-22 108800]
S3 LVRS64;@oem4.inf,%lvrs.SrvDesc%;Logitech RightSound Filter Driver; C:\Windows\system32\DRIVERS\lvrs64.sys [2012-10-26 351520]
S3 ssudmdm;@oem8.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2014-01-22 206080]
S3 usbscan;@sti.inf,%usbscan.SvcDesc%;Ovladač skeneru USB; C:\Windows\System32\drivers\usbscan.sys [2014-10-29 44544]
S3 WinUsb;@wpdmtp.inf,%WinUsb.SvcDesc%;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2015-10-10 78848]
S3 WUDFSensorLP;@locationprovider.inf,%WudfLocationProviderDisplayName%;Služba Reflektor UMDF pro zprostředkovatele umístění (LocationProvider); C:\Windows\System32\drivers\WUDFRd.sys [2014-10-29 226304]
S3 WUDFWpdFs;WUDFWpdFs; C:\Windows\System32\drivers\WUDFRd.sys [2014-10-29 226304]
S3 WUDFWpdMtp;WUDFWpdMtp; C:\Windows\system32\DRIVERS\WUDFRd.sys [2014-10-29 226304]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-14 82128]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2013-12-13 239616]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2014-10-29 38792]
R2 MPCProtectService;MPC Core Protect Service; C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe [2016-02-26 348640]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\Windows\System32\svchost.exe [2014-10-29 38792]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 30814400]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]

-----------------EOF-----------------

Re: MPC Cleaner v PC, prosim o pomoc

Napsal: 07 bře 2016 18:18
od Rudy
Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.

Re: MPC Cleaner v PC, prosim o pomoc

Napsal: 07 bře 2016 18:50
od Aiwon
Provedl jsem podle navodu, pri uklizeni to vypadalo ze uz je pryc, po restartu je zpatky :(
LOG:

# AdwCleaner v5.101 - Logfile created 07/03/2016 at 18:47:41
# Updated 07/03/2016 by Xplode
# Database : 2016-03-06.3 [Server]
# Operating system : Windows 8.1 Pro (x64)
# Username : Tereza - TEREZKA
# Running from : C:\Users\Tereza\Downloads\adwcleaner_5.101.exe
# Option : Clean
# Support : http://toolslib.net/forum

***** [ Services ] *****

[-] Service Deleted : MPCProtectService
[-] Service Deleted : MPCKpt

***** [ Folders ] *****

[-] Folder Deleted : C:\Program Files\PCDApp
[#] Folder Deleted : C:\Program Files (x86)\MPC Cleaner
[-] Folder Deleted : C:\ProgramData\Solvusoft
[-] Folder Deleted : C:\ProgramData\481f2e1e83e01ff9
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC
[-] Folder Deleted : C:\Users\Tereza\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo
[J] Folder Not Deleted : C:\Users\Tereza\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo
[-] Folder Deleted : C:\Users\Tereza\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo
[J] Folder Not Deleted : C:\Users\Tereza\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo
[-] Folder Deleted : C:\Users\Tereza\AppData\Roaming\PriceFountain
[-] Folder Deleted : C:\Users\Tereza\AppData\Roaming\Solvusoft
[-] Folder Deleted : C:\Users\Tereza\AppData\Roaming\Systweak
[-] Folder Deleted : C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\Solvusoft

***** [ Files ] *****

[-] File Deleted : C:\Users\Public\Desktop\MPC Cleaner.lnk
[-] File Deleted : C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_search.mpc.am_0.localstorage
[-] File Deleted : C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_search.mpc.am_0.localstorage-journal
[-] File Deleted : C:\Windows\SysNative\roboot64.exe
[#] File Deleted : C:\Windows\SysNative\drivers\MPCKpt.sys

***** [ DLLs ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****

[-] Task Deleted : LaunchPreSignup
[-] Task Deleted : PFExe

***** [ Registry ] *****

[-] Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION [BrowserWeb.exe]
[-] Key Deleted : HKCU\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{459DD0F7-0D55-D3DC-67BC-E6BE37E9D762}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{CCB24E92-62C4-4C53-95D2-65F9EED476BC}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{62155D33-3CE2-401E-8967-5A270628A3D5}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{62155D33-3CE2-401E-8967-5A270628A3D5}
[-] Key Deleted : HKCU\Software\PriceFountain
[-] Key Deleted : HKCU\Software\Reg\Clean
[-] Key Deleted : HKCU\Software\Softonic
[-] Key Deleted : HKCU\Software\Solvusoft
[#] Key Deleted : HKCU\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B}
[-] Key Deleted : HKCU\Software\AppDataLow\Software\BlockAndSurf
[-] Key Deleted : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
[-] Key Deleted : HKLM\SOFTWARE\{77D46E27-0E41-4478-87A6-AABE6FBCF252}
[-] Key Deleted : HKLM\SOFTWARE\MPC
[-] Key Deleted : HKLM\SOFTWARE\Reg\Clean
[-] Key Deleted : HKU\.DEFAULT\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B}
[-] Key Deleted : HKU\S-1-5-19\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B}
[-] Key Deleted : HKU\S-1-5-20\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B}
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}
[-] Data Restored : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope]

***** [ Web browsers ] *****

[-] [C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : search.mpc.am
[-] [C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Startup_URLs] Deleted : search.mpc.am
[-] [C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Homepage] Deleted : search.mpc.am

*************************

:: "Tracing" keys removed
:: Winsock settings cleared

*************************

C:\Program Files (x86)\AdwCleaner\AdwCleaner[C1].txt - [4427 bytes] - [07/03/2016 18:47:41]
C:\Program Files (x86)\AdwCleaner\AdwCleaner[S1].txt - [4290 bytes] - [07/03/2016 18:46:10]

########## EOF - C:\Program Files (x86)\AdwCleaner\AdwCleaner[C1].txt - [4613 bytes] ##########

Re: MPC Cleaner v PC, prosim o pomoc

Napsal: 07 bře 2016 19:40
od Rudy
Dejte nový log RSIT.

Re: MPC Cleaner v PC, prosim o pomoc

Napsal: 07 bře 2016 19:52
od Aiwon
Tady je:

Logfile of random's system information tool 1.10 (written by random/random)
Run by Tereza at 2016-03-07 19:51:55
Microsoft Windows 8.1 Pro
System drive C: has 75 GB (65%) free of 114 GB
Total RAM: 3273 MB (70% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:51:56, on 7. 3. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe
C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe
C:\Program Files (x86)\TeamViewer\TeamViewer.exe
C:\Program Files (x86)\MPC Cleaner\CrashReport.exe
C:\Program Files\trend micro\Tereza.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll
O4 - HKLM\..\Run: [CStart8] "C:\Program Files (x86)\CStart8\CStart8Tray64.exe" /STARTUP
O4 - HKLM\..\Run: [LWS] C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe -hide
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\Tereza\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs:
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MPC Core Protect Service (MPCProtectService) - DotC United Inc - C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: TeamViewer 11 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 6426 bytes

======Listing Processes======





wininit.exe


C:\Windows\system32\lsass.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
atieclxx
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe"
C:\Windows\system32\svchost.exe -k imgsvc
taskhostex.exe

C:\Windows\Explorer.EXE
"C:\Program Files (x86)\MPC Cleaner\MPCTray64.exe"

C:\Windows\SysWOW64\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
dashost.exe {2e3103cc-79d4-4d72-a94025819aed2a95}
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\CStart8\CStart8Tray64.exe" /STARTUP
"C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe" -hide
"C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe" /hide
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files\Windows Defender\MpCmdRun.exe" SpyNetServiceDss -RestrictPrivileges -AccessKey B842BFE0-DCED-6817-5235-B30F885BBE63 -Reinvoke
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
"C:\Program Files (x86)\TeamViewer\TeamViewer.exe"
"C:\Program Files (x86)\TeamViewer\tv_w32.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\TeamViewer11_Logfile.log
"C:\Program Files (x86)\TeamViewer\tv_x64.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\TeamViewer11_Logfile.log
"C:\Program Files (x86)\MPC Cleaner\CrashReport.exe" /type:2 /dmp:"C:\Users\Tereza\AppData\Local\Temp\_MPCTray.exe_v3,3,9396,0203_Date__2016_3_7__Time_19_13_32_5.dmp" /app:"MPCTray.exe" /ver:"3,3,9396,0203" /cmd:"%22C%3A%5CProgram%20Files%20(x86)%5CMPC%20Cleaner%5CMPCTray.exe%22"
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe11_ Global\UsGthrCtrlFltPipeMssGthrPipe11 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 572 576 584 65536 580

C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Tereza\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-43179661-112877574-1838037710-1001Core.job - C:\Users\Tereza\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-43179661-112877574-1838037710-1001UA.job - C:\Users\Tereza\AppData\Local\Facebook\Update\FacebookUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_40\bin\ssv.dll [2015-03-31 551848]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 690392]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-31 212904]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll [2015-03-31 460712]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-31 172968]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-05-08 21437568]
"Facebook Update"=C:\Users\Tereza\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-09-20 138096]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-02-12 8641240]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"CStart8"=C:\Program Files (x86)\CStart8\CStart8Tray64.exe [2013-10-03 3138656]
"LWS"=C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe [2012-09-12 204136]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2012-11-05 89184]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=lvcod64.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-03-07 19:09:43 ----D---- C:\Users\Tereza\AppData\Roaming\TeamViewer
2016-03-07 19:09:38 ----D---- C:\Program Files (x86)\TeamViewer
2016-03-07 18:26:07 ----D---- C:\Program Files (x86)\AdwCleaner
2016-03-07 18:16:41 ----D---- C:\Program Files (x86)\ESET
2016-03-07 18:08:06 ----D---- C:\rsit
2016-03-07 18:08:06 ----D---- C:\Program Files\trend micro
2016-02-28 18:02:49 ----D---- C:\Program Files (x86)\Adobe
2016-02-11 15:05:04 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2016-02-11 15:05:04 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-02-11 15:05:04 ----A---- C:\Windows\system32\mshtml.dll
2016-02-11 15:05:04 ----A---- C:\Windows\system32\iertutil.dll
2016-02-11 15:05:03 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2016-02-11 15:05:03 ----A---- C:\Windows\system32\urlmon.dll
2016-02-11 15:05:03 ----A---- C:\Windows\system32\ieframe.dll
2016-02-11 15:05:02 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-02-10 16:09:19 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2016-02-10 16:09:19 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2016-02-10 16:09:19 ----A---- C:\Windows\system32\EncDec.dll
2016-02-10 16:09:19 ----A---- C:\Windows\system32\CPFilters.dll
2016-02-10 16:09:18 ----A---- C:\Windows\SYSWOW64\mtxoci.dll
2016-02-10 16:09:18 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2016-02-10 16:09:18 ----A---- C:\Windows\SYSWOW64\cfgbkend.dll
2016-02-10 16:09:18 ----A---- C:\Windows\system32\mtxoci.dll
2016-02-10 16:09:18 ----A---- C:\Windows\system32\cfgbkend.dll
2016-02-10 16:08:09 ----A---- C:\Windows\SYSWOW64\glcndFilter.dll
2016-02-10 16:08:09 ----A---- C:\Windows\system32\Windows.Data.Pdf.dll
2016-02-10 16:08:09 ----A---- C:\Windows\system32\glcndFilter.dll
2016-02-10 16:08:08 ----A---- C:\Windows\SYSWOW64\Windows.Data.Pdf.dll
2016-02-10 16:07:52 ----A---- C:\Windows\system32\invagent.dll
2016-02-10 16:07:52 ----A---- C:\Windows\system32\generaltel.dll
2016-02-10 16:07:52 ----A---- C:\Windows\system32\devinv.dll
2016-02-10 16:07:52 ----A---- C:\Windows\system32\CompatTelRunner.exe
2016-02-10 16:07:52 ----A---- C:\Windows\system32\appraiser.dll
2016-02-10 16:07:52 ----A---- C:\Windows\system32\aeinv.dll
2016-02-10 16:07:52 ----A---- C:\Windows\system32\acmigration.dll
2016-02-10 16:07:45 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2016-02-10 16:07:45 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2016-02-10 16:07:45 ----A---- C:\Windows\SYSWOW64\certcli.dll
2016-02-10 16:07:45 ----A---- C:\Windows\system32\msv1_0.dll
2016-02-10 16:07:45 ----A---- C:\Windows\system32\lsasrv.dll
2016-02-10 16:07:45 ----A---- C:\Windows\system32\kerberos.dll
2016-02-10 16:07:45 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-02-10 16:07:45 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-02-10 16:07:45 ----A---- C:\Windows\system32\dpapisrv.dll
2016-02-10 16:07:45 ----A---- C:\Windows\system32\certcli.dll
2016-02-10 16:07:33 ----A---- C:\Windows\system32\win32k.sys
2016-02-10 16:07:31 ----A---- C:\Windows\system32\shell32.dll
2016-02-10 16:07:30 ----A---- C:\Windows\system32\twinui.dll
2016-02-10 16:07:29 ----A---- C:\Windows\SYSWOW64\twinui.dll
2016-02-10 16:07:28 ----A---- C:\Windows\SYSWOW64\shell32.dll
2016-02-10 16:07:28 ----A---- C:\Windows\SYSWOW64\authui.dll
2016-02-10 16:07:28 ----A---- C:\Windows\system32\authui.dll
2016-02-10 16:06:21 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-02-10 16:06:20 ----A---- C:\Windows\SYSWOW64\WinTypes.dll
2016-02-10 16:06:20 ----A---- C:\Windows\SYSWOW64\wincorlib.dll
2016-02-10 16:06:20 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2016-02-10 16:06:20 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2016-02-10 16:06:20 ----A---- C:\Windows\SYSWOW64\combase.dll
2016-02-10 16:06:20 ----A---- C:\Windows\system32\WinTypes.dll
2016-02-10 16:06:20 ----A---- C:\Windows\system32\ntdll.dll
2016-02-10 16:06:20 ----A---- C:\Windows\system32\microsoft-windows-system-events.dll
2016-02-10 16:06:20 ----A---- C:\Windows\system32\KernelBase.dll
2016-02-10 16:06:20 ----A---- C:\Windows\system32\combase.dll
2016-02-10 16:06:19 ----A---- C:\Windows\SYSWOW64\WinSync.dll
2016-02-10 16:06:19 ----A---- C:\Windows\system32\WinSync.dll
2016-02-10 16:06:19 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2016-02-10 16:06:15 ----A---- C:\Windows\system32\jscript9.dll
2016-02-10 16:06:14 ----A---- C:\Windows\SYSWOW64\wininet.dll
2016-02-10 16:06:14 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2016-02-10 16:06:14 ----A---- C:\Windows\system32\wininet.dll
2016-02-10 16:06:13 ----A---- C:\Windows\SYSWOW64\hlink.dll
2016-02-10 16:06:13 ----A---- C:\Windows\system32\msfeeds.dll
2016-02-10 16:06:13 ----A---- C:\Windows\system32\hlink.dll
2016-02-10 16:06:13 ----A---- C:\Windows\system32\actxprxy.dll
2016-02-10 16:06:12 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2016-02-10 16:06:12 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2016-02-10 16:06:12 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2016-02-10 16:06:12 ----A---- C:\Windows\SYSWOW64\jscript.dll
2016-02-10 16:06:12 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2016-02-10 16:06:12 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2016-02-10 16:06:12 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2016-02-10 16:06:12 ----A---- C:\Windows\system32\webcheck.dll
2016-02-10 16:06:12 ----A---- C:\Windows\system32\vbscript.dll
2016-02-10 16:06:12 ----A---- C:\Windows\system32\jscript.dll
2016-02-10 16:06:12 ----A---- C:\Windows\system32\inetcomm.dll
2016-02-10 16:06:12 ----A---- C:\Windows\system32\iedkcs32.dll
2016-02-10 16:06:12 ----A---- C:\Windows\system32\ieapfltr.dll
2016-02-10 16:06:12 ----A---- C:\Windows\system32\ie4uinit.exe
2016-02-10 16:03:52 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2016-02-10 16:03:52 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2016-02-10 16:03:52 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2016-02-10 16:03:52 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2016-02-10 16:03:52 ----A---- C:\Windows\system32\wuwebv.dll
2016-02-10 16:03:52 ----A---- C:\Windows\system32\WUSettingsProvider.dll
2016-02-10 16:03:52 ----A---- C:\Windows\system32\wudriver.dll
2016-02-10 16:03:52 ----A---- C:\Windows\system32\wucltux.dll
2016-02-10 16:03:52 ----A---- C:\Windows\system32\wuaueng.dll
2016-02-10 16:03:52 ----A---- C:\Windows\system32\wuauclt.exe
2016-02-10 16:03:52 ----A---- C:\Windows\system32\wuapp.exe
2016-02-10 16:03:52 ----A---- C:\Windows\system32\wuapi.dll
2016-02-10 16:03:50 ----A---- C:\Windows\system32\rdpudd.dll
2016-02-10 16:03:50 ----A---- C:\Windows\system32\rdpcorets.dll

======List of files/folders modified in the last 1 month======

2016-03-07 19:35:41 ----D---- C:\Windows\Temp
2016-03-07 19:35:41 ----D---- C:\Windows\Prefetch
2016-03-07 19:18:00 ----D---- C:\Windows\debug
2016-03-07 19:09:45 ----D---- C:\Windows\system32\Tasks
2016-03-07 19:09:43 ----RSD---- C:\Windows\Fonts
2016-03-07 19:09:38 ----RD---- C:\Program Files (x86)
2016-03-07 19:09:05 ----D---- C:\Windows
2016-03-07 19:02:00 ----D---- C:\Windows\SoftwareDistribution
2016-03-07 19:00:00 ----D---- C:\Windows\system32\sru
2016-03-07 18:53:18 ----RD---- C:\Windows\System32
2016-03-07 18:53:18 ----D---- C:\Windows\Inf
2016-03-07 18:53:18 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-03-07 18:47:42 ----HD---- C:\ProgramData
2016-03-07 18:47:41 ----RD---- C:\Program Files
2016-03-07 18:44:54 ----D---- C:\Windows\SysWOW64
2016-03-07 18:44:52 ----D---- C:\Program Files (x86)\Sada-Microsoft-Office-Compatibility-Pack-pro-formaty-souboru-aplikace-Word-Excel-a-PowerPoint-2007
2016-03-07 17:43:13 ----D---- C:\Windows\Tasks
2016-03-07 17:43:09 ----D---- C:\Program Files\CCleaner
2016-03-07 17:42:56 ----HD---- C:\Program Files\WindowsApps
2016-03-07 17:42:56 ----D---- C:\Windows\AppReadiness
2016-03-07 16:31:01 ----D---- C:\Windows\Microsoft.NET
2016-03-06 16:45:24 ----D---- C:\Kaja
2016-03-06 11:53:53 ----D---- C:\Windows\system32\drivers
2016-03-06 11:53:47 ----D---- C:\Windows\system32\drivers\UMDF
2016-03-05 16:36:18 ----D---- C:\Windows\system32\catroot2
2016-03-05 10:35:24 ----D---- C:\Windows\Panther
2016-03-05 10:04:39 ----SHD---- C:\System Volume Information
2016-03-04 12:20:32 ----D---- C:\Windows\system32\config
2016-03-04 11:30:26 ----D---- C:\Windows\WinSxS
2016-03-02 18:20:39 ----SHD---- C:\Windows\Installer
2016-02-28 18:02:46 ----D---- C:\ProgramData\Adobe
2016-02-27 11:14:52 ----D---- C:\Program Files (x86)\MPC Cleaner
2016-02-26 19:34:31 ----D---- C:\Windows\CbsTemp
2016-02-26 19:34:22 ----SD---- C:\Windows\SYSWOW64\GWX
2016-02-26 19:34:22 ----SD---- C:\Windows\system32\GWX
2016-02-17 19:40:16 ----D---- C:\Terka
2016-02-13 09:28:16 ----D---- C:\Windows\rescache
2016-02-13 09:26:47 ----RD---- C:\Windows\assembly
2016-02-11 22:34:13 ----D---- C:\Windows\SYSWOW64\cs-CZ
2016-02-11 22:34:13 ----D---- C:\Windows\system32\cs-CZ
2016-02-11 22:34:12 ----RD---- C:\Windows\ToastData
2016-02-11 22:34:12 ----D---- C:\Program Files\Internet Explorer
2016-02-11 22:34:12 ----D---- C:\Program Files (x86)\Internet Explorer
2016-02-11 22:34:11 ----D---- C:\Windows\system32\wbem
2016-02-11 15:06:41 ----D---- C:\ProgramData\Microsoft Help
2016-02-11 15:06:08 ----D---- C:\Windows\system32\appraiser
2016-02-11 15:06:08 ----D---- C:\Windows\apppatch
2016-02-11 15:05:36 ----D---- C:\Program Files\Windows Journal
2016-02-10 15:53:49 ----D---- C:\Windows\system32\MRT
2016-02-10 15:51:36 ----A---- C:\Windows\system32\MRT.exe
2016-02-09 11:03:46 ----A---- C:\Windows\win.ini

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 Wof;Windows Overlay File System Filter Driver; C:\Windows\system32\drivers\Wof.sys [2014-03-13 157016]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\system32\drivers\HWiNFO64A.SYS [2014-05-18 31648]
R1 MPCKpt;MPCKpt; C:\Windows\system32\DRIVERS\MPCKpt.sys [2016-02-26 59112]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2013-12-13 13207552]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2013-12-13 626176]
R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\Windows\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
R3 usbaudio;@wdma_usb.inf,%USBAudio.SvcDesc%;Ovladač zvuků USB (WDM); C:\Windows\system32\drivers\usbaudio.sys [2014-03-18 121088]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2014-06-21 212736]
S3 dg_ssudbus;@oem7.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2014-01-22 108800]
S3 LVRS64;@oem4.inf,%lvrs.SrvDesc%;Logitech RightSound Filter Driver; C:\Windows\system32\DRIVERS\lvrs64.sys [2012-10-26 351520]
S3 ssudmdm;@oem8.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2014-01-22 206080]
S3 usbscan;@sti.inf,%usbscan.SvcDesc%;Ovladač skeneru USB; C:\Windows\System32\drivers\usbscan.sys [2014-10-29 44544]
S3 WinUsb;@wpdmtp.inf,%WinUsb.SvcDesc%;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2015-10-10 78848]
S3 WUDFSensorLP;@locationprovider.inf,%WudfLocationProviderDisplayName%;Služba Reflektor UMDF pro zprostředkovatele umístění (LocationProvider); C:\Windows\System32\drivers\WUDFRd.sys [2014-10-29 226304]
S3 WUDFWpdFs;WUDFWpdFs; C:\Windows\System32\drivers\WUDFRd.sys [2014-10-29 226304]
S3 WUDFWpdMtp;WUDFWpdMtp; C:\Windows\system32\DRIVERS\WUDFRd.sys [2014-10-29 226304]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-14 82128]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2013-12-13 239616]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2014-10-29 38792]
R2 MPCProtectService;MPC Core Protect Service; C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe [2016-02-26 348640]
R2 TeamViewer;TeamViewer 11; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2016-03-02 6942480]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\Windows\System32\svchost.exe [2014-10-29 38792]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 30814400]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]

-----------------EOF-----------------

Re: MPC Cleaner v PC, prosim o pomoc

Napsal: 07 bře 2016 19:59
od Rudy
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-43179661-112877574-1838037710-1001Core.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-43179661-112877574-1838037710-1001UA.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Users\Tereza\AppData\Local\Facebook\Update\FacebookUpdate.exe

:reg
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Facebook Update"=-

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.

Re: MPC Cleaner v PC, prosim o pomoc

Napsal: 07 bře 2016 20:06
od Aiwon
Tady je:

Logfile of random's system information tool 1.10 (written by random/random)
Run by Tereza at 2016-03-07 20:05:36
Microsoft Windows 8.1 Pro
System drive C: has 75 GB (65%) free of 114 GB
Total RAM: 3273 MB (65% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:05:38, on 7. 3. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\MPC Cleaner\MPCTray.exe
C:\Program Files (x86)\TeamViewer\TeamViewer.exe
C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe
C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe
C:\Program Files\trend micro\Tereza.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll
O4 - HKLM\..\Run: [CStart8] "C:\Program Files (x86)\CStart8\CStart8Tray64.exe" /STARTUP
O4 - HKLM\..\Run: [LWS] C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe -hide
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs:
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MPC Core Protect Service (MPCProtectService) - DotC United Inc - C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: TeamViewer 11 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 6300 bytes

======Listing Processes======





wininit.exe

winlogon.exe

C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
atieclxx
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe"
C:\Windows\system32\svchost.exe -k imgsvc
taskeng.exe {D2B0E739-ED78-4F6F-BAF8-82712C33C732}
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
C:\Windows\Explorer.EXE
taskhostex.exe
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c

"C:\Program Files (x86)\MPC Cleaner\MPCTray.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\MPC Cleaner\MPCTray64.exe"


C:\Windows\SysWOW64\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
dashost.exe {1ddaaaed-1b8d-42cb-8109e23de96dea18}
"C:\Program Files (x86)\TeamViewer\TeamViewer.exe"
C:\Windows\system32\SppExtComObj.exe -Embedding
"C:\Program Files (x86)\TeamViewer\tv_w32.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\TeamViewer11_Logfile.log
"C:\Program Files (x86)\TeamViewer\tv_x64.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\TeamViewer11_Logfile.log
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 572 576 584 65536 580
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17709_none_fa7932f59afc2e40\TiWorker.exe -Embedding

"C:\Program Files (x86)\CStart8\CStart8Tray64.exe" /STARTUP
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe" -hide
"C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe" /hide
C:\Windows\System32\ThumbnailExtractionHost.exe -Embedding

"C:\Users\Tereza\Downloads\RSITx64.exe"

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_40\bin\ssv.dll [2015-03-31 551848]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 690392]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-31 212904]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll [2015-03-31 460712]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-31 172968]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-05-08 21437568]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-02-12 8641240]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"CStart8"=C:\Program Files (x86)\CStart8\CStart8Tray64.exe [2013-10-03 3138656]
"LWS"=C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe [2012-09-12 204136]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2012-11-05 89184]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=lvcod64.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-03-07 20:03:47 ----D---- C:\_OTM
2016-03-07 19:09:43 ----D---- C:\Users\Tereza\AppData\Roaming\TeamViewer
2016-03-07 19:09:38 ----D---- C:\Program Files (x86)\TeamViewer
2016-03-07 18:26:07 ----D---- C:\Program Files (x86)\AdwCleaner
2016-03-07 18:16:41 ----D---- C:\Program Files (x86)\ESET
2016-03-07 18:08:06 ----D---- C:\rsit
2016-03-07 18:08:06 ----D---- C:\Program Files\trend micro
2016-02-28 18:02:49 ----D---- C:\Program Files (x86)\Adobe
2016-02-11 15:05:04 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2016-02-11 15:05:04 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-02-11 15:05:04 ----A---- C:\Windows\system32\mshtml.dll
2016-02-11 15:05:04 ----A---- C:\Windows\system32\iertutil.dll
2016-02-11 15:05:03 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2016-02-11 15:05:03 ----A---- C:\Windows\system32\urlmon.dll
2016-02-11 15:05:03 ----A---- C:\Windows\system32\ieframe.dll
2016-02-11 15:05:02 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-02-10 16:09:19 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2016-02-10 16:09:19 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2016-02-10 16:09:19 ----A---- C:\Windows\system32\EncDec.dll
2016-02-10 16:09:19 ----A---- C:\Windows\system32\CPFilters.dll
2016-02-10 16:09:18 ----A---- C:\Windows\SYSWOW64\mtxoci.dll
2016-02-10 16:09:18 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2016-02-10 16:09:18 ----A---- C:\Windows\SYSWOW64\cfgbkend.dll
2016-02-10 16:09:18 ----A---- C:\Windows\system32\mtxoci.dll
2016-02-10 16:09:18 ----A---- C:\Windows\system32\cfgbkend.dll
2016-02-10 16:08:09 ----A---- C:\Windows\SYSWOW64\glcndFilter.dll
2016-02-10 16:08:09 ----A---- C:\Windows\system32\Windows.Data.Pdf.dll
2016-02-10 16:08:09 ----A---- C:\Windows\system32\glcndFilter.dll
2016-02-10 16:08:08 ----A---- C:\Windows\SYSWOW64\Windows.Data.Pdf.dll
2016-02-10 16:07:52 ----A---- C:\Windows\system32\invagent.dll
2016-02-10 16:07:52 ----A---- C:\Windows\system32\generaltel.dll
2016-02-10 16:07:52 ----A---- C:\Windows\system32\devinv.dll
2016-02-10 16:07:52 ----A---- C:\Windows\system32\CompatTelRunner.exe
2016-02-10 16:07:52 ----A---- C:\Windows\system32\appraiser.dll
2016-02-10 16:07:52 ----A---- C:\Windows\system32\aeinv.dll
2016-02-10 16:07:52 ----A---- C:\Windows\system32\acmigration.dll
2016-02-10 16:07:45 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2016-02-10 16:07:45 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2016-02-10 16:07:45 ----A---- C:\Windows\SYSWOW64\certcli.dll
2016-02-10 16:07:45 ----A---- C:\Windows\system32\msv1_0.dll
2016-02-10 16:07:45 ----A---- C:\Windows\system32\lsasrv.dll
2016-02-10 16:07:45 ----A---- C:\Windows\system32\kerberos.dll
2016-02-10 16:07:45 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-02-10 16:07:45 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-02-10 16:07:45 ----A---- C:\Windows\system32\dpapisrv.dll
2016-02-10 16:07:45 ----A---- C:\Windows\system32\certcli.dll
2016-02-10 16:07:33 ----A---- C:\Windows\system32\win32k.sys
2016-02-10 16:07:31 ----A---- C:\Windows\system32\shell32.dll
2016-02-10 16:07:30 ----A---- C:\Windows\system32\twinui.dll
2016-02-10 16:07:29 ----A---- C:\Windows\SYSWOW64\twinui.dll
2016-02-10 16:07:28 ----A---- C:\Windows\SYSWOW64\shell32.dll
2016-02-10 16:07:28 ----A---- C:\Windows\SYSWOW64\authui.dll
2016-02-10 16:07:28 ----A---- C:\Windows\system32\authui.dll
2016-02-10 16:06:21 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-02-10 16:06:20 ----A---- C:\Windows\SYSWOW64\WinTypes.dll
2016-02-10 16:06:20 ----A---- C:\Windows\SYSWOW64\wincorlib.dll
2016-02-10 16:06:20 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2016-02-10 16:06:20 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2016-02-10 16:06:20 ----A---- C:\Windows\SYSWOW64\combase.dll
2016-02-10 16:06:20 ----A---- C:\Windows\system32\WinTypes.dll
2016-02-10 16:06:20 ----A---- C:\Windows\system32\ntdll.dll
2016-02-10 16:06:20 ----A---- C:\Windows\system32\microsoft-windows-system-events.dll
2016-02-10 16:06:20 ----A---- C:\Windows\system32\KernelBase.dll
2016-02-10 16:06:20 ----A---- C:\Windows\system32\combase.dll
2016-02-10 16:06:19 ----A---- C:\Windows\SYSWOW64\WinSync.dll
2016-02-10 16:06:19 ----A---- C:\Windows\system32\WinSync.dll
2016-02-10 16:06:19 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2016-02-10 16:06:15 ----A---- C:\Windows\system32\jscript9.dll
2016-02-10 16:06:14 ----A---- C:\Windows\SYSWOW64\wininet.dll
2016-02-10 16:06:14 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2016-02-10 16:06:14 ----A---- C:\Windows\system32\wininet.dll
2016-02-10 16:06:13 ----A---- C:\Windows\SYSWOW64\hlink.dll
2016-02-10 16:06:13 ----A---- C:\Windows\system32\msfeeds.dll
2016-02-10 16:06:13 ----A---- C:\Windows\system32\hlink.dll
2016-02-10 16:06:13 ----A---- C:\Windows\system32\actxprxy.dll
2016-02-10 16:06:12 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2016-02-10 16:06:12 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2016-02-10 16:06:12 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2016-02-10 16:06:12 ----A---- C:\Windows\SYSWOW64\jscript.dll
2016-02-10 16:06:12 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2016-02-10 16:06:12 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2016-02-10 16:06:12 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2016-02-10 16:06:12 ----A---- C:\Windows\system32\webcheck.dll
2016-02-10 16:06:12 ----A---- C:\Windows\system32\vbscript.dll
2016-02-10 16:06:12 ----A---- C:\Windows\system32\jscript.dll
2016-02-10 16:06:12 ----A---- C:\Windows\system32\inetcomm.dll
2016-02-10 16:06:12 ----A---- C:\Windows\system32\iedkcs32.dll
2016-02-10 16:06:12 ----A---- C:\Windows\system32\ieapfltr.dll
2016-02-10 16:06:12 ----A---- C:\Windows\system32\ie4uinit.exe
2016-02-10 16:03:52 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2016-02-10 16:03:52 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2016-02-10 16:03:52 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2016-02-10 16:03:52 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2016-02-10 16:03:52 ----A---- C:\Windows\system32\wuwebv.dll
2016-02-10 16:03:52 ----A---- C:\Windows\system32\WUSettingsProvider.dll
2016-02-10 16:03:52 ----A---- C:\Windows\system32\wudriver.dll
2016-02-10 16:03:52 ----A---- C:\Windows\system32\wucltux.dll
2016-02-10 16:03:52 ----A---- C:\Windows\system32\wuaueng.dll
2016-02-10 16:03:52 ----A---- C:\Windows\system32\wuauclt.exe
2016-02-10 16:03:52 ----A---- C:\Windows\system32\wuapp.exe
2016-02-10 16:03:52 ----A---- C:\Windows\system32\wuapi.dll
2016-02-10 16:03:50 ----A---- C:\Windows\system32\rdpudd.dll
2016-02-10 16:03:50 ----A---- C:\Windows\system32\rdpcorets.dll

======List of files/folders modified in the last 1 month======

2016-03-07 20:05:05 ----D---- C:\Windows\Prefetch
2016-03-07 20:04:34 ----D---- C:\Windows\SoftwareDistribution
2016-03-07 20:04:23 ----D---- C:\Windows
2016-03-07 20:03:54 ----D---- C:\Windows\Temp
2016-03-07 20:03:47 ----D---- C:\Windows\Tasks
2016-03-07 20:00:00 ----D---- C:\Windows\system32\sru
2016-03-07 19:18:00 ----D---- C:\Windows\debug
2016-03-07 19:09:45 ----D---- C:\Windows\system32\Tasks
2016-03-07 19:09:43 ----RSD---- C:\Windows\Fonts
2016-03-07 19:09:38 ----RD---- C:\Program Files (x86)
2016-03-07 18:53:18 ----RD---- C:\Windows\System32
2016-03-07 18:53:18 ----D---- C:\Windows\Inf
2016-03-07 18:53:18 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-03-07 18:47:42 ----HD---- C:\ProgramData
2016-03-07 18:47:41 ----RD---- C:\Program Files
2016-03-07 18:44:54 ----D---- C:\Windows\SysWOW64
2016-03-07 18:44:52 ----D---- C:\Program Files (x86)\Sada-Microsoft-Office-Compatibility-Pack-pro-formaty-souboru-aplikace-Word-Excel-a-PowerPoint-2007
2016-03-07 17:43:09 ----D---- C:\Program Files\CCleaner
2016-03-07 17:42:56 ----HD---- C:\Program Files\WindowsApps
2016-03-07 17:42:56 ----D---- C:\Windows\AppReadiness
2016-03-07 16:31:01 ----D---- C:\Windows\Microsoft.NET
2016-03-06 16:45:24 ----D---- C:\Kaja
2016-03-06 11:53:53 ----D---- C:\Windows\system32\drivers
2016-03-06 11:53:47 ----D---- C:\Windows\system32\drivers\UMDF
2016-03-05 16:36:18 ----D---- C:\Windows\system32\catroot2
2016-03-05 10:35:24 ----D---- C:\Windows\Panther
2016-03-05 10:04:39 ----SHD---- C:\System Volume Information
2016-03-04 12:20:32 ----D---- C:\Windows\system32\config
2016-03-04 11:30:26 ----D---- C:\Windows\WinSxS
2016-03-02 18:20:39 ----SHD---- C:\Windows\Installer
2016-02-28 18:02:46 ----D---- C:\ProgramData\Adobe
2016-02-27 11:14:52 ----D---- C:\Program Files (x86)\MPC Cleaner
2016-02-26 19:34:31 ----D---- C:\Windows\CbsTemp
2016-02-26 19:34:22 ----SD---- C:\Windows\SYSWOW64\GWX
2016-02-26 19:34:22 ----SD---- C:\Windows\system32\GWX
2016-02-17 19:40:16 ----D---- C:\Terka
2016-02-13 09:28:16 ----D---- C:\Windows\rescache
2016-02-13 09:26:47 ----RD---- C:\Windows\assembly
2016-02-11 22:34:13 ----D---- C:\Windows\SYSWOW64\cs-CZ
2016-02-11 22:34:13 ----D---- C:\Windows\system32\cs-CZ
2016-02-11 22:34:12 ----RD---- C:\Windows\ToastData
2016-02-11 22:34:12 ----D---- C:\Program Files\Internet Explorer
2016-02-11 22:34:12 ----D---- C:\Program Files (x86)\Internet Explorer
2016-02-11 22:34:11 ----D---- C:\Windows\system32\wbem
2016-02-11 15:06:41 ----D---- C:\ProgramData\Microsoft Help
2016-02-11 15:06:08 ----D---- C:\Windows\system32\appraiser
2016-02-11 15:06:08 ----D---- C:\Windows\apppatch
2016-02-11 15:05:36 ----D---- C:\Program Files\Windows Journal
2016-02-10 15:53:49 ----D---- C:\Windows\system32\MRT
2016-02-10 15:51:36 ----A---- C:\Windows\system32\MRT.exe
2016-02-09 11:03:46 ----A---- C:\Windows\win.ini

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 Wof;Windows Overlay File System Filter Driver; C:\Windows\system32\drivers\Wof.sys [2014-03-13 157016]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\system32\drivers\HWiNFO64A.SYS [2014-05-18 31648]
R1 MPCKpt;MPCKpt; C:\Windows\system32\DRIVERS\MPCKpt.sys [2016-02-26 59112]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2013-12-13 13207552]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2013-12-13 626176]
R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\Windows\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
R3 usbaudio;@wdma_usb.inf,%USBAudio.SvcDesc%;Ovladač zvuků USB (WDM); C:\Windows\system32\drivers\usbaudio.sys [2014-03-18 121088]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2014-06-21 212736]
S3 dg_ssudbus;@oem7.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2014-01-22 108800]
S3 LVRS64;@oem4.inf,%lvrs.SrvDesc%;Logitech RightSound Filter Driver; C:\Windows\system32\DRIVERS\lvrs64.sys [2012-10-26 351520]
S3 ssudmdm;@oem8.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2014-01-22 206080]
S3 usbscan;@sti.inf,%usbscan.SvcDesc%;Ovladač skeneru USB; C:\Windows\System32\drivers\usbscan.sys [2014-10-29 44544]
S3 WinUsb;@wpdmtp.inf,%WinUsb.SvcDesc%;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2015-10-10 78848]
S3 WUDFSensorLP;@locationprovider.inf,%WudfLocationProviderDisplayName%;Služba Reflektor UMDF pro zprostředkovatele umístění (LocationProvider); C:\Windows\System32\drivers\WUDFRd.sys [2014-10-29 226304]
S3 WUDFWpdFs;WUDFWpdFs; C:\Windows\System32\drivers\WUDFRd.sys [2014-10-29 226304]
S3 WUDFWpdMtp;WUDFWpdMtp; C:\Windows\system32\DRIVERS\WUDFRd.sys [2014-10-29 226304]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-14 82128]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2013-12-13 239616]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2014-10-29 38792]
R2 MPCProtectService;MPC Core Protect Service; C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe [2016-02-26 348640]
R2 TeamViewer;TeamViewer 11; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2016-03-02 6942480]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\Windows\System32\svchost.exe [2014-10-29 38792]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 30814400]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]

-----------------EOF-----------------

Re: MPC Cleaner v PC, prosim o pomoc

Napsal: 07 bře 2016 21:20
od Rudy
Smazáno. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Nastala nějaká změna?

Re: MPC Cleaner v PC, prosim o pomoc

Napsal: 07 bře 2016 21:37
od Aiwon
udelal jsem jak jste napsal, bohuzel MPC cleaner je porad tady, mám poslat jeste nejaky log?

Re: MPC Cleaner v PC, prosim o pomoc

Napsal: 07 bře 2016 21:43
od Rudy
Udělejte kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte.

Re: MPC Cleaner v PC, prosim o pomoc

Napsal: 07 bře 2016 22:17
od Aiwon
Malwarebytes Anti-Malware
www.malwarebytes.org

Datum skenování: 7. 3. 2016
Čas skenování: 22:03
Protokol:
Správce: Ano

Verze: 2.2.0.1024
Databáze malwaru: v2016.03.07.07
Databáze rootkitů: v2016.02.27.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Ochrana programu: Vypnuto

OS: Windows 8.1
CPU: x64
Souborový systém: NTFS
Uživatel: Tereza

Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 378631
Uplynulý čas: 5 min, 49 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 1
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe, 1360, , [13e0236146532610d822677faf52e818]

Moduly: 6
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\LpcManager.dll, , [b63dbdc7900978be3ebcd511bf4211ef],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\WinService.dll, , [22d17d079dfc47ef26d4ebfb0cf536ca],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\XProcessBus.dll, , [2fc4265ec8d1e0569b5f8e588c756c94],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Report.dll, , [6a89c5bfcfca60d603f7a73f917056aa],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Support.dll, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Utility.dll, , [1bd8394b6d2ce94d08eb1b59758fb64a],

Klíče registru: 8
PUP.Optional.MorePowerfulCleaner, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\MPCProtectService, , [13e0236146532610d822677faf52e818],
PUP.Optional.MorePowerfulCleaner, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\MPCKpt, , [7b785a2af3a68fa7e9e023c97a872fd1],
PUP.Optional.VMNToolBar, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{CCB24E92-62C4-4C53-95D2-65F9EED476BC}, , [11e23450cccdd2645907a811ca3810f0],
PUP.Optional.BrowserWeb, HKLM\SOFTWARE\MICROSOFT\TRACING\BrowserWeb_RASAPI32, , [9f547a0a2376aa8c18e47fdd2dd76799],
PUP.Optional.BrowserWeb, HKLM\SOFTWARE\MICROSOFT\TRACING\BrowserWeb_RASMANCS, , [10e32460b8e11d1965978dcfc1438878],
PUP.Optional.MyStartToolbar, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\ijepgjdjkdbopbnaopmlmobimmhjklhd, , [15de5d273e5b9c9ada9cd34357acd030],
PUP.Optional.MorePowerfulCleaner, HKLM\SOFTWARE\WOW6432NODE\MPC, , [6b8890f44d4c91a5a39c4e2f749057a9],
PUP.Optional.PCSpeedUp, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\PCSUUCDRV, , [7d76285c5940bd794c4eb55eac589f61],

Hodnoty registru: 4
PUP.Optional.MorePowerfulCleaner, HKLM\SOFTWARE\WOW6432NODE\MPC|Location, C:\Program Files (x86)\MPC Cleaner, , [6b8890f44d4c91a5a39c4e2f749057a9]
PUP.Optional.MorePowerfulCleaner, HKLM\SOFTWARE\WOW6432NODE\MPC|MPCNewsExist, 1, , [8172d3b12178ab8b5c4f512328dc0ef2]
PUP.Optional.MorePowerfulCleaner, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\MPCKPT|Description, MPC Driver, , [3cb7186c6336b08657e9f18c3acac937]
PUP.Optional.MorePowerfulCleaner, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\MPCPROTECTSERVICE|ImagePath, "C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe", , [8370d4b00a8f6fc79caf691509fb758b]

Data registru: 0
(Nenalezeny žádné škodlivé položky)

Složky: 84
PUP.Optional.MultiPlug, C:\Users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2, , [31c204801d7c092d5e8dd83c58ab38c8],
PUP.Optional.MultiPlug, C:\Users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo, , [31c204801d7c092d5e8dd83c58ab38c8],
PUP.Optional.MultiPlug, C:\Users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2, , [e80b71134e4b8bab7f6c3adad52e8b75],
PUP.Optional.MultiPlug, C:\Users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo, , [e80b71134e4b8bab7f6c3adad52e8b75],
PUP.Optional.MultiPlug, C:\Users\HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2, , [ec073d476d2c9b9b4c9f987c6a99c33d],
PUP.Optional.MultiPlug, C:\Users\HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo, , [ec073d476d2c9b9b4c9f987c6a99c33d],
PUP.Optional.MultiPlug, C:\Users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2, , [15de1f65fd9ca88eec0047cdd42f21df],
PUP.Optional.MultiPlug, C:\Users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo, , [15de1f65fd9ca88eec0047cdd42f21df],
PUP.Optional.MultiPlug, C:\Users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2, , [856e2b5999004ee85399f71d23e055ab],
PUP.Optional.MultiPlug, C:\Users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo, , [856e2b5999004ee85399f71d23e055ab],
PUP.Optional.MultiPlug, C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2, , [ea09cbb92772e94d8864c15319eae31d],
PUP.Optional.MultiPlug, C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo, , [ea09cbb92772e94d8864c15319eae31d],
PUP.Optional.MultiPlug, C:\Users\Administrator\AppData\Local\Torch\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2, , [e60d8103a9f0c472806d19fb6c97d32d],
PUP.Optional.MultiPlug, C:\Users\Administrator\AppData\Local\Torch\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo, , [e60d8103a9f0c472806d19fb6c97d32d],
PUP.Optional.MultiPlug, C:\Users\Guest\AppData\Local\Torch\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2, , [8e65cabaf7a2bb7b35b81103cf3445bb],
PUP.Optional.MultiPlug, C:\Users\Guest\AppData\Local\Torch\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo, , [8e65cabaf7a2bb7b35b81103cf3445bb],
PUP.Optional.MultiPlug, C:\Users\HomeGroupUser$\AppData\Local\Torch\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2, , [cb285d277c1dfe38faf3858f15ee9b65],
PUP.Optional.MultiPlug, C:\Users\HomeGroupUser$\AppData\Local\Torch\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo, , [cb285d277c1dfe38faf3858f15ee9b65],
PUP.Optional.MultiPlug, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2, , [8d66b3d15940e94d2e6657b8f80c748c],
PUP.Optional.MultiPlug, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo, , [8d66b3d15940e94d2e6657b8f80c748c],
PUP.Optional.MultiPlug, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2, , [7a79fe8609905adcd3c1a86746be9c64],
PUP.Optional.MultiPlug, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo, , [7a79fe8609905adcd3c1a86746be9c64],
PUP.Optional.MultiPlug, C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2, , [f5fea5df782187af6e26df3024e0ab55],
PUP.Optional.MultiPlug, C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo, , [f5fea5df782187af6e26df3024e0ab55],
PUP.Optional.MorePowerfulCleaner, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC, , [718280044f4a2412643e99db06fed12f],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config\DB, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Drivers, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SgIcon, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Microsoft.VC90.CRT, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Cleaner, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\CrashReport, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\News, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Tray, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Uninstall, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\TEMP, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\TEMP\Upgrade, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Exe, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.Chromatic, C:\Users\Administrator\AppData\Local\Chromatic Browser, , [07ece2a244559b9b355b0bf81de6ec14],
PUP.Optional.Chromatic, C:\Users\Administrator\AppData\Local\Chromatic Browser\User Data, , [07ece2a244559b9b355b0bf81de6ec14],
PUP.Optional.Chromatic, C:\Users\Administrator\AppData\Local\Chromatic Browser\User Data\Default, , [07ece2a244559b9b355b0bf81de6ec14],
PUP.Optional.Chromatic, C:\Users\Administrator\AppData\Local\Chromatic Browser\User Data\Default\Extensions, , [07ece2a244559b9b355b0bf81de6ec14],
PUP.Optional.Chromatic, C:\Users\Administrator\AppData\Local\Chromatic Browser\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo, , [07ece2a244559b9b355b0bf81de6ec14],
PUP.Optional.Chromatic, C:\Users\Administrator\AppData\Local\Chromatic Browser\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2, , [07ece2a244559b9b355b0bf81de6ec14],
PUP.Optional.Chromatic, C:\Users\Guest\AppData\Local\Chromatic Browser, , [07ecd8ac6e2bf343b8d8ca39808336ca],
PUP.Optional.Chromatic, C:\Users\Guest\AppData\Local\Chromatic Browser\User Data, , [07ecd8ac6e2bf343b8d8ca39808336ca],
PUP.Optional.Chromatic, C:\Users\Guest\AppData\Local\Chromatic Browser\User Data\Default, , [07ecd8ac6e2bf343b8d8ca39808336ca],
PUP.Optional.Chromatic, C:\Users\Guest\AppData\Local\Chromatic Browser\User Data\Default\Extensions, , [07ecd8ac6e2bf343b8d8ca39808336ca],
PUP.Optional.Chromatic, C:\Users\Guest\AppData\Local\Chromatic Browser\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo, , [07ecd8ac6e2bf343b8d8ca39808336ca],
PUP.Optional.Chromatic, C:\Users\Guest\AppData\Local\Chromatic Browser\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2, , [07ecd8ac6e2bf343b8d8ca39808336ca],
PUP.Optional.Chromatic, C:\Users\HomeGroupUser$\AppData\Local\Chromatic Browser, , [896a40446e2bdb5b226e92717a899769],
PUP.Optional.Chromatic, C:\Users\HomeGroupUser$\AppData\Local\Chromatic Browser\User Data, , [896a40446e2bdb5b226e92717a899769],
PUP.Optional.Chromatic, C:\Users\HomeGroupUser$\AppData\Local\Chromatic Browser\User Data\Default, , [896a40446e2bdb5b226e92717a899769],
PUP.Optional.Chromatic, C:\Users\HomeGroupUser$\AppData\Local\Chromatic Browser\User Data\Default\Extensions, , [896a40446e2bdb5b226e92717a899769],
PUP.Optional.Chromatic, C:\Users\HomeGroupUser$\AppData\Local\Chromatic Browser\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo, , [896a40446e2bdb5b226e92717a899769],
PUP.Optional.Chromatic, C:\Users\HomeGroupUser$\AppData\Local\Chromatic Browser\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2, , [896a40446e2bdb5b226e92717a899769],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\api, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\background, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\background\js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\background\js\modules, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\content-scripts, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\fonts, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\fonts\mystart-font, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\fonts\opensans, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\icons, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\lib, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\lib\js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\lib\ui, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\lib\ui\combobox, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\lib\vendor, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\css, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img\icons, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img\weather, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\_metadata, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd, , [39bae59f02978babbf2d54e08481d52b],

Soubory: 380
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe, , [13e0236146532610d822677faf52e818],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\LpcManager.dll, , [b63dbdc7900978be3ebcd511bf4211ef],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\WinService.dll, , [22d17d079dfc47ef26d4ebfb0cf536ca],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\XProcessBus.dll, , [2fc4265ec8d1e0569b5f8e588c756c94],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Report.dll, , [6a89c5bfcfca60d603f7a73f917056aa],
PUP.Optional.MorePowerfulCleaner, C:\Windows\System32\drivers\MPCKpt.sys, , [7b785a2af3a68fa7e9e023c97a872fd1],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\BrowserPlugIn.dll, , [b1427410b0e9b086bc3e03e328d9ff01],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Cleaner.dll, , [1ed5661e198076c0e81230b638c9b848],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Database.dll, , [846f285c28716bcb3cbe9b4b30d139c7],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\LogReport.dll, , [8a6990f43069a98dbb3f9452b74a30d0],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MainFrame.dll, , [f6fdf98b6c2d60d6be3ccc1a41c001ff],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Monitor.dll, , [d81ba3e12475c1753ebc7175e71ac43c],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPC.exe, , [3fb402824158b482ae4ca442a25f22de],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCAutoClean.exe, , [d221255fb8e1c274f901668006fb867a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCNews.exe, , [da19d3b19900a1951ddd16d09b6630d0],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, , [28cbe4a01089033310ea6680c23ff20e],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll64.dll, , [04ef9de7fe9b1b1b8a70a34329d8f10f],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCSecurity.exe, , [29ca295b6d2c79bd4eac90566a97d729],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCSetting.exe, , [25ce1b6919807abc35c531b56f9219e7],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCTray.exe, , [a94a83013366dc5ad82232b4996853ad],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCTray64.exe, , [1bd80084514840f637c35492c43d8d73],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\SafeNavi.dll, , [28cb473dfa9fb97d887228bee51c2bd5],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\SafeNavi64.dll, , [ac471a6a8415340208f2cd19976a768a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\SafeProtect.dll, , [8271f68e514812246e8c25c106fb4cb4],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\SetupFrame.dll, , [9360f78df0a96dc948b2c125f60be31d],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\TrayFrame.dll, , [846fc0c45e3bda5c42b8db0b8879619f],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Uninstall.exe, , [5d963450e2b79f978c6ee006bf422dd3],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\UninstDelete.exe, , [ab4804805148ba7cd129d412fb06f808],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Update.dll, , [0de687fd0a8f1a1ca852a73f4eb35ba5],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\UpdateHost.exe, , [8f64166ea2f7aa8cc5358561eb16c23e],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Upgrade.dll, , [876cafd5cdccfe3828d236b0fc058f71],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Web.dll, , [f5fe6a1a0990c5712dcd02e433ceda26],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\XBus.dll, , [60930084b5e477bfef0b23c3976a26da],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\UninstallFrame.dll, , [ca295133514886b050aa9c4a60a129d7],
PUP.Optional.BitCoinMiner, C:\Windows\SysWOW64\acumnckfad.exe, , [ee05d2b2bedb82b4408530237d85867a],
Trojan.BitCoinMiner, C:\Windows\SysWOW64\dcgmnckfad.exe, , [945f255f8316da5c17d0440f649e758b],
Trojan.Agent.BCM, C:\Windows\SysWOW64\lcpmnckfad.exe, , [e2118103e3b649ed733cf7c114ecb14f],
PUP.Optional.MorePowerfulCleaner, C:\Users\Tereza\AppData\Local\Setup Wizard\2cd52937-5f30-4148-8a3e-35965764c2aa\mpc_3.2.9124.0113.exe, , [3cb7780c1485c76fca3006e05da416ea],
PUP.Optional.MyStartTB.ShrtCln, C:\Users\Tereza\AppData\Local\Setup Wizard\3cdce32e-5485-4117-97e4-ed01a9efa046\mystarttb_5.5.0.2_samba.exe, , [7a79b3d1a7f26dc98789378139c7817f],
PUP.Optional.MyStartTB.ShrtCln, C:\Users\Tereza\AppData\Local\Setup Wizard\65ba791a-ccaa-4942-89b1-632fd78d74cb\mystarttb_5.5.0.2_samba.exe, , [4ba88df7a8f143f319f7fbbd6898c937],
PUP.Optional.MixiVideoPlayer, C:\Users\Tereza\AppData\Local\Setup Wizard\ac6b4a66-6b2c-4fc3-832d-7f2c88eaa3d1\mixvideoplayersetup.exe, , [995a1d67960375c1b5236562e819817f],
PUP.Optional.DealPly, C:\Users\Tereza\AppData\Local\Setup Wizard\bea19d1b-6e7d-4113-b1ec-c6b01e7204f2\setup.exe, , [5f947b093d5cc3737a7e1757bb46d32d],
PUP.Optional.MorePowerfulCleaner, C:\Users\Tereza\AppData\Local\Setup Wizard\c30f57ad-3ba8-40e8-a783-38936f4c2546\mpc_3.2.9124.0113.exe, , [698aa7dd1c7dba7c8377e006f50cd729],
PUP.Optional.MixiVideoPlayer, C:\Users\Tereza\AppData\Local\Setup Wizard\e52ed009-40f7-45b2-97bf-c9a2d337e3e9\mixvideoplayersetup.exe, , [0be8d8ac71284aec9246794e57aa5ca4],
PUP.Optional.DealPly, C:\Users\Tereza\AppData\Local\Setup Wizard\f50d96d8-9b2f-4da2-ad21-1fd047a6cd13\setup.exe, , [d122780c0a8f59ddc731333b23de2ad6],
PUP.Optional.MultiPlug, C:\Users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\lsdb.js, , [31c204801d7c092d5e8dd83c58ab38c8],
PUP.Optional.MultiPlug, C:\Users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\background.html, , [31c204801d7c092d5e8dd83c58ab38c8],
PUP.Optional.MultiPlug, C:\Users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\content.js, , [31c204801d7c092d5e8dd83c58ab38c8],
PUP.Optional.MultiPlug, C:\Users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\manifest.json, , [31c204801d7c092d5e8dd83c58ab38c8],
PUP.Optional.MultiPlug, C:\Users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\lsdb.js, , [e80b71134e4b8bab7f6c3adad52e8b75],
PUP.Optional.MultiPlug, C:\Users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\background.html, , [e80b71134e4b8bab7f6c3adad52e8b75],
PUP.Optional.MultiPlug, C:\Users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\content.js, , [e80b71134e4b8bab7f6c3adad52e8b75],
PUP.Optional.MultiPlug, C:\Users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\manifest.json, , [e80b71134e4b8bab7f6c3adad52e8b75],
PUP.Optional.MultiPlug, C:\Users\HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\lsdb.js, , [ec073d476d2c9b9b4c9f987c6a99c33d],
PUP.Optional.MultiPlug, C:\Users\HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\background.html, , [ec073d476d2c9b9b4c9f987c6a99c33d],
PUP.Optional.MultiPlug, C:\Users\HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\content.js, , [ec073d476d2c9b9b4c9f987c6a99c33d],
PUP.Optional.MultiPlug, C:\Users\HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\manifest.json, , [ec073d476d2c9b9b4c9f987c6a99c33d],
PUP.Optional.MultiPlug, C:\Users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\lsdb.js, , [15de1f65fd9ca88eec0047cdd42f21df],
PUP.Optional.MultiPlug, C:\Users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\background.html, , [15de1f65fd9ca88eec0047cdd42f21df],
PUP.Optional.MultiPlug, C:\Users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\content.js, , [15de1f65fd9ca88eec0047cdd42f21df],
PUP.Optional.MultiPlug, C:\Users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\manifest.json, , [15de1f65fd9ca88eec0047cdd42f21df],
PUP.Optional.MultiPlug, C:\Users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\lsdb.js, , [856e2b5999004ee85399f71d23e055ab],
PUP.Optional.MultiPlug, C:\Users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\background.html, , [856e2b5999004ee85399f71d23e055ab],
PUP.Optional.MultiPlug, C:\Users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\content.js, , [856e2b5999004ee85399f71d23e055ab],
PUP.Optional.MultiPlug, C:\Users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\manifest.json, , [856e2b5999004ee85399f71d23e055ab],
PUP.Optional.MultiPlug, C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\lsdb.js, , [ea09cbb92772e94d8864c15319eae31d],
PUP.Optional.MultiPlug, C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\background.html, , [ea09cbb92772e94d8864c15319eae31d],
PUP.Optional.MultiPlug, C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\content.js, , [ea09cbb92772e94d8864c15319eae31d],
PUP.Optional.MultiPlug, C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\manifest.json, , [ea09cbb92772e94d8864c15319eae31d],
PUP.Optional.MultiPlug, C:\Users\Administrator\AppData\Local\Torch\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\lsdb.js, , [e60d8103a9f0c472806d19fb6c97d32d],
PUP.Optional.MultiPlug, C:\Users\Administrator\AppData\Local\Torch\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\background.html, , [e60d8103a9f0c472806d19fb6c97d32d],
PUP.Optional.MultiPlug, C:\Users\Administrator\AppData\Local\Torch\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\content.js, , [e60d8103a9f0c472806d19fb6c97d32d],
PUP.Optional.MultiPlug, C:\Users\Administrator\AppData\Local\Torch\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\manifest.json, , [e60d8103a9f0c472806d19fb6c97d32d],
PUP.Optional.MultiPlug, C:\Users\Guest\AppData\Local\Torch\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\lsdb.js, , [8e65cabaf7a2bb7b35b81103cf3445bb],
PUP.Optional.MultiPlug, C:\Users\Guest\AppData\Local\Torch\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\background.html, , [8e65cabaf7a2bb7b35b81103cf3445bb],
PUP.Optional.MultiPlug, C:\Users\Guest\AppData\Local\Torch\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\content.js, , [8e65cabaf7a2bb7b35b81103cf3445bb],
PUP.Optional.MultiPlug, C:\Users\Guest\AppData\Local\Torch\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\manifest.json, , [8e65cabaf7a2bb7b35b81103cf3445bb],
PUP.Optional.MultiPlug, C:\Users\HomeGroupUser$\AppData\Local\Torch\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\lsdb.js, , [cb285d277c1dfe38faf3858f15ee9b65],
PUP.Optional.MultiPlug, C:\Users\HomeGroupUser$\AppData\Local\Torch\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\background.html, , [cb285d277c1dfe38faf3858f15ee9b65],
PUP.Optional.MultiPlug, C:\Users\HomeGroupUser$\AppData\Local\Torch\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\content.js, , [cb285d277c1dfe38faf3858f15ee9b65],
PUP.Optional.MultiPlug, C:\Users\HomeGroupUser$\AppData\Local\Torch\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\manifest.json, , [cb285d277c1dfe38faf3858f15ee9b65],
PUP.Optional.MultiPlug, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\lsdb.js, , [8d66b3d15940e94d2e6657b8f80c748c],
PUP.Optional.MultiPlug, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\background.html, , [8d66b3d15940e94d2e6657b8f80c748c],
PUP.Optional.MultiPlug, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\content.js, , [8d66b3d15940e94d2e6657b8f80c748c],
PUP.Optional.MultiPlug, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\manifest.json, , [8d66b3d15940e94d2e6657b8f80c748c],
PUP.Optional.MultiPlug, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\lsdb.js, , [7a79fe8609905adcd3c1a86746be9c64],
PUP.Optional.MultiPlug, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\background.html, , [7a79fe8609905adcd3c1a86746be9c64],
PUP.Optional.MultiPlug, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\content.js, , [7a79fe8609905adcd3c1a86746be9c64],
PUP.Optional.MultiPlug, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\manifest.json, , [7a79fe8609905adcd3c1a86746be9c64],
PUP.Optional.MultiPlug, C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\lsdb.js, , [f5fea5df782187af6e26df3024e0ab55],
PUP.Optional.MultiPlug, C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\background.html, , [f5fea5df782187af6e26df3024e0ab55],
PUP.Optional.MultiPlug, C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\content.js, , [f5fea5df782187af6e26df3024e0ab55],
PUP.Optional.MultiPlug, C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\manifest.json, , [f5fea5df782187af6e26df3024e0ab55],
PUP.Optional.MorePowerfulCleaner, C:\Users\Public\Desktop\MPC Cleaner.lnk, , [b043add7801971c55d443c389b691ce4],
PUP.Optional.MorePowerfulCleaner, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC\MPC Cleaner.lnk, , [718280044f4a2412643e99db06fed12f],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\symsrv.yes, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\AdbWinApi.dll, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\AdbWinUsbApi.dll, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\AdcManager.dll, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\AndriodServer.dll, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\CeBase.dll, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\CrashReport.exe, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\dbgkpt.dll, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\isafechlp.dll, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Microsoft.VC90.CRT.manifest, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCBS.dll, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCCheckDump.exe, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\msvcm90.dll, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\msvcp110.dll, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\msvcp90.dll, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\msvcr90.dll, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\nmlct, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\silence.ini, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\snh.dll, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Support.dll, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\symsrv.dll, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\udpx, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Utility.dll, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\versioninfo.ini, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\wfhxte.dat, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\xadb.exe, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\XSkin.dll, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\msvcr110.dll, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config\Clean.xf, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config\PlugIn.xf, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config\SRules.xf, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config\DB\as.db, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config\DB\cf.db, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config\DB\run.db, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config\DB\st.db, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Drivers\MPCBase_32.sys, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Drivers\MPCKpt.inf, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Drivers\MPCKpt.sys, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Drivers\MPCKpt_vista_32.sys, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Drivers\MPCKpt_vista_64.sys, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Drivers\MPCKpt_xp_32.sys, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q2.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\ad_gray.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\ad_green.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\ad_org.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\ad_red.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g1.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g10.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g11.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g12.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g2.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g3.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g4.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g5.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g6.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g7.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g8.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g9.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q1.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q10.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q11.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q12.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q3.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q4.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q5.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q6.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q7.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q8.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q9.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r1.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r10.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r11.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r12.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r2.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r3.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r4.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r5.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r6.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r7.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r8.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r9.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\sys_gray.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\sys_green.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\sys_org.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\sys_red.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y1.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y10.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y11.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y12.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y2.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y3.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y4.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y5.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y6.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y7.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y8.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y9.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{08DA4B46-E0EB-4B4D-8C8B-558C967AF6C5}.ico, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{22A8D5A3-F368-4C6B-BF4D-3C901EBCF242}.ico, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{3F9A707D-2C36-4344-8621-B8E4ADC95C18}.ico, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{D8EC46AF-529F-4636-963B-C086429C73DA}.ico, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{DE37CD8C-DE7B-481F-A676-303ABAFBEE04}.ico, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{F154C596-75A9-4028-90E8-9752BD7CA05B}.ico, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\toasts_waring.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SgIcon\adcapp.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SgIcon\adcweb.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SgIcon\block.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SgIcon\home.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SgIcon\ie.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SgIcon\search.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\AR_green.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\AR_org.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\AR_red.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\Bp_green.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\Bp_org.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\Bp_red.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\SpeedUp_green.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\SpeedUp_org.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\SpeedUp_red.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\SVC_green.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\SVC_org.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\SVC_red.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\TSK_green.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\TSK_org.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\TSK_red.png, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Microsoft.VC90.CRT\Microsoft.VC90.CRT.manifest, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Microsoft.VC90.CRT\msvcm90.dll, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Microsoft.VC90.CRT\msvcp90.dll, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Microsoft.VC90.CRT\msvcr90.dll, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Cleaner\Lang.xf, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Cleaner\Skin.xf, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\CrashReport\Lang.xf, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\CrashReport\Skin.xf, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\News\Lang.xf, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\News\Skin.xf, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Tray\Lang.xf, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Tray\Skin.xf, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Uninstall\Lang.xf, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Uninstall\Skin.xf, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Exe\ADC_qd00000.exe, , [1bd8394b6d2ce94d08eb1b59758fb64a],
PUP.Optional.Chromatic, C:\Users\Administrator\AppData\Local\Chromatic Browser\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\background.html, , [07ece2a244559b9b355b0bf81de6ec14],
PUP.Optional.Chromatic, C:\Users\Administrator\AppData\Local\Chromatic Browser\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\content.js, , [07ece2a244559b9b355b0bf81de6ec14],
PUP.Optional.Chromatic, C:\Users\Administrator\AppData\Local\Chromatic Browser\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\lsdb.js, , [07ece2a244559b9b355b0bf81de6ec14],
PUP.Optional.Chromatic, C:\Users\Administrator\AppData\Local\Chromatic Browser\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\manifest.json, , [07ece2a244559b9b355b0bf81de6ec14],
PUP.Optional.Chromatic, C:\Users\Guest\AppData\Local\Chromatic Browser\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\background.html, , [07ecd8ac6e2bf343b8d8ca39808336ca],
PUP.Optional.Chromatic, C:\Users\Guest\AppData\Local\Chromatic Browser\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\content.js, , [07ecd8ac6e2bf343b8d8ca39808336ca],
PUP.Optional.Chromatic, C:\Users\Guest\AppData\Local\Chromatic Browser\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\lsdb.js, , [07ecd8ac6e2bf343b8d8ca39808336ca],
PUP.Optional.Chromatic, C:\Users\Guest\AppData\Local\Chromatic Browser\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\manifest.json, , [07ecd8ac6e2bf343b8d8ca39808336ca],
PUP.Optional.Chromatic, C:\Users\HomeGroupUser$\AppData\Local\Chromatic Browser\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\background.html, , [896a40446e2bdb5b226e92717a899769],
PUP.Optional.Chromatic, C:\Users\HomeGroupUser$\AppData\Local\Chromatic Browser\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\content.js, , [896a40446e2bdb5b226e92717a899769],
PUP.Optional.Chromatic, C:\Users\HomeGroupUser$\AppData\Local\Chromatic Browser\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\lsdb.js, , [896a40446e2bdb5b226e92717a899769],
PUP.Optional.Chromatic, C:\Users\HomeGroupUser$\AppData\Local\Chromatic Browser\User Data\Default\Extensions\ecgfniehpgmhonkpmafdddkcdbljgneo\2.2\manifest.json, , [896a40446e2bdb5b226e92717a899769],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\manifest.json, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\config-package.json, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\api\alarms.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\api\apps.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\api\bookmarks.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\api\browser.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\api\default-search.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\api\most-visited.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\api\permissions.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\api\recently-closed.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\api\runtime.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\api\shim.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\api\storage.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\api\tabs.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\api\windows.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\background\index.html, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\background\js\index.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\background\js\main.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\background\js\sync.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\background\js\modules\action-button.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\background\js\modules\analytics.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\background\js\modules\carousel.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\background\js\modules\default-search.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\background\js\modules\feeds.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\background\js\modules\heartbeat.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\background\js\modules\monitor.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\background\js\modules\music-player.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\background\js\modules\social.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\background\js\modules\update.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\background\js\modules\wallpapers.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\background\js\modules\weather.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\content-scripts\idle.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\content-scripts\music-player.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\content-scripts\start.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\fonts\mystart-font\LICENSE.txt, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\fonts\mystart-font\mystart-font.css, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\fonts\mystart-font\mystart-font.woff2, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\fonts\mystart-font\README.txt, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\fonts\opensans\LICENSE.txt, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\fonts\opensans\OpenSans-Bold.woff2, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\fonts\opensans\OpenSans-BoldItalic.woff2, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\fonts\opensans\OpenSans-Italic.woff2, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\fonts\opensans\OpenSans-Light.woff2, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\fonts\opensans\OpenSans-LightItalic.woff2, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\fonts\opensans\OpenSans-Regular.woff2, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\fonts\opensans\OpenSans-Semibold.woff2, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\fonts\opensans\OpenSans-SemiboldItalic.woff2, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\fonts\opensans\opensans.css, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\icons\128.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\icons\16.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\icons\19.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\icons\32.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\icons\38.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\icons\48.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\icons\64.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\lib\js\ajax.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\lib\js\analytics.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\lib\js\config.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\lib\js\constants.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\lib\js\dom.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\lib\js\event-handler.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\lib\js\google-analytics.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\lib\js\ko-mapper.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\lib\js\loader.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\lib\js\proto.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\lib\js\require-config.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\lib\js\tools.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\lib\ui\ui.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\lib\ui\combobox\combobox.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\lib\vendor\hammer.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\lib\vendor\jquery-private.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\lib\vendor\jquery.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\lib\vendor\knockout.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\lib\vendor\moment.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\lib\vendor\perfect-scrollbar.css, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\lib\vendor\perfect-scrollbar.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\lib\vendor\piwik.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\lib\vendor\require-json.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\lib\vendor\require-text.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\lib\vendor\require.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\lib\vendor\rsvp.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\index.html, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\css\main.css, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img\icons\facebook.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img\icons\favicon-bg-24.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img\icons\fb-twitter.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img\icons\music-on-25.gif, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img\icons\twitter.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img\weather\day-cloud.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img\weather\cloud-1.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img\weather\cloud-2.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img\weather\cloud-fog-1.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img\weather\cloud-fog-2.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img\weather\cloud-hail.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img\weather\cloud-lightning.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img\weather\cloud-showers.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img\weather\cloud-snow.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img\weather\cloud-thunderstorm.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img\weather\day-clear.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img\weather\day-showers.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img\weather\misc-damp.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img\weather\misc-eclipse.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img\weather\misc-fog.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img\weather\misc-star.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img\weather\misc-sunrise.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img\weather\misc-sunset.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img\weather\misc-tornado.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img\weather\night-clear.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img\weather\night-cloud.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img\weather\night-showers.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img\weather\wind-normal.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img\weather\wind-strong.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\img\weather\wind-thunderstorm.png, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\js\carousel.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\js\clock.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\js\index.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\js\logo.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\js\main.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\js\modules.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\js\most-visited.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\js\music-player.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\js\permissions.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\js\recently-closed.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\js\search.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\js\social.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\js\tab-apps.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\js\tab-bookmarks.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\js\tab-live-feeds.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\js\tab-settings.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\js\tabs.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\js\wallpapers.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\newtab\js\weather.js, , [39bae59f02978babbf2d54e08481d52b],
PUP.Optional.MyStartToolbar, C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijepgjdjkdbopbnaopmlmobimmhjklhd\2.4.7.0_0\_metadata\verified_contents.json, , [39bae59f02978babbf2d54e08481d52b],

Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)


(end)

Re: MPC Cleaner v PC, prosim o pomoc

Napsal: 07 bře 2016 22:36
od Rudy
Smažte všechny nálezy.

Re: MPC Cleaner v PC, prosim o pomoc

Napsal: 14 bře 2016 16:57
od Aiwon
Dobry den, omlouvam se ze jsem delsi dobu neodepsal, pritelkyne bydli v jinem meste a nemel jsem cas se k tomu dostat.

kazdopadne vsechny nalezy jsem pomoci softu vymazal. PC uz se chova lepe, bohuzel MPC cleaner se pry v PC nachazi stejne :/. MOC děkuji za pomoc kterou jste mi poskytl bez ohledu na vysledek! :)

Re: MPC Cleaner v PC, prosim o pomoc

Napsal: 14 bře 2016 19:16
od Rudy
Ještě zkuste tyto skeny:

1. Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu

Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
Do okna vlozte skript nize




autoclean;
resethosts;
emptyclsid;
IEdefaults;
FFdefaults;
CHRdefaults;
emptyIEcache;
emptyFFcache;
emptyCHRcache;
emptyalltemp;
emptyflash;
emptyjava;
emptyrecycle.bin;





Nasledne kliknete na Run Script
PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem.

a

2. Junkware removal tool: http://thisisudax.org/downloads/JRT.exe
•Ulozte nejlepe na plochu
•Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
•Probehne vytvoreni zalohy a nasledne prohledavani
•Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte.

Re: MPC Cleaner v PC, prosim o pomoc

Napsal: 14 bře 2016 20:57
od Aiwon
Zoek log:


Zoek.exe v5.0.0.1 Updated 31-December-2015
Tool run by Tereza on po 14. 03. 2016 at 20:41:48,46.
Microsoft Windows 8.1 Pro 6.3.9600 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Tereza\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

14. 3. 2016 20:42:31 Zoek.exe System Restore Point Created Successfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

127.0.0.1 localhost

==== Empty Folders Check ======================

C:\PROGRA~2\Seznam.cz deleted successfully
C:\Users\Tereza\AppData\Roaming\uTorrent deleted successfully
C:\Users\Tereza\AppData\Local\EmieBrowserModeList deleted successfully
C:\Users\Tereza\AppData\Local\EmieSiteList deleted successfully
C:\Users\Tereza\AppData\Local\EmieUserList deleted successfully

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== Deleting Files \ Folders ======================

C:\PROGRA~2\Seznam.cz not found
C:\PROGRA~2\Sada-Microsoft-Office-Compatibility-Pack-pro-formaty-souboru-aplikace-Word-Excel-a-PowerPoint-2007 deleted
C:\Users\Tereza\AppData\Roaming\WB.CFG deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted
C:\Users\Tereza\AppData\LocalLow\{A00FF984-F30D-2CD5-7D57-123FE5375FEE} deleted
C:\Windows\SysNative\config\systemprofile\Searches deleted
C:\windows\SysNative\GroupPolicy\Machine deleted
C:\windows\SysNative\GroupPolicy\User deleted
C:\windows\SysNative\GroupPolicy\GPT.INI deleted
C:\Windows\Syswow64\GroupPolicy\gpt.ini deleted

==== Orphaned Tasks deleted from Registry ======================

AutoKMS deleted

==== Fake Chromium Profiles Check ======================

Fake profile C:\Users\Administrator\AppData\Local\Torch deleted
Fake profile C:\Users\Administrator\AppData\Local\Google\Chrome deleted
Fake profile C:\Users\Administrator\AppData\Local\Google\Chrome SxS deleted
Fake profile C:\Users\Administrator\AppData\Local\Comodo\Dragon deleted
Fake profile C:\Users\Guest\AppData\Local\Torch deleted
Fake profile C:\Users\Guest\AppData\Local\Google\Chrome deleted
Fake profile C:\Users\Guest\AppData\Local\Google\Chrome SxS deleted
Fake profile C:\Users\Guest\AppData\Local\Comodo\Dragon deleted
Fake profile C:\Users\HomeGroupUser$\AppData\Local\Torch deleted
Fake profile C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome deleted
Fake profile C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome SxS deleted
Fake profile C:\Users\HomeGroupUser$\AppData\Local\Comodo\Dragon deleted
Fake profile C:\Users\Tereza\AppData\Local\Google\Chrome SxS deleted
Fake profile C:\Users\Tereza\AppData\Local\Comodo\Dragon deleted

==== Chromium Look ======================

Google Chrome Version: 46.0.2490.86



==== Chromium Fix ======================

C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_adserver.adtech.de_0.localstorage deleted successfully
C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_adserver.adtech.de_0.localstorage-journal deleted successfully
C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_c.betrad.com_0.localstorage deleted successfully
C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_c.betrad.com_0.localstorage-journal deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

==== All HKLM and HKCU SearchScopes ======================

HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
HKCU\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms}
HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTer ... ORM=IESR02
HKCU\SearchScopes\{80717689-F981-44AE-90C3-F032875A4EB1} - http://tv.seznam.cz/hledej?w={searchTer ... arch_13415

==== Reset Google Chrome ======================

C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Web DataX was reset successfully

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\Software\wow6432node\Policies\Google deleted successfully

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Tereza\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\Tereza\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\Tereza\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\Tereza\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully

==== Empty FireFox Cache ======================

No FireFox Profiles found

==== Empty Chrome Cache ======================

C:\Users\Tereza\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

No Flash Cache Found

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=12 folders=5 804271 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Tereza\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\Tereza\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp\MpCmdRun.log" not found

==== EOF on po 14. 03. 2016 at 20:53:32,22 ======================

JRT log:

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.3 (02.09.2016)
Operating System: Windows 8.1 Pro x64
Ran by Tereza (Administrator) on po 14. 03. 2016 at 20:55:45,04
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 1

Successfully deleted: C:\Windows\prefetch\DRIVERDOC.EXE-4817B2A2.pf (File)



Registry: 0





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on po 14. 03. 2016 at 20:56:46,05
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~