Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

notebook out....pomozte mi

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
altrok
Moderátor
Moderátor
Příspěvky: 7317
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: notebook out....pomozte mi

#16 Příspěvek od altrok »

  • Do Poznamkoveho bloku (Start -> spustit -> notepad) zkopirujte obsah bileho pole
  • ulozte na plochu jako fixlist (Typ souboru: Textovy dokument)
  • znovu spustte FRST a kliknete na Fix
  • na plose bude ulozen fixlog, jehoz obsah mi vlozte do pristi odpovedi

    Kód: Vybrat vše

    Start
    C:\ProgramData\TampaMaker
    C:\ProgramData\IncludeFoobar
    C:\ProgramData\IncrementInstance
    C:\ProgramData\BorderlineRunner
    C:\ProgramData\SeekerInstance
    CMD: dir "C:\PROGRA~1"
    CMD: dir "C:\PROGRA~2"
    CMD: dir "C:\PROGRA~3"
    End


:arrow: Ulozte na plochu ESET Online Scanner kliknutim na esetsmartinstaller_csy.exe
  • ulozeny esetsmartinstaller_csy.exe dvojklikem spustte
  • zaskrtnete Ano, souhlasim s podminkami uziti a kliknete na Spustit
  • vyberte moznost Povolit detekci nechtenych aplikaci
  • rozkliknete moznost Rozsirene nastaveni a
    • zruste zatrzitko u volby Odstranit nalezene infiltrace
    • ponechte zatrhnutou moznost Pouzit technologii Anti-Stealth
  • kliknete na Kontrola, cimz se spusti az nekolikahodinovy sken
  • po dokonceni skenu kliknete na Seznam nalezenych infiltraci (v pripade zadneho nalezu log nevytvorite)
  • kliknete na Ulozit do textoveho souboru, log pojmenujte jako ESETlog a ulozte na plochu
  • obsah logu vlozte do pristi odpovedi
  • kliknete na << Zpet a zatrhnete moznost Odinstalovat
  • klikem na Dokoncit ESET Online Scanner zavrete.
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

miratan
Návštěvník
Návštěvník
Příspěvky: 119
Registrován: 12 dub 2013 10:50

Re: notebook out....pomozte mi

#17 Příspěvek od miratan »

posilam fixlist:
Fix result of Farbar Recovery Scan Tool (x86) Version:20-08-2015
Ran by MINO (2015-08-20 13:20:07) Run:3
Running from C:\FRST
Loaded Profiles: MINO (Available Profiles: MINO & fbwuser1024)
Boot Mode: Normal

==============================================

fixlist content:
*****************
Start
C:\ProgramData\TampaMaker
C:\ProgramData\IncludeFoobar
C:\ProgramData\IncrementInstance
C:\ProgramData\BorderlineRunner
C:\ProgramData\SeekerInstance
CMD: dir "C:\PROGRA~1"
CMD: dir "C:\PROGRA~2"
CMD: dir "C:\PROGRA~3"
End
*****************

C:\ProgramData\TampaMaker => moved successfully
C:\ProgramData\IncludeFoobar => moved successfully
C:\ProgramData\IncrementInstance => moved successfully
C:\ProgramData\BorderlineRunner => moved successfully
C:\ProgramData\SeekerInstance => moved successfully

========= dir "C:\PROGRA~1" =========

Svazek v jednotce C je VistaOS.
S�riov� ��slo svazku je 5486-8102.

V�pis adres��e C:\PROGRA~1

20.08.2015 11:36 <DIR> .
20.08.2015 11:36 <DIR> ..
02.03.2013 15:43 <DIR> 7-Zip
17.09.2009 14:47 <DIR> ABC Transdict
01.09.2009 16:01 <DIR> Adobe
30.05.2013 12:55 <DIR> Apple Software Update
23.07.2015 17:13 <DIR> Ashampoo
21.09.2008 05:05 <DIR> ASUS
21.09.2008 04:45 <DIR> Atheros
21.09.2008 04:22 <DIR> ATI
21.09.2008 04:25 <DIR> ATI Technologies
21.09.2008 04:26 <DIR> ATK Hotkey
21.09.2008 05:03 <DIR> ATKGFNEX
21.09.2008 04:27 <DIR> ATKOSD2
14.08.2012 12:53 <DIR> Atomovy mic 2
30.05.2013 12:59 <DIR> Bonjour
10.10.2008 11:27 <DIR> Canon
30.05.2013 17:24 <DIR> CBS Software
27.01.2015 10:06 <DIR> CCleaner
18.08.2015 13:23 <DIR> Common Files
21.05.2014 17:34 <DIR> DAEMON Tools Lite
14.05.2014 05:51 <DIR> Defraggler
20.03.2014 09:41 <DIR> directx
06.03.2015 11:53 <DIR> DivX
09.05.2013 04:58 <DIR> Dreamcatcher
09.04.2013 04:24 <DIR> DsNET Corp
14.02.2011 12:42 <DIR> DVD Shrink
20.07.2012 18:13 <DIR> FreeGamePick.com
14.11.2011 22:24 <DIR> Freemake
07.03.2010 11:45 <DIR> FreeTime
27.01.2015 17:21 <DIR> GameSpy Arcade
19.12.2009 08:44 <DIR> GameTop.com
22.07.2015 16:22 <DIR> Google
24.02.2013 06:26 <DIR> GRETECH
22.04.2013 08:34 <DIR> HD Tune
05.01.2015 07:06 <DIR> HTC
07.05.2014 09:31 <DIR> ImgBurn
20.07.2015 12:38 <DIR> Internet Download Manager
19.08.2015 13:53 <DIR> Internet Explorer
10.04.2015 19:16 <DIR> iPod
21.09.2008 12:29 <DIR> IrfanView
21.09.2008 04:56 <DIR> ITECIR
10.04.2015 19:18 <DIR> iTunes
18.08.2015 16:24 <DIR> Java
18.07.2015 08:04 <DIR> K-Lite Codec Pack
18.09.2009 15:48 <DIR> MediaCoder
09.09.2009 16:32 <DIR> MeMediaSetup
27.01.2015 17:21 <DIR> Mgutil
12.07.2013 08:59 <DIR> Microsoft
02.11.2006 14:37 <DIR> Microsoft Games
04.07.2013 17:28 <DIR> Microsoft Office
12.08.2015 08:04 <DIR> Microsoft Silverlight
12.07.2013 09:06 <DIR> Microsoft SQL Server Compact Edition
01.11.2008 11:36 <DIR> Microsoft Visual Studio
01.11.2008 11:30 <DIR> Microsoft Visual Studio 8
03.07.2013 05:04 <DIR> Microsoft Works
19.07.2010 16:36 <DIR> Microsoft.NET
21.09.2008 04:45 <DIR> Motorola
10.08.2010 22:41 <DIR> Movie Maker
18.08.2015 13:24 <DIR> Mozilla Firefox
23.07.2015 12:52 <DIR> Mozilla Maintenance Service
30.12.2014 11:23 <DIR> Mp3tag
29.07.2015 08:57 <DIR> MPC-HC
01.11.2008 11:37 <DIR> MSBuild
27.01.2015 17:21 <DIR> Need For Speed Hot Pursuit 2
17.03.2010 19:28 <DIR> Nero
19.08.2015 14:15 <DIR> Opera
21.09.2008 05:04 <DIR> P4G
21.09.2008 05:05 <DIR> P4P
14.04.2010 12:46 <DIR> pdf24
17.12.2014 15:27 <DIR> R.G. Mechanics
21.09.2008 04:43 <DIR> Realtek
02.11.2006 14:37 <DIR> Reference Assemblies
26.03.2014 05:50 <DIR> Return To Castle Wolfenstein
10.10.2008 11:16 <DIR> ScanSoft
09.09.2013 09:35 <DIR> Sony
02.05.2012 10:08 <DIR> Sony Media Go Install
03.10.2014 11:23 <DIR> Sony Mobile
05.01.2015 07:06 <DIR> Spirent Communications
02.12.2009 19:44 <DIR> Symantec
21.09.2008 05:01 <DIR> Synaptics
23.03.2010 10:02 <DIR> Ultra Video Joiner
14.03.2010 09:59 <DIR> URUSoft
22.01.2013 11:29 <DIR> Verdict Free
13.02.2014 09:04 <DIR> VideoLAN
23.09.2008 10:50 <DIR> VistaCodecPack
14.10.2014 06:13 <DIR> VS Revo Group
02.03.2013 16:02 <DIR> vso
06.03.2015 10:10 <DIR> Webteh
06.10.2009 20:45 <DIR> Windows Calendar
06.10.2009 20:44 <DIR> Windows Collaboration
06.10.2009 20:44 <DIR> Windows Defender
14.05.2015 08:08 <DIR> Windows Journal
12.07.2013 09:10 <DIR> Windows Live
20.12.2012 12:48 <DIR> Windows Mail
11.06.2015 06:02 <DIR> Windows Media Player
02.11.2006 14:37 <DIR> Windows NT
06.10.2009 20:44 <DIR> Windows Photo Gallery
08.11.2009 04:44 <DIR> Windows Portable Devices
12.07.2012 15:14 <DIR> Windows Sidebar
26.12.2012 16:32 <DIR> WinPcap
20.01.2010 17:58 <DIR> WinRAR
21.09.2008 04:48 <DIR> Wireless Console 2
22.10.2014 10:28 <DIR> Wise
Soubor�: 0, Bajt�: 0
Adres���: 104, Voln�ch bajt�: 71�780�409�344

========= End of CMD: =========


========= dir "C:\PROGRA~2" =========

Svazek v jednotce C je VistaOS.
S�riov� ��slo svazku je 5486-8102.

V�pis adres��e C:\PROGRA~2

20.08.2015 13:20 <DIR> .
20.08.2015 13:20 <DIR> ..
21.11.2014 18:49 <DIR> 188F1432-103A-4ffb-80F1-36B633C5C9E1
02.03.2013 14:55 <DIR> Adobe
20.06.2009 16:09 <DIR> AlawarWrapper
25.01.2014 05:56 <DIR> Apple
10.04.2015 19:16 <DIR> Apple Computer
23.07.2015 13:45 <DIR> ashampoo
22.01.2009 16:56 <DIR> ASUS
27.01.2015 17:21 <DIR> Atheros
21.09.2008 05:07 <DIR> ATI
09.09.2013 09:44 <DIR> Avanquest Bluetooth SDK
10.04.2015 19:18 <DIR> B0FFCDD9-5261-4e59-B29A-17A4FABDEBAB
23.07.2015 12:52 <DIR> boost_interprocess
22.08.2012 08:50 <DIR> CanonIJPLM
22.05.2014 14:41 <DIR> DAEMON Tools Lite
06.03.2015 11:53 <DIR> DivX
24.09.2014 15:07 <DIR> DVD Shrink
14.11.2011 22:25 <DIR> Freemake
08.12.2009 08:24 <DIR> Google
09.08.2013 13:16 <DIR> Google Updater
21.02.2014 14:27 <DIR> GreatSoft
15.09.2013 10:26 <DIR> HTC
20.07.2015 11:38 <DIR> IDM
21.02.2014 14:27 <DIR> InstallMate
10.10.2008 11:17 <DIR> InstallShield
07.10.2009 09:18 <DIR> iolo
02.12.2009 19:46 8�350 LUUnInstall.LiveUpdate
13.04.2014 08:04 <DIR> McAfee
12.08.2015 07:08 <DIR> Microsoft Help
10.04.2010 11:02 108 Microsoft.SqlServer.Compact.351.32.bc
15.09.2013 15:23 <DIR> Motorola
20.01.2013 11:36 <DIR> Mozilla
17.03.2010 19:28 <DIR> Nero
28.02.2013 16:10 <DIR> Norton
14.02.2013 06:04 <DIR> NortonInstaller
18.08.2015 16:24 <DIR> Oracle
18.08.2015 09:48 <DIR> P4G
10.10.2008 11:17 <DIR> ScanSoft
09.09.2013 09:35 <DIR> Sony
03.10.2014 11:23 <DIR> Sony Mobile
25.04.2013 21:57 <DIR> Sun
27.01.2015 17:21 <DIR> Symantec
21.02.2014 14:50 <DIR> TEMP
07.05.2014 11:56 <DIR> TuneUp Software
27.09.2013 05:36 <DIR> VSO
06.07.2010 14:55 <DIR> vsosdk
15.08.2015 09:39 <DIR> vWinManProv
16.02.2013 18:02 <DIR> WindowsSearch
27.10.2012 17:00 <DIR> �pidla Data Processing, s.r.o
Soubor�: 2, Bajt�: 8�458
Adres���: 48, Voln�ch bajt�: 71�780�405�248

========= End of CMD: =========


========= dir "C:\PROGRA~3" =========

Svazek v jednotce C je VistaOS.
S�riov� ��slo svazku je 5486-8102.

V�pis adres��e C:\

Soubor nebyl nalezen.

========= End of CMD: =========


==== End of Fixlog 13:20:08 ====

miratan
Návštěvník
Návštěvník
Příspěvky: 119
Registrován: 12 dub 2013 10:50

Re: notebook out....pomozte mi

#18 Příspěvek od miratan »

Posilam ESETlog
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\Program Files\Common Files\87737dd0-ad90-4193-bd48-336966b8d777\updater.bak.vir varianta infiltrace Win32/BrowseFox.AM potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\Program Files\Common Files\87737dd0-ad90-4193-bd48-336966b8d777\updater.exe.vir varianta infiltrace Win32/BrowseFox.AM potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\Program Files\mozilla firefox\nsprotector.js.vir Win32/Conduit.SearchProtect.A potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\Program Files\Record Page\Uninstaller.exe.vir varianta infiltrace Win32/BrowseFox.BI potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\Program Files\Record Page\Extensions\2335267c-dbba-4dd5-a9d0-c4db8e6a75a4.dll.vir varianta infiltrace Win32/BrowseFox.BA potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugincontainer.bak.vir varianta infiltrace Win32/BrowseFox.AU potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugincontainer.exe.vir varianta infiltrace Win32/BrowseFox.AU potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\10\Plugin.exe.vir varianta infiltrace Win32/BrowseFox.BZ potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\10bak\Plugin.exe.vir varianta infiltrace Win32/BrowseFox.BZ potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\12\Plugin.exe.vir varianta infiltrace Win32/BrowseFox.BZ potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\12\resources\plugin.dll.vir varianta infiltrace Win32/BrowseFox.BI potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\12bak\Plugin.exe.vir varianta infiltrace Win32/BrowseFox.BZ potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\12bak\resources\plugin.dll.vir varianta infiltrace Win32/BrowseFox.BI potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\2\Plugin.exe.vir varianta infiltrace Win32/BrowseFox.BZ potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\2bak\Plugin.exe.vir varianta infiltrace Win32/BrowseFox.BZ potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\3\Plugin.exe.vir varianta infiltrace Win32/BrowseFox.BZ potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\3bak\Plugin.exe.vir varianta infiltrace Win32/BrowseFox.BZ potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\5\Plugin.exe.vir varianta infiltrace Win32/BrowseFox.BZ potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\5bak\Plugin.exe.vir varianta infiltrace Win32/BrowseFox.BZ potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\7\Plugin.exe.vir varianta infiltrace Win32/BrowseFox.BZ potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\7\resources\38.0.5.dll.vir varianta infiltrace Win32/BrowseFox.BI potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\7\resources\39.0.0.dll.vir varianta infiltrace Win32/BrowseFox.BI potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\7\resources\40.0.0.dll.vir varianta infiltrace Win32/BrowseFox.BI potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\7bak\Plugin.exe.vir varianta infiltrace Win32/BrowseFox.BZ potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\7bak\resources\38.0.5.dll.vir varianta infiltrace Win32/BrowseFox.BI potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\7bak\resources\39.0.0.dll.vir varianta infiltrace Win32/BrowseFox.BI potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\7bak\resources\40.0.0.dll.vir varianta infiltrace Win32/BrowseFox.BI potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\8\Plugin.exe.vir varianta infiltrace Win32/BrowseFox.BZ potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\8bak\Plugin.exe.vir varianta infiltrace Win32/BrowseFox.BZ potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\ProgramData\ReactorSubs\ReactorSubs.dll.vir varianta infiltrace Win32/Adware.MultiPlug.NV.gen aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\ProgramData\{dd609a98-4a4c-8eae-dd60-09a984a46a61}\hqghumeaylnlf.exe.vir varianta infiltrace Win32/Adware.SpeedingUpMyPC.AP aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\Users\MINO\AppData\Local\TNT2\2.0.0.1991\Autorun.inf.vir Win32/Toolbar.TNT2.F potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\Users\MINO\AppData\Local\TNT2\2.0.0.1991\GameConsole.exe.vir varianta infiltrace Win32/Toolbar.TNT2.C potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\Users\MINO\AppData\Local\TNT2\2.0.0.1991\IEToolbar.dll.vir varianta infiltrace Win32/Toolbar.TNT2.B potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\Users\MINO\AppData\Local\TNT2\2.0.0.1991\IEToolbar64.dll.vir varianta infiltrace Win32/Toolbar.TNT2.C potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\Users\MINO\AppData\Local\TNT2\2.0.0.1991\npTNT2.dll.vir varianta infiltrace Win32/Toolbar.TNT2.H potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\Users\MINO\AppData\Local\TNT2\2.0.0.1991\passport.dll.vir varianta infiltrace Win32/Toolbar.TNT2.C potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\Users\MINO\AppData\Local\TNT2\2.0.0.1991\passport64.dll.vir varianta infiltrace Win32/Toolbar.TNT2.C potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\Users\MINO\AppData\Local\TNT2\2.0.0.1991\TNT2User.exe.vir varianta infiltrace Win32/Toolbar.TNT2.A potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\Users\MINO\AppData\Local\TNT2\2.0.0.1991\TNT2UserPS64.dll.vir varianta infiltrace Win32/Toolbar.TNT2.C potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\Users\MINO\AppData\Local\TNT2\2.0.0.1991\xpi.tar.vir Win32/Toolbar.TNT2.I potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\Users\MINO\AppData\Local\UpdateAdmin\UpdateAdmin.exe.vir varianta infiltrace Win32/DownloadAdmin.K potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\Users\MINO\AppData\Roaming\Mozilla\Firefox\Profiles\ooakx785.default\Extensions\defsearchp@gmail.com\chrome\content\jquery-2.1.0.min.js.vir Win32/Toolbar.TNT2.I potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\Windows\system32\drivers\iSafeKrnlBoot.sys.vir varianta infiltrace Win32/ELEX.EJ potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\AdwCleaner\Quarantine\C\Windows\system32\drivers\iSafeNetFilter.sys.vir varianta infiltrace Win32/ELEX.CC potenciálně nechtěná aplikace
C:\FRST\Quarantine\C\ProgramData\BorderlineRunner\BorderlineRunner.dll varianta infiltrace Win32/Adware.MultiPlug.NV.gen aplikace
C:\FRST\Quarantine\C\ProgramData\IncludeFoobar\IncludeFoobar.dll varianta infiltrace Win32/Adware.MultiPlug.NV.gen aplikace
C:\FRST\Quarantine\C\ProgramData\IncrementInstance\IncrementInstance.dll varianta infiltrace Win32/Adware.MultiPlug.NV.gen aplikace
C:\FRST\Quarantine\C\ProgramData\SeekerInstance\SeekerInstance.dll varianta infiltrace Win32/Adware.MultiPlug.NV.gen aplikace
C:\FRST\Quarantine\C\ProgramData\TampaMaker\TampaMaker.dll varianta infiltrace Win32/Adware.MultiPlug.NV.gen aplikace
C:\ProgramData\InstallMate\{32D1B6F5-00DC-4FE5-AD0E-48FEE9329403}\Custom.dll Win32/InstalleRex.M potenciálně nechtěná aplikace
C:\ProgramData\vWinManProv\ProtectWindowsManager.exe Win32/ELEX.BH potenciálně nechtěná aplikace
C:\STAHOVANIE\K-Lite_Codec_Pack_1136_Full_dlm.exe varianta infiltrace Win32/DownloadAdmin.N potenciálně nechtěná aplikace
C:\Users\All Users\InstallMate\{32D1B6F5-00DC-4FE5-AD0E-48FEE9329403}\Custom.dll Win32/InstalleRex.M potenciálně nechtěná aplikace
C:\Users\All Users\vWinManProv\ProtectWindowsManager.exe Win32/ELEX.BH potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000000 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000001 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000002 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000003 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000004 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000005 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000006 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000007 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000008 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000009 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000010 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000011 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000012 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000013 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000014 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000015 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000016 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000017 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000018 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000019 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000020 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000021 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000022 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000023 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000024 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000025 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000026 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000027 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000028 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000029 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000030 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000031 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000032 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000033 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000034 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000035 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000036 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000037 Win32/Somoto potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000000 Win32/Somoto.G potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000001 Win32/Somoto.G potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000002 Win32/Somoto.G potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000003 Win32/Somoto.G potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000004 Win32/Somoto.G potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000005 Win32/Somoto.G potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000006 Win32/Somoto.G potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000007 Win32/Somoto.G potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000008 Win32/Somoto.G potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000009 Win32/Somoto.G potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000010 Win32/Somoto.G potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000011 Win32/Somoto.G potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000012 Win32/Somoto.G potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000013 Win32/Somoto.G potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000014 Win32/Somoto.G potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000015 Win32/Somoto.G potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000016 Win32/Somoto.G potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000017 Win32/Somoto.G potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000018 Win32/Somoto.G potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000019 Win32/Somoto.G potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000020 Win32/Somoto.G potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000021 Win32/Somoto.G potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000022 Win32/Somoto.G potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000023 Win32/Somoto.G potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000024 Win32/Somoto.G potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000025 Win32/Somoto.G potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000026 Win32/Somoto.G potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000027 Win32/Somoto.G potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000028 Win32/Somoto.G potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\00000029 Win32/Somoto.G potenciálně nechtěná aplikace
C:\Users\MINO\AppData\LocalLow\uTorrentControl_v6\hk64tbuTor.dll Win64/Toolbar.Conduit.B potenciálně nechtěná aplikace
C:\Users\MINO\AppData\LocalLow\uTorrentControl_v6\hktbuTor.dll Win32/Toolbar.Conduit.X potenciálně nechtěná aplikace
C:\Users\MINO\AppData\LocalLow\uTorrentControl_v6\ldrtbuTor.dll varianta infiltrace Win32/Toolbar.Conduit.P potenciálně nechtěná aplikace
C:\Users\MINO\AppData\LocalLow\uTorrentControl_v6\tbuTor.dll varianta infiltrace Win32/Toolbar.Conduit.X potenciálně nechtěná aplikace
C:\Users\MINO\AppData\Roaming\Mozilla\Firefox\Profiles\user.js JS/SecurityDisabler.B potenciálně nechtěná aplikace
C:\Users\MINO\Downloads\setup (1).exe Win32/Systweak.K potenciálně nechtěná aplikace
C:\Users\MINO\Downloads\setup.exe Win32/Systweak.K potenciálně nechtěná aplikace
C:\Users\MINO\Downloads\yet_another_cleaner_afd (1).exe varianta infiltrace Win32/ELEX.CC potenciálně nechtěná aplikace
C:\Users\MINO\Downloads\yet_another_cleaner_afd.exe varianta infiltrace Win32/ELEX.CC potenciálně nechtěná aplikace
H:\PROGRAMY\TorchSetup-r0-n-bc.exe varianta infiltrace Win32/TorchMedia potenciálně nechtěná aplikace
H:\PROGRAMY\YTD PRO-YouTube Downloader Pro 4.8.6\SetupYTD.exe Win32/Toolbar.Widgi potenciálně nechtěná aplikace
H:\PROGRAMY\Zrychlení Počítače 3.2.2.0 22401\nová verze_zrychlenipocitace_809e1d6e373a4ee6b6fb9c0d52e68440_13.11.2012.exe varianta infiltrace Win32/Speedchecker.B potenciálně nechtěná aplikace
H:\WINDOWS\system32\drivers\{01531192-f7ef-415f-a549-cfdb11836731}t.sys varianta infiltrace Win64/BrowseFox.AE potenciálně nechtěná aplikace

altrok
Moderátor
Moderátor
Příspěvky: 7317
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: notebook out....pomozte mi

#19 Příspěvek od altrok »

  • Do Poznamkoveho bloku (Start -> spustit -> notepad) zkopirujte obsah bileho pole
  • ulozte na plochu jako fixlist (Typ souboru: Textovy dokument)
  • znovu spustte FRST a kliknete na Fix
  • po restartu bude na plose ulozen fixlog, jehoz obsah mi vlozte do pristi odpovedi

    Kód: Vybrat vše

    Start
    CloseProcesses:
    CreateRestorePoint:
    File: C:\ProgramData\InstallMate\{32D1B6F5-00DC-4FE5-AD0E-48FEE9329403}\Custom.dll
    File: C:\Users\All Users\InstallMate\{32D1B6F5-00DC-4FE5-AD0E-48FEE9329403}\Custom.dll
    C:\ProgramData\InstallMate\{32D1B6F5-00DC-4FE5-AD0E-48FEE9329403}\Custom.dll
    C:\ProgramData\vWinManProv\ProtectWindowsManager.exe
    C:\STAHOVANIE\K-Lite_Codec_Pack_1136_Full_dlm.exe
    C:\Users\All Users\InstallMate\{32D1B6F5-00DC-4FE5-AD0E-48FEE9329403}\Custom.dll
    C:\Users\All Users\vWinManProv\ProtectWindowsManager.exe
    CMD: del C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\0000*
    CMD: del C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\0000*
    C:\Users\MINO\AppData\LocalLow\uTorrentControl_v6
    C:\Users\MINO\Downloads\setup (1).exe
    C:\Users\MINO\Downloads\setup.exe
    C:\Users\MINO\Downloads\yet_another_cleaner_afd (1).exe
    C:\Users\MINO\Downloads\yet_another_cleaner_afd.exe
    H:\PROGRAMY\TorchSetup-r0-n-bc.exe
    H:\PROGRAMY\YTD PRO-YouTube Downloader Pro 4.8.6\SetupYTD.exe
    H:\PROGRAMY\Zrychlení Počítače 3.2.2.0 22401\nová verze_zrychlenipocitace_809e1d6e373a4ee6b6fb9c0d52e68440_13.11.2012.exe
    File: H:\WINDOWS\system32\drivers\{01531192-f7ef-415f-a549-cfdb11836731}t.sys
    H:\WINDOWS\system32\drivers\{01531192-f7ef-415f-a549-cfdb11836731}t.sys
    End
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

miratan
Návštěvník
Návštěvník
Příspěvky: 119
Registrován: 12 dub 2013 10:50

Re: notebook out....pomozte mi

#20 Příspěvek od miratan »

posilam Fixlog
Fix result of Farbar Recovery Scan Tool (x86) Version:20-08-2015
Ran by MINO (2015-08-20 16:43:20) Run:4
Running from C:\FRST
Loaded Profiles: MINO (Available Profiles: MINO & fbwuser1024)
Boot Mode: Normal

==============================================

fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:
File: C:\ProgramData\InstallMate\{32D1B6F5-00DC-4FE5-AD0E-48FEE9329403}\Custom.dll
File: C:\Users\All Users\InstallMate\{32D1B6F5-00DC-4FE5-AD0E-48FEE9329403}\Custom.dll
C:\ProgramData\InstallMate\{32D1B6F5-00DC-4FE5-AD0E-48FEE9329403}\Custom.dll
C:\ProgramData\vWinManProv\ProtectWindowsManager.exe
C:\STAHOVANIE\K-Lite_Codec_Pack_1136_Full_dlm.exe
C:\Users\All Users\InstallMate\{32D1B6F5-00DC-4FE5-AD0E-48FEE9329403}\Custom.dll
C:\Users\All Users\vWinManProv\ProtectWindowsManager.exe
CMD: del C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\0000*
CMD: del C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\0000*
C:\Users\MINO\AppData\LocalLow\uTorrentControl_v6
C:\Users\MINO\Downloads\setup (1).exe
C:\Users\MINO\Downloads\setup.exe
C:\Users\MINO\Downloads\yet_another_cleaner_afd (1).exe
C:\Users\MINO\Downloads\yet_another_cleaner_afd.exe
H:\PROGRAMY\TorchSetup-r0-n-bc.exe
H:\PROGRAMY\YTD PRO-YouTube Downloader Pro 4.8.6\SetupYTD.exe
H:\PROGRAMY\Zrychlení Počítače 3.2.2.0 22401\nová verze_zrychlenipocitace_809e1d6e373a4ee6b6fb9c0d52e68440_13.11.2012.exe
File: H:\WINDOWS\system32\drivers\{01531192-f7ef-415f-a549-cfdb11836731}t.sys
H:\WINDOWS\system32\drivers\{01531192-f7ef-415f-a549-cfdb11836731}t.sys
End
*****************

Processes closed successfully.
Restore point was successfully created.

========================= File: C:\ProgramData\InstallMate\{32D1B6F5-00DC-4FE5-AD0E-48FEE9329403}\Custom.dll ========================

File not signed
MD5: 736682C6D96BB1EDC84E77041FAAE33D
Creation and modification date: 2014-02-21 14:27 - 2013-12-19 20:35
Size: 0093696
Attributes: --RAS
Company Name: GreatSoft
Internal Name: TixDll.dll
Original Name: TixDll.dll
Product Name: Appit
Description: Custom DLL for Appit
File Version: 2014.2.
Product Version: 1.0.0.2
Copyright: Copyright © 2014 G

====== End of File: ======


========================= File: C:\Users\All Users\InstallMate\{32D1B6F5-00DC-4FE5-AD0E-48FEE9329403}\Custom.dll ========================

File not signed
MD5: 736682C6D96BB1EDC84E77041FAAE33D
Creation and modification date: 2014-02-21 14:27 - 2013-12-19 20:35
Size: 0093696
Attributes: --RAS
Company Name: GreatSoft
Internal Name: TixDll.dll
Original Name: TixDll.dll
Product Name: Appit
Description: Custom DLL for Appit
File Version: 2014.2.
Product Version: 1.0.0.2
Copyright: Copyright © 2014 G

====== End of File: ======

C:\ProgramData\InstallMate\{32D1B6F5-00DC-4FE5-AD0E-48FEE9329403}\Custom.dll => moved successfully
C:\ProgramData\vWinManProv\ProtectWindowsManager.exe => moved successfully
C:\STAHOVANIE\K-Lite_Codec_Pack_1136_Full_dlm.exe => moved successfully
"C:\Users\All Users\InstallMate\{32D1B6F5-00DC-4FE5-AD0E-48FEE9329403}\Custom.dll" => File/Folder not found.
"C:\Users\All Users\vWinManProv\ProtectWindowsManager.exe" => File/Folder not found.

========= del C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\0000* =========

Syst�m nem��e nal�zt uvedenou cestu.

========= End of CMD: =========


========= del C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\0000* =========

Syst�m nem��e nal�zt uvedenou cestu.

========= End of CMD: =========

C:\Users\MINO\AppData\LocalLow\uTorrentControl_v6 => moved successfully
C:\Users\MINO\Downloads\setup (1).exe => moved successfully
C:\Users\MINO\Downloads\setup.exe => moved successfully
C:\Users\MINO\Downloads\yet_another_cleaner_afd (1).exe => moved successfully
C:\Users\MINO\Downloads\yet_another_cleaner_afd.exe => moved successfully
H:\PROGRAMY\TorchSetup-r0-n-bc.exe => moved successfully
H:\PROGRAMY\YTD PRO-YouTube Downloader Pro 4.8.6\SetupYTD.exe => moved successfully
H:\PROGRAMY\Zrychlení Počítače 3.2.2.0 22401\nová verze_zrychlenipocitace_809e1d6e373a4ee6b6fb9c0d52e68440_13.11.2012.exe => moved successfully

========================= File: H:\WINDOWS\system32\drivers\{01531192-f7ef-415f-a549-cfdb11836731}t.sys ========================

"H:\WINDOWS\system32\drivers\{01531192-f7ef-415f-a549-cfdb11836731}t.sys" not found.
====== End of File: ======

"H:\WINDOWS\system32\drivers\{01531192-f7ef-415f-a549-cfdb11836731}t.sys" => File/Folder not found.


The system needed a reboot.

==== End of Fixlog 16:44:20 ====
Fix result of Farbar Recovery Scan Tool (x86) Version:20-08-2015
Ran by MINO (2015-08-20 16:43:20) Run:4
Running from C:\FRST
Loaded Profiles: MINO (Available Profiles: MINO & fbwuser1024)
Boot Mode: Normal

==============================================

fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:
File: C:\ProgramData\InstallMate\{32D1B6F5-00DC-4FE5-AD0E-48FEE9329403}\Custom.dll
File: C:\Users\All Users\InstallMate\{32D1B6F5-00DC-4FE5-AD0E-48FEE9329403}\Custom.dll
C:\ProgramData\InstallMate\{32D1B6F5-00DC-4FE5-AD0E-48FEE9329403}\Custom.dll
C:\ProgramData\vWinManProv\ProtectWindowsManager.exe
C:\STAHOVANIE\K-Lite_Codec_Pack_1136_Full_dlm.exe
C:\Users\All Users\InstallMate\{32D1B6F5-00DC-4FE5-AD0E-48FEE9329403}\Custom.dll
C:\Users\All Users\vWinManProv\ProtectWindowsManager.exe
CMD: del C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\0000*
CMD: del C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\0000*
C:\Users\MINO\AppData\LocalLow\uTorrentControl_v6
C:\Users\MINO\Downloads\setup (1).exe
C:\Users\MINO\Downloads\setup.exe
C:\Users\MINO\Downloads\yet_another_cleaner_afd (1).exe
C:\Users\MINO\Downloads\yet_another_cleaner_afd.exe
H:\PROGRAMY\TorchSetup-r0-n-bc.exe
H:\PROGRAMY\YTD PRO-YouTube Downloader Pro 4.8.6\SetupYTD.exe
H:\PROGRAMY\Zrychlení Počítače 3.2.2.0 22401\nová verze_zrychlenipocitace_809e1d6e373a4ee6b6fb9c0d52e68440_13.11.2012.exe
File: H:\WINDOWS\system32\drivers\{01531192-f7ef-415f-a549-cfdb11836731}t.sys
H:\WINDOWS\system32\drivers\{01531192-f7ef-415f-a549-cfdb11836731}t.sys
End
*****************

Processes closed successfully.
Restore point was successfully created.

========================= File: C:\ProgramData\InstallMate\{32D1B6F5-00DC-4FE5-AD0E-48FEE9329403}\Custom.dll ========================

File not signed
MD5: 736682C6D96BB1EDC84E77041FAAE33D
Creation and modification date: 2014-02-21 14:27 - 2013-12-19 20:35
Size: 0093696
Attributes: --RAS
Company Name: GreatSoft
Internal Name: TixDll.dll
Original Name: TixDll.dll
Product Name: Appit
Description: Custom DLL for Appit
File Version: 2014.2.
Product Version: 1.0.0.2
Copyright: Copyright © 2014 G

====== End of File: ======


========================= File: C:\Users\All Users\InstallMate\{32D1B6F5-00DC-4FE5-AD0E-48FEE9329403}\Custom.dll ========================

File not signed
MD5: 736682C6D96BB1EDC84E77041FAAE33D
Creation and modification date: 2014-02-21 14:27 - 2013-12-19 20:35
Size: 0093696
Attributes: --RAS
Company Name: GreatSoft
Internal Name: TixDll.dll
Original Name: TixDll.dll
Product Name: Appit
Description: Custom DLL for Appit
File Version: 2014.2.
Product Version: 1.0.0.2
Copyright: Copyright © 2014 G

====== End of File: ======

C:\ProgramData\InstallMate\{32D1B6F5-00DC-4FE5-AD0E-48FEE9329403}\Custom.dll => moved successfully
C:\ProgramData\vWinManProv\ProtectWindowsManager.exe => moved successfully
C:\STAHOVANIE\K-Lite_Codec_Pack_1136_Full_dlm.exe => moved successfully
"C:\Users\All Users\InstallMate\{32D1B6F5-00DC-4FE5-AD0E-48FEE9329403}\Custom.dll" => File/Folder not found.
"C:\Users\All Users\vWinManProv\ProtectWindowsManager.exe" => File/Folder not found.

========= del C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\0000* =========

Syst�m nem��e nal�zt uvedenou cestu.

========= End of CMD: =========


========= del C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\File System\001\t\00\0000* =========

Syst�m nem��e nal�zt uvedenou cestu.

========= End of CMD: =========

C:\Users\MINO\AppData\LocalLow\uTorrentControl_v6 => moved successfully
C:\Users\MINO\Downloads\setup (1).exe => moved successfully
C:\Users\MINO\Downloads\setup.exe => moved successfully
C:\Users\MINO\Downloads\yet_another_cleaner_afd (1).exe => moved successfully
C:\Users\MINO\Downloads\yet_another_cleaner_afd.exe => moved successfully
H:\PROGRAMY\TorchSetup-r0-n-bc.exe => moved successfully
H:\PROGRAMY\YTD PRO-YouTube Downloader Pro 4.8.6\SetupYTD.exe => moved successfully
H:\PROGRAMY\Zrychlení Počítače 3.2.2.0 22401\nová verze_zrychlenipocitace_809e1d6e373a4ee6b6fb9c0d52e68440_13.11.2012.exe => moved successfully

========================= File: H:\WINDOWS\system32\drivers\{01531192-f7ef-415f-a549-cfdb11836731}t.sys ========================

"H:\WINDOWS\system32\drivers\{01531192-f7ef-415f-a549-cfdb11836731}t.sys" not found.
====== End of File: ======

"H:\WINDOWS\system32\drivers\{01531192-f7ef-415f-a549-cfdb11836731}t.sys" => File/Folder not found.


The system needed a reboot.

==== End of Fixlog 16:44:20 ====

altrok
Moderátor
Moderátor
Příspěvky: 7317
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: notebook out....pomozte mi

#21 Příspěvek od altrok »

Zlepsil se stav PC?
Vyberte a nainstalujte nejaky antivir. Ja z free alternativ doporucuju avast!, ale pokud s nim mate spatne zkusenosti, vyberte si na zaklade srovnavacich testu dle vlastniho uvazeni http://forum.viry.cz/viewtopic.php?p=1377913#p1377913
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

miratan
Návštěvník
Návštěvník
Příspěvky: 119
Registrován: 12 dub 2013 10:50

Re: notebook out....pomozte mi

#22 Příspěvek od miratan »

zdravim :D
Tak notebook se trosicku zlepsil...dekuji za pomoc,ale otravuji me vyskakujici reklamy a okna i kdyz je AdBlock 8..konkretne na teto strance zablokuje,ale stale mi dole otravuji 3 ks,ktere se nezobrazi,jsou to jen cerna okna....je to otravne...nevim co stim,predtim to nedelalo :roll: :roll: :roll: :roll: No a kdyz kliknu na vasi strance na dalsi povel,nebo jak bych to nazval,tak mi samovolne naskoci dalsi novy list s nejakou blbou reklamou...to je hruza!!!! :shock: :shock: :shock: :shock:
Mimo jine sem se zminoval o sekajicim se Youtube,proste HD 720 je o nicem,jak zvuk tak i obraz,kouknete se mi na kodeky,jestli jsou odpovidajici,pripadne doporucit,protoze mam nainstalovane Vista kodek i K lite kodeky,zase----predtim mi to nedelalo,v pohode jsem si stahnul z Youtube co jsem potreboval a ted ani h.... :worship: :worship: :worship: :worship: :worship: :worship: Je to des!!!!
a podivejte se mi na Adobe Flash player.Jednoduse kdyz si chci prehrat video ve vyssim rozliseni napr.1280x720 a to nejen z Youtube...jsen OUT :cry: :cry: :cry: :cry: :cry: :cry: :cry: :cry: :cry: :cry: :cry:

altrok
Moderátor
Moderátor
Příspěvky: 7317
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: notebook out....pomozte mi

#23 Příspěvek od altrok »

Dejte novy log z FRST.
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

miratan
Návštěvník
Návštěvník
Příspěvky: 119
Registrován: 12 dub 2013 10:50

Re: notebook out....pomozte mi

#24 Příspěvek od miratan »

posilam FRSlog:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:20-08-2015
Ran by MINO (administrator) on MINO-PC (21-08-2015 08:23:32)
Running from C:\FRST
Loaded Profiles: MINO (Available Profiles: MINO & fbwuser1024)
Platform: Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) Language: Čeština (Česká republika)
Internet Explorer Version 9 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(ATI Technologies Inc.) C:\Windows\System32\Ati2evxx.exe
(Microsoft Corporation) C:\Windows\System32\SLsvc.exe
(ATI Technologies Inc.) C:\Windows\System32\Ati2evxx.exe
() C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe
() C:\Program Files\ATK Hotkey\ASLDRSrv.exe
() C:\Program Files\ATKGFNEX\GFNEXSrv.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Symantec Corporation) C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Freemake) C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
(Nero AG) C:\Program Files\HTC\HTC Sync Manager\HSMServiceEntry.exe
(Symantec Corporation) C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
() C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
(Syntek America Inc.) C:\Windows\System32\StkCSrv.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
() C:\Program Files\HTC\HTC Sync Manager\HTC Sync\adb.exe
(ATK0100) C:\Program Files\ATK Hotkey\HControl.exe
() C:\Program Files\ATKOSD2\ATKOSD2.exe
() C:\Program Files\Wireless Console 2\wcourier.exe
(ATK) C:\Program Files\P4G\BatteryLife.exe
(ATK) C:\Program Files\ASUS\Splendid\ACMON.exe
(ASUSTeK) C:\Windows\System32\ACEngSvr.exe
() C:\Program Files\ATK Hotkey\ATKOSD.exe
() C:\Program Files\ATK Hotkey\KBFiltr.exe
(Synaptics, Inc.) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
() C:\Windows\ASScrPro.exe
(ASUSTeK Computer INC.) C:\Program Files\ASUS\ATK Media\DMedia.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Opera Software) C:\Program Files\Opera\31.0.1889.174\opera.exe
(Opera Software) C:\Program Files\Opera\31.0.1889.174\opera_crashreporter.exe
(Opera Software) C:\Program Files\Opera\31.0.1889.174\opera.exe
(Opera Software) C:\Program Files\Opera\31.0.1889.174\opera.exe
(Opera Software) C:\Program Files\Opera\31.0.1889.174\opera.exe
(Opera Software) C:\Program Files\Opera\31.0.1889.174\opera.exe
(Opera Software) C:\Program Files\Opera\31.0.1889.174\opera.exe
(Opera Software) C:\Program Files\Opera\31.0.1889.174\opera.exe
(Opera Software) C:\Program Files\Opera\31.0.1889.174\opera.exe
(Opera Software) C:\Program Files\Opera\31.0.1889.174\opera.exe
(Opera Software) C:\Program Files\Opera\31.0.1889.174\opera.exe
(Opera Software) C:\Program Files\Opera\31.0.1889.174\opera.exe
(Opera Software) C:\Program Files\Opera\31.0.1889.174\opera.exe
(Opera Software) C:\Program Files\Opera\31.0.1889.174\opera.exe
(Opera Software) C:\Program Files\Opera\31.0.1889.174\opera.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [JMB36X IDE Setup] => C:\Windows\JM\JMInsIDE.exe [36864 2006-10-30] ()
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [857648 2007-03-01] (Synaptics, Inc.)
HKLM\...\Run: [ASUS Screen Saver Protector] => C:\Windows\ASScrPro.exe [33136 2008-09-21] ()
HKLM\...\Run: [ATKMEDIA] => C:\Program Files\ASUS\ATK Media\DMEDIA.EXE [61440 2006-11-02] (ASUSTeK Computer INC.)
HKLM\...\Run: [ASUS Camera ScreenSaver] => C:\Windows\ASScrProlog.exe [37232 2008-09-21] ()
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [334896 2015-06-08] (Oracle Corporation)
HKU\S-1-5-21-1876766861-4099627362-3959107545-1000\...\Run: [ehTray.exe] => C:\Windows\ehome\ehTray.exe [125952 2008-01-19] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync32.dll [2015-07-29] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync32.dll [2015-07-29] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync32.dll [2015-07-29] (Google)
ShellIconOverlayIdentifiers: [ADSMOverlayIcon] -> {A825576B-0042-4F0F-8FB0-93CE0F054E69} => C:\Program Files\ASUS\ASUS Data Security Manager\OverlayIconShlExt.dll [2007-06-15] ()
ShellIconOverlayIdentifiers: [ADSMOverlayIcon1] -> {A8D448F4-0431-45AC-9F5E-E1B434AB2249} => C:\Program Files\ASUS\ASUS Data Security Manager\OverlayIconShlExt1.dll [2007-06-02] ()
ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => No File
ShellIconOverlayIdentifiers: [IDM Shell Extension] -> {CDC95B92-E27C-4745-A8C5-64A52A78855D} => No File

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-1876766861-4099627362-3959107545-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
BHO: Podpora odkazu pro Adobe PDF Reader -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22] (Adobe Systems Incorporated)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_51\bin\ssv.dll [2015-08-18] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-08-18] (Oracle Corporation)
DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll [2009-02-26] (Microsoft Corporation)
Winsock: Catalog5 02 C:\Windows\system32\napinsp.dll [50176 2009-07-08] (Společnost Microsoft)
Winsock: Catalog5 08 C:\Program Files\Bonjour\mdnsNSP.dll [121704 2011-08-30] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{ACC154C7-2965-4120-B790-4492EA4DDE0D}: [DhcpNameServer] 192.168.0.1

FireFox:
========
FF ProfilePath: C:\Users\MINO\AppData\Roaming\Mozilla\Firefox\Profiles\ooakx785.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_18_0_0_232.dll [2015-08-12] ()
FF Plugin: @Apple.com/iTunes,version=1.0 -> C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] ()
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll [2014-05-22] (DivX, LLC.)
FF Plugin: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-08-18] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-08-18] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-16] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-16] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.1.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin HKU\S-1-5-21-1876766861-4099627362-3959107545-1000: @tools.google.com/Google Update;version=3 -> C:\Users\MINO\AppData\Local\Google\Update\1.3.28.1\npGoogleUpdate3.dll No File
FF Plugin HKU\S-1-5-21-1876766861-4099627362-3959107545-1000: @tools.google.com/Google Update;version=9 -> C:\Users\MINO\AppData\Local\Google\Update\1.3.28.1\npGoogleUpdate3.dll No File
FF Extension: No Name - C:\Users\MINO\AppData\Roaming\Mozilla\Firefox\profiles\extensions\extensions [2013-01-31]
FF Extension: No Name - C:\Users\MINO\AppData\Roaming\Mozilla\Firefox\profiles\extensions\searchplugins [2013-11-22]
FF Extension: FTdownloader - C:\Users\MINO\AppData\Roaming\Mozilla\Firefox\profiles\extensions\ftdownloader@ftdownloader.com.xpi [2012-11-29]
FF Extension: Speed Dial [FVD] - New Tab Page, Sync... - C:\Users\MINO\AppData\Roaming\Mozilla\Firefox\Profiles\ooakx785.default\Extensions\pavel.sherbakov@gmail.com [2015-07-22]
FF Extension: TankTurners - C:\Users\MINO\AppData\Roaming\Mozilla\Firefox\Profiles\ooakx785.default\Extensions\tzeiqoszufi_@arfsecpfifdfw_k.net [2015-08-15]
FF Extension: WOT - C:\Users\MINO\AppData\Roaming\Mozilla\Firefox\Profiles\ooakx785.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2015-07-22]
FF Extension: YouTube™ Anywhere Player - C:\Users\MINO\AppData\Roaming\Mozilla\Firefox\Profiles\ooakx785.default\Extensions\{c9d31470-81c6-4e3e-9a37-46eb9237ed3a} [2015-07-21]
FF Extension: No Name - C:\Users\MINO\AppData\Roaming\Mozilla\Firefox\Profiles\ooakx785.default\Extensions\{5338b981-17bb-4eb1-a9c2-e552c52b86c3}.xpi [2015-08-15]
FF Extension: ImTranslator - C:\Users\MINO\AppData\Roaming\Mozilla\Firefox\Profiles\ooakx785.default\Extensions\{9AA46F4F-4DC7-4c06-97AF-5035170634FE}.xpi [2014-01-24]
FF Extension: Adblock Plus - C:\Users\MINO\AppData\Roaming\Mozilla\Firefox\Profiles\ooakx785.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-08-03]
FF HKU\S-1-5-21-1876766861-4099627362-3959107545-1000\...\Firefox\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\MINO\AppData\Roaming\IDM\idmmzcc5
FF Extension: IDM CC - C:\Users\MINO\AppData\Roaming\IDM\idmmzcc5 [2015-07-20]
FF HKU\S-1-5-21-1876766861-4099627362-3959107545-1000\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\MINO\AppData\Roaming\IDM\idmmzcc5
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\itms.js [2014-05-17]

Chrome:
=======
CHR Profile: C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Magic Actions for YouTube™) - C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\Extensions\abjcfabbhafbcdfjoecdgepllmpfceif [2015-07-21]
CHR Extension: (HD for YouTube™) - C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\Extensions\akjbfncbadcmnkopckegnmjgihagponf [2015-07-21]
CHR Extension: (Record Page) - C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\Extensions\bonbgacfkdakmlgpnkfmgiiggckmdhdd [2015-08-15]
CHR Extension: (Tampermonkey) - C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2015-07-21]
CHR Extension: (Digital Clock) - C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\Extensions\gdkjifoifglkpcdffkenpinlbjgephlo [2013-09-20]
CHR Extension: (Avast Online Security) - C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2013-09-20]
CHR Extension: (Speed Dial [FVD] - New Tab Page, 3D, Sync...) - C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\Extensions\llaficoajjainaijghjlofdfmbjpebpa [2015-07-21]
CHR Extension: (Clock) - C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjocghlclkpgheifflemilcnblodjohg [2015-07-21]
CHR Extension: (Google Wallet) - C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-28]
CHR Extension: (ImTranslator: Translator, Dictionary, TTS) - C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\Extensions\noaijdpnepcgjemiklgfkcfbkokogabh [2015-07-21]

Opera:
=======
OPR Extension: (adblockforopera) - C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\aobdicepooefnbaeokijohmhjlleamfj [2013-12-09]
OPR Extension: (Record Page) - C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\bonbgacfkdakmlgpnkfmgiiggckmdhdd [2015-08-15]
OPR Extension: (Please enter your password) - C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\ccbdoklfbpcifppcfahmmpmbkfdjjccm [2013-12-09]
OPR Extension: (sailormax) - C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\cnbpedcoekjafichoehopgaaldogogch [2013-12-09]
OPR Extension: (weboftrust) - C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\eeokceolphhfjdfcibaiiopmekmcbedp [2013-12-04]
OPR Extension: (LML) - C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\hjjhcalkcaeagibemeeakbmmmaneedoh [2013-12-18]
OPR Extension: (LastPass) - C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\hnjalnkldgigidggphhmacmimbdlafdo [2013-12-18]
OPR Extension: (Speeddial for Vevo.com) - C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\ibifcadphjdjdbkdgigdpnhfekekfgdo [2015-05-02]
OPR Extension: (Translate) - C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\ibnombjmjocaccigcefonnipcnlaeaed [2013-12-07]
OPR Extension: (mubaidr) - C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\lklibmbcgphmjobehnffhmioggnljmcl [2013-12-10]
OPR Extension: (Gantt) - C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\maeombkgfpjdnjkhohbjachnnmpbipol [2013-12-04]
OPR Extension: (Magic Actions for YouTube™) - C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\nlffnljnicbkfhnlomjhjlebndachaka [2013-12-09]
OPR Extension: (SaveFrom.net helper) - C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\npdpplbicnmpoigidfdjadamgfkilaak [2013-12-09]
OPR Extension: (Best Video Downloader 2) - C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\oaljndinbnpjfmcgphpnbpgodonlkfgo [2013-12-19]
OPR Extension: (tomillie) - C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\pcoocjajmgkjbnchononlgeaojaafcml [2013-12-26]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 ADSMService; C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe [73728 2007-05-18] () [File not signed]
R2 ASLDRService; C:\Program Files\ATK Hotkey\ASLDRSrv.exe [94208 2007-02-06] () [File not signed]
R2 ATKGFNEXSrv; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [94208 2007-06-11] () [File not signed]
R2 Automatic LiveUpdate Scheduler; C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe [554352 2007-09-12] (Symantec Corporation)
R2 FreemakeUtilsService; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [74240 2011-10-06] (Freemake) [File not signed]
R2 HTCMonitorService; C:\Program Files\HTC\HTC Sync Manager\HSMServiceEntry.exe [87368 2014-04-02] (Nero AG)
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [File not signed]
S3 IJPLMSVC; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [101528 2007-04-13] () [File not signed]
S3 LiveUpdate; C:\Program Files\Symantec\LiveUpdate\LuComServer_3_2.EXE [2999664 2007-09-12] (Symantec Corporation)
R2 LiveUpdate Notice Service; C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe [583048 2008-01-29] (Symantec Corporation)
R2 PassThru Service; C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe [167424 2012-12-07] () [File not signed]
S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155824 2013-02-04] (Avanquest Software)
R2 StkSSrv; C:\Windows\System32\StkCSrv.exe [24576 2007-02-07] (Syntek America Inc.)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [272952 2008-01-19] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R5 ACPI; C:\Windows\System32\drivers\acpi.sys [265688 2009-04-11] (Microsoft Corporation)
R5 AsDsm; C:\Windows\system32\Drivers\AsDsm.sys [29752 2007-07-24] (Windows (R) Codename Longhorn DDK provider)
R2 ASMMAP; C:\Program Files\ATKGFNEX\ASMMAP.sys [13880 2007-07-24] ()
R5 atapi; C:\Windows\System32\drivers\atapi.sys [19944 2009-04-11] (Microsoft Corporation)
R3 BthAvrcp; C:\Windows\System32\DRIVERS\BthAvrcp.sys [28048 2010-02-05] (CSR, plc)
R5 CLFS; C:\Windows\System32\CLFS.sys [244152 2015-03-05] (Microsoft Corporation)
R5 Compbatt; C:\Windows\System32\DRIVERS\compbatt.sys [20792 2008-01-19] (Microsoft Corporation)
R5 crcdisk; C:\Windows\System32\drivers\crcdisk.sys [22632 2006-11-02] (Microsoft Corporation)
R5 disk; C:\Windows\System32\drivers\disk.sys [53736 2009-04-11] (Microsoft Corporation)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [243128 2014-05-21] (Disc Soft Ltd)
S3 eapihdrv; C:\Users\MINO\AppData\Local\Temp\ehdrv.sys [135760 2015-08-20] (ESET)
R5 Ecache; C:\Windows\System32\drivers\ecache.sys [140224 2015-07-21] (Microsoft Corporation)
R5 FileInfo; C:\Windows\System32\drivers\fileinfo.sys [58936 2008-01-19] (Microsoft Corporation)
R5 FltMgr; C:\Windows\System32\drivers\fltmgr.sys [190424 2009-04-11] (Společnost Microsoft)
R3 irsir; C:\Windows\System32\DRIVERS\irsir.sys [20992 2008-01-19] (Microsoft Corporation)
R3 itecir; C:\Windows\System32\DRIVERS\itecir.sys [45568 2006-11-25] (Windows (R) Codename Longhorn DDK provider)
R5 JGOGO; C:\Windows\System32\DRIVERS\JGOGO.sys [6912 2006-02-07] (JMicron )
R5 JRAID; C:\Windows\System32\DRIVERS\jraid.sys [43648 2007-01-30] (JMicron Technology Corp.)
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [5632 2007-01-24] ( )
R5 KSecDD; C:\Windows\System32\Drivers\ksecdd.sys [440768 2015-06-12] (Microsoft Corporation)
R5 MountMgr; C:\Windows\System32\drivers\mountmgr.sys [56256 2015-07-21] (Microsoft Corporation)
R5 msahci; C:\Windows\System32\drivers\msahci.sys [23144 2006-11-02] (Microsoft Corporation)
S3 MSIRCOMM; C:\Windows\System32\DRIVERS\MSIRCOMM.sys [24064 2008-01-19] (Microsoft Corporation)
R5 msisadrv; C:\Windows\System32\drivers\msisadrv.sys [16440 2008-01-19] (Microsoft Corporation)
R3 MTsensor; C:\Windows\System32\DRIVERS\ATKACPI.sys [7680 2006-12-14] (ATK0100)
R5 Mup; C:\Windows\System32\Drivers\mup.sys [48104 2009-04-11] (Microsoft Corporation)
R5 NDIS; C:\Windows\System32\drivers\ndis.sys [527848 2009-04-11] (Microsoft Corporation)
R2 npf; C:\Windows\System32\drivers\npf.sys [35088 2010-07-16] (CACE Technologies, Inc.)
R3 Ntfs; C:\Windows\system32\Drivers\Ntfs.sys [1082232 2013-03-03] (Společnost Microsoft)
R5 partmgr; C:\Windows\System32\drivers\partmgr.sys [53120 2012-03-21] (Microsoft Corporation)
R5 pci; C:\Windows\System32\drivers\pci.sys [149480 2009-04-11] (Microsoft Corporation)
R5 pciide; C:\Windows\System32\drivers\pciide.sys [14312 2009-04-11] (Microsoft Corporation)
R5 PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [43528 2007-03-08] (Sonic Solutions)
S3 s0016bus; C:\Windows\System32\DRIVERS\s0016bus.sys [89256 2008-05-16] (MCCI Corporation)
S3 s0016mdfl; C:\Windows\System32\DRIVERS\s0016mdfl.sys [15016 2008-05-16] (MCCI Corporation)
S3 s0016mdm; C:\Windows\System32\DRIVERS\s0016mdm.sys [120744 2008-05-16] (MCCI Corporation)
S3 s0016mgmt; C:\Windows\System32\DRIVERS\s0016mgmt.sys [114216 2008-05-16] (MCCI Corporation)
S3 s0016nd5; C:\Windows\System32\DRIVERS\s0016nd5.sys [25512 2008-05-16] (MCCI Corporation)
S3 s0016obex; C:\Windows\System32\DRIVERS\s0016obex.sys [110632 2008-05-16] (MCCI Corporation)
S3 s0016unic; C:\Windows\System32\DRIVERS\s0016unic.sys [115752 2008-05-16] (MCCI Corporation)
S3 se45bus; C:\Windows\System32\DRIVERS\se45bus.sys [61536 2006-11-30] (MCCI)
S3 se45mdfl; C:\Windows\System32\DRIVERS\se45mdfl.sys [9360 2006-11-30] (MCCI)
S3 se45mdm; C:\Windows\System32\DRIVERS\se45mdm.sys [97088 2006-11-30] (MCCI)
S3 se45mgmt; C:\Windows\System32\DRIVERS\se45mgmt.sys [88624 2006-11-30] (MCCI)
S3 se45nd5; C:\Windows\System32\DRIVERS\se45nd5.sys [18704 2006-11-30] (MCCI)
S3 se45obex; C:\Windows\System32\DRIVERS\se45obex.sys [86432 2006-11-30] (MCCI)
S3 se45unic; C:\Windows\System32\DRIVERS\se45unic.sys [90800 2006-11-30] (MCCI)
R5 spldr; C:\Windows\system32\Drivers\spldr.sys [21048 2008-01-19] (Microsoft Corporation)
R5 sptd; C:\Windows\System32\Drivers\sptd.sys [320120 2014-05-13] (Duplex Secure Ltd.)
R3 StkCMini; C:\Windows\System32\Drivers\StkCMini.sys [1245056 2007-02-13] (Syntek)
S3 tapwp01; C:\Windows\System32\DRIVERS\tapwp01.sys [35288 2014-12-11] (The OpenVPN Project)
R5 Tcpip; C:\Windows\System32\drivers\tcpip.sys [915392 2014-04-05] (Microsoft Corporation)
R5 volmgr; C:\Windows\System32\drivers\volmgr.sys [52792 2008-01-19] (Microsoft Corporation)
R5 volmgrx; C:\Windows\System32\drivers\volmgrx.sys [292840 2009-04-11] (Microsoft Corporation)
R5 volsnap; C:\Windows\System32\drivers\volsnap.sys [224640 2012-08-21] (Microsoft Corporation)
R5 Wdf01000; C:\Windows\System32\drivers\Wdf01000.sys [527064 2013-06-27] (Microsoft Corporation)
U3 agk15rxr; C:\Windows\system32\Drivers\agk15rxr.sys [0 ] (Microsoft Corporation) <==== ATTENTION (zero byte File/Folder)
U5 AppMgmt; C:\Windows\system32\svchost.exe [21504 2008-01-19] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-08-20 13:27 - 2015-08-20 13:27 - 02870984 _____ (ESET) C:\Users\MINO\Desktop\esetsmartinstaller_csy.exe
2015-08-20 11:30 - 2015-08-20 11:30 - 00000509 _____ C:\Users\MINO\Desktop\FRST – zástupce.lnk
2015-08-19 06:01 - 2015-08-15 01:03 - 12386816 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-08-19 06:01 - 2015-08-15 00:56 - 01804288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-08-19 06:01 - 2015-08-15 00:55 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-08-18 18:00 - 2015-08-18 18:00 - 00000536 _____ C:\Users\MINO\Desktop\Total Commander.lnk
2015-08-18 16:26 - 2015-08-18 16:25 - 00096352 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2015-08-17 12:53 - 2015-08-21 08:23 - 00000000 ____D C:\FRST
2015-08-15 14:22 - 2015-08-15 14:22 - 00278528 _____ C:\Users\MINO\Desktop\Nový Microsoft Office Access 2007 Databáze.accdb
2015-08-15 12:32 - 2015-08-15 12:32 - 00000000 ____D C:\Users\fbwuser1024\AppData\Roaming\Opera Software
2015-08-15 09:38 - 2015-08-20 16:44 - 00000000 ____D C:\ProgramData\vWinManProv
2015-08-15 09:38 - 2015-08-15 09:38 - 00000000 _____ C:\Windows\prleth.sys
2015-08-15 09:38 - 2015-08-15 09:38 - 00000000 _____ C:\Windows\hgfs.sys
2015-08-15 09:37 - 2015-08-15 09:35 - 00009519 _____ C:\Users\MINO\Downloads\optimizerpro_eula628.mht
2015-08-15 09:36 - 2015-08-15 09:35 - 00032844 _____ C:\Users\MINO\Downloads\healthcaregovtool_490.mht
2015-08-15 09:36 - 2015-08-15 09:35 - 00024476 _____ C:\Users\MINO\Downloads\Update_Admin_628_1.mht
2015-08-15 09:36 - 2015-08-15 09:35 - 00009981 _____ C:\Users\MINO\Downloads\omniboxes_628.mht
2015-08-15 09:35 - 2015-08-15 09:35 - 00061494 _____ C:\Users\MINO\Downloads\codecpacks_satellitesite.mht
2015-08-12 07:05 - 2015-07-21 22:55 - 01206192 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-08-12 07:05 - 2015-07-21 18:07 - 03605440 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-08-12 07:05 - 2015-07-21 18:07 - 03553216 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-08-12 07:05 - 2015-07-21 18:07 - 00140224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ecache.sys
2015-08-12 07:05 - 2015-07-21 18:07 - 00056256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2015-08-12 07:05 - 2015-07-21 18:03 - 00564224 _____ (Microsoft Corporation) C:\Windows\system32\emdmgmt.dll
2015-08-12 07:05 - 2015-07-21 18:03 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-08-12 07:05 - 2015-07-21 18:03 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
2015-08-12 07:01 - 2015-07-31 21:27 - 00103120 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-08-12 06:58 - 2015-07-09 16:20 - 00304640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2015-08-12 06:56 - 2015-07-10 21:37 - 02067968 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2015-08-12 06:51 - 2015-07-11 17:56 - 11587584 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-08-12 06:11 - 2015-07-18 18:03 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll
2015-08-12 06:09 - 2015-07-10 21:37 - 01402368 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2015-08-12 06:09 - 2015-07-10 21:37 - 01253376 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-08-12 06:04 - 2015-08-01 00:08 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-08-12 06:04 - 2015-07-31 23:46 - 01029120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2015-08-12 06:04 - 2015-07-31 23:46 - 00219648 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2015-08-12 06:04 - 2015-07-31 23:46 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2015-08-12 06:04 - 2015-07-31 23:46 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2015-08-12 06:04 - 2015-07-31 22:41 - 01172480 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2015-08-12 06:04 - 2015-07-31 22:40 - 00486400 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2015-08-12 06:04 - 2015-07-31 22:35 - 00682496 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2015-08-12 06:04 - 2015-07-31 22:33 - 02066944 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-08-12 06:04 - 2015-07-31 22:33 - 01072640 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-08-12 06:04 - 2015-07-31 22:33 - 00802304 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-08-12 06:04 - 2015-07-31 22:33 - 00297472 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-08-12 06:02 - 2015-07-01 17:57 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2015-08-12 06:01 - 2015-07-09 16:25 - 00151040 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe
2015-08-12 06:01 - 2015-07-09 16:25 - 00151040 _____ (Microsoft Corporation) C:\Windows\notepad.exe
2015-08-12 02:40 - 2015-07-22 22:54 - 00367616 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-08-12 02:40 - 2015-07-22 22:51 - 01810432 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-08-12 02:40 - 2015-07-22 22:47 - 09751040 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-08-12 02:40 - 2015-07-22 22:46 - 01139712 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-08-12 02:40 - 2015-07-22 22:46 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-08-12 02:40 - 2015-07-22 22:45 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-08-12 02:40 - 2015-07-22 22:45 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-08-12 02:40 - 2015-07-22 22:45 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-08-12 02:40 - 2015-07-22 22:44 - 00718336 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-08-12 02:40 - 2015-07-22 22:44 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-08-12 02:40 - 2015-07-22 22:44 - 00421888 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-08-12 02:40 - 2015-07-22 22:44 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-08-12 02:40 - 2015-07-22 22:43 - 00353792 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-08-12 02:40 - 2015-07-22 22:43 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-08-12 02:40 - 2015-07-22 22:43 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-08-12 02:40 - 2015-07-22 22:43 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-08-12 02:40 - 2015-07-22 22:43 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-08-12 02:40 - 2015-07-22 22:43 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-08-12 02:40 - 2015-07-22 22:42 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-08-05 08:55 - 2015-08-05 08:55 - 00000565 _____ C:\Users\MINO\Desktop\KMPlayer.lnk
2015-08-05 08:55 - 2015-08-05 08:55 - 00000000 ____D C:\Users\MINO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The KMPlayer
2015-08-05 08:55 - 2015-08-05 08:55 - 00000000 ____D C:\KMPlayer
2015-08-05 00:03 - 2015-08-05 00:03 - 00877152 _____ (Microsoft Corporation) C:\Windows\system32\msvcr120_clr0400.dll
2015-08-05 00:03 - 2015-08-05 00:03 - 00538208 _____ (Microsoft Corporation) C:\Windows\system32\msvcp120_clr0400.dll
2015-07-29 08:58 - 2015-07-29 08:58 - 00000000 ____D C:\Users\MINO\AppData\Roaming\MPC-HC
2015-07-29 08:57 - 2015-07-29 08:57 - 00001667 _____ C:\Users\MINO\Desktop\MPC-HC.lnk
2015-07-29 08:57 - 2015-07-29 08:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC
2015-07-29 08:57 - 2015-07-29 08:57 - 00000000 ____D C:\Program Files\MPC-HC
2015-07-23 14:00 - 2015-07-23 14:02 - 00000000 ____D C:\Users\MINO\Documents\Zálohy
2015-07-23 12:06 - 2014-12-11 21:53 - 00035288 _____ (The OpenVPN Project) C:\Windows\system32\Drivers\tapwp01.sys
2015-07-23 11:56 - 2015-07-23 12:52 - 00000000 ____D C:\ProgramData\boost_interprocess
2015-07-22 16:23 - 2015-08-18 13:24 - 00001082 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-07-22 16:23 - 2015-08-18 13:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-08-21 08:07 - 2006-11-02 14:47 - 00003696 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2015-08-21 08:07 - 2006-11-02 14:47 - 00003696 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2015-08-21 08:01 - 2015-07-16 17:01 - 01630726 _____ C:\Windows\WindowsUpdate.log
2015-08-21 07:38 - 2013-09-21 06:25 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-08-21 06:08 - 2013-09-15 15:24 - 00000000 ____D C:\Users\MINO\AppData\Local\HTC MediaHub
2015-08-21 06:07 - 2008-09-21 05:10 - 00045056 _____ C:\Windows\system32\acovcnt.exe
2015-08-21 06:07 - 2006-11-02 15:01 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-08-21 06:05 - 2007-04-21 12:36 - 00008524 _____ C:\Windows\bthservsdp.dat
2015-08-21 06:05 - 2006-11-02 15:01 - 00032560 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2015-08-21 03:14 - 2014-07-12 20:36 - 00000000 ____D C:\Users\MINO\AppData\Roaming\vlc
2015-08-20 16:51 - 2009-10-07 08:13 - 00000000 ____D C:\Program Files\Opera
2015-08-20 16:44 - 2008-09-21 15:33 - 00000000 ____D C:\STAHOVANIE
2015-08-20 11:36 - 2006-11-02 13:18 - 00000000 ___HD C:\Windows\system32\GroupPolicy
2015-08-20 11:30 - 2008-09-20 20:39 - 00000000 ____D C:\Users\MINO
2015-08-18 17:41 - 2014-05-07 11:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2012
2015-08-18 16:27 - 2008-10-02 13:15 - 00000000 ____D C:\Program Files\Common Files\Java
2015-08-18 16:25 - 2013-11-18 18:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-08-18 16:24 - 2013-09-23 16:04 - 00000000 ____D C:\ProgramData\Oracle
2015-08-18 16:24 - 2008-10-02 13:15 - 00000000 ____D C:\Program Files\Java
2015-08-18 14:47 - 2013-12-13 13:58 - 00000000 ____D C:\Users\MINO\AppData\Roaming\uTorrent
2015-08-18 13:24 - 2014-10-16 04:59 - 00000798 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera 31.lnk
2015-08-18 13:24 - 2014-05-17 12:16 - 00000000 ____D C:\Program Files\Mozilla Firefox
2015-08-18 13:24 - 2013-12-04 15:58 - 00000786 _____ C:\Users\Public\Desktop\Opera 31.lnk
2015-08-18 13:24 - 2013-04-23 18:40 - 00000000 ____D C:\Users\MINO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-08-18 13:24 - 2013-01-22 11:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Verdict Free
2015-08-18 13:24 - 2013-01-20 11:36 - 00000865 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-08-18 13:24 - 2013-01-20 11:36 - 00000853 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-08-18 13:24 - 2012-07-20 18:13 - 00001047 _____ C:\Users\MINO\Desktop\Fun and Bullets.lnk
2015-08-18 13:24 - 2009-08-20 17:38 - 00000966 _____ C:\Users\MINO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-08-18 13:24 - 2008-09-21 12:19 - 00000936 _____ C:\Users\MINO\Desktop\Internet Explorer.lnk
2015-08-18 09:48 - 2014-02-21 10:44 - 00000000 ____D C:\Users\fbwuserAC33
2015-08-18 09:48 - 2014-02-21 10:44 - 00000000 ____D C:\Users\fbwuser1024
2015-08-18 09:48 - 2008-09-21 13:02 - 00000000 ____D C:\Users\MINO\AppData\Roaming\GHISLER
2015-08-18 09:48 - 2008-09-21 05:04 - 00000000 ____D C:\ProgramData\P4G
2015-08-18 09:48 - 2006-11-02 13:18 - 00000000 ____D C:\Windows\system32\spool
2015-08-18 09:48 - 2006-11-02 13:18 - 00000000 ____D C:\Windows\registration
2015-08-15 16:04 - 2011-06-05 15:33 - 00000000 ____D C:\temp
2015-08-15 12:32 - 2014-02-21 10:44 - 00000000 ____D C:\Users\fbwuser1024\AppData\Local\Google
2015-08-15 10:35 - 2013-04-22 15:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2015-08-15 10:30 - 2010-02-07 09:32 - 00000008 __RSH C:\ProgramData\ntuser.pol
2015-08-13 17:52 - 2010-08-06 08:00 - 00000000 ____D C:\Users\MINO\AppData\Roaming\dvdcss
2015-08-13 12:50 - 2006-11-02 12:33 - 01539772 _____ C:\Windows\system32\PerfStringBackup.INI
2015-08-12 08:38 - 2012-12-20 09:46 - 00778440 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2015-08-12 08:38 - 2012-12-20 09:46 - 00142536 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2015-08-12 08:32 - 2006-11-02 13:18 - 00000000 ____D C:\Windows\Microsoft.NET
2015-08-12 08:08 - 2013-04-19 05:34 - 00400752 _____ C:\Windows\system32\FNTCACHE.DAT
2015-08-12 08:04 - 2012-12-21 18:31 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2015-08-12 08:03 - 2006-11-02 14:37 - 00000000 ____D C:\Windows\system32\XPSViewer
2015-08-12 07:08 - 2008-11-01 11:28 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-08-12 07:05 - 2012-12-21 18:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-08-12 06:49 - 2013-07-12 07:52 - 00000000 ____D C:\Windows\system32\MRT
2015-08-12 06:15 - 2006-11-02 12:24 - 129304528 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2015-08-07 15:28 - 2015-05-30 14:01 - 00000370 _____ C:\Users\MINO\Desktop\Router Settings.txt
2015-08-06 06:03 - 2014-07-12 20:35 - 00000866 _____ C:\Users\Public\Desktop\VLC media player.lnk
2015-08-05 13:06 - 2009-02-23 17:44 - 00000000 ____D C:\Users\MINO\Documents\The KMPlayer
2015-07-31 04:34 - 2009-05-31 10:22 - 00000000 ____D C:\Windows\Minidump
2015-07-23 17:13 - 2009-10-15 06:19 - 00000000 ____D C:\Program Files\Ashampoo
2015-07-23 17:09 - 2009-10-15 06:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
2015-07-23 13:45 - 2009-09-23 19:45 - 00000000 ____D C:\ProgramData\ashampoo
2015-07-23 12:52 - 2013-01-20 11:36 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2015-07-22 16:22 - 2009-05-10 11:06 - 00000000 ____D C:\Program Files\Google

==================== Files in the root of some directories =======

2010-05-26 14:12 - 2013-02-09 11:34 - 0000103 _____ () C:\Users\MINO\AppData\Roaming\default.pls
2013-05-19 14:12 - 2013-05-19 14:21 - 0087608 _____ () C:\Users\MINO\AppData\Roaming\inst.exe
2009-09-11 15:47 - 2013-05-19 14:21 - 0007887 _____ () C:\Users\MINO\AppData\Roaming\pcouffin.cat
2009-09-11 15:47 - 2013-05-19 14:21 - 0001144 _____ () C:\Users\MINO\AppData\Roaming\pcouffin.inf
2009-09-11 15:47 - 2013-05-19 14:21 - 0047360 _____ (VSO Software) C:\Users\MINO\AppData\Roaming\pcouffin.sys
2009-12-02 19:41 - 2009-12-02 19:46 - 0008350 _____ () C:\ProgramData\LUUnInstall.LiveUpdate
2010-04-10 11:02 - 2010-04-10 11:02 - 0000108 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc

==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-08-21 06:14

==================== End of log ============================
Additional scan result of Farbar Recovery Scan Tool (x86) Version:20-08-2015
Ran by MINO (2015-08-21 08:25:59)
Running from C:\FRST
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1876766861-4099627362-3959107545-500 - Administrator - Disabled)
fbwuser1024 (S-1-5-21-1876766861-4099627362-3959107545-1360 - Limited - Enabled) => C:\Users\fbwuser1024
Guest (S-1-5-21-1876766861-4099627362-3959107545-501 - Limited - Enabled)
MINO (S-1-5-21-1876766861-4099627362-3959107545-1000 - Administrator - Enabled) => C:\Users\MINO

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

_fm 0.0.5.2 (HKU\S-1-5-21-1876766861-4099627362-3959107545-1000\...\{6DBFF1BC-C61E-49DD-832C-401BCCC39907}}_is1) (Version: 0.0.5.2 - František Szijartó)
7-Zip 9.20 (HKLM\...\7-Zip) (Version: - )
A-Ball (HKLM\...\A-Ball_is1) (Version: 1.0 - Media Contact LLC)
Adobe Flash Player 18 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 18.0.0.232 - Adobe Systems Incorporated)
Adobe Flash Player 18 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 18.0.0.232 - Adobe Systems Incorporated)
Adobe Flash Player 18 PPAPI (HKLM\...\Adobe Flash Player PPAPI) (Version: 18.0.0.232 - Adobe Systems Incorporated)
Adobe Photoshop CS (HKLM\...\{EFB21DE7-8C19-4A88-BB28-A766E16493BC}) (Version: CS - Adobe Systems, Inc.)
Adobe Reader 8 - Czech (HKLM\...\{AC76BA86-7AD7-1029-7B44-A81200000003}) (Version: 8.1.2 - Adobe Systems Incorporated)
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
Apple Mobile Device Support (HKLM\...\{E1DB0812-2D60-43DB-AE09-6C7027D93B28}) (Version: 8.1.1.3 - Apple Inc.)
Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Ashampoo Burning Studio 6 FREE (HKLM\...\Ashampoo Burning Studio 6 FREE_is1) (Version: 6.7.6 - ashampoo GmbH & Co. KG)
Ashampoo Burning Studio 6 FREE v.6.84 (HKLM\...\{91B33C97-3ED1-03EA-A67B-244AA4D7B559}_is1) (Version: 6.8.4 - Ashampoo GmbH & Co. KG)
ASUS Data Security Manager (HKLM\...\{1C8521E5-5A7B-4A4E-A9CD-AD53116EAEE0}) (Version: 1.00.0005 - ASUS)
ASUS InstantFun (HKLM\...\{57B15AD4-8C9D-4164-82BB-E33D8644E757}) (Version: 1.0.0014 - ASUS)
ASUS Live Update (HKLM\...\{E657B243-9AD4-4ECC-BE81-4CCF8D667FD0}) (Version: 2.5.3 - ASUS)
ASUS Splendid Video Enhancement Technology (HKLM\...\{C0FC1C14-4824-4A73-87A6-9E888C9C3102}) (Version: 1.02.16 - ASUSTeK)
Asus_Camera_ScreenSaver (HKLM\...\Asus_Camera_ScreenSaver) (Version: 2.0.0006 - ASUS)
Atheros Driver Installation Program (HKLM\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 7.1 - Atheros)
ATK Generic Function Service (HKLM\...\{D3D54F3E-C5C3-443D-978F-87A72E5616E8}) (Version: 1.00.0007 - ATK)
ATK Hotkey (HKLM\...\{3912D529-02BC-4CA8-B5ED-0D0C20EB6003}) (Version: 1.00.0012 - ATK)
ATK Media (HKLM\...\{139B0FFA-187E-4BA1-BCA6-6B56B2B6AB8C}) (Version: - )
ATKOSD2 (HKLM\...\{5C1DB4ED-E9B4-402D-BB14-D75D97D6C1A6}) (Version: 6.64.1.4 - ATK)
Atomový míč 2 1.0 (HKLM\...\{Atomovy mic 2}_is1) (Version: - Špidla Data Processing, s.r.o.)
Bing Bar (HKLM\...\{449CE12D-E2C7-4B97-B19E-55D163EA9435}) (Version: 7.0.619.0 - Microsoft Corporation)
Bonjour (HKLM\...\{79155F2B-9895-49D7-8612-D92580E0DE5B}) (Version: 3.0.0.10 - Apple Inc.)
BorderlineRunner (HKLM\...\{1146AC44-2F03-4431-B4FD-889BC837521F}{e77d1094}) (Version: - Software Publisher)
Canon MP Navigator EX 1.0 (HKLM\...\MP Navigator EX 1.0) (Version: - )
Canon MP210 series (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP210_series) (Version: - )
ccc-core-static (Version: 2007.0704.2230.38368 - ATI) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.02 - Piriform)
D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 4.49.1.0356 - Disc Soft Ltd)
Defraggler (HKLM\...\Defraggler) (Version: 2.14 - Piriform)
DVD Shrink 3.2 (HKLM\...\DVD Shrink_is1) (Version: - DVD Shrink)
FormatFactory 2.20 (HKLM\...\FormatFactory) (Version: 2.20 - Free Time)
Fun and Bullets (HKLM\...\Fun and Bullets_is1) (Version: - FreeGamePick.com)
Google Drive (HKLM\...\{12ADFB82-D5A3-43E4-B2F4-FCD9B690315B}) (Version: 1.24.9931.5480 - Google, Inc.)
Google Chrome (HKLM\...\Google Chrome) (Version: 44.0.2403.155 - Google Inc.)
Google Chrome (HKU\S-1-5-21-1876766861-4099627362-3959107545-1000\...\Google Chrome) (Version: 44.0.2403.155 - Google Inc.)
Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (Version: 1.3.28.1 - Google Inc.) Hidden
Google Updater (HKLM\...\Google Updater) (Version: 2.4.1536.6592 - Google Inc.)
HD Tune 2.55 (HKLM\...\HD Tune_is1) (Version: - EFD Software)
HTC Driver Installer (HKLM\...\{4CEEE5D0-F905-4688-B9F9-ECC710507796}) (Version: 4.16.0.001 - HTC Corporation)
HTC Sync Manager (HKLM\...\{231D0C79-98A6-4693-A366-36DE7D7346EC}) (Version: 3.1.46.0 - HTC)
iCloud (HKLM\...\{79BD66B2-4DAE-4C3B-B08E-DC72E507C163}) (Version: 2.1.3.25 - Apple Inc.)
ImgBurn (HKLM\...\ImgBurn) (Version: 2.5.8.0 - LIGHTNING UK!)
IncludeFoobar (HKLM\...\{1146AC44-2F03-4431-B4FD-889BC837521F}{fafd12d7}) (Version: - Software Publisher)
IncrementInstance (HKLM\...\{1146AC44-2F03-4431-B4FD-889BC837521F}{b2902a13}) (Version: - Software Publisher)
IPTInstaller (HKLM\...\{08208143-777D-4A06-BB54-71BF0AD1BB70}) (Version: 4.0.8 - HTC)
IrfanView (remove only) (HKLM\...\IrfanView) (Version: 4.35 - Irfan Skiljan)
iTunes (HKLM\...\{CE1F04C7-79BC-4219-BE6A-BA490224D4B5}) (Version: 12.1.2.27 - Apple Inc.)
Java 8 Update 51 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218051F0}) (Version: 8.0.510 - Oracle Corporation)
JMB36X Raid Configurer (HKLM\...\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}) (Version: 1.00.0000 - JMICRON Technology Corp.)
Junk Mail filter update (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
K-Lite Codec Pack 11.2.8 Standard (HKLM\...\KLiteCodecPack_is1) (Version: 11.2.8 - )
KMPlayer (remove only) (HKLM\...\The KMPlayer) (Version: 3.9.1.138 - PandoraTV)
LifeFrame2 (HKLM\...\{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}) (Version: 2.0.15 - ASUS)
LiveUpdate 3.2 (Symantec Corporation) (HKLM\...\LiveUpdate) (Version: 3.2.0.68 - Symantec Corporation)
LiveUpdate Notice (Symantec Corporation) (HKLM\...\{DBA4DB9D-EE51-4944-A419-98AB1F1249C8}) (Version: 1.4.5 - Symantec Corporation)
Medal of Honor Allied Assault (HKLM\...\Medal of Honor Allied Assault_R.G. Mechanics_is1) (Version: - R.G. Mechanics, ProZorg_tm)
Mesh Runtime (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Messenger Companion (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Microsoft .NET Framework 3.5 SP1 – jazyková sada – CSY (HKLM\...\Microsoft .NET Framework 3.5 Language Pack SP1 - csy) (Version: - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Outlook Connector (HKLM\...\{95140000-007A-0405-0000-0000000FF1CE}) (Version: 14.0.5118.5000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Motorola SM56 Speakerphone Modem (HKLM\...\SMSERIAL) (Version: 6.12.25.05 - Motorola Inc)
Mozilla Firefox 39.0 (x86 cs) (HKLM\...\Mozilla Firefox 39.0 (x86 cs)) (Version: 39.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 39.0 - Mozilla)
Mp3tag v2.66 (HKLM\...\Mp3tag) (Version: v2.66 - Florian Heidenreich)
MPC-HC 1.7.8 (HKLM\...\{2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1) (Version: 1.7.8 - MPC-HC Team)
MSXML 4.0 SP2 (KB927978) (HKLM\...\{37477865-A3F1-4772-AD43-AAFC6BCFF99F}) (Version: 4.20.9841.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB936181) (HKLM\...\{C04E32E0-0416-434D-AFB9-6969D703A9EF}) (Version: 4.20.9848.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB941833) (HKLM\...\{C523D256-313D-4866-B36A-F3DE528246EF}) (Version: 4.20.9849.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Nero 8 (HKLM\...\{6D45EF03-E8EE-4355-81C3-F918CBCF1029}) (Version: 8.3.309 - Nero AG)
Nokia Connectivity Cable Driver (HKLM\...\{BC4AE628-81A4-4FC6-863A-7A9BA2E2531F}) (Version: 7.1.32.69 - )
Opera Stable 31.0.1889.174 (HKLM\...\Opera 31.0.1889.174) (Version: 31.0.1889.174 - Opera Software)
Ovládací prvek ActiveX platformy Windows Live Mesh pro vzdálená připojení (HKLM\...\{B6190387-0036-4BEB-8D74-A0AFC5F14706}) (Version: 15.4.5722.2 - Microsoft Corporation)
P4P (HKLM\...\{FC3D290D-79BE-44B7-ABF9-FDD110925930}) (Version: 1.0.0.15 - P4P)
PDF24 Creator (HKLM\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: - PDF24.org)
PIXMA Extended Survey Program (HKLM\...\CANONIJPLM100) (Version: - )
Podpora aplikací Apple (32bitová) (HKLM\...\{AFA1153A-F547-409B-B837-3A0D6C5A3FEC}) (Version: 3.1.3 - Apple Inc.)
Power4Gear eXtreme (HKLM\...\{8CFEBE9C-F29F-4C49-80E0-7106970F8734}) (Version: 1.00.0012 - ATK)
ReactorSubs (HKLM\...\{1146AC44-2F03-4431-B4FD-889BC837521F}{1daead5e}) (Version: - Software Publisher)
Realtek 8169 PCI, 8168 and 8101E PCIe Ethernet Network Card Driver for Windows Vista (HKLM\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 1.00.0000 - Realtek)
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5374 - Realtek Semiconductor Corp.)
Registrace uživatele zařízení Canon MP210 series (HKLM\...\Registrace uživatele zařízení Canon MP210 series) (Version: - )
Remote Controller (HKLM\...\{2B802EBE-CDAD-477C-9AD4-069615D377EB}) (Version: 1.00.000 - ITE)
Return To Castle Wolfenstein verze 1.0 (HKLM\...\{F4C38E8A-810B-4FE5-B87F-9E87CEAFF673}_is1) (Version: 1.0 - )
Revo Uninstaller 1.91 (HKLM\...\Revo Uninstaller) (Version: 1.91 - VS Revo Group)
RICOH R5C83x/84x Flash Media Controller Driver Ver.3.51.01 (HKLM\...\{59F6A514-9813-47A3-948C-8A155460CC2A}) (Version: 3.51.01 - )
ScanSoft OmniPage SE 4 (HKLM\...\{DEE88727-779B-47A9-ACEF-F87CA5F92A65}) (Version: 15.2.0020 - Nuance Communications, Inc.)
ScaraBall (HKLM\...\ScaraBall_is1) (Version: 1.0 - Media Contact LLC)
SeekerInstance (HKLM\...\{1146AC44-2F03-4431-B4FD-889BC837521F}{d7fd6783}) (Version: - Software Publisher)
Segoe UI (Version: 15.4.2271.0615 - Microsoft Corp) Hidden
Slovník Verdict Free (a internetový překladač) (HKU\S-1-5-21-1876766861-4099627362-3959107545-1000\...\Verdict Free) (Version: - )
Sony Mobile Update Engine (HKLM\...\Update Engine) (Version: 2.14.13.201409122125 - Sony Mobile Communications AB)
Sony PC Companion 2.10.259 (HKLM\...\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}) (Version: 2.10.259 - Sony)
SpeedConnect Connection Tester (HKLM\...\SpeedConnect Connection Tester_is1) (Version: - CBS Software)
Subtitle Workshop 2.51 (HKLM\...\SubtitleWorkshop) (Version: - )
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 9.1.19.0 - Synaptics)
TampaMaker (HKLM\...\{1146AC44-2F03-4431-B4FD-889BC837521F}{698b30d6}) (Version: - Software Publisher)
TuneUp Utilities Language Pack (en-US) (Version: 12.0.2020.22 - TuneUp Software) Hidden
TuneUp Utilities Language Pack (en-US) (Version: 9.0.6020.6 - TuneUp Software) Hidden
Ultra Video Joiner 5.2.1025 (HKLM\...\Ultra Video Joiner_is1) (Version: - Aone Software)
UmmyVideoDownloader 1.2.0.6 (HKLM\...\{E028DBDA-EEE7-48A0-ADF7-D250589A02C5}_is1) (Version: - )
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
UpdateAdmin (HKLM\...\{8F1CD30B-3A84-4B95-BFA4-CC0F885B8463}) (Version: 2.0.1999 - DownloadAdmin) <==== ATTENTION
USB2.0 1.3M WebCam (HKLM\...\USB2.0 1.3M WebCam) (Version: - )
VC80CRTRedist - 8.0.50727.6195 (Version: 1.2.0 - DivX, Inc) Hidden
Vista Codec Package (HKLM\...\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}) (Version: 4.5.1 - )
VistaFeaturePack (HKLM\...\InstallShield_{D7E04009-B191-4E9D-9D2D-1BBE57BD8A42}) (Version: 1.03.0000 - CSR)
VistaFeaturePack (Version: 1.03.0000 - CSR) Hidden
VLC media player (HKLM\...\VLC media player) (Version: 2.2.1 - VideoLAN)
VSO ConvertXToDVD (HKLM\...\{CE1F93C0-4353-4C9D-84DA-AB4E7C63ED32}_is1) (Version: 5.0.0.33 - VSO-Software SARL)
VSO Downloader 2.9.14.7 (HKLM\...\{DB70FB55-1515-4C75-95C8-FFBD5FE041F8}_is1) (Version: 2.9.14.7 - VSO Software)
Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation)
WinFlash (HKLM\...\{DE10AB76-4756-4913-BE25-55D1C1051F9A}) (Version: - )
WinPcap 4.1.2 (HKLM\...\WinPcapInst) (Version: 4.1.0.2001 - CACE Technologies)
Wireless Console 2 (HKLM\...\{83F73CB1-7705-49D1-9852-84D839CA2A45}) (Version: 2.0.8 - ATK)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1876766861-4099627362-3959107545-1000_Classes\CLSID\{022105BD-948A-40C9-AB42-A3300DDF097F}\localserver32 -> "C:\Users\MINO\AppData\Local\Google\Update\GoogleUpdate.exe" No File
CustomCLSID: HKU\S-1-5-21-1876766861-4099627362-3959107545-1000_Classes\CLSID\{22181302-A8A6-4F84-A541-E5CBFC70CC43}\localserver32 -> "C:\Users\MINO\AppData\Local\Google\Update\1.3.28.1\GoogleUpdateOnDemand.exe" No File
CustomCLSID: HKU\S-1-5-21-1876766861-4099627362-3959107545-1000_Classes\CLSID\{2F0E2680-9FF5-43C0-B76E-114A56E93598}\localserver32 -> "C:\Users\MINO\AppData\Local\Google\Update\1.3.28.1\GoogleUpdateOnDemand.exe" No File
CustomCLSID: HKU\S-1-5-21-1876766861-4099627362-3959107545-1000_Classes\CLSID\{51F9E8EF-59D7-475B-A106-C7EA6F30C119}\localserver32 -> "C:\Users\MINO\AppData\Local\Google\Update\1.3.28.1\GoogleUpdateOnDemand.exe" No File
CustomCLSID: HKU\S-1-5-21-1876766861-4099627362-3959107545-1000_Classes\CLSID\{5C65F4B0-3651-4514-B207-D10CB699B14B}\localserver32 -> C:\Users\MINO\AppData\Local\Google\Chrome\Application\44.0.2403.155\delegate_execute.exe (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1876766861-4099627362-3959107545-1000_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E}\InprocServer32 -> C:\Users\MINO\AppData\Local\Google\Update\1.3.28.1\psuser.dll No File
CustomCLSID: HKU\S-1-5-21-1876766861-4099627362-3959107545-1000_Classes\CLSID\{6d05bf60-3eaf-4a97-87c5-10cce505435b}\localserver32 -> C:\Users\MINO\AppData\Local\Temp\{9c0ba3c1-2b67-45eb-bf69-bed9658d28d2}\IDriver.NonElevated.exe No F (the data entry has 3 more characters).
CustomCLSID: HKU\S-1-5-21-1876766861-4099627362-3959107545-1000_Classes\CLSID\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D}\InprocServer32 -> C:\Users\MINO\AppData\Local\Google\Update\1.3.28.1\npGoogleUpdate3.dll No File
CustomCLSID: HKU\S-1-5-21-1876766861-4099627362-3959107545-1000_Classes\CLSID\{C442AC41-9200-4770-8CC0-7CDB4F245C55}\InprocServer32 -> C:\Users\MINO\AppData\Local\Google\Update\1.3.28.1\npGoogleUpdate3.dll No File
CustomCLSID: HKU\S-1-5-21-1876766861-4099627362-3959107545-1000_Classes\CLSID\{E67BE843-BBBE-4484-95FB-05271AE86750}\localserver32 -> "C:\Users\MINO\AppData\Local\Google\Update\1.3.28.1\GoogleUpdateOnDemand.exe" No File
CustomCLSID: HKU\S-1-5-21-1876766861-4099627362-3959107545-1000_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\MINO\AppData\Local\Google\Update\1.3.28.1\psuser.dll No File

==================== Restore Points =========================

19-08-2015 06:00:12 Windows Update
20-08-2015 16:43:27 Restore Point Created by FRST

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2006-11-02 12:23 - 2015-08-20 11:36 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0C3AF200-FADC-49E5-880E-DEE192C8B79A} - System32\Tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask => C:\Windows\system32\RAServer.exe [2008-01-19] (Společnost Microsoft)
Task: {18A3B3A5-8EF0-4920-BDA0-371B21329396} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1876766861-4099627362-3959107545-1000Core => C:\Users\MINO\AppData\Local\Google\Update\GoogleUpdate.exe
Task: {1EC2ACC3-AFB3-471A-8D6E-EC1DA091CCCB} - System32\Tasks\InstallShield Software-Aktualisierungsdienst => C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2005-02-16] (InstallShield Software Corporation)
Task: {2053E75B-BE4C-47EC-8568-769FEF3A21FE} - System32\Tasks\{C7053FEF-374C-43FC-B57D-F0785DB3AA70} => pcalua.exe -a C:\PROGRA~1\WELLGA~1\UNWISE.EXE -c C:\PROGRA~1\WELLGA~1\INSTALL.LOG
Task: {60080681-7242-4798-B021-37B48E5163EB} - System32\Tasks\{BBEE0F93-07F1-46B4-9893-9CA21C1C9ED1} => pcalua.exe -a C:\Windows\system32\ISUSPM.cpl -c Program Updates
Task: {617A2B65-C963-41DC-87F8-6484FC416EB0} - System32\Tasks\ScanSoft Background Update => C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [2006-10-25] (Nuance Communications, Inc.)
Task: {6BD0E835-DB48-4B94-8E67-DFF4BAFA780D} - System32\Tasks\Opera scheduled Autoupdate 1386165518 => C:\Program Files\Opera\launcher.exe [2015-08-17] (Opera Software)
Task: {7B037153-936A-4D4B-B50C-E60661682AF0} - System32\Tasks\Divx online update program => C:\Program Files\DivX\DivX Update\DivXUpdate.exe [2014-01-10] ()
Task: {8D5C5C58-82E5-4244-A234-DF5B0B2EF139} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-12] (Adobe Systems Incorporated)
Task: {8ECE6CBA-EBBC-486C-A1ED-A5BB0CED758D} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1876766861-4099627362-3959107545-1000UA => C:\Users\MINO\AppData\Local\Google\Update\GoogleUpdate.exe
Task: {A060468C-A418-41B2-B32D-6802747E9ECF} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-01-20] (Piriform Ltd)
Task: {A15B20BF-3358-427F-B8F7-9CD832C408FE} - System32\Tasks\InstallShield Software online update program => C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [2004-06-16] (InstallShield Software Corporation)
Task: {A43AB296-00C6-48D0-8629-B0821045890B} - System32\Tasks\klcp_update => C:\Program Files\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2015-07-13] ()
Task: {A7F101C8-793E-4B82-817E-EF03C472E641} - System32\Tasks\{92628C4A-3411-48DE-A5D1-CF6D0B367407} => pcalua.exe -a C:\Windows\365dní\uninstall.exe -c "/U:C:\Program Files\365dníNET\Uninstall\uninstall.xml"
Task: {A8983774-3076-448F-8ED5-1FBBD0DE273D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-18] (Google Inc.)
Task: {ADDE01C4-AD58-43A5-955E-6F0A676450F6} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {B544C357-D4DA-4D31-B513-EAFA0A114CF5} - System32\Tasks\Java Update Scheduler => C:\Program Files\Common Files\Java\Java Update\jusched.exe [2015-06-08] (Oracle Corporation)
Task: {B6BDB8F5-9821-4C03-ABFD-86DDF5474B05} - System32\Tasks\Google Software Updater => C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-05-10] (Google)
Task: {C6E10320-BAE8-449E-A247-2BF813CFA50F} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-18] (Google Inc.)
Task: {CD51C058-9298-451D-8EE6-413C2600D66D} - System32\Tasks\ASUS Live Update => C:\Program Files\ASUS\ASUS Live Update\ALU.exe [2007-07-20] ()
Task: {D4ACB15C-144B-4ED1-875D-FFC23987EFCD} - System32\Tasks\InstallShield Software update service => c:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [2004-06-16] (InstallShield Software Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe

==================== Loaded Modules (Whitelisted) ==============

2008-09-21 05:02 - 2007-05-18 11:31 - 00073728 _____ () C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe
2008-09-21 04:26 - 2007-02-06 03:13 - 00094208 _____ () C:\Program Files\ATK Hotkey\ASLDRSrv.exe
2008-09-21 05:03 - 2007-06-11 20:30 - 00094208 _____ () C:\Program Files\ATKGFNEX\GFNEXSrv.exe
2014-01-20 14:17 - 2014-01-20 14:17 - 00073544 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2015-01-20 23:35 - 2015-01-20 23:35 - 01044776 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2014-05-27 12:32 - 2014-05-27 12:32 - 00031080 _____ () C:\Program Files\HTC\HTC Sync Manager\DbAccess.dll
2015-04-13 15:54 - 2015-04-13 15:54 - 00607376 _____ () C:\Program Files\HTC\HTC Sync Manager\sqlite3.dll
2014-05-27 12:33 - 2014-05-27 12:33 - 00059752 _____ () C:\Program Files\HTC\HTC Sync Manager\NAdvLog.dll
2014-05-27 12:32 - 2014-05-27 12:32 - 00036216 _____ () C:\Program Files\HTC\HTC Sync Manager\NFileCacheDBAccess.dll
2014-05-27 12:33 - 2014-05-27 12:33 - 00080248 _____ () C:\Program Files\HTC\HTC Sync Manager\ninstallerhelper.dll
2014-05-27 12:34 - 2014-05-27 12:34 - 00129376 _____ () C:\Program Files\HTC\HTC Sync Manager\zlib1.dll
2014-05-27 12:35 - 2014-05-27 12:35 - 00223592 _____ () C:\Program Files\HTC\HTC Sync Manager\DevConnMon.dll
2012-12-07 18:27 - 2012-12-07 18:27 - 00167424 _____ () C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
2008-09-21 05:09 - 2007-07-04 16:52 - 00159744 _____ () C:\Windows\system32\atitmmxx.dll
2008-09-21 05:02 - 2007-06-15 19:28 - 00147456 _____ () C:\Program Files\ASUS\ASUS Data Security Manager\OverlayIconShlExt.dll
2008-09-21 05:02 - 2007-06-02 02:08 - 00143360 _____ () C:\Program Files\ASUS\ASUS Data Security Manager\OverlayIconShlExt1.dll
2008-09-21 05:02 - 2007-06-15 20:16 - 00331776 _____ () C:\Program Files\ASUS\ASUS Data Security Manager\AdsmendecExt.dll
2008-09-21 05:03 - 2007-03-10 01:16 - 00106496 _____ () C:\Program Files\ATKGFNEX\AGFNEX.dll
2014-05-22 17:29 - 2014-05-22 17:29 - 00043520 _____ () C:\Windows\system32\CmdLineExt03.dll
2015-04-13 15:55 - 2015-04-13 15:55 - 00821600 _____ () C:\Program Files\HTC\HTC Sync Manager\HTC Sync\adb.exe
2008-09-21 04:26 - 2004-05-28 03:13 - 00057344 _____ () C:\Program Files\ATK Hotkey\CMSSC.dll
2008-09-21 04:27 - 2007-01-18 04:26 - 07708672 _____ () C:\Program Files\ATKOSD2\ATKOSD2.exe
2008-09-21 04:48 - 2006-12-21 08:03 - 01036288 _____ () C:\Program Files\Wireless Console 2\wcourier.exe
2008-09-21 05:05 - 2007-01-16 23:08 - 00009216 _____ () C:\Program Files\ASUS\Splendid\GLCDdll.dll
2008-09-21 04:26 - 2006-12-19 02:26 - 02420736 _____ () C:\Program Files\ATK Hotkey\ATKOSD.exe
2008-09-21 04:26 - 2007-04-17 22:39 - 00077824 _____ () C:\Program Files\ATK Hotkey\KBFiltr.exe
2008-09-21 05:04 - 2008-09-21 05:04 - 00033136 _____ () C:\Windows\ASScrPro.exe
2015-08-19 14:15 - 2015-08-19 14:13 - 58600568 _____ () C:\Program Files\Opera\31.0.1889.174\opera.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Windows\$NtUninstallKB1750$:SummaryInformation

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)


==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE restricted site: HKU\S-1-5-21-1876766861-4099627362-3959107545-1000\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-1876766861-4099627362-3959107545-1000\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-1876766861-4099627362-3959107545-1000\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-1876766861-4099627362-3959107545-1000\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-1876766861-4099627362-3959107545-1000\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-1876766861-4099627362-3959107545-1000\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-1876766861-4099627362-3959107545-1000\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-1876766861-4099627362-3959107545-1000\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-1876766861-4099627362-3959107545-1000\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-1876766861-4099627362-3959107545-1000\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-1876766861-4099627362-3959107545-1000\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-1876766861-4099627362-3959107545-1000\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\S-1-5-21-1876766861-4099627362-3959107545-1000\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\S-1-5-21-1876766861-4099627362-3959107545-1000\...\123topsearch.com -> www.123topsearch.com
IE restricted site: HKU\S-1-5-21-1876766861-4099627362-3959107545-1000\...\12w.net -> download-video.12w.net
IE restricted site: HKU\S-1-5-21-1876766861-4099627362-3959107545-1000\...\132.com -> www.132.com
IE restricted site: HKU\S-1-5-21-1876766861-4099627362-3959107545-1000\...\136136.net -> down.136136.net
IE restricted site: HKU\S-1-5-21-1876766861-4099627362-3959107545-1000\...\163ns.com -> ert0003.e76.163ns.com
IE restricted site: HKU\S-1-5-21-1876766861-4099627362-3959107545-1000\...\17-plus.com -> 17-plus.com
IE restricted site: HKU\S-1-5-21-1876766861-4099627362-3959107545-1000\...\171203.com -> 171203.com

There are 4784 more restricted sites.

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1876766861-4099627362-3959107545-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\MINO\AppData\Roaming\IrfanView\IrfanView_Wallpaper.bmp
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [WMP-In-UDP-x86] => (Allow) %ProgramFiles(x86)%\Windows Media Player\wmplayer.exe
FirewallRules: [WMP-Out-UDP-x86] => (Allow) %ProgramFiles(x86)%\Windows Media Player\wmplayer.exe
FirewallRules: [WMP-Out-TCP-x86] => (Allow) %ProgramFiles(x86)%\Windows Media Player\wmplayer.exe
FirewallRules: [{E926E57D-011D-4F63-BCC5-FFCFDC28D091}] => (Allow) %ProgramFiles(x86)%\Windows Media Player\wmplayer.exe
FirewallRules: [{CE504808-152F-4073-8BB9-0F8E7C4D30C6}] => (Allow) %ProgramFiles(x86)%\Windows Media Player\wmplayer.exe
FirewallRules: [{AB3FBA72-52C3-4476-9A38-230DBE05659B}] => (Allow) %ProgramFiles(x86)%\Windows Media Player\wmplayer.exe
FirewallRules: [{F0C4D65E-BE77-4816-9938-2D8DBD28F9B7}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{84FD934E-8152-4E01-8059-829B52758C54}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [SLSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\slsvc.exe
FirewallRules: [SLSVC-In-TCP] => (Allow) %SystemRoot%\system32\slsvc.exe
FirewallRules: [WinCollab-Out-UDP] => (Allow) %ProgramFiles%\Windows Collaboration\WinCollab.exe
FirewallRules: [WinCollab-In-UDP] => (Allow) %ProgramFiles%\Windows Collaboration\WinCollab.exe
FirewallRules: [WinCollab-Out-TCP] => (Allow) %ProgramFiles%\Windows Collaboration\WinCollab.exe
FirewallRules: [WinCollab-In-TCP] => (Allow) %ProgramFiles%\Windows Collaboration\WinCollab.exe
FirewallRules: [WinCollab-DFSR-Out-TCP] => (Allow) %SystemRoot%\system32\dfsr.exe
FirewallRules: [WinCollab-DFSR-In-TCP] => (Allow) %SystemRoot%\system32\dfsr.exe
FirewallRules: [WMPNSS-WMP-Out-TCP-x86] => (Allow) %ProgramFiles(x86)%\Windows Media Player\wmplayer.exe
FirewallRules: [WMPNSS-WMP-Out-UDP-x86] => (Allow) %ProgramFiles(x86)%\Windows Media Player\wmplayer.exe
FirewallRules: [WMPNSS-WMP-In-UDP-x86] => (Allow) %ProgramFiles(x86)%\Windows Media Player\wmplayer.exe
FirewallRules: [WMPNSS-WMP-Out-TCP-NoScope-x86] => (Allow) %ProgramFiles(x86)%\Windows Media Player\wmplayer.exe
FirewallRules: [WMPNSS-WMP-Out-UDP-NoScope-x86] => (Allow) %ProgramFiles(x86)%\Windows Media Player\wmplayer.exe
FirewallRules: [WMPNSS-WMP-In-UDP-NoScope-x86] => (Allow) %ProgramFiles(x86)%\Windows Media Player\wmplayer.exe
FirewallRules: [{83348E00-50C9-436A-A865-01F7AD948C51}] => (Allow) C:\Program Files\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{D80F46F2-5499-4B9D-BE77-4491EA6F35E5}] => (Allow) LPort=2869
FirewallRules: [{A6624435-0993-47CA-AB83-A48C051B7477}] => (Allow) LPort=1900
FirewallRules: [{A9FBF0BF-D4B1-4C88-B179-AB0BE54D2139}] => (Allow) C:\Program Files\Windows Live\Messenger\msnmsgr.exe
FirewallRules: [{287350AB-C6BC-4DEF-869D-AE0700A7CFDA}] => (Allow) C:\Program Files\Windows Live\Mesh\MOE.exe
FirewallRules: [{EBB25FD8-F8F4-4C76-8803-AC69ABF854C5}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
FirewallRules: [TCP Query User{368EA67E-D8B5-4AFF-AAA8-A16006371A37}C:\users\mino\appdata\roaming\utorrent\utorrent.exe] => (Block) C:\users\mino\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [UDP Query User{0A6D6BDF-C218-41FB-8002-44B6E4F67EE7}C:\users\mino\appdata\roaming\utorrent\utorrent.exe] => (Block) C:\users\mino\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [TCP Query User{FEE63237-4383-4661-B5DE-A86E4080A465}J:\call of duty 1\the call of duty\codmp.exe] => (Block) J:\call of duty 1\the call of duty\codmp.exe
FirewallRules: [UDP Query User{79B91224-3A65-426C-988F-6B62854A7438}J:\call of duty 1\the call of duty\codmp.exe] => (Block) J:\call of duty 1\the call of duty\codmp.exe
FirewallRules: [{AFF11E85-C840-4AFB-BC22-17ECFABDD7DC}] => (Allow) C:\Program Files\HTC\HTC Sync Manager\HTCSyncManager.exe
FirewallRules: [TCP Query User{7D5ABC6D-BDA8-425C-897F-8954E1CCE633}C:\users\mino\appdata\roaming\utorrent\utorrent.exe] => (Block) C:\users\mino\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [UDP Query User{4240D495-5B8C-4A06-B052-3BC7C87AFD21}C:\users\mino\appdata\roaming\utorrent\utorrent.exe] => (Block) C:\users\mino\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [{481CB079-C620-4F5B-BB18-104ABFA6295F}] => (Allow) C:\Program Files\Sony Mobile\Update Engine\Sony Mobile Update Engine.exe
FirewallRules: [{4846F107-7615-4512-AF35-E22D404E8575}] => (Allow) C:\Program Files\Sony Mobile\Update Engine\Sony Mobile Update Engine.exe
FirewallRules: [{D5460478-CD47-4CE9-A08E-CE53DECCA7BE}] => (Allow) C:\Program Files\HTC\HTC Sync Manager\HTCSyncManager.exe
FirewallRules: [TCP Query User{0D224E09-228B-4527-AAF9-098E75772D34}C:\program files\r.g. mechanics\medal of honor allied assault\moh_spearhead.exe] => (Block) C:\program files\r.g. mechanics\medal of honor allied assault\moh_spearhead.exe
FirewallRules: [UDP Query User{947C21DF-2390-404A-9B81-C9F8F089A2ED}C:\program files\r.g. mechanics\medal of honor allied assault\moh_spearhead.exe] => (Block) C:\program files\r.g. mechanics\medal of honor allied assault\moh_spearhead.exe
FirewallRules: [TCP Query User{1EE943B8-6048-4F60-A4C2-E1F26B6CE51C}C:\program files\r.g. mechanics\medal of honor allied assault\mohaa.exe] => (Block) C:\program files\r.g. mechanics\medal of honor allied assault\mohaa.exe
FirewallRules: [UDP Query User{11FBEE2C-15D1-44E8-A536-F552D544C1A1}C:\program files\r.g. mechanics\medal of honor allied assault\mohaa.exe] => (Block) C:\program files\r.g. mechanics\medal of honor allied assault\mohaa.exe
FirewallRules: [{6A508618-5918-4C4B-860B-21085E03558F}] => (Allow) C:\Program Files\HTC\HTC Sync Manager\HTCSyncManager.exe
FirewallRules: [TCP Query User{2DC90696-17EB-4BA7-B27B-6365DEED2A81}C:\program files\r.g. mechanics\medal of honor allied assault\moh_breakthrough.exe] => (Block) C:\program files\r.g. mechanics\medal of honor allied assault\moh_breakthrough.exe
FirewallRules: [UDP Query User{2D94A735-25AC-4B67-9C6A-453E8931B043}C:\program files\r.g. mechanics\medal of honor allied assault\moh_breakthrough.exe] => (Block) C:\program files\r.g. mechanics\medal of honor allied assault\moh_breakthrough.exe
FirewallRules: [{E86D3B87-D839-4438-AA9E-B947A25AFB61}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [TCP Query User{418084CC-3B61-48E3-9BB8-BBD3B128BA36}D:\easysetupassistant\wr741n\easysetupassistant.exe] => (Block) D:\easysetupassistant\wr741n\easysetupassistant.exe
FirewallRules: [UDP Query User{C9E9CADD-4381-4D8B-943E-C3F795E4AB7D}D:\easysetupassistant\wr741n\easysetupassistant.exe] => (Block) D:\easysetupassistant\wr741n\easysetupassistant.exe
FirewallRules: [{E93909A8-13F2-42E9-8FAE-87A78CE259F9}] => (Allow) C:\Program Files\HTC\HTC Sync Manager\HTCSyncManager.exe
FirewallRules: [{480736B4-0A86-45BF-8267-4F06F9A3D596}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{A961A547-ABF3-40E5-9BD4-237D74474E64}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{4A1C2F6A-8C1E-40D4-A864-C83342DC2E0E}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe

==================== Faulty Device Manager Devices =============

Name: 6TO4 Adapter
Description: Microsoft 6to4 Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.

Name: 6TO4 Adapter
Description: Microsoft 6to4 Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.

Name: 6TO4 Adapter
Description: Microsoft 6to4 Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.

Name: Microsoft 6to4 Adapter #3
Description: Microsoft 6to4 Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.

Name: Microsoft 6to4 Adapter #4
Description: Microsoft 6to4 Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.

Name: Microsoft ISATAP Adapter #6
Description: Microsoft ISATAP Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver

Name: Bluetooth Peripheral Device
Description: Bluetooth Peripheral Device
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Bluetooth Peripheral Device
Description: Bluetooth Peripheral Device
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Bluetooth Peripheral Device
Description: Bluetooth Peripheral Device
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Bluetooth Peripheral Device
Description: Bluetooth Peripheral Device
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Bluetooth Peripheral Device
Description: Bluetooth Peripheral Device
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Bluetooth Peripheral Device
Description: Bluetooth Peripheral Device
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Bluetooth Peripheral Device
Description: Bluetooth Peripheral Device
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Bluetooth Peripheral Device
Description: Bluetooth Peripheral Device
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (08/21/2015 06:05:39 AM) (Source: EventSystem) (EventID: 4621) (User: )
Description: 80070005EventSystem.EventSubscription{CEB8B221-89C5-41A8-98CE-79B413BF150B}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000}

Error: (08/20/2015 04:43:23 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Chyba služby Stínová kopie svazků: Při dotazu na rozhraní IVssWriterCallback došlo k neočekávané chybě. hr = 0x80070005.
To je často způsobeno nesprávným nastavením zabezpečení v modulu pro zápis nebo žadateli.


Operace:
Shromažďování dat modulu pro zápis

Kontext:
ID třídy modulu pro zápis: {e8132975-6f93-4464-a53e-1050253ae220}
Název modulu pro zápis: System Writer
ID instance modulu pro zápis: {c267eca4-13ac-4bb5-a15f-b39e95646905}

Error: (08/20/2015 11:37:36 AM) (Source: Windows Search Service) (EventID: 7040) (User: )
Description: Vyhledávací služby zjistila, že index obsahuje poškozené datové soubory. Služba se pokusí tyto potíže automaticky odstranit vytvořením nového indexu.

Kontext: aplikace Windows, katalog SystemIndex

Podrobnosti:
Metadata indexu obsahu nelze číst. (0xc0041801)

Error: (08/20/2015 11:37:36 AM) (Source: ESENT) (EventID: 467) (User: )
Description: Windows (4692) Windows: Databáze C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Windows.edb: Index System_KindText405 tabulky SystemIndex_0A je poškozen (0).

Error: (08/19/2015 09:34:45 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro Microsoft.VC90.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"1 se nezdařilo.
Závislé sestavení Microsoft.VC90.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error: (08/18/2015 04:10:51 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Chyba služby Stínová kopie svazků: Při dotazu na rozhraní IVssWriterCallback došlo k neočekávané chybě. hr = 0x80070005.
To je často způsobeno nesprávným nastavením zabezpečení v modulu pro zápis nebo žadateli.


Operace:
Shromažďování dat modulu pro zápis

Kontext:
ID třídy modulu pro zápis: {e8132975-6f93-4464-a53e-1050253ae220}
Název modulu pro zápis: System Writer
ID instance modulu pro zápis: {ae8dac5f-c9fb-4c58-a129-1abad6c56af6}

Error: (08/18/2015 04:07:14 PM) (Source: MsiInstaller) (EventID: 11606) (User: MINO-PC)
Description: Product: Java(TM) 6 Update 13 -- Error 1606.Could not access network location :.

Error: (08/18/2015 04:07:12 PM) (Source: MsiInstaller) (EventID: 11606) (User: MINO-PC)
Description: Product: Java(TM) 6 Update 13 -- Error 1606.Could not access network location :.

Error: (08/18/2015 04:07:10 PM) (Source: MsiInstaller) (EventID: 11606) (User: MINO-PC)
Description: Product: Java(TM) 6 Update 13 -- Error 1606.Could not access network location :.

Error: (08/18/2015 04:07:09 PM) (Source: MsiInstaller) (EventID: 11606) (User: MINO-PC)
Description: Product: Java(TM) 6 Update 13 -- Error 1606.Could not access network location :.


System errors:
=============
Error: (08/21/2015 06:08:50 AM) (Source: Service Control Manager) (EventID: 7003) (User: )
Description: Podpora rozhraní NetBIOS nad protokolem TCP/IPNetBT

Error: (08/21/2015 06:05:36 AM) (Source: DCOM) (EventID: 10010) (User: )
Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}

Error: (08/21/2015 03:20:47 AM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (08/21/2015 03:20:43 AM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (08/21/2015 03:20:41 AM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (08/20/2015 06:32:46 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (08/20/2015 06:32:42 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (08/20/2015 06:32:37 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (08/20/2015 06:17:35 PM) (Source: Service Control Manager) (EventID: 7003) (User: )
Description: Podpora rozhraní NetBIOS nad protokolem TCP/IPNetBT

Error: (08/20/2015 06:15:38 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}


Microsoft Office:
=========================

CodeIntegrity:
===================================
Date: 2015-08-19 11:56:00.113
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\WINDOWS\system32\drivers\PSINReg.sys because the set of per-page image hashes could not be found on the system.

Date: 2015-08-19 11:55:54.090
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\WINDOWS\system32\drivers\PSINReg.sys because the set of per-page image hashes could not be found on the system.

Date: 2015-08-19 11:55:46.181
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\WINDOWS\system32\drivers\PSINReg.sys because the set of per-page image hashes could not be found on the system.

Date: 2015-08-19 11:55:38.911
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\WINDOWS\system32\drivers\PSINReg.sys because the set of per-page image hashes could not be found on the system.

Date: 2015-08-19 11:55:31.188
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\WINDOWS\system32\drivers\PSINProt.sys because the set of per-page image hashes could not be found on the system.

Date: 2015-08-19 11:55:24.870
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\WINDOWS\system32\drivers\PSINProt.sys because the set of per-page image hashes could not be found on the system.

Date: 2015-08-19 11:55:16.880
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\WINDOWS\system32\drivers\PSINProt.sys because the set of per-page image hashes could not be found on the system.

Date: 2015-08-19 11:55:09.500
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\WINDOWS\system32\drivers\PSINProt.sys because the set of per-page image hashes could not be found on the system.

Date: 2015-08-19 11:55:02.198
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\WINDOWS\system32\drivers\PSINProc.sys because the set of per-page image hashes could not be found on the system.

Date: 2015-08-19 11:54:55.474
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\WINDOWS\system32\drivers\PSINProc.sys because the set of per-page image hashes could not be found on the system.


==================== Memory info ===========================

Processor: AMD Athlon(tm) 64 X2 Dual-Core Processor TK-55
Percentage of memory in use: 66%
Total physical RAM: 2718.27 MB
Available physical RAM: 909.38 MB
Total Virtual: 5651.04 MB
Available Virtual: 3450.91 MB

==================== Drives ================================

Drive c: (VistaOS) (Fixed) (Total:142.21 GB) (Free:62.11 GB) NTFS ==>[drive with boot components (obtained from BCD)]
Drive h: (OS) (Fixed) (Total:138.05 GB) (Free:51.46 GB) NTFS
Drive k: (KINGSTON) (Removable) (Total:7.2 GB) (Free:0.51 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 149.1 GB) (Disk ID: BBC58B91)
Partition 1: (Not Active) - (Size=6.8 GB) - (Type=1C)
Partition 2: (Active) - (Size=142.2 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (Size: 7.2 GB) (Disk ID: 75712B14)
Partition 1: (Active) - (Size=7.2 GB) - (Type=0B)

========================================================
Disk: 2 (MBR Code: Windows 7 or Vista) (Size: 149.1 GB) (Disk ID: 9B7AEE40)
Partition 1: (Not Active) - (Size=11 GB) - (Type=12)
Partition 2: (Active) - (Size=138 GB) - (Type=07 NTFS)

==================== End of log ============================


Chci jeste doplnit,ze po verejsku mi zmizelo cca35GB,snazil sem se o deframentaci,aleSystem Volume Information vubec nefragmentovalo,proste kde se ztratili ....I Don't Know (Pres Defflagler) :boxed: :boxed:

altrok
Moderátor
Moderátor
Příspěvky: 7317
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: notebook out....pomozte mi

#25 Příspěvek od altrok »

:arrow: Mizejici misto na disku muzou mit na starosti body obnoveni.


:arrow: Ulozte na plochu zoek.exe http://hijackthis.nl/smeenk/zoek.htm
  • spustte jako spravce
  • do velkeho okna zkopirujte script uvedeny nize
  • kliknete na Run script
  • po restartu na Vas vyskoci log (pripadne jej najdete v C:\zoek-results.log) - vlozte mi jej do pristi odpovedi

    Kód: Vybrat vše

    autoclean;
    emptyclsid;
    iedefaults;
    FFdefaults;
    CHRdefaults;
    emptyalltemp;
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

miratan
Návštěvník
Návštěvník
Příspěvky: 119
Registrován: 12 dub 2013 10:50

Re: notebook out....pomozte mi

#26 Příspěvek od miratan »

zdravim :)
Zoek.exe v5.0.0.0 Updated 04-May-2015
Tool run by MINO on so 22.08.2015 at 6:02:20,10.
Microsoft® Windows Vista™ Home Premium 6.0.6002 Service Pack 2 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\MINO\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

22.8.2015 6:07:55 Zoek.exe System Restore Point Created Successfully.


Zoek.exe v5.0.0.0 Updated 04-May-2015
Tool run by MINO on so 22.08.2015 at 6:02:20,10.
Microsoft® Windows Vista™ Home Premium 6.0.6002 Service Pack 2 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\MINO\Desktop\zoek.exe [Scan all users] [Script inserted]

===== Runcheck 6:06:44,08 =====

--- Create Environment Variables 6:06:48,81
--- Create System Restore Point 6:07:16,10
--- Checking Input 6:07:58,29
--- AU AppData Check 6:08:44,94
--- Remove From Windows Installer 6:09:04,23


Zoek.exe v5.0.0.0 Updated 04-May-2015
Tool run by MINO on so 22.08.2015 at 6:02:20,10.
Microsoft® Windows Vista™ Home Premium 6.0.6002 Service Pack 2 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\MINO\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

22.8.2015 6:07:55 Zoek.exe System Restore Point Created Successfully.

Zoek.exe v5.0.0.0 Updated 04-May-2015
Tool run by MINO on so 22.08.2015 at 6:02:20,10.
Microsoft® Windows Vista™ Home Premium 6.0.6002 Service Pack 2 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\MINO\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

22.8.2015 6:07:55 Zoek.exe System Restore Point Created Successfully.


Zoek.exe v5.0.0.0 Updated 04-May-2015
Tool run by MINO on so 22.08.2015 at 7:26:18,11.
Microsoft® Windows Vista™ Home Premium 6.0.6002 Service Pack 2 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\MINO\Desktop\zoek.exe [Scan current user] [Script inserted]

==== Older Logs ======================

C:\zoek-results2015-08-22-040755.log 416 bytes

altrok
Moderátor
Moderátor
Příspěvky: 7317
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: notebook out....pomozte mi

#27 Příspěvek od altrok »

Zoek dle tohoto logu neudelal co mel. Zkopiroval jste spravny log?
Vlozil jste do zoeka skript?
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

miratan
Návštěvník
Návštěvník
Příspěvky: 119
Registrován: 12 dub 2013 10:50

Re: notebook out....pomozte mi

#28 Příspěvek od miratan »

tedy nevim co se deje,ten zoek je asi pomalejsi,jak se se
zda,to asi
bude ta chyba. :?: :?:
Zatim pise:
Zoek.exe v5.0.0.0 Updated 04-May-2015
Tool run by MINO on so 22.08.2015 at 8:49:04,04.
Microsoft® Windows Vista™ Home Premium 6.0.6002 Service Pack 2 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\MINO\Desktop\zoek.exe [Scan all users] [Script inserted]

===== Runcheck 8:50:31,64 =====

--- Create Environment Variables 8:50:37,54
--- Create System Restore Point 8:51:07,64
--- Checking Input 8:51:59,35
--- AU AppData Check 8:52:43,46
--- Remove From Windows Installer 8:53:00,23
--- Empty Folders Check 8:57:36,41
--- Registry HKLM Software Check 8:57:36,66
--- Quick Launch Shortcut Check 9:03:22,88
--- IE Startpage Check 9:03:45,37
--- Program Files DB Check 9:06:23,51
--- C:\Users\Default\AppData\Roaming DB Check 9:10:46,72
--- C:\Users\Default User\AppData\Roaming DB Check 9:10:46,72

ma to tak byt??? necham ho pracovat,pak poslu log

miratan
Návštěvník
Návštěvník
Příspěvky: 119
Registrován: 12 dub 2013 10:50

Re: notebook out....pomozte mi

#29 Příspěvek od miratan »

Zoek.exe v5.0.0.0 Updated 04-May-2015
Tool run by MINO on so 22.08.2015 at 8:49:04,04.
Microsoft® Windows Vista™ Home Premium 6.0.6002 Service Pack 2 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\MINO\Desktop\zoek.exe [Scan all users] [Script inserted]

===== Runcheck 8:50:31,64 =====

--- Create Environment Variables 8:50:37,54
--- Create System Restore Point 8:51:07,64
--- Checking Input 8:51:59,35
--- AU AppData Check 8:52:43,46
--- Remove From Windows Installer 8:53:00,23
--- Empty Folders Check 8:57:36,41
--- Registry HKLM Software Check 8:57:36,66
--- Quick Launch Shortcut Check 9:03:22,88
--- IE Startpage Check 9:03:45,37
--- Program Files DB Check 9:06:23,51
--- C:\Users\Default\AppData\Roaming DB Check 9:10:46,72
--- C:\Users\Default User\AppData\Roaming DB Check 9:10:46,72
--- C:\Users\fbwuser1024\AppData\Roaming DB Check 9:10:46,72
--- C:\Users\fbwuserAC33\AppData\Roaming DB Check 9:10:46,72
--- C:\Users\MINO\AppData\Roaming DB Check 9:10:46,72
--- C:\Windows\serviceprofiles\networkservice\AppData\Roaming DB Check 9:10:46,72
--- C:\Windows\serviceprofiles\Localservice\AppData\Roaming DB Check 9:10:46,72
--- C:\Users\MINO DB Check 9:22:42,92
--- C:\PROGRA~2 DB Check 9:24:18,41
--- C:\Users\Default\AppData\Local DB Check 9:24:41,64
--- C:\Users\Default User\AppData\Local DB Check 9:24:41,64
--- C:\Users\fbwuser1024\AppData\Local DB Check 9:24:41,64

miratan
Návštěvník
Návštěvník
Příspěvky: 119
Registrován: 12 dub 2013 10:50

Re: notebook out....pomozte mi

#30 Příspěvek od miratan »

Uz je to v poradku???? :( :( :( :( :(

Zoek.exe v5.0.0.0 Updated 04-May-2015
Tool run by MINO on so 22.08.2015 at 8:49:04,04.
Microsoft® Windows Vista™ Home Premium 6.0.6002 Service Pack 2 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\MINO\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

22.8.2015 8:51:53 Zoek.exe System Restore Point Created Successfully.

==== Empty Folders Check ======================

C:\Program Files\DsNET Corp deleted successfully
C:\Program Files\GameSpy Arcade deleted successfully
C:\Program Files\GRETECH deleted successfully
C:\Program Files\Internet Download Manager deleted successfully
C:\Program Files\VS Revo Group deleted successfully
C:\Program Files\Webteh deleted successfully
C:\Program Files\Wise deleted successfully
C:\Program Files\Common Files\PX Storage Engine deleted successfully
C:\PROGRA~2\Atheros deleted successfully
C:\PROGRA~2\IDM deleted successfully
C:\Users\MINO\AppData\Roaming\BitTorrent Sync deleted successfully
C:\Users\MINO\AppData\Roaming\DMCache deleted successfully
C:\Users\MINO\AppData\Roaming\FlashGet deleted successfully
C:\Users\MINO\AppData\Roaming\Moyea deleted successfully
C:\Users\MINO\AppData\Roaming\Outlook deleted successfully
C:\Users\MINO\AppData\Roaming\Skype deleted successfully
C:\Users\MINO\AppData\Roaming\Ulozto File Manager deleted successfully
C:\Users\MINO\AppData\Roaming\WinRAR deleted successfully
C:\Users\MINO\AppData\Roaming\WordToPDF deleted successfully
C:\Users\MINO\AppData\Roaming\Xilisoft deleted successfully
C:\Users\MINO\AppData\Roaming\XnConvert deleted successfully
C:\Users\MINO\AppData\Local\NFS Underground 2 deleted successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-1876766861-4099627362-3959107545-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1902485B-CE75-42C1-BA2D-57E660793D9A} deleted successfully
HKEY_USERS\S-1-5-21-1876766861-4099627362-3959107545-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D} deleted successfully
HKEY_USERS\S-1-5-21-1876766861-4099627362-3959107545-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D} deleted successfully
HKEY_USERS\S-1-5-21-1876766861-4099627362-3959107545-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C442AC41-9200-4770-8CC0-7CDB4F245C55} deleted successfully
HKEY_USERS\S-1-5-21-1876766861-4099627362-3959107545-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C442AC41-9200-4770-8CC0-7CDB4F245C55} deleted successfully
HKEY_USERS\S-1-5-21-1876766861-4099627362-3959107545-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E0DACC63-037F-46EE-AC02-E4C7B0FBFEB4} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C442AC41-9200-4770-8CC0-7CDB4F245C55} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C442AC41-9200-4770-8CC0-7CDB4F245C55} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{C442AC41-9200-4770-8CC0-7CDB4F245C55} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C442AC41-9200-4770-8CC0-7CDB4F245C55} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E0DACC63-037F-46EE-AC02-E4C7B0FBFEB4} deleted successfully

==== Deleting CLSID Registry Values ======================

HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Approved Extensions\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully
HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Approved Extensions\{B0DE3308-5D5A-470D-81B9-634FC078393B} deleted successfully
HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Approved Extensions\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497} deleted successfully

==== Deleting Services ======================


==== FireFox Fix ======================

Deleted from C:\Users\MINO\AppData\Roaming\Mozilla\Firefox\Profiles\extensions\prefs.js:
user_pref("browser.search.selectedEngine", "search");

Added to C:\Users\MINO\AppData\Roaming\Mozilla\Firefox\Profiles\extensions\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

Deleted from C:\Users\MINO\AppData\Roaming\Mozilla\Firefox\Profiles\ooakx785.default\prefs.js:
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.useDBForOrder", true);

Added to C:\Users\MINO\AppData\Roaming\Mozilla\Firefox\Profiles\ooakx785.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

ProfilePath: C:\Users\MINO\AppData\Roaming\Mozilla\Firefox\Profiles\extensions

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs_22.08.2015_0951_.backup

ProfilePath: C:\Users\MINO\AppData\Roaming\Mozilla\Firefox\Profiles\ooakx785.default

user.js not found
---- Lines spamfreesearch removed from prefs.js ----
user_pref("extensions.spamfreesearch.admin", false);
user_pref("extensions.spamfreesearch.aflt", "orgnl");
user_pref("extensions.spamfreesearch.appId", "{1005247F-A178-490A-8DC3-6BAF09EA427B}");
user_pref("extensions.spamfreesearch.autoRvrt", "false");
user_pref("extensions.spamfreesearch.cntry", "SK");
user_pref("extensions.spamfreesearch.dfltLng", "");
user_pref("extensions.spamfreesearch.dfltSrch", true);
user_pref("extensions.spamfreesearch.dpkLst", "3654782829,1121012847,231756876,1895130307,603719297,4288797614,3754950497,3046281807,752626116,1657571
user_pref("extensions.spamfreesearch.excTlbr", false);
user_pref("extensions.spamfreesearch.hdrMd5", "068A368A2975FFA0ABB1C5959179F0FD");
user_pref("extensions.spamfreesearch.hmpg", true);
user_pref("extensions.spamfreesearch.id", "548681020000000000000015af586f00");
user_pref("extensions.spamfreesearch.instlDay", "15753");
user_pref("extensions.spamfreesearch.instlRef", "e0c8d0ad");
user_pref("extensions.spamfreesearch.lastVrsnTs", "1.8.3.95:07:15");
user_pref("extensions.spamfreesearch.newTab", true);
user_pref("extensions.spamfreesearch.newTabUrl", "chrome://spamfreesearch/content/new browser tab.html?source=e0c8d0ad&tbp=tab&u=548681020000000000000
user_pref("extensions.spamfreesearch.prdct", "spamfreesearch");
user_pref("extensions.spamfreesearch.sg", "none");
user_pref("extensions.spamfreesearch.smplGrp", "none");
user_pref("extensions.spamfreesearch.tlbrId", "base");
user_pref("extensions.spamfreesearch.vrsn", "1.8.3.9");
user_pref("extensions.spamfreesearch.vrsni", "1.8.3.9");
user_pref("extensions.spamfreesearch.vrsnTs", "1.8.3.95:07:15");
user_pref("extensions.spamfreesearch_i.dnsErr", true);
user_pref("extensions.spamfreesearch_i.hmpg", true);
user_pref("extensions.spamfreesearch_i.newTab", true);
user_pref("extensions.spamfreesearch_i.smplGrp", "none");
user_pref("extensions.spamfreesearch_i.vrsnTs", "1.8.3.95:07:15");
---- FireFox user.js and prefs.js backups ----

prefs_22.08.2015_0951_.backup

==== Deleting Files \ Folders ======================

C:\Program Files\DsNET Corp not found
C:\Program Files\GameSpy Arcade not found
C:\Program Files\GRETECH not found
C:\Program Files\Internet Download Manager not found
C:\Program Files\VS Revo Group not found
C:\Program Files\Webteh not found
C:\Program Files\Wise not found
C:\PROGRA~2\Špidla Data Processing, s.r.o not found
C:\Windows\system32\appdata deleted
C:\PROGRA~2\GreatSoft deleted
C:\Users\MINO\.android deleted
C:\Users\MINO\AppData\Roaming\Alawar deleted
C:\Users\MINO\AppData\Roaming\GetRightToGo deleted
C:\PROGRA~2\AlawarWrapper deleted
C:\PROGRA~2\InstallMate deleted
C:\Users\MINO\AppData\Local\CRE deleted
C:\Users\MINO\AppData\Local\cache deleted
C:\Windows\system32\GroupPolicy\User deleted
C:\Windows\System32\InstallUtil.InstallLog deleted
C:\Windows\System32\searchplugins deleted
C:\Windows\System32\Extensions deleted
C:\Users\MINO\AppData\Roaming\Mozilla\Firefox\Profiles\extensions\ftdownloader@ftdownloader.com.xpi deleted
C:\Users\MINO\AppData\Roaming\Mozilla\Firefox\Profiles\ooakx785.default\FVD Toolbar deleted
C:\Users\Public\Desktop\UmmyVideoDownloader.lnk deleted
C:\Users\Public\Desktop\VSO Downloader 2.lnk deleted
C:\Users\MINO\AppData\Roaming\Mozilla\Firefox\Profiles\ooakx785.default\extensions\{c9d31470-81c6-4e3e-9a37-46eb9237ed3a} deleted

==== Firefox Start and Search pages ======================

ProfilePath: C:\Users\MINO\AppData\Roaming\Mozilla\Firefox\Profiles\extensions
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

ProfilePath: C:\Users\MINO\AppData\Roaming\Mozilla\Firefox\Profiles\ooakx785.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

==== Firefox Proxy Settings ======================

ProfilePath: C:\Users\MINO\AppData\Roaming\Mozilla\Firefox\Profiles\extensions
user_pref("network.proxy.type", );

==== Firefox Extensions Registry ======================

[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]
"mozilla_cc@internetdownloadmanager.com"="C:\Users\MINO\AppData\Roaming\IDM\idmmzcc5" [20.07.2015 11:38]

==== Firefox Extensions ======================

ProfilePath: C:\Users\MINO\AppData\Roaming\Mozilla\Firefox\Profiles\extensions
- Record Page - %ProfilePath%\extensions\{5338b981-17bb-4eb1-a9c2-e552c52b86c3}.xpi

ProfilePath: C:\Users\MINO\AppData\Roaming\Mozilla\Firefox\Profiles\ooakx785.default
- Speed Dial [FVD] - New Tab Page Sync... em:descriptionFVD Speed Dial - Speed dial button Online Synchronization New Tab Start Page Organize bookmarks Custom backgrounds custom dials organized groups most visited dials. em:creatorflashvideodownloader.orgfvd-suite em:developerflashvideodownloader.orgfvd-suite - %ProfilePath%\extensions\pavel.sherbakov@gmail.com
- TankTurners - %ProfilePath%\extensions\tzeiqoszufi_@arfsecpfifdfw_k.net
- WOT - %ProfilePath%\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}
- Record Page - %ProfilePath%\extensions\{5338b981-17bb-4eb1-a9c2-e552c52b86c3}.xpi
- ImTranslator - %ProfilePath%\extensions\{9AA46F4F-4DC7-4c06-97AF-5035170634FE}.xpi
- Adblock Plus - %ProfilePath%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi

ExtDir: C:\Users\MINO\AppData\Roaming\Mozilla\Extensions
- Undetermined - %ExtDir%\{1FD91A9C-410C-4090-BBCC-55D3450EF433}

AppDir: C:\Program Files\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Users\MINO\AppData\Roaming\Mozilla\Firefox\Profiles\ooakx785.default
04AF8BC83A89D9B71F7E0BCAF9FDD768 - C:\Program Files\Adobe\Reader 8.0\Reader\browser\nppdf32.dll - Adobe Acrobat
52CE0DBFD9738AE528CF525A0367EBEB - C:\Program Files\VideoLAN\VLC\npvlc.dll - VLC Web Plugin
1F352B5944AF5C2204D9EFF7F845C5AF - C:\Program Files\Google\Update\1.3.28.1\npGoogleUpdate3.dll - Google Update
AB87EEFFD18F2BAAFC274E7075EA6C67 - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll - Windows Presentation Foundation / Windows Presentation Foundation
C517E5EA7CEE783F3681F62D2A362E5B - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll - Windows Live? Photo Gallery
0A7CFC4EE9CC3206B1DC522FCB8C3DB1 - c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll - Silverlight Plug-In
79039398587F475ADA606D1A3B740A63 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll - DivX VOD Helper Plug-in
46A59E6F7F7C1679AC7C4655E055326D - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll - iTunes Application Detector
4BF70B35B943BD73BD6E13EB7C1BA4B3 - C:\Windows\system32\Macromed\Flash\NPSWF32_11_9_900_117.dll - Shockwave Flash
F891089A6AB9E12FEDEBCC5EC0F40D66 - C:\Windows\system32\Macromed\Flash\NPSWF32_11_9_900_170.dll - Shockwave Flash
EC55112EDB2CE5BC2BFCACDB9C2150F4 - C:\Windows\system32\Macromed\Flash\NPSWF32_18_0_0_232.dll - Shockwave Flash
0B8378EA70622A6F3EC50CC4AF62764C - c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrlui.dll - Microsoft® Silverlight


==== Fake Chromium Profiles Check ======================

Fake profile C:\Users\fbwuser1024\AppData\Local\Google\Chrome deleted

==== Chromium Look ======================

Google Chrome Version: 44.0.2403.157


HD for YouTube™ - MINO\AppData\Local\Google\Chrome\User Data\Default\Extensions\akjbfncbadcmnkopckegnmjgihagponf
{scripts [background.js]}content_scripts:[{js:[content.js]matches:[<all_urls>]run_at:document_end}]content_security_policy:script-src 'self' 'unsafe-eval' https://recordpage-a.akamaihd.net https://recordpage-a.akamaihd.net https://cdn.getrecordpage.com; object-src 'self'description:homepage_url:http://www.getrecordpage.comicons:{48:icon.png}key:MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA13qfPozHmLKS5TH3Dz8Zq0plIldshcNw2osiNzGOO0jFBogcYdPZJ3C3MzmdhSgW0N32Y2BtYm/pcTGRRJ7Bbigoe7Al66WWw3k5NdBpo0VV6ZkyW+oHoIJi2Fgu7Pn8ljRBWO1pVnK62OIb57NptyT1VgrhCSv1pXXQXbjw50G1c79ByPvCION8ILSv1hrQlwLf53ox1OM0JtDsxbe/+YCS7+n5JoB6vdGOmMvsriYexC4Yy4kwQ2va12Bc0J00+hBvNkMu9C9c/8T608VZKykj2ubseb/Aymh+WRhJvChy48G73pb6oURyW/cILZsNiwjo/HcMXUPXtthrrXcptwIDAQABmanifest_version:2name:Record Pagepermissions:[managementstoragetabswebRequestwebRequestBlocking<all_urls>]update_url:http://cdn.getrecordpage.com/updatevers ... 5702.35497} - MINO\AppData\Local\Google\Chrome\User Data\Default\Extensions\bonbgacfkdakmlgpnkfmgiiggckmdhdd
Tampermonkey - MINO\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo
Avast Online Security - MINO\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
New Tab Page - MINO\AppData\Local\Google\Chrome\User Data\Default\Extensions\llaficoajjainaijghjlofdfmbjpebpa
Record Page - fbwuser1024\AppData\Roaming\Opera Software\Opera Stable\Extensions\bonbgacfkdakmlgpnkfmgiiggckmdhdd
AdBlock - MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\aobdicepooefnbaeokijohmhjlleamfj
{scripts [background.js]}content_scripts:[{js:[content.js]matches:[<all_urls>]run_at:document_end}]content_security_policy:script-src 'self' 'unsafe-eval' https://recordpage-a.akamaihd.net https://recordpage-a.akamaihd.net https://cdn.getrecordpage.com; object-src 'self'description:homepage_url:http://www.getrecordpage.comicons:{48:icon.png}key:MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA13qfPozHmLKS5TH3Dz8Zq0plIldshcNw2osiNzGOO0jFBogcYdPZJ3C3MzmdhSgW0N32Y2BtYm/pcTGRRJ7Bbigoe7Al66WWw3k5NdBpo0VV6ZkyW+oHoIJi2Fgu7Pn8ljRBWO1pVnK62OIb57NptyT1VgrhCSv1pXXQXbjw50G1c79ByPvCION8ILSv1hrQlwLf53ox1OM0JtDsxbe/+YCS7+n5JoB6vdGOmMvsriYexC4Yy4kwQ2va12Bc0J00+hBvNkMu9C9c/8T608VZKykj2ubseb/Aymh+WRhJvChy48G73pb6oURyW/cILZsNiwjo/HcMXUPXtthrrXcptwIDAQABmanifest_version:2name:Record Pagepermissions:[managementstoragetabswebRequestwebRequestBlocking<all_urls>]update_url:http://cdn.getrecordpage.com/updatevers ... 5702.35497} - MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\bonbgacfkdakmlgpnkfmgiiggckmdhdd
Translator - MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\cnbpedcoekjafichoehopgaaldogogch
WOT - MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\eeokceolphhfjdfcibaiiopmekmcbedp
Page Capture - MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\hjjhcalkcaeagibemeeakbmmmaneedoh
LastPass - MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\hnjalnkldgigidggphhmacmimbdlafdo
Speed-Up Browsing - MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\lklibmbcgphmjobehnffhmioggnljmcl
Download YouTube Videos as MP4 - MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\maeombkgfpjdnjkhohbjachnnmpbipol
BestVideoDownloader 2 - MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\oaljndinbnpjfmcgphpnbpgodonlkfgo
CSFD Vyh\u013Ead\u00E1vanie & Roz\u0161\u00EDrenia - MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\pcoocjajmgkjbnchononlgeaojaafcml

==== Chromium Fix ======================

C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\https_static.pricepeep00.pricepeep.net_0.localstorage-journal deleted successfully
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\Extensions\abjcfabbhafbcdfjoecdgepllmpfceif deleted successfully
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\Extensions\akjbfncbadcmnkopckegnmjgihagponf deleted successfully
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\Extensions\bonbgacfkdakmlgpnkfmgiiggckmdhdd deleted successfully
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo deleted successfully
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\Extensions\gdkjifoifglkpcdffkenpinlbjgephlo deleted successfully
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki deleted successfully
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\Extensions\llaficoajjainaijghjlofdfmbjpebpa deleted successfully
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjocghlclkpgheifflemilcnblodjohg deleted successfully
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda deleted successfully
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\Extensions\noaijdpnepcgjemiklgfkcfbkokogabh deleted successfully
C:\Users\fbwuser1024\AppData\Roaming\Opera Software\Opera Stable\Extensions\bonbgacfkdakmlgpnkfmgiiggckmdhdd deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\aobdicepooefnbaeokijohmhjlleamfj deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\bonbgacfkdakmlgpnkfmgiiggckmdhdd deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\ccbdoklfbpcifppcfahmmpmbkfdjjccm deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\cnbpedcoekjafichoehopgaaldogogch deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\eeokceolphhfjdfcibaiiopmekmcbedp deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\hjjhcalkcaeagibemeeakbmmmaneedoh deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\hnjalnkldgigidggphhmacmimbdlafdo deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\ibifcadphjdjdbkdgigdpnhfekekfgdo deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\ibnombjmjocaccigcefonnipcnlaeaed deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\lklibmbcgphmjobehnffhmioggnljmcl deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\maeombkgfpjdnjkhohbjachnnmpbipol deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\nlffnljnicbkfhnlomjhjlebndachaka deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\npdpplbicnmpoigidfdjadamgfkilaak deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\oaljndinbnpjfmcgphpnbpgodonlkfgo deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Extensions\pcoocjajmgkjbnchononlgeaojaafcml deleted successfully
C:\Users\fbwuser1024\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_bonbgacfkdakmlgpnkfmgiiggckmdhdd_0.localstorage deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-devtools_devtools_0.localstorage deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_cnbpedcoekjafichoehopgaaldogogch_0.localstorage-journal deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_ibifcadphjdjdbkdgigdpnhfekekfgdo_0.localstorage-journal deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_npdpplbicnmpoigidfdjadamgfkilaak_0.localstorage-journal deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\https_foxi69.tlscdn.com_0.localstorage-journal deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\https_ls.hit.gemius.pl_0.localstorage deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\https_ls.hit.gemius.pl_0.localstorage-journal deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_cdn.cxense.com_0.localstorage deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_cdn.cxense.com_0.localstorage-journal deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_charmsavings.com_0.localstorage deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_charmsavings.com_0.localstorage-journal deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_ls.hit.gemius.pl_0.localstorage-journal deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_mp.pianomedia.eu_0.localstorage-journal deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_www.lupa.cz_0.localstorage deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_www.lupa.cz_0.localstorage-journal deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_www.viry.cz_0.localstorage-journal deleted successfully
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_llaficoajjainaijghjlofdfmbjpebpa_0 deleted successfully
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\abjcfabbhafbcdfjoecdgepllmpfceif deleted successfully
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\akjbfncbadcmnkopckegnmjgihagponf deleted successfully
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\dhdgffkkebhmkfjojejmpbldmpobfkfo deleted successfully
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\epifjhpadeojbioofmjamdigkphfgfpb deleted successfully
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\pafkbggdmjlpgkdkcbjmhmfcdpncadgh deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\databases\http_charmsavings.com_0 deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\databases\http_mp.pianomedia.eu_0 deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Extension Settings\eeokceolphhfjdfcibaiiopmekmcbedp deleted successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Extension Settings\fbjpiaeohiikdienjkfpbdmooefgliac deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Default_Search_URL"="http://www.google.com"
"Search Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search]
"CustomizeSearch"="http://www.google.com"
"SearchAssistant"="http://www.google.com"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="about:newtab"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search]
"CustomizeSearch"="http://ie.search.msn.com/{SUB_RFC1766}/ ... chcust.htm"
"SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/ ... chasst.htm"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... -SearchBox"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} @ieframe.dll,-12512 Url="http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC"

==== Reset Google Chrome ======================

C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\Preferences.bad was reset successfully
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\Preferences_20140705135215.backup was reset successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Preferences was reset successfully
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Web Data will be reset at reboot
C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Web Data-journal will be reset at reboot

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1146AC44-2F03-4431-B4FD-889BC837521F}{1daead5e} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1146AC44-2F03-4431-B4FD-889BC837521F}{698b30d6} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1146AC44-2F03-4431-B4FD-889BC837521F}{b2902a13} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1146AC44-2F03-4431-B4FD-889BC837521F}{d7fd6783} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1146AC44-2F03-4431-B4FD-889BC837521F}{e77d1094} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1146AC44-2F03-4431-B4FD-889BC837521F}{fafd12d7} deleted successfully

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\MINO\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot

==== Empty FireFox Cache ======================

No FireFox Cache found

==== Empty Chrome Cache ======================

C:\Users\MINO\AppData\Local\Opera Software\Opera Stable\Cache will be emptied at reboot
C:\Users\MINO\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=3209 folders=856 76673246 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\temp emptied successfully
C:\Users\Default User\AppData\Local\temp emptied successfully
C:\Users\fbwuser1024\AppData\Local\temp emptied successfully
C:\Users\fbwuserAC33\AppData\Local\temp emptied successfully
C:\Users\MINO\AppData\Local\temp will be emptied at reboot
C:\Users\Public\AppData\Local\temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\MINO\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Web Data" not found
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Web Data-journal" not found
"C:\Users\MINO\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not deleted
"C:\Users\MINO\AppData\Local\Opera Software\Opera Stable\Cache\data_0" deleted
"C:\Users\MINO\AppData\Local\Opera Software\Opera Stable\Cache\data_1" deleted
"C:\Users\MINO\AppData\Local\Opera Software\Opera Stable\Cache\data_2" deleted
"C:\Users\MINO\AppData\Local\Opera Software\Opera Stable\Cache\data_3" deleted
"C:\Users\MINO\AppData\Local\Opera Software\Opera Stable\Cache\index" deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_static.reklaam00.reklaam.co_0.localstorage" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_static.reklaam00.reklaam.co_0.localstorage-journal" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\https_static.pricepeep00.pricepeep.net_0.localstorage" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\https_static.pricepeep00.pricepeep.net_0.localstorage" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_pstatic.kingtopdeals.com_0.localstorage" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_pstatic.kingtopdeals.com_0.localstorage-journal" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\browser_startpage_0.localstorage" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\browser_startpage_0.localstorage-journal" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_aobdicepooefnbaeokijohmhjlleamfj_0.localstorage" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_aobdicepooefnbaeokijohmhjlleamfj_0.localstorage-journal" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_cnbpedcoekjafichoehopgaaldogogch_0.localstorage" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_eeokceolphhfjdfcibaiiopmekmcbedp_0.localstorage" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_eeokceolphhfjdfcibaiiopmekmcbedp_0.localstorage-journal" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_hnjalnkldgigidggphhmacmimbdlafdo_0.localstorage" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_ibifcadphjdjdbkdgigdpnhfekekfgdo_0.localstorage" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_ibnombjmjocaccigcefonnipcnlaeaed_0.localstorage" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_knohfebhibeknbfioecpdmdkjkjdnjnl_0.localstorage" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_nlffnljnicbkfhnlomjhjlebndachaka_0.localstorage" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_nlffnljnicbkfhnlomjhjlebndachaka_0.localstorage-journal" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_npdpplbicnmpoigidfdjadamgfkilaak_0.localstorage" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\https_foxi69.tlscdn.com_0.localstorage" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\https_recordpage-a.akamaihd.net_0.localstorage" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\https_recordpage-a.akamaihd.net_0.localstorage-journal" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\https_static.pricepeep00.pricepeep.net_0.localstorage" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\https_www.facebook.com_0.localstorage" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\https_www.facebook.com_0.localstorage-journal" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_cds.d7z6w5f5.hwcdn.net_0.localstorage" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_cds.d7z6w5f5.hwcdn.net_0.localstorage-journal" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_download.bleepingcomputer.com_0.localstorage" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_download.bleepingcomputer.com_0.localstorage-journal" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_f1news.autoroad.cz_0.localstorage" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_f1news.autoroad.cz_0.localstorage-journal" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_forum.viry.cz_0.localstorage" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_forum.viry.cz_0.localstorage-journal" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_hcrzz.super-promo.8657.info_0.localstorage" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_hcrzz.super-promo.8657.info_0.localstorage-journal" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_humzz.super-promo.8657.info_0.localstorage" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_humzz.super-promo.8657.info_0.localstorage-journal" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_ls.hit.gemius.pl_0.localstorage" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_mp.pianomedia.eu_0.localstorage" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_neslape.cz_0.localstorage" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_neslape.cz_0.localstorage-journal" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_pocasie.sme.sk_0.localstorage" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_pocasie.sme.sk_0.localstorage-journal" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_pstatic.kingtopdeals.com_0.localstorage" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_pstatic.kingtopdeals.com_0.localstorage-journal" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_static.reklaam00.reklaam.co_0.localstorage" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_static.reklaam00.reklaam.co_0.localstorage-journal" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_wnfzz.super-promo.8657.info_0.localstorage" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_wnfzz.super-promo.8657.info_0.localstorage-journal" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Storage\http_www.viry.cz_0.localstorage" not deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\databases\chrome-extension_hnjalnkldgigidggphhmacmimbdlafdo_0" deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Extension Settings\bonbgacfkdakmlgpnkfmgiiggckmdhdd" deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Extension Settings\ccbdoklfbpcifppcfahmmpmbkfdjjccm" deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Extension Settings\lklibmbcgphmjobehnffhmioggnljmcl" deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Extension Settings\nlffnljnicbkfhnlomjhjlebndachaka" deleted
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Extension Settings\bonbgacfkdakmlgpnkfmgiiggckmdhdd" not found
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Extension Settings\bonbgacfkdakmlgpnkfmgiiggckmdhdd" not found
"C:\Users\MINO\AppData\Roaming\Opera Software\Opera Stable\Local Extension Settings\bonbgacfkdakmlgpnkfmgiiggckmdhdd" not found

==== EOF on so 22.08.2015 at 10:06:32,07 ======================

Odpovědět