Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Problémy s prohlížeči

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Pivl
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 28 kvě 2014 20:20

Problémy s prohlížeči

#1 Příspěvek od Pivl »

Ahoj,
mám neustálé problémy s prohlížeči. Jak Chrome, tak Firefox odmítají nahrát stránky: Google, Facebook, a Yahoo. Při jejich načtení se objeví ookno s tím, že musím aktualizovat svůj Flash Player, který ale aktualizovaný mám a ať na dané stránce kliknu na cokoliv, vyjede mi stahování, které se zasekne a aAvast ohlásí přítomnost malwaru.
Zkoušel jsem odstranit všechny doplňky z obou prohlížečů, prohlížeče reinstalovat a avast mi při testování našel dva malwary, ty jsem oba vložil do truhly, bohužel problém stále přetvává.
Kromě toho se mi objevují všude kolem v prohlížeči reklamy. Vážně už nevím co s tím, prosím zkuste poradit.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119541
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Problémy s prohlížeči

#2 Příspěvek od Rudy »

Zdravím!
Zkuste tento postup: http://forum.viry.cz/viewtopic.php?f=13&t=133100 .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Pivl
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 28 kvě 2014 20:20

Re: Problémy s prohlížeči

#3 Příspěvek od Pivl »

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 25-05-2014 02
Ran by PC (administrator) on PC-PC on 29-05-2014 17:57:08
Running from C:\Users\PC\Desktop
Platform: Windows Vista (TM) Home Basic Service Pack 2 (X64) OS Language: Czech
Internet Explorer Version 9
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(AMD) C:\Windows\System32\atiesrxx.exe
(Microsoft Corporation) C:\Windows\System32\SLsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
() C:\Program Files (x86)\Cyberlink\Shared files\RichVideo.exe
(Clarus, Inc.) C:\Program Files (x86)\Clarus\Samsung Drive Manager\SZDrvSvc.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.23.9\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.23.9\GoogleCrashHandler64.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\WPF\WPFFontCache_v0400.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Windows\System32\msiexec.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCui.exe
(LG Electronics) C:\Users\PC\Bluebirds\BlueBirds.exe
(Clarus, Inc.) C:\Program Files (x86)\Clarus\Samsung Drive Manager\ABRTMon.exe
(InstallShield Software Corporation) C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\ScanSoft\OmniPageSE4\OpWareSE4.exe
(Bandoo Media, inc) C:\Program Files (x86)\Windows iLivid Toolbar\Datamngr\datamngrUI.exe
(Clarus, Inc.) C:\Program Files (x86)\Clarus\Samsung Drive Manager\Drive Manager.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Microsoft Corporation) C:\Windows\splwow64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\PC\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\SysWOW64\conime.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [Windows Defender] => C:\Program Files\Windows Defender\MSASCui.exe [1584184 2008-01-19] (Microsoft Corporation)
HKLM\...\Run: [CanonSolutionMenu] => "C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe" /logon
HKLM\...\Run: [CanonMyPrinter] => C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2774160 2012-08-09] (CANON INC.)
HKLM\...\Run: [MRT] => C:\Windows\system32\MRT.exe [93223848 2014-05-04] (Microsoft Corporation)
HKLM-x32\...\Run: [ISUSScheduler] => C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe [81920 2005-02-16] (InstallShield Software Corporation)
HKLM-x32\...\Run: [UpdatePDRShortCut] => C:\Program Files (x86)\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe [218408 2008-12-03] (CyberLink Corp.)
HKLM-x32\...\Run: [SSBkgdUpdate] => C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [210472 2006-10-25] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [OpwareSE4] => C:\Program Files (x86)\ScanSoft\OmniPageSE4\OpwareSE4.exe [79400 2007-02-04] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [DATAMNGR] => C:\Program Files (x86)\Windows iLivid Toolbar\Datamngr\datamngrUI.exe [1694608 2011-12-06] (Bandoo Media, inc)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [641704 2012-11-16] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2012-10-25] (Apple Inc.)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59280 2012-10-11] (Apple Inc.)
HKLM-x32\...\Run: [Smart File Advisor] => C:\Program Files (x86)\Smart File Advisor\sfa.exe [283712 2013-07-24] (Filefacts.net)
HKLM-x32\...\Run: [Clarus Drive Manager] => C:\Program Files (x86)\Clarus\Samsung Drive Manager\Drive Manager.exe [8131136 2013-06-07] (Clarus, Inc.)
HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1282120 2013-05-02] (CANON INC.)
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [453736 2013-02-19] (CANON INC.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [3888648 2014-05-28] (AVAST Software)
HKU\S-1-5-19\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\S-1-5-20\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\S-1-5-21-3901715730-3605395407-1887975702-1000\...\Run: [bluebirds] => C:\Users\PC\Bluebirds\BlueBirds.exe [270336 2009-04-29] (LG Electronics)
HKU\S-1-5-21-3901715730-3605395407-1887975702-1000\...\Run: [ISUSPM Startup] => C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe [196608 2004-04-17] (InstallShield Software Corporation)
HKU\S-1-5-21-3901715730-3605395407-1887975702-1000\...\MountPoints2: {1425e36c-584d-11e3-a08f-ce5d8f434a97} - G:\setup.exe
HKU\S-1-5-21-3901715730-3605395407-1887975702-1000\...\MountPoints2: {1425e373-584d-11e3-a08f-ce5d8f434a97} - G:\Autorun.exe
HKU\S-1-5-21-3901715730-3605395407-1887975702-1000\...\MountPoints2: {e65f84fd-973f-11e3-a2ab-e0b7e6fa4ca4} - H:\LaunchU3.exe -a
AppInit_DLLs: C:\PROGRA~2\WI371A~1\Datamngr\x64\datamngr.dll => C:\Program Files (x86)\Windows iLivid Toolbar\Datamngr\x64\datamngr.dll [1778584 2011-12-06] (Bandoo Media, inc)
AppInit_DLLs: C:\PROGRA~2\WI371A~1\Datamngr\x64\IEBHO.dll => C:\Program Files (x86)\Windows iLivid Toolbar\Datamngr\x64\IEBHO.dll [1791384 2011-12-06] (Bandoo Media, inc)
AppInit_DLLs: C:\PROGRA~3\CONTEN~1\CONTEN~2.DLL => C:\ProgramData\Content Accelerator\ContentAccelerator_x64.dll [4326400 2013-12-28] ()
AppInit_DLLs-x32: c:\progra~2\wi371a~1\datamngr\datamngr.dll => C:\Program Files (x86)\Windows iLivid Toolbar\Datamngr\datamngr.dll [1236368 2011-12-06] (Bandoo Media, inc)
AppInit_DLLs-x32: c:\progra~2\wi371a~1\datamngr\iebho.dll => C:\Program Files (x86)\Windows iLivid Toolbar\Datamngr\IEBHO.dll [1233816 2011-12-06] (Bandoo Media, inc)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Samsung Drive Manager Real-Time.lnk
ShortcutTarget: Samsung Drive Manager Real-Time.lnk -> C:\Program Files (x86)\Clarus\Samsung Drive Manager\ABRTMon.exe (Clarus, Inc.)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com/search?q={searchT ... d=ie7&rlz=
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKCU\Software\Microsoft\Internet Explorer\Main,ICQ Search = http://www.icq.com/search/results.php?q ... &ch_id=osd
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com
URLSearchHook: HKLM-x32 - Default Value = {855F3B16-6D32-4fe6-8A56-BBB695989046}
URLSearchHook: HKLM-x32 - (No Name) - {855F3B16-6D32-4fe6-8A56-BBB695989046} - No File
URLSearchHook: HKLM-x32 - (No Name) - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - No File
URLSearchHook: HKLM-x32 - (No Name) - {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - No File
URLSearchHook: HKCU - (No Name) - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - No File
URLSearchHook: HKCU - (No Name) - {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - No File
URLSearchHook: HKCU - (No Name) - {94366e2c-9923-431c-b0d6-747447dd0f2b} - No File
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://dts.search-results.com/sr?src=ie ... earchTerms}
SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://dts.search-results.com/sr?src=ie ... earchTerms}
SearchScopes: HKLM-x32 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://dts.search-results.com/sr?src=ie ... earchTerms}
SearchScopes: HKLM-x32 - {9CB96984-43C3-4D44-90EF-01466EFCF7BB} URL = http://us.yhs4.search.yahoo.com/yhs/sea ... earchTerms}
SearchScopes: HKLM-x32 - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://search.conduit.com/ResultsExt.as ... =CT2790392
SearchScopes: HKLM-x32 - {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.coolwebsearch.info/?un ... earchTerms}
SearchScopes: HKLM-x32 - {EEE6C360-6118-11DC-9C72-001320C79847} URL = http://search.sweetim.com/search.asp?sr ... =4.0005002
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://www.delta-search.com/?q={searchT ... 1&tsp=5037
SearchScopes: HKCU - {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} URL = http://websearch.ask.com/redirect?clien ... 754E33B648
SearchScopes: HKCU - {6552C7DD-90A4-4387-B795-F8F96747DE19} URL = http://www.icq.com/search/results.php?q ... &ch_id=osd
SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://dts.search-results.com/sr?src=ie ... earchTerms}
SearchScopes: HKCU - {9CB96984-43C3-4D44-90EF-01466EFCF7BB} URL = http://us.yhs4.search.yahoo.com/yhs/sea ... earchTerms}
SearchScopes: HKCU - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://search.conduit.com/ResultsExt.as ... =CT2790392
SearchScopes: HKCU - {B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD} URL = http://eu.ask.com/web?l=dis&o=16552&gct ... earchTerms}
SearchScopes: HKCU - {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.coolwebsearch.info/?un ... earchTerms}
SearchScopes: HKCU - {EEE6C360-6118-11DC-9C72-001320C79847} URL = http://search.sweetim.com/search.asp?sr ... =4.0005002
BHO: ChoeapMe - {1076E192-1739-6F6D-043F-B70AA826885D} - C:\ProgramData\ChoeapMe\w.x64.dll ()
BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\addon64\ewpexbho.dll (CANON INC.)
BHO: No Name - {5188F727-1B10-9CC0-089E-47C2EAC7EBA7} - No File
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: No Name - {9B04BE5F-1460-108C-C581-CFA5D5C00535} - No File
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: No Name - {FB96EA96-BB9B-7AED-494C-9E8ED4B6CCBB} - No File
BHO-x32: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.)
BHO-x32: No Name - {5188F727-1B10-9CC0-089E-47C2EAC7EBA7} - No File
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: No Name - {9B04BE5F-1460-108C-C581-CFA5D5C00535} - No File
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: No Name - {FB96EA96-BB9B-7AED-494C-9E8ED4B6CCBB} - No File
Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\addon64\ewpexhlp.dll (CANON INC.)
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
Toolbar: HKCU - No Name - {FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5} - No File
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - No File
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Winsock: Catalog5 02 C:\Windows\SysWOW64\napinsp.dll [50176] (Společnost Microsoft)
Winsock: Catalog5-x64 02 %SystemRoot%\system32\napinsp.dll [62976] (Společnost Microsoft)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 23.253.94.129 128.199.225.64

FireFox:
========
FF ProfilePath: C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkd3nnaf.default
FF SearchEngineOrder.1: Google
FF SearchEngineOrder.user_pref("browser.search.order.1,S", "WebSearch");: user_pref("browser.search.order.1,S", "WebSearch");
FF SelectedSearchEngine: Google
FF Homepage: www.google.com
FF Keyword.URL: https://www.google.com/search
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll ()
FF Plugin: @java.com/DTPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/WPF,version=3.5 - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.3 - D:\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\PC\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll No File
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\np-mswmp.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\np32dsw.dll (Adobe Systems, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin6.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin7.dll (Apple Inc.)
FF SearchPlugin: C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkd3nnaf.default\searchplugins\askcom.xml
FF SearchPlugin: C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkd3nnaf.default\searchplugins\askcomsearch.xml
FF SearchPlugin: C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkd3nnaf.default\searchplugins\conduit.xml
FF SearchPlugin: C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkd3nnaf.default\searchplugins\icqplugin.xml
FF SearchPlugin: C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkd3nnaf.default\searchplugins\Search_Results.xml
FF SearchPlugin: C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkd3nnaf.default\searchplugins\sweetim.xml
FF SearchPlugin: C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkd3nnaf.default\searchplugins\WebSearch.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: No Name - C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkd3nnaf.default\Extensions\staged [2013-12-16]
FF Extension: DownloadHelper - C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkd3nnaf.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2014-04-12]
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2014-04-13]
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2014-04-13]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2012-01-26]
FF HKLM-x32\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ []

Chrome:
=======
CHR Extension: (Docs) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-05-28]
CHR Extension: (Disk Google) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-05-28]
CHR Extension: (YouTube) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-05-28]
CHR Extension: (Vyhledávání Google) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-05-28]
CHR Extension: (UiTuberAdBlocker) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbkmmidecmdejafiholeeojjiodpiikf [2014-05-28]
CHR Extension: (avast! Online Security) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-05-28]
CHR Extension: (Gmail) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-05-28]
CHR Extension: (Fun2SSaVVE) - C:\ProgramData\aehenbmghollbmbcddandjakcngmdiff [2014-01-01]
CHR HKLM-x32\...\Chrome\Extension: [ajhcekcffkpnaednoeoegnmnjdlnjjmg] - C:\ProgramData\TheBflix\ajhcekcffkpnaednoeoegnmnjdlnjjmg.crx [2012-03-05]
CHR HKLM-x32\...\Chrome\Extension: [fgnippahjheicjenccifemomfgjofdhp] - C:\ProgramData\TheBflix\fgnippahjheicjenccifemomfgjofdhp.crx [2012-04-01]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-05-28]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-05-14]
CHR HKLM-x32\...\Chrome\Extension: [mhfdcmehmjcclgopdodkjdicohagipid] - C:\Users\PC\AppData\Local\Temp\ccex.crx [2013-05-14]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Services (Whitelisted) =================

R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2012-11-16] (Advanced Micro Devices, Inc.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-05-28] (AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [109048 2014-05-28] (AVAST Software)
R2 RichVideo; C:\Program Files (x86)\Cyberlink\Shared files\RichVideo.exe [247152 2009-04-17] ()
R2 SZDrvSvc; C:\Program Files (x86)\Clarus\Samsung Drive Manager\SZDrvSvc.exe [19456 2013-06-05] (Clarus, Inc.)
S3 McComponentHostService; "C:\Program Files\McAfee Security Scan\3.8.141\McCHSvc.exe" [X]

==================== Drivers (Whitelisted) ====================

R0 amdide64; C:\Windows\System32\DRIVERS\amdide64.sys [10632 2008-08-06] (Advanced Micro Devices)
R2 AODDriver4.1; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [53888 2012-03-05] (Advanced Micro Devices)
R3 arusb_lhx; C:\Windows\System32\DRIVERS\arusb_lhx.sys [598528 2010-06-01] (Atheros Communications, Inc.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-05-28] ()
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [28184 2014-05-28] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-05-28] (AVAST Software)
R0 aswNdis; C:\Windows\System32\DRIVERS\aswNdis.sys [12368 2012-02-23] (ALWIL Software)
R0 aswNdis2; C:\Windows\System32\Drivers\aswNdis2.sys [329456 2014-05-28] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr.sys [64752 2014-05-28] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-05-28] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1039096 2014-05-28] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [423240 2014-05-28] (AVAST Software)
R1 aswTdi; C:\Windows\system32\drivers\aswTdi.sys [65264 2014-05-28] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [208416 2014-05-28] ()
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2013-11-28] (Disc Soft Ltd)
R0 FltMgr; C:\Windows\System32\drivers\fltmgr.sys [275432 2009-04-11] (Společnost Microsoft)
R3 Ntfs; C:\Windows\System32\Drivers\Ntfs.sys [1513320 2013-03-03] (Společnost Microsoft)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [381440 2013-10-16] (Duplex Secure Ltd.)
U3 aywsdmiy; No ImagePath
S4 blbdrive; \SystemRoot\system32\drivers\blbdrive.sys [X]
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 mdf16; \??\C:\Users\PC\AppData\Local\Temp\mdf16.sys [X]
S3 mvd23; \??\C:\Users\PC\AppData\Local\Temp\mvd23.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-05-29 17:57 - 2014-05-29 17:57 - 00025187 _____ () C:\Users\PC\Desktop\FRST.txt
2014-05-29 17:56 - 2014-05-29 17:57 - 00000000 ____D () C:\FRST
2014-05-29 17:56 - 2014-05-29 17:54 - 00112640 _____ (forum.viry.cz) C:\Users\PC\Desktop\FRSTLauncher.exe
2014-05-29 17:54 - 2014-05-29 17:54 - 00112640 _____ (forum.viry.cz) C:\Users\PC\Downloads\FRSTLauncher.exe
2014-05-29 17:53 - 2014-05-29 17:53 - 02066944 _____ (Farbar) C:\Users\PC\Downloads\FRST64.exe
2014-05-29 17:53 - 2014-05-29 17:53 - 02066944 _____ (Farbar) C:\Users\PC\Desktop\FRST64.exe
2014-05-29 17:45 - 2014-05-29 17:45 - 00000000 ____D () C:\Users\Mamina\AppData\Roaming\AVAST Software
2014-05-28 21:15 - 2014-05-28 21:14 - 00313256 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-05-28 21:14 - 2014-05-28 21:14 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-05-28 21:14 - 2014-05-28 21:14 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-05-28 21:14 - 2014-05-28 21:14 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2014-05-28 19:51 - 2014-05-28 19:54 - 27769568 _____ (Microsoft Corporation) C:\Users\PC\Downloads\Windows-KB890830-x64-V5.12.exe
2014-05-28 19:35 - 2014-05-28 19:35 - 00002025 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-05-28 19:35 - 2014-05-28 19:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-05-28 19:30 - 2014-05-28 19:33 - 38159360 _____ () C:\Users\PC\Desktop\GoogleChromeStandaloneEnterprise.msi
2014-05-28 19:03 - 2014-05-29 17:47 - 00000886 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-05-28 19:03 - 2014-05-29 17:21 - 00000890 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-05-28 19:03 - 2014-05-28 19:03 - 00003886 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-05-28 19:03 - 2014-05-28 19:03 - 00003634 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-05-28 18:54 - 2014-05-28 18:54 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-05-28 18:54 - 2014-05-28 18:54 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-05-28 18:54 - 2014-05-28 18:54 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-05-28 18:54 - 2014-05-28 18:54 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-05-28 18:52 - 2014-05-29 17:00 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-05-28 18:52 - 2014-05-28 18:52 - 00003766 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-05-28 17:13 - 2014-05-28 17:13 - 00001835 _____ () C:\Users\Public\Desktop\avast! Internet Security.lnk
2014-05-28 17:12 - 2014-05-28 17:12 - 00001047 _____ () C:\Users\PC\Desktop\FixMyRegistry.lnk
2014-05-28 17:09 - 2014-05-28 17:08 - 00329456 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNdis2.sys
2014-05-28 17:09 - 2014-05-28 17:08 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-05-28 17:09 - 2014-04-13 15:35 - 00000426 _____ () C:\AVScanner.ini
2014-05-28 17:08 - 2014-05-28 17:08 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-05-28 15:44 - 2014-05-28 16:31 - 419387392 _____ () C:\Users\PC\Downloads\Htra.o.trůny.S04E03.CZ.avi
2014-05-27 18:37 - 2014-05-27 18:50 - 00000000 ____D () C:\Users\PC\Desktop\Septima vs kvinta
2014-05-27 18:12 - 2014-05-27 18:13 - 00000000 ____D () C:\Users\PC\Desktop\septima-kvinta
2014-05-27 17:00 - 2014-05-27 17:11 - 142406826 _____ () C:\Users\PC\Downloads\septima-kvinta.zip
2014-05-27 16:49 - 2014-05-27 18:13 - 00000000 ____D () C:\Users\PC\Desktop\Kvarta vs 3.CB
2014-05-27 16:48 - 2014-05-27 16:48 - 00000000 ____D () C:\Users\PC\Desktop\fočus
2014-05-27 16:41 - 2014-05-27 16:45 - 38267279 _____ () C:\Users\PC\Downloads\fočus.zip
2014-05-27 16:11 - 2014-05-27 16:41 - 00000000 ____D () C:\Users\PC\Desktop\3.C vs 3.B
2014-05-27 15:56 - 2014-05-27 15:56 - 00000000 ____D () C:\Users\PC\Desktop\3.c-3.b
2014-05-27 15:32 - 2014-05-27 15:56 - 00000000 ____D () C:\Users\PC\Desktop\Kvinta vs 1.C
2014-05-27 15:24 - 2014-05-27 15:56 - 415102905 _____ () C:\Users\PC\Downloads\3.c-3.b.zip
2014-05-25 22:14 - 2014-05-25 22:15 - 13084896 _____ (Microsoft Corporation) C:\Users\PC\Downloads\Silverlight_x64 (1).exe
2014-05-25 22:11 - 2014-05-25 22:13 - 13084896 _____ (Microsoft Corporation) C:\Users\PC\Downloads\Silverlight_x64.exe
2014-05-25 16:40 - 2014-05-25 17:26 - 407060480 _____ () C:\Users\PC\Downloads\Hra.o.trůny.S04E05.cz.avi
2014-05-25 15:27 - 2014-05-25 16:14 - 419491840 _____ () C:\Users\PC\Downloads\Hra.o.trůny.S04E04.CZ.avi
2014-05-25 14:02 - 2014-05-25 14:55 - 468110306 _____ () C:\Users\PC\Downloads\Hra-o-trůny-S04E03---Zbaveni-okovu-CZdab.avi
2014-05-25 07:36 - 2014-05-25 07:36 - 434037310 _____ () C:\Users\PC\Downloads\Hra-o-trůny-S04E03---Zbaveni-okovu-CZdab.avi.crdownload
2014-05-24 22:14 - 2014-05-24 23:26 - 656041146 _____ () C:\Users\PC\Downloads\Hra.o.trůny.S04E02..avi
2014-05-24 20:16 - 2014-05-24 21:20 - 698054870 _____ () C:\Users\PC\Downloads\hra_o_truny_s04e01_cz_dabing_novinky_2014.avi
2014-05-24 20:09 - 2014-05-24 20:10 - 00918672 _____ (Google Inc.) C:\Users\PC\Downloads\ChromeSetup.exe
2014-05-24 14:45 - 2014-05-24 14:45 - 00000000 ____D () C:\Users\PC\AppData\Local\Clarus
2014-05-23 19:22 - 2014-05-23 19:22 - 00078131 _____ () C:\Users\PC\Desktop\výhra.jpeg
2014-05-23 18:14 - 2014-05-28 18:39 - 00000000 ____D () C:\ProgramData\CheaopMe
2014-05-22 20:16 - 2014-05-22 20:17 - 03222441 _____ () C:\Users\PC\Downloads\-UserFiles-file-02_Metodika-06_EVR_po1945-Cernobyl_1986.pptx
2014-05-22 20:06 - 2014-05-25 21:27 - 00000000 ____D () C:\Users\PC\Desktop\Černobyl
2014-05-21 22:12 - 2014-05-21 22:14 - 27434251 _____ () C:\Users\PC\Downloads\1.-c-vs-kvarta.zip
2014-05-20 23:22 - 2014-05-20 23:39 - 118317750 _____ () C:\Users\PC\Downloads\Coldplay---Ghost-Stories---HEdition.rar
2014-05-17 21:27 - 2014-05-18 03:10 - 183804456 _____ () C:\Users\PC\Downloads\Jak-jsem-poznal-vaši-matku-4.série-CZ!.rar
2014-05-17 03:00 - 2014-05-06 02:46 - 17847808 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-05-17 03:00 - 2014-05-06 02:21 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-05-17 03:00 - 2014-05-06 02:21 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-05-17 03:00 - 2014-05-06 01:32 - 12347392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-05-17 03:00 - 2014-05-06 01:14 - 02382848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-05-17 03:00 - 2014-05-06 01:14 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-05-16 21:00 - 2014-05-17 01:56 - 3711462613 _____ () C:\Users\PC\Downloads\Jak-jsem-poznal-vaši-matku-3.-serie.rar
2014-05-16 14:52 - 2014-03-25 18:30 - 12900864 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-05-16 14:52 - 2014-03-25 15:26 - 11587584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-05-11 22:03 - 2014-05-11 22:21 - 136510704 _____ () C:\Users\PC\Documents\Produce_143.wmv
2014-05-11 21:31 - 2014-05-11 21:46 - 115542524 _____ () C:\Users\PC\Documents\Produce_142.wmv
2014-05-11 20:45 - 2014-05-11 21:23 - 115542524 _____ () C:\Users\PC\Documents\Produce_141.wmv
2014-05-11 19:39 - 2014-05-11 19:56 - 136470710 _____ () C:\Users\PC\Documents\Produce_140.wmv
2014-05-11 14:21 - 2014-05-11 23:18 - 00000000 ____D () C:\Users\PC\Desktop\Nová složka
2014-05-10 22:18 - 2014-05-11 20:45 - 00408250 _____ () C:\Users\PC\Documents\36 - Zpět v klášteře.pds
2014-05-10 22:07 - 2014-05-10 23:23 - 725692416 _____ () C:\Users\PC\Downloads\Cars---Auta-CZ.avi
2014-05-08 19:34 - 2014-05-08 19:55 - 155297050 _____ () C:\Users\PC\Downloads\Minecraft-1.7.9.zip
2014-05-08 19:28 - 2014-05-08 19:29 - 01106756 _____ () C:\Users\PC\Downloads\Minecraft-Warez-launcher-1.7.4.exe
2014-05-08 14:53 - 2014-05-18 22:07 - 00000000 ____D () C:\Users\PC\Desktop\Soutěž 10 výročí
2014-05-02 16:30 - 2014-05-02 16:30 - 00000000 ____D () C:\ProgramData\Electronic Arts
2014-05-02 16:29 - 2014-05-02 16:29 - 00362666 _____ () C:\Users\PC\AppData\Local\dd_vcredistMSI032C.txt
2014-05-02 16:29 - 2014-05-02 16:29 - 00011584 _____ () C:\Users\PC\AppData\Local\dd_vcredistUI032C.txt
2014-05-02 16:28 - 2014-05-28 21:00 - 00000000 ____D () C:\Users\PC\Documents\FIFA 14
2014-05-02 16:28 - 2014-05-02 16:28 - 00000892 _____ () C:\Users\Public\Desktop\FIFA 14.lnk
2014-05-02 16:28 - 2014-05-02 16:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FIFA 14
2014-05-01 20:42 - 2014-05-01 20:42 - 00007582 _____ () C:\Users\PC\Downloads\3590D4D32F6F83245DDAC20CB4185AEBD23B5144.torrent
2014-05-01 20:41 - 2014-05-01 20:41 - 00000000 _____ () C:\Users\PC\Downloads\[ www.Torrenting.com ] - Once.Upon.a.Time.S03E05.HDTV.XviD-AFG.torrent
2014-05-01 13:10 - 2014-05-01 13:10 - 00030867 _____ () C:\Users\PC\Downloads\[kickass.to]fifa.14.pc.full.game.v1.4.0.0.nosteam.torrent

==================== One Month Modified Files and Folders =======

2014-05-29 17:57 - 2014-05-29 17:57 - 00025187 _____ () C:\Users\PC\Desktop\FRST.txt
2014-05-29 17:57 - 2014-05-29 17:56 - 00000000 ____D () C:\FRST
2014-05-29 17:54 - 2014-05-29 17:56 - 00112640 _____ (forum.viry.cz) C:\Users\PC\Desktop\FRSTLauncher.exe
2014-05-29 17:54 - 2014-05-29 17:54 - 00112640 _____ (forum.viry.cz) C:\Users\PC\Downloads\FRSTLauncher.exe
2014-05-29 17:54 - 2006-11-02 17:17 - 00004048 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2014-05-29 17:54 - 2006-11-02 17:17 - 00004048 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2014-05-29 17:53 - 2014-05-29 17:53 - 02066944 _____ (Farbar) C:\Users\PC\Downloads\FRST64.exe
2014-05-29 17:53 - 2014-05-29 17:53 - 02066944 _____ (Farbar) C:\Users\PC\Desktop\FRST64.exe
2014-05-29 17:47 - 2014-05-28 19:03 - 00000886 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-05-29 17:46 - 2014-01-01 15:36 - 00000000 ____D () C:\ProgramData\aehenbmghollbmbcddandjakcngmdiff
2014-05-29 17:45 - 2014-05-29 17:45 - 00000000 ____D () C:\Users\Mamina\AppData\Roaming\AVAST Software
2014-05-29 17:45 - 2012-02-17 18:09 - 00069336 _____ () C:\Users\Mamina\AppData\Local\GDIPFONTCACHEV1.DAT
2014-05-29 17:21 - 2014-05-28 19:03 - 00000890 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-05-29 17:00 - 2014-05-28 18:52 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-05-29 09:47 - 2006-11-02 17:22 - 01969814 _____ () C:\Windows\WindowsUpdate.log
2014-05-29 07:54 - 2012-01-26 20:46 - 00357050 _____ () C:\Windows\PFRO.log
2014-05-29 07:54 - 2006-11-02 17:35 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-05-29 06:10 - 2013-03-24 20:49 - 00000000 ____D () C:\Users\PC\Downloads\PCPerformer-BitTorrent-a
2014-05-29 06:10 - 2012-01-28 21:02 - 00000225 _____ () C:\Users\PC\Downloads\FRAPS-Full-Version.rar
2014-05-29 05:35 - 2013-12-28 15:45 - 00000000 ____D () C:\ProgramData\Content Accelerator
2014-05-29 05:35 - 2013-04-07 18:05 - 00000000 ____D () C:\ProgramData\BurrowsEE2siave
2014-05-29 05:10 - 2006-11-02 17:35 - 00032550 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-05-28 21:14 - 2014-05-28 21:15 - 00313256 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-05-28 21:14 - 2014-05-28 21:14 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-05-28 21:14 - 2014-05-28 21:14 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-05-28 21:14 - 2014-05-28 21:14 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2014-05-28 21:00 - 2014-05-02 16:28 - 00000000 ____D () C:\Users\PC\Documents\FIFA 14
2014-05-28 20:03 - 2012-03-05 14:04 - 00000000 ____D () C:\ProgramData\TheBflix
2014-05-28 19:54 - 2014-05-28 19:51 - 27769568 _____ (Microsoft Corporation) C:\Users\PC\Downloads\Windows-KB890830-x64-V5.12.exe
2014-05-28 19:41 - 2012-03-05 14:04 - 00000000 ____D () C:\Program Files (x86)\SweetIM
2014-05-28 19:37 - 2012-01-26 20:33 - 00000000 ____D () C:\Users\PC\AppData\Local\Google
2014-05-28 19:35 - 2014-05-28 19:35 - 00002025 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-05-28 19:35 - 2014-05-28 19:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-05-28 19:34 - 2012-01-26 20:33 - 00000000 ____D () C:\Program Files (x86)\Google
2014-05-28 19:33 - 2014-05-28 19:30 - 38159360 _____ () C:\Users\PC\Desktop\GoogleChromeStandaloneEnterprise.msi
2014-05-28 19:03 - 2014-05-28 19:03 - 00003886 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-05-28 19:03 - 2014-05-28 19:03 - 00003634 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-05-28 18:54 - 2014-05-28 18:54 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-05-28 18:54 - 2014-05-28 18:54 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-05-28 18:54 - 2014-05-28 18:54 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-05-28 18:54 - 2014-05-28 18:54 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-05-28 18:53 - 2014-04-13 20:44 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-05-28 18:53 - 2012-01-26 21:13 - 00000000 ____D () C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-05-28 18:53 - 2012-01-26 21:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-05-28 18:53 - 2012-01-26 21:13 - 00000000 ____D () C:\Program Files (x86)\WinRAR
2014-05-28 18:52 - 2014-05-28 18:52 - 00003766 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-05-28 18:52 - 2012-04-05 20:24 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-05-28 18:52 - 2012-01-26 20:44 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-05-28 18:51 - 2012-02-05 10:58 - 00002425 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk
2014-05-28 18:44 - 2012-01-28 21:15 - 00000000 ____D () C:\ProgramData\Adobe
2014-05-28 18:41 - 2012-01-26 20:21 - 00000876 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-05-28 18:41 - 2012-01-26 20:21 - 00000876 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-05-28 18:39 - 2014-05-23 18:14 - 00000000 ____D () C:\ProgramData\CheaopMe
2014-05-28 17:13 - 2014-05-28 17:13 - 00001835 _____ () C:\Users\Public\Desktop\avast! Internet Security.lnk
2014-05-28 17:12 - 2014-05-28 17:12 - 00001047 _____ () C:\Users\PC\Desktop\FixMyRegistry.lnk
2014-05-28 17:12 - 2013-11-28 19:15 - 00000000 ____D () C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SmartTweak Software
2014-05-28 17:12 - 2013-11-28 19:15 - 00000000 ____D () C:\Program Files (x86)\SmartTweak
2014-05-28 17:11 - 2012-01-26 19:52 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-05-28 17:10 - 2012-01-26 20:33 - 01039096 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2014-05-28 17:10 - 2012-01-26 20:33 - 00423240 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2014-05-28 17:10 - 2012-01-26 20:33 - 00064752 _____ (AVAST Software) C:\Windows\system32\Drivers\aswrdr.sys
2014-05-28 17:09 - 2012-07-12 16:23 - 00003838 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-05-28 17:09 - 2006-11-02 15:33 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
2014-05-28 17:08 - 2014-05-28 17:09 - 00329456 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNdis2.sys
2014-05-28 17:08 - 2014-05-28 17:09 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-05-28 17:08 - 2014-05-28 17:08 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-05-28 17:08 - 2014-04-13 15:35 - 00208416 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-05-28 17:08 - 2014-04-13 15:35 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-05-28 17:08 - 2012-02-24 21:04 - 00028184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2014-05-28 17:08 - 2012-01-26 20:33 - 00065264 _____ (AVAST Software) C:\Windows\system32\Drivers\aswTdi.sys
2014-05-28 17:08 - 2012-01-26 20:32 - 00334648 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-05-28 17:08 - 2012-01-26 20:32 - 00079184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-05-28 16:54 - 2012-07-23 11:07 - 00000000 ____D () C:\Users\PC\AppData\Local\Last.fm
2014-05-28 16:52 - 2013-05-25 13:49 - 00000000 ____D () C:\Games
2014-05-28 16:45 - 2014-01-01 15:35 - 00000000 ____D () C:\ProgramData\3a4c7a2c444c2388
2014-05-28 16:31 - 2014-05-28 15:44 - 419387392 _____ () C:\Users\PC\Downloads\Htra.o.trůny.S04E03.CZ.avi
2014-05-28 15:37 - 2012-01-26 20:04 - 00001356 _____ () C:\Users\PC\AppData\Local\d3d9caps.dat
2014-05-27 20:01 - 2007-01-09 00:08 - 00673528 _____ () C:\Windows\system32\perfh005.dat
2014-05-27 20:01 - 2007-01-09 00:08 - 00152626 _____ () C:\Windows\system32\perfc005.dat
2014-05-27 20:01 - 2006-11-02 14:46 - 01619684 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-05-27 18:50 - 2014-05-27 18:37 - 00000000 ____D () C:\Users\PC\Desktop\Septima vs kvinta
2014-05-27 18:13 - 2014-05-27 18:12 - 00000000 ____D () C:\Users\PC\Desktop\septima-kvinta
2014-05-27 18:13 - 2014-05-27 16:49 - 00000000 ____D () C:\Users\PC\Desktop\Kvarta vs 3.CB
2014-05-27 17:11 - 2014-05-27 17:00 - 142406826 _____ () C:\Users\PC\Downloads\septima-kvinta.zip
2014-05-27 16:48 - 2014-05-27 16:48 - 00000000 ____D () C:\Users\PC\Desktop\fočus
2014-05-27 16:45 - 2014-05-27 16:41 - 38267279 _____ () C:\Users\PC\Downloads\fočus.zip
2014-05-27 16:41 - 2014-05-27 16:11 - 00000000 ____D () C:\Users\PC\Desktop\3.C vs 3.B
2014-05-27 15:56 - 2014-05-27 15:56 - 00000000 ____D () C:\Users\PC\Desktop\3.c-3.b
2014-05-27 15:56 - 2014-05-27 15:32 - 00000000 ____D () C:\Users\PC\Desktop\Kvinta vs 1.C
2014-05-27 15:56 - 2014-05-27 15:24 - 415102905 _____ () C:\Users\PC\Downloads\3.c-3.b.zip
2014-05-25 22:15 - 2014-05-25 22:14 - 13084896 _____ (Microsoft Corporation) C:\Users\PC\Downloads\Silverlight_x64 (1).exe
2014-05-25 22:13 - 2014-05-25 22:11 - 13084896 _____ (Microsoft Corporation) C:\Users\PC\Downloads\Silverlight_x64.exe
2014-05-25 21:27 - 2014-05-22 20:06 - 00000000 ____D () C:\Users\PC\Desktop\Černobyl
2014-05-25 17:26 - 2014-05-25 16:40 - 407060480 _____ () C:\Users\PC\Downloads\Hra.o.trůny.S04E05.cz.avi
2014-05-25 16:14 - 2014-05-25 15:27 - 419491840 _____ () C:\Users\PC\Downloads\Hra.o.trůny.S04E04.CZ.avi
2014-05-25 14:55 - 2014-05-25 14:02 - 468110306 _____ () C:\Users\PC\Downloads\Hra-o-trůny-S04E03---Zbaveni-okovu-CZdab.avi
2014-05-25 07:36 - 2014-05-25 07:36 - 434037310 _____ () C:\Users\PC\Downloads\Hra-o-trůny-S04E03---Zbaveni-okovu-CZdab.avi.crdownload
2014-05-24 23:26 - 2014-05-24 22:14 - 656041146 _____ () C:\Users\PC\Downloads\Hra.o.trůny.S04E02..avi
2014-05-24 21:20 - 2014-05-24 20:16 - 698054870 _____ () C:\Users\PC\Downloads\hra_o_truny_s04e01_cz_dabing_novinky_2014.avi
2014-05-24 20:10 - 2014-05-24 20:09 - 00918672 _____ (Google Inc.) C:\Users\PC\Downloads\ChromeSetup.exe
2014-05-24 14:45 - 2014-05-24 14:45 - 00000000 ____D () C:\Users\PC\AppData\Local\Clarus
2014-05-24 09:02 - 2012-01-26 21:22 - 00000000 ____D () C:\Users\PC\AppData\Roaming\Skype
2014-05-23 19:22 - 2014-05-23 19:22 - 00078131 _____ () C:\Users\PC\Desktop\výhra.jpeg
2014-05-23 17:54 - 2012-01-28 03:02 - 00005416 _____ () C:\Windows\system32\spsys.log
2014-05-22 20:17 - 2014-05-22 20:16 - 03222441 _____ () C:\Users\PC\Downloads\-UserFiles-file-02_Metodika-06_EVR_po1945-Cernobyl_1986.pptx
2014-05-22 19:49 - 2012-12-28 22:42 - 00000000 ____D () C:\Users\PC\Documents\Gothic3
2014-05-21 22:14 - 2014-05-21 22:12 - 27434251 _____ () C:\Users\PC\Downloads\1.-c-vs-kvarta.zip
2014-05-20 23:39 - 2014-05-20 23:22 - 118317750 _____ () C:\Users\PC\Downloads\Coldplay---Ghost-Stories---HEdition.rar
2014-05-18 22:07 - 2014-05-08 14:53 - 00000000 ____D () C:\Users\PC\Desktop\Soutěž 10 výročí
2014-05-18 03:10 - 2014-05-17 21:27 - 183804456 _____ () C:\Users\PC\Downloads\Jak-jsem-poznal-vaši-matku-4.série-CZ!.rar
2014-05-17 12:47 - 2012-08-24 22:33 - 00000000 ____D () C:\Users\PC\AppData\Roaming\.minecraft
2014-05-17 03:02 - 2013-08-14 03:02 - 00000000 ____D () C:\Windows\system32\MRT
2014-05-17 01:56 - 2014-05-16 21:00 - 3711462613 _____ () C:\Users\PC\Downloads\Jak-jsem-poznal-vaši-matku-3.-serie.rar
2014-05-11 23:18 - 2014-05-11 14:21 - 00000000 ____D () C:\Users\PC\Desktop\Nová složka
2014-05-11 22:21 - 2014-05-11 22:03 - 136510704 _____ () C:\Users\PC\Documents\Produce_143.wmv
2014-05-11 21:46 - 2014-05-11 21:31 - 115542524 _____ () C:\Users\PC\Documents\Produce_142.wmv
2014-05-11 21:23 - 2014-05-11 20:45 - 115542524 _____ () C:\Users\PC\Documents\Produce_141.wmv
2014-05-11 20:45 - 2014-05-10 22:18 - 00408250 _____ () C:\Users\PC\Documents\36 - Zpět v klášteře.pds
2014-05-11 19:56 - 2014-05-11 19:39 - 136470710 _____ () C:\Users\PC\Documents\Produce_140.wmv
2014-05-11 19:36 - 2012-01-31 21:28 - 00317286 _____ () C:\Users\PC\Documents\PDR.dmp
2014-05-10 23:23 - 2014-05-10 22:07 - 725692416 _____ () C:\Users\PC\Downloads\Cars---Auta-CZ.avi
2014-05-08 19:55 - 2014-05-08 19:34 - 155297050 _____ () C:\Users\PC\Downloads\Minecraft-1.7.9.zip
2014-05-08 19:29 - 2014-05-08 19:28 - 01106756 _____ () C:\Users\PC\Downloads\Minecraft-Warez-launcher-1.7.4.exe
2014-05-08 14:57 - 2012-01-26 21:09 - 00000000 ___RD () C:\Users\PC\Desktop\Moje složka
2014-05-06 02:46 - 2014-05-17 03:00 - 17847808 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-05-06 02:21 - 2014-05-17 03:00 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-05-06 02:21 - 2014-05-17 03:00 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-05-06 01:32 - 2014-05-17 03:00 - 12347392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-05-06 01:14 - 2014-05-17 03:00 - 02382848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-05-06 01:14 - 2014-05-17 03:00 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-05-04 17:12 - 2006-11-02 14:35 - 93223848 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2014-05-02 16:30 - 2014-05-02 16:30 - 00000000 ____D () C:\ProgramData\Electronic Arts
2014-05-02 16:29 - 2014-05-02 16:29 - 00362666 _____ () C:\Users\PC\AppData\Local\dd_vcredistMSI032C.txt
2014-05-02 16:29 - 2014-05-02 16:29 - 00011584 _____ () C:\Users\PC\AppData\Local\dd_vcredistUI032C.txt
2014-05-02 16:28 - 2014-05-02 16:28 - 00000892 _____ () C:\Users\Public\Desktop\FIFA 14.lnk
2014-05-02 16:28 - 2014-05-02 16:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FIFA 14
2014-05-02 16:13 - 2012-02-10 00:56 - 00000000 ____D () C:\Users\PC\AppData\Roaming\BitTorrent
2014-05-01 20:42 - 2014-05-01 20:42 - 00007582 _____ () C:\Users\PC\Downloads\3590D4D32F6F83245DDAC20CB4185AEBD23B5144.torrent
2014-05-01 20:41 - 2014-05-01 20:41 - 00000000 _____ () C:\Users\PC\Downloads\[ www.Torrenting.com ] - Once.Upon.a.Time.S03E05.HDTV.XviD-AFG.torrent
2014-05-01 13:10 - 2014-05-01 13:10 - 00030867 _____ () C:\Users\PC\Downloads\[kickass.to]fifa.14.pc.full.game.v1.4.0.0.nosteam.torrent

Files to move or delete:
====================
C:\Users\PC\AppData\Roaming\CamLayout.ini
C:\Users\PC\AppData\Roaming\CamShapes.ini


Some content of TEMP:
====================
C:\Users\PC\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpcldbyh.dll
C:\Users\PC\AppData\Local\Temp\First15.exe
C:\Users\PC\AppData\Local\Temp\FixMyRegistry.exe
C:\Users\PC\AppData\Local\Temp\ose00000.exe
C:\Users\PC\AppData\Local\Temp\Tsu-1130.dll
C:\Users\PC\AppData\Local\Temp\Tsu2620BDE9.dll
C:\Users\PC\AppData\Local\Temp\TsuF3773DAC.dll
C:\Users\PC\AppData\Local\Temp\utt97DD.tmp.exe
C:\Users\PC\AppData\Local\Temp\VP6Install.exe
C:\Users\PC\AppData\Local\Temp\VP6VFW.dll
C:\Users\PC\AppData\Local\Temp\_is1954.exe
C:\Users\PC\AppData\Local\Temp\_isECDE.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2014-05-29 17:41




===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: () (Fixed) (Total:349.32 GB) (Free:23.84 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: () (Fixed) (Total:349.32 GB) (Free:65.61 GB) NTFS
Drive e: (Mix 001 Květen) (CDROM) (Total:0.69 GB) (Free:0.25 GB) UDF

Available physical RAM: 1738.55 MB
Total physical RAM: 4094.24 MB
Percentage of memory in use: 57%

==================== MBR and Partition Table ==================

Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 699 GB) (Disk ID: 5EDCAFDF)
Partition 1: (Active) - (Size=349 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=349 GB) - (Type=07 NTFS)

==================== Scheduled Tasks (whitelisted) ==================

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\PC\Desktop" je 110111 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================
Přílohy
Addition.rar
(8.71 KiB) Staženo 20 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119541
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Problémy s prohlížeči

#4 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start
HKU\S-1-5-21-3901715730-3605395407-1887975702-1000\...\MountPoints2: {1425e36c-584d-11e3-a08f-ce5d8f434a97} - G:\setup.exe
HKU\S-1-5-21-3901715730-3605395407-1887975702-1000\...\MountPoints2: {1425e373-584d-11e3-a08f-ce5d8f434a97} - G:\Autorun.exe
HKU\S-1-5-21-3901715730-3605395407-1887975702-1000\...\MountPoints2: {e65f84fd-973f-11e3-a2ab-e0b7e6fa4ca4} - H:\LaunchU3.exe -a
AppInit_DLLs: C:\PROGRA~2\WI371A~1\Datamngr\x64\datamngr.dll => C:\Program Files (x86)\Windows iLivid Toolbar\Datamngr\x64\datamngr.dll [1778584 2011-12-06] (Bandoo Media, inc)
AppInit_DLLs: C:\PROGRA~2\WI371A~1\Datamngr\x64\IEBHO.dll => C:\Program Files (x86)\Windows iLivid Toolbar\Datamngr\x64\IEBHO.dll [1791384 2011-12-06] (Bandoo Media, inc)
AppInit_DLLs: C:\PROGRA~3\CONTEN~1\CONTEN~2.DLL => C:\ProgramData\Content Accelerator\ContentAccelerator_x64.dll [4326400 2013-12-28] ()
AppInit_DLLs-x32: c:\progra~2\wi371a~1\datamngr\datamngr.dll => C:\Program Files (x86)\Windows iLivid Toolbar\Datamngr\datamngr.dll [1236368 2011-12-06] (Bandoo Media, inc)
AppInit_DLLs-x32: c:\progra~2\wi371a~1\datamngr\iebho.dll => C:\Program Files (x86)\Windows iLivid Toolbar\Datamngr\IEBHO.dll [1233816 2011-12-06] (Bandoo Media, inc)
HKCU\Software\Microsoft\Internet Explorer\Main,ICQ Search = http://www.icq.com/search/results.php?q ... &ch_id=osd
URLSearchHook: HKLM-x32 - (No Name) - {855F3B16-6D32-4fe6-8A56-BBB695989046} - No File
URLSearchHook: HKLM-x32 - (No Name) - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - No File
URLSearchHook: HKLM-x32 - (No Name) - {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - No File
URLSearchHook: HKCU - (No Name) - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - No File
URLSearchHook: HKCU - (No Name) - {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - No File
URLSearchHook: HKCU - (No Name) - {94366e2c-9923-431c-b0d6-747447dd0f2b} - No File
SearchScopes: HKLM - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://dts.search-results.com/sr?src=ie ... 06&sr=0&q={searchTerms}
SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://dts.search-results.com/sr?src=ie ... 06&sr=0&q={searchTerms}
SearchScopes: HKLM-x32 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://dts.search-results.com/sr?src=ie ... 06&sr=0&q={searchTerms}
SearchScopes: HKLM-x32 - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://search.conduit.com/ResultsExt.as ... =CT2790392
SearchScopes: HKLM-x32 - {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.coolwebsearch.info/?un ... earchTerms}
SearchScopes: HKLM-x32 - {EEE6C360-6118-11DC-9C72-001320C79847} URL = http://search.sweetim.com/search.asp?sr ... =4.0005002
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://www.delta-search.com/?q={searchT ... 1&tsp=5037
SearchScopes: HKCU - {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} URL = http://websearch.ask.com/redirect?clien ... &src=kw&q={searchTerms}&locale=&apn_ptnrs=&apn_dtid=OSJ000&apn_uid=F0BD45A7-0F69-4B2D-9856-57A6EBE0C098&apn_sauid=F514654A-620A-4236-BE44-4E754E33B648
SearchScopes: HKCU - {6552C7DD-90A4-4387-B795-F8F96747DE19} URL = http://www.icq.com/search/results.php?q ... &ch_id=osd
SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://dts.search-results.com/sr?src=ie ... 06&sr=0&q={searchTerms}
SearchScopes: HKCU - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://search.conduit.com/ResultsExt.as ... =CT2790392
SearchScopes: HKCU - {B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD} URL = http://eu.ask.com/web?l=dis&o=16552&gct ... &apn_dtid=^YYYYYY^YY^CZ&apn_ptnrs=^A9T&apn_uid=6599667584714443&p2=^A9T^YYYYYY^YY^CZ&q={searchTerms}
SearchScopes: HKCU - {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.coolwebsearch.info/?un ... earchTerms}
SearchScopes: HKCU - {EEE6C360-6118-11DC-9C72-001320C79847} URL = http://search.sweetim.com/search.asp?sr ... =4.0005002
BHO: No Name - {5188F727-1B10-9CC0-089E-47C2EAC7EBA7} - No File
BHO: No Name - {9B04BE5F-1460-108C-C581-CFA5D5C00535} - No File
BHO-x32: No Name - {5188F727-1B10-9CC0-089E-47C2EAC7EBA7} - No File
BHO-x32: No Name - {9B04BE5F-1460-108C-C581-CFA5D5C00535} - No File
BHO-x32: No Name - {FB96EA96-BB9B-7AED-494C-9E8ED4B6CCBB} - No File
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - No File
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
CHR Extension: (Fun2SSaVVE) - C:\ProgramData\aehenbmghollbmbcddandjakcngmdiff [2014-01-01]
CHR HKLM-x32\...\Chrome\Extension: [ajhcekcffkpnaednoeoegnmnjdlnjjmg] - C:\ProgramData\TheBflix\ajhcekcffkpnaednoeoegnmnjdlnjjmg.crx [2012-03-05]
CHR HKLM-x32\...\Chrome\Extension: [fgnippahjheicjenccifemomfgjofdhp] - C:\ProgramData\TheBflix\fgnippahjheicjenccifemomfgjofdhp.crx [2012-04-01]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-05-14]
CHR HKLM-x32\...\Chrome\Extension: [mhfdcmehmjcclgopdodkjdicohagipid] - C:\Users\PC\AppData\Local\Temp\ccex.crx [2013-05-14]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
C:\Users\PC\AppData\Local\Temp\ccex.crx
S3 McComponentHostService; "C:\Program Files\McAfee Security Scan\3.8.141\McCHSvc.exe" [X]
U3 aywsdmiy; No ImagePath
S3 mdf16; \??\C:\Users\PC\AppData\Local\Temp\mdf16.sys [X]
S3 mvd23; \??\C:\Users\PC\AppData\Local\Temp\mvd23.sys [X]
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
C:\Users\PC\AppData\Roaming\CamLayout.ini
C:\Users\PC\AppData\Roaming\CamShapes.ini
C:\Users\PC\AppData\Local\Temp
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Pivl
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 28 kvě 2014 20:20

Re: Problémy s prohlížeči

#5 Příspěvek od Pivl »

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 25-05-2014 02
Ran by PC at 2014-05-29 20:24:37 Run:1
Running from C:\Users\PC\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
HKU\S-1-5-21-3901715730-3605395407-1887975702-1000\...\MountPoints2: {1425e36c-584d-11e3-a08f-ce5d8f434a97} - G:\setup.exe
HKU\S-1-5-21-3901715730-3605395407-1887975702-1000\...\MountPoints2: {1425e373-584d-11e3-a08f-ce5d8f434a97} - G:\Autorun.exe
HKU\S-1-5-21-3901715730-3605395407-1887975702-1000\...\MountPoints2: {e65f84fd-973f-11e3-a2ab-e0b7e6fa4ca4} - H:\LaunchU3.exe -a
AppInit_DLLs: C:\PROGRA~2\WI371A~1\Datamngr\x64\datamngr.dll => C:\Program Files (x86)\Windows iLivid Toolbar\Datamngr\x64\datamngr.dll [1778584 2011-12-06] (Bandoo Media, inc)
AppInit_DLLs: C:\PROGRA~2\WI371A~1\Datamngr\x64\IEBHO.dll => C:\Program Files (x86)\Windows iLivid Toolbar\Datamngr\x64\IEBHO.dll [1791384 2011-12-06] (Bandoo Media, inc)
AppInit_DLLs: C:\PROGRA~3\CONTEN~1\CONTEN~2.DLL => C:\ProgramData\Content Accelerator\ContentAccelerator_x64.dll [4326400 2013-12-28] ()
AppInit_DLLs-x32: c:\progra~2\wi371a~1\datamngr\datamngr.dll => C:\Program Files (x86)\Windows iLivid Toolbar\Datamngr\datamngr.dll [1236368 2011-12-06] (Bandoo Media, inc)
AppInit_DLLs-x32: c:\progra~2\wi371a~1\datamngr\iebho.dll => C:\Program Files (x86)\Windows iLivid Toolbar\Datamngr\IEBHO.dll [1233816 2011-12-06] (Bandoo Media, inc)
HKCU\Software\Microsoft\Internet Explorer\Main,ICQ Search = http://www.icq.com/search/results.php?q ... &ch_id=osd
URLSearchHook: HKLM-x32 - (No Name) - {855F3B16-6D32-4fe6-8A56-BBB695989046} - No File
URLSearchHook: HKLM-x32 - (No Name) - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - No File
URLSearchHook: HKLM-x32 - (No Name) - {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - No File
URLSearchHook: HKCU - (No Name) - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - No File
URLSearchHook: HKCU - (No Name) - {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - No File
URLSearchHook: HKCU - (No Name) - {94366e2c-9923-431c-b0d6-747447dd0f2b} - No File
SearchScopes: HKLM - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://dts.search-results.com/sr?src=ie ... 06&sr=0&q={searchTerms}
SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://dts.search-results.com/sr?src=ie ... 06&sr=0&q={searchTerms}
SearchScopes: HKLM-x32 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://dts.search-results.com/sr?src=ie ... 06&sr=0&q={searchTerms}
SearchScopes: HKLM-x32 - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://search.conduit.com/ResultsExt.as ... =CT2790392
SearchScopes: HKLM-x32 - {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.coolwebsearch.info/?un ... earchTerms}
SearchScopes: HKLM-x32 - {EEE6C360-6118-11DC-9C72-001320C79847} URL = http://search.sweetim.com/search.asp?sr ... =4.0005002
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://www.delta-search.com/?q={searchT ... 1&tsp=5037
SearchScopes: HKCU - {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} URL = http://websearch.ask.com/redirect?clien ... &src=kw&q={searchTerms}&locale=&apn_ptnrs=&apn_dtid=OSJ000&apn_uid=F0BD45A7-0F69-4B2D-9856-57A6EBE0C098&apn_sauid=F514654A-620A-4236-BE44-4E754E33B648
SearchScopes: HKCU - {6552C7DD-90A4-4387-B795-F8F96747DE19} URL = http://www.icq.com/search/results.php?q ... &ch_id=osd
SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://dts.search-results.com/sr?src=ie ... 06&sr=0&q={searchTerms}
SearchScopes: HKCU - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://search.conduit.com/ResultsExt.as ... =CT2790392
SearchScopes: HKCU - {B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD} URL = http://eu.ask.com/web?l=dis&o=16552&gct ... &apn_dtid=^YYYYYY^YY^CZ&apn_ptnrs=^A9T&apn_uid=6599667584714443&p2=^A9T^YYYYYY^YY^CZ&q={searchTerms}
SearchScopes: HKCU - {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.coolwebsearch.info/?un ... earchTerms}
SearchScopes: HKCU - {EEE6C360-6118-11DC-9C72-001320C79847} URL = http://search.sweetim.com/search.asp?sr ... =4.0005002
BHO: No Name - {5188F727-1B10-9CC0-089E-47C2EAC7EBA7} - No File
BHO: No Name - {9B04BE5F-1460-108C-C581-CFA5D5C00535} - No File
BHO-x32: No Name - {5188F727-1B10-9CC0-089E-47C2EAC7EBA7} - No File
BHO-x32: No Name - {9B04BE5F-1460-108C-C581-CFA5D5C00535} - No File
BHO-x32: No Name - {FB96EA96-BB9B-7AED-494C-9E8ED4B6CCBB} - No File
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - No File
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
CHR Extension: (Fun2SSaVVE) - C:\ProgramData\aehenbmghollbmbcddandjakcngmdiff [2014-01-01]
CHR HKLM-x32\...\Chrome\Extension: [ajhcekcffkpnaednoeoegnmnjdlnjjmg] - C:\ProgramData\TheBflix\ajhcekcffkpnaednoeoegnmnjdlnjjmg.crx [2012-03-05]
CHR HKLM-x32\...\Chrome\Extension: [fgnippahjheicjenccifemomfgjofdhp] - C:\ProgramData\TheBflix\fgnippahjheicjenccifemomfgjofdhp.crx [2012-04-01]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-05-14]
CHR HKLM-x32\...\Chrome\Extension: [mhfdcmehmjcclgopdodkjdicohagipid] - C:\Users\PC\AppData\Local\Temp\ccex.crx [2013-05-14]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
C:\Users\PC\AppData\Local\Temp\ccex.crx
S3 McComponentHostService; "C:\Program Files\McAfee Security Scan\3.8.141\McCHSvc.exe" [X]
U3 aywsdmiy; No ImagePath
S3 mdf16; \??\C:\Users\PC\AppData\Local\Temp\mdf16.sys [X]
S3 mvd23; \??\C:\Users\PC\AppData\Local\Temp\mvd23.sys [X]
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
C:\Users\PC\AppData\Roaming\CamLayout.ini
C:\Users\PC\AppData\Roaming\CamShapes.ini
C:\Users\PC\AppData\Local\Temp
End
*****************

HKU\S-1-5-21-3901715730-3605395407-1887975702-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{1425e36c-584d-11e3-a08f-ce5d8f434a97} => Key deleted successfully.
HKCR\CLSID\{1425e36c-584d-11e3-a08f-ce5d8f434a97} => Key not found.
HKU\S-1-5-21-3901715730-3605395407-1887975702-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{1425e373-584d-11e3-a08f-ce5d8f434a97} => Key deleted successfully.
HKCR\CLSID\{1425e373-584d-11e3-a08f-ce5d8f434a97} => Key not found.
HKU\S-1-5-21-3901715730-3605395407-1887975702-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e65f84fd-973f-11e3-a2ab-e0b7e6fa4ca4} => Key deleted successfully.
HKCR\CLSID\{e65f84fd-973f-11e3-a2ab-e0b7e6fa4ca4} => Key not found.
"C:\PROGRA~2\WI371A~1\Datamngr\x64\datamngr.dll" => Value Data not found.
"C:\PROGRA~2\WI371A~1\Datamngr\x64\IEBHO.dll" => Value Data not found.
"C:\PROGRA~3\CONTEN~1\CONTEN~2.DLL" => Value Data removed successfully.
"c:\progra~2\wi371a~1\datamngr\datamngr.dll" => Value Data not found.
"c:\progra~2\wi371a~1\datamngr\iebho.dll" => Value Data not found.
HKCU\Software\Microsoft\Internet Explorer\Main\\ICQ Search => Value deleted successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\URLSearchHooks\\{855F3B16-6D32-4fe6-8A56-BBB695989046} => Value deleted successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\URLSearchHooks\\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} => Value deleted successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\URLSearchHooks\\{88c7f2aa-f93f-432c-8f0e-b7d85967a527} => Value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} => Value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\{88c7f2aa-f93f-432c-8f0e-b7d85967a527} => Value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\{94366e2c-9923-431c-b0d6-747447dd0f2b} => Value deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} => Key deleted successfully.
HKCR\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{afdbddaa-5d3f-42ee-b79c-185a7020515b} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{EEE6C360-6118-11DC-9C72-001320C79847} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} => Key deleted successfully.
HKCR\CLSID\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} => Key deleted successfully.
HKCR\CLSID\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19} => Key deleted successfully.
HKCR\CLSID\{6552C7DD-90A4-4387-B795-F8F96747DE19} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} => Key deleted successfully.
HKCR\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b} => Key deleted successfully.
HKCR\CLSID\{afdbddaa-5d3f-42ee-b79c-185a7020515b} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD} => Key deleted successfully.
HKCR\CLSID\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE} => Key deleted successfully.
HKCR\CLSID\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847} => Key deleted successfully.
HKCR\CLSID\{EEE6C360-6118-11DC-9C72-001320C79847} => Key not found.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5188F727-1B10-9CC0-089E-47C2EAC7EBA7} => Key deleted successfully.
HKCR\CLSID\{5188F727-1B10-9CC0-089E-47C2EAC7EBA7} => Key not found.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9B04BE5F-1460-108C-C581-CFA5D5C00535} => Key deleted successfully.
HKCR\CLSID\{9B04BE5F-1460-108C-C581-CFA5D5C00535} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5188F727-1B10-9CC0-089E-47C2EAC7EBA7} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{5188F727-1B10-9CC0-089E-47C2EAC7EBA7} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9B04BE5F-1460-108C-C581-CFA5D5C00535} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{9B04BE5F-1460-108C-C581-CFA5D5C00535} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FB96EA96-BB9B-7AED-494C-9E8ED4B6CCBB} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{FB96EA96-BB9B-7AED-494C-9E8ED4B6CCBB} => Key not found.
HKCR\PROTOCOLS\Handler\skype-ie-addon-data => Key deleted successfully.
HKCR\CLSID\{91774881-D725-4E58-B298-07617B9B86A8} => Key deleted successfully.
HKCR\Wow6432Node\PROTOCOLS\Handler\skype-ie-addon-data => Key not found.
HKCR\Wow6432Node\CLSID\{91774881-D725-4E58-B298-07617B9B86A8} => Key deleted successfully.
C:\ProgramData\aehenbmghollbmbcddandjakcngmdiff => Moved successfully.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\ajhcekcffkpnaednoeoegnmnjdlnjjmg => Key deleted successfully.
C:\ProgramData\TheBflix\ajhcekcffkpnaednoeoegnmnjdlnjjmg.crx => Moved successfully.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\fgnippahjheicjenccifemomfgjofdhp => Key deleted successfully.
C:\ProgramData\TheBflix\fgnippahjheicjenccifemomfgjofdhp.crx => Moved successfully.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl => Key deleted successfully.
C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx => Moved successfully.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\mhfdcmehmjcclgopdodkjdicohagipid => Key deleted successfully.
"C:\Users\PC\AppData\Local\Temp\ccex.crx" => File/Directory not found.
HKLM\SOFTWARE\Policies\Google => Key deleted successfully.
"C:\Users\PC\AppData\Local\Temp\ccex.crx" => File/Directory not found.
McComponentHostService => Service deleted successfully.
aywsdmiy => Service deleted successfully.
mdf16 => Service deleted successfully.
mvd23 => Service deleted successfully.
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA => Moved successfully.
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => Moved successfully.
"C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA" => File/Directory not found.
"C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore" => File/Directory not found.
C:\Users\PC\AppData\Roaming\CamLayout.ini => Moved successfully.
C:\Users\PC\AppData\Roaming\CamShapes.ini => Moved successfully.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119541
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Problémy s prohlížeči

#6 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Pivl
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 28 kvě 2014 20:20

Re: Problémy s prohlížeči

#7 Příspěvek od Pivl »

No, zkoušel jsem to a nic. Pořád stejný problém, každopádně mi už avast nehlásí ty viry. V každém případě jsem zkusil resetovat síťový adaptér a nastavit si novou síť a problém s googlem se vyřešil.
Naposledy upravil(a) Pivl dne 29 kvě 2014 21:30, celkem upraveno 1 x.

Pivl
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 28 kvě 2014 20:20

Re: Problémy s prohlížeči

#8 Příspěvek od Pivl »

Tak jsem se spletl. problém přetrvává, ale už jen na síti facebook.
Edit: Je to divné, ale ten problém přetrvává už jen tehdy, pokud zadám přímé odkazy www.google.com a www.facebook.com, ne když vyberu nějaký již doplňkový odkaz třeba přímo na vyhledávání na googlu.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119541
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Problémy s prohlížeči

#9 Příspěvek od Rudy »

Asi před hodinou mi FB nešel také. Dejte ještě log ComobFix:
Stahnete a ulozte nejlepe na plochu ComboFix: http://download.bleepingcomputer.com/sUBs/ComboFix.exe

pote spustte aplikaci pod uctem s administratorskym opravnenim

hned po startu se zobrazi obrazovka s licencnimi podminkami, pokracujte kliknutim na tlacitko Ano.

v klidu si postavte na kafe (cela akce trva cca. 5-10 minut, nekdy i dele - dle toho, o jak rychly stroj se

jedna a kolika soubory se skener bude muset prodirat), behem skenu se nepokousejte spoustet zadne jine

aplikace ani nic jineho

behem skenovani nepropadejte panice, vas stroj muze byt restartovan (predevsim pri prvni aplikaci skeneru)

upozorneni: pokud pouzivate antispyware s rezidentnim stitem, prepnete jeho rezidentni stit do Install Mode,

pripadne jej po dobu skenu uplne deaktivujte, protoze dochazi pri skenu a vymazu pripadneho malware k

nezadoucim kolizim s rezidentem antispyware.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět