Stránka 1 z 5

Víc reklam než je zdrávo

Napsal: 12 črc 2015 18:47
od PavlinQa1234
Mám takový problém po stahování věcí o kterých se tu nemůže mluvit se mi začali v prohlížečích ukazovat všude reklamy.
Když mam zapnutý Adblock tak mi to blokuje reklamy na stránkách, ale vyskakují mi tam reklamy, které nejsou z té stránky.

Prosím přehlédněte mou hloupost a moc vás prosím pomozte už mi to začíná štvát, musím kliknout na jeden odkaz tak 3x aby se otevřela neotevřela se nějaká jiná stránka se seznamkou.

Re: Víc reklam než je zdrávo

Napsal: 12 črc 2015 18:48
od jerabina
Jasný, podíváme se na to a společně to zlikvidujeme.

Udělej log z programu HJT podle návodu v mém podpisu a log sem vlož :-)

Re: Víc reklam než je zdrávo

Napsal: 12 črc 2015 18:53
od PavlinQa1234
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:51:10, on 12. 7. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Windows\System32\TiltWheelMouse.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Users\Jiří\AppData\Roaming\uTorrent\uninstall.exe
C:\Users\Jiří\AppData\Roaming\uTorrent\utorrent.exe
C:\Program Files (x86)\Rockstar Games\Rockstar Games Social Club\1_0_0_0\RGSC.exe
C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\3\plugin.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\7\plugin.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Jiří\Downloads\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.omniboxes.com/?type=hp&ts=14 ... XXS4Y29BMC
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://gosearch.me/?u=22c46506a748e9b6 ... 1436341089
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 127.0.0.1:8118
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Record Page - {2335267c-dbba-4dd5-a9d0-c4db8e6a75a4} - C:\Program Files (x86)\Record Page\Extensions\2335267c-dbba-4dd5-a9d0-c4db8e6a75a4.dll
O2 - BHO: LuckyTab Class - {51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} - C:\Program Files (x86)\MiuiTab\SupTab.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll
O2 - BHO: SecureWebBHO - {D3C24E2B-C820-4492-9B69-11BF7163F998} - C:\Program Files (x86)\Gamma Task Menager\itie.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll" (file missing)
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
O4 - HKCU\..\Run: [UpdateAdmin] C:\Users\Jiří\AppData\Local\UpdateAdmin\UpdateAdmin.exe /RUN
O4 - HKCU\..\Run: [RGSC] C:\Program Files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Live Malware Protection - SecureSoft - C:\WINDOWS\mlwps.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: Privoxy (PrivoxyService) (PrivoxyService) - The Privoxy team - www.privoxy.org - C:\Program Files (x86)\Gamma Task Menager\privoxy.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Service KMSELDI - @ByELDI - C:\Program Files\KMSpico\Service_KMS.exe
O23 - Service: Service Mgr RecordPage - Unknown owner - C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugincontainer.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Update Mgr RecordPage - Unknown owner - C:\Program Files (x86)\Common Files\87737dd0-ad90-4193-bd48-336966b8d777\updater.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 9208 bytes


Je to ono?

Re: Víc reklam než je zdrávo

Napsal: 12 črc 2015 18:54
od jerabina
Ano, to je ono :-)

Odinstaluj Bing Bar

Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.

- Pokud používáš jen Google Chrome , tak ATF nemusíš použít.

===================================================

Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.

===================================================

Stáhni AdwCleaner (by Xplode)

Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.

===================================================

Stáhni si Malwarebytes' Anti-Malware
- Při instalaci odeber zatržítko u „Povolit bezplatnou zkušební verzi Malwarebytes' Anti-Malware Premium“
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a klikni na Skenovat nyní a
- po proběhnutí programu se ti objeví hláška vpravo dole tak klikni na Kopírovat do schránky a a vlož sem celý log.

- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).

Pokud budou problémy , spusť v nouz. režimu.

Re: Víc reklam než je zdrávo

Napsal: 12 črc 2015 19:09
od PavlinQa1234
A co když mam ty reklamy hlavně na chromu?

Re: Víc reklam než je zdrávo

Napsal: 12 črc 2015 19:15
od jerabina
Tyto nástroje fungují pro všechny prohlížeče :-)

Re: Víc reklam než je zdrávo

Napsal: 12 črc 2015 20:00
od PavlinQa1234
# AdwCleaner v4.208 - Log vytvořen 12/07/2015 v 19:38:31
# Aktualizováno 09/07/2015 by Xplode
# Databáze : 2015-07-11.1 [Server]
# Operační system : Windows 8.1 Pro (x64)
# Uživatelské jméno : Jiří - CHAPPIE
# Spuštěno z : C:\Users\Jiří\Downloads\AdwCleaner.exe
# Nastavení : Sken

***** [ Služby ] *****

Služba Nalezeno : Live Malware Protection
Služba Nalezeno : PrivoxyService
Služba Nalezeno : Service Mgr RecordPage
Služba Nalezeno : Update Mgr RecordPage

***** [ Soubory / Složky ] *****

Složka Nalezeno : C:\Program Files (x86)\Common Files\87737dd0-ad90-4193-bd48-336966b8d777
Složka Nalezeno : C:\Program Files (x86)\Gamma Task Menager
Složka Nalezeno : C:\Program Files (x86)\miuitab
Složka Nalezeno : C:\Program Files (x86)\Record Page
Složka Nalezeno : C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777
Složka Nalezeno : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UpdateAdmin
Složka Nalezeno : C:\Users\Jiří\AppData\Local\UpdateAdmin
Složka Nalezeno : C:\Users\Jiří\AppData\Roaming\omniboxes
Soubor Nalezeno : C:\Users\Jiří\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.omniboxes.com_0.localstorage
Soubor Nalezeno : C:\Users\Jiří\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.omniboxes.com_0.localstorage-journal
Soubor Nalezeno : C:\Users\Jiří\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_recordpage-a.akamaihd.net_0.localstorage
Soubor Nalezeno : C:\Users\Jiří\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_recordpage-a.akamaihd.net_0.localstorage-journal
Soubor Nalezeno : C:\Users\Jiří\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_www.omniboxes.com_0.localstorage
Soubor Nalezeno : C:\Users\Jiří\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_www.omniboxes.com_0.localstorage-journal
Soubor Nalezeno : C:\WINDOWS\mlwps.exe

***** [ Naplánované úlohy ] *****

Úloha Nalezeno : Malware Cleaner
Úloha Nalezeno : Gamma Task Menager Task
Úloha Nalezeno : UpdateAdmin

***** [ Zástupci ] *****

Zástupce Infikováno : C:\Users\Public\Desktop\Opera.lnk
Zástupce Infikováno : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
Zástupce Infikováno : C:\Users\Jiří\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
Zástupce Infikováno : C:\Users\Jiří\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Opera.lnk

***** [ Registry ] *****

Data Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyEnable] - 1
Data Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyServer] - 127.0.0.1:8118
Data Nalezeno : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\OperaStable\shell\open\command [(Default)] - "C:\Program Files (x86)\Opera\Launcher.exe" hxxp://www.omniboxes.com/?type=sc&ts=14 ... XXS4Y29BMC
Hodnota Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [DefaultConnectionSettings]
Hodnota Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [SavedLegacySettings]
Hodnota Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [UpdateAdmin]
Klíč Nalezeno : HKCU\Software\APN PIP
Klíč Nalezeno : HKCU\Software\AskPartnerNetwork
Klíč Nalezeno : HKCU\Software\DownloadAdmin
Klíč Nalezeno : HKCU\Software\HomeTab
Klíč Nalezeno : HKCU\Software\Kromtech
Klíč Nalezeno : HKCU\Software\Linkey
Klíč Nalezeno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Klíč Nalezeno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}
Klíč Nalezeno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{20B9D1AE-AD1A-38B4-87FE-AF278DA9861D}
Klíč Nalezeno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C}
Klíč Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2335267C-DBBA-4DD5-A9D0-C4DB8E6A75A4}
Klíč Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}
Klíč Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D3C24E2B-C820-4492-9B69-11BF7163F998}
Klíč Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2335267C-DBBA-4DD5-A9D0-C4DB8E6A75A4}
Klíč Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}
Klíč Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D3C24E2B-C820-4492-9B69-11BF7163F998}
Klíč Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP
Klíč Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\IminentToolbar
Klíč Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Linkey
Klíč Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
Klíč Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Vosteran.com
Klíč Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\WajIntEnhance
Klíč Nalezeno : HKCU\Software\SearchProtectWS
Klíč Nalezeno : HKCU\Software\simplytech
Klíč Nalezeno : HKCU\Software\Simplytech\HomeTab
Klíč Nalezeno : HKCU\Software\TNT2
Klíč Nalezeno : HKCU\Software\WajIEnhance
Klíč Nalezeno : HKCU\Software\WajIntEnhance
Klíč Nalezeno : [x64] HKCU\Software\APN PIP
Klíč Nalezeno : [x64] HKCU\Software\AskPartnerNetwork
Klíč Nalezeno : [x64] HKCU\Software\DownloadAdmin
Klíč Nalezeno : [x64] HKCU\Software\HomeTab
Klíč Nalezeno : [x64] HKCU\Software\Kromtech
Klíč Nalezeno : [x64] HKCU\Software\Linkey
Klíč Nalezeno : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Klíč Nalezeno : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}
Klíč Nalezeno : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}
Klíč Nalezeno : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{20B9D1AE-AD1A-38B4-87FE-AF278DA9861D}
Klíč Nalezeno : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C}
Klíč Nalezeno : [x64] HKCU\Software\SearchProtectWS
Klíč Nalezeno : [x64] HKCU\Software\simplytech
Klíč Nalezeno : [x64] HKCU\Software\Simplytech\HomeTab
Klíč Nalezeno : [x64] HKCU\Software\TNT2
Klíč Nalezeno : [x64] HKCU\Software\WajIEnhance
Klíč Nalezeno : [x64] HKCU\Software\WajIntEnhance
Klíč Nalezeno : HKLM\SOFTWARE\AIM Toolbar
Klíč Nalezeno : HKLM\SOFTWARE\AskPartnerNetwork
Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{2335267C-DBBA-4DD5-A9D0-C4DB8E6A75A4}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{B853E835-9F24-4F4B-B55C-E554D15CCCD2}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{D3C24E2B-C820-4492-9B69-11BF7163F998}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{F83D1872-D9FF-47F8-B5A0-49CC51E24EE8}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\Interface\{D1611ACC-4B10-4B34-8CDE-0AE7B2A270A6}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\TypeLib\{1FCDF527-B10C-481D-B214-B09EEA106124}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\TypeLib\{2F137995-4D26-44AD-9C4E-91055090A817}
Klíč Nalezeno : HKLM\SOFTWARE\Conduit
Klíč Nalezeno : HKLM\SOFTWARE\Iminent
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{20B9D1AE-AD1A-38B4-87FE-AF278DA9861D}
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2335267C-DBBA-4DD5-A9D0-C4DB8E6A75A4}
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D3C24E2B-C820-4492-9B69-11BF7163F998}
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{07B4B423-E4DA-47D1-8327-B589EB4BEB58}
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IminentToolbar
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Linkey
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\omniboxes uninstall
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Record Page
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Vosteran.com
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WajIntEnhance
Klíč Nalezeno : HKLM\SOFTWARE\omniboxesSoftware
Klíč Nalezeno : HKLM\SOFTWARE\SearchProtect
Klíč Nalezeno : HKLM\SOFTWARE\searchult
Klíč Nalezeno : HKLM\SOFTWARE\SecureWebChannel
Klíč Nalezeno : HKLM\SOFTWARE\SpeedBit
Klíč Nalezeno : HKLM\SOFTWARE\WajIntEnhance
Klíč Nalezeno : [x64] HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
Klíč Nalezeno : [x64] HKLM\SOFTWARE\Classes\Interface\{D1611ACC-4B10-4B34-8CDE-0AE7B2A270A6}
Klíč Nalezeno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}

***** [ Prohlížeče ] *****

-\\ Internet Explorer v11.0.9600.17840

Nastavení Nalezeno : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxps://gosearch.me/?u=22c46506a748e9b6 ... 1436341089
Nastavení Nalezeno : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL] - hxxp://www.omniboxes.com/?type=hp&ts=14 ... XXS4Y29BMC
Nastavení Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [Tabs] - hxxps://gosearch.me/?u=22c46506a748e9b6 ... 1436341089
Nastavení Nalezeno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] - hxxp://www.omniboxes.com/web/?type=ds&t ... 4Y29BMC&q={searchTerms}
Nastavení Nalezeno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL] - hxxp://www.omniboxes.com/?type=hp&ts=14 ... XXS4Y29BMC
Nastavení Nalezeno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] - hxxp://www.omniboxes.com/?type=hp&ts=14 ... XXS4Y29BMC
Nastavení Nalezeno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] - hxxp://www.omniboxes.com/web/?type=ds&t ... 4Y29BMC&q={searchTerms}

-\\ Google Chrome v43.0.2357.132

[C:\Users\Jiří\AppData\Local\Google\Chrome\User Data\Default\Web data] - Nalezeno [Search Provider] : hxxp://www.omniboxes.com/web/?type=ds&t ... 4Y29BMC&q={searchTerms}
[C:\Users\Jiří\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Nalezeno [Homepage] : hxxp://www.google.cz/","homepage_changed":true,"homepage_is_newtabpage":false,"pinned_tabs":[],"protection":{"macs":{"browser":{"show_home_button":"CDC2A85634AE9B99C8360662718986C2CCD9FC3D22E94C103BBEE43A6B6B37E1"},"default_search_provider":{"keyword":"5ADD67796768CFA9A0E9FDA7A2E7B790994779834E535C5B03E52CA72876F0FE","name":"5BFE2A55FFCBD456FF7AA3F2BEA8AC881B8C7BDCBAFD6A3FE700D450D5F489A8","search_url":"B4C4C858302E3DEB4DCF08AC0A12ED41C5773007A754C21F9A1D45D1BAB9B8EC"},"default_search_provider_data":{"template_url_data":"087D796A72CED6B0597C08DAB32B4088CB0727947E4A8938D0B307144BAF0CA2"},"extensions":{"settings":{"aapocclcgogkmnckokdopfmhonfmgoek":"825D3C877B88F145A61E2F0E6AD7AF63B91320E2CC39383A07C535457C834BC7","ahfgeienlihckogmohjhadlkjgocpleb":"2A21A1B99977A0ADCDE6EEB53F02A3BEF2B902F85E6B3554A101358911378E95","aohghmighlieiainnegkcijnfilokake":"F57EABB61B42524BAAE3063CAB77AAF84B465CD8030374FD7E7452C2A64F3CD7","apdfllckaahabafndbhieahigkjlhalf":"E0739D91B5CB5C78E722ECFFB0810FBA082D328060E77EC1DCB9F0F38C235A07","bepbmhgboaologfdajaanbcjmnhjmhfn":"1F179AD175403F72E955463EAB541EC9A296A92D6D3CFE453DBC1FF4773768E3","blpcfgokakmgnkcojhhkbfbldkacnbeo":"A738DE7A3ADEF6C976660196B4ECFAD8BAA8A8D977E69EF311385D94E06DE6B3","coobgpohoikkiipiblmjeljniedjpjpf":"6095CDC26B2B63FD2A0A74A4D173C513DACF7797503377F21934E7067F7681A9","eemcgdkfndhakfknompkggombfjjjeno":"7D101CB9C53D51D046591808EF95F5D50BC710DADE79102CA06E87D8966C7DD9","ennkphjdgehloodpbhlhldgbnhmacadg":"5171F08196485FDB93D29C6B4148F46AA20E52E0F2FC5DE4FACE183F4CAD7D58","felcaaldnbdncclmgdcncolpebgiejap":"833F07B15FE777ED5390E406807C77471EA82A8D9988B51EE9AD9AC9C3A466D3","gfdkimpbcpahaombhbimeihdjnejgicl":"169E731206D67AC3D1F30668A289410AD3AC36D643EC03FC16DEAAC8CB0BC2D4","gighmmpiobklfepjocnamgkkbiglidom":"7F73A26AE392BD3C15DFB90ECAEC8801B7A2384DD078B64876946574C6770D3C","ioldkaaghkinkaahpkieimlclilnkana":"23BE24C961B74C3C9ACCC7EEE086E24BF57FBCA0CD457F4ACF1577EBBA1E4001","kmendfapggjehodndflmmgagdbamhnfd":"02E25EC543B7EA0636C98BF042C27D0C6A84C8CC638B306D57BDDF390F1AA686","mfehgcgbbipciphmccgaenjidiccnmng":"CA8EF27E51D0B42479FBCB4B8FB257F01C9641B24361CB762B68DE94E5B55610","mfffpogegjflfpflabcdkioaeobkgjik":"CE83F09F49322BC46BE08BAF3800E4F17464AE3F160A913DB2BF5ABAD1EFE152","mgndgikekgjfcpckkfioiadnlibdjbkf":"77595AEDEC4EDDA05D0AAAE9CB7E1A35DB83C3ACB5DA564AD083C79BD50F68F6","mhjfbmdgcfjbbpaeojofohoefgiehjai":"FC36123C82B3CA277A61A3C906920553AF2B522550FB5A2E46EBCEE05CA47290","neajdppkdcdipfabeoofebfddakdcjhd":"E4A25A0C966F49F0E17DFC07E81240CB269A4F41F6FF78CE0C5422E2F8F7E307","nkeimhogjdpnpccoofpliimaahmaaome":"484D7BCAB0AE3C78E0B155A3729E0D4B91EF2AA72F8E12F7EA9D3AE9787D7184","nmmhkkegccagdldgiimedpiccmgmieda":"1830CD715C50953EC57B8BE88789BF17B152936B73F1E1E483E1E770CDC99237","pafkbggdmjlpgkdkcbjmhmfcdpncadgh":"4A974BDB2A3FC12B29D91F463FE3059F296637DD5BB86B58B4E097AED7FBA130","pjkljhegncpnkpknbcohdijeoejaedia":"E4336D3B9F4DD0399D73589717AE3DE5035F154BB96DE345FD06F9470BCA9B1C"}},"google":{"services":{"last_username":"C01454B7B15C4FBCABE61A5ADA7118BBC8B74CFFA14636400596474B31BFD69D","username":"F70B6D5CF84C10A8A1BCE8414210AECC7CB1A3CBCCCCBA802DF9DB6AC3B049E8"}},"homepage":"11B826A7F3498BD0BD42B989A185127C1E18521BCD681D1B25DC7658A2F43602","homepage_is_newtabpage":"5099EF96502B4B188983D32D59DD3D1F99E98490EDD9FA0204CA4AA307DDE75A","pinned_tabs":"BFEBCC34202955589169C8D23BA1E80F27DA881201D5B577334372512BC797F0","prefs":{"preference_reset_time":"33DAA79D945090DE2A53E0E17ECDFDA0FFDD29B76242603E2EDEAD5FED2AA557"},"profile":{"reset_prompt_memento":"F7D8C3524043DAD11CF5782793EE8AE5AC75B70516A2D183BABB28102DF557AA"},"safebrowsing":{"incidents_sent":"3569E7133D22B9978825EB097C17A314CC119E5729DD721D8EFC48E2090B3A5C"},"search_provider_overrides":"6C16AA01B523760C50BAF9A725987B1355643BA207BD3E3C497335F292185BBD","session":{"restore_on_startup":"4062979C2B159201CE93E480D21FB18C99639785BD35E5B8B4E9B5D57FB83630","startup_urls":"A2312011AC2C26C70E3A0DA4A960DC27EDF80811F0C905971AE8FA993F55EADE"},"software_reporter":{"prompt_reason":"8D7F3F432A34F0B93943AB92C5525E8490E95B969C0F2D1D043A3D28030DBF39","prompt_seed":"730AD8BB27FF6773849F53BF8718B409C8E7138263BC026D211C02CB2DEE837A","prompt_version":"68DB9729029FF8926A522078B82412B2D445E6DBF3A94DF1644DF4A9F1CCE0DA"},"sync":{"remaining_rollback_tries":"E8AC277C5FA4E3B23FD851681FB2C0320F8A42F0021CB353C650234ADF0C46F7"}},"super_mac":"0D7376214A761A3B5010CC11F552903C149FE130E5C2483A82BB1117968D2C4E"},"session":{"restore_on_startup":4,"startup_urls":["hxxp://www.omniboxes.com/?type=hp&ts=1436128866&z=a50aaea5e172adf0cff437egcz4cdqagbofbeb4q0q&from=tti&uid=ST1000DM003-1ER162_S4Y29BMCXXXXS4Y29BMC
[C:\Users\Jiří\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Nalezeno [Startup_URLs] : A2312011AC2C26C70E3A0DA4A960DC27EDF80811F0C905971AE8FA993F55EADE"},"software_reporter":{"prompt_reason":"8D7F3F432A34F0B93943AB92C5525E8490E95B969C0F2D1D043A3D28030DBF39","prompt_seed":"730AD8BB27FF6773849F53BF8718B409C8E7138263BC026D211C02CB2DEE837A","prompt_version":"68DB9729029FF8926A522078B82412B2D445E6DBF3A94DF1644DF4A9F1CCE0DA"},"sync":{"remaining_rollback_tries":"E8AC277C5FA4E3B23FD851681FB2C0320F8A42F0021CB353C650234ADF0C46F7"}},"super_mac":"0D7376214A761A3B5010CC11F552903C149FE130E5C2483A82BB1117968D2C4E"},"session":{"restore_on_startup":4,"startup_urls":["hxxp://www.omniboxes.com/?type=hp&ts=1436128866&z=a50aaea5e172adf0cff437egcz4cdqagbofbeb4q0q&from=tti&uid=ST1000DM003-1ER162_S4Y29BMCXXXXS4Y29BMC

-\\ Opera v30.0.1835.88


*************************

AdwCleaner[R0].txt - [16910 bytů] - [12/07/2015 19:38:31]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [16969 bytů] ##########


Je to špatný? :D

Re: Víc reklam než je zdrávo

Napsal: 12 črc 2015 20:03
od jerabina
Je tam toho dost, hlavně tam vidím i ty věci, co způsobují vyskakování tich reklam, takže by to mělo přestat :-)

Udělej ještě ten MBAM a potom začneme čistit.

Re: Víc reklam než je zdrávo

Napsal: 12 črc 2015 20:21
od PavlinQa1234
Malwarebytes Anti-Malware
www.malwarebytes.org

Datum skenování: 12. 7. 2015
Čas skenování: 20:05
Protokol:
Správce: Ano

Verze: 2.1.8.1057
Databáze malwaru: v2015.07.12.03
Databáze rootkitů: v2015.07.10.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Ochrana programu: Vypnuto

OS: Windows 8.1
CPU: x64
Souborový systém: NTFS
Uživatel: Jiří

Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 364311
Uplynulý čas: 13 min, 51 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 12
Spyware.Keylogger, C:\Windows\mlwps.exe, 1288, , [0fd4a63a2d5d80b6269c6baa788d8f71]
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugincontainer.exe, 1316, , [d310b62a4743171f4b4196ca58ad15eb]
PUP.Optional.RecordPage.A, C:\Program Files (x86)\Common Files\87737dd0-ad90-4193-bd48-336966b8d777\updater.bak, 6120, , [c51e667ae4a68babcebe075936cf5ba5]
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\3\Plugin.exe, 6488, , [30b39e42c3c7b0862a62e67a6b9a5ea2]
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\3\Plugin.exe, 9132, , [30b39e42c3c7b0862a62e67a6b9a5ea2]
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\7\Plugin.exe, 4796, , [32b17f61b9d1989e107c6af6ba4b1be5]
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\7\Plugin.exe, 10048, , [32b17f61b9d1989e107c6af6ba4b1be5]
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\5\Plugin.exe, 4340, , [f6edb62ac0ca3501c4c85c0448bd4bb5]
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\10\Plugin.exe, 8020, , [845faa362565da5c8a025d03c34217e9]
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\2\Plugin.exe, 6676, , [02e10cd49deda591b1db37299f66b749]
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\8\Plugin.exe, 4752, , [a43f5a86bfcb1224107caab6f312fa06]
PUP.Optional.Privoxy.A, C:\Program Files (x86)\Gamma Task Menager\privoxy.exe, 1248, , [449fbf2176147db9d5a047bb05fed22e]

Moduly: 1
PUP.Optional.Privoxy.A, C:\Program Files (x86)\Gamma Task Menager\mgwz.dll, , [9053b729018961d581c5cb325da509f7],

Klíče registru: 66
Spyware.Keylogger, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\Live Malware Protection, , [0fd4a63a2d5d80b6269c6baa788d8f71],
PUP.Optional.RecordPage.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\Service Mgr RecordPage, , [d310b62a4743171f4b4196ca58ad15eb],
PUP.Optional.RecordPage.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\Update Mgr RecordPage, , [37acda0677133df97f0d63fd0302df21],
PUP.Optional.RecordPage.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{2335267c-dbba-4dd5-a9d0-c4db8e6a75a4}, , [608328b84248df575b4a9b23e81a02fe],
PUP.Optional.RecordPage.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{2335267c-dbba-4dd5-a9d0-c4db8e6a75a4}, , [608328b84248df575b4a9b23e81a02fe],
PUP.Optional.RecordPage.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{1fcdf527-b10c-481d-b214-b09eea106124}, , [608328b84248df575b4a9b23e81a02fe],
PUP.Optional.RecordPage.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{D1611ACC-4B10-4B34-8CDE-0AE7B2A270A6}, , [608328b84248df575b4a9b23e81a02fe],
PUP.Optional.RecordPage.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{D1611ACC-4B10-4B34-8CDE-0AE7B2A270A6}, , [608328b84248df575b4a9b23e81a02fe],
PUP.Optional.RecordPage.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{D1611ACC-4B10-4B34-8CDE-0AE7B2A270A6}, , [608328b84248df575b4a9b23e81a02fe],
PUP.Optional.RecordPage.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{1fcdf527-b10c-481d-b214-b09eea106124}, , [608328b84248df575b4a9b23e81a02fe],
PUP.Optional.RecordPage.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{1fcdf527-b10c-481d-b214-b09eea106124}, , [608328b84248df575b4a9b23e81a02fe],
PUP.Optional.RecordPage.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{2335267C-DBBA-4DD5-A9D0-C4DB8E6A75A4}, , [608328b84248df575b4a9b23e81a02fe],
PUP.Optional.RecordPage.A, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{2335267C-DBBA-4DD5-A9D0-C4DB8E6A75A4}, , [608328b84248df575b4a9b23e81a02fe],
PUP.Optional.RecordPage.A, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{2335267C-DBBA-4DD5-A9D0-C4DB8E6A75A4}, , [608328b84248df575b4a9b23e81a02fe],
PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}, , [bb28f3ed9dedb1851c5e354814ee42be],
PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}, , [bb28f3ed9dedb1851c5e354814ee42be],
PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{7D3C47ED-E0BE-4940-9DDA-A7A097AEBD88}, , [bb28f3ed9dedb1851c5e354814ee42be],
PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{917CAAE9-DD47-4025-936E-1414F07DF5B8}, , [bb28f3ed9dedb1851c5e354814ee42be],
PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{7D3C47ED-E0BE-4940-9DDA-A7A097AEBD88}, , [bb28f3ed9dedb1851c5e354814ee42be],
PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{7D3C47ED-E0BE-4940-9DDA-A7A097AEBD88}, , [bb28f3ed9dedb1851c5e354814ee42be],
PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}, , [bb28f3ed9dedb1851c5e354814ee42be],
PUP.Optional.LuckyTab.A, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}, , [bb28f3ed9dedb1851c5e354814ee42be],
PUP.Optional.LuckyTab.A, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}, , [bb28f3ed9dedb1851c5e354814ee42be],
PUP.Optional.SecureWeb.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{D3C24E2B-C820-4492-9B69-11BF7163F998}, , [9c476b753d4da88ea8bc5030bb47867a],
PUP.Optional.SecureWeb.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{D3C24E2B-C820-4492-9B69-11BF7163F998}, , [9c476b753d4da88ea8bc5030bb47867a],
PUP.Optional.SecureWeb.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{2F137995-4D26-44AD-9C4E-91055090A817}, , [9c476b753d4da88ea8bc5030bb47867a],
PUP.Optional.SecureWeb.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{A1E7709A-3AFB-49B8-8719-CCBF3F73CCB1}, , [9c476b753d4da88ea8bc5030bb47867a],
PUP.Optional.SecureWeb.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{A1E7709A-3AFB-49B8-8719-CCBF3F73CCB1}, , [9c476b753d4da88ea8bc5030bb47867a],
PUP.Optional.SecureWeb.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{A1E7709A-3AFB-49B8-8719-CCBF3F73CCB1}, , [9c476b753d4da88ea8bc5030bb47867a],
PUP.Optional.SecureWeb.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{2F137995-4D26-44AD-9C4E-91055090A817}, , [9c476b753d4da88ea8bc5030bb47867a],
PUP.Optional.SecureWeb.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{2F137995-4D26-44AD-9C4E-91055090A817}, , [9c476b753d4da88ea8bc5030bb47867a],
PUP.Optional.SecureWeb.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{D3C24E2B-C820-4492-9B69-11BF7163F998}, , [9c476b753d4da88ea8bc5030bb47867a],
PUP.Optional.SecureWeb.A, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{D3C24E2B-C820-4492-9B69-11BF7163F998}, , [9c476b753d4da88ea8bc5030bb47867a],
PUP.Optional.SecureWeb.A, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{D3C24E2B-C820-4492-9B69-11BF7163F998}, , [9c476b753d4da88ea8bc5030bb47867a],
PUP.Optional.GoSearchMe.C, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{20B9D1AE-AD1A-38B4-87FE-AF278DA9861D}, , [b82baf31dcaed16507a804baf60cc838],
PUP.Optional.GoSearchMe.C, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{20B9D1AE-AD1A-38B4-87FE-AF278DA9861D}, , [b82baf31dcaed16507a804baf60cc838],
PUP.Optional.RecordPage.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Record Page, , [f0f3835dd2b8cc6af696332d1ee79769],
PUP.Optional.Omniboxes.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, , [10d307d931599c9a6f4cabd9eb19bc44],
PUP.Optional.APNToolBar.Gen, HKLM\SOFTWARE\WOW6432NODE\AskPartnerNetwork, , [82619749a9e14fe77df0847d996a59a7],
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\Iminent, , [8360429e404adf57afe801480df6b947],
PUP.Optional.Omniboxes.A, HKLM\SOFTWARE\WOW6432NODE\omniboxesSoftware, , [cf141cc497f386b039e33ece43c0ed13],
PUP.Optional.Wajam.A, HKLM\SOFTWARE\WOW6432NODE\WajIntEnhance, , [ac37eff1b6d40630517b4fc0a45f5aa6],
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\IMBoosterARP, , [ca192eb285054cea06ed56b6d231c23e],
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\IminentToolbar, , [b033647c9befc472c03210fcd132817f],
PUP.Optional.Vosteran, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Vosteran.com, , [e5fec41c3b4ff73ff682a8728c7712ee],
PUP.Optional.Wajam.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\WajIntEnhance, , [7b68954be0aaa393faf7b75515ee9769],
PUP.Optional.UpdateAdmin.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{07B4B423-E4DA-47D1-8327-B589EB4BEB58}, , [b42feff18cfe290d9d512d6247bd1be5],
PUP.Optional.Privoxy.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\PRIVOXYSERVICE, , [449fbf2176147db9d5a047bb05fed22e],
PUP.Optional.APNToolBar.Gen, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\AskPartnerNetwork, , [36ad00e04545d066b9b3e918867d55ab],
PUP.Optional.HomeTab.A, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\HomeTab, , [52911dc36a2047ef17c962d2d231d22e],
PUP.Optional.SearchProtect.A, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\SearchProtectWS, , [5093a63afc8e290dd421f517679c3bc5],
PUP.Optional.TNT.A, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\TNT2, , [10d328b81971171ff4ab64aab94a26da],
PUP.Optional.Wajam.A, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\WajIEnhance, , [41a2637d6e1c2f077e24ce46c34031cf],
PUP.Optional.Wajam.A, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\WajIntEnhance, , [c122518fd6b42a0c4c811ef1d0332dd3],
PUP.Optional.UpdateAdmin.A, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\DOWNLOADADMIN\UpdateAdmin, , [1fc45c84afdbea4c8a77ac64838021df],
PUP.Optional.Omniboxes.A, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472F-A0FF-E1416B8B2E3A}, , [499a756b9eec2d0913a7e99b71935fa1],
PUP.Optional.Omniboxes.A, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}, , [f9eae2fecebc7eb89822f88c0ff50bf5],
PUP.Optional.Omniboxes.A, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{E733165D-CBCF-4FDA-883E-ADEF965B476C}, , [eff4c020f8928aac17a3661eb1539769],
PUP.Optional.Iminent.A, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\IMBoosterARP, , [25be9c44e9a1b086f7a2cd3c2bd8db25],
PUP.Optional.Iminent.A, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\IminentToolbar, , [c2210ed2bcce6ccae5b5aa5f798acd33],
PUP.Optional.Linkey.A, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Linkey, , [30b3e8f8c7c3cd696338a8617f84aa56],
PUP.Optional.SearchProtect.A, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\SearchProtect, , [7b68e4fc93f759ddac4184043dc76997],
PUP.Optional.Vosteran.A, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Vosteran.com, , [15ce03dd0c7e8ea88d0fd93047bc966a],
PUP.Optional.Wajam.A, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\WajIntEnhance, , [7f645f81e8a27cba544984858b787d83],
PUP.Optional.HomeTab.A, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\SIMPLYTECH\HomeTab, , [845f8d53563478be668b48fda55ee21e],
PUP.Optional.Omniboxes.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\omniboxes uninstall, , [06dddb057d0d72c48e08c038ad559d63],

Hodnoty registru: 14
PUP.Optional.DownloadAdmin.C, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|UpdateAdmin, C:\Users\Jiří\AppData\Local\UpdateAdmin\UpdateAdmin.exe /RUN, , [fae97967216948ee985c10509471c937]
PUP.Optional.Omniboxes.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}|URL, http://www.omniboxes.com/web/?type=ds&t ... 4Y29BMC&q={searchTerms}, , [10d307d931599c9a6f4cabd9eb19bc44]
PUP.Optional.GoSearchMe.C, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\ABOUTURLS|Tabs, https://gosearch.me/?u=22c46506a748e9b6 ... 1436341089, , [edf62eb2e2a8979f45196425af55c23e]
PUP.Optional.GoSearch.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{20B9D1AE-AD1A-38B4-87FE-AF278DA9861D}|URL, https://gosearch.me/?q={searchTerms}&u=22c46506a748e9b6bd4ae0f1f1129d57&c=up1&src=srch&inst=1436341089, , [d60d5888b8d269cdb0b0e79f1de7a35d]
PUP.Optional.UpdateAdmin.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{07B4B423-E4DA-47D1-8327-B589EB4BEB58}|Publisher, DownloadAdmin, , [b42feff18cfe290d9d512d6247bd1be5]
PUP.Optional.Privoxy.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\PRIVOXYSERVICE|ImagePath, "C:\Program Files (x86)\Gamma Task Menager\privoxy.exe" --service, , [449fbf2176147db9d5a047bb05fed22e]
PUP.Optional.GoSearchMe.C, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\ABOUTURLS|Tabs, https://gosearch.me/?u=22c46506a748e9b6 ... 1436341089, , [42a1ffe1fe8c2c0ae27be4a56c98c63a]
PUP.Optional.Omniboxes.A, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}|URL, http://www.omniboxes.com/web/?utm_sourc ... default&q={searchTerms}, , [499a756b9eec2d0913a7e99b71935fa1]
PUP.Optional.Omniboxes.A, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}|URL, http://www.omniboxes.com/web/?utm_sourc ... default&q={searchTerms}, , [f9eae2fecebc7eb89822f88c0ff50bf5]
PUP.Optional.Omniboxes.A, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}|FaviconURL, http://www.omniboxes.com//favicon.ico, , [03e05888a6e47bbb2991f78dcd377987]
PUP.Optional.Omniboxes.A, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{20B9D1AE-AD1A-38B4-87FE-AF278DA9861D}|URL, http://www.omniboxes.com/web/?utm_sourc ... default&q={searchTerms}, , [727199478208b87e4674592bd82c04fc]
PUP.Optional.GoSearch.A, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{20B9D1AE-AD1A-38B4-87FE-AF278DA9861D}|TopResultURL, https://gosearch.me/?q={searchTerms}&u=22c46506a748e9b6bd4ae0f1f1129d57&c=up1&src=srch&inst=1436341089, , [fce7865a87038fa7e27d1076e123f808]
PUP.Optional.Omniboxes.A, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{E733165D-CBCF-4FDA-883E-ADEF965B476C}|URL, http://www.omniboxes.com/web/?utm_sourc ... default&q={searchTerms}, , [eff4c020f8928aac17a3661eb1539769]
PUM.Bad.Proxy, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|ProxyServer, 127.0.0.1:8118, , [9d46f9e7bbcff2445aa9c5be6d97629e]

Data registru: 6
PUP.Optional.Omniboxes.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, http://www.omniboxes.com/web/?type=ds&t ... 4Y29BMC&q={searchTerms}, Dobré: (www.google.com), Špatné: (http://www.omniboxes.com/web/?type=ds&t ... 4Y29BMC&q={searchTerms}),,[fae93ca42f5bad894f533ef047be7987]
PUP.Optional.Omniboxes.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, http://www.omniboxes.com/?type=hp&ts=14 ... XXS4Y29BMC, Dobré: (www.google.com), Špatné: (http://www.omniboxes.com/?type=hp&ts=14 ... XXS4Y29BMC),,[eef5be223852e94d2f73e44a65a0e719]
PUP.Optional.Omniboxes.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, http://www.omniboxes.com/?type=hp&ts=14 ... XXS4Y29BMC, Dobré: (www.google.com), Špatné: (http://www.omniboxes.com/?type=hp&ts=14 ... XXS4Y29BMC),,[449f7b65f3971b1b297949e509fc9868]
PUP.Optional.Omniboxes.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, http://www.omniboxes.com/web/?type=ds&t ... 4Y29BMC&q={searchTerms}, Dobré: (www.google.com), Špatné: (http://www.omniboxes.com/web/?type=ds&t ... 4Y29BMC&q={searchTerms}),,[5c8778685d2de551ccd60e208e773ac6]
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Dobré: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Špatné: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),,[22c1d60a7d0da492fc3fc568c540a759]
PUP.Optional.Omniboxes.A, HKU\S-1-5-21-2140061879-4247313515-970661719-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, http://www.omniboxes.com/?type=hp&ts=14 ... XXS4Y29BMC, Dobré: (www.google.com), Špatné: (http://www.omniboxes.com/?type=hp&ts=14 ... XXS4Y29BMC),,[15cebb253d4d63d3257e002e3bca9a66]

Složky: 58
PUP.Optional.UpdateAdmin.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UpdateAdmin, , [ce15f2ee4149f244be42818f976c5ca4],
PUP.Optional.UpdateAdmin.C, C:\Windows\Installer\{07B4B423-E4DA-47D1-8327-B589EB4BEB58}, , [9d4649972961ba7cbae2fd93976d28d8],
PUP.Optional.UpdateAdmin.A, C:\Users\Jiří\AppData\Local\UpdateAdmin, , [667d9e42355536009ae7c631d52deb15],
PUP.Optional.Omniboxes.A, C:\Users\Jiří\AppData\Roaming\omniboxes, , [06dddb057d0d72c48e08c038ad559d63],
PUP.Optional.Omniboxes.A, C:\Users\Jiří\AppData\Roaming\omniboxes\images, , [06dddb057d0d72c48e08c038ad559d63],
PUP.Optional.Omniboxes.A, C:\Users\Jiří\AppData\Roaming\omniboxes\images\code, , [06dddb057d0d72c48e08c038ad559d63],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777, , [c02359870e7c1e18eaf25d9fdd25ba46],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugincontainer, , [c02359870e7c1e18eaf25d9fdd25ba46],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins, , [c02359870e7c1e18eaf25d9fdd25ba46],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\10, , [c02359870e7c1e18eaf25d9fdd25ba46],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\10bak, , [c02359870e7c1e18eaf25d9fdd25ba46],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\2, , [c02359870e7c1e18eaf25d9fdd25ba46],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\2bak, , [c02359870e7c1e18eaf25d9fdd25ba46],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\3, , [c02359870e7c1e18eaf25d9fdd25ba46],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\3bak, , [c02359870e7c1e18eaf25d9fdd25ba46],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\5, , [c02359870e7c1e18eaf25d9fdd25ba46],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\5bak, , [c02359870e7c1e18eaf25d9fdd25ba46],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\7, , [c02359870e7c1e18eaf25d9fdd25ba46],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\7\resources, , [c02359870e7c1e18eaf25d9fdd25ba46],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\7bak, , [c02359870e7c1e18eaf25d9fdd25ba46],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\7bak\resources, , [c02359870e7c1e18eaf25d9fdd25ba46],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\8, , [c02359870e7c1e18eaf25d9fdd25ba46],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\8bak, , [c02359870e7c1e18eaf25d9fdd25ba46],
PUP.Optional.RecordPage.A, C:\Program Files (x86)\Common Files\87737dd0-ad90-4193-bd48-336966b8d777, , [c51e3da335559d990ecf7389af53f709],
PUP.Optional.RecordPage.A, C:\Program Files (x86)\Common Files\87737dd0-ad90-4193-bd48-336966b8d777\updater, , [c51e3da335559d990ecf7389af53f709],
PUP.Optional.RecordPage.A, C:\Program Files (x86)\Record Page, , [9152b7293d4d6accd40a20dc09f90bf5],
PUP.Optional.RecordPage.A, C:\Program Files (x86)\Record Page\Extensions, , [9152b7293d4d6accd40a20dc09f90bf5],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\Gamma Task Menager, , [9053b729018961d581c5cb325da509f7],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin\image, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\img, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\js, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\en-US, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\es-419, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\es-ES, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\fr-BE, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\fr-CA, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\fr-CH, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\fr-FR, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\fr-LU, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\it-CH, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\it-IT, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\pl, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\pt, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\pt-BR, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\ru, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\ru-MO, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\tr-TR, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\vi-VI, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\zh-CN, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\zh-TW, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.RecordPage.A, C:\Users\Jiří\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioldkaaghkinkaahpkieimlclilnkana\1.0.5663.28564_0, , [38ab4997f694be781fe2d1926f96758b],
PUP.Optional.RecordPage.A, C:\Users\Jiří\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioldkaaghkinkaahpkieimlclilnkana, , [38ab4997f694be781fe2d1926f96758b],
PUP.Optional.RecordPage.A, C:\Users\Jiří\AppData\Roaming\Opera Software\Opera Stable\Extensions\ioldkaaghkinkaahpkieimlclilnkana\1.0.5663.28564_0, , [ecf73fa15f2b38fe2793f56ea2635fa1],
PUP.Optional.RecordPage.A, C:\Users\Jiří\AppData\Roaming\Opera Software\Opera Stable\Extensions\ioldkaaghkinkaahpkieimlclilnkana, , [ecf73fa15f2b38fe2793f56ea2635fa1],

Soubory: 157
Spyware.Keylogger, C:\Windows\mlwps.exe, , [0fd4a63a2d5d80b6269c6baa788d8f71],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugincontainer.exe, , [d310b62a4743171f4b4196ca58ad15eb],
PUP.Optional.RecordPage.A, C:\Program Files (x86)\Common Files\87737dd0-ad90-4193-bd48-336966b8d777\updater.bak, , [c51e667ae4a68babcebe075936cf5ba5],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\3\Plugin.exe, , [30b39e42c3c7b0862a62e67a6b9a5ea2],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\7\Plugin.exe, , [32b17f61b9d1989e107c6af6ba4b1be5],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\5\Plugin.exe, , [f6edb62ac0ca3501c4c85c0448bd4bb5],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\10\Plugin.exe, , [845faa362565da5c8a025d03c34217e9],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\2\Plugin.exe, , [02e10cd49deda591b1db37299f66b749],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\8\Plugin.exe, , [a43f5a86bfcb1224107caab6f312fa06],
PUP.Optional.DownloadAdmin.C, C:\Users\Jiří\AppData\Local\UpdateAdmin\UpdateAdmin.exe, , [fae97967216948ee985c10509471c937],
PUP.Optional.RecordPage.A, C:\Program Files (x86)\Common Files\87737dd0-ad90-4193-bd48-336966b8d777\updater.exe, , [37acda0677133df97f0d63fd0302df21],
PUP.Optional.RecordPage.A, C:\Program Files (x86)\Record Page\Extensions\2335267c-dbba-4dd5-a9d0-c4db8e6a75a4.dll, , [608328b84248df575b4a9b23e81a02fe],
PUP.Optional.LuckyTab.A, C:\Program Files (x86)\MiuiTab\SupTab.dll, , [bb28f3ed9dedb1851c5e354814ee42be],
PUP.Optional.SecureWeb.A, C:\Program Files (x86)\Gamma Task Menager\itie.dll, , [9c476b753d4da88ea8bc5030bb47867a],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugincontainer.bak, , [984bf3ed9dedd75f0d7f40207095916f],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\10bak\Plugin.exe, , [36ade7f9e6a481b58a02293743c25ca4],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\2bak\Plugin.exe, , [5d86be226e1cf83e9bf1d48c27dece32],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\3bak\Plugin.exe, , [7d66a43c1e6c8da9612baab6c83d06fa],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\5bak\Plugin.exe, , [1ec54d936129c175a0ec68f88a7b57a9],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\7\resources\34.0.5.dll, , [db086f71bbcfae88305c560a6b9af808],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\7\resources\38.0.5.dll, , [bd26ce12701a79bdbcd0db853fc66d93],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\7\resources\39.0.0.dll, , [5e852eb24f3b63d3573540209e6716ea],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\7bak\Plugin.exe, , [1bc8c61a1a705fd72a62421ed0358b75],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\7bak\resources\34.0.5.dll, , [ad365f815c2ed5618dffa1bf54b17888],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\7bak\resources\38.0.5.dll, , [6380c0202466a3932864124e6c9938c8],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\7bak\resources\39.0.0.dll, , [e5fe7070d1b9cd6938540e521ee75aa6],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\8bak\Plugin.exe, , [6e75e00016741026434961ff4fb6738d],
Trojan.Downloader, C:\Users\Jiří\AppData\Roaming\5C59.tmp.exe, , [a53e439d503ad95d2f76fd777989fc04],
Hacktool.CheatEngine, C:\Users\Jiří\Desktop\Assassins Creed 4 Black Flag Trainer +14 V1.07 MrAntiFun.EXE, , [e102bc248406e3536a210b2abe42619f],
Hacktool.CheatEngine, C:\Users\Jiří\Desktop\Assassins Creed Rogue V1.00 Trainer +6 MrAntiFun.EXE, , [f6ed5f817515a88e9fec72c310f06997],
PUP.Optional.XTab.A, C:\Program Files (x86)\MiuiTab\ProtectService.exe, , [7370b8289eec211541ef312ab05132ce],
PUP.Optional.RecordPage.A, C:\Program Files (x86)\Record Page\Uninstaller.exe, , [f0f3835dd2b8cc6af696332d1ee79769],
Hacktool.KMS, C:\Users\Jiří\Downloads\Activator.rar, , [12d1647c0f7b76c0638c3e2d5ca617e9],
Trojan.MSIL.UL, C:\Users\Jiří\Downloads\Counter-strike-1.6---Speed-Hack-[2014].rar, , [de05dd037d0d6accb417cb44de23ce32],
Hacktool.CheatEngine, C:\Users\Jiří\Downloads\Assassins Creed 4 Black Flag Trainer +14 V1.07 MrAntiFun.zip, , [944f5f815436f2448a0136ff5ca406fa],
Hacktool.CheatEngine, C:\Users\Jiří\Downloads\Assassins Creed Rogue V1.00 Trainer +6 MrAntiFun (2).zip, , [0dd6f4ecf39772c41972b481f01046ba],
Hacktool.CheatEngine, C:\Users\Jiří\Downloads\assassins-creed-4-black-flag-v1.01-trainer-plus10.zip, , [09da736d42488aacd3b8b4815ea2847c],
PUP.Optional.Omniboxes.A, C:\Users\Jiří\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.omniboxes.com_0.localstorage, , [cf149f41a1e975c1fd56a4681fe4768a],
PUP.Optional.Omniboxes.A, C:\Users\Jiří\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.omniboxes.com_0.localstorage-journal, , [b62d04dc94f64de9b1a2be4eac57c33d],
PUP.Optional.UpdateAdmin.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UpdateAdmin\UpdateAdmin.lnk, , [ce15f2ee4149f244be42818f976c5ca4],
PUP.Optional.RecordPage.A, C:\Users\Jiří\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_recordpage-a.akamaihd.net_0.localstorage, , [459e7967eb9f7db91a5bdaae857f9967],
PUP.Optional.RecordPage.A, C:\Users\Jiří\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_recordpage-a.akamaihd.net_0.localstorage-journal, , [4a9936aa375364d2561f5f295da7ba46],
PUP.Optional.UpdateAdmin.C, C:\Windows\System32\Tasks\UpdateAdmin, , [489b756b95f5191d7526c2ced430fd03],
PUP.Optional.UpdateAdmin.C, C:\Windows\Installer\{07B4B423-E4DA-47D1-8327-B589EB4BEB58}\icon.ico, , [9d4649972961ba7cbae2fd93976d28d8],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\Gamma Task Menager\privoxy.exe, , [449fbf2176147db9d5a047bb05fed22e],
PUP.Optional.Omniboxes.A, C:\Users\Jiří\AppData\Roaming\omniboxes\476.json, , [06dddb057d0d72c48e08c038ad559d63],
PUP.Optional.Omniboxes.A, C:\Users\Jiří\AppData\Roaming\omniboxes\MessageBox.xml, , [06dddb057d0d72c48e08c038ad559d63],
PUP.Optional.Omniboxes.A, C:\Users\Jiří\AppData\Roaming\omniboxes\un.ini, , [06dddb057d0d72c48e08c038ad559d63],
PUP.Optional.Omniboxes.A, C:\Users\Jiří\AppData\Roaming\omniboxes\uninstallDlg2.xml, , [06dddb057d0d72c48e08c038ad559d63],
PUP.Optional.Omniboxes.A, C:\Users\Jiří\AppData\Roaming\omniboxes\UninstallManager.exe, , [06dddb057d0d72c48e08c038ad559d63],
PUP.Optional.Omniboxes.A, C:\Users\Jiří\AppData\Roaming\omniboxes\images\bg.png, , [06dddb057d0d72c48e08c038ad559d63],
PUP.Optional.Omniboxes.A, C:\Users\Jiří\AppData\Roaming\omniboxes\images\bg1.png, , [06dddb057d0d72c48e08c038ad559d63],
PUP.Optional.Omniboxes.A, C:\Users\Jiří\AppData\Roaming\omniboxes\images\bk_shadow.png, , [06dddb057d0d72c48e08c038ad559d63],
PUP.Optional.Omniboxes.A, C:\Users\Jiří\AppData\Roaming\omniboxes\images\button.png, , [06dddb057d0d72c48e08c038ad559d63],
PUP.Optional.Omniboxes.A, C:\Users\Jiří\AppData\Roaming\omniboxes\images\button1.png, , [06dddb057d0d72c48e08c038ad559d63],
PUP.Optional.Omniboxes.A, C:\Users\Jiří\AppData\Roaming\omniboxes\images\checkbox.png, , [06dddb057d0d72c48e08c038ad559d63],
PUP.Optional.Omniboxes.A, C:\Users\Jiří\AppData\Roaming\omniboxes\images\checkbox_select.png, , [06dddb057d0d72c48e08c038ad559d63],
PUP.Optional.Omniboxes.A, C:\Users\Jiří\AppData\Roaming\omniboxes\images\checked.png, , [06dddb057d0d72c48e08c038ad559d63],
PUP.Optional.Omniboxes.A, C:\Users\Jiří\AppData\Roaming\omniboxes\images\close.png, , [06dddb057d0d72c48e08c038ad559d63],
PUP.Optional.Omniboxes.A, C:\Users\Jiří\AppData\Roaming\omniboxes\images\loading_bg.png, , [06dddb057d0d72c48e08c038ad559d63],
PUP.Optional.Omniboxes.A, C:\Users\Jiří\AppData\Roaming\omniboxes\images\loading_light.png, , [06dddb057d0d72c48e08c038ad559d63],
PUP.Optional.Omniboxes.A, C:\Users\Jiří\AppData\Roaming\omniboxes\images\min.png, , [06dddb057d0d72c48e08c038ad559d63],
PUP.Optional.Omniboxes.A, C:\Users\Jiří\AppData\Roaming\omniboxes\images\scrollbar.bmp, , [06dddb057d0d72c48e08c038ad559d63],
PUP.Optional.Omniboxes.A, C:\Users\Jiří\AppData\Roaming\omniboxes\images\Thumbs.db, , [06dddb057d0d72c48e08c038ad559d63],
PUP.Optional.Omniboxes.A, C:\Users\Jiří\AppData\Roaming\omniboxes\images\unchecked.png, , [06dddb057d0d72c48e08c038ad559d63],
PUP.Optional.Omniboxes.A, C:\Users\Jiří\AppData\Roaming\omniboxes\images\code\code1.jpg, , [06dddb057d0d72c48e08c038ad559d63],
PUP.Optional.Omniboxes.A, C:\Users\Jiří\AppData\Roaming\omniboxes\images\code\code2.jpg, , [06dddb057d0d72c48e08c038ad559d63],
PUP.Optional.Omniboxes.A, C:\Users\Jiří\AppData\Roaming\omniboxes\images\code\code3.jpg, , [06dddb057d0d72c48e08c038ad559d63],
PUP.Optional.Omniboxes.A, C:\Users\Jiří\AppData\Roaming\omniboxes\images\code\code4.jpg, , [06dddb057d0d72c48e08c038ad559d63],
PUP.Optional.Omniboxes.A, C:\Users\Jiří\AppData\Roaming\omniboxes\images\code\code5.jpg, , [06dddb057d0d72c48e08c038ad559d63],
PUP.Optional.Omniboxes.A, C:\Users\Jiří\AppData\Roaming\omniboxes\images\code\code6.jpg, , [06dddb057d0d72c48e08c038ad559d63],
PUP.Optional.Omniboxes.A, C:\Users\Jiří\AppData\Roaming\omniboxes\images\code\Thumbs.db, , [06dddb057d0d72c48e08c038ad559d63],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\temp, , [c02359870e7c1e18eaf25d9fdd25ba46],
PUP.Optional.RecordPage.A, C:\Program Files (x86)\Common Files\87737dd0-ad90-4193-bd48-336966b8d777\updater.upd, , [c51e3da335559d990ecf7389af53f709],
PUP.Optional.RecordPage.A, C:\Program Files (x86)\Record Page\7za.exe, , [9152b7293d4d6accd40a20dc09f90bf5],
PUP.Optional.RecordPage.A, C:\Program Files (x86)\Record Page\Extensions\ioldkaaghkinkaahpkieimlclilnkana.crx, , [9152b7293d4d6accd40a20dc09f90bf5],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\Gamma Task Menager\checkproxy.exe, , [9053b729018961d581c5cb325da509f7],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\Gamma Task Menager\config.txt, , [9053b729018961d581c5cb325da509f7],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\Gamma Task Menager\default.action, , [9053b729018961d581c5cb325da509f7],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\Gamma Task Menager\default.filter, , [9053b729018961d581c5cb325da509f7],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\Gamma Task Menager\gtrsecure.exe, , [9053b729018961d581c5cb325da509f7],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\Gamma Task Menager\itff.exe, , [9053b729018961d581c5cb325da509f7],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\Gamma Task Menager\itweb.dll, , [9053b729018961d581c5cb325da509f7],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\Gamma Task Menager\itweb64.dll, , [9053b729018961d581c5cb325da509f7],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\Gamma Task Menager\jswchromium.exe, , [9053b729018961d581c5cb325da509f7],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\Gamma Task Menager\jswchromium64.exe, , [9053b729018961d581c5cb325da509f7],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\Gamma Task Menager\mgwz.dll, , [9053b729018961d581c5cb325da509f7],
PUP.Optional.Privoxy.A, C:\Program Files (x86)\Gamma Task Menager\privoxy.log, , [9053b729018961d581c5cb325da509f7],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\ffsearch_toolbar!1.0.0.1031.xpi, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\install.data, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\msvcp110.dll, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\msvcr110.dll, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\searchProvider.xml, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\uninstall.exe, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin\about.png, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin\about_bk.png, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin\btn.png, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin\btn_apply.png, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin\close.png, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin\conf.xml, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin\conf_back.png, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin\input_bk.png, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin\logo.png, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin\main.xml, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin\radio_1.png, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin\radio_2.png, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin\rigth_arrow.png, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin\settings.png, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\data.html, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\indexIE.html, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\indexIE8.html, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\main.css, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\ver.txt, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\img\google_trends.png, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\img\icon128.png, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\img\icon16.png, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\img\icon48.png, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\img\loading.gif, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\img\logo32.ico, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\js\common.js, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\js\ga.js, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\js\jquery-1.11.0.min.js, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\js\jquery.autocomplete.js, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\js\jquery.xdomainrequest.min.js, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\js\js.js, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\js\library.js, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\js\xagainit-ie8.js, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\js\xagainit2.0.js, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\js\xdomain.min.js, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\en-US\messages.json, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\es-419\messages.json, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\es-ES\messages.json, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\fr-BE\messages.json, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\fr-CA\messages.json, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\fr-CH\messages.json, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\fr-FR\messages.json, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\fr-LU\messages.json, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\it-CH\messages.json, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\it-IT\messages.json, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\pl\messages.json, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\pt\messages.json, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\pt-BR\messages.json, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\ru\messages.json, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\ru-MO\messages.json, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\tr-TR\messages.json, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\vi-VI\messages.json, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\zh-CN\messages.json, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\zh-TW\messages.json, , [28bb449c37530f27feeab24c0af8e818],
PUP.Optional.RecordPage.A, C:\Users\Jiří\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioldkaaghkinkaahpkieimlclilnkana\1.0.5663.28564_0\manifest.json, , [38ab4997f694be781fe2d1926f96758b],
PUP.Optional.RecordPage.A, C:\Users\Jiří\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioldkaaghkinkaahpkieimlclilnkana\1.0.5663.28564_0\background.js, , [38ab4997f694be781fe2d1926f96758b],
PUP.Optional.RecordPage.A, C:\Users\Jiří\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioldkaaghkinkaahpkieimlclilnkana\1.0.5663.28564_0\content.js, , [38ab4997f694be781fe2d1926f96758b],
PUP.Optional.RecordPage.A, C:\Users\Jiří\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioldkaaghkinkaahpkieimlclilnkana\1.0.5663.28564_0\icon.png, , [38ab4997f694be781fe2d1926f96758b],
PUP.Optional.Omniboxes, C:\Users\Jiří\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences, Dobré: ("session":{"restore_on_startup":4,"startup_urls":["https://www.malwarebytes.org/restorebrowser/"]}}), Špatné: ("session":{"restore_on_startup":4,"startup_urls":["http://www.omniboxes.com/?type=hp&ts=1436128866&z=a50aaea5e172adf0cff437egcz4cdqagbofbeb4q0q&from=tti&uid=ST1000DM003-1ER162_S4Y29BMCXXXXS4Y29BMC"]}}), ,[17cc4b958604c67019557fe90bfacb35]
PUP.Optional.RecordPage.A, C:\Users\Jiří\AppData\Roaming\Opera Software\Opera Stable\Extensions\ioldkaaghkinkaahpkieimlclilnkana\1.0.5663.28564_0\manifest.json, , [ecf73fa15f2b38fe2793f56ea2635fa1],
PUP.Optional.RecordPage.A, C:\Users\Jiří\AppData\Roaming\Opera Software\Opera Stable\Extensions\ioldkaaghkinkaahpkieimlclilnkana\1.0.5663.28564_0\background.js, , [ecf73fa15f2b38fe2793f56ea2635fa1],
PUP.Optional.RecordPage.A, C:\Users\Jiří\AppData\Roaming\Opera Software\Opera Stable\Extensions\ioldkaaghkinkaahpkieimlclilnkana\1.0.5663.28564_0\content.js, , [ecf73fa15f2b38fe2793f56ea2635fa1],
PUP.Optional.RecordPage.A, C:\Users\Jiří\AppData\Roaming\Opera Software\Opera Stable\Extensions\ioldkaaghkinkaahpkieimlclilnkana\1.0.5663.28564_0\icon.png, , [ecf73fa15f2b38fe2793f56ea2635fa1],

Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)


(end)

Re: Víc reklam než je zdrávo

Napsal: 12 črc 2015 20:22
od jerabina
Dobře, dáme se do čištění :-)

Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce
klikni na „Prohledat-Scan“, po prohledání klikni na „ Vymazat-Clean

Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.

Spusť znovu MbAM a dej Skenovat nyní
- po proběhnutí programu se ti objeví hláška tak klikni na „Vše do karantény(smazat vybrané)“ a na „Exportovat záznam“ a vyber „textový soubor“ , soubor nějak pojmenuj a někam ho ulož. Zkopíruj se celý obsah toho logu.

Stáhni si Junkware Removal Tool by Thisisu

na svojí plochu.

Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.

Stáhni si RogueKiller
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.

Re: Víc reklam než je zdrávo

Napsal: 12 črc 2015 20:52
od PavlinQa1234
# AdwCleaner v4.208 - Log vytvořen 12/07/2015 v 20:46:32
# Aktualizováno 09/07/2015 by Xplode
# Databáze : 2015-07-11.1 [Server]
# Operační system : Windows 8.1 Pro (x64)
# Uživatelské jméno : Jiří - CHAPPIE
# Spuštěno z : C:\Users\Jiří\Downloads\AdwCleaner.exe
# Nastavení : Čištění

***** [ Služby ] *****

[#] Služba Smazáno : Live Malware Protection
[#] Služba Smazáno : PrivoxyService
Služba Smazáno : Service Mgr RecordPage
[#] Služba Smazáno : Update Mgr RecordPage

***** [ Soubory / Složky ] *****

Složka Smazáno : C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777
Složka Smazáno : C:\Program Files (x86)\Common Files\87737dd0-ad90-4193-bd48-336966b8d777
Soubor Smazáno : C:\WINDOWS\mlwps.exe
Soubor Smazáno : C:\Users\Jiří\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_recordpage-a.akamaihd.net_0.localstorage
Soubor Smazáno : C:\Users\Jiří\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_recordpage-a.akamaihd.net_0.localstorage-journal
Soubor Smazáno : C:\Users\Jiří\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.omniboxes.com_0.localstorage
Soubor Smazáno : C:\Users\Jiří\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.omniboxes.com_0.localstorage-journal
Soubor Smazáno : C:\Users\Jiří\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_www.omniboxes.com_0.localstorage
Soubor Smazáno : C:\Users\Jiří\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_www.omniboxes.com_0.localstorage-journal

***** [ Naplánované úlohy ] *****

Úloha Smazáno : Malware Cleaner
Úloha Smazáno : Gamma Task Menager Task
Úloha Smazáno : UpdateAdmin

***** [ Zástupci ] *****

Zástupce Vyléčeno : C:\Users\Public\Desktop\Opera.lnk
Zástupce Vyléčeno : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
Zástupce Vyléčeno : C:\Users\Jiří\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
Zástupce Vyléčeno : C:\Users\Jiří\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Opera.lnk

***** [ Registry ] *****

Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{B853E835-9F24-4F4B-B55C-E554D15CCCD2}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{F83D1872-D9FF-47F8-B5A0-49CC51E24EE8}
Klíč Smazáno : HKCU\Software\APN PIP
Klíč Smazáno : HKCU\Software\simplytech
Klíč Smazáno : HKCU\Software\Linkey
Klíč Smazáno : HKCU\Software\DownloadAdmin
Klíč Smazáno : HKCU\Software\Kromtech
Klíč Smazáno : HKLM\SOFTWARE\Conduit
Klíč Smazáno : HKLM\SOFTWARE\SearchProtect
Klíč Smazáno : HKLM\SOFTWARE\SpeedBit
Klíč Smazáno : HKLM\SOFTWARE\AIM Toolbar
Klíč Smazáno : HKLM\SOFTWARE\searchult
Klíč Smazáno : HKLM\SOFTWARE\SecureWebChannel
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Linkey

***** [ Prohlížeče ] *****

-\\ Internet Explorer v11.0.9600.17840

Nastavení Obnoveno : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]

-\\ Google Chrome v43.0.2357.132


-\\ Opera v30.0.1835.88


*************************

AdwCleaner[R0].txt - [17144 bytů] - [12/07/2015 19:38:31]
AdwCleaner[R1].txt - [292 bytů] - [12/07/2015 20:25:59]
AdwCleaner[R2].txt - [6132 bytů] - [12/07/2015 20:27:13]
AdwCleaner[S0].txt - [3347 bytů] - [12/07/2015 20:46:32]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [3405 bytů] ##########

Re: Víc reklam než je zdrávo

Napsal: 12 črc 2015 21:08
od PavlinQa1234
Malwarebytes Anti-Malware
www.malwarebytes.org

Datum skenování: 12. 7. 2015
Čas skenování: 20:56
Protokol: kkk.txt
Správce: Ano

Verze: 2.1.8.1057
Databáze malwaru: v2015.07.12.03
Databáze rootkitů: v2015.07.10.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Ochrana programu: Vypnuto

OS: Windows 8.1
CPU: x64
Souborový systém: NTFS
Uživatel: Jiří

Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 364052
Uplynulý čas: 9 min, 35 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 0
(Nenalezeny žádné škodlivé položky)

Moduly: 0
(Nenalezeny žádné škodlivé položky)

Klíče registru: 0
(Nenalezeny žádné škodlivé položky)

Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)

Data registru: 0
(Nenalezeny žádné škodlivé položky)

Složky: 0
(Nenalezeny žádné škodlivé položky)

Soubory: 2
PUP.Optional.RecordPage.A, C:\Users\Jiří\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_recordpage-a.akamaihd.net_0.localstorage, Smazat při restartu, [7f64d10f72183ef880f5b7d158ac7987],
PUP.Optional.RecordPage.A, C:\Users\Jiří\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_recordpage-a.akamaihd.net_0.localstorage-journal, Smazat při restartu, [eef515cba8e29a9c04716a1ece360cf4],

Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)


(end)