prosím o kontrolu

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

fukyja
nováček
Příspěvky: 12
Registrován: duben 14
Pohlaví: Nespecifikováno
Stav:
Offline

prosím o kontrolu

Příspěvekod fukyja » 05 dub 2014 22:15

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:04:36, on 5.4.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16521)
Boot mode: Normal

Running processes:
C:\Users\Stříbrný vítr\Desktop\Kies\Kies.exe
C:\Programy\Office14\ONENOTEM.EXE
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe
C:\ProgramData\Boxtools\Toolbox.exe
C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe
C:\Program Files (x86)\AVG Secure Search\vprot.exe
C:\Users\Stříbrný vítr\Desktop\Kies\KiesTrayAgent.exe
C:\Program Files (x86)\GreyGray\bin\XTLSApp.exe
C:\Users\Stříbrný vítr\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Stříbrný vítr\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Stříbrný vítr\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Stříbrný vítr\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Stříbrný vítr\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Stříbrný vítr\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.buenosearch.com/?babsrc=HP_s ... 5&tsp=5172
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {D8278076-BC68-4484-9233-6E7F1628B56C} - (no file)
R3 - URLSearchHook: uTorrentControl2 Toolbar - {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files (x86)\uTorrentControl2\prxtbuTor.dll
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: uTorrentControl2 - {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files (x86)\uTorrentControl2\prxtbuTor.dll
O2 - BHO: (no name) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - (no file)
O2 - BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\18.0.5.292\AVG Secure Search_toolbar.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Programy\Office14\URLREDIR.DLL
O2 - BHO: SWEETIE - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O2 - BHO: buenosearch Helper Object - {F1C81E40-2485-4DB6-8C9D-04BD596B281E} - C:\Program Files (x86)\buenosearch LTD\buenosearch\1.8.28.7\bh\buenosearch.dll
O3 - Toolbar: uTorrentControl2 Toolbar - {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files (x86)\uTorrentControl2\prxtbuTor.dll
O3 - Toolbar: SweetPacks Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O3 - Toolbar: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\18.0.5.292\AVG Secure Search_toolbar.dll
O3 - Toolbar: buenosearch Toolbar - {828DC97A-2277-4E10-92A9-4907FA0922A9} - C:\Program Files (x86)\buenosearch LTD\buenosearch\1.8.28.7\buenosearchTlbr.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [NBAgent] "C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [Sweetpacks Communicator] C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe
O4 - HKLM\..\Run: [vProt] "C:\Program Files (x86)\AVG Secure Search\vprot.exe"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [KiesTrayAgent] C:\Users\Stříbrný vítr\Desktop\Kies\KiesTrayAgent.exe
O4 - HKCU\..\Run: [Google Update] "C:\Users\Stříbrný vítr\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Programy\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\Stříbrný vítr\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\Run: [Boxoft Tools] "C:\ProgramData\Boxtools\Boxofttoolbox.exe" -autorun
O4 - HKCU\..\Run: [WebcamMaxAutoRun] "C:\Program Files (x86)\WebcamMax\WebcamMax.exe" -a
O4 - HKCU\..\Run: [NextLive] C:\Windows\SysWOW64\rundll32.exe "C:\Users\Stříbrný vítr\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l
O4 - HKCU\..\Run: [KiesPreload] C:\Users\Stříbrný vítr\Desktop\Kies\Kies.exe /preload
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Registrace FIFA 10.lnk = C:\Program Files (x86)\EA Sports\FIFA 10\Support\EAregister.exe
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk = C:\Programy\Office14\ONENOTEM.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Programy\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\Programy\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programy\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programy\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Programy\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Programy\Office14\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/pub/s ... wflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{8B445176-3566-4B61-A95B-6F5030D6C069}: NameServer = 10.132.12.33,10.132.12.1
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\18.0.5\ViProtocol.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: Application Driver Auto Removal Service (01) (appdrvrem01) - Unknown owner - C:\Windows\System32\appdrvrem01.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Úložná technologie Intel(R) Rapid (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: IBUpdaterService - Unknown owner - C:\Windows\system32\dmwu.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Remote Procedure Call (RPC) Net (rpcnet) - Absolute Software Corp. - C:\Windows\SysWOW64\rpcnet.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: Update GreyGray - Unknown owner - C:\Program Files (x86)\GreyGray\updateGreyGray.exe
O23 - Service: Util GreyGray - Unknown owner - C:\Program Files (x86)\GreyGray\bin\utilGreyGray.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: vToolbarUpdater18.0.5 - Unknown owner - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.0.5\ToolbarUpdater.exe
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) - Broadcom Corporation - C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRYSVC.EXE
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13505 bytes

Reklama
Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu

Příspěvekod memphisto » 06 dub 2014 09:54

Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranìní historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit doèasné soubory Windows, vysypat koš atd.

Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Update Malwarebytes' Anti-Malware (Aktualizace Malwarebytes' Anti-Malware) a Launch Malwarebytes' Anti-Malware (Spustit aplikaci Malwarebytes' Anti-Malware), pokud jo tak klikni na tlačítko Finish
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Perform Quick Scan (Provést rychlý sken) a klikni na tlačítko Scan (Skenovat)
- po probìhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- pak zvol možnost Save Logfile a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.

Stáhni AdwCleaner
Ulož si ho na svojí plochu
Ukonči všechny programy, okna a prohlížeče
Spusť program poklepáním a klikni na „Search“
Po skenu se objeví log (jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji

fukyja
nováček
Příspěvky: 12
Registrován: duben 14
Pohlaví: Nespecifikováno
Stav:
Offline

Re: prosím o kontrolu

Příspěvekod fukyja » 06 dub 2014 22:46

používáme google, comp běžně čistíme cc cleanerem, takže ATF cleaner jsme vynechali, výsledky anti-malware a adwcleaneru přikládám.
PC je někdy velmi zpomalené, vyskakuje neskutečné množství reklam a otvírají se samy i nová internetová okna...

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 6.4.2014
Scan Time: 22:03:45
Logfile: scan.txt
Administrator: Yes

Version: 2.00.1.1004
Malware Database: v2014.04.06.08
Rootkit Database: v2014.03.27.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Chameleon: Disabled

OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: StA?A­brnA1 vA­tr

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 275751
Time Elapsed: 13 min, 43 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Shuriken: Enabled
PUP: Enabled
PUM: Enabled

Processes: 6
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\updateGreyGray.exe, 2840, , [b967ee39ea916acc3d7469e2b64ba55b]
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe, 1244, , [6db3e3444c2fa6905a9188b0df25b947]
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\bin\utilGreyGray.exe, 3244, , [f42ccd5abac167cf6150a5a623deb64a]
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\bin\FilterApp_C64.exe, 4424, , [928ee146413a0d2983748705679c0ef2]
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\bin\XTLSApp.exe, 2340, , [928ee146413a0d2983748705679c0ef2]
Adware.InstallBrain, C:\Windows\System32\dmwu.exe, 1384, , [2ef22bfc522982b4fffe69f59b68d828]

Modules: 7
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Communicator\mgcommon.dll, , [d749eb3c116aad899a513ff945bffa06],
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Communicator\mgxml_wrapper.dll, , [9d831b0c611ab4822cbf87b1bc48c23e],
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Communicator\mgcommunication.dll, , [ea36fe293645bb7b28c3e55355afdb25],
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Communicator\mgsimcommon.dll, , [e23e55d2c9b2dd5936b545f3e51f20e0],
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\bin\XTLS.dll, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\bin\XTLS.dll, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\bin\XTLSApp.dll, , [928ee146413a0d2983748705679c0ef2],

Registry Keys: 113
PUP.Optional.GreyGray.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\Update GreyGray, , [b967ee39ea916acc3d7469e2b64ba55b],
PUP.Optional.GreyGray.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\Util GreyGray, , [f42ccd5abac167cf6150a5a623deb64a],
PUP.Optional.BrowseFox.A, HKLM\SOFTWARE\CLASSES\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}, , [140c81a61863d16593d9e161aa586e92],
PUP.Optional.BrowseFox.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}, , [140c81a61863d16593d9e161aa586e92],
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{67BD9EEB-AA06-4329-A940-D250019300C9}, , [4dd355d2b4c751e5936f72a3ad55c63a],
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\CLASSES\TYPELIB\{A0EE0278-2986-4E5A-884E-A3BF0357E476}, , [4dd355d2b4c751e5936f72a3ad55c63a],
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\CLASSES\INTERFACE\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}, , [4dd355d2b4c751e5936f72a3ad55c63a],
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}, , [4dd355d2b4c751e5936f72a3ad55c63a],
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{A0EE0278-2986-4E5A-884E-A3BF0357E476}, , [4dd355d2b4c751e5936f72a3ad55c63a],
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}, , [4dd355d2b4c751e5936f72a3ad55c63a],
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\CLASSES\Updater.AmiUpd.1, , [4dd355d2b4c751e5936f72a3ad55c63a],
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\CLASSES\Updater.AmiUpd, , [4dd355d2b4c751e5936f72a3ad55c63a],
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Updater.AmiUpd, , [4dd355d2b4c751e5936f72a3ad55c63a],
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Updater.AmiUpd.1, , [4dd355d2b4c751e5936f72a3ad55c63a],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{828DC97A-2277-4E10-92A9-4907FA0922A9}, , [d24e77b05a2123137692b3928b770cf4],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\CLASSES\buenosearch.buenosearchdskBnd.1, , [d24e77b05a2123137692b3928b770cf4],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\CLASSES\buenosearch.buenosearchdskBnd, , [d24e77b05a2123137692b3928b770cf4],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\buenosearch.buenosearchdskBnd, , [d24e77b05a2123137692b3928b770cf4],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\buenosearch.buenosearchdskBnd.1, , [d24e77b05a2123137692b3928b770cf4],
PUP.Optional.BuenoSearch.A, HKU\S-1-5-21-3343003481-2846401460-112019622-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{828DC97A-2277-4E10-92A9-4907FA0922A9}, , [d24e77b05a2123137692b3928b770cf4],
PUP.Optional.BuenoSearch.A, HKU\S-1-5-21-3343003481-2846401460-112019622-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{828DC97A-2277-4E10-92A9-4907FA0922A9}, , [d24e77b05a2123137692b3928b770cf4],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{EEE6C35C-6118-11DC-9C72-001320C79847}, , [33ed80a7bdbece682e86be512bd7f40c],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{EEE6C35B-6118-11DC-9C72-001320C79847}, , [33ed80a7bdbece682e86be512bd7f40c],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\TYPELIB\{EEE6C35E-6118-11DC-9C72-001320C79847}, , [33ed80a7bdbece682e86be512bd7f40c],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\INTERFACE\{EEE6C358-6118-11DC-9C72-001320C79847}, , [33ed80a7bdbece682e86be512bd7f40c],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\INTERFACE\{EEE6C359-6118-11DC-9C72-001320C79847}, , [33ed80a7bdbece682e86be512bd7f40c],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{EEE6C358-6118-11DC-9C72-001320C79847}, , [33ed80a7bdbece682e86be512bd7f40c],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{EEE6C359-6118-11DC-9C72-001320C79847}, , [33ed80a7bdbece682e86be512bd7f40c],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{EEE6C35E-6118-11DC-9C72-001320C79847}, , [33ed80a7bdbece682e86be512bd7f40c],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\SWEETIE.IEToolbar.1, , [33ed80a7bdbece682e86be512bd7f40c],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\SWEETIE.IEToolbar, , [33ed80a7bdbece682e86be512bd7f40c],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\SWEETIE.IEToolbar, , [33ed80a7bdbece682e86be512bd7f40c],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\SWEETIE.IEToolbar.1, , [33ed80a7bdbece682e86be512bd7f40c],
PUP.Optional.SweetPacks, HKU\S-1-5-21-3343003481-2846401460-112019622-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{EEE6C35B-6118-11DC-9C72-001320C79847}, , [33ed80a7bdbece682e86be512bd7f40c],
PUP.Optional.SweetPacks, HKU\S-1-5-21-3343003481-2846401460-112019622-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{EEE6C35B-6118-11DC-9C72-001320C79847}, , [33ed80a7bdbece682e86be512bd7f40c],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\Toolbar3.SWEETIE.1, , [33ed80a7bdbece682e86be512bd7f40c],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\Toolbar3.SWEETIE, , [33ed80a7bdbece682e86be512bd7f40c],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Toolbar3.SWEETIE, , [33ed80a7bdbece682e86be512bd7f40c],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{EEE6C35C-6118-11DC-9C72-001320C79847}, , [33ed80a7bdbece682e86be512bd7f40c],
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Toolbar3.SWEETIE.1, , [33ed80a7bdbece682e86be512bd7f40c],
PUP.Optional.SweetPacks, HKU\S-1-5-21-3343003481-2846401460-112019622-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{EEE6C35C-6118-11DC-9C72-001320C79847}, , [33ed80a7bdbece682e86be512bd7f40c],
PUP.Optional.SweetPacks, HKU\S-1-5-21-3343003481-2846401460-112019622-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{EEE6C35C-6118-11DC-9C72-001320C79847}, , [33ed80a7bdbece682e86be512bd7f40c],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{F1C81E40-2485-4DB6-8C9D-04BD596B281E}, , [6eb2d750215a3402f413ea5bdb2721df],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\CLASSES\buenosearch.buenosearchHlpr.1, , [6eb2d750215a3402f413ea5bdb2721df],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\CLASSES\buenosearch.buenosearchHlpr, , [6eb2d750215a3402f413ea5bdb2721df],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\buenosearch.buenosearchHlpr, , [6eb2d750215a3402f413ea5bdb2721df],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{F1C81E40-2485-4DB6-8C9D-04BD596B281E}, , [6eb2d750215a3402f413ea5bdb2721df],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\buenosearch.buenosearchHlpr.1, , [6eb2d750215a3402f413ea5bdb2721df],
PUP.Optional.BuenoSearch.A, HKU\S-1-5-21-3343003481-2846401460-112019622-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{F1C81E40-2485-4DB6-8C9D-04BD596B281E}, , [6eb2d750215a3402f413ea5bdb2721df],
PUP.Optional.BuenoSearch.A, HKU\S-1-5-21-3343003481-2846401460-112019622-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{F1C81E40-2485-4DB6-8C9D-04BD596B281E}, , [6eb2d750215a3402f413ea5bdb2721df],
PUP.Optional.OutBrowse, HKLM\SOFTWARE\CLASSES\TYPELIB\{DCABB943-792E-44C4-9029-ECBEE6265AF9}, , [d34dd94e5d1ecf67795257b63cc6dd23],
PUP.Optional.OutBrowse, HKLM\SOFTWARE\CLASSES\INTERFACE\{3408AC0D-510E-4808-8F7B-6B70B1F88534}, , [d34dd94e5d1ecf67795257b63cc6dd23],
PUP.Optional.OutBrowse, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{3408AC0D-510E-4808-8F7B-6B70B1F88534}, , [d34dd94e5d1ecf67795257b63cc6dd23],
PUP.Optional.OutBrowse, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{DCABB943-792E-44C4-9029-ECBEE6265AF9}, , [d34dd94e5d1ecf67795257b63cc6dd23],
PUP.Optional.GreyGray.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\GreyGray, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\CLASSES\buenosearch.buenosearchappCore, , [8e929f882f4cde58011de48733cf9e62],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\CLASSES\buenosearch.buenosearchappCore.1, , [a8783dea4734979ffb2380ebe0221ee2],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\CLASSES\esrv.buenosearchESrvc, , [d74941e64b308da99986bfac9c6660a0],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\CLASSES\esrv.buenosearchESrvc.1, , [42de8c9b6a119e98b867a1cad52d13ed],
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\CLASSES\SweetIM_URLSearchHook.ToolbarURLSearchHook, , [cb551b0c6615b97d08c65b2fb54e17e9],
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\CLASSES\SweetIM_URLSearchHook.ToolbarURLSearchHook.1, , [50d00f18d1aad363e2ecd9b131d2966a],
PUP.Optional.InstallBrain.A, HKLM\SOFTWARE\WNLT, , [1e02c5623d3eb77fe97616768f7405fb],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\WOW6432NODE\buenosearch LTD, , [eb35ad7a6516ae88e43896d5ac56659b],
PUP.Optional.GreyGray.A, HKLM\SOFTWARE\WOW6432NODE\GreyGray, , [c95762c52d4e53e342b77e0e04ff06fa],
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\Iminent, , [bb6587a0e4978fa70fea08673ec4ac54],
PUP.Optional.uTorrentControl.A, HKLM\SOFTWARE\WOW6432NODE\uTorrentControl2, , [35eb949368132c0a68ccdc8951b104fc],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\buenosearch.buenosearchappCore, , [ff21ed3ab4c7a393cf4f6cffc73bcd33],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\buenosearch.buenosearchappCore.1, , [3be5c95e6b10e650ce5022499d65e41c],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\esrv.buenosearchESrvc, , [aa76de495c1f39fd011e3c2f4bb7bf41],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\esrv.buenosearchESrvc.1, , [e23e56d1abd09c9a71ae204b48ba07f9],
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\SweetIM_URLSearchHook.ToolbarURLSearchHook, , [d8489f88a2d9a78f5876602ab84b55ab],
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\SweetIM_URLSearchHook.ToolbarURLSearchHook.1, , [e43c9e891a61cd691eb0751508fb17e9],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\acfoobbgoakpihljnfedbcfaipcdlfhk, , [1d03ee3985f6290d3d71800ed82b7e82],
PUP.Optional.ATDheNetTVAp.A, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\bgnnidmnbdkmhfkjgdnngciimpdgohok, , [9090f136c0bb2610bfef1d6920e3d030],
PUP.Optional.Gophoto.A, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\pfmopbbadnfoelckkcmjjeaaegjpjjbk, , [60c0ca5dee8d2f07e3181a6fb94af907],
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\WOW6432NODE\SWEETIM, , [ca561f082c4f122447e56a1cdb28fe02],
Adware.InstallBrain, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\IBUpdaterService, , [2ef22bfc522982b4fffe69f59b68d828],
PUP.Optional.InstallBrain.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\WNLT, , [32ee71b694e739fd60feed9f33d014ec],
PUP.Optional.1ClickDownload.A, HKU\S-1-5-21-3343003481-2846401460-112019622-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\1ClickDownload, , [d64a37f0bac16bcbbcdb493dc043c33d],
PUP.Optional.BuenoSearch.A, HKU\S-1-5-21-3343003481-2846401460-112019622-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\buenosearch LTD, , [3ae68e99a6d5092d21fce289cd35e917],
PUP.Optional.GreyGray.A, HKU\S-1-5-21-3343003481-2846401460-112019622-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\GreyGray, , [31efd0577cffee4896624e3e2fd4c53b],
PUP.Optional.Babylon.A, HKU\S-1-5-21-3343003481-2846401460-112019622-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\BABSOLUTION\Updater, , [110fec3b98e3b680ae721373a55e9f61],
PUP.Optional.SweetIM.A, HKU\S-1-5-21-3343003481-2846401460-112019622-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SWEETIM, , [f62adf48473453e32209691d30d3cc34],
PUP.Optional.InstallBrain.A, HKU\S-1-5-21-3343003481-2846401460-112019622-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\WNLT, , [36ea85a291ea0d293a245e2efd06f60a],
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{EEE6C35D-6118-11DC-9C72-001320C79847}, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{EEE6C35F-6118-11DC-9C72-001320C79847}, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{EEE6C35A-6118-11DC-9C72-001320C79847}, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{EEE6C35A-6118-11DC-9C72-001320C79847}, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{EEE6C35F-6118-11DC-9C72-001320C79847}, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.InstallBrain.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\WNLT, , [a27e0423cfac0630228a4f06d1314ab6],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{8322EB6E-B594-41F6-A30B-CF3F800E1874}, , [859b8a9d4536df57e40a2a2de71bd32d],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{4CC15FBA-46A4-4CB5-BFAF-F2335365AE76}, , [859b8a9d4536df57e40a2a2de71bd32d],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\CLASSES\b, , [859b8a9d4536df57e40a2a2de71bd32d],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\b, , [859b8a9d4536df57e40a2a2de71bd32d],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{67FCE87F-F3EF-4A3C-87C2-8BD46E68807B}, , [859b8a9d4536df57e40a2a2de71bd32d],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{67FCE87F-F3EF-4A3C-87C2-8BD46E68807B}, , [859b8a9d4536df57e40a2a2de71bd32d],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\buenosearch, , [859b8a9d4536df57e40a2a2de71bd32d],
PUP.Optional.uTorrentControl.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{687578B9-7132-4A7A-80E4-30EE31099E03}, , [2000969182f938fe76145cfecd3558a8],
PUP.Optional.uTorrentControl.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{687578B9-7132-4A7A-80E4-30EE31099E03}, , [2000969182f938fe76145cfecd3558a8],
PUP.Optional.uTorrentControl.A, HKU\S-1-5-21-3343003481-2846401460-112019622-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{687578B9-7132-4A7A-80E4-30EE31099E03}, , [2000969182f938fe76145cfecd3558a8],
PUP.Optional.uTorrentControl.A, HKU\S-1-5-21-3343003481-2846401460-112019622-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{687578B9-7132-4A7A-80E4-30EE31099E03}, , [2000969182f938fe76145cfecd3558a8],
PUP.Optional.uTorrentControl.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{D4AAF2A6-F6D1-49A5-BA1A-B20735DF1955}, , [2000969182f938fe76145cfecd3558a8],
PUP.Optional.uTorrentControl.A, HKLM\SOFTWARE\CLASSES\Toolbar.CT3072253, , [2000969182f938fe76145cfecd3558a8],
PUP.Optional.uTorrentControl.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Toolbar.CT3072253, , [2000969182f938fe76145cfecd3558a8],
PUP.Optional.uTorrentControl.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{D4AAF2A6-F6D1-49A5-BA1A-B20735DF1955}, , [2000969182f938fe76145cfecd3558a8],
PUP.Optional.uTorrentControl.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\uTorrentControl2 Toolbar, , [2000969182f938fe76145cfecd3558a8],

Registry Values: 16
PUP.Optional.SweetIM, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|Sweetpacks Communicator, C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe, , [6db3e3444c2fa6905a9188b0df25b947]
PUP.Optional.NextLive.A, HKU\S-1-5-21-3343003481-2846401460-112019622-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|NextLive, C:\Windows\SysWOW64\rundll32.exe "C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l, , [120e72b5a5d6ac8ab1794ffe17ea8080]
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\TOOLBAR|{828DC97A-2277-4E10-92A9-4907FA0922A9}, buenosearch Toolbar, , [d24e77b05a2123137692b3928b770cf4]
PUP.Optional.SweetPacks, HKU\S-1-5-21-3343003481-2846401460-112019622-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\WEBBROWSER|{EEE6C35B-6118-11DC-9C72-001320C79847}, i??a?˜á??ç??á??i? ä?˜, , [33ed80a7bdbece682e86be512bd7f40c]
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\TOOLBAR|{EEE6C35B-6118-11DC-9C72-001320C79847}, , [33ed80a7bdbece682e86be512bd7f40c],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\{828DC97A-2277-4E10-92A9-4907FA0922A9}, , [8a96d057fe7d2e08ec1c242139c9a35d],
PUP.Optional.InstallBrain.A, HKLM\SOFTWARE\WNLT|PDV, [UPGRADEONIDLE] [BLACKLIST=1], , [1e02c5623d3eb77fe97616768f7405fb]
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\WOW6432NODE\SWEETIM|simapp_id, {2ED8B9D0-1B50-11E2-B783-00262DA62FA7}, , [ca561f082c4f122447e56a1cdb28fe02]
PUP.Optional.InstallBrain.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\WNLT|URL, MYSTART, , [32ee71b694e739fd60feed9f33d014ec]
PUP.Optional.SweetIM.A, HKU\S-1-5-21-3343003481-2846401460-112019622-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SWEETIM|simapp_id, {2ED8B9D0-1B50-11E2-B783-00262DA62FA7}, , [f62adf48473453e32209691d30d3cc34]
PUP.Optional.InstallBrain.A, HKU\S-1-5-21-3343003481-2846401460-112019622-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\WNLT|URL, SWEETPACKS_SEARCH, , [36ea85a291ea0d293a245e2efd06f60a]
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\SHAREDDLLS|C:\PROGRAM FILES (X86)\SWEETIM\TOOLBARS\INTERNET EXPLORER\MGHELPERAPP.EXE, 1, , [90900e1983f87eb8383c60f57a887090]
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\SHAREDDLLS|C:\PROGRAM FILES (X86)\SWEETIM\TOOLBARS\INTERNET EXPLORER\MGTOOLBARPROXY.DLL, 1, , [90900e1983f87eb8383c60f57a887090]
PUP.Optional.uTorrentControl.A, HKU\S-1-5-21-3343003481-2846401460-112019622-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\URLSEARCHHOOKS|{687578B9-7132-4A7A-80E4-30EE31099E03}, , [2000969182f938fe76145cfecd3558a8],
PUP.Optional.uTorrentControl.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\TOOLBAR|{687578B9-7132-4A7A-80E4-30EE31099E03}, uTorrentControl2 Toolbar, , [2000969182f938fe76145cfecd3558a8]
PUP.Optional.uTorrentControl.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\URLSEARCHHOOKS|{687578B9-7132-4A7A-80E4-30EE31099E03}, , [2000969182f938fe76145cfecd3558a8],

Registry Data: 1
Hijack.StartPage, HKU\S-1-5-21-3343003481-2846401460-112019622-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, http://www.buenosearch.com/?babsrc=HP_s ... 5&tsp=5172, Good: (http://www.google.com), Bad: (http://www.buenosearch.com/?babsrc=HP_s ... 5&tsp=5172),,[df4125021e5d2e08a15e41d40301e51b]

Folders: 51
PUP.Optional.Esafe.A, C:\ProgramData\eSafe, , [19073becdd9e81b5ab5b6f142dd6a957],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\app, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\app\config, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\app\config\1, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\app\config\3, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\app\config\35, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\app\config\36, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\app\config\39, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\app\config\4, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\app\config\41, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\app\config\42, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\desk_bkg, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\icons, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\wp, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Program Files (x86)\Desk 365, , [45dbbb6cee8dcf676e9a94efdf24c23e],
PUP.Optional.Gophoto.A, C:\Program Files (x86)\Gophoto.it, , [819f42e5a1da68ce9d5d98f140c3bb45],
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\bin, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\bin\plugins, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\bin\TEMP, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.OpenCandy, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\OpenCandy, , [89977daa7605e452f900c88cad55c53b],
PUP.Optional.OpenCandy, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\OpenCandy\037DE9581BF94CE28181B71E6B302B7C, , [89977daa7605e452f900c88cad55c53b],
PUP.Optional.OpenCandy, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\OpenCandy\OpenCandy_037DE9581BF94CE28181B71E6B302B7C, , [89977daa7605e452f900c88cad55c53b],
PUP.Optional.337Technologies.A, C:\Program Files (x86)\Common Files\337\libcef, , [aa76dd4a4833251156cd56ff0ef4ed13],
PUP.Optional.337Technologies.A, C:\Program Files (x86)\Common Files\337\libcef\1.1364.1123, , [aa76dd4a4833251156cd56ff0ef4ed13],
PUP.Optional.337Technologies.A, C:\Program Files (x86)\Common Files\337\libcef\1.1364.1123\locales, , [aa76dd4a4833251156cd56ff0ef4ed13],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\conf, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\Microsoft.VC90.CRT, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.InstallBrain.A, C:\Windows\SysWOW64\WNLT\Installation, , [a27e0423cfac0630228a4f06d1314ab6],
PUP.Optional.InstallBrain.A, C:\Windows\SysWOW64\WNLT\Installation\Uninstall, , [a27e0423cfac0630228a4f06d1314ab6],
PUP.Optional.NextLive.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\newnext.me, , [58c82304c1ba290d4f636fe748ba2bd5],
PUP.Optional.NextLive.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\newnext.me\cache, , [58c82304c1ba290d4f636fe748ba2bd5],
PUP.Optional.BuenoSearch.A, C:\Program Files (x86)\buenosearch LTD, , [859b8a9d4536df57e40a2a2de71bd32d],
PUP.Optional.BuenoSearch.A, C:\Program Files (x86)\buenosearch LTD\buenosearch, , [859b8a9d4536df57e40a2a2de71bd32d],
PUP.Optional.BuenoSearch.A, C:\Program Files (x86)\buenosearch LTD\buenosearch\1.8.28.7, , [859b8a9d4536df57e40a2a2de71bd32d],
PUP.Optional.BuenoSearch.A, C:\Program Files (x86)\buenosearch LTD\buenosearch\1.8.28.7\bh, , [859b8a9d4536df57e40a2a2de71bd32d],
PUP.Optional.BuenoSearch.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\buenosearch LTD, , [9b85a7805f1c0a2cee020f4823dfac54],
PUP.Optional.WhiteSmoke.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj, , [bb659e891e5d72c45b7110494eb408f8],
PUP.Optional.WhiteSmoke.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj\1.4.0.4_1, , [bb659e891e5d72c45b7110494eb408f8],
PUP.Optional.uTorrentControl.A, C:\Program Files (x86)\uTorrentControl2, , [2000969182f938fe76145cfecd3558a8],
PUP.Optional.BuenoSearch.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Local\Google\Chrome\User Data\Default\Extensions\acfoobbgoakpihljnfedbcfaipcdlfhk, , [de42ee39f88349ed2f94fc5f1de59b65],
PUP.Optional.BuenoSearch.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Local\Google\Chrome\User Data\Default\Extensions\acfoobbgoakpihljnfedbcfaipcdlfhk\1.6.3_1, , [de42ee39f88349ed2f94fc5f1de59b65],
PUP.Optional.TornTV.A, C:\Program Files (x86)\TornTV.com, , [ea366abd2b50999d440f2339d42e6b95],
PUP.Optional.SimilarSites.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\SimilarSites, , [26fa25025e1d0f272922be9f5fa34ab6],

fukyja
nováček
Příspěvky: 12
Registrován: duben 14
Pohlaví: Nespecifikováno
Stav:
Offline

Re: prosím o kontrolu

Příspěvekod fukyja » 06 dub 2014 22:47

pokračování..


Files: 250
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\updateGreyGray.exe, , [b967ee39ea916acc3d7469e2b64ba55b],
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe, , [6db3e3444c2fa6905a9188b0df25b947],
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Communicator\mgcommon.dll, , [d749eb3c116aad899a513ff945bffa06],
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Communicator\mgxml_wrapper.dll, , [9d831b0c611ab4822cbf87b1bc48c23e],
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Communicator\mgcommunication.dll, , [ea36fe293645bb7b28c3e55355afdb25],
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Communicator\mgsimcommon.dll, , [e23e55d2c9b2dd5936b545f3e51f20e0],
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\bin\utilGreyGray.exe, , [f42ccd5abac167cf6150a5a623deb64a],
PUP.Optional.NextLive.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\newnext.me\nengine.dll, , [120e72b5a5d6ac8ab1794ffe17ea8080],
PUP.Optional.SoftwareUpdater, C:\Users\StA?A­brnA1 vA­tr\AppData\Local\SwvUpdater\Updater.exe, , [4dd355d2b4c751e5936f72a3ad55c63a],
PUP.Optional.BuenoSearch.A, C:\Program Files (x86)\buenosearch LTD\buenosearch\1.8.28.7\buenosearchTlbr.dll, , [d24e77b05a2123137692b3928b770cf4],
PUP.Optional.SweetPacks, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll, , [33ed80a7bdbece682e86be512bd7f40c],
PUP.Optional.BuenoSearch.A, C:\Program Files (x86)\buenosearch LTD\buenosearch\1.8.28.7\bh\buenosearch.dll, , [6eb2d750215a3402f413ea5bdb2721df],
PUP.Optional.OpenCandy.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\OpenCandy\OpenCandy_037DE9581BF94CE28181B71E6B302B7C\OpenCandyU1Dlm.dll, , [54cc69be2f4ccb6b875e5eb9a65b17e9],
PUP.Optional.OpenCandy, C:\Users\StA?A­brnA1 vA­tr\Downloads\DTLite4454-0315.exe, , [0c141017e9923006d6843ffa63a116ea],
PUP.Optional.Bandoo, C:\Users\StA?A­brnA1 vA­tr\Downloads\iLividSetup.exe, , [29f7db4ca2d938fe400bc53dab5650b0],
Trojan.ELEX, C:\Users\StA?A­brnA1 vA­tr\Downloads\yet_another_cleaner_mar (1).exe, , [bf6174b347340e28dfae221e5da44cb4],
Trojan.ELEX, C:\Users\StA?A­brnA1 vA­tr\Downloads\yet_another_cleaner_mar (2).exe, , [32ee14138dee46f0e1ac3808fa071de3],
Trojan.ELEX, C:\Users\StA?A­brnA1 vA­tr\Downloads\yet_another_cleaner_mar.exe, , [110fc85f7a011c1af39a142c649da060],
PUP.Optional.Amonetize.A, C:\Users\StA?A­brnA1 vA­tr\Downloads\FlashPlayersetup__5235_i420025904_il6.exe, , [9c84cb5c1a61fb3bbca68fabd42ccf31],
PUP.Optional.NextLive.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Local\genienext\nengine.dll, , [33edf92e82f9f343e347034a8d74b64a],
Riskware.Keygen, C:\Windows\AutoKMS.exe, , [50d02007136865d1f86c89199070b14f],
PUP.Optional.SweetIM, C:\Windows\Installer\ab9c42a.msi, , [928ef82f730860d6be2d8bad986cda26],
PUP.Optional.SweetIM, C:\Windows\Installer\ab9c42f.msi, , [79a7d5523d3e1d19806b1721986cca36],
PUP.Optional.BuenoSearch.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\BabSolution\CR\bueno.crx, , [9d83e443304b54e2181e5a0f57ab07f9],
PUP.Optional.BuenoSearch.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\BabSolution\Shared\BuenoSearch.ico, , [a37da186cbb02d09f146d396d032e818],
PUP.Software.Updater, C:\Windows\Tasks\AmiUpdXp.job, , [b36de740245754e2861686f062a09e62],
PUP.Optional.Esafe.A, C:\ProgramData\eSafe\eDelayinfo.edb, , [19073becdd9e81b5ab5b6f142dd6a957],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\promote.xml, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\accelerate, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\desk_bkg_list.xml, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\desk_list.xml, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\firstrun, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\process_mgr.xml, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\app\config\1\angrybirds.db, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\app\config\3\BigFarm.db, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\app\config\35\Gmail.db, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\app\config\36\Outlook.db, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\app\config\39\ESPN.db, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\app\config\4\Empire.db, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\app\config\41\gcalendar.db, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\app\config\42\pulse.db, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\desk_bkg\desk_bkg_1.png, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\desk_bkg\desk_bkg_2.png, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\desk_bkg\desk_bkg_3.png, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\desk_bkg\desk_bkg_4.png, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\desk_bkg\desk_bkg_5.png, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\desk_bkg\desk_bkg_default.png, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\icons\337_7c9140b13c049fd26989f7fa25b77cb1_48_48.png, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\icons\angrybirds_00ff92c12703baaf0130d6aec427d047_48_48.png, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\icons\Barbie_00a67ff4ef657679a6c88553135d62ad_48_48.png, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\icons\BigFarm_de933b0e5218a4db24bebe3d55ed3558_48_48.png, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\icons\chrome_064da61bd5f30fc068fdb997161ce0dc_48_48.png, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\icons\Empire_22b42f57d1c467841280810e218d5510_48_48.png, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\icons\ESPN_a7b078f5f5f5b87efcef66ab5783cf9d_48_48.png, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\icons\Facebook_aab07bc79cf599b25c0110f32d46a3ef_48_48.png, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\icons\gcalendar_50b3e3c5fc202f0cfcae8032b2465c1b_48_48.png, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\icons\Gmail_731b6d011bd9f67463a916a496775935_48_48.png, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\icons\Google_60d75cb277f0c452fa60dba8350caf65_48_48.png, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\icons\iexplore_6386bf62e21732ba6653f4dd5dc5c715_48_48.png, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\icons\Mario_52934d81761dc31187a93a3a0be7fecc_48_48.png, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\icons\opera_b20e3f7c9db7f25fa04e9b8dc394ba88_48_48.png, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\icons\Outlook_6f817b67fa6af1a9c8abfa3813a8595c_48_48.png, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\icons\pulse_b5a242da04cc06eacd02b1ca41e3583c_48_48.png, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\icons\sys_computer_48_48.png, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\icons\sys_control_panel_48_48.png, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\icons\Twitter_ebddd85ec04b7b94a2b2e97b73a90a4a_48_48.png, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\icons\Youtube_bf18fdfc4aefd6417a8bacae4be5b415_48_48.png, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\wp\r0.jpg, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\wp\r1.jpg, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\wp\r2.jpg, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\wp\r3.jpg, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\wp\r4.jpg, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\wp\r5.jpg, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\wp\r6.jpg, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\wp\r7.jpg, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\wp\r8.jpg, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\Desk 365\wp\r9.jpg, , [73ada087245746f0699ec8bb06fded13],
PUP.Optional.Desk365.A, C:\Program Files (x86)\Desk 365\promote.xml, , [45dbbb6cee8dcf676e9a94efdf24c23e],
PUP.Optional.Desk365.A, C:\Program Files (x86)\Desk 365\desk_bkg_list.xml, , [45dbbb6cee8dcf676e9a94efdf24c23e],
PUP.Optional.Desk365.A, C:\Program Files (x86)\Desk 365\desk_list.xml, , [45dbbb6cee8dcf676e9a94efdf24c23e],
PUP.Optional.Desk365.A, C:\Program Files (x86)\Desk 365\process_mgr.xml, , [45dbbb6cee8dcf676e9a94efdf24c23e],
PUP.Optional.Desk365.A, C:\Program Files (x86)\Desk 365\recent.xml, , [45dbbb6cee8dcf676e9a94efdf24c23e],
PUP.Optional.Gophoto.A, C:\Program Files (x86)\Gophoto.it\gophotoit14.crx, , [819f42e5a1da68ce9d5d98f140c3bb45],
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\GreyGray.ico, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\GreyGrayUninstall.exe, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\sqlite3.exe, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\updateGreyGray.InstallState, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\bin\7za.exe, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\bin\BrowserAdapterS.7z, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\bin\FilterApp_C64.exe, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\bin\GreyGray.BrowserFilter.Helper.dll, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\bin\GreyGray.BrowserFilter.Helper.dll.old.e3bf6923-7ca9-4a32-bae5-04a4520d5670, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\bin\GreyGrayBrowserFilter.exe, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\bin\sqlite3.dll, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\bin\utilGreyGray.InstallState, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\bin\XTLS.dll, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\bin\XTLSApp.dll, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\bin\XTLSApp.exe, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\bin\plugins\GreyGray.Bromon.dll, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\bin\plugins\GreyGray.BrowserAdapterS.dll, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\bin\plugins\GreyGray.BrowserFilter.dll, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\bin\plugins\GreyGray.CompatibilityChecker.dll, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\bin\plugins\GreyGray.FFUpdate.dll, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\bin\plugins\GreyGray.GCUpdate.dll, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\bin\plugins\GreyGray.IEUpdate.dll, , [928ee146413a0d2983748705679c0ef2],
PUP.Optional.GreyGray.A, C:\Program Files (x86)\GreyGray\bin\plugins\GreyGray.PurBrowse.dll, , [928ee146413a0d2983748705679c0ef2],
Adware.InstallBrain, C:\Windows\System32\dmwu.exe, , [2ef22bfc522982b4fffe69f59b68d828],
PUP.Optional.OpenCandy, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\OpenCandy\037DE9581BF94CE28181B71E6B302B7C\pcspeedup_p7v1.exe, , [89977daa7605e452f900c88cad55c53b],
PUP.Optional.OpenCandy, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\OpenCandy\037DE9581BF94CE28181B71E6B302B7C\PCSU_SL_3.1.2.exe, , [89977daa7605e452f900c88cad55c53b],
PUP.Optional.337Technologies.A, C:\Program Files (x86)\Common Files\337\libcef\1.1364.1123\locales\en-US.pak, , [aa76dd4a4833251156cd56ff0ef4ed13],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\ClearHist.exe, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\default.xml, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgcommon.dll, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgconfig.dll, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgHelper.dll, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgHelperApp.exe, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mghooking.dll, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mglogger.dll, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgsimcommon.dll, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarProxy.dll, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgxml_wrapper.dll, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\conf\logger.xml, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\Microsoft.VC90.CRT\Microsoft.VC90.CRT.manifest, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\Microsoft.VC90.CRT\msvcm90.dll, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\Microsoft.VC90.CRT\msvcp90.dll, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\Microsoft.VC90.CRT\msvcr90.dll, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\eye_icon.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\logo_32x32.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\about.html, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\affid.dat, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\basis.xml, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\bing.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\clear-history.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\content-notifier-anim-over.gif, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\content-notifier-anim.gif, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\content-notifier.js, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\dating.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\dictionary.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\eye_icon_over.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\e_cards.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\find.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\free_stuff.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\games.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\glitter.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\google.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\help.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\highlight.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\locales.xml, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\logo_16x16.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\logo_21x18.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\logo_about.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\MenuExt.html, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\more-search-providers.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\music.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\news.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\options.html, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\photos.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\search-current-site.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\shopping.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\SmileySmile.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\SmileyWink.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\sweetim_text.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\toolbar.xml, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\video.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\web-search.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\web-toolbar.js, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\yahoo.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button_bing.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button_current.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button_dictionary.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button_google.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button_hover.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button_left.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button_photo.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button_video.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button_web.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button_yahoo.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button_bing.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button_current.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button_dictionary.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button_google.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button_hover.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button_left.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button_photo.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button_video.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button_web.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button_yahoo.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button_bing.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button_current.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button_dictionary.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button_google.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button_hover.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button_left.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button_photo.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button_video.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button_web.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button_yahoo.png, , [90900e1983f87eb8383c60f57a887090],
PUP.Optional.InstallBrain.A, C:\Windows\SysWOW64\WNLT\Installation\Config.bin, , [a27e0423cfac0630228a4f06d1314ab6],
PUP.Optional.InstallBrain.A, C:\Windows\SysWOW64\WNLT\Installation\HSChromeRegSetup.exe, , [a27e0423cfac0630228a4f06d1314ab6],
PUP.Optional.InstallBrain.A, C:\Windows\SysWOW64\WNLT\Installation\NTSetup.exe, , [a27e0423cfac0630228a4f06d1314ab6],
PUP.Optional.InstallBrain.A, C:\Windows\SysWOW64\WNLT\Installation\SKSetup.exe, , [a27e0423cfac0630228a4f06d1314ab6],
PUP.Optional.InstallBrain.A, C:\Windows\SysWOW64\WNLT\Installation\uninstaller.exe, , [a27e0423cfac0630228a4f06d1314ab6],
PUP.Optional.InstallBrain.A, C:\Windows\SysWOW64\WNLT\Installation\WSSetup.exe, , [a27e0423cfac0630228a4f06d1314ab6],
PUP.Optional.InstallBrain.A, C:\Windows\SysWOW64\WNLT\Installation\Uninstall\msvcp100.dll, , [a27e0423cfac0630228a4f06d1314ab6],
PUP.Optional.InstallBrain.A, C:\Windows\SysWOW64\WNLT\Installation\Uninstall\msvcr100.dll, , [a27e0423cfac0630228a4f06d1314ab6],
PUP.Optional.InstallBrain.A, C:\Windows\SysWOW64\WNLT\Installation\Uninstall\uninstaller.exe, , [a27e0423cfac0630228a4f06d1314ab6],
PUP.Optional.InstallBrain.A, C:\Windows\SysWOW64\WNLT\Installation\Uninstall\UninstallerLauncher.exe, , [a27e0423cfac0630228a4f06d1314ab6],
PUP.Optional.NextLive.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\newnext.me\nengine.cookie, , [58c82304c1ba290d4f636fe748ba2bd5],
PUP.Optional.NextLive.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\newnext.me\cache\spark.bin, , [58c82304c1ba290d4f636fe748ba2bd5],
PUP.Optional.BuenoSearch.A, C:\Program Files (x86)\buenosearch LTD\buenosearch\1.8.28.7\buenosearchApp.dll, , [859b8a9d4536df57e40a2a2de71bd32d],
PUP.Optional.BuenoSearch.A, C:\Program Files (x86)\buenosearch LTD\buenosearch\1.8.28.7\buenosearchEng.dll, , [859b8a9d4536df57e40a2a2de71bd32d],
PUP.Optional.BuenoSearch.A, C:\Program Files (x86)\buenosearch LTD\buenosearch\1.8.28.7\buenosearchsrv.exe, , [859b8a9d4536df57e40a2a2de71bd32d],
PUP.Optional.BuenoSearch.A, C:\Program Files (x86)\buenosearch LTD\buenosearch\1.8.28.7\GUninstaller.exe, , [859b8a9d4536df57e40a2a2de71bd32d],
PUP.Optional.BuenoSearch.A, C:\Program Files (x86)\buenosearch LTD\buenosearch\1.8.28.7\sqlite3.dll, , [859b8a9d4536df57e40a2a2de71bd32d],
PUP.Optional.BuenoSearch.A, C:\Program Files (x86)\buenosearch LTD\buenosearch\1.8.28.7\uninstall.exe, , [859b8a9d4536df57e40a2a2de71bd32d],
PUP.Optional.BuenoSearch.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\buenosearch LTD\sqlite3.dll, , [9b85a7805f1c0a2cee020f4823dfac54],
PUP.Optional.WhiteSmoke.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj\1.4.0.4_1\128.png, , [bb659e891e5d72c45b7110494eb408f8],
PUP.Optional.WhiteSmoke.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj\1.4.0.4_1\19.png, , [bb659e891e5d72c45b7110494eb408f8],
PUP.Optional.WhiteSmoke.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj\1.4.0.4_1\48.png, , [bb659e891e5d72c45b7110494eb408f8],
PUP.Optional.WhiteSmoke.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj\1.4.0.4_1\background.html, , [bb659e891e5d72c45b7110494eb408f8],
PUP.Optional.WhiteSmoke.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj\1.4.0.4_1\flavour.js, , [bb659e891e5d72c45b7110494eb408f8],
PUP.Optional.WhiteSmoke.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj\1.4.0.4_1\logger.js, , [bb659e891e5d72c45b7110494eb408f8],
PUP.Optional.WhiteSmoke.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj\1.4.0.4_1\main.js, , [bb659e891e5d72c45b7110494eb408f8],
PUP.Optional.WhiteSmoke.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj\1.4.0.4_1\manifest.json, , [bb659e891e5d72c45b7110494eb408f8],
PUP.Optional.WhiteSmoke.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj\1.4.0.4_1\newtab.html, , [bb659e891e5d72c45b7110494eb408f8],
PUP.Optional.WhiteSmoke.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj\1.4.0.4_1\newtab.js, , [bb659e891e5d72c45b7110494eb408f8],
PUP.Optional.WhiteSmoke.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj\1.4.0.4_1\popup.html, , [bb659e891e5d72c45b7110494eb408f8],
PUP.Optional.WhiteSmoke.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj\1.4.0.4_1\popup.js, , [bb659e891e5d72c45b7110494eb408f8],
PUP.Optional.WhiteSmoke.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj\1.4.0.4_1\simapp.js, , [bb659e891e5d72c45b7110494eb408f8],
PUP.Optional.WhiteSmoke.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj\1.4.0.4_1\toolbar.js, , [bb659e891e5d72c45b7110494eb408f8],
PUP.Optional.uTorrentControl.A, C:\Program Files (x86)\uTorrentControl2\GottenAppsContextMenu.xml, , [2000969182f938fe76145cfecd3558a8],
PUP.Optional.uTorrentControl.A, C:\Program Files (x86)\uTorrentControl2\ldrtbuTor.dll, , [2000969182f938fe76145cfecd3558a8],
PUP.Optional.uTorrentControl.A, C:\Program Files (x86)\uTorrentControl2\OtherAppsContextMenu.xml, , [2000969182f938fe76145cfecd3558a8],
PUP.Optional.uTorrentControl.A, C:\Program Files (x86)\uTorrentControl2\prxtbuTor.dll, , [2000969182f938fe76145cfecd3558a8],
PUP.Optional.uTorrentControl.A, C:\Program Files (x86)\uTorrentControl2\SharedAppsContextMenu.xml, , [2000969182f938fe76145cfecd3558a8],
PUP.Optional.uTorrentControl.A, C:\Program Files (x86)\uTorrentControl2\tbuTor.dll, , [2000969182f938fe76145cfecd3558a8],
PUP.Optional.uTorrentControl.A, C:\Program Files (x86)\uTorrentControl2\toolbar.cfg, , [2000969182f938fe76145cfecd3558a8],
PUP.Optional.uTorrentControl.A, C:\Program Files (x86)\uTorrentControl2\ToolbarContextMenu.xml, , [2000969182f938fe76145cfecd3558a8],
PUP.Optional.uTorrentControl.A, C:\Program Files (x86)\uTorrentControl2\uninstall.exe, , [2000969182f938fe76145cfecd3558a8],
PUP.Optional.uTorrentControl.A, C:\Program Files (x86)\uTorrentControl2\uTorrentControl2ToolbarHelper.exe, , [2000969182f938fe76145cfecd3558a8],
PUP.Optional.BuenoSearch.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Local\Google\Chrome\User Data\Default\Extensions\acfoobbgoakpihljnfedbcfaipcdlfhk\1.6.3_1\128.png, , [de42ee39f88349ed2f94fc5f1de59b65],
PUP.Optional.BuenoSearch.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Local\Google\Chrome\User Data\Default\Extensions\acfoobbgoakpihljnfedbcfaipcdlfhk\1.6.3_1\48.png, , [de42ee39f88349ed2f94fc5f1de59b65],
PUP.Optional.BuenoSearch.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Local\Google\Chrome\User Data\Default\Extensions\acfoobbgoakpihljnfedbcfaipcdlfhk\1.6.3_1\background.js, , [de42ee39f88349ed2f94fc5f1de59b65],
PUP.Optional.BuenoSearch.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Local\Google\Chrome\User Data\Default\Extensions\acfoobbgoakpihljnfedbcfaipcdlfhk\1.6.3_1\manifest.json, , [de42ee39f88349ed2f94fc5f1de59b65],
PUP.Optional.BuenoSearch.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Local\Google\Chrome\User Data\Default\Extensions\acfoobbgoakpihljnfedbcfaipcdlfhk\1.6.3_1\redirect.html, , [de42ee39f88349ed2f94fc5f1de59b65],
PUP.Optional.BuenoSearch.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Local\Google\Chrome\User Data\Default\Extensions\acfoobbgoakpihljnfedbcfaipcdlfhk\1.6.3_1\redirect.js, , [de42ee39f88349ed2f94fc5f1de59b65],
PUP.Optional.SweetPacks.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Local\Google\Chrome\User Data\Default\Preferences, Good: (), Bad: ( "homepage_url": "http://www.sweetpacks.com",), ,[e43c081f91ea42f4db6c9ca5a262e719]

Physical Sectors: 0
(No malicious items detected)

(end)

fukyja
nováček
Příspěvky: 12
Registrován: duben 14
Pohlaví: Nespecifikováno
Stav:
Offline

Re: prosím o kontrolu

Příspěvekod fukyja » 06 dub 2014 22:47

# AdwCleaner v3.023 - Report created 06/04/2014 at 22:06:53
# Updated 01/04/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Stříbrný vítr - STŘÍBRNÝVÍTR-PC
# Running from : C:\Users\Stříbrný vítr\Downloads\adwcleaner.exe
# Option : Scan

***** [ Services ] *****

Service Found : IBUpdaterService

***** [ Files / Folders ] *****

File Found : C:\Users\Stříbrný vítr\AppData\Roaming\Mozilla\Firefox\Profiles\0\Extensions\freehdsport@freehdsport.tv.xpi
File Found : C:\Windows\System32\dmwu.exe
File Found : C:\Windows\System32\ImhxxpComm.dll
File Found : C:\Windows\System32\Tasks\AmiUpdXp
File Found : C:\Windows\System32\Tasks\EPUpdater
File Found : C:\Windows\System32\Tasks\GoforFilesUpdate
File Found : C:\Windows\Tasks\AmiUpdXp.job
Folder Found : C:\Users\Stříbrný vítr\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn
Folder Found : C:\Users\Stříbrný vítr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj
Folder Found : C:\Users\Stříbrný vítr\AppData\Local\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc
Folder Found : C:\Users\Stříbrný vítr\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk
Folder Found C:\Program Files (x86)\AVG Secure Search
Folder Found C:\Program Files (x86)\Common Files\337
Folder Found C:\Program Files (x86)\Common Files\AVG Secure Search
Folder Found C:\Program Files (x86)\Conduit
Folder Found C:\Program Files (x86)\Desk 365
Folder Found C:\Program Files (x86)\Gophoto.it
Folder Found C:\Program Files (x86)\GreyGray
Folder Found C:\Program Files (x86)\LSHunter.TV
Folder Found C:\Program Files (x86)\Omiga Plus
Folder Found C:\Program Files (x86)\SimilarSites
Folder Found C:\Program Files (x86)\SweetIM
Folder Found C:\Program Files (x86)\TornTV.com
Folder Found C:\Program Files (x86)\uTorrentControl2
Folder Found C:\Program Files (x86)\WinZipper
Folder Found C:\ProgramData\apn
Folder Found C:\ProgramData\Ask
Folder Found C:\ProgramData\AVG Secure Search
Folder Found C:\ProgramData\Babylon
Folder Found C:\ProgramData\boost_interprocess
Folder Found C:\ProgramData\eSafe
Folder Found C:\ProgramData\Microsoft\Windows\Start Menu\Programs\myfree codec
Folder Found C:\ProgramData\Premium
Folder Found C:\ProgramData\SweetIM
Folder Found C:\ProgramData\Trymedia
Folder Found C:\Users\Stříbrný vítr\AppData\Local\AVG Secure Search
Folder Found C:\Users\Stříbrný vítr\AppData\Local\Conduit
Folder Found C:\Users\Stříbrný vítr\AppData\Local\genienext
Folder Found C:\Users\Stříbrný vítr\AppData\Local\Mobogenie
Folder Found C:\Users\Stříbrný vítr\AppData\Local\SwvUpdater
Folder Found C:\Users\Stříbrný vítr\AppData\LocalLow\AVG Secure Search
Folder Found C:\Users\Stříbrný vítr\AppData\LocalLow\Conduit
Folder Found C:\Users\Stříbrný vítr\AppData\LocalLow\SweetIM
Folder Found C:\Users\Stříbrný vítr\AppData\LocalLow\uTorrentControl2
Folder Found C:\Users\Stříbrný vítr\AppData\Roaming\337
Folder Found C:\Users\Stříbrný vítr\AppData\Roaming\BabSolution
Folder Found C:\Users\Stříbrný vítr\AppData\Roaming\Babylon
Folder Found C:\Users\Stříbrný vítr\AppData\Roaming\Desk 365
Folder Found C:\Users\Stříbrný vítr\AppData\Roaming\goforfiles
Folder Found C:\Users\Stříbrný vítr\AppData\Roaming\newnext.me
Folder Found C:\Users\Stříbrný vítr\AppData\Roaming\Omiga Plus
Folder Found C:\Users\Stříbrný vítr\AppData\Roaming\OpenCandy
Folder Found C:\Users\Stříbrný vítr\AppData\Roaming\SimilarSites
Folder Found C:\Users\Stříbrný vítr\AppData\Roaming\WinZipper
Folder Found C:\Users\Stříbrný vítr\AppData\Roaming\yourfiledownloader
Folder Found C:\Users\Stříbrný vítr\Documents\Mobogenie
Folder Found C:\Windows\System32\ljkb
Folder Found C:\Windows\SysWOW64\ARFC
Folder Found C:\Windows\SysWOW64\jmdp
Folder Found C:\Windows\SysWOW64\WNLT

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\1ClickDownload
Key Found : HKCU\Software\APN PIP
Key Found : HKCU\Software\AppDataLow\Software\Conduit
Key Found : HKCU\Software\AppDataLow\Software\SmartBar
Key Found : HKCU\Software\AppDataLow\Software\uTorrentControl2
Key Found : HKCU\Software\AppDataLow\Toolbar
Key Found : HKCU\Software\AVG Secure Search
Key Found : HKCU\Software\BabSolution
Key Found : HKCU\Software\GoforFiles
Key Found : HKCU\Software\Google\Chrome\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc
Key Found : HKCU\Software\IM
Key Found : HKCU\Software\ImInstaller
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40B7-AC73-056A5EBA4A7E}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{687578B9-7132-4A7A-80E4-30EE31099E03}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{687578B9-7132-4A7A-80E4-30EE31099E03}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{828DC97A-2277-4E10-92A9-4907FA0922A9}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35B-6118-11DC-9C72-001320C79847}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F1C81E40-2485-4DB6-8C9D-04BD596B281E}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{687578B9-7132-4A7A-80E4-30EE31099E03}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{687578B9-7132-4A7A-80E4-30EE31099E03}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{828DC97A-2277-4E10-92A9-4907FA0922A9}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35B-6118-11DC-9C72-001320C79847}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F1C81E40-2485-4DB6-8C9D-04BD596B281E}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec
Key Found : HKCU\Software\Myfree Codec
Key Found : HKCU\Software\PIP
Key Found : HKCU\Software\Softonic
Key Found : HKCU\Software\wnlt
Key Found : HKCU\Software\wscontb
Key Found : [x64] HKCU\Software\1ClickDownload
Key Found : [x64] HKCU\Software\APN PIP
Key Found : [x64] HKCU\Software\AVG Secure Search
Key Found : [x64] HKCU\Software\BabSolution
Key Found : [x64] HKCU\Software\GoforFiles
Key Found : [x64] HKCU\Software\IM
Key Found : [x64] HKCU\Software\ImInstaller
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40B7-AC73-056A5EBA4A7E}
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Key Found : [x64] HKCU\Software\Myfree Codec
Key Found : [x64] HKCU\Software\PIP
Key Found : [x64] HKCU\Software\Softonic
Key Found : [x64] HKCU\Software\wnlt
Key Found : [x64] HKCU\Software\wscontb
Key Found : HKLM\Software\AVG Secure Search
Key Found : HKLM\Software\AVG Security Toolbar
Key Found : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Key Found : HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2}
Key Found : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Key Found : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Key Found : HKLM\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826}
Key Found : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Key Found : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
Key Found : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Key Found : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Found : HKLM\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}
Key Found : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Key Found : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Key Found : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Key Found : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Key Found : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Key Found : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Key Found : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Key Found : HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL
Key Found : HKLM\SOFTWARE\Classes\Applications\ilividsetup.exe
Key Found : HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI
Key Found : HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI.1
Key Found : HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj
Key Found : HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj.1
Key Found : HKLM\SOFTWARE\Classes\b
Key Found : HKLM\SOFTWARE\Classes\buenosearch.buenosearchappCore
Key Found : HKLM\SOFTWARE\Classes\buenosearch.buenosearchappCore.1
Key Found : HKLM\SOFTWARE\Classes\CLSID\{00000001-4FEF-40D3-B3FA-E0531B897F98}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{059EACC2-1ABE-49E8-928D-DC8BD355B7A9}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{408CFAD9-8F13-4747-8EC7-770A339C7237}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{5C3B5DAA-0AFF-4808-90FB-0F2F2D760E36}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{64697678-0000-0010-8000-00AA00389B71}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{67BD9EEB-AA06-4329-A940-D250019300C9}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{687578B9-7132-4A7A-80E4-30EE31099E03}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{687578B9-7132-4A7A-80E4-30EE31099E03}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{828DC97A-2277-4E10-92A9-4907FA0922A9}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{94496571-6AC5-4836-82D5-D46260C44B17}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{BC9FD17D-30F6-4464-9E53-596A90AFF023}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{D4AAF2A6-F6D1-49A5-BA1A-B20735DF1955}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{EEE6C35B-6118-11DC-9C72-001320C79847}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{EEE6C35D-6118-11DC-9C72-001320C79847}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{F1C81E40-2485-4DB6-8C9D-04BD596B281E}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{FD501041-8EBE-11CE-8183-00AA00577DA2}
Key Found : HKLM\Software\Classes\Installer\Features\9EE58E3C298524145B73CBBED3CAC4D3
Key Found : HKLM\Software\Classes\Installer\Features\EB6AF8AEEB922FA4392548F13812E50B
Key Found : HKLM\Software\Classes\Installer\Products\9EE58E3C298524145B73CBBED3CAC4D3
Key Found : HKLM\Software\Classes\Installer\Products\EB6AF8AEEB922FA4392548F13812E50B
Key Found : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Found : HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534}
Key Found : HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Found : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Found : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Found : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Found : HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Found : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Found : HKLM\SOFTWARE\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}
Key Found : HKLM\SOFTWARE\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}
Key Found : HKLM\SOFTWARE\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}
Key Found : HKLM\SOFTWARE\Classes\Prod.cap
Key Found : HKLM\SOFTWARE\Classes\protocols\handler\viprotocol
Key Found : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi
Key Found : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1
Key Found : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager
Key Found : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1
Key Found : HKLM\SOFTWARE\Classes\SWEETIE.IEToolbar
Key Found : HKLM\SOFTWARE\Classes\SWEETIE.IEToolbar.1
Key Found : HKLM\SOFTWARE\Classes\sweetim_urlsearchhook.toolbarurlsearchhook
Key Found : HKLM\SOFTWARE\Classes\sweetim_urlsearchhook.toolbarurlsearchhook.1
Key Found : HKLM\SOFTWARE\Classes\Toolbar.CT3072253
Key Found : HKLM\SOFTWARE\Classes\Toolbar3.sweetie
Key Found : HKLM\SOFTWARE\Classes\Toolbar3.sweetie.1
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{07CAC314-E962-4F78-89AB-DD002F2490EE}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{13ABD093-D46F-40DF-A608-47E162EC799D}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{DCABB943-792E-44C4-9029-ECBEE6265AF9}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{EEE6C35F-6118-11DC-9C72-001320C79847}
Key Found : HKLM\SOFTWARE\Classes\Updater.AmiUpd
Key Found : HKLM\SOFTWARE\Classes\Updater.AmiUpd.1
Key Found : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE
Key Found : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1
Key Found : HKLM\Software\Conduit
Key Found : HKLM\Software\Driver-Soft
Key Found : HKLM\Software\GoforFiles
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\bgnnidmnbdkmhfkjgdnngciimpdgohok
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\jbpkiefagocgkmemidfngdkamloieekf
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\nhogbcndagiknbfomjgdeghehkljalhi
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk
Key Found : HKLM\Software\Iminent
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0C272D41-9981-4663-9558-7A2BAF0C80D0}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2F72476D-DE88-403E-AE26-DE492952045A}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEE6C367-6118-11DC-9C72-001320C79847}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\ApnSetup_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\ApnSetup_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\BundleSweetIMSetup_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\BundleSweetIMSetup_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\sweetim_rasapi32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\sweetim_rasmancs
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\sweetpacksupdatemanager_rasapi32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\SweetPacksUpdateManager_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{687578B9-7132-4A7A-80E4-30EE31099E03}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{687578B9-7132-4A7A-80E4-30EE31099E03}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F1C81E40-2485-4DB6-8C9D-04BD596B281E}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D4AAF2A6-F6D1-49A5-BA1A-B20735DF1955}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{c3e85ee9-5892-4142-b537-bceb3dac4c3d}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{ea8fa6be-29be-4af2-9352-841f83215eb0}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\1ClickDownload
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG Secure Search
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\incredibar
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\uTorrentControl2 Toolbar
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\wnlt
Key Found : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin
Key Found : HKLM\Software\Myfree Codec
Key Found : HKLM\Software\PIP
Key Found : HKLM\Software\Trymedia Systems
Key Found : HKLM\Software\uTorrentControl2
Key Found : HKLM\Software\YourFileDownloader
Key Found : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{D54C859C-6066-4F31-8FE0-2AAEDCAE67D7}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\incredibar
Key Found : [x64] HKLM\SOFTWARE\Speedchecker Limited
Key Found : [x64] HKLM\SOFTWARE\wnlt
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{EEE6C35B-6118-11DC-9C72-001320C79847}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{687578B9-7132-4A7A-80E4-30EE31099E03}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{687578B9-7132-4A7A-80E4-30EE31099E03}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{D8278076-BC68-4484-9233-6E7F1628B56C}]
Value Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [NextLive]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{687578B9-7132-4A7A-80E4-30EE31099E03}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{687578B9-7132-4A7A-80E4-30EE31099E03}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{828DC97A-2277-4E10-92A9-4907FA0922A9}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{95B7759C-8C7F-4BF1-B163-73684A933233}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{EEE6C35B-6118-11DC-9C72-001320C79847}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{687578B9-7132-4A7A-80E4-30EE31099E03}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{687578B9-7132-4A7A-80E4-30EE31099E03}]
Value Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Sweetpacks Communicator]
Value Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [vProt]
Value Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs [C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgHelperApp.exe]
Value Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs [C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarProxy.dll]
Value Found : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [Avg@toolbar]

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.16521


-\\ Mozilla Firefox v

[ File : C:\Users\Stříbrný vítr\AppData\Roaming\Mozilla\Firefox\Profiles\0\prefs.js ]


-\\ Google Chrome v

[ File : C:\Users\Stříbrný vítr\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [24117 octets] - [06/04/2014 22:06:53]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [24178 octets] ##########

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu

Příspěvekod jaro3 » 07 dub 2014 10:46

Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce
klikni na „Prohledat-Scan“, po prohledání klikni na „ Vymazat-Clean

Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.

Stáhni si Junkware Removal Tool by Thisisu

na svojí plochu.

Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.

. spusť znovu MbAM a dej Scan
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Ukaž výsledky
- ujisti se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Odstranit označené
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit
Můžeš sem pak vložit nový log z MbAM.

Stáhni si RogueKiller by Adlice Software
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit

-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

fukyja
nováček
Příspěvky: 12
Registrován: duben 14
Pohlaví: Nespecifikováno
Stav:
Offline

Re: prosím o kontrolu

Příspěvekod fukyja » 09 dub 2014 12:15

# AdwCleaner v3.023 - Report created 09/04/2014 at 11:40:25
# Updated 01/04/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Stříbrný vítr - STŘÍBRNÝVÍTR-PC
# Running from : C:\Users\Stříbrný vítr\Downloads\adwcleaner.exe
# Option : Clean

***** [ Services ] *****

[#] Service Deleted : IBUpdaterService

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\apn
Folder Deleted : C:\ProgramData\Ask
Folder Deleted : C:\ProgramData\AVG Secure Search
Folder Deleted : C:\ProgramData\Babylon
Folder Deleted : C:\ProgramData\boost_interprocess
Folder Deleted : C:\ProgramData\eSafe
Folder Deleted : C:\ProgramData\Premium
Folder Deleted : C:\ProgramData\SweetIM
Folder Deleted : C:\ProgramData\Trymedia
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\myfree codec
Folder Deleted : C:\Program Files (x86)\AVG Secure Search
Folder Deleted : C:\Program Files (x86)\Conduit
Folder Deleted : C:\Program Files (x86)\Desk 365
Folder Deleted : C:\Program Files (x86)\Gophoto.it
Folder Deleted : C:\Program Files (x86)\GreyGray
Folder Deleted : C:\Program Files (x86)\LSHunter.TV
Folder Deleted : C:\Program Files (x86)\Omiga Plus
Folder Deleted : C:\Program Files (x86)\SimilarSites
Folder Deleted : C:\Program Files (x86)\SweetIM
Folder Deleted : C:\Program Files (x86)\TornTV.com
Folder Deleted : C:\Program Files (x86)\WinZipper
Folder Deleted : C:\Program Files (x86)\uTorrentControl2
Folder Deleted : C:\Program Files (x86)\Common Files\337
Folder Deleted : C:\Program Files (x86)\Common Files\AVG Secure Search
Folder Deleted : C:\Windows\SysWOW64\ARFC
Folder Deleted : C:\Windows\SysWOW64\jmdp
Folder Deleted : C:\Windows\SysWOW64\WNLT
Folder Deleted : C:\Windows\System32\ljkb
Folder Deleted : C:\Users\Stříbrný vítr\AppData\Local\AVG Secure Search
Folder Deleted : C:\Users\Stříbrný vítr\AppData\Local\Conduit
Folder Deleted : C:\Users\Stříbrný vítr\AppData\Local\genienext
Folder Deleted : C:\Users\Stříbrný vítr\AppData\Local\Mobogenie
Folder Deleted : C:\Users\Stříbrný vítr\AppData\Local\SwvUpdater
Folder Deleted : C:\Users\Stříbrný vítr\AppData\LocalLow\AVG Secure Search
Folder Deleted : C:\Users\Stříbrný vítr\AppData\LocalLow\Conduit
Folder Deleted : C:\Users\Stříbrný vítr\AppData\LocalLow\SweetIM
Folder Deleted : C:\Users\Stříbrný vítr\AppData\LocalLow\uTorrentControl2
Folder Deleted : C:\Users\Stříbrný vítr\AppData\Roaming\337
Folder Deleted : C:\Users\Stříbrný vítr\AppData\Roaming\BabSolution
Folder Deleted : C:\Users\Stříbrný vítr\AppData\Roaming\Babylon
Folder Deleted : C:\Users\Stříbrný vítr\AppData\Roaming\Desk 365
Folder Deleted : C:\Users\Stříbrný vítr\AppData\Roaming\goforfiles
Folder Deleted : C:\Users\Stříbrný vítr\AppData\Roaming\newnext.me
Folder Deleted : C:\Users\Stříbrný vítr\AppData\Roaming\Omiga Plus
Folder Deleted : C:\Users\Stříbrný vítr\AppData\Roaming\OpenCandy
Folder Deleted : C:\Users\Stříbrný vítr\AppData\Roaming\SimilarSites
Folder Deleted : C:\Users\Stříbrný vítr\AppData\Roaming\WinZipper
Folder Deleted : C:\Users\Stříbrný vítr\AppData\Roaming\yourfiledownloader
Folder Deleted : C:\Users\Stříbrný vítr\Documents\Mobogenie
Folder Deleted : C:\Users\Stříbrný vítr\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn
Folder Deleted : C:\Users\Stříbrný vítr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj
Folder Deleted : C:\Users\Stříbrný vítr\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk
Folder Deleted : C:\Users\Stříbrný vítr\AppData\Local\Google\Chrome\User Data\Default\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc
File Deleted : C:\Users\Stříbrný vítr\AppData\Roaming\Mozilla\Firefox\Profiles\0\Extensions\freehdsport@freehdsport.tv.xpi
File Deleted : C:\Windows\System32\dmwu.exe
File Deleted : C:\Windows\System32\ImhxxpComm.dll
File Deleted : C:\Windows\Tasks\AmiUpdXp.job
File Deleted : C:\Windows\System32\Tasks\AmiUpdXp
File Deleted : C:\Windows\System32\Tasks\EPUpdater
File Deleted : C:\Windows\System32\Tasks\GoforFilesUpdate

***** [ Shortcuts ] *****


***** [ Registry ] *****

Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [Avg@toolbar]
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\bgnnidmnbdkmhfkjgdnngciimpdgohok
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\jbpkiefagocgkmemidfngdkamloieekf
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\nhogbcndagiknbfomjgdeghehkljalhi
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk
Key Deleted : HKCU\Software\Google\Chrome\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\pacgpkgadgmibnhpdidcnfafllnmeomc
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [NextLive]
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL
Key Deleted : HKLM\SOFTWARE\Classes\Applications\ilividsetup.exe
Key Deleted : HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI
Key Deleted : HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI.1
Key Deleted : HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj
Key Deleted : HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj.1
Key Deleted : HKLM\SOFTWARE\Classes\b
Key Deleted : HKLM\SOFTWARE\Classes\buenosearch.buenosearchappCore
Key Deleted : HKLM\SOFTWARE\Classes\buenosearch.buenosearchappCore.1
Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
Key Deleted : HKLM\SOFTWARE\Classes\protocols\handler\viprotocol
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1
Key Deleted : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager
Key Deleted : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1
Key Deleted : HKLM\SOFTWARE\Classes\SWEETIE.IEToolbar
Key Deleted : HKLM\SOFTWARE\Classes\SWEETIE.IEToolbar.1
Key Deleted : HKLM\SOFTWARE\Classes\sweetim_urlsearchhook.toolbarurlsearchhook
Key Deleted : HKLM\SOFTWARE\Classes\sweetim_urlsearchhook.toolbarurlsearchhook.1
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar3.sweetie
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar3.sweetie.1
Key Deleted : HKLM\SOFTWARE\Classes\Updater.AmiUpd
Key Deleted : HKLM\SOFTWARE\Classes\Updater.AmiUpd.1
Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE
Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ApnSetup_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ApnSetup_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BundleSweetIMSetup_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BundleSweetIMSetup_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\sweetim_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\sweetim_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\sweetpacksupdatemanager_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SweetPacksUpdateManager_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Sweetpacks Communicator]
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [vProt]
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs [C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgHelperApp.exe]
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs [C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarProxy.dll]
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT3072253
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{00000001-4FEF-40D3-B3FA-E0531B897F98}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{059EACC2-1ABE-49E8-928D-DC8BD355B7A9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{408CFAD9-8F13-4747-8EC7-770A339C7237}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5C3B5DAA-0AFF-4808-90FB-0F2F2D760E36}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{64697678-0000-0010-8000-00AA00389B71}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{67BD9EEB-AA06-4329-A940-D250019300C9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{687578B9-7132-4A7A-80E4-30EE31099E03}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{828DC97A-2277-4E10-92A9-4907FA0922A9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{94496571-6AC5-4836-82D5-D46260C44B17}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{BC9FD17D-30F6-4464-9E53-596A90AFF023}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{EEE6C35B-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{EEE6C35D-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F1C81E40-2485-4DB6-8C9D-04BD596B281E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FD501041-8EBE-11CE-8183-00AA00577DA2}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D4AAF2A6-F6D1-49A5-BA1A-B20735DF1955}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{07CAC314-E962-4F78-89AB-DD002F2490EE}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{13ABD093-D46F-40DF-A608-47E162EC799D}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{DCABB943-792E-44C4-9029-ECBEE6265AF9}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{EEE6C35F-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{687578B9-7132-4A7A-80E4-30EE31099E03}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F1C81E40-2485-4DB6-8C9D-04BD596B281E}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{687578B9-7132-4A7A-80E4-30EE31099E03}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{828DC97A-2277-4E10-92A9-4907FA0922A9}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35B-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F1C81E40-2485-4DB6-8C9D-04BD596B281E}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{687578B9-7132-4A7A-80E4-30EE31099E03}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{828DC97A-2277-4E10-92A9-4907FA0922A9}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35B-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F1C81E40-2485-4DB6-8C9D-04BD596B281E}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D4AAF2A6-F6D1-49A5-BA1A-B20735DF1955}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEE6C367-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0C272D41-9981-4663-9558-7A2BAF0C80D0}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2F72476D-DE88-403E-AE26-DE492952045A}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40B7-AC73-056A5EBA4A7E}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{687578B9-7132-4A7A-80E4-30EE31099E03}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{828DC97A-2277-4E10-92A9-4907FA0922A9}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{95B7759C-8C7F-4BF1-B163-73684A933233}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{EEE6C35B-6118-11DC-9C72-001320C79847}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{EEE6C35B-6118-11DC-9C72-001320C79847}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{687578B9-7132-4A7A-80E4-30EE31099E03}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{D8278076-BC68-4484-9233-6E7F1628B56C}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{687578B9-7132-4A7A-80E4-30EE31099E03}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{D54C859C-6066-4F31-8FE0-2AAEDCAE67D7}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKCU\Software\1ClickDownload
Key Deleted : HKCU\Software\APN PIP
Key Deleted : HKCU\Software\AVG Secure Search
Key Deleted : HKCU\Software\BabSolution
Key Deleted : HKCU\Software\GoforFiles
Key Deleted : HKCU\Software\IM
Key Deleted : HKCU\Software\ImInstaller
Key Deleted : HKCU\Software\Myfree Codec
Key Deleted : HKCU\Software\PIP
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\wnlt
Key Deleted : HKCU\Software\wscontb
Key Deleted : HKCU\Software\AppDataLow\Toolbar
Key Deleted : HKCU\Software\AppDataLow\Software\Conduit
Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar
Key Deleted : HKCU\Software\AppDataLow\Software\uTorrentControl2
Key Deleted : HKLM\Software\AVG Secure Search
Key Deleted : HKLM\Software\AVG Security Toolbar
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\Software\Driver-Soft
Key Deleted : HKLM\Software\GoforFiles
Key Deleted : HKLM\Software\Iminent
Key Deleted : HKLM\Software\Myfree Codec
Key Deleted : HKLM\Software\PIP
Key Deleted : HKLM\Software\Trymedia Systems
Key Deleted : HKLM\Software\YourFileDownloader
Key Deleted : HKLM\Software\uTorrentControl2
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{c3e85ee9-5892-4142-b537-bceb3dac4c3d}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{ea8fa6be-29be-4af2-9352-841f83215eb0}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\1ClickDownload
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG Secure Search
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\incredibar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\wnlt
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\uTorrentControl2 Toolbar
Key Deleted : [x64] HKLM\SOFTWARE\Speedchecker Limited
Key Deleted : [x64] HKLM\SOFTWARE\wnlt
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\incredibar
Key Deleted : HKLM\Software\Classes\Installer\Features\9EE58E3C298524145B73CBBED3CAC4D3
Key Deleted : HKLM\Software\Classes\Installer\Features\EB6AF8AEEB922FA4392548F13812E50B
Key Deleted : HKLM\Software\Classes\Installer\Products\9EE58E3C298524145B73CBBED3CAC4D3
Key Deleted : HKLM\Software\Classes\Installer\Products\EB6AF8AEEB922FA4392548F13812E50B

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.16521


-\\ Mozilla Firefox v

[ File : C:\Users\Stříbrný vítr\AppData\Roaming\Mozilla\Firefox\Profiles\0\prefs.js ]


-\\ Google Chrome v

[ File : C:\Users\Stříbrný vítr\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [24399 octets] - [06/04/2014 22:06:53]
AdwCleaner[R1].txt - [24460 octets] - [09/04/2014 11:26:06]
AdwCleaner[R2].txt - [24521 octets] - [09/04/2014 11:38:18]
AdwCleaner[S0].txt - [23087 octets] - [09/04/2014 11:40:25]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [23148 octets] ##########

fukyja
nováček
Příspěvky: 12
Registrován: duben 14
Pohlaví: Nespecifikováno
Stav:
Offline

Re: prosím o kontrolu

Příspěvekod fukyja » 09 dub 2014 12:35

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 7 Home Premium x64
Ran by Stýˇbrně vˇtr on st 09.04.2014 at 12:21:59,99
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values

Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\driver genius
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-21-3343003481-2846401460-112019622-1000\Software\Microsoft\Internet Explorer\Main\\Start Page



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-3343003481-2846401460-112019622-1000\Software\sweetim
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\sweetim
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\robotaskbaricon_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\robotaskbaricon_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\robotaskbaricon_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\robotaskbaricon_RASMANCS



~~~ Files

Successfully deleted: [File] "C:\Users\Stýˇbrně vˇtr\appdata\locallow\SkwConfig.bin"



~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\drivergenius"



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on st 09.04.2014 at 12:31:40,38
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

fukyja
nováček
Příspěvky: 12
Registrován: duben 14
Pohlaví: Nespecifikováno
Stav:
Offline

Re: prosím o kontrolu

Příspěvekod fukyja » 09 dub 2014 13:06

Malwarebytes Anti-Malware
www.malwarebytes.org

Datum skenování: 9.4.2014
Čas skenování: 13:02:18
Protokol: log.mbam.txt
Správce: Ano

Verze: 2.00.1.1004
Databáze malwaru: v2014.04.09.03
Databáze rootkitů: v2014.03.27.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Chameleon: Vypnuto

OS: Windows 7 Service Pack 1
CPU: x64
Souborový systém: NTFS
Uživatel: StA?A­brnA1 vA­tr

Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 275874
Uplynulý čas: 24 min, 3 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Shuriken: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 0
(No malicious items detected)

Moduly: 0
(No malicious items detected)

Klíče registru: 24
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\CLASSES\buenosearch.buenosearchHlpr, Do karantény, [380fae7a24579c9afc71212623df19e7],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\CLASSES\buenosearch.buenosearchHlpr.1, Do karantény, [c97e79af37441e187af347000df530d0],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\buenosearch.buenosearchHlpr, Do karantény, [c97e79af37441e187af347000df530d0],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\buenosearch.buenosearchHlpr.1, Do karantény, [c97e79af37441e187af347000df530d0],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\CLASSES\buenosearch.buenosearchdskBnd, Do karantény, [35129e8a93e8d1650b632e19b74b41bf],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\CLASSES\buenosearch.buenosearchdskBnd.1, Do karantény, [2d1a70b843387eb892dc88bfcc36827e],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\buenosearch.buenosearchdskBnd, Do karantény, [2d1a70b843387eb892dc88bfcc36827e],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\buenosearch.buenosearchdskBnd.1, Do karantény, [2d1a70b843387eb892dc88bfcc36827e],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\CLASSES\esrv.buenosearchESrvc, Do karantény, [b691a583a4d7b185b0cc86e846bcce32],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\CLASSES\esrv.buenosearchESrvc.1, Do karantény, [2621b276a8d3a29469135a1451b1768a],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\WOW6432NODE\buenosearch LTD, Do karantény, [c582220694e7e155205995d9ce34768a],
PUP.Optional.GreyGray.A, HKLM\SOFTWARE\WOW6432NODE\GreyGray, Do karantény, [fe492cfc1e5d0333a3b20b85e61dc040],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\esrv.buenosearchESrvc, Do karantény, [6ed928004f2c290d2b51ea84de2405fb],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\esrv.buenosearchESrvc.1, Do karantény, [8dbadd4b5625c57186f6f777db274cb4],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\acfoobbgoakpihljnfedbcfaipcdlfhk, Do karantény, [2e19c464aad164d216f48012b74cae52],
PUP.Optional.Greygray.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\Update GreyGray, Do karantény, [51f669bf116ad95d37c9f8a29073aa56],
PUP.Optional.InstallBrain.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\WNLT, Do karantény, [9bac0a1ebbc060d609b1f49b7f841be5],
PUP.Optional.BuenoSearch.A, HKU\S-1-5-21-3343003481-2846401460-112019622-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\buenosearch LTD, Do karantény, [cc7bd553116a51e50377d896b15101ff],
PUP.Optional.GreyGray.A, HKU\S-1-5-21-3343003481-2846401460-112019622-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\GreyGray, Do karantény, [87c076b20d6ec5715df7bfd1d3301ce4],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{8322EB6E-B594-41F6-A30B-CF3F800E1874}, Do karantény, [a6a178b0681364d267ecd28820e2926e],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{4CC15FBA-46A4-4CB5-BFAF-F2335365AE76}, Do karantény, [a6a178b0681364d267ecd28820e2926e],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{67FCE87F-F3EF-4A3C-87C2-8BD46E68807B}, Do karantény, [a6a178b0681364d267ecd28820e2926e],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{67FCE87F-F3EF-4A3C-87C2-8BD46E68807B}, Do karantény, [a6a178b0681364d267ecd28820e2926e],
PUP.Optional.BuenoSearch.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\buenosearch, Do karantény, [a6a178b0681364d267ecd28820e2926e],

Hodnoty registru: 1
PUP.Optional.InstallBrain.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\WNLT|URL, MYSTART, Do karantény, [9bac0a1ebbc060d609b1f49b7f841be5]

Data registru: 0
(No malicious items detected)

Složky: 5
PUP.Optional.BuenoSearch.A, C:\Program Files (x86)\buenosearch LTD, Do karantény, [a6a178b0681364d267ecd28820e2926e],
PUP.Optional.BuenoSearch.A, C:\Program Files (x86)\buenosearch LTD\buenosearch, Do karantény, [a6a178b0681364d267ecd28820e2926e],
PUP.Optional.BuenoSearch.A, C:\Program Files (x86)\buenosearch LTD\buenosearch\1.8.28.7, Do karantény, [a6a178b0681364d267ecd28820e2926e],
PUP.Optional.BuenoSearch.A, C:\Program Files (x86)\buenosearch LTD\buenosearch\1.8.28.7\bh, Do karantény, [a6a178b0681364d267ecd28820e2926e],
PUP.Optional.BuenoSearch.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\buenosearch LTD, Do karantény, [cf78e345d4a764d27cd99fbbf60c7090],

Soubory: 15
PUP.Optional.OpenCandy, C:\Users\StA?A­brnA1 vA­tr\Downloads\DTLite4454-0315.exe, Do karantény, [1d2a8b9daad190a62834132af50f827e],
Trojan.ELEX, C:\Users\StA?A­brnA1 vA­tr\Downloads\yet_another_cleaner_mar (1).exe, Do karantény, [450294943843360059b7330e1ee3af51],
Trojan.ELEX, C:\Users\StA?A­brnA1 vA­tr\Downloads\yet_another_cleaner_mar (2).exe, Do karantény, [9baca18786f50d29ff119da413ee58a8],
Trojan.ELEX, C:\Users\StA?A­brnA1 vA­tr\Downloads\yet_another_cleaner_mar.exe, Do karantény, [75d257d186f538fe0a06162bda273ac6],
PUP.Optional.SweetIM, C:\Windows\Installer\ab9c42a.msi, Do karantény, [9daa63c555266fc7d41918249e66c43c],
PUP.Optional.SweetIM, C:\Windows\Installer\ab9c42f.msi, Do karantény, [ba8dd256dba0072fda136fcdc440a759],
PUP.Optional.BuenoSearch.A, C:\Program Files (x86)\buenosearch LTD\buenosearch\1.8.28.7\buenosearchApp.dll, Do karantény, [a6a178b0681364d267ecd28820e2926e],
PUP.Optional.BuenoSearch.A, C:\Program Files (x86)\buenosearch LTD\buenosearch\1.8.28.7\buenosearchEng.dll, Do karantény, [a6a178b0681364d267ecd28820e2926e],
PUP.Optional.BuenoSearch.A, C:\Program Files (x86)\buenosearch LTD\buenosearch\1.8.28.7\buenosearchsrv.exe, Do karantény, [a6a178b0681364d267ecd28820e2926e],
PUP.Optional.BuenoSearch.A, C:\Program Files (x86)\buenosearch LTD\buenosearch\1.8.28.7\buenosearchTlbr.dll, Do karantény, [a6a178b0681364d267ecd28820e2926e],
PUP.Optional.BuenoSearch.A, C:\Program Files (x86)\buenosearch LTD\buenosearch\1.8.28.7\GUninstaller.exe, Do karantény, [a6a178b0681364d267ecd28820e2926e],
PUP.Optional.BuenoSearch.A, C:\Program Files (x86)\buenosearch LTD\buenosearch\1.8.28.7\sqlite3.dll, Do karantény, [a6a178b0681364d267ecd28820e2926e],
PUP.Optional.BuenoSearch.A, C:\Program Files (x86)\buenosearch LTD\buenosearch\1.8.28.7\uninstall.exe, Do karantény, [a6a178b0681364d267ecd28820e2926e],
PUP.Optional.BuenoSearch.A, C:\Program Files (x86)\buenosearch LTD\buenosearch\1.8.28.7\bh\buenosearch.dll, Do karantény, [a6a178b0681364d267ecd28820e2926e],
PUP.Optional.BuenoSearch.A, C:\Users\StA?A­brnA1 vA­tr\AppData\Roaming\buenosearch LTD\sqlite3.dll, Do karantény, [cf78e345d4a764d27cd99fbbf60c7090],

Fyzické sektory: 0
(No malicious items detected)


(end)

fukyja
nováček
Příspěvky: 12
Registrován: duben 14
Pohlaví: Nespecifikováno
Stav:
Offline

Re: prosím o kontrolu

Příspěvekod fukyja » 09 dub 2014 13:23

RogueKiller V8.8.15 _x64_ [Mar 27 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : Stříbrný vítr [Práva správce]
Mód : Kontrola -- Datum : 04/09/2014 13:20:19
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 3 ¤¤¤
[SUSP UNIC] Kies.exe -- C:\Users\Stříbrný vítr\Desktop\Kies\Kies.exe [7] -> SMAZÁNO [TermProc]
[SUSP PATH] Toolbox.exe -- C:\ProgramData\Boxtools\Toolbox.exe [-] -> SMAZÁNO [TermProc]
[SUSP UNIC] KiesTrayAgent.exe -- C:\Users\Stříbrný vítr\Desktop\Kies\KiesTrayAgent.exe [7] -> SMAZÁNO [TermProc]

¤¤¤ ¤¤¤ Záznamy Registrů: : 16 ¤¤¤
[RUN][SUSP PATH] HKCU\[...]\Run : Boxoft Tools ("C:\ProgramData\Boxtools\Boxofttoolbox.exe" -autorun [-]) -> NALEZENO
[RUN][SUSP UNIC] HKCU\[...]\Run : KiesPreload (C:\Users\Stříbrný vítr\Desktop\Kies\Kies.exe /preload [7]) -> NALEZENO
[RUN][SUSP PATH] HKUS\S-1-5-21-3343003481-2846401460-112019622-1000\[...]\Run : Boxoft Tools ("C:\ProgramData\Boxtools\Boxofttoolbox.exe" -autorun [-]) -> NALEZENO
[RUN][SUSP UNIC] HKUS\S-1-5-21-3343003481-2846401460-112019622-1000\[...]\Run : KiesPreload (C:\Users\Stříbrný vítr\Desktop\Kies\Kies.exe /preload [7]) -> NALEZENO
[RUN][SUSP UNIC] HKLM\[...]\Wow6432Node\[...]\Run : KiesTrayAgent (C:\Users\Stříbrný vítr\Desktop\Kies\KiesTrayAgent.exe [7]) -> NALEZENO
[DNS][PUM] HKLM\[...]\CCSet\[...]\{8B445176-3566-4B61-A95B-6F5030D6C069} : NameServer (10.132.12.33,10.132.12.1 [(Private Address) (XX) - (Private Address) (XX)]) -> NALEZENO
[DNS][PUM] HKLM\[...]\CS001\[...]\{8B445176-3566-4B61-A95B-6F5030D6C069} : NameServer (10.132.12.33,10.132.12.1 [(Private Address) (XX) - (Private Address) (XX)]) -> NALEZENO
[DNS][PUM] HKLM\[...]\CS002\[...]\{8B445176-3566-4B61-A95B-6F5030D6C069} : NameServer (10.132.12.33,10.132.12.1 [(Private Address) (XX) - (Private Address) (XX)]) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\System : ConsentPromptBehaviorAdmin (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\System : EnableLUA (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : ConsentPromptBehaviorAdmin (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : EnableLUA (0) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ naplánované úlohy : 6 ¤¤¤
[V1][SUSP PATH] AVG-Secure-Search-Update_JUNE2013_HP_rmv.job : C:\Windows\TEMP\{3C1E8914-014C-42EF-8EF5-9828CBC7CE62}.exe - --uninstall=1 [x] -> NALEZENO
[V1][SUSP PATH] AVG-Secure-Search-Update_JUNE2013_TB_rmv.job : C:\Windows\TEMP\{001FAE60-F4E3-49DA-843B-C2B0D5D6592A}.exe - --uninstall=1 [x] -> NALEZENO
[V2][SUSP PATH] AVG-Secure-Search-Update_JUNE2013_HP_rmv : C:\Windows\TEMP\{3C1E8914-014C-42EF-8EF5-9828CBC7CE62}.exe - --uninstall=1 [x] -> NALEZENO
[V2][SUSP PATH] AVG-Secure-Search-Update_JUNE2013_TB_rmv : C:\Windows\TEMP\{001FAE60-F4E3-49DA-843B-C2B0D5D6592A}.exe - --uninstall=1 [x] -> NALEZENO
[V2][SUSP UNIC] {B2720842-3690-4561-AC2D-516633382148} : C:\Users\Stříbrný vítr\Desktop\Kies3\Kies3.exe [x] -> NALEZENO
[V2][SUSP UNIC] {CA86A699-38DF-4B80-9314-362DF1B71D25} : C:\Users\Stříbrný vítr\Desktop\Kies3\Kies3.exe [x] -> NALEZENO

¤¤¤ spuštění položky : 2 ¤¤¤
[Stříbrný vítr][SUSP UNIC] Registrace FIFA 10.lnk : C:\Users\Stříbrný vítr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Registrace FIFA 10.lnk @C:\Program Files (x86)\EA Sports\FIFA 10\Support\EAregister.exe /remind /language=CS /PRID="ODS:15691.110.Base Product" /WHPR="FIFA 10" /PRNM="Electronic Arts Product" [-][-][x][x][x][x][x][x] -> NALEZENO
[Stříbrný vítr][SUSP UNIC] Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk : C:\Users\Stříbrný vítr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk @C:\Programy\Office14\ONENOTEM.EXE /tsr [-][7] -> NALEZENO

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Browser Addons : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤
[Address] EAT @explorer.exe (WlanAllocateMemory) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E8AC8)
[Address] EAT @explorer.exe (WlanCloseHandle) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E38A0)
[Address] EAT @explorer.exe (WlanConnect) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E5558)
[Address] EAT @explorer.exe (WlanDeleteProfile) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E6D10)
[Address] EAT @explorer.exe (WlanDisconnect) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E57E8)
[Address] EAT @explorer.exe (WlanEnumInterfaces) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E3A80)
[Address] EAT @explorer.exe (WlanExtractPsdIEDataList) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E8394)
[Address] EAT @explorer.exe (WlanFreeMemory) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8EA5A0)
[Address] EAT @explorer.exe (WlanGetAvailableNetworkList) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E4F88)
[Address] EAT @explorer.exe (WlanGetFilterList) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E7F9C)
[Address] EAT @explorer.exe (WlanGetInterfaceCapability) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E4188)
[Address] EAT @explorer.exe (WlanGetNetworkBssList) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E5268)
[Address] EAT @explorer.exe (WlanGetProfile) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E6A20)
[Address] EAT @explorer.exe (WlanGetProfileCustomUserData) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E7B1C)
[Address] EAT @explorer.exe (WlanGetProfileList) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E7404)
[Address] EAT @explorer.exe (WlanGetSecuritySettings) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E8D88)
[Address] EAT @explorer.exe (WlanHostedNetworkForceStart) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E935C)
[Address] EAT @explorer.exe (WlanHostedNetworkForceStop) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E9418)
[Address] EAT @explorer.exe (WlanHostedNetworkInitSettings) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E99D8)
[Address] EAT @explorer.exe (WlanHostedNetworkQueryProperty) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E94D4)
[Address] EAT @explorer.exe (WlanHostedNetworkQuerySecondaryKey) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8EA020)
[Address] EAT @explorer.exe (WlanHostedNetworkQueryStatus) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E9B50)
[Address] EAT @explorer.exe (WlanHostedNetworkRefreshSecuritySettings) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E9A94)
[Address] EAT @explorer.exe (WlanHostedNetworkSetProperty) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E9744)
[Address] EAT @explorer.exe (WlanHostedNetworkSetSecondaryKey) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E9D78)
[Address] EAT @explorer.exe (WlanHostedNetworkStartUsing) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E91EC)
[Address] EAT @explorer.exe (WlanHostedNetworkStopUsing) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E92A4)
[Address] EAT @explorer.exe (WlanIhvControl) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E4A00)
[Address] EAT @explorer.exe (WlanOpenHandle) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E1960)
[Address] EAT @explorer.exe (WlanQueryAutoConfigParameter) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E3EE8)
[Address] EAT @explorer.exe (WlanQueryInterface) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E4668)
[Address] EAT @explorer.exe (WlanReasonCodeToString) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E8A54)
[Address] EAT @explorer.exe (WlanRegisterNotification) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E5A08)
[Address] EAT @explorer.exe (WlanRegisterVirtualStationNotification) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8EA358)
[Address] EAT @explorer.exe (WlanRenameProfile) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E6F4C)
[Address] EAT @explorer.exe (WlanSaveTemporaryProfile) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E87D0)
[Address] EAT @explorer.exe (WlanScan) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E4D40)
[Address] EAT @explorer.exe (WlanSetAutoConfigParameter) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E3D10)
[Address] EAT @explorer.exe (WlanSetFilterList) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E7DCC)
[Address] EAT @explorer.exe (WlanSetInterface) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E4470)
[Address] EAT @explorer.exe (WlanSetProfile) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E6760)
[Address] EAT @explorer.exe (WlanSetProfileCustomUserData) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E78A4)
[Address] EAT @explorer.exe (WlanSetProfileEapUserData) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E5CC4)
[Address] EAT @explorer.exe (WlanSetProfileEapXmlUserData) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E5F9C)
[Address] EAT @explorer.exe (WlanSetProfileList) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E71A8)
[Address] EAT @explorer.exe (WlanSetProfilePosition) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E7644)
[Address] EAT @explorer.exe (WlanSetPsdIEDataList) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E81B0)
[Address] EAT @explorer.exe (WlanSetSecuritySettings) : OLEACC.dll -> HOOKED (C:\Windows\system32\Wlanapi.dll @ 0xFA8E8B58)

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts




¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) WDC WD5000BEVT-22A0RT0 +++++
--- User ---
[MBR] 5f42ecb7a20ada09b2107629babbb3a1
[BSP] 03e902150077d951004f65388b48476c : Windows 7/8 MBR Code
Partition table:
0 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 2048 | Size: 13000 MB
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 26626048 | Size: 100 MB
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 26830848 | Size: 463838 MB
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_S_04092014_132019.txt >>

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu

Příspěvekod jaro3 » 10 dub 2014 10:41

Zavři všechny programy a prohlížeče. Deaktivuj antivir a firewall.
Prosím, odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.
Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "
- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje " Mazání dokončeno "
- Klikni na "Zpráva " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller

Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller. 2.8.16.0_(datum)_log.txt , vlož sem prosím celý obsah logu.
-pokud bude mít log více než 60.000 znaků , rozděl ho a vlož do více příspěvků
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

fukyja
nováček
Příspěvky: 12
Registrován: duben 14
Pohlaví: Nespecifikováno
Stav:
Offline

Re: prosím o kontrolu

Příspěvekod fukyja » 10 dub 2014 11:10

RogueKiller V8.8.15 _x64_ [Mar 27 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : Stříbrný vítr [Práva správce]
Mód : Odebrat -- Datum : 04/10/2014 11:05:28
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 3 ¤¤¤
[SUSP UNIC] Kies.exe -- C:\Users\Stříbrný vítr\Desktop\Kies\Kies.exe [7] -> SMAZÁNO [TermProc]
[SUSP PATH] Toolbox.exe -- C:\ProgramData\Boxtools\Toolbox.exe [-] -> SMAZÁNO [TermProc]
[SUSP UNIC] KiesTrayAgent.exe -- C:\Users\Stříbrný vítr\Desktop\Kies\KiesTrayAgent.exe [7] -> SMAZÁNO [TermProc]

¤¤¤ ¤¤¤ Záznamy Registrů: : 13 ¤¤¤
[RUN][SUSP PATH] HKCU\[...]\Run : Boxoft Tools ("C:\ProgramData\Boxtools\Boxofttoolbox.exe" -autorun [-]) -> VYMAZÁNO
[RUN][SUSP UNIC] HKCU\[...]\Run : KiesPreload (C:\Users\Stříbrný vítr\Desktop\Kies\Kies.exe /preload [7]) -> VYMAZÁNO
[RUN][SUSP PATH] HKUS\S-1-5-21-3343003481-2846401460-112019622-1000\[...]\Run : Boxoft Tools ("C:\ProgramData\Boxtools\Boxofttoolbox.exe" -autorun [-]) -> [0x2] Systém nemůže nalézt uvedený soubor.
[RUN][SUSP UNIC] HKUS\S-1-5-21-3343003481-2846401460-112019622-1000\[...]\Run : KiesPreload (C:\Users\Stříbrný vítr\Desktop\Kies\Kies.exe /preload [7]) -> [0x2] Systém nemůže nalézt uvedený soubor.
[RUN][SUSP UNIC] HKLM\[...]\Wow6432Node\[...]\Run : KiesTrayAgent (C:\Users\Stříbrný vítr\Desktop\Kies\KiesTrayAgent.exe [7]) -> VYMAZÁNO
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> VYMAZÁNO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ POL][PUM] HKLM\[...]\System : ConsentPromptBehaviorAdmin (0) -> NAHRAZENO (2)
[HJ POL][PUM] HKLM\[...]\System : EnableLUA (0) -> NAHRAZENO (1)
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : ConsentPromptBehaviorAdmin (0) -> NAHRAZENO (2)
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : EnableLUA (0) -> NAHRAZENO (1)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)

¤¤¤ naplánované úlohy : 6 ¤¤¤
[V1][SUSP PATH] AVG-Secure-Search-Update_JUNE2013_HP_rmv.job : C:\Windows\TEMP\{3C1E8914-014C-42EF-8EF5-9828CBC7CE62}.exe - --uninstall=1 [x] -> VYMAZÁNO
[V1][SUSP PATH] AVG-Secure-Search-Update_JUNE2013_TB_rmv.job : C:\Windows\TEMP\{001FAE60-F4E3-49DA-843B-C2B0D5D6592A}.exe - --uninstall=1 [x] -> VYMAZÁNO
[V2][SUSP PATH] AVG-Secure-Search-Update_JUNE2013_HP_rmv : C:\Windows\TEMP\{3C1E8914-014C-42EF-8EF5-9828CBC7CE62}.exe - --uninstall=1 [x] -> VYMAZÁNO
[V2][SUSP PATH] AVG-Secure-Search-Update_JUNE2013_TB_rmv : C:\Windows\TEMP\{001FAE60-F4E3-49DA-843B-C2B0D5D6592A}.exe - --uninstall=1 [x] -> VYMAZÁNO
[V2][SUSP UNIC] {B2720842-3690-4561-AC2D-516633382148} : C:\Users\Stříbrný vítr\Desktop\Kies3\Kies3.exe [x] -> VYMAZÁNO
[V2][SUSP UNIC] {CA86A699-38DF-4B80-9314-362DF1B71D25} : C:\Users\Stříbrný vítr\Desktop\Kies3\Kies3.exe [x] -> VYMAZÁNO

¤¤¤ spuštění položky : 2 ¤¤¤
[Stříbrný vítr][SUSP UNIC] Registrace FIFA 10.lnk : C:\Users\Stříbrný vítr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Registrace FIFA 10.lnk @C:\Program Files (x86)\EA Sports\FIFA 10\Support\EAregister.exe /remind /language=CS /PRID="ODS:15691.110.Base Product" /WHPR="FIFA 10" /PRNM="Electronic Arts Product" [-][-][x][x][x][x][x][x] -> VYMAZÁNO
[Stříbrný vítr][SUSP UNIC] Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk : C:\Users\Stříbrný vítr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk @C:\Programy\Office14\ONENOTEM.EXE /tsr [-][7] -> VYMAZÁNO

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Browser Addons : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts




¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) WDC WD5000BEVT-22A0RT0 +++++
--- User ---
[MBR] 5f42ecb7a20ada09b2107629babbb3a1
[BSP] 03e902150077d951004f65388b48476c : Windows 7/8 MBR Code
Partition table:
0 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 2048 | Size: 13000 MB
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 26626048 | Size: 100 MB
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 26830848 | Size: 463838 MB
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_D_04102014_110528.txt >>
RKreport[0]_S_04092014_132019.txt;RKreport[0]_S_04102014_110447.txt


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 80 hostů