Nestabilní noťas Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

kulichson
Level 1.5
Level 1.5
Příspěvky: 105
Registrován: prosinec 06
Pohlaví: Nespecifikováno
Stav:
Offline

Nestabilní noťas

Příspěvekod kulichson » 13 lis 2013 20:58

windows script.jpg
Zdravím,
prosím o radu, co znamenají tyto hlášky při zapnutí PC?
Dále občas padají Windowsi a
Ještě jedna věc: ventilátor běží stále na plno a není nic spuštěného... :-(

Reklama
kulichson
Level 1.5
Level 1.5
Příspěvky: 105
Registrován: prosinec 06
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Nestabilní noťas

Příspěvekod kulichson » 13 lis 2013 21:16

ještě výpis HJ...
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:13:38, on 13.11.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16720)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Dell DataSafe Local Backup\Components\Scheduler\STService.exe
C:\Program Files (x86)\Dell\Stage Remote\StageRemote.exe
C:\Program Files (x86)\Samsung\Kies\Kies.exe
C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe
C:\Model\cmssservice\cmssservice.exe
C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe
C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\accuweather.exe
C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE
C:\Program Files (x86)\Dell\Stage Remote\StageRemoteService.exe
C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
C:\Program Files (x86)\Allin1Convert_8h\bar\1.bin\8hSrchMn.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
C:\Program Files (x86)\Allin1Convert_8h\bar\1.bin\8hbrmon.exe
C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zbrmon.exe
C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
C:\Model\java\bin\java.exe
C:\Program Files (x86)\Dell DataSafe Local Backup\TOASTER.EXE
C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\DSUpd.exe
C:\windows\inf\msqehluyx\msqehluyx.exe
C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe
C:\windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe
C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.tb.ask.com/index.jhtml?n=77DE8857&p2=^AYY^xdm048^YYA^cz&ptb=1317DAAA-9073-48BF-8929-C56190A09C76&si=GA_A1C_INTL_CZE_4
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {5bcf818d-78c8-41b8-ba89-65c5fdac4fc4} - C:\Program Files (x86)\Allin1Convert_8h\bar\1.bin\8hSrcAs.dll
R3 - URLSearchHook: (no name) - {93a3111f-4f74-4ed8-895e-d9708497629e} - C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zSrcAs.dll
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: Toolbar BHO - {312f84fb-8970-4fd3-bddb-7012eac4afc9} - C:\PROGRA~2\VIDEOD~2\bar\1.bin\4zbar.dll
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Search Assistant BHO - {a4c2fb10-84c3-44eb-9f9e-860fa1d9a797} - C:\Program Files (x86)\Allin1Convert_8h\bar\1.bin\8hSrcAs.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Search Assistant BHO - {c547c6c2-561b-4169-a2a5-20ba771ca93b} - C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zSrcAs.dll
O2 - BHO: Bing Bar BHO - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2291.0\npwinext.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: Toolbar BHO - {fbcbc43a-dca9-4192-a4c8-b57fd0f77d4d} - C:\PROGRA~2\ALLIN1~2\bar\1.bin\8hbar.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
O3 - Toolbar: Allin1Convert - {cd1a63ba-a08c-431b-9a34-f240aadc728d} - C:\Program Files (x86)\Allin1Convert_8h\bar\1.bin\8hbar.dll
O3 - Toolbar: VideoDownloadConverter - {48586425-6bb7-4f51-8dc6-38c88e3ebb58} - C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zbar.dll
O3 - Toolbar: @C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2291.0\npwinext.dll,-100 - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2291.0\npwinext.dll
O4 - HKLM\..\Run: [Dell Webcam Central] "C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe" /mode2
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [RoxWatchTray] "c:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatchTray12OEM.exe"
O4 - HKLM\..\Run: [Desktop Disc Tool] "c:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [AccuWeatherWidget] "C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\accuweather.exe" "C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\start.umj" --startup
O4 - HKLM\..\Run: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
O4 - HKLM\..\Run: [CanonSolutionMenuEx] C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE /logon
O4 - HKLM\..\Run: [IJNetworkScannerSelectorEX] C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe
O4 - HKLM\..\Run: [Allin1Convert Search Scope Monitor] "C:\PROGRA~2\ALLIN1~2\bar\1.bin\8hsrchmn.exe" /m=2 /w /h
O4 - HKLM\..\Run: [Allin1Convert_8h Browser Plugin Loader] C:\PROGRA~2\ALLIN1~2\bar\1.bin\8hbrmon.exe
O4 - HKLM\..\Run: [VideoDownloadConverter Search Scope Monitor] "C:\PROGRA~2\VIDEOD~2\bar\1.bin\4zsrchmn.exe" /m=2 /w /h
O4 - HKLM\..\Run: [VideoDownloadConverter_4z Browser Plugin Loader] C:\PROGRA~2\VIDEOD~2\bar\1.bin\4zbrmon.exe
O4 - HKLM\..\Run: [msjdkxSrv] C:\windows\inf\msjdkx.vbe
O4 - HKLM\..\Run: [NtVdmSrv] C:\windows\inf\ntvdm.vbe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [Microsoft Default Manager] "C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" -resume
O4 - HKLM\..\RunOnce: [Launcher] C:\Program Files (x86)\Dell DataSafe Local Backup\Components\Scheduler\Launcher.exe
O4 - HKCU\..\Run: [KiesPreload] C:\Program Files (x86)\Samsung\Kies\Kies.exe /preload
O4 - HKCU\..\Run: [T-Mobile CManager] "C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-108621707-3114515919-3187582857-1000\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-108621707-3114515919-3187582857-1000\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - Global Startup: cmssservice.lnk = C:\Model\cmssservice\cmssservice.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: runModel.vbs
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Zobrazit nebo skrýt HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{8B88CC5E-2718-45F5-B761-CC0AFB1790A9}: NameServer =
O17 - HKLM\System\CCS\Services\Tcpip\..\{A91A49D9-C79B-46BC-A7E8-143B5C89D016}: NameServer = 93.153.117.1 93.153.117.33
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - (no file)
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Program Files\IDT\WDM\AESTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: Allin1ConvertService (Allin1Convert_8hService) - COMPANYVERS_NAME - C:\PROGRA~2\ALLIN1~2\bar\1.bin\8hbarsvc.exe
O23 - Service: Intel® Centrino® Wireless Bluetooth® 3.0 + High Speed Service (AMPPALR3) - Intel Corporation - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
O23 - Service: Bluetooth Device Monitor - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth Media Service - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
O23 - Service: Bluetooth OBEX Service - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth(R) 3.0 + High Speed Security Service (BTHSSecurityMgr) - Intel(R) Corporation - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Úložná technologie Intel(R) Rapid (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - Unknown owner - C:\windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: RoxMediaDB12OEM - Sonic Solutions - c:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe
O23 - Service: Roxio Hard Drive Watcher 12 (RoxWatch12) - Sonic Solutions - c:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatch12OEM.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: SoftThinks Agent Service (SftService) - SoftThinks SAS - C:\Program Files (x86)\Dell DataSafe Local Backup\sftservice.EXE
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10122 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - c:\Program Files (x86)\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: Intel(R) Turbo Boost Technology Monitor 2.0 (TurboBoost) - Intel(R) Corporation - C:\Program Files\Intel\TurboBoost\TurboBoost.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: VideoDownloadConverterService (VideoDownloadConverter_4zService) - COMPANYVERS_NAME - C:\PROGRA~2\VIDEOD~2\bar\1.bin\4zbarsvc.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 19274 bytes

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Nestabilní noťas

Příspěvekod jaro3 » 14 lis 2013 10:10

To bude nákaza.

Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.


Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.

Stáhni AdwCleaner

Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.

Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Provést rychlý sken a klikni na tlačítko Skenovat
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Zobrazit výsledky
- pak zvol možnost uložit log a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.

Pokud budou problémy , spusť v nouz. režimu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

kulichson
Level 1.5
Level 1.5
Příspěvky: 105
Registrován: prosinec 06
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Nestabilní noťas

Příspěvekod kulichson » 14 lis 2013 19:21

# AdwCleaner v3.012 - Report created 14/11/2013 at 19:20:32
# Updated 11/11/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Kulíšci - KULÍŠCI-PC
# Running from : C:\Users\Kulíšci\Desktop\adwcleaner.exe
# Option : Scan

***** [ Services ] *****

Service Found : Allin1Convert_8hService
Service Found : VideoDownloadConverter_4zService

***** [ Files / Folders ] *****

File Found : C:\Program Files (x86)\Mozilla Firefox\searchplugins\avg-secure-search.xml
File Found : C:\Users\Kulíšci\AppData\Roaming\Mozilla\Firefox\Profiles\054hwhgg.default\searchplugins\Askcom.xml
File Found : C:\Users\Kulíšci\AppData\Roaming\Mozilla\Firefox\Profiles\054hwhgg.default\searchplugins\ask-web-search.xml
Folder Found C:\Program Files (x86)\Allin1Convert_8h
Folder Found C:\Program Files (x86)\AVG Secure Search
Folder Found C:\Program Files (x86)\myfree codec
Folder Found C:\Program Files (x86)\VideoDownloadConverter_4z
Folder Found C:\ProgramData\Ask
Folder Found C:\ProgramData\Microsoft\Windows\Start Menu\Programs\myfree codec
Folder Found C:\Users\Kulíšci\AppData\Local\Allin1Convert_8h
Folder Found C:\Users\Kulíšci\AppData\Local\VideoDownloadConverter_4z
Folder Found C:\Users\Kulíšci\AppData\LocalLow\Allin1Convert_8h
Folder Found C:\Users\Kulíšci\AppData\LocalLow\VideoDownloadConverter_4z
Folder Found C:\Users\Kulíšci\AppData\Roaming\Mozilla\Firefox\Profiles\054hwhgg.default\Allin1Convert_8h

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\IGearSettings
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C547C6C2-561B-4169-A2A5-20BA771CA93B}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C547C6C2-561B-4169-A2A5-20BA771CA93B}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec
Key Found : HKCU\Software\Myfree Codec
Key Found : [x64] HKCU\Software\IGearSettings
Key Found : [x64] HKCU\Software\Myfree Codec
Key Found : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Found : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Key Found : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Key Found : HKLM\SOFTWARE\Classes\CLSID\{00000001-4FEF-40D3-B3FA-E0531B897F98}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{13119113-0854-469D-807A-171568457991}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{1F6F39C1-00A8-4752-A94C-D0EA92D978B6}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{2A1260C1-2964-453F-B0BA-FA429472EB5F}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{33119133-0854-469D-807A-171568457991}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{363D5C92-10DC-4287-93E5-1832EECC48EC}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{3B41BE90-F731-4137-AFF3-2CA951E7F0D9}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{4128C64D-F0DD-4811-9405-D22294E8151F}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{5354D921-3F52-47C5-938D-77A2FB6DEFE7}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{5C3B5DAA-0AFF-4808-90FB-0F2F2D760E36}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{64697678-0000-0010-8000-00AA00389B71}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{66292684-B2C2-4C7C-B3D2-BF446E30744C}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{69407823-3494-4400-8D49-612549E8F4EE}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{6BFF4BCB-7A73-45A7-AC4C-389A34E1D1EF}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{71144427-1368-4D18-8DC9-2AE3CC4C4F83}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{8FCA5302-6D6D-4645-BF99-D43CF76CE474}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{99E1F6FD-2E94-4CF6-8344-1BA63CD3BD9B}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{C547C6C2-561B-4169-A2A5-20BA771CA93B}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{DD385519-22E7-4BE2-8A8D-35C66DF4858E}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{ED345812-2722-4DCA-9976-D01832DB44EE}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{FD501041-8EBE-11CE-8183-00AA00577DA2}
Key Found : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Found : HKLM\SOFTWARE\Classes\Interface\{17B10E59-09E1-4C39-A738-6774D7AB7778}
Key Found : HKLM\SOFTWARE\Classes\Interface\{1AD2049E-E483-4425-8555-8E0775ACB631}
Key Found : HKLM\SOFTWARE\Classes\Interface\{23119123-0854-469D-807A-171568457991}
Key Found : HKLM\SOFTWARE\Classes\Interface\{2D73F2D0-2FAB-458E-977D-2F9050E0ED60}
Key Found : HKLM\SOFTWARE\Classes\Interface\{3E9469AF-E866-4476-B767-810630F1F6E7}
Key Found : HKLM\SOFTWARE\Classes\Interface\{47700C35-9E3E-4DAD-934C-0CE28A87237C}
Key Found : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Found : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Found : HKLM\SOFTWARE\Classes\Interface\{716E443D-7CAA-44F1-866B-F45D00E712CC}
Key Found : HKLM\SOFTWARE\Classes\Interface\{72063D77-7590-4DA9-A7F8-F5ECAF3632C4}
Key Found : HKLM\SOFTWARE\Classes\Interface\{7FC87AC5-FA93-476E-A32C-A941229DED0B}
Key Found : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{03119103-0854-469D-807A-171568457991}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{13ABD093-D46F-40DF-A608-47E162EC799D}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{2D3826A1-F3E8-45D6-94B5-C26D8EC0073B}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{3EE17DD1-E28B-4AED-A3B2-9C29CB2C19D6}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{886F93AD-3CBB-4424-8442-A7340243540F}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{AA289DBC-59B6-40A5-AC7D-C90DF850289C}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{CA723163-6FAD-43D4-8B93-0D8C52BD9974}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{F1F328EB-F5A5-432B-A54C-05F3EF5B0BD8}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{FB0E8A09-F08C-44CF-9E15-97ADAC016248}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{FE8DBB09-C3D3-4477-80CB-D38914B94BB8}
Key Found : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.DynamicBarButton
Key Found : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.DynamicBarButton.1
Key Found : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.FeedManager
Key Found : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.FeedManager.1
Key Found : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.HTMLMenu
Key Found : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.HTMLMenu.1
Key Found : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.HTMLPanel
Key Found : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.HTMLPanel.1
Key Found : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.MultipleButton
Key Found : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.MultipleButton.1
Key Found : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.PseudoTransparentPlugin
Key Found : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.PseudoTransparentPlugin.1
Key Found : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.Radio
Key Found : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.Radio.1
Key Found : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.RadioSettings
Key Found : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.RadioSettings.1
Key Found : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.ScriptButton
Key Found : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.ScriptButton.1
Key Found : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.SettingsPlugin
Key Found : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.SettingsPlugin.1
Key Found : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.SkinLauncher
Key Found : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.SkinLauncher.1
Key Found : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.ThirdPartyInstaller
Key Found : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.ThirdPartyInstaller.1
Key Found : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.UrlAlertButton
Key Found : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.UrlAlertButton.1
Key Found : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.XMLSessionPlugin
Key Found : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.XMLSessionPlugin.1
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C547C6C2-561B-4169-A2A5-20BA771CA93B}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1F6F39C1-00A8-4752-A94C-D0EA92D978B6}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5354D921-3F52-47C5-938D-77A2FB6DEFE7}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{71144427-1368-4D18-8DC9-2AE3CC4C4F83}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{99E1F6FD-2E94-4CF6-8344-1BA63CD3BD9B}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{ED345812-2722-4DCA-9976-D01832DB44EE}
Key Found : HKLM\SOFTWARE\MozillaPlugins\@Allin1Convert_8h.com/Plugin
Key Found : HKLM\Software\Myfree Codec
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{17B10E59-09E1-4C39-A738-6774D7AB7778}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{1AD2049E-E483-4425-8555-8E0775ACB631}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{23119123-0854-469D-807A-171568457991}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{2D73F2D0-2FAB-458E-977D-2F9050E0ED60}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{3E9469AF-E866-4476-B767-810630F1F6E7}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{47700C35-9E3E-4DAD-934C-0CE28A87237C}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{716E443D-7CAA-44F1-866B-F45D00E712CC}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{72063D77-7590-4DA9-A7F8-F5ECAF3632C4}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{7FC87AC5-FA93-476E-A32C-A941229DED0B}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Found : [x64] HKLM\SOFTWARE\Description
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{93A3111F-4F74-4ED8-895E-D9708497629E}]
Value Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Allin1Convert Search Scope Monitor]
Value Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Allin1Convert_8h Browser Plugin Loader]
Value Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [VideoDownloadConverter Search Scope Monitor]
Value Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [VideoDownloadConverter_4z Browser Plugin Loader]

***** [ Browsers ] *****

-\\ Internet Explorer v10.0.9200.16720

Setting Found : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxp://home.tb.ask.com/index.jhtml?n=77DE8857&p2=^AYY^xdm048^YYA^cz&ptb=1317DAAA-9073-48BF-8929-C56190A09C76&si=GA_A1C_INTL_CZE_4

-\\ Mozilla Firefox v25.0 (cs)

[ File : C:\Users\Kulíšci\AppData\Roaming\Mozilla\Firefox\Profiles\054hwhgg.default\prefs.js ]

Line Found : user_pref("browser.search.defaultengine", "Ask.com");
Line Found : user_pref("browser.search.order.1", "Ask.com");
Line Found : user_pref("extensions.mywebsearch.prevDefaultEngine", "Ask.com");
Line Found : user_pref("extensions.mywebsearch.prevKwdEnabled", true);
Line Found : user_pref("extensions.mywebsearch.prevKwdURL", "hxxp://search.tb.ask.com/search/GGmain.jhtml?st=kwd&ptb=1317DAAA-9073-48BF-8929-C56190A09C76&n=77fd0d4d&ind=2013072717&p2=^AYY^xdm048^YYA^cz&si=GA_A1C_I[...]
Line Found : user_pref("extensions.mywebsearch.prevSelectedEngine", "Ask.com");
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.homepage", "hxxp://home.tb.ask.com/index.jhtml?ptb=F7002A06-AEEC-44E2-B4F3-A7984F537E09&n=77fd0d4d&p2=^HJ^xdm007^YYA^cz&si=CMHC08yD0LgCFYRa3godeXsA7[...]
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.hp.enabled", false);
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.hp.user.defined", true);
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.initialized", true);
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.installation.contextKey", "");
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.installation.installDate", "2013072717");
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.installation.partnerId", "^HJ^xdm007^YYA^cz");
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.installation.partnerSubId", "CMHC08yD0LgCFYRa3godeXsA7w");
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.installation.success", true);
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.installation.toolbarId", "F7002A06-AEEC-44E2-B4F3-A7984F537E09");
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.lastActivePing", "1384432090019");
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.options.defaultSearch", true);
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.options.homePageEnabled", true);
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.options.keywordEnabled", true);
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.options.tabEnabled", true);
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.weather.location", "10001");
Line Found : user_pref("extensions.toolbar.mindspark._8hMembers_.BUTTON_STRUCTURE", "[{\"b\":212178205,\"c\":\"mindspark.magnify\",\"p\":\"L.0\"},{\"b\":212178206,\"c\":\"mindspark.entersearchterms\",\"p\":\"L.0.0[...]
Line Found : user_pref("extensions.toolbar.mindspark._8hMembers_.homepage", "hxxp://home.tb.ask.com/index.jhtml?ptb=1317DAAA-9073-48BF-8929-C56190A09C76&n=77fd0d4d&p2=^AYY^xdm048^YYA^cz&si=GA_A1C_INTL_CZE_4");
Line Found : user_pref("extensions.toolbar.mindspark._8hMembers_.hp.enabled", false);
Line Found : user_pref("extensions.toolbar.mindspark._8hMembers_.hp.user.defined", true);
Line Found : user_pref("extensions.toolbar.mindspark._8hMembers_.initialized", true);
Line Found : user_pref("extensions.toolbar.mindspark._8hMembers_.installation.contextKey", "");
Line Found : user_pref("extensions.toolbar.mindspark._8hMembers_.installation.installDate", "2013072717");
Line Found : user_pref("extensions.toolbar.mindspark._8hMembers_.installation.partnerId", "^AYY^xdm048^YYA^cz");
Line Found : user_pref("extensions.toolbar.mindspark._8hMembers_.installation.partnerSubId", "GA_A1C_INTL_CZE_4");
Line Found : user_pref("extensions.toolbar.mindspark._8hMembers_.installation.success", true);
Line Found : user_pref("extensions.toolbar.mindspark._8hMembers_.installation.toolbarId", "1317DAAA-9073-48BF-8929-C56190A09C76");
Line Found : user_pref("extensions.toolbar.mindspark._8hMembers_.lastActivePing", "1384432090021");
Line Found : user_pref("extensions.toolbar.mindspark._8hMembers_.lastKnownVersion", "5.40.2.31197");
Line Found : user_pref("extensions.toolbar.mindspark._8hMembers_.options.defaultSearch", true);
Line Found : user_pref("extensions.toolbar.mindspark._8hMembers_.options.homePageEnabled", true);
Line Found : user_pref("extensions.toolbar.mindspark._8hMembers_.options.keywordEnabled", true);
Line Found : user_pref("extensions.toolbar.mindspark._8hMembers_.options.tabEnabled", true);
Line Found : user_pref("extensions.toolbar.mindspark._8hMembers_.toolbarCollapsed", true);
Line Found : user_pref("extensions.toolbar.mindspark._8hMembers_.weather.location", "10001");
Line Found : user_pref("extensions.toolbar.mindspark.hp.enabled", false);
Line Found : user_pref("extensions.toolbar.mindspark.hp.enabled.guid", "");
Line Found : user_pref("extensions.toolbar.mindspark.lastInstalled", "videodownloadconverter@mindspark.com");
Line Found : user_pref("keyword.URL", "hxxp://search.tb.ask.com/search/GGmain.jhtml?st=kwd&ptb=F7002A06-AEEC-44E2-B4F3-A7984F537E09&n=77fd0d4d&ind=2013072717&p2=^HJ^xdm007^YYA^cz&si=CMHC08yD0LgCFYRa3godeXsA7w&sear[...]

-\\ Google Chrome v30.0.1599.101

[ File : C:\Users\Kulíšci\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [17840 octets] - [14/11/2013 19:20:32]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [17901 octets] ##########

kulichson
Level 1.5
Level 1.5
Příspěvky: 105
Registrován: prosinec 06
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Nestabilní noťas

Příspěvekod kulichson » 14 lis 2013 19:34

Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org

Verze: v2013.11.14.07

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16721
Kulíšci :: KULÍŠCI-PC [administrátor]

Ochrana: Povolena

14.11.2013 19:28:41
MBAM-log-2013-11-14 (19-33-00).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 247890
Uplynulý čas: 3 minut, 56 sekund

Nalezené procesy v paměti: 4
C:\Windows\inf\msqehluyx\msqehluyx.exe (BitcoinMiner) -> 5960 -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Allin1Convert_8h\bar\1.bin\8hSrchMn.exe (PUP.Optional.MindSpark) -> 3236 -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Allin1Convert_8h\bar\1.bin\8hbrmon.exe (PUP.Optional.MindSpark) -> 3604 -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zbrmon.exe (PUP.Optional.MindSpark) -> 3624 -> Nebyla provedena žádná instrukce.

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 8
HKCR\CLSID\{33119133-0854-469d-807A-171568457991} (PUP.Optional.FunWebProducts.A) -> Nebyla provedena žádná instrukce.
HKCR\CLSID\{13119113-0854-469d-807A-171568457991} (PUP.Optional.FunWebProducts.A) -> Nebyla provedena žádná instrukce.
HKCR\VideoDownloadConverter_4z.SkinLauncher.1 (PUP.Optional.FunWebProducts.A) -> Nebyla provedena žádná instrukce.
HKCR\VideoDownloadConverter_4z.SkinLauncher (PUP.Optional.FunWebProducts.A) -> Nebyla provedena žádná instrukce.
HKCR\TypeLib\{03119103-0854-469d-807A-171568457991} (PUP.Optional.FunWebProducts.A) -> Nebyla provedena žádná instrukce.
HKCR\Interface\{23119123-0854-469D-807A-171568457991} (PUP.Optional.FunWebProducts.A) -> Nebyla provedena žádná instrukce.
HKCR\VideoDownloadConverter_4z.SkinLauncherSettings.1 (PUP.Optional.FunWebProducts.A) -> Nebyla provedena žádná instrukce.
HKCR\VideoDownloadConverter_4z.SkinLauncherSettings (PUP.Optional.FunWebProducts.A) -> Nebyla provedena žádná instrukce.

Nalezené hodnoty v registru: 5
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|NtVdmSrv (Malware.Trace) -> Data: C:\windows\inf\ntvdm.vbe -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Allin1Convert Search Scope Monitor (PUP.Optional.MindSpark) -> Data: "C:\PROGRA~2\ALLIN1~2\bar\1.bin\8hsrchmn.exe" /m=2 /w /h -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Allin1Convert_8h Browser Plugin Loader (PUP.Optional.MindSpark) -> Data: C:\PROGRA~2\ALLIN1~2\bar\1.bin\8hbrmon.exe -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|VideoDownloadConverter Search Scope Monitor (PUP.Optional.MindSpark) -> Data: "C:\PROGRA~2\VIDEOD~2\bar\1.bin\4zsrchmn.exe" /m=2 /w /h -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|VideoDownloadConverter_4z Browser Plugin Loader (PUP.Optional.MindSpark) -> Data: C:\PROGRA~2\VIDEOD~2\bar\1.bin\4zbrmon.exe -> Nebyla provedena žádná instrukce.

Nalezené datové položky v registru: 1
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main|Start Page (PUP.Optional.AskWebSearch) -> Špatný: (http://home.tb.ask.com/index.jhtml?n=77DE8857&p2=^AYY^xdm048^YYA^cz&ptb=1317DAAA-9073-48BF-8929-C56190A09C76&si=GA_A1C_INTL_CZE_4) Dobrý: (http://www.google.com) -> Nebyla provedena žádná instrukce.

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 8
C:\Windows\inf\msqehluyx\msqehluyx.exe (BitcoinMiner) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zsknlcr.dll (PUP.Optional.FunWebProducts.A) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\ntvdm.vbe (Malware.Trace) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\ntvdm.inf (Malware.Trace) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Allin1Convert_8h\bar\1.bin\8hSrchMn.exe (PUP.Optional.MindSpark) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Allin1Convert_8h\bar\1.bin\8hbrmon.exe (PUP.Optional.MindSpark) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zSrchMn.exe (PUP.Optional.MindSpark) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zbrmon.exe (PUP.Optional.MindSpark) -> Nebyla provedena žádná instrukce.

(konec)

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Nestabilní noťas

Příspěvekod jaro3 » 15 lis 2013 09:38

Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce
Klikni na „ Vymazat-Clean
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [S?].txt) , jeho obsah sem celý vlož.

Stáhni si Junkware Removal Tool

na svojí plochu.

Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.

. Takže spusť znovu MbAM a dej Scan
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Ukaž výsledky
- ujisti se že máš zatrhnuté všechny vypsané nálezy a klikni na tlačítko Odstranit označené
- když skončí odstraňování tak se ti zobrazí log, tak ho sem dej.
- pak zvol v programu OK a pak program ukonči přes Exit
Můžeš sem pak vložit nový log z MbAM.

Stáhni si RogueKiller
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
- Zkontroluj , zda máš zaškrtnuto:
Kontrola MBR
Kontrola Faked
Antirootkit

-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

kulichson
Level 1.5
Level 1.5
Příspěvky: 105
Registrován: prosinec 06
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Nestabilní noťas

Příspěvekod kulichson » 15 lis 2013 17:17

# AdwCleaner v3.012 - Report created 15/11/2013 at 17:11:44
# Updated 11/11/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Kulíšci - KULÍŠCI-PC
# Running from : C:\Users\Kulíšci\Desktop\adwcleaner.exe
# Option : Clean

***** [ Services ] *****

Service Deleted : Allin1Convert_8hService
Service Deleted : VideoDownloadConverter_4zService

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\Ask
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\myfree codec
Folder Deleted : C:\Program Files (x86)\Allin1Convert_8h
Folder Deleted : C:\Program Files (x86)\AVG Secure Search
Folder Deleted : C:\Program Files (x86)\myfree codec
Folder Deleted : C:\Program Files (x86)\VideoDownloadConverter_4z
Folder Deleted : C:\Users\Kulíšci\AppData\Local\Allin1Convert_8h
Folder Deleted : C:\Users\Kulíšci\AppData\Local\VideoDownloadConverter_4z
Folder Deleted : C:\Users\Kulíšci\AppData\LocalLow\Allin1Convert_8h
Folder Deleted : C:\Users\Kulíšci\AppData\LocalLow\VideoDownloadConverter_4z
Folder Deleted : C:\Users\Kulíšci\AppData\Roaming\Mozilla\Firefox\Profiles\054hwhgg.default\Allin1Convert_8h
File Deleted : C:\Users\Kulíšci\AppData\Roaming\Mozilla\Firefox\Profiles\054hwhgg.default\searchplugins\Askcom.xml
File Deleted : C:\Users\Kulíšci\AppData\Roaming\Mozilla\Firefox\Profiles\054hwhgg.default\searchplugins\ask-web-search.xml
File Deleted : C:\Program Files (x86)\Mozilla Firefox\searchplugins\avg-secure-search.xml

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.DynamicBarButton
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.DynamicBarButton.1
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.FeedManager
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.FeedManager.1
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.HTMLMenu
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.HTMLMenu.1
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.HTMLPanel
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.HTMLPanel.1
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.MultipleButton
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.MultipleButton.1
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.PseudoTransparentPlugin
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.PseudoTransparentPlugin.1
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.Radio
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.Radio.1
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.RadioSettings
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.RadioSettings.1
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.ScriptButton
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.ScriptButton.1
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.SettingsPlugin
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.SettingsPlugin.1
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.SkinLauncher
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.SkinLauncher.1
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.ThirdPartyInstaller
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.ThirdPartyInstaller.1
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.UrlAlertButton
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.UrlAlertButton.1
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.XMLSessionPlugin
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.XMLSessionPlugin.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASMANCS
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@Allin1Convert_8h.com/Plugin
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Allin1Convert Search Scope Monitor]
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [VideoDownloadConverter Search Scope Monitor]
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Allin1Convert_8h Browser Plugin Loader]
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [VideoDownloadConverter_4z Browser Plugin Loader]
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{00000001-4FEF-40D3-B3FA-E0531B897F98}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{13119113-0854-469D-807A-171568457991}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1F6F39C1-00A8-4752-A94C-D0EA92D978B6}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2A1260C1-2964-453F-B0BA-FA429472EB5F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{33119133-0854-469D-807A-171568457991}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{363D5C92-10DC-4287-93E5-1832EECC48EC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B41BE90-F731-4137-AFF3-2CA951E7F0D9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4128C64D-F0DD-4811-9405-D22294E8151F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5354D921-3F52-47C5-938D-77A2FB6DEFE7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5C3B5DAA-0AFF-4808-90FB-0F2F2D760E36}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{64697678-0000-0010-8000-00AA00389B71}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{66292684-B2C2-4C7C-B3D2-BF446E30744C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{69407823-3494-4400-8D49-612549E8F4EE}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6BFF4BCB-7A73-45A7-AC4C-389A34E1D1EF}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{71144427-1368-4D18-8DC9-2AE3CC4C4F83}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8FCA5302-6D6D-4645-BF99-D43CF76CE474}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{99E1F6FD-2E94-4CF6-8344-1BA63CD3BD9B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C547C6C2-561B-4169-A2A5-20BA771CA93B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DD385519-22E7-4BE2-8A8D-35C66DF4858E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{ED345812-2722-4DCA-9976-D01832DB44EE}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FD501041-8EBE-11CE-8183-00AA00577DA2}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{17B10E59-09E1-4C39-A738-6774D7AB7778}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1AD2049E-E483-4425-8555-8E0775ACB631}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{23119123-0854-469D-807A-171568457991}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2D73F2D0-2FAB-458E-977D-2F9050E0ED60}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3E9469AF-E866-4476-B767-810630F1F6E7}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{47700C35-9E3E-4DAD-934C-0CE28A87237C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{716E443D-7CAA-44F1-866B-F45D00E712CC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{72063D77-7590-4DA9-A7F8-F5ECAF3632C4}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{7FC87AC5-FA93-476E-A32C-A941229DED0B}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{03119103-0854-469D-807A-171568457991}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{13ABD093-D46F-40DF-A608-47E162EC799D}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{2D3826A1-F3E8-45D6-94B5-C26D8EC0073B}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{3EE17DD1-E28B-4AED-A3B2-9C29CB2C19D6}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{886F93AD-3CBB-4424-8442-A7340243540F}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{AA289DBC-59B6-40A5-AC7D-C90DF850289C}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{CA723163-6FAD-43D4-8B93-0D8C52BD9974}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{F1F328EB-F5A5-432B-A54C-05F3EF5B0BD8}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{FB0E8A09-F08C-44CF-9E15-97ADAC016248}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{FE8DBB09-C3D3-4477-80CB-D38914B94BB8}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C547C6C2-561B-4169-A2A5-20BA771CA93B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C547C6C2-561B-4169-A2A5-20BA771CA93B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C547C6C2-561B-4169-A2A5-20BA771CA93B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1F6F39C1-00A8-4752-A94C-D0EA92D978B6}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5354D921-3F52-47C5-938D-77A2FB6DEFE7}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{71144427-1368-4D18-8DC9-2AE3CC4C4F83}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{99E1F6FD-2E94-4CF6-8344-1BA63CD3BD9B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{ED345812-2722-4DCA-9976-D01832DB44EE}
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{93A3111F-4F74-4ED8-895E-D9708497629E}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{17B10E59-09E1-4C39-A738-6774D7AB7778}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{1AD2049E-E483-4425-8555-8E0775ACB631}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{23119123-0854-469D-807A-171568457991}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{2D73F2D0-2FAB-458E-977D-2F9050E0ED60}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{3E9469AF-E866-4476-B767-810630F1F6E7}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{47700C35-9E3E-4DAD-934C-0CE28A87237C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{716E443D-7CAA-44F1-866B-F45D00E712CC}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{72063D77-7590-4DA9-A7F8-F5ECAF3632C4}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{7FC87AC5-FA93-476E-A32C-A941229DED0B}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Deleted : HKCU\Software\IGearSettings
Key Deleted : HKCU\Software\Myfree Codec
Key Deleted : HKLM\Software\Myfree Codec
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec
Key Deleted : [x64] HKLM\SOFTWARE\Description

***** [ Browsers ] *****

-\\ Internet Explorer v10.0.9200.16736

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]

-\\ Mozilla Firefox v25.0 (cs)

[ File : C:\Users\Kulíšci\AppData\Roaming\Mozilla\Firefox\Profiles\054hwhgg.default\prefs.js ]

Line Deleted : user_pref("browser.search.defaultengine", "Ask.com");
Line Deleted : user_pref("browser.search.order.1", "Ask.com");
Line Deleted : user_pref("extensions.mywebsearch.prevDefaultEngine", "Ask.com");
Line Deleted : user_pref("extensions.mywebsearch.prevKwdEnabled", true);
Line Deleted : user_pref("extensions.mywebsearch.prevKwdURL", "hxxp://search.tb.ask.com/search/GGmain.jhtml?st=kwd&ptb=1317DAAA-9073-48BF-8929-C56190A09C76&n=77fd0d4d&ind=2013072717&p2=^AYY^xdm048^YYA^cz&si=GA_A1C_I[...]
Line Deleted : user_pref("extensions.mywebsearch.prevSelectedEngine", "Ask.com");
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.homepage", "hxxp://home.tb.ask.com/index.jhtml?ptb=F7002A06-AEEC-44E2-B4F3-A7984F537E09&n=77fd0d4d&p2=^HJ^xdm007^YYA^cz&si=CMHC08yD0LgCFYRa3godeXsA7[...]
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.hp.enabled", false);
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.hp.user.defined", true);
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.initialized", true);
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.installation.contextKey", "");
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.installation.installDate", "2013072717");
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.installation.partnerId", "^HJ^xdm007^YYA^cz");
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.installation.partnerSubId", "CMHC08yD0LgCFYRa3godeXsA7w");
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.installation.success", true);
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.installation.toolbarId", "F7002A06-AEEC-44E2-B4F3-A7984F537E09");
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.lastActivePing", "1384531216471");
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.options.defaultSearch", true);
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.options.homePageEnabled", true);
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.options.keywordEnabled", true);
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.options.tabEnabled", true);
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.weather.location", "10001");
Line Deleted : user_pref("extensions.toolbar.mindspark._8hMembers_.BUTTON_STRUCTURE", "[{\"b\":212178205,\"c\":\"mindspark.magnify\",\"p\":\"L.0\"},{\"b\":212178206,\"c\":\"mindspark.entersearchterms\",\"p\":\"L.0.0[...]
Line Deleted : user_pref("extensions.toolbar.mindspark._8hMembers_.homepage", "hxxp://home.tb.ask.com/index.jhtml?ptb=1317DAAA-9073-48BF-8929-C56190A09C76&n=77fd0d4d&p2=^AYY^xdm048^YYA^cz&si=GA_A1C_INTL_CZE_4");
Line Deleted : user_pref("extensions.toolbar.mindspark._8hMembers_.hp.enabled", false);
Line Deleted : user_pref("extensions.toolbar.mindspark._8hMembers_.hp.user.defined", true);
Line Deleted : user_pref("extensions.toolbar.mindspark._8hMembers_.initialized", true);
Line Deleted : user_pref("extensions.toolbar.mindspark._8hMembers_.installation.contextKey", "");
Line Deleted : user_pref("extensions.toolbar.mindspark._8hMembers_.installation.installDate", "2013072717");
Line Deleted : user_pref("extensions.toolbar.mindspark._8hMembers_.installation.partnerId", "^AYY^xdm048^YYA^cz");
Line Deleted : user_pref("extensions.toolbar.mindspark._8hMembers_.installation.partnerSubId", "GA_A1C_INTL_CZE_4");
Line Deleted : user_pref("extensions.toolbar.mindspark._8hMembers_.installation.success", true);
Line Deleted : user_pref("extensions.toolbar.mindspark._8hMembers_.installation.toolbarId", "1317DAAA-9073-48BF-8929-C56190A09C76");
Line Deleted : user_pref("extensions.toolbar.mindspark._8hMembers_.lastActivePing", "1384531216476");
Line Deleted : user_pref("extensions.toolbar.mindspark._8hMembers_.lastKnownVersion", "5.40.2.31197");
Line Deleted : user_pref("extensions.toolbar.mindspark._8hMembers_.options.defaultSearch", true);
Line Deleted : user_pref("extensions.toolbar.mindspark._8hMembers_.options.homePageEnabled", true);
Line Deleted : user_pref("extensions.toolbar.mindspark._8hMembers_.options.keywordEnabled", true);
Line Deleted : user_pref("extensions.toolbar.mindspark._8hMembers_.options.tabEnabled", true);
Line Deleted : user_pref("extensions.toolbar.mindspark._8hMembers_.toolbarCollapsed", true);
Line Deleted : user_pref("extensions.toolbar.mindspark._8hMembers_.weather.location", "10001");
Line Deleted : user_pref("extensions.toolbar.mindspark.hp.enabled", false);
Line Deleted : user_pref("extensions.toolbar.mindspark.hp.enabled.guid", "");
Line Deleted : user_pref("extensions.toolbar.mindspark.lastInstalled", "videodownloadconverter@mindspark.com");
Line Deleted : user_pref("keyword.URL", "hxxp://search.tb.ask.com/search/GGmain.jhtml?st=kwd&ptb=F7002A06-AEEC-44E2-B4F3-A7984F537E09&n=77fd0d4d&ind=2013072717&p2=^HJ^xdm007^YYA^cz&si=CMHC08yD0LgCFYRa3godeXsA7w&sear[...]

-\\ Google Chrome v30.0.1599.101

[ File : C:\Users\Kulíšci\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [18062 octets] - [14/11/2013 19:20:32]
AdwCleaner[R1].txt - [18123 octets] - [15/11/2013 17:10:42]
AdwCleaner[S0].txt - [18147 octets] - [15/11/2013 17:11:44]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [18208 octets] ##########

kulichson
Level 1.5
Level 1.5
Příspěvky: 105
Registrován: prosinec 06
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Nestabilní noťas

Příspěvekod kulichson » 15 lis 2013 17:32

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Windows 7 Home Premium x64
Ran by Kulˇçci on p  15.11.2013 at 17:20:15,79
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{1604FC43-3A1E-4C6B-850D-70C8A858C61A}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{248B3E95-17A4-482D-A8A8-6B3DF4D05C35}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{250B71CD-97CA-40A5-834F-265719A62CAF}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{27F49273-DE3A-4111-90F9-6C474C37AEFB}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{39D4F1A1-A94D-4B7D-BF1D-7446308800ED}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{443321F7-E46C-42F8-812B-F35E98CBB44F}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{5CDE4714-32DC-473C-8194-0645E62C2E96}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{7CAEFAFC-9A1E-4BCC-94DD-BC7D8D52717A}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{7EB7381C-FB01-47FC-9C42-ED64122C1B92}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{889F49D2-6CEA-40BE-BE5F-7217485F9745}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{8F83D657-5993-4FFA-9AEE-DA0B20D828A7}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{A4C2FB10-84C3-44EB-9F9E-860FA1D9A797}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{C8EF8F70-3807-424A-83F7-DA06FD4DACF9}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{CD1A63BA-A08C-431B-9A34-F240AADC728D}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{DE0F6787-9D1C-42B7-A0B9-EAC630F87902}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{E4EF697F-434B-4DC7-A464-4412462206DB}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{EF3F28C8-0330-4D18-B901-D24CB83E5AA1}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{F2C368C5-9F44-4D43-89F3-A1CC87F1DA96}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{F99DDD9A-07D0-47AB-86F1-193533DD2C60}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{16976E15-10EA-44FD-804A-6ECBC9EBBFC7}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{2561FD25-FE31-4E56-A120-AF7FEAAE3124}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{4BD0FCFF-AD64-4315-9F2C-960EF3C21623}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{507C73BB-FC69-425E-8A49-9204F886B328}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{6EC57031-1740-4151-93C5-C465D6063DD2}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{76FC1003-0825-48BD-B59B-3B7A5754972C}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{9D217B94-6FC9-44FE-94B1-30C711871266}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{B48AC2CD-9662-47E0-A3C0-3B01BB3F463E}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{BE698E51-830B-447A-954D-901D6E05DDE2}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{BFCF748F-A56E-451F-AA45-0D7EB699E416}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{D09139AB-0ACB-4F22-B9AE-816E6838A814}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{D617CF84-B0BC-441F-9984-B676AFBA1E8D}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\allin1convert_8h
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\allin1convert_8h
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\allin1convert_8h
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.dynamicbarbutton
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.dynamicbarbutton.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.feedmanager
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.feedmanager.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.htmlmenu
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.htmlmenu.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.htmlpanel
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.htmlpanel.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.multiplebutton
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.multiplebutton.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.pseudotransparentplugin
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.pseudotransparentplugin.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.radio
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.radio.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.radiosettings
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.radiosettings.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.scriptbutton
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.scriptbutton.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.settingsplugin
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.settingsplugin.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.skinlauncher
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.skinlauncher.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.thirdpartyinstaller
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.thirdpartyinstaller.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.urlalertbutton
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.urlalertbutton.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.xmlsessionplugin
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\allin1convert_8h.xmlsessionplugin.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{248B3E95-17A4-482D-A8A8-6B3DF4D05C35}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{53F6A516-3DCC-48F4-835C-6C670CB39CEA}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E58CDA9-3B21-4611-A859-26EE28950E61}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6C5561B6-3DD2-46B5-83BE-EAE744366046}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{88E44198-D164-4EC0-B2C0-F679D866C6DA}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F671C1B3-9776-426D-A350-55FB2D9B53F7}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\allin1convert_8hbar uninstall firefox
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\allin1convert_8hbar uninstall internet explorer
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{C455BF00-FCE3-4008-9BBB-AC3C393CBAEB}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A4C2FB10-84C3-44EB-9F9E-860FA1D9A797}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FBCBC43A-DCA9-4192-A4C8-B57FD0F77D4D}



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\Users\Kulˇçci\appdata\local\videodownloadconverter_4z"
Successfully deleted: [Folder] "C:\Program Files (x86)\video download converter"
Successfully deleted: [Folder] "C:\windows\syswow64\ai_recyclebin"
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{008301B7-FA6B-4355-97D1-951B7506B4CC}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{054F5886-7241-4067-BC88-22C974489730}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{05C3E20C-C9B8-4124-AEE3-2ED65492442C}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{05DC2295-0361-4758-AC84-2743A3D2D127}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{06168929-4575-41C6-8AFB-FD8C7E71C031}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{0686871D-CF8E-4602-AB91-72B126CBF0D4}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{07FAFD6E-6392-47DD-AE4E-977493480B4F}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{08ADBCB3-57E0-4F64-8BB3-3D64031AC9B5}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{08C610E2-5BC5-496F-97F0-21A48BF33CF1}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{08FB7C4D-5FA3-444D-A02C-0D629E2486F0}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{09099E6B-8DB9-4A12-BEB2-1DB5342A8624}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{0D12AC3E-1E15-4A9F-ADE5-623FA58C960A}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{0D37B13E-1FA4-4E39-9B55-9D5A50F61FF8}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{0F9FA359-7653-456B-A6A6-FC2A85CB719B}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{0FED271F-FA9A-43C5-A731-AAA48CB5E430}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{1207BBD8-9C28-49EC-ADD0-88CE5FD64FE8}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{159E9167-46D4-448D-8111-228AF598E797}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{19109006-D549-442A-9D25-0FB82B3A7902}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{1A58647E-4574-46BB-82E8-E9AA3BF890F0}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{20D0F5F5-D0A4-4560-A66D-EC52E46D83E1}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{216DC247-CBB3-4E4E-B507-C7B9E462ED1F}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{2272CBAC-D525-4CCD-8067-18FF43D38B6D}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{2505FDB0-6856-45F8-B20F-7D2B2D6602E9}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{272AC3FC-A8B3-43DB-8F2D-C48307EEA243}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{27518756-7C71-414B-A088-6B154BD51E9C}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{27C5DF63-278A-44E7-8480-55128ED2F049}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{292DC33F-D76A-44FE-BDF9-5BD4C685A6E7}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{2A50C19A-C2DB-4AEF-9EF8-2717D11E4C56}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{2A961D2B-2A8E-41B1-8CCA-BF46020D7B2B}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{2BDD45CC-9EB0-44BB-979A-A8FCABB4D00B}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{2D64B711-8D06-4518-8F51-BE62214D87CD}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{2E0EE511-32ED-4985-AC29-3A0459541E3C}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{31341BD7-53A9-49AA-BB04-3EDDFBCBFE6B}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{319B2B3B-591D-4466-A387-9EFFA0C89008}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{31E348C8-8F4F-427E-B6AC-A4E82181C4C3}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{31E42C1C-2B99-436F-9F2D-BBDE73B31A84}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{32C652A2-6249-4A24-BC01-7A77AD5B4D07}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{35801341-C0D0-425D-B418-BDDB9BAF172F}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{36F8D9E6-1B59-4A83-A3FC-E41C9CCCD21D}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{38C856F2-5F3F-4F3F-A746-96B5E8B77170}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{3CDFBC97-B426-48E0-B568-EAF5CCD4302F}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{3D6ACF35-A0B1-435A-B1DB-C96810B78FB9}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{3ECFC987-FF4F-4A45-B8E1-B0DB9B7C2B25}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{404A3B8A-1E97-4A28-8C97-9B47BAFC9C00}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{42651FFF-C649-4C4C-96F6-6DBD71C6E026}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{439F4293-DB61-4DE6-91E4-7BA3785D2A1A}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{441665E9-CBB1-49DE-B37D-C23B33CACBD4}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{453AA130-7912-4F64-90D3-A74CF9DD3575}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{46866D2B-539C-49A4-8411-044A837FA9F2}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{4770AE52-263E-4CD5-B98C-3BCC098F9DE1}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{481018AF-DDC0-4B02-B472-1746EB47F8AE}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{485B7117-05A9-4D86-ADAD-A0092C563B8C}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{497DA9CD-E392-418A-BEF5-7D342879ADB8}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{4B956890-2E6A-4AE5-8162-C27DADCEFE34}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{4C4E3A81-1816-4790-8562-79178DB82357}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{4D3734D9-8A96-4CF8-8270-436897B740AD}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{4D971FB7-C455-457D-9250-697BDA02FD5F}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{50041AE7-0FD0-4D0D-A3FA-2B9E6D8F519B}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{50467215-9AC3-461D-BFF2-A3F1A8D08F01}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{509FF4DB-D823-4F88-98E7-5FE3B7053039}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{539253F1-1051-4D27-8A7F-E258F60B9E6B}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{5491F241-A2DC-4562-B47F-E3C98D04668E}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{58D160EC-CA36-4DB3-936B-C01D376CE58E}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{59C0A16D-89C4-4A9E-A9E6-F3CEB8F6D3F4}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{5A27A494-B54A-4D13-82EC-CC5D2261F113}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{5B1C3BEE-FAEB-44B2-A145-EE86A5EE4469}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{5C9EC7B0-15E6-4ECD-87A2-7627BC949156}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{5C9FBFA4-7FC0-4F8A-A38C-9BCD8B28D455}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{5CDD605D-94FE-42A7-80FE-3A335FF3836B}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{6050EDCA-01D9-4927-87B8-F6D5427ED49B}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{6212B33C-D36C-42FE-B19F-5FD5A4DEEC8C}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{6242745A-441A-4DA7-A743-8E9A63241E13}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{64FA18AA-2828-4B9D-926A-F1C97EFC894E}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{6875EFA0-47C1-4268-975B-84B9E4BF0FFE}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{6996FB4E-0729-4826-815F-1FBAE93FC154}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{6AF23AAE-01B9-4A88-804D-3C0EC6076F34}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{6B07F95E-090F-400B-8EE2-839622DF7500}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{6B391C0B-BE74-41AE-9973-1EE592FA25D1}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{6BAF28D0-07AF-4E4E-AE33-3870B4ED94D8}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{73174163-E072-482D-9475-0D20EC100E25}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{73267ACB-31C4-463E-B9F6-59C87F38A5B5}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{73BA5064-3998-49CA-B13B-F8F0CF1EBBDB}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{73FAE990-D150-45CF-8517-CA13F3E0A918}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{7625B95F-1EE0-4FDC-B33C-7AB3E74435D6}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{78CD0016-41AD-47BE-8C50-B30EC4CEAABE}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{790CEDC0-37ED-4E56-8B4B-71F7A3EDD16A}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{81084219-EA03-41AB-B9D0-0A5CC77296A1}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{8113774A-6048-478B-B283-B5467C9F1893}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{81DD1D4A-A01F-40D0-BC0C-EAC0551864D6}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{845C2257-5A93-4F05-A46C-96204CF8F7FA}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{85AEFC77-C351-48D7-BC3A-8401453FD560}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{86BC332D-C12F-4122-A415-7F66ED8F8CB8}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{87120046-8955-4B52-87EE-62ACB19924BF}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{871BC55D-A83C-40E3-BA66-88C80A6615AF}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{8AA4CB4C-ED53-4E20-A5DF-7ED98AC5D16D}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{8C28B610-DB53-4AFE-B3F1-D3AD4A868055}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{8C991621-AA42-464F-A088-8E8F223438DB}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{8E748896-306D-44E5-82F3-3E6EC03CB67A}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{903B39BD-E7B8-4E3E-8534-8348C3BA6F24}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{90C0CEAC-C3C7-4CAD-8298-0875C5721403}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{90C77019-2755-4D60-916E-D2D04922E255}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{9271CF93-123A-4D47-9A4F-181BAA35F149}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{92971397-26B6-467E-825F-8026719C5E49}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{95290835-EE5F-4400-B578-F8223924371E}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{96DEE3BC-A8AF-4BB1-A1DC-0FA2A9CA96E0}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{99077BB9-B502-4A70-9445-19F96C4E2C3E}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{9AD23EE6-DE4E-4BDC-94B7-8B0F56881E3B}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{9D152E76-17D7-4FFA-BDBF-15F134AA8A75}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{9FF69DC8-C589-4087-8119-ED9F32479DDD}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{A3C023FE-6CFA-4776-A8BF-085FE1D38636}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{A5221BCA-465F-4136-AE86-65732A43819C}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{A57806AD-3657-4C25-A9DE-7945030CA40E}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{A89A6D39-903A-4259-AFEE-CADB460E7324}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{A903C77B-5CA4-44F1-A2D2-5068FBE9F577}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{A9D37EB3-65B3-4CEA-9412-D3E850ED2E6D}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{AC726F85-363D-49D6-97BD-0F4D98F62D99}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{ACB51E97-3511-4F96-8055-F1BFF4847122}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{ADC18353-DA44-4705-9A13-9698102BFC41}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{AE8B17EC-8782-4573-9AFA-66AC2652EDC7}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{B0E35F0D-DE58-4311-A946-7A9A92640B0D}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{B24B5881-3CBD-4657-A186-F75BDBAF7DB7}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{B2852E72-648C-492B-AECB-53D07BFF6E3C}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{B3463DDC-633C-4E0B-B451-D0F56CB251BC}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{B6172C87-3936-427E-822C-16282F12C4F3}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{B7C9E4A1-9F7B-4906-BB7A-256B026BE266}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{B8421AA8-7DDA-48EF-BE16-15471522205A}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{B9A39D83-C1B0-414C-A7B7-E2590DC4F61B}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{BC21F556-26C7-4622-A30A-802292153BA2}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{BD113F4B-B3F2-4226-863C-221DEAAC154E}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{BF688BB2-11E9-48CA-80FA-A147546FFE58}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{BF81356F-7EE1-4D9A-84BA-96C9C52187B1}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{C15B5C0B-9DF0-4A2C-95AB-47F3FA28D23D}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{C323D079-A67B-48AC-A343-62A901BDA991}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{C4447EE1-BA90-4481-BF05-D4CFAEC2A05B}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{C5D4AF25-ED1A-4844-92D9-1919E51AC1A5}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{C713B682-D953-41E8-B680-382BC27F53BC}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{C7975C4F-8260-47D6-A400-68ED5C4FF75C}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{C9026190-2945-4083-BD5D-C80C2A2F5DD1}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{C90F0A2F-5AB6-4B7B-B8E4-974133E6680F}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{CADBA042-C0FE-46DF-9660-C09A94FBD427}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{CB878C02-9ACF-49AF-A357-641B71A6C98F}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{CEE520F7-A9BE-4926-8EE4-FDF195169217}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{CF844C57-4BA2-46CB-AFC3-3D12B1FE8F59}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{D0526400-56B7-4B8F-A163-C7F398302E41}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{D1FAE81E-B4BC-476D-89FF-C7971CDB5A06}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{D274FC7C-9916-499E-87A1-F69DC3F27339}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{D2DBD0FA-4797-4EFF-8C32-983B206233AF}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{D5B3DBE4-1EAB-41B9-B189-99669D266F20}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{D5E4D7BA-0C99-4B19-82E0-54AE9EB06AF0}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{D6985044-25FA-4879-9674-650C65DC79BC}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{D987E5A5-0462-47E0-9A56-4D3BE7290F5C}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{DA073E3F-5560-4656-B129-1C152EFD6A11}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{DA50D88B-D4C1-40AB-A462-35C0AD0C0753}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{DA7DB9E3-9075-4A6B-A807-957B33562E17}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{DB91B3E7-E290-4F84-A9E2-8ED7732BA50C}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{DBEB1F34-33E8-449C-812F-E3F6C3E526D3}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{DDF8D7F5-7242-432F-B2D1-7930A803FD8F}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{E0F72BD2-46A7-452D-A406-B04FD43D793E}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{E1EB489D-1BEC-4A0B-838B-535D49AD208C}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{E21EE676-9FDC-4244-AADE-28BEB166CDEB}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{E2C996FF-9642-43F2-92B8-03523D81361D}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{E49DC947-AD90-4C8B-955D-31FEAC447A5B}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{E525ECAD-099B-4987-8A49-6F68D9D1EA91}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{E7E09183-061D-49DF-B766-0FD2FAA24EE4}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{E8303274-1150-44D2-86FA-B11296E55D8F}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{EA06F664-EADA-4869-91AD-8CB2A0A52299}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{EAC0E01A-D239-483A-87B4-7BFB5F50FDEB}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{EAC97D49-FA60-4DE3-A78D-794C25AD641F}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{EBA1D749-9E31-42E6-BFC2-C7B6F989CDCF}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{EBF5CC8C-D0E4-4B7D-8D00-6CE1B08A3C76}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{EC56B88E-1572-4727-A53F-1DF77F08AB57}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{EEBEA9F8-5C6F-4550-9FDE-15E4D26AD087}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{EF34FC2E-8DB4-446D-AF24-BF0C992819CE}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{F294E71E-8A6B-4B94-958F-152974854F21}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{F8F40467-C323-43AD-B93D-8829D82A4AB3}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{FBFDB9C5-4F66-4B9E-B854-F05BA581BA01}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{FD779FDA-B209-42F2-A8BD-9388CAEFF8C7}
Successfully deleted: [Empty Folder] C:\Users\Kulˇçci\appdata\local\{FF609ABB-AD7C-447E-90E3-4488A70EE5BD}



~~~ FireFox

Successfully deleted: [Folder] C:\Users\Kulˇçci\AppData\Roaming\mozilla\firefox\profiles\054hwhgg.default\extensions\4zffxtbr@videodownloadconverter_4z.com
Successfully deleted: [Folder] C:\Users\Kulˇçci\AppData\Roaming\mozilla\firefox\profiles\054hwhgg.default\extensions\8hffxtbr@allin1convert_8h.com
Successfully deleted: [Folder] C:\Users\Kulˇçci\AppData\Roaming\mozilla\firefox\profiles\054hwhgg.default\extensions\staged
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions\\4zffxtbr@videodownloadconverter_4z.com
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions\\8hffxtbr@allin1convert_8h.com
Successfully deleted the following from C:\Users\Kulˇçci\AppData\Roaming\mozilla\firefox\profiles\054hwhgg.default\prefs.js

user_pref("extensions.toolbar.mindspark._4zMembers_.homepage", "hxxp://home.tb.ask.com/index.jhtml?n=77fda4dd&p2=^HJ^xpi000^YYA^");
user_pref("extensions.toolbar.mindspark._4zMembers_.initialized", true);
user_pref("extensions.toolbar.mindspark._4zMembers_.installation.contextKey", "");
user_pref("extensions.toolbar.mindspark._4zMembers_.installation.installDate", "2013111517");
user_pref("extensions.toolbar.mindspark._4zMembers_.installation.partnerId", "^HJ^xpi000^YYA^");
user_pref("extensions.toolbar.mindspark._4zMembers_.installation.partnerSubId", "");
user_pref("extensions.toolbar.mindspark._4zMembers_.installation.success", false);
user_pref("extensions.toolbar.mindspark._4zMembers_.options.defaultSearch", false);
user_pref("extensions.toolbar.mindspark._4zMembers_.options.homePageEnabled", false);
user_pref("extensions.toolbar.mindspark._4zMembers_.options.keywordEnabled", false);
user_pref("extensions.toolbar.mindspark._4zMembers_.options.tabEnabled", false);
user_pref("extensions.toolbar.mindspark._8hMembers_.toolbarCollapsed", true);
user_pref("extensions.toolbar.mindspark.lastInstalled", "allin1convert@mindspark.com");
Emptied folder: C:\Users\Kulˇçci\AppData\Roaming\mozilla\firefox\profiles\054hwhgg.default\minidumps [150 files]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on p  15.11.2013 at 17:29:39,95
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

kulichson
Level 1.5
Level 1.5
Příspěvky: 105
Registrován: prosinec 06
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Nestabilní noťas

Příspěvekod kulichson » 15 lis 2013 17:42

Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org

Verze: v2013.11.15.01

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16736
Kulíšci :: KULÍŠCI-PC [administrátor]

Ochrana: Povolena

15.11.2013 17:37:07
mbam-log-2013-11-15 (17-37-07).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 247459
Uplynulý čas: 3 minut, 24 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|NtVdmSrv (Malware.Trace) -> Data: C:\windows\inf\ntvdm.vbe -> Přesun do karantény a smazání se zdařilo.

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 2
C:\Windows\inf\ntvdm.vbe (Malware.Trace) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\inf\ntvdm.inf (Malware.Trace) -> Přesun do karantény a smazání se zdařilo.

(konec)

kulichson
Level 1.5
Level 1.5
Příspěvky: 105
Registrován: prosinec 06
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Nestabilní noťas

Příspěvekod kulichson » 15 lis 2013 17:52

RogueKiller V8.7.8 _x64_ [Nov 14 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://tigzyrk.blogspot.com/

Operační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : Kulíšci [Práva správce]
Mód : Kontrola -- Datum : 11/15/2013 17:51:48
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 15 ¤¤¤
[DNS][PUM] HKLM\[...]\CCSet\[...]\{A91A49D9-C79B-46BC-A7E8-143B5C89D016} : NameServer (93.153.117.1 93.153.117.33 [(Unknown Country?) (XX) - (Unknown Country?) (XX)]) -> NALEZENO
[DNS][PUM] HKLM\[...]\CS001\[...]\{A91A49D9-C79B-46BC-A7E8-143B5C89D016} : NameServer (93.153.117.1 93.153.117.33 [(Unknown Country?) (XX) - (Unknown Country?) (XX)]) -> NALEZENO
[DNS][PUM] HKLM\[...]\CS002\[...]\{A91A49D9-C79B-46BC-A7E8-143B5C89D016} : NameServer (93.153.117.1 93.153.117.33 [(Unknown Country?) (XX) - (Unknown Country?) (XX)]) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\System : ConsentPromptBehaviorAdmin (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\System : EnableLUA (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : DisableTaskMgr (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : DisableRegistryTools (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : ConsentPromptBehaviorAdmin (0) -> NALEZENO
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : EnableLUA (0) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ naplánované úlohy : 3 ¤¤¤
[V1][SUSP PATH] AVG-Secure-Search-Update_JUNE2013_TB_rmv.job : C:\windows\TEMP\{1E4D8EE3-A3AA-49B4-A4A5-8F6E3C473D19}.exe - --uninstall=1 [x] -> NALEZENO
[V2][SUSP PATH] AVG-Secure-Search-Update_JUNE2013_TB_rmv : C:\windows\TEMP\{1E4D8EE3-A3AA-49B4-A4A5-8F6E3C473D19}.exe - --uninstall=1 [x] -> NALEZENO
[V2][SUSP UNIC] {7FBCBD96-9EB3-40F1-866D-2EEEB03651EB} : C:\Users\Kulíšci\Downloads\JAF-setup-+-JAF-PKEY-emulátor\OGM_JAF_PKEY_Emulator_v 5.exe [x] -> NALEZENO

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts




¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) ST9750420AS +++++
--- User ---
[MBR] 9398b8c3991a36829eb82d89216270e1
[BSP] 8508f36aba0b48606df3d8a3501f378e : Windows 7/8 MBR Code
Partition table:
0 - [XXXXXX] DELL-UTIL (0xde) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 15000 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 30926848 | Size: 102405 Mo
3 - [XXXXXX] EXTEN-LBA (0x0f) [VISIBLE] Offset (sectors): 240653700 | Size: 597895 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_S_11152013_175148.txt >>

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Nestabilní noťas

Příspěvekod jaro3 » 15 lis 2013 21:26

Zavři všechny programy a prohlížeče. Deaktivuj antivir a firewall.
Prosím, odpoj všechny USB nebo externí disky z počítače před spuštěním tohoto programu.
Spusť RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Počkej, dokud status okno zobrazuje "Prohledat "
- Klikni na "Smazat"
- Počkej, dokud Status box zobrazuje " Mazání dokončeno "
- Klikni na "Zpráva " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller

Stáhni si TDSSKiller
Na svojí plochu.Ujisti se , že máš zavřeny všechny ostatní aplikace a prohlížeče. Rozbal soubor a spusť TDSSKiller.exe. Restartuj PC . Log z TDSSKilleru najdeš zde:
C:\TDSSKiller. 2.8.16.0_(datum)_log.txt , vlož sem prosím celý obsah logu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

kulichson
Level 1.5
Level 1.5
Příspěvky: 105
Registrován: prosinec 06
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Nestabilní noťas

Příspěvekod kulichson » 16 lis 2013 21:14

RogueKiller V8.7.8 _x64_ [Nov 14 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://tigzyrk.blogspot.com/

Operační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : Kulíšci [Práva správce]
Mód : Odebrat -- Datum : 11/16/2013 21:12:56
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 12 ¤¤¤
[HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> VYMAZÁNO
[HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ POL][PUM] HKLM\[...]\System : DisableTaskMgr (0) -> VYMAZÁNO
[HJ POL][PUM] HKLM\[...]\System : DisableRegistryTools (0) -> VYMAZÁNO
[HJ POL][PUM] HKLM\[...]\System : ConsentPromptBehaviorAdmin (0) -> NAHRAZENO (2)
[HJ POL][PUM] HKLM\[...]\System : EnableLUA (0) -> NAHRAZENO (1)
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : DisableTaskMgr (0) -> [0x2] Systém nemůže nalézt uvedený soubor.
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : DisableRegistryTools (0) -> [0x2] Systém nemůže nalézt uvedený soubor.
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : ConsentPromptBehaviorAdmin (0) -> NAHRAZENO (2)
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : EnableLUA (0) -> NAHRAZENO (1)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)

¤¤¤ naplánované úlohy : 3 ¤¤¤
[V1][SUSP PATH] AVG-Secure-Search-Update_JUNE2013_TB_rmv.job : C:\windows\TEMP\{1E4D8EE3-A3AA-49B4-A4A5-8F6E3C473D19}.exe - --uninstall=1 [x] -> VYMAZÁNO
[V2][SUSP PATH] AVG-Secure-Search-Update_JUNE2013_TB_rmv : C:\windows\TEMP\{1E4D8EE3-A3AA-49B4-A4A5-8F6E3C473D19}.exe - --uninstall=1 [x] -> VYMAZÁNO
[V2][SUSP UNIC] {7FBCBD96-9EB3-40F1-866D-2EEEB03651EB} : C:\Users\Kulíšci\Downloads\JAF-setup-+-JAF-PKEY-emulátor\OGM_JAF_PKEY_Emulator_v 5.exe [x] -> VYMAZÁNO

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts




¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) ST9750420AS +++++
--- User ---
[MBR] 9398b8c3991a36829eb82d89216270e1
[BSP] 8508f36aba0b48606df3d8a3501f378e : Windows 7/8 MBR Code
Partition table:
0 - [XXXXXX] DELL-UTIL (0xde) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 15000 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 30926848 | Size: 102405 Mo
3 - [XXXXXX] EXTEN-LBA (0x0f) [VISIBLE] Offset (sectors): 240653700 | Size: 597895 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[0]_D_11162013_211256.txt >>
RKreport[0]_S_11152013_175148.txt;RKreport[0]_S_11152013_175446.txt;RKreport[0]_S_11162013_211014.txt
RKreport[0]_S_11162013_211246.txt


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 91 hostů