Moc děkuji, jste skvělí kluci
Malwarebytes Anti-Malware
www.malwarebytes.orgDatum skenování: 21.1.2015
Čas skenování: 20:20:29
Protokol: log 1.txt
Správce: Ano
Verze: 2.00.4.1028
Databáze malwaru: v2015.01.21.09
Databáze rootkitů: v2015.01.14.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Sebeobrany: Vypnuto
OS: Windows 7 Service Pack 1
CPU: x64
Souborový systém: NTFS
Uživatel: Kook
Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 323727
Uplynulý čas: 10 min, 12 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 2
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\ProtectService.exe, 1764, Smazat při restartu, [a16c7c7eb1d80c2a42a935d1b9494cb4]
PUP.Optional.PriceHorse.A, C:\Users\Kook\AppData\Local\pricehorse\pricehorse\1.3.17.0\pricehorse.exe, 636, Smazat při restartu, [e12c99610287fe3895d2244359a74db3]
Moduly: 4
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcp110.dll, Smazat při restartu, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcr110.dll, Smazat při restartu, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.Supporter.A, C:\Program Files (x86)\Supporter\Supporter.dll, Smazat při restartu, [709d64966128270f6304d2a728dbde22],
PUP.Optional.PriceHorse.A, C:\Users\Kook\AppData\Local\pricehorse\pricehorse\1.3.17.0\ikpaloab.dll, Smazat při restartu, [4fbe5d9da5e43600a624d79042c154ac],
Klíče registru: 59
PUP.Optional.XTab.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\IHProtect Service, Do karantény, [a16c7c7eb1d80c2a42a935d1b9494cb4],
PUP.Optional.WindowsProtectManger.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\WindowsMangerProtect, Do karantény, [66a7b149414853e3e4d61d49d22e15eb],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, Do karantény, [2fdeea10cebb75c1be8007ed9e64eb15],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D}, Do karantény, [2fdeea10cebb75c1be8007ed9e64eb15],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{917CAAE9-DD47-4025-936E-1414F07DF5B8}, Do karantény, [2fdeea10cebb75c1be8007ed9e64eb15],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{917CAAE9-DD47-4025-936E-1414F07DF5B8}, Do karantény, [2fdeea10cebb75c1be8007ed9e64eb15],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D}, Do karantény, [2fdeea10cebb75c1be8007ed9e64eb15],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, Do karantény, [2fdeea10cebb75c1be8007ed9e64eb15],
PUP.Optional.SupTab.A, HKU\S-1-5-21-1748179089-823422957-1929743790-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, Do karantény, [2fdeea10cebb75c1be8007ed9e64eb15],
PUP.Optional.SupTab.A, HKU\S-1-5-21-1748179089-823422957-1929743790-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, Do karantény, [2fdeea10cebb75c1be8007ed9e64eb15],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{9fc183d9-4f9c-4103-9dec-e784412bb033}, Do karantény, [ed2055a5bacf5ed84fb093fdef16639d],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{9FC183D9-4F9C-4103-9DEC-E784412BB033}, Do karantény, [ed2055a5bacf5ed84fb093fdef16639d],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{9FC183D9-4F9C-4103-9DEC-E784412BB033}, Do karantény, [ed2055a5bacf5ed84fb093fdef16639d],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\P9fc183d9_4f9c_4103_9dec_e784412bb033_.P9fc183d9_4f9c_4103_9dec_e784412bb033_, Do karantény, [ed2055a5bacf5ed84fb093fdef16639d],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\P9fc183d9_4f9c_4103_9dec_e784412bb033_.P9fc183d9_4f9c_4103_9dec_e784412bb033_.9, Do karantény, [ed2055a5bacf5ed84fb093fdef16639d],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\P9fc183d9_4f9c_4103_9dec_e784412bb033_.P9fc183d9_4f9c_4103_9dec_e784412bb033_, Do karantény, [ed2055a5bacf5ed84fb093fdef16639d],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\P9fc183d9_4f9c_4103_9dec_e784412bb033_.P9fc183d9_4f9c_4103_9dec_e784412bb033_.9, Do karantény, [ed2055a5bacf5ed84fb093fdef16639d],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\CLSID\{9FC183D9-4F9C-4103-9DEC-E784412BB033}, Do karantény, [ed2055a5bacf5ed84fb093fdef16639d],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\CLSID\{9FC183D9-4F9C-4103-9DEC-E784412BB033}\INPROCSERVER32, Do karantény, [ed2055a5bacf5ed84fb093fdef16639d],
PUP.Optional.MultiPlug.A, HKU\S-1-5-21-1748179089-823422957-1929743790-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{9FC183D9-4F9C-4103-9DEC-E784412BB033}, Do karantény, [ed2055a5bacf5ed84fb093fdef16639d],
PUP.Optional.MultiPlug.A, HKU\S-1-5-21-1748179089-823422957-1929743790-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{9FC183D9-4F9C-4103-9DEC-E784412BB033}, Do karantény, [ed2055a5bacf5ed84fb093fdef16639d],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{9FC183D9-4F9C-4103-9DEC-E784412BB033}, Do karantény, [ed2055a5bacf5ed84fb093fdef16639d],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{9FC183D9-4F9C-4103-9DEC-E784412BB033}, Do karantény, [ed2055a5bacf5ed84fb093fdef16639d],
Trojan.Agent, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{4820778D-AB0D-6D18-C316-52A6A0E1D507}, Do karantény, [799457a3e1a8ad892a12f0128280b749],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{a6d54b14-f6ba-48e0-a633-924d772346b9}, Do karantény, [0409a951f693ae884ab5533d11f416ea],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{A6D54B14-F6BA-48E0-A633-924D772346B9}, Do karantény, [0409a951f693ae884ab5533d11f416ea],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{A6D54B14-F6BA-48E0-A633-924D772346B9}, Do karantény, [0409a951f693ae884ab5533d11f416ea],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\Pa6d54b14_f6ba_48e0_a633_924d772346b9_.Pa6d54b14_f6ba_48e0_a633_924d772346b9_, Do karantény, [0409a951f693ae884ab5533d11f416ea],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\Pa6d54b14_f6ba_48e0_a633_924d772346b9_.Pa6d54b14_f6ba_48e0_a633_924d772346b9_.9, Do karantény, [0409a951f693ae884ab5533d11f416ea],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Pa6d54b14_f6ba_48e0_a633_924d772346b9_.Pa6d54b14_f6ba_48e0_a633_924d772346b9_, Do karantény, [0409a951f693ae884ab5533d11f416ea],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Pa6d54b14_f6ba_48e0_a633_924d772346b9_.Pa6d54b14_f6ba_48e0_a633_924d772346b9_.9, Do karantény, [0409a951f693ae884ab5533d11f416ea],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\CLSID\{A6D54B14-F6BA-48E0-A633-924D772346B9}, Do karantény, [0409a951f693ae884ab5533d11f416ea],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\CLSID\{A6D54B14-F6BA-48E0-A633-924D772346B9}\INPROCSERVER32, Do karantény, [0409a951f693ae884ab5533d11f416ea],
PUP.Optional.MultiPlug.A, HKU\S-1-5-21-1748179089-823422957-1929743790-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{A6D54B14-F6BA-48E0-A633-924D772346B9}, Do karantény, [0409a951f693ae884ab5533d11f416ea],
PUP.Optional.MultiPlug.A, HKU\S-1-5-21-1748179089-823422957-1929743790-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{A6D54B14-F6BA-48E0-A633-924D772346B9}, Do karantény, [0409a951f693ae884ab5533d11f416ea],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{A6D54B14-F6BA-48E0-A633-924D772346B9}, Do karantény, [0409a951f693ae884ab5533d11f416ea],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{A6D54B14-F6BA-48E0-A633-924D772346B9}, Do karantény, [0409a951f693ae884ab5533d11f416ea],
Trojan.Agent, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{75F9BF4A-AF67-A478-A37B-31D73186D3F3}, Do karantény, [c34afefc38515fd770cce51dd72bbd43],
Trojan.Agent, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{AD11DADE-C597-45D9-D8C5-1D2EB0B89613}, Do karantény, [0ffef802e0a95fd71329cf33be446c94],
PUP.Optional.OmigaPlus.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\omiga-plus uninstall, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, Do karantény, [a9648e6c3d4cb87ea7d084592ed6c63a],
PUP.Optional.GamesDesktop.A, HKLM\SOFTWARE\WOW6432NODE\GAMESDESKTOP, Do karantény, [22ebcc2eaadfcf67d7571368de258e72],
PUP.Optional.IHProtect.A, HKLM\SOFTWARE\WOW6432NODE\IHProtect, Do karantény, [ea2363973b4e51e57f5e5f175aa906fa],
PUP.Optional.ISearch.A, HKLM\SOFTWARE\WOW6432NODE\omiga-plusSoftware, Do karantény, [a469a258d5b42610a62e9752778d40c0],
PUP.Optional.WPM.A, HKLM\SOFTWARE\WOW6432NODE\supWindowsMangerProtect, Do karantény, [7d9034c6fc8d033347847b7615ef0df3],
PUP.Optional.Qone8, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, Do karantény, [838a9c5efa8f290d90e76479bf45b34d],
PUP.Optional.Booster.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{1146AC44-2F03-4431-B4FD-889BC837521F}{372ab9f0}, Do karantény, [2be27486b0d9979feb1bb4e449ba32ce],
PUP.Optional.Booster.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}{be0fb33b}, Do karantény, [30dd3bbf4940d5617a8c2e6ac43f52ae],
PUP.Optional.MultiPlug, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{4820778D-AB0D-6D18-C316-52A6A0E1D507}, Do karantény, [ed2093678affde58e9e796f4e81be11f],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\SUPTAB, Do karantény, [fd10f10992f78aac8c2d85070ef510f0],
PUP.Optional.Supporter.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\be0fb33b, Do karantény, [24e937c37c0d0432df893445fe05bd43],
PUP.Optional.WindowsMangerProtect.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\WindowsMangerProtect, Do karantény, [d13c6c8e6029a4927077c1c0e12218e8],
PUP.Optional.MediaPlayer.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MediaPlayer+vidsEd.3-nv, Do karantény, [44c9a4565534f83e00e9ef867093a35d],
PUP.Optional.MediaPlayer.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\MediaPlayer+vidsEd.3, Do karantény, [1bf2ab4ffa8ff1452bbfacc91de627d9],
PUP.Optional.1ClickDownload.A, HKU\S-1-5-21-1748179089-823422957-1929743790-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\1ClickDownload, Do karantény, [1eef6793a7e2ef47bc7b369d9272cf31],
PUP.Optional.Tuto4PC.A, HKU\S-1-5-21-1748179089-823422957-1929743790-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\TutoTag, Do karantény, [ad605f9b5633ed4987729064b3515ca4],
PUP.Optional.CrossRider.A, HKU\S-1-5-21-1748179089-823422957-1929743790-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Crossrider, Do karantény, [e92410eaf79293a334e053938c7838c8],
PUP.Optional.Qone8, HKU\S-1-5-21-1748179089-823422957-1929743790-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, Do karantény, [6e9ff00a038640f6babc22bb7b899868],
PUP.Optional.FastStart.A, HKU\S-1-5-21-1748179089-823422957-1929743790-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MOZILLA\EXTENDS, Do karantény, [89844fabb7d2fc3a824ef19818eb758b],
Hodnoty registru: 7
PUP.Optional.PriceHorse.A, HKU\S-1-5-21-1748179089-823422957-1929743790-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|Price-Horse, C:\Users\Kook\AppData\Local\pricehorse\pricehorse\1.3.17.0\pricehorse.exe, Do karantény, [e12c99610287fe3895d2244359a74db3]
Trojan.Agent.SCR, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|MSStp, C:\Windows\inf\msstp.vbe, Do karantény, [69a474866227b5814b07f2b71fe423dd]
PUP.Optional.GamesDesktop.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|gmsd_re_2, Do karantény, [b35a51a99ced1323b5f226552bd89868],
PUP.Optional.FFToolbar.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|fftoolbar2014@etech.com, C:\Users\Kook\AppData\Roaming\Mozilla\Firefox\Profiles\53nmvyuv.default\extensions\fftoolbar2014@etech.com, Do karantény, [69a4d921dcad54e2ccab076f18eb669a]
PUP.Optional.FastStart.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|faststartff@gmail.com, C:\Users\Kook\AppData\Roaming\Mozilla\Firefox\Profiles\53nmvyuv.default\extensions\faststartff@gmail.com, Do karantény, [64a97e7ceb9e8ea85d8840b015ef956b]
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\SUPTAB|ptid, tugs, Do karantény, [fd10f10992f78aac8c2d85070ef510f0]
PUP.Optional.FastStart.A, HKU\S-1-5-21-1748179089-823422957-1929743790-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MOZILLA\EXTENDS|appid,
faststartff@gmail.com, Do karantény, [89844fabb7d2fc3a824ef19818eb758b]
Data registru: 18
PUP.Optional.OmigaPlus.A, HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\GOOGLE CHROME\SHELL\OPEN\COMMAND, "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
http://isearch.omiga-plus.com/?type=sc& ... F5969F5969, Dobré: (Chrome.exe), Špatné: ("C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
http://isearch.omiga-plus.com/?type=sc& ... F5969F5969),Nahrazeno,[c746ca3036531b1bfb38ced32fd6ab55]
PUP.Optional.OmigaPlus.A, HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\IEXPLORE.EXE\SHELL\OPEN\COMMAND, C:\Program Files\Internet Explorer\iexplore.exe
http://isearch.omiga-plus.com/?type=sc& ... F5969F5969, Dobré: (iexplore.exe), Špatné: (C:\Program Files\Internet Explorer\iexplore.exe
http://isearch.omiga-plus.com/?type=sc& ... F5969F5969),Nahrazeno,[c04d51a9bdccc0769e936938c83d18e8]
PUP.Optional.OmigaPlus.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL,
http://isearch.omiga-plus.com/web/?type ... 69F5969&q={searchTerms}, Dobré: (
www.google.com), Špatné: (
http://isearch.omiga-plus.com/web/?type ... 69F5969&q={searchTerms}),Nahrazeno,[29e4b347bdcc58deb283bee3a85dd42c]
PUP.Optional.OmigaPlus.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL,
http://isearch.omiga-plus.com/?type=hpp ... F5969F5969, Dobré: (
www.google.com), Špatné: (
http://isearch.omiga-plus.com/?type=hpp ... F5969F5969),Nahrazeno,[5cb12ad0a7e21422250fdfc294716e92]
PUP.Optional.OmigaPlus.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page,
http://isearch.omiga-plus.com/?type=hpp ... F5969F5969, Dobré: (
www.google.com), Špatné: (
http://isearch.omiga-plus.com/?type=hpp ... F5969F5969),Nahrazeno,[5eaf6694f198b3837cba9c0561a431cf]
PUP.Optional.OmigaPlus.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page,
http://isearch.omiga-plus.com/web/?type ... 69F5969&q={searchTerms}, Dobré: (
www.google.com), Špatné: (
http://isearch.omiga-plus.com/web/?type ... 69F5969&q={searchTerms}),Nahrazeno,[7e8fec0e008974c29d9c8a1755b08c74]
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Dobré: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Špatné: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Nahrazeno,[ab62b1491970cb6b72f2f9a6887dad53]
PUP.Optional.OmigaPlus.A, HKLM\SOFTWARE\WOW6432NODE\CLIENTS\STARTMENUINTERNET\GOOGLE CHROME\SHELL\OPEN\COMMAND, "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
http://isearch.omiga-plus.com/?type=sc& ... F5969F5969, Dobré: (Chrome.exe), Špatné: ("C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
http://isearch.omiga-plus.com/?type=sc& ... F5969F5969),Nahrazeno,[f419f2086e1b6ec82c07c4dd7491639d]
PUP.Optional.OmigaPlus.A, HKLM\SOFTWARE\WOW6432NODE\CLIENTS\STARTMENUINTERNET\IEXPLORE.EXE\SHELL\OPEN\COMMAND, C:\Program Files\Internet Explorer\iexplore.exe
http://isearch.omiga-plus.com/?type=sc& ... F5969F5969, Dobré: (iexplore.exe), Špatné: (C:\Program Files\Internet Explorer\iexplore.exe
http://isearch.omiga-plus.com/?type=sc& ... F5969F5969),Nahrazeno,[9b72f505b7d2ca6cb57c178ab154936d]
PUP.Optional.OmigaPlus.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL,
http://isearch.omiga-plus.com/web/?type ... 69F5969&q={searchTerms}, Dobré: (
www.google.com), Špatné: (
http://isearch.omiga-plus.com/web/?type ... 69F5969&q={searchTerms}),Nahrazeno,[ba53d3277118fd39082d346df60fc43c]
PUP.Optional.OmigaPlus.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL,
http://isearch.omiga-plus.com/?type=hpp ... F5969F5969, Dobré: (
www.google.com), Špatné: (
http://isearch.omiga-plus.com/?type=hpp ... F5969F5969),Nahrazeno,[78952fcb0a7f3cfab0840d94ad580bf5]
PUP.Optional.OmigaPlus.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page,
http://isearch.omiga-plus.com/?type=hpp ... F5969F5969, Dobré: (
www.google.com), Špatné: (
http://isearch.omiga-plus.com/?type=hpp ... F5969F5969),Nahrazeno,[8c8152a81c6df83edf57970aa065e41c]
PUP.Optional.OmigaPlus.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page,
http://isearch.omiga-plus.com/web/?type ... 69F5969&q={searchTerms}, Dobré: (
www.google.com), Špatné: (
http://isearch.omiga-plus.com/web/?type ... 69F5969&q={searchTerms}),Nahrazeno,[7f8e99615831082ea2974a577f86a060]
PUP.Optional.Qone8, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Dobré: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Špatné: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Nahrazeno,[ad6034c67d0c34029fc5b3ec28dd57a9]
PUP.Optional.OmigaPlus.A, HKU\S-1-5-21-1748179089-823422957-1929743790-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page,
http://isearch.omiga-plus.com/web/?type ... 69F5969&q={searchTerms}, Dobré: (
www.google.com), Špatné: (
http://isearch.omiga-plus.com/web/?type ... 69F5969&q={searchTerms}),Nahrazeno,[b85536c40c7dd462bc8d375c92737d83]
PUP.Optional.OmigaPlus.A, HKU\S-1-5-21-1748179089-823422957-1929743790-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page,
http://isearch.omiga-plus.com/?type=hpp ... F5969F5969, Dobré: (
www.google.com), Špatné: (
http://isearch.omiga-plus.com/?type=hpp ... F5969F5969),Nahrazeno,[9a7316e42c5dae8834fb2f723acbf40c]
PUP.Optional.OmigaPlus.A, HKU\S-1-5-21-1748179089-823422957-1929743790-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL,
http://isearch.omiga-plus.com/?type=hpp ... F5969F5969, Dobré: (
www.google.com), Špatné: (
http://isearch.omiga-plus.com/?type=hpp ... F5969F5969),Nahrazeno,[60adca307e0b5bdb9d91bde4749109f7]
PUP.Optional.OmigaPlus.A, HKU\S-1-5-21-1748179089-823422957-1929743790-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL,
http://isearch.omiga-plus.com/web/?type ... 69F5969&q={searchTerms}, Dobré: (
www.google.com), Špatné: (
http://isearch.omiga-plus.com/web/?type ... 69F5969&q={searchTerms}),Nahrazeno,[b15c8a70e3a6023477d1dcb7887d31cf]
Složky: 39
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab, Smazat při restartu, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\image, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\weather, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\en-US, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\es-419, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\es-ES, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-BE, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-CA, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-CH, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-FR, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-LU, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\it-CH, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\it-IT, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pl, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pt, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pt-BR, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\ru, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\ru-MO, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\tr-TR, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\vi-VI, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\zh-CN, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\zh-TW, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.Supporter.A, C:\Program Files (x86)\Supporter, Smazat při restartu, [709d64966128270f6304d2a728dbde22],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\images, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\images\code, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\log, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect, Do karantény, [46c737c3f99066d02ec46ee63ec59e62],
PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\update, Do karantény, [46c737c3f99066d02ec46ee63ec59e62],
PUP.Optional.PriceHorse.A, C:\Users\Kook\AppData\Local\pricehorse, Smazat při restartu, [4fbe5d9da5e43600a624d79042c154ac],
PUP.Optional.PriceHorse.A, C:\Users\Kook\AppData\Local\pricehorse\pricehorse, Smazat při restartu, [4fbe5d9da5e43600a624d79042c154ac],
PUP.Optional.PriceHorse.A, C:\Users\Kook\AppData\Local\pricehorse\pricehorse\1.3.17.0, Smazat při restartu, [4fbe5d9da5e43600a624d79042c154ac],
PUP.Optional.IHProtectUpDate.A, C:\ProgramData\IHProtectUpDate, Do karantény, [3fce07f38603290d90c1c4aef80be51b],
PUP.Optional.IHProtectUpDate.A, C:\ProgramData\IHProtectUpDate\update, Do karantény, [3fce07f38603290d90c1c4aef80be51b],
Soubory: 136
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\ProtectService.exe, Smazat při restartu, [a16c7c7eb1d80c2a42a935d1b9494cb4],
PUP.Optional.PriceHorse.A, C:\Users\Kook\AppData\Local\pricehorse\pricehorse\1.3.17.0\pricehorse.exe, Smazat při restartu, [e12c99610287fe3895d2244359a74db3],
PUP.Optional.WindowsProtectManger.A, C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe, Do karantény, [66a7b149414853e3e4d61d49d22e15eb],
PUP.Optional.SupTab.A, C:\Program Files (x86)\XTab\SupTab.dll, Do karantény, [2fdeea10cebb75c1be8007ed9e64eb15],
PUP.Optional.MultiPlug.A, C:\Program Files (x86)\YoutubueAdBlocke\nwcPgxIpy00Lud.dll, Do karantény, [ed2055a5bacf5ed84fb093fdef16639d],
PUP.Optional.MultiPlug.A, C:\Program Files (x86)\YoutubueAdBlocke\nwcPgxIpy00Lud.x64.dll, Do karantény, [ed2055a5bacf5ed84fb093fdef16639d],
Trojan.Agent, C:\Program Files (x86)\YoutubueAdBlocke\nwcPgxIpy00Lud.exe, Do karantény, [799457a3e1a8ad892a12f0128280b749],
PUP.Optional.MultiPlug.A, C:\Program Files (x86)\PricueLiess\oMcm0Qc6it6lEx.dll, Do karantény, [0409a951f693ae884ab5533d11f416ea],
PUP.Optional.MultiPlug.A, C:\Program Files (x86)\PricueLiess\oMcm0Qc6it6lEx.x64.dll, Do karantény, [0409a951f693ae884ab5533d11f416ea],
Trojan.Agent, C:\Program Files (x86)\PricueLiess\oMcm0Qc6it6lEx.exe, Do karantény, [c34afefc38515fd770cce51dd72bbd43],
Trojan.Agent, C:\Program Files (x86)\Quick SEO PageRank Backlinks Alexa Tool\Quick SEO PageRank Backlinks Alexa Tool.exe, Do karantény, [0ffef802e0a95fd71329cf33be446c94],
PUP.Optional.Bitcoin, C:\Windows\SysWOW64\acumncqypkac.exe, Do karantény, [cb421bdf7811b87e03117da85ca6d12f],
Trojan.BitMiner, C:\Windows\SysWOW64\dcgmncqypkac.exe, Do karantény, [63aa0eec414859dd2de276c0dd2525db],
PUP.BitCoinMiner, C:\Windows\SysWOW64\lcpmncqypkac.exe, Do karantény, [0409fefccbbe2e08155c8da4976a867a],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\uninstall.exe, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\BrowerWatchCH.dll, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\BrowerWatchFF.dll, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\BrowserAction.dll, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\CmdShell.exe, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\conf, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\ffsearch_toolbar!1.0.0.1025.xpi, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\HPNotify.exe, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\IeWatchDog.dll, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\install.data, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcp110.dll, Smazat při restartu, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcr110.dll, Smazat při restartu, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\searchProvider.xml, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\about.png, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\about_bk.png, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\btn.png, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\btn_apply.png, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\close.png, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\conf.xml, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\conf_back.png, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\input_bk.png, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\logo.png, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\main.xml, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\radio_1.png, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\radio_2.png, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\rigth_arrow.png, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\settings.png, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\data.html, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\indexIE.html, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\indexIE8.html, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\main.css, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\ver.txt, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\arrow.png, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\default_add_logo.png, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\default_add_logo_hover.png, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\default_logo.png, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\googlelogo.png, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\googlelogo2.png, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\google_trends.png, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\icon128.png, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\icon16.png, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\icon48.png, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\loading.gif, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\logo32.ico, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\weather\0.png, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\common.js, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\ga.js, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\ie8.js, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\jquery-1.11.0.min.js, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\jquery.autocomplete.js, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\js.js, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\library.js, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\xagainit-ie8.js, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\xagainit.js, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\xagainit2.0.js, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\en-US\messages.json, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\es-419\messages.json, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\es-ES\messages.json, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-BE\messages.json, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-CA\messages.json, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-CH\messages.json, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-FR\messages.json, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-LU\messages.json, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\it-CH\messages.json, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\it-IT\messages.json, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pl\messages.json, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pt\messages.json, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pt-BR\messages.json, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\ru\messages.json, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\ru-MO\messages.json, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\tr-TR\messages.json, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\vi-VI\messages.json, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\zh-CN\messages.json, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\zh-TW\messages.json, Do karantény, [cf3e9862fc8dc86e5886b4c20ef514ec],
PUP.Optional.Supporter.A, C:\Program Files (x86)\Supporter\Supporter.dll, Smazat při restartu, [709d64966128270f6304d2a728dbde22],
PUP.Optional.PriceHorse.A, C:\Windows\System32\Tasks\Price-Horse, Do karantény, [20ed41b93c4d979f50b2e0a4877c936d],
PUP.Optional.PriceHorse.A, C:\Windows\System32\Tasks\Price-Horse Updater, Do karantény, [63aa0cee94f54de921e12163857e9967],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\MessageBox.xml, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\353.json, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\uninstallDlg2.xml, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\UninstallManager.exe, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\images\bg.png, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\images\bg1.png, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\images\bk_shadow.png, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\images\button.png, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\images\button1.png, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\images\checkbox.png, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\images\checkbox_select.png, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\images\checked.png, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\images\close.png, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\images\loading_bg.png, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\images\loading_light.png, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\images\min.png, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\images\scrollbar.bmp, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\images\Thumbs.db, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\images\unchecked.png, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\images\code\code1.jpg, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\images\code\code2.jpg, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\images\code\code3.jpg, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\images\code\code4.jpg, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\images\code\code5.jpg, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\images\code\code6.jpg, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\images\code\Thumbs.db, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\log\UninstallManager_2015-01-16[22-40-23-634].log, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\log\UninstallManager_2015-01-16[22-48-54-623].log, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\log\UninstallManager_2015-01-16[23-03-10-313].log, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\log\UninstallManager_2015-01-16[23-10-03-333].log, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\log\UninstallManager_2015-01-16[23-10-17-061].log, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\log\UninstallManager_2015-01-17[15-08-33-897].log, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\log\UninstallManager_2015-01-19[16-59-10-870].log, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\log\UninstallManager_2015-01-19[18-09-02-856].log, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
PUP.Optional.OmigaPlus.A, C:\Users\Kook\AppData\Roaming\omiga-plus\log\UninstallManager_2015-01-19[18-09-25-572].log, Do karantény, [828b5c9e8dfc85b12fcbf0a7d03327d9],
Trojan.Agent.SCR, C:\Windows\inf\msstp.vbe, Do karantény, [69a474866227b5814b07f2b71fe423dd],
PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\update\conf, Do karantény, [46c737c3f99066d02ec46ee63ec59e62],
PUP.Optional.PriceHorse.A, C:\Users\Kook\AppData\Local\pricehorse\pricehorse\1.3.17.0\app.ini, Do karantény, [4fbe5d9da5e43600a624d79042c154ac],
PUP.Optional.PriceHorse.A, C:\Users\Kook\AppData\Local\pricehorse\pricehorse\1.3.17.0\ffiFfchk.dll, Do karantény, [4fbe5d9da5e43600a624d79042c154ac],
PUP.Optional.PriceHorse.A, C:\Users\Kook\AppData\Local\pricehorse\pricehorse\1.3.17.0\ikpaloab.dll, Smazat při restartu, [4fbe5d9da5e43600a624d79042c154ac],
PUP.Optional.PriceHorse.A, C:\Users\Kook\AppData\Local\pricehorse\pricehorse\1.3.17.0\playsetup.exe, Do karantény, [4fbe5d9da5e43600a624d79042c154ac],
PUP.Optional.PriceHorse.A, C:\Users\Kook\AppData\Local\pricehorse\pricehorse\1.3.17.0\res.dll, Do karantény, [4fbe5d9da5e43600a624d79042c154ac],
PUP.Optional.IHProtectUpDate.A, C:\ProgramData\IHProtectUpDate\update\conf, Do karantény, [3fce07f38603290d90c1c4aef80be51b],
PUP.Optional.QuickStart.A, C:\Users\Kook\AppData\Roaming\Mozilla\Firefox\Profiles\53nmvyuv.default\prefs.js, Dobré: (), Špatné: (user_pref("browser.newtab.url", "chrome://quick_start/content/index.html");), Nahrazeno,[89840dedabde0036879e4c8dbd4853ad]
PUP.Optional.CrossRider.A, C:\Users\Kook\AppData\Roaming\Mozilla\Firefox\Profiles\53nmvyuv.default\prefs.js, Dobré: (), Špatné: (user_pref("extensions.crossrider.bic", "14aef515792ed7ea5409b80cda4faff9");), Nahrazeno,[34d9a15992f7979fda740cce9e677e82]
Fyzické sektory: 0
(Žádné zákerné zjištěny položek)
(end)
# AdwCleaner v4.108 - Report created 21/01/2015 at 20:42:39
# Updated 17/01/2015 by Xplode
# Database : 2015-01-18.1 [Live]
# Operating System : Windows 7 Ultimate Service Pack 1 (64 bits)
# Username : Kook - KOOK-PC
# Running from : C:\Users\Kook\Desktop\adwcleaner_4.108.exe
# Option : Clean
***** [ Services ] *****
Service Deleted : be0fb33b
[#] Service Deleted : WindowsMangerProtect
Service Deleted : IHProtect Service
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\apn
Folder Deleted : C:\ProgramData\MailUpdate
Folder Deleted : C:\ProgramData\8755892465670915072
Folder Deleted : C:\ProgramData\eb9bcdee000039d6
Folder Deleted : C:\Program Files (x86)\globalUpdate
Folder Deleted : C:\Program Files (x86)\predm
Folder Deleted : C:\Program Files (x86)\supporter
Folder Deleted : C:\Program Files (x86)\XTab
Folder Deleted : C:\Users\Kook\AppData\Local\globalUpdate
Folder Deleted : C:\Users\Kook\AppData\Local\pricehorse
Folder Deleted : C:\Users\Kook\AppData\Roaming\MailUpdate
File Deleted : C:\Users\Kook\AppData\Roaming\Mozilla\Firefox\Profiles\53nmvyuv.default\user.js
File Deleted : C:\Users\Kook\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage
File Deleted : C:\Users\Kook\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage-journal
***** [ Scheduled Tasks ] *****
Task Deleted : LaunchSignup
Task Deleted : Price-Horse Updater
Task Deleted : Price-Horse
***** [ Shortcuts ] *****
Shortcut Disinfected : C:\Users\Public\Desktop\Google Chrome.lnk
Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk
Shortcut Disinfected : C:\Users\Kook\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
Shortcut Disinfected : C:\Users\Kook\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk
Shortcut Disinfected : C:\Users\Kook\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
Shortcut Disinfected : C:\Users\Kook\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
Shortcut Disinfected : C:\Users\Kook\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk
***** [ Registry ] *****
Key Deleted : HKCU\Software\f5a9a92a54aebe3cdddb77c236a7f32e
Key Deleted : HKCU\Software\fa92058cc8e92add97aa66659a152a1c
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C007DADD-132A-624C-088E-59EE6CF0711F}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C}
Key Deleted : HKCU\Software\GlobalUpdate
Key Deleted : HKCU\Software\Optimizer Pro
Key Deleted : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Deleted : HKCU\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
Key Deleted : HKLM\SOFTWARE\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Deleted : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Key Deleted : HKLM\SOFTWARE\GlobalUpdate
Key Deleted : HKLM\SOFTWARE\SupDp
Key Deleted : HKLM\SOFTWARE\Tutorials
Key Deleted : HKLM\SOFTWARE\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17496
-\\ Mozilla Firefox v35.0 (x86 cs)
[53nmvyuv.default\prefs.js] - Line Deleted : user_pref("extensions.ab6e4f54065ff48dd97db30cac9b45f807bf54a45a4669e51ccom67913.67913.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22%5D%[...]
[53nmvyuv.default\prefs.js] - Line Deleted : user_pref("extensions.quick_start.enable_search1", false);
[53nmvyuv.default\prefs.js] - Line Deleted : user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false);
-\\ Google Chrome v39.0.2171.95
[C:\Users\Kook\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] :
hxxp://isearch.omiga-plus.com/web/?type ... 69F5969&q={searchTerms}
[C:\Users\Kook\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] :
hxxp://isearch.omiga-plus.com/web/?type ... 69F5969&q={searchTerms}
*************************
AdwCleaner[R0].txt - [12440 octets] - [21/01/2015 17:57:29]
AdwCleaner[R1].txt - [4400 octets] - [21/01/2015 20:34:41]
AdwCleaner[S0].txt - [4825 octets] - [21/01/2015 20:42:39]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [4885 octets] ##########
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.4.1 (12.28.2014:1)
OS: Windows 7 Ultimate x64
Ran by Kook on st 21.01.2015 at 20:49:20,21
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
~~~ Files
~~~ Folders
~~~ FireFox
Successfully deleted the following from C:\Users\Kook\AppData\Roaming\mozilla\firefox\profiles\53nmvyuv.default\prefs.js
user_pref("browser.search.searchengine.desc", "this is my first firefox searchEngine");
user_pref("browser.search.searchengine.ptid", "tugs");
user_pref("browser.search.searchengine.uid", "WDCXWD3200BEVT-22ZCT0_WD-WXD1A10F5969F5969");
user_pref("extensions.32ikEgtfwMWLmT6k.scode", "try{(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnale
user_pref("extensions.s3WGtR6EGBAPn0pB.scode", "try{(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnale
user_pref("extensions.s3WGtR6EGBAPn0pB.url", "hxxp://guardsetstarr.info/sync2/?q=hfZ9ofV9CShEAen0qjk7pdaMg708BNmGWj8deShGheDUojw8rdwFqjsErHk8qihIC7n0rjkErjw8rTaHpdw8tNhVCT94tM
Emptied folder: C:\Users\Kook\AppData\Roaming\mozilla\firefox\profiles\53nmvyuv.default\minidumps [1 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on st 21.01.2015 at 20:54:01,90
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
RogueKiller V10.2.0.0 (x64) [Jan 19 2015] by Adlice Software
mail :
http://www.adlice.com/contact/Feedback :
http://forum.adlice.comWebová stránka :
http://www.adlice.com/softwares/roguekiller/Blog :
http://www.adlice.comOperační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno : Normální režim
Uživatel : Kook [Práva správce]
Mód : Prohledat -- Datum : 01/21/2015 21:02:28
¤¤¤ Procesy : 0 ¤¤¤
¤¤¤ Registry : 12 ¤¤¤
[PUM.HomePage] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Start Page :
www.google.com -> Nalezeno
[PUM.HomePage] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Start Page :
www.google.com -> Nalezeno
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-1748179089-823422957-1929743790-1000\Software\Microsoft\Internet Explorer\Main | Start Page :
www.google.com -> Nalezeno
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-1748179089-823422957-1929743790-1000\Software\Microsoft\Internet Explorer\Main | Start Page :
www.google.com -> Nalezeno
[PUM.SearchPage] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Search Page :
www.google.com -> Nalezeno
[PUM.SearchPage] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Search Page :
www.google.com -> Nalezeno
[PUM.SearchPage] (X64) HKEY_USERS\S-1-5-21-1748179089-823422957-1929743790-1000\Software\Microsoft\Internet Explorer\Main | Search Page :
www.google.com -> Nalezeno
[PUM.SearchPage] (X86) HKEY_USERS\S-1-5-21-1748179089-823422957-1929743790-1000\Software\Microsoft\Internet Explorer\Main | Search Page :
www.google.com -> Nalezeno
[PUM.DesktopIcons] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1 -> Nalezeno
[PUM.DesktopIcons] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1 -> Nalezeno
[PUM.DesktopIcons] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1 -> Nalezeno
[PUM.DesktopIcons] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1 -> Nalezeno
¤¤¤ Úlohy : 0 ¤¤¤
¤¤¤ Soubory : 0 ¤¤¤
¤¤¤ Soubor HOSTS : 0 ¤¤¤
¤¤¤ Antirootkit : 0 (Driver: Nahrán) ¤¤¤
¤¤¤ Webové prohlížeče : 1 ¤¤¤
[PUM.HomePage][FIREFX:Config] 53nmvyuv.default : user_pref("browser.startup.homepage", "https://www.seznam.cz/"); -> Nalezeno
¤¤¤ Kontrola MBR : ¤¤¤
+++++ PhysicalDrive0: WDC WD3200BEVT-22ZCT0 ATA Device +++++
--- User ---
[MBR] a30974a4177f6ba4592842aac30b5054
[BSP] aab075a8122bd446169bfaa56d43d3e1 : Windows Vista/7/8 MBR Code
Partition table:
0 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 2048 | Size: 12288 MB
1 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 25167872 | Size: 100 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
2 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 25372672 | Size: 292855 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
User = LL1 ... OK
User = LL2 ... OK