Stránka 1 z 1

Kontrola Logu, HiJackThis

Napsal: 22 dub 2015 20:12
od vojak3
Celej PC neskutečně blbne, jak zapnu prohlížeč (jakej koliv) házi furt viry, furt něco neodpovídá a padá. 100% Viry
Rychlá pomoc by se hodila, Děkuji předem.

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:09:59, on 22.4.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17728)

FIREFOX: 37.0.2 (x86 cs)
Boot mode: Normal

Running processes:
C:\Windows\SysWOW64\rundll32.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Program Files (x86)\System Explorer\SystemExplorer.exe
C:\Program Files (x86)\Acer Display\eDisplay Management\DTHtml.exe
C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\wpctrl.exe
C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\floater.exe
C:\Program Files (x86)\Comodo\Dragon\dragon.exe
C:\Program Files (x86)\Comodo\Dragon\dragon.exe
C:\Program Files (x86)\Comodo\Dragon\dragon.exe
C:\Program Files (x86)\Comodo\Dragon\dragon.exe
C:\Program Files (x86)\Comodo\Dragon\dragon.exe
C:\Program Files (x86)\Comodo\Dragon\dragon.exe
C:\Program Files (x86)\Comodo\Dragon\dragon.exe
C:\Program Files (x86)\Comodo\Dragon\dragon.exe
C:\Program Files (x86)\Comodo\Dragon\dragon.exe
C:\Program Files (x86)\Comodo\Dragon\dragon.exe
C:\Program Files (x86)\Comodo\Dragon\dragon.exe
C:\Program Files (x86)\Comodo\Dragon\dragon.exe
C:\Program Files (x86)\Comodo\Dragon\dragon.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_17_0_0_169.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_17_0_0_169.exe
C:\Users\vojak3\Downloads\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=hp&t ... 9_08FD9815
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://websearch.goodforsearch.info/?pi ... Z&unqvl=86
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=hp&t ... 9_08FD9815
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/web/?type= ... 8FD9815&q={searchTerms}
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/web/?type= ... 8FD9815&q={searchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://websearch.goodforsearch.info/?pi ... Z&unqvl=86
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: SalePlus - {7f8a0050-b7b3-41ff-b1b1-4d498ca4adb2} - C:\Program Files (x86)\SalePlus\ovJKqd8YH95fyb.dll (file missing)
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: bestadblocker - {a9b653c8-4ce8-45db-9e42-70db6f4501c4} - C:\Program Files (x86)\bestadblocker\dwcuckJJbJdhOG.dll (file missing)
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: SaluePlus - {d51788df-b66b-4759-978d-1f67e1270a66} - C:\Program Files (x86)\SaluePlus\KMcSwGwwcPKg97.dll (file missing)
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [SystemExplorerAutoStart] "C:\Program Files (x86)\System Explorer\SystemExplorer.exe" /TRAY
O4 - HKLM\..\Run: [PivotSoftware] "C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\Pivot_startup.exe" -delay=10
O4 - HKLM\..\Run: [DT ACR] C:\Program Files (x86)\Common Files\Portrait Displays\Shared\DT_startup.exe -ACR
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - Avast Software s.r.o. - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: COMODO Dragon Update Service (DragonUpdater) - Comodo Security Solutions, Inc. - C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
O23 - Service: Portrait Displays Display Tune Service (DTSRVC) - Portrait Displays, Inc. - C:\Program Files (x86)\Common Files\Portrait Displays\Shared\dtsrvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Portrait Displays SDK Service (PdiService) - Portrait Displays, Inc. - C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Suite Service - SPAMfighter ApS - C:\Program Files (x86)\Fighters\FighterSuiteService.exe
O23 - Service: System Explorer Service (SystemExplorerHelpService) - Mister Group - C:\Program Files (x86)\System Explorer\service\SystemExplorerService64.exe
O23 - Service: TeamViewer 10 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: VIA Karaoke digital mixer Service (VIAKaraokeService) - Unknown owner - C:\Windows\system32\viakaraokesrv.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10673 bytes

Re: Kontrola Logu, HiJackThis

Napsal: 22 dub 2015 20:18
od mople71
Ahoj! :-)

Rád Ti pomohu s tvým problémem. Čti prosím mé instrukce pozorně a pokud si něčím nebudeš jist, vždy se raději zeptej. ;)


Je možné, že budeš muset na chvíli vypnout svůj antivirus.
V rámci čištění budou vyprázdněny dočasné adresáře včetně Koše!


Stáhni si AdwCleaner: http://www.bleepingcomputer.com/download/adwcleaner/

Ulož na Plochu, spusť jako správce, klikni na Scan a poté Logfile, vyjede na tebe log, ten sem prosím přilož. AdwCleaner na chvíli zavři.

Po vložení logu sem si znovu otevři AdwCleaner, kde klikni na Scan a poté tentokrát na Clean. Po restartu PC na tebe vyjede další log, ten sem prosím vlož.

---------------------------------------------------------------------------

Stáhni si Zoek: http://download.bleepingcomputer.com/smeenk/zoek.exe

Ulož na Plochu, otevři jako správce, do otevřeného okna vlož tento kód:

Kód: Vybrat vše

autoclean;
resethosts;
emptyclsid;
IEdefaults;
FFdefaults;
CHRdefaults;
emptyIEcache;
emptyFFcache;
emptyCHRcache;
emptyalltemp;
emptyflash;
emptyjava;
emptyrecycle.bin;

A klikni na Run script, chvíli to potrvá. Po restartu PC prosím přilož jeho log.

Re: Kontrola Logu, HiJackThis

Napsal: 22 dub 2015 20:30
od vojak3
# AdwCleaner v4.201 - Log vytvořen 22/04/2015 v 20:27:54
# Aktualizováno 08/04/2015 by Xplode
# Databáze : 2015-04-22.1 [Server]
# Operační system : Windows 7 Ultimate Service Pack 1 (x64)
# Uživatelské jméno : vojak3 - VOJAK3-PC
# Spuštěno z : C:\Users\vojak3\Downloads\adwcleaner_4.201.exe
# Nastavení : Sken

***** [ Služby ] *****

Služba Nalezeno : {4a053818-d714-4ae9-a858-ecc472a00067}Gw64

***** [ Soubory / Složky ] *****

Složka Nalezeno : C:\Program Files (x86)\Fighters
Složka Nalezeno : C:\ProgramData\baidu
Složka Nalezeno : C:\ProgramData\Fighters
Složka Nalezeno : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EZDownloader
Složka Nalezeno : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fighters
Složka Nalezeno : C:\Users\vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cmaiofennmphjldldcpphcechfnnohja
Složka Nalezeno : C:\Users\vojak3\AppData\Local\Fighters
Složka Nalezeno : C:\Users\vojak3\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
Složka Nalezeno : C:\Users\vojak3\AppData\Roaming\EZDownloader
Složka Nalezeno : C:\Users\vojak3\AppData\Roaming\Fighters
Složka Nalezeno : C:\Users\vojak3\AppData\Roaming\Mozilla\Firefox\Profiles\qbpduz4o.default\Extensions\3mQzrr@nvU.org
Složka Nalezeno : C:\Users\vojak3\AppData\Roaming\Mozilla\Firefox\Profiles\qbpduz4o.default\Extensions\B@Cb.net
Složka Nalezeno : C:\Users\vojak3\AppData\Roaming\Mozilla\Firefox\Profiles\qbpduz4o.default\Extensions\OQb@c.com
Složka Nalezeno : C:\Users\vojak3\AppData\Roaming\Mozilla\Firefox\Profiles\qbpduz4o.default\Extensions\sweetsearch@gmail.com
Složka Nalezeno : C:\Users\vojak3\AppData\Roaming\OpenCandy
Složka Nalezeno : C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\Fighters
Soubor Nalezeno : C:\Users\vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Local Storage\hxxp_websearch.goodforsearch.info_0.localstorage
Soubor Nalezeno : C:\Users\vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Local Storage\hxxp_websearch.goodforsearch.info_0.localstorage-journal
Soubor Nalezeno : C:\Users\vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Local Storage\chrome-extension_cmaiofennmphjldldcpphcechfnnohja_0.localstorage
Soubor Nalezeno : C:\Users\vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Local Storage\chrome-extension_cmaiofennmphjldldcpphcechfnnohja_0.localstorage-journal
Soubor Nalezeno : C:\Users\vojak3\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.mystartsearch.com_0.localstorage
Soubor Nalezeno : C:\Users\vojak3\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.mystartsearch.com_0.localstorage-journal
Soubor Nalezeno : C:\Users\vojak3\AppData\Roaming\Mozilla\Firefox\Profiles\qbpduz4o.default\searchplugins\mystartsearch.xml
Soubor Nalezeno : C:\Users\vojak3\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_www.mystartsearch.com_0.localstorage
Soubor Nalezeno : C:\Users\vojak3\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_www.mystartsearch.com_0.localstorage-journal
Soubor Nalezeno : C:\Windows\System32\drivers\{4a053818-d714-4ae9-a858-ecc472a00067}Gw64.sys

***** [ Naplánované úlohy ] *****


***** [ Zástupci ] *****


***** [ Registry ] *****

Hodnota Nalezeno : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [sweetsearch@gmail.com]
Klíč Nalezeno : HKCU\Software\APN PIP
Klíč Nalezeno : HKCU\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
Klíč Nalezeno : HKCU\Software\AppDataLow\{4A0F38A9-FE55-4B89-B73F-E60FDC0F72E9}
Klíč Nalezeno : HKCU\Software\Fighters
Klíč Nalezeno : HKCU\Software\HomeTab
Klíč Nalezeno : HKCU\Software\Linkey
Klíč Nalezeno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Klíč Nalezeno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{BB82DE59-BC4C-4172-9AC4-73315F71CFFE}
Klíč Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP
Klíč Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\IminentToolbar
Klíč Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Linkey
Klíč Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
Klíč Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Vosteran.com
Klíč Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\WajIntEnhance
Klíč Nalezeno : HKCU\Software\Mozilla\Extends
Klíč Nalezeno : HKCU\Software\SearchProtectWS
Klíč Nalezeno : HKCU\Software\simplytech
Klíč Nalezeno : HKCU\Software\TNT2
Klíč Nalezeno : HKCU\Software\WajIntEnhance
Klíč Nalezeno : [x64] HKCU\Software\APN PIP
Klíč Nalezeno : [x64] HKCU\Software\Fighters
Klíč Nalezeno : [x64] HKCU\Software\HomeTab
Klíč Nalezeno : [x64] HKCU\Software\Linkey
Klíč Nalezeno : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Klíč Nalezeno : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{BB82DE59-BC4C-4172-9AC4-73315F71CFFE}
Klíč Nalezeno : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{BB82DE59-BC4C-4172-9AC4-73315F71CFFE}
Klíč Nalezeno : [x64] HKCU\Software\SearchProtectWS
Klíč Nalezeno : [x64] HKCU\Software\simplytech
Klíč Nalezeno : [x64] HKCU\Software\TNT2
Klíč Nalezeno : [x64] HKCU\Software\WajIntEnhance
Klíč Nalezeno : HKLM\SOFTWARE\{12A61307-94CD-4F8E-94BC-918E511FAA81}
Klíč Nalezeno : HKLM\SOFTWARE\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
Klíč Nalezeno : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Klíč Nalezeno : HKLM\SOFTWARE\{4A0F38A9-FE55-4B89-B73F-E60FDC0F72E9}
Klíč Nalezeno : HKLM\SOFTWARE\9f0d4c93-41f6-c36f-f934-644797740556
Klíč Nalezeno : HKLM\SOFTWARE\AskPartnerNetwork
Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{7f8a0050-b7b3-41ff-b1b1-4d498ca4adb2}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{a9b653c8-4ce8-45db-9e42-70db6f4501c4}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{d51788df-b66b-4759-978d-1f67e1270a66}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\P7f8a0050_b7b3_41ff_b1b1_4d498ca4adb2_.P7f8a0050_b7b3_41ff_b1b1_4d498ca4adb2_
Klíč Nalezeno : HKLM\SOFTWARE\Classes\P7f8a0050_b7b3_41ff_b1b1_4d498ca4adb2_.P7f8a0050_b7b3_41ff_b1b1_4d498ca4adb2_.9
Klíč Nalezeno : HKLM\SOFTWARE\Classes\Pa9b653c8_4ce8_45db_9e42_70db6f4501c4_.Pa9b653c8_4ce8_45db_9e42_70db6f4501c4_
Klíč Nalezeno : HKLM\SOFTWARE\Classes\Pa9b653c8_4ce8_45db_9e42_70db6f4501c4_.Pa9b653c8_4ce8_45db_9e42_70db6f4501c4_.9
Klíč Nalezeno : HKLM\SOFTWARE\Classes\Pd51788df_b66b_4759_978d_1f67e1270a66_.Pd51788df_b66b_4759_978d_1f67e1270a66_
Klíč Nalezeno : HKLM\SOFTWARE\Classes\Pd51788df_b66b_4759_978d_1f67e1270a66_.Pd51788df_b66b_4759_978d_1f67e1270a66_.9
Klíč Nalezeno : HKLM\SOFTWARE\Classes\S
Klíč Nalezeno : HKLM\SOFTWARE\Classes\TypeLib\{3E52324B-66BF-44AE-A8C5-2DB48E90E729}
Klíč Nalezeno : HKLM\SOFTWARE\Conduit
Klíč Nalezeno : HKLM\SOFTWARE\Fighters
Klíč Nalezeno : HKLM\SOFTWARE\Iminent
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB82DE59-BC4C-4172-9AC4-73315F71CFFE}
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7f8a0050-b7b3-41ff-b1b1-4d498ca4adb2}
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{a9b653c8-4ce8-45db-9e42-70db6f4501c4}
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d51788df-b66b-4759-978d-1f67e1270a66}
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7f8a0050-b7b3-41ff-b1b1-4d498ca4adb2}
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{a9b653c8-4ce8-45db-9e42-70db6f4501c4}
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{d51788df-b66b-4759-978d-1f67e1270a66}
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IminentToolbar
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Linkey
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Vosteran.com
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WajIntEnhance
Klíč Nalezeno : HKLM\SOFTWARE\mystartsearchSoftware
Klíč Nalezeno : HKLM\SOFTWARE\SearchProtect
Klíč Nalezeno : HKLM\SOFTWARE\SpeedBit
Klíč Nalezeno : HKLM\SOFTWARE\Uniblue
Klíč Nalezeno : HKLM\SOFTWARE\WajIntEnhance
Klíč Nalezeno : [x64] HKLM\SOFTWARE\Classes\CLSID\{7f8a0050-b7b3-41ff-b1b1-4d498ca4adb2}
Klíč Nalezeno : [x64] HKLM\SOFTWARE\Classes\CLSID\{a9b653c8-4ce8-45db-9e42-70db6f4501c4}
Klíč Nalezeno : [x64] HKLM\SOFTWARE\Classes\CLSID\{d51788df-b66b-4759-978d-1f67e1270a66}
Klíč Nalezeno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Klíč Nalezeno : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7f8a0050-b7b3-41ff-b1b1-4d498ca4adb2}
Klíč Nalezeno : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{a9b653c8-4ce8-45db-9e42-70db6f4501c4}
Klíč Nalezeno : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d51788df-b66b-4759-978d-1f67e1270a66}

***** [ Prohlížeče ] *****

-\\ Internet Explorer v11.0.9600.17728

Nastavení Nalezeno : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxp://websearch.goodforsearch.info/?pi ... Z&unqvl=86
Nastavení Nalezeno : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL] - hxxp://www.mystartsearch.com/?type=hp&t ... 9_08FD9815
Nastavení Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] - hxxp://www.mystartsearch.com/web/?type= ... 8FD9815&q={searchTerms}
Nastavení Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL] - hxxp://www.mystartsearch.com/?type=hp&t ... 9_08FD9815
Nastavení Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] - hxxp://websearch.goodforsearch.info/?pi ... Z&unqvl=86
Nastavení Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] - hxxp://www.mystartsearch.com/web/?type= ... 8FD9815&q={searchTerms}
Nastavení Nalezeno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] - hxxp://www.mystartsearch.com/web/?type= ... 8FD9815&q={searchTerms}
Nastavení Nalezeno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL] - hxxp://www.mystartsearch.com/?type=hp&t ... 9_08FD9815
Nastavení Nalezeno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] - hxxp://www.mystartsearch.com/?type=hp&t ... 9_08FD9815
Nastavení Nalezeno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] - hxxp://www.mystartsearch.com/web/?type= ... 8FD9815&q={searchTerms}

-\\ Mozilla Firefox v37.0.2 (x86 cs)

[qbpduz4o.default] - Řádek Nalezeno : user_pref("browser.search.defaultenginename", "mystartsearch");
[qbpduz4o.default] - Řádek Nalezeno : user_pref("browser.search.defaultenginename,S", "WebSearch");
[qbpduz4o.default] - Řádek Nalezeno : user_pref("browser.search.defaulturl", "hxxp://websearch.goodforsearch.info/?pid=22159&r=2015/04/22&hid=4458268914846215921&lg=EN&cc=CZ&unqvl=86&l=1&q=");
[qbpduz4o.default] - Řádek Nalezeno : user_pref("browser.search.order.1", "WebSearch");
[qbpduz4o.default] - Řádek Nalezeno : user_pref("browser.search.order.1,S", "WebSearch");
[qbpduz4o.default] - Řádek Nalezeno : user_pref("browser.search.searchengine.alias", "mystartsearch");
[qbpduz4o.default] - Řádek Nalezeno : user_pref("browser.search.searchengine.iconURL", "hxxp://www.mystartsearch.com/favicon.ico");
[qbpduz4o.default] - Řádek Nalezeno : user_pref("browser.search.searchengine.name", "mystartsearch");
[qbpduz4o.default] - Řádek Nalezeno : user_pref("browser.search.searchengine.url", "hxxp://www.mystartsearch.com/web/?type=ds&ts=1429720728&from=wpc&uid=395049983_1052499_08FD9815&q={searchTerms}");
[qbpduz4o.default] - Řádek Nalezeno : user_pref("browser.search.selectedEngine", "mystartsearch");
[qbpduz4o.default] - Řádek Nalezeno : user_pref("browser.search.selectedEngine,S", "WebSearch");
[qbpduz4o.default] - Řádek Nalezeno : user_pref("keyword.URL", "hxxp://websearch.goodforsearch.info/?pid=22159&r=2015/04/22&hid=4458268914846215921&lg=EN&cc=CZ&unqvl=86&l=1&q=");

-\\ Google Chrome v42.0.2311.90

[C:\Users\vojak3\AppData\Local\Google\Chrome\User Data\Default\Web data] - Nalezeno [Search Provider] : hxxp://www.mystartsearch.com/web/?type= ... 8FD9815&q={searchTerms}
[C:\Users\vojak3\AppData\Local\Google\Chrome\User Data\Default\Web data] - Nalezeno [Search Provider] : hxxp://websearch.goodforsearch.info/?l=1&q={searchTerms}&pid=22159&r=2015/04/22&hid=4458268914846215921&lg=EN&cc=CZ&unqvl=86
[C:\Users\vojak3\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Nalezeno [Extension] : nmmhkkegccagdldgiimedpiccmgmieda
[C:\Users\vojak3\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Nalezeno [Startup_URLs] : hxxp://www.mystartsearch.com/?type=hp&t ... 9_08FD9815
[C:\Users\vojak3\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Nalezeno [Default_Search_Provider_Data] : hxxp://www.mystartsearch.com/web/?type= ... 8FD9815&q={searchTerms}

-\\ Comodo Dragon v36.1.1.22

[C:\Users\vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Preferences] - Nalezeno [Extension] : cmaiofennmphjldldcpphcechfnnohja
[C:\Users\vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Preferences] - Nalezeno [Startup_URLs] : hxxp://websearch.goodforsearch.info/?pi ... Z&unqvl=86

-\\ Opera v28.0.1750.51

[C:\Users\vojak3\AppData\Roaming\Opera Software\Opera Stable\Preferences] - Nalezeno [Startup_URLs] : hxxp://www.mystartsearch.com/?type=hp&t ... 9_08FD9815

*************************

AdwCleaner[R0].txt - [14762 bytů] - [22/04/2015 20:27:54]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [14821 bytů] ##########


# AdwCleaner v4.201 - Log vytvořen 22/04/2015 v 20:32:17
# Aktualizováno 08/04/2015 by Xplode
# Databáze : 2015-04-22.1 [Server]
# Operační system : Windows 7 Ultimate Service Pack 1 (x64)
# Uživatelské jméno : vojak3 - VOJAK3-PC
# Spuštěno z : C:\Users\vojak3\Downloads\adwcleaner_4.201.exe
# Nastavení : Čištění

***** [ Služby ] *****

Služba Smazáno : {4a053818-d714-4ae9-a858-ecc472a00067}Gw64

***** [ Soubory / Složky ] *****

Složka Smazáno : C:\ProgramData\baidu
Složka Smazáno : C:\ProgramData\Fighters
Složka Smazáno : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EZDownloader
Složka Smazáno : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fighters
Složka Smazáno : C:\Program Files (x86)\Fighters
Složka Smazáno : C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\Fighters
Složka Smazáno : C:\Users\vojak3\AppData\Local\Fighters
Složka Smazáno : C:\Users\vojak3\AppData\Roaming\EZDownloader
Složka Smazáno : C:\Users\vojak3\AppData\Roaming\OpenCandy
Složka Smazáno : C:\Users\vojak3\AppData\Roaming\Fighters
Složka Smazáno : C:\Users\vojak3\AppData\Roaming\Mozilla\Firefox\Profiles\qbpduz4o.default\Extensions\sweetsearch@gmail.com
Složka Smazáno : C:\Users\vojak3\AppData\Roaming\Mozilla\Firefox\Profiles\qbpduz4o.default\Extensions\3mQzrr@nvU.org
Složka Smazáno : C:\Users\vojak3\AppData\Roaming\Mozilla\Firefox\Profiles\qbpduz4o.default\Extensions\B@Cb.net
Složka Smazáno : C:\Users\vojak3\AppData\Roaming\Mozilla\Firefox\Profiles\qbpduz4o.default\Extensions\OQb@c.com
Složka Smazáno : C:\Users\vojak3\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
Složka Smazáno : C:\Users\vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cmaiofennmphjldldcpphcechfnnohja
Soubor Smazáno : C:\Users\vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Local Storage\chrome-extension_cmaiofennmphjldldcpphcechfnnohja_0.localstorage
Soubor Smazáno : C:\Users\vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Local Storage\chrome-extension_cmaiofennmphjldldcpphcechfnnohja_0.localstorage-journal
Soubor Smazáno : C:\Windows\System32\drivers\{4a053818-d714-4ae9-a858-ecc472a00067}Gw64.sys
Soubor Smazáno : C:\Users\vojak3\AppData\Roaming\Mozilla\Firefox\Profiles\qbpduz4o.default\searchplugins\mystartsearch.xml
Soubor Smazáno : C:\Users\vojak3\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.mystartsearch.com_0.localstorage
Soubor Smazáno : C:\Users\vojak3\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.mystartsearch.com_0.localstorage-journal
Soubor Smazáno : C:\Users\vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Local Storage\hxxp_websearch.goodforsearch.info_0.localstorage
Soubor Smazáno : C:\Users\vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Local Storage\hxxp_websearch.goodforsearch.info_0.localstorage-journal
Soubor Smazáno : C:\Users\vojak3\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_www.mystartsearch.com_0.localstorage
Soubor Smazáno : C:\Users\vojak3\AppData\Roaming\Opera Software\Opera Stable\Local Storage\hxxp_www.mystartsearch.com_0.localstorage-journal

***** [ Naplánované úlohy ] *****


***** [ Zástupci ] *****


***** [ Registry ] *****

Hodnota Smazáno : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [sweetsearch@gmail.com]
Klíč Smazáno : HKLM\SOFTWARE\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Klíč Smazáno : HKLM\SOFTWARE\Classes\S
Klíč Smazáno : HKCU\Software\Mozilla\Extends
Klíč Smazáno : HKLM\SOFTWARE\Classes\P7f8a0050_b7b3_41ff_b1b1_4d498ca4adb2_.P7f8a0050_b7b3_41ff_b1b1_4d498ca4adb2_
Klíč Smazáno : HKLM\SOFTWARE\Classes\P7f8a0050_b7b3_41ff_b1b1_4d498ca4adb2_.P7f8a0050_b7b3_41ff_b1b1_4d498ca4adb2_.9
Klíč Smazáno : HKLM\SOFTWARE\Classes\Pa9b653c8_4ce8_45db_9e42_70db6f4501c4_.Pa9b653c8_4ce8_45db_9e42_70db6f4501c4_
Klíč Smazáno : HKLM\SOFTWARE\Classes\Pa9b653c8_4ce8_45db_9e42_70db6f4501c4_.Pa9b653c8_4ce8_45db_9e42_70db6f4501c4_.9
Klíč Smazáno : HKLM\SOFTWARE\Classes\Pd51788df_b66b_4759_978d_1f67e1270a66_.Pd51788df_b66b_4759_978d_1f67e1270a66_
Klíč Smazáno : HKLM\SOFTWARE\Classes\Pd51788df_b66b_4759_978d_1f67e1270a66_.Pd51788df_b66b_4759_978d_1f67e1270a66_.9
Klíč Smazáno : HKLM\SOFTWARE\9f0d4c93-41f6-c36f-f934-644797740556
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{7f8a0050-b7b3-41ff-b1b1-4d498ca4adb2}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{a9b653c8-4ce8-45db-9e42-70db6f4501c4}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{d51788df-b66b-4759-978d-1f67e1270a66}
Klíč Smazáno : HKLM\SOFTWARE\Classes\TypeLib\{3E52324B-66BF-44AE-A8C5-2DB48E90E729}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7f8a0050-b7b3-41ff-b1b1-4d498ca4adb2}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{a9b653c8-4ce8-45db-9e42-70db6f4501c4}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d51788df-b66b-4759-978d-1f67e1270a66}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7f8a0050-b7b3-41ff-b1b1-4d498ca4adb2}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{a9b653c8-4ce8-45db-9e42-70db6f4501c4}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{d51788df-b66b-4759-978d-1f67e1270a66}
Klíč Smazáno : [x64] HKLM\SOFTWARE\Classes\CLSID\{7f8a0050-b7b3-41ff-b1b1-4d498ca4adb2}
Klíč Smazáno : [x64] HKLM\SOFTWARE\Classes\CLSID\{a9b653c8-4ce8-45db-9e42-70db6f4501c4}
Klíč Smazáno : [x64] HKLM\SOFTWARE\Classes\CLSID\{d51788df-b66b-4759-978d-1f67e1270a66}
Klíč Smazáno : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7f8a0050-b7b3-41ff-b1b1-4d498ca4adb2}
Klíč Smazáno : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{a9b653c8-4ce8-45db-9e42-70db6f4501c4}
Klíč Smazáno : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d51788df-b66b-4759-978d-1f67e1270a66}
Klíč Smazáno : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{BB82DE59-BC4C-4172-9AC4-73315F71CFFE}
Klíč Smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB82DE59-BC4C-4172-9AC4-73315F71CFFE}
Klíč Smazáno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Klíč Smazáno : HKCU\Software\APN PIP
Klíč Smazáno : HKCU\Software\HomeTab
Klíč Smazáno : HKCU\Software\simplytech
Klíč Smazáno : HKCU\Software\TNT2
Klíč Smazáno : HKCU\Software\Fighters
Klíč Smazáno : HKCU\Software\WajIntEnhance
Klíč Smazáno : HKCU\Software\SearchProtectWS
Klíč Smazáno : HKCU\Software\Linkey
Klíč Smazáno : HKCU\Software\AppDataLow\{4A0F38A9-FE55-4B89-B73F-E60FDC0F72E9}
Klíč Smazáno : HKCU\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
Klíč Smazáno : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Klíč Smazáno : HKLM\SOFTWARE\{4A0F38A9-FE55-4B89-B73F-E60FDC0F72E9}
Klíč Smazáno : HKLM\SOFTWARE\AskPartnerNetwork
Klíč Smazáno : HKLM\SOFTWARE\Conduit
Klíč Smazáno : HKLM\SOFTWARE\Iminent
Klíč Smazáno : HKLM\SOFTWARE\SearchProtect
Klíč Smazáno : HKLM\SOFTWARE\Uniblue
Klíč Smazáno : HKLM\SOFTWARE\mystartsearchSoftware
Klíč Smazáno : HKLM\SOFTWARE\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
Klíč Smazáno : HKLM\SOFTWARE\Fighters
Klíč Smazáno : HKLM\SOFTWARE\{12A61307-94CD-4F8E-94BC-918E511FAA81}
Klíč Smazáno : HKLM\SOFTWARE\WajIntEnhance
Klíč Smazáno : HKLM\SOFTWARE\SpeedBit
Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP
Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\IminentToolbar
Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\WajIntEnhance
Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Vosteran.com
Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Linkey
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IminentToolbar
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WajIntEnhance
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Vosteran.com
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Linkey

***** [ Prohlížeče ] *****

-\\ Internet Explorer v11.0.9600.17728

Nastavení Obnoveno : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Nastavení Obnoveno : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
Nastavení Obnoveno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Nastavení Obnoveno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Nastavení Obnoveno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Nastavení Obnoveno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Nastavení Obnoveno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Nastavení Obnoveno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Nastavení Obnoveno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Nastavení Obnoveno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]

-\\ Mozilla Firefox v37.0.2 (x86 cs)

[qbpduz4o.default\prefs.js] - Řádek Smazáno : user_pref("browser.search.defaultenginename", "mystartsearch");
[qbpduz4o.default\prefs.js] - Řádek Smazáno : user_pref("browser.search.defaultenginename,S", "WebSearch");
[qbpduz4o.default\prefs.js] - Řádek Smazáno : user_pref("browser.search.defaulturl", "hxxp://websearch.goodforsearch.info/?pid=22159&r=2015/04/22&hid=4458268914846215921&lg=EN&cc=CZ&unqvl=86&l=1&q=");
[qbpduz4o.default\prefs.js] - Řádek Smazáno : user_pref("browser.search.order.1", "WebSearch");
[qbpduz4o.default\prefs.js] - Řádek Smazáno : user_pref("browser.search.order.1,S", "WebSearch");
[qbpduz4o.default\prefs.js] - Řádek Smazáno : user_pref("browser.search.searchengine.alias", "mystartsearch");
[qbpduz4o.default\prefs.js] - Řádek Smazáno : user_pref("browser.search.searchengine.iconURL", "hxxp://www.mystartsearch.com/favicon.ico");
[qbpduz4o.default\prefs.js] - Řádek Smazáno : user_pref("browser.search.searchengine.name", "mystartsearch");
[qbpduz4o.default\prefs.js] - Řádek Smazáno : user_pref("browser.search.searchengine.url", "hxxp://www.mystartsearch.com/web/?type=ds&ts=1429720728&from=wpc&uid=395049983_1052499_08FD9815&q={searchTerms}");
[qbpduz4o.default\prefs.js] - Řádek Smazáno : user_pref("browser.search.selectedEngine", "mystartsearch");
[qbpduz4o.default\prefs.js] - Řádek Smazáno : user_pref("browser.search.selectedEngine,S", "WebSearch");
[qbpduz4o.default\prefs.js] - Řádek Smazáno : user_pref("keyword.URL", "hxxp://websearch.goodforsearch.info/?pid=22159&r=2015/04/22&hid=4458268914846215921&lg=EN&cc=CZ&unqvl=86&l=1&q=");

-\\ Google Chrome v42.0.2311.90

[C:\Users\vojak3\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://www.mystartsearch.com/web/?type= ... 8FD9815&q={searchTerms}
[C:\Users\vojak3\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://websearch.goodforsearch.info/?l=1&q={searchTerms}&pid=22159&r=2015/04/22&hid=4458268914846215921&lg=EN&cc=CZ&unqvl=86
[C:\Users\vojak3\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Extension] : nmmhkkegccagdldgiimedpiccmgmieda
[C:\Users\vojak3\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Startup_URLs] : hxxp://www.mystartsearch.com/?type=hp&t ... 9_08FD9815
[C:\Users\vojak3\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Default_Search_Provider_Data] : hxxp://www.mystartsearch.com/web/?type= ... 8FD9815&q={searchTerms}

-\\ Comodo Dragon v36.1.1.22

[C:\Users\vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Preferences] - Smazáno [Extension] : cmaiofennmphjldldcpphcechfnnohja
[C:\Users\vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Preferences] - Smazáno [Startup_URLs] : hxxp://websearch.goodforsearch.info/?pi ... Z&unqvl=86

-\\ Opera v28.0.1750.51

[C:\Users\vojak3\AppData\Roaming\Opera Software\Opera Stable\Preferences] - Smazáno [Startup_URLs] : hxxp://www.mystartsearch.com/?type=hp&t ... 9_08FD9815

*************************

AdwCleaner[R0].txt - [14988 bytů] - [22/04/2015 20:27:54]
AdwCleaner[R1].txt - [15136 bytů] - [22/04/2015 20:30:53]
AdwCleaner[S0].txt - [13240 bytů] - [22/04/2015 20:32:17]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [13299 bytů] ##########



Zoek.exe v5.0.0.0 Updated 08-April-2015
Tool run by vojak3 on st 22.04.2015 at 20:39:19,00.
Microsoft Windows 7 Ultimate 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\vojak3\Downloads\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

22.4.2015 20:40:57 Zoek.exe System Restore Point Created Successfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

# localhost name resolution is handled within DNS itself.
127.0.0.1 localhost
::1 localhost

==== Empty Folders Check ======================

C:\Users\vojak3\AppData\Roaming\Publish Providers deleted successfully
C:\Users\vojak3\AppData\Local\Adobe deleted successfully

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== FireFox Fix ======================

Deleted from C:\Users\vojak3\AppData\Roaming\Mozilla\Firefox\Profiles\qbpduz4o.default\prefs.js:
user_pref("browser.startup.homepage", "https://www.seznam.cz");
user_pref("browser.search.useDBForOrder", true);

Added to C:\Users\vojak3\AppData\Roaming\Mozilla\Firefox\Profiles\qbpduz4o.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

ProfilePath: C:\Users\vojak3\AppData\Roaming\Mozilla\Firefox\Profiles\qbpduz4o.default

user.js not found
---- Lines gate snapper removed from prefs.js ----
user_pref("extensions.gate snapper.asul", "1429355441941");
user_pref("extensions.gate snapper.irl", true);
user_pref("extensions.gate snapper.is", "tr1cz");
user_pref("extensions.gate snapper.ug", "93CBAD39-5991-4E89-AB47-604D74DA225C");
---- Lines Sweet removed from prefs.js ----
user_pref("extensions.sweetsearch@gmail.com.install-event-fired", true);
---- Lines extensions.GDCAsCP4EBA7Q0as removed from prefs.js ----
user_pref("extensions.GDCAsCP4EBA7Q0as.epoch", "1");
user_pref("extensions.GDCAsCP4EBA7Q0as.scode", "void(0);");
user_pref("extensions.GDCAsCP4EBA7Q0as.url", "http://syncjpionline.co.il/sync/?q=C6qUojk6qds6rHg7qTg6rHsFrds8pjCMAyVUojn9qjYGqTY4rjn5qdgGrjk4rTwMCMlNh
---- Lines extensions.Whv5z4rJQwIvJJbj removed from prefs.js ----
user_pref("extensions.Whv5z4rJQwIvJJbj.epoch", "1");
user_pref("extensions.Whv5z4rJQwIvJJbj.scode", "void(0);");
user_pref("extensions.Whv5z4rJQwIvJJbj.url", "http://unitive.info/sync/?q=C6qUojs4pdk8rjrFqjY9qjnFqdn4pchOAen0qdn8pds7pdUFqdY9qTsFqjUGrihGheDUojw8rdnG
---- Lines extensions.jEGChInNiX5Q0L12 removed from prefs.js ----
user_pref("extensions.jEGChInNiX5Q0L12.epoch", "1");
user_pref("extensions.jEGChInNiX5Q0L12.scode", "void(0);");
user_pref("extensions.jEGChInNiX5Q0L12.url", "http://getfilenow.co.il/sync/?q=C6qUojs4pdk8rjrFqjY9qjnFqdn4pchOAen0qdn8pds7pdUFqdY9qTsFqjUGrihGheDUojw8
---- FireFox user.js and prefs.js backups ----

prefs_22.04.2015_2102_.backup

==== Deleting Files \ Folders ======================

C:\PROGRA~2\Raptr deleted
C:\PROGRA~3\akmjjldhlcahkigdpoedjicappmfhmpm deleted
C:\PROGRA~3\jnjggonlnfhciameaoeolanmpfkfnkdl deleted
C:\windows\SysNative\Tasks\Bidaily Synchronize Task deleted
C:\PROGRA~3\{8c3f0776-7fb8-0ad9-8c3f-f07767fb1dd9} deleted
C:\PROGRA~3\{ef0cae81-762f-d079-ef0c-cae81762ba05} deleted
C:\PROGRA~3\10187340058212394915 deleted
C:\PROGRA~3\ProductData deleted
C:\Windows\SysNative\config\systemprofile\Searches deleted
C:\windows\SysNative\GroupPolicy\machine deleted
C:\windows\SysNative\GroupPolicy\gpt.ini deleted
"C:\PROGRA~3\Package Cache" deleted

==== Firefox Start and Search pages ======================

ProfilePath: C:\Users\vojak3\AppData\Roaming\Mozilla\Firefox\Profiles\qbpduz4o.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [17.04.2015 20:23]

==== Firefox Extensions ======================

ProfilePath: C:\Users\vojak3\AppData\Roaming\Mozilla\Firefox\Profiles\qbpduz4o.default
- Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF

AppDir: C:\Program Files (x86)\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
- Skype Click to Call - %AppDir%\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi

==== Firefox Plugins ======================

Profilepath: C:\Users\vojak3\AppData\Roaming\Mozilla\Firefox\Profiles\qbpduz4o.default
9AE02005247DA91AB1743F5208DBEF76 - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_169.dll - Shockwave Flash


==== Chromium Look ======================

Google Chrome Version: 42.0.2311.90 (Possible outdated, latest Stable version: 41.0.2272.118) [z-db]

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[17.04.2015 20:23]
lifbcibllhkdhoafpjfnlhfpfgnpldfl - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx[14.07.2014 18:22]

Comodo Drag&Drop Service - vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\aneodkojaglhnkkdbbdnmmmgimlcaogo
Comodo Web Inspector - vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\bdngekjahnmlkinegnhdmmbcfnmbclnn
PrivDog - vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cmaiofennmphjldldcpphcechfnnohja
Comodo Media Downloader - vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dihmnpngfonlhjmgkflpnibiaaliendo
XML Tree - vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\gbammbheopgpmaagmckhpjbfgdfkpadb
Comodo Dragon Browser Light Theme - vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\kglppafajjeikfgmjjegogphhkjnnmgc
Avast Online Security - vojak3\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
Skype Click to Call - vojak3\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl

==== Chromium Startpages ======================

C:\Users\vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Preferences
"homepage": "http://www.seznam.cz/",

C:\Users\vojak3\AppData\Local\Google\Chrome\User Data\Default\Preferences
"homepage": "http://www.seznam.cz/",


==== Chromium Fix ======================

C:\Users\vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\gbammbheopgpmaagmckhpjbfgdfkpadb deleted successfully
C:\Users\vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Local Storage\chrome-extension_gbammbheopgpmaagmckhpjbfgdfkpadb_0.localstorage-journal deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"

==== Reset Google Chrome ======================

C:\Users\vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Preferences was reset successfully
C:\Users\vojak3\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\vojak3\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\vojak3\AppData\Roaming\Opera Software\Opera Stable\Preferences was reset successfully
C:\Users\vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Web Data will be reset at reboot
C:\Users\vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Web Data-journal will be reset at reboot
C:\Users\vojak3\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\vojak3\AppData\Roaming\Opera Software\Opera Stable\Web Data was reset successfully
C:\Users\vojak3\AppData\Roaming\Opera Software\Opera Stable\Web Data-journal was reset successfully

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\Software\wow6432node\Policies\Google deleted successfully

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\vojak3\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Users\vojak3\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\vojak3\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\19ZKP0JN will be deleted at reboot
C:\Users\vojak3\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9Z234N2U will be deleted at reboot
C:\Users\vojak3\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PZ2HRA9M will be deleted at reboot
C:\Users\vojak3\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QBC74BN2 will be deleted at reboot

==== Empty FireFox Cache ======================

C:\Users\vojak3\AppData\Local\Mozilla\Firefox\Profiles\qbpduz4o.default\cache2 emptied successfully

==== Empty Chrome Cache ======================

C:\Users\vojak3\AppData\Local\Opera Software\Opera Stable\Cache emptied successfully
C:\Users\vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Cache emptied successfully
C:\Users\vojak3\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

No Java Cache Found

==== C:\zoek_backup content ======================

C:\zoek_backup (files=55 folders=27 15165798 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\vojak3\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\vojak3\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\Users\vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Web Data" not found
"C:\Users\vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Web Data-journal" not found
"C:\Users\vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Local Storage\chrome-extension_gbammbheopgpmaagmckhpjbfgdfkpadb_0.localstorage" not deleted
"C:\Users\vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Local Extension Settings\gbammbheopgpmaagmckhpjbfgdfkpadb" not found
"C:\Users\vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Local Storage\chrome-extension_gbammbheopgpmaagmckhpjbfgdfkpadb_0.localstorage" not deleted
"C:\Users\vojak3\AppData\Local\Comodo\Dragon\User Data\Default\Local Extension Settings\gbammbheopgpmaagmckhpjbfgdfkpadb" not found
"C:\Users\vojak3\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\19ZKP0JN" not found
"C:\Users\vojak3\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9Z234N2U" not found
"C:\Users\vojak3\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PZ2HRA9M" not found
"C:\Users\vojak3\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QBC74BN2" not found
"C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp\Low" not deleted

==== EOF on st 22.04.2015 at 21:11:12,15 ======================

PC zatim jede v poho jestli bude jěště něco potřeba dál tak to nechám rači otevřene(téma). Jestli ne napiště a já uzamknu, děkuji

Re: Kontrola Logu, HiJackThis

Napsal: 22 dub 2015 21:57
od mople71
Ahoj, ještě dočistíme, prosím zůstaň s námi v kontaktu, dokud ti neřekneme, že je tvůj PC čistý. ;)


Stáhni si MBAM (verzi zadarmo, trial nechceme): http://www.malwarebytes.org/mwb-download/

Nainstaluj, na poslední stránce instalátoru nezapomeň odškrtnout možnost: Povolit bezplatnou zkušební verzi...

Po spuštění se aplikace aktualizuje, poté zvol v horní liště Sken -> vyber Vlastní sken a klikni na Skenovat nyní

Objeví se okno Konfigurace vlastního skenu - vyber všechny disky/diskové oddíly (kromě mechaniky, čtečky,...), v levé liště zatrhni Hledat rootkity a klikni na Spustit sken

Po dokončení skenu klikni na tlačítko Exportovat záznam, log ulož a jeho obsah vlož sem.

Všechny nálezy dej mezitím do karantény.

Re: Kontrola Logu, HiJackThis  Vyřešeno

Napsal: 23 dub 2015 19:40
od vojak3
XXX

Re: Kontrola Logu, HiJackThis

Napsal: 23 dub 2015 19:45
od mople71
Ahoj,

nelegální Windows - je mi líto, ale dle pravidel musím pomoc odmítnout.

Zde končíme. Hezký večer. ;)