~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.3 (02.09.2016)
Operating System: Windows 7 Enterprise x64
Ran by Josef (Administrator) on p 19.02.2016 at 13:19:18,43
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
File System: 29
Successfully deleted: C:\ProgramData\iobit\driver booster (Folder)
Successfully deleted: C:\ProgramData\productdata (Folder)
Successfully deleted: C:\Users\Josef\AppData\Roaming\iobit\driver booster (Folder)
Successfully deleted: C:\Users\Josef\AppData\Roaming\productdata (Folder)
Successfully deleted: C:\Windows\system32\Tasks\Driver Booster Scheduler (Task)
Successfully deleted: C:\Windows\system32\Tasks\Driver Booster SkipUAC (Josef) (Task)
Successfully deleted: C:\Windows\system32\Tasks\update-S-1-5-21-4134472019-1251102009-2105723285-1000 (Task)
Successfully deleted: C:\Windows\system32\Tasks\update-sys (Task)
Successfully deleted: C:\Windows\Tasks\update-S-1-5-21-4134472019-1251102009-2105723285-1000.job (Task)
Successfully deleted: C:\Windows\Tasks\update-sys.job (Task)
Successfully deleted: C:\Program Files (x86)\iobit\driver booster (Folder)
Successfully deleted: C:\Users\Josef\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\41SSA8FY (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Josef\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5VGXJCI0 (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Josef\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7M5F96A5 (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Josef\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8I2HGIEE (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Josef\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\C3W2FDUK (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Josef\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D7SK6N34 (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Josef\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FT9UG74T (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Josef\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WWZXHHEW (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\prefetch\AVAST_FREE_ANTIVIRUS_SETUP_ON-38629CCC.pf (File)
Successfully deleted: C:\Windows\prefetch\DRIVERBOOSTER.EXE-137BF219.pf (File)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\41SSA8FY (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5VGXJCI0 (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7M5F96A5 (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8I2HGIEE (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\C3W2FDUK (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D7SK6N34 (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FT9UG74T (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WWZXHHEW (Temporary Internet Files Folder)
Registry: 0
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on p 19.02.2016 at 13:20:48,72
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
RogueKiller V11.0.12.0 (x64) [Feb 15 2016] (Free) by Adlice Software
mail :
http://www.adlice.com/contact/Feedback :
http://forum.adlice.comWebová stránka :
http://www.adlice.com/software/roguekiller/Blog :
http://www.adlice.comOperační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno : Normální režim
Uživatel : Josef [Práva správce]
Started from : C:\Users\Josef\Desktop\RogueKillerX64.exe
Mód : Prohledat -- Datum : 02/19/2016 13:14:20
¤¤¤ Procesy : 0 ¤¤¤
¤¤¤ Registry : 39 ¤¤¤
[PUP] (X64) HKEY_USERS\RK_User_ON_E_53B5\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser | {32099AAC-C132-4136-9E9A-4E364A424E17} : -> Nalezeno
[PUP] (X64) HKEY_USERS\RK_User_ON_E_53B5\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser | {D4027C7F-154A-4066-A1AD-4243D8127440} : -> Nalezeno
[PUP] (X86) HKEY_USERS\RK_User_ON_E_53B5\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser | {32099AAC-C132-4136-9E9A-4E364A424E17} : -> Nalezeno
[PUP] (X86) HKEY_USERS\RK_User_ON_E_53B5\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser | {D4027C7F-154A-4066-A1AD-4243D8127440} : -> Nalezeno
[PUP] (X64) HKEY_USERS\RK_User_ON_E_53B5\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks | {00000000-6E41-4FD3-8538-502F5495E5FC} : -> Nalezeno
[PUP] (X64) HKEY_USERS\RK_User_ON_E_53B5\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks | {95289393-33EA-4F8D-B952-483415B9C955} : -> Nalezeno
[PUP] (X86) HKEY_USERS\RK_User_ON_E_53B5\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks | {00000000-6E41-4FD3-8538-502F5495E5FC} : -> Nalezeno
[PUP] (X86) HKEY_USERS\RK_User_ON_E_53B5\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks | {95289393-33EA-4F8D-B952-483415B9C955} : -> Nalezeno
[PUM.Proxy] (X64) HKEY_USERS\S-1-5-21-4134472019-1251102009-2105723285-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings | ProxyServer : 10.254.254.2:3128 -> Nalezeno
[PUM.Proxy] (X86) HKEY_USERS\S-1-5-21-4134472019-1251102009-2105723285-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings | ProxyServer : 10.254.254.2:3128 -> Nalezeno
[PUM.HomePage] (X64) HKEY_USERS\RK_User_ON_E_53B5\Software\Microsoft\Internet Explorer\Main | Start Page :
https://www.seznam.cz/?clid=22668 -> Nalezeno
[PUM.HomePage] (X86) HKEY_USERS\RK_User_ON_E_53B5\Software\Microsoft\Internet Explorer\Main | Start Page :
https://www.seznam.cz/?clid=22668 -> Nalezeno
[PUM.SearchPage] (X64) HKEY_USERS\RK_User_ON_E_53B5\Software\Microsoft\Internet Explorer\Main | Search Page :
http://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms} -> Nalezeno
[PUM.SearchPage] (X86) HKEY_USERS\RK_User_ON_E_53B5\Software\Microsoft\Internet Explorer\Main | Search Page :
http://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms} -> Nalezeno
[PUM.SearchPage] (X64) HKEY_USERS\RK_User_ON_E_53B5\Software\Microsoft\Internet Explorer\Main | Search Bar :
https://www.seznam.cz/?clid=22668 -> Nalezeno
[PUM.SearchPage] (X86) HKEY_USERS\RK_User_ON_E_53B5\Software\Microsoft\Internet Explorer\Main | Search Bar :
https://www.seznam.cz/?clid=22668 -> Nalezeno
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters | DhcpNameServer : 10.0.0.138 ([X]) -> Nalezeno
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\RK_System_ON_E_244F\ControlSet001\Services\Tcpip\Parameters | DhcpNameServer : 10.0.0.138 ([X]) -> Nalezeno
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters | DhcpNameServer : 10.0.0.138 ([X]) -> Nalezeno
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\RK_System_ON_E_244F\ControlSet002\Services\Tcpip\Parameters | DhcpNameServer : 10.0.0.138 ([X]) -> Nalezeno
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet002\Services\Tcpip\Parameters | DhcpNameServer : 10.0.0.138 ([X]) -> Nalezeno
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\RK_System_ON_E_244F\ControlSet003\Services\Tcpip\Parameters | DhcpNameServer : 10.0.0.138 ([X]) -> Nalezeno
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{576A7672-1808-446F-ADB1-E1C13C819745} | DhcpNameServer : 10.0.0.138 ([X]) -> Nalezeno
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{5AF58BD2-DBA0-42AE-B13A-1A4B15E5BCF3} | NameServer : 172.16.2.6,172.16.2.14 ([X][X]) -> Nalezeno
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\RK_System_ON_E_244F\ControlSet001\Services\Tcpip\Parameters\Interfaces\{2307F284-92D3-4FF8-8FAB-F52A5EDCC509} | DhcpNameServer : 10.0.0.138 ([X]) -> Nalezeno
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\RK_System_ON_E_244F\ControlSet001\Services\Tcpip\Parameters\Interfaces\{9B4EA4CE-1BD5-43D1-A8DD-463C48D50B8D} | DhcpNameServer : 10.0.0.138 ([X]) -> Nalezeno
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\RK_System_ON_E_244F\ControlSet001\Services\Tcpip\Parameters\Interfaces\{D2D7D48D-21D6-445D-9DFC-721C46497CAC} | DhcpNameServer : 10.0.0.138 ([X]) -> Nalezeno
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{576A7672-1808-446F-ADB1-E1C13C819745} | DhcpNameServer : 10.0.0.138 ([X]) -> Nalezeno
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{5AF58BD2-DBA0-42AE-B13A-1A4B15E5BCF3} | NameServer : 172.16.2.6,172.16.2.14 ([X][X]) -> Nalezeno
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\RK_System_ON_E_244F\ControlSet002\Services\Tcpip\Parameters\Interfaces\{2307F284-92D3-4FF8-8FAB-F52A5EDCC509} | DhcpNameServer : 10.0.0.138 ([X]) -> Nalezeno
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\RK_System_ON_E_244F\ControlSet002\Services\Tcpip\Parameters\Interfaces\{9B4EA4CE-1BD5-43D1-A8DD-463C48D50B8D} | DhcpNameServer : 10.0.0.138 ([X]) -> Nalezeno
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet002\Services\Tcpip\Parameters\Interfaces\{576A7672-1808-446F-ADB1-E1C13C819745} | DhcpNameServer : 10.0.0.138 ([X]) -> Nalezeno
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet002\Services\Tcpip\Parameters\Interfaces\{5AF58BD2-DBA0-42AE-B13A-1A4B15E5BCF3} | NameServer : 172.16.2.6,172.16.2.14 ([X][X]) -> Nalezeno
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\RK_System_ON_E_244F\ControlSet003\Services\Tcpip\Parameters\Interfaces\{2307F284-92D3-4FF8-8FAB-F52A5EDCC509} | DhcpNameServer : 10.0.0.138 ([X]) -> Nalezeno
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\RK_System_ON_E_244F\ControlSet003\Services\Tcpip\Parameters\Interfaces\{9B4EA4CE-1BD5-43D1-A8DD-463C48D50B8D} | DhcpNameServer : 10.0.0.138 ([X]) -> Nalezeno
[PUM.Policies] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System | ConsentPromptBehaviorAdmin : 0 -> Nalezeno
[PUM.Policies] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System | ConsentPromptBehaviorAdmin : 0 -> Nalezeno
[PUM.StartMenu] (X64) HKEY_USERS\S-1-5-21-4134472019-1251102009-2105723285-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced | Start_ShowMyGames : 0 -> Nalezeno
[PUM.StartMenu] (X86) HKEY_USERS\S-1-5-21-4134472019-1251102009-2105723285-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced | Start_ShowMyGames : 0 -> Nalezeno
¤¤¤ Úlohy : 0 ¤¤¤
¤¤¤ Soubory : 1 ¤¤¤
[PUP][Složka] C:\ProgramData\{FD6F83C0-EC70-4581-8361-C70CD1AA4B98} -> Nalezeno
¤¤¤ Soubor HOSTS : 0 ¤¤¤
¤¤¤ Antirootkit : 0 (Driver: Nahrán) ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Kontrola MBR : ¤¤¤
+++++ PhysicalDrive0: WDC WD10EZEX-08M2NA0 ATA Device +++++
--- User ---
[MBR] 26344e1f2b68afd32c522def642c61e1
[BSP] fe906e859fc871d214f25c631090fa9b : Empty|VT.Unknown MBR Code
Partition table:
0 - [MAN-MOUNT] EFI system partition | Offset (sectors): 2048 | Size: 100 MB
1 - [MAN-MOUNT] Microsoft reserved partition | Offset (sectors): 206848 | Size: 128 MB
2 - Basic data partition | Offset (sectors): 468992 | Size: 199772 MB
3 - Basic data partition | Offset (sectors): 409602048 | Size: 753868 MB
User = LL1 ... OK
User = LL2 ... OK
+++++ PhysicalDrive1: ST3250620AS ATA Device +++++
--- User ---
[MBR] 42d9585e419fda5dca1e620e0f28fe53
[BSP] d037f9a36fec3940c8654982e9c8ca07 : HP|VT.Unknown MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 60000 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 122882048 | Size: 178473 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
User = LL1 ... OK
User = LL2 ... OK