Po ukončení skenu JRT se na ploše log (JRT.txt) neuložil.
MbAM: Malwarebytes Anti-Malware
http://www.malwarebytes.orgScan Date: 29.6.2014
Scan Time: 9:02:58
Logfile: MWM.txt
Administrator: No
Version: 2.00.2.1012
Malware Database: v2014.03.04.09
Rootkit Database: v2014.02.20.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
OS: Windows Vista Service Pack 1
CPU: x86
File System: NTFS
User: Doma-pc
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 219412
Time Elapsed: 10 min, 25 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 0
(No malicious items detected)
Modules: 0
(No malicious items detected)
Registry Keys: 28
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\CLSID\{1E8D9DDE-D9CD-E5B7-CB2A-03721300C8E5}, , [1138aa55d7a3e74f0635a6e6c140f20e],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{1E8D9DDE-D9CD-E5B7-CB2A-03721300C8E5}, , [1138aa55d7a3e74f0635a6e6c140f20e],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\50Coueppons.50Coueppons, , [1138aa55d7a3e74f0635a6e6c140f20e],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\50Coueppons.50Coueppons.1.8, , [1138aa55d7a3e74f0635a6e6c140f20e],
PUP.Optional.MultiPlug.A, HKU\S-1-5-21-707345232-136388631-313284310-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{1E8D9DDE-D9CD-E5B7-CB2A-03721300C8E5}, , [1138aa55d7a3e74f0635a6e6c140f20e],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{1E8D9DDE-D9CD-E5B7-CB2A-03721300C8E5}, , [1138aa55d7a3e74f0635a6e6c140f20e],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\CLSID\{1E8D9DDE-D9CD-E5B7-CB2A-03721300C8E5}\INPROCSERVER32, , [1138aa55d7a3e74f0635a6e6c140f20e],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\CLSID\{159F6B3B-0019-9975-F4AE-68E6B73D55C3}, , [b891bc433941a2940e2dabe159a82dd3],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{159F6B3B-0019-9975-F4AE-68E6B73D55C3}, , [b891bc433941a2940e2dabe159a82dd3],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\SavveLots.SavveLots, , [b891bc433941a2940e2dabe159a82dd3],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\SavveLots.SavveLots.6.3, , [b891bc433941a2940e2dabe159a82dd3],
PUP.Optional.MultiPlug.A, HKU\S-1-5-21-707345232-136388631-313284310-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{159F6B3B-0019-9975-F4AE-68E6B73D55C3}, , [b891bc433941a2940e2dabe159a82dd3],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{159F6B3B-0019-9975-F4AE-68E6B73D55C3}, , [b891bc433941a2940e2dabe159a82dd3],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\CLSID\{159F6B3B-0019-9975-F4AE-68E6B73D55C3}\INPROCSERVER32, , [b891bc433941a2940e2dabe159a82dd3],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\CLSID\{AF29C82B-2A76-AF4C-E7F3-4DE4E9EDA1AE}, , [55f429d6daa05adc6ad1781407fafd03],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{AF29C82B-2A76-AF4C-E7F3-4DE4E9EDA1AE}, , [55f429d6daa05adc6ad1781407fafd03],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\RouboSavver.RouboSavver, , [55f429d6daa05adc6ad1781407fafd03],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\RouboSavver.RouboSavver.6.1, , [55f429d6daa05adc6ad1781407fafd03],
PUP.Optional.MultiPlug.A, HKU\S-1-5-21-707345232-136388631-313284310-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{AF29C82B-2A76-AF4C-E7F3-4DE4E9EDA1AE}, , [55f429d6daa05adc6ad1781407fafd03],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{AF29C82B-2A76-AF4C-E7F3-4DE4E9EDA1AE}, , [55f429d6daa05adc6ad1781407fafd03],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\CLSID\{AF29C82B-2A76-AF4C-E7F3-4DE4E9EDA1AE}\INPROCSERVER32, , [55f429d6daa05adc6ad1781407fafd03],
PUP.Optional.Spigot, HKLM\SOFTWARE\CLASSES\CLSID\{34A0D84B-CDDC-4EC4-AFDD-4F1DDE1D14E5}, , [86c328d7403acd692c3bf54c748ebd43],
PUP.Optional.Spigot, HKLM\SOFTWARE\CLASSES\CLSID\{34A0D84B-CDDC-4EC4-AFDD-4F1DDE1D14E5}\INPROCSERVER32, , [86c328d7403acd692c3bf54c748ebd43],
PUP.Optional.Spigot, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{34A0D84B-CDDC-4EC4-AFDD-4F1DDE1D14E5}, , [86c328d7403acd692c3bf54c748ebd43],
PUP.Optional.Spigot, HKU\S-1-5-21-707345232-136388631-313284310-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{34A0D84B-CDDC-4EC4-AFDD-4F1DDE1D14E5}, , [86c328d7403acd692c3bf54c748ebd43],
PUP.Optional.GreatSaver.A, HKLM\SOFTWARE\{77D46E27-0E41-4478-87A6-AABE6FBCF252}, , [153433cca2d8be7892397cc3a35f629e],
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{BE360B8B-0F10-CA89-FC84-A5EAB71A6AF8}, , [e56450afc8b25adc07348efe966b8878],
PUP.Optional.Spigot.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{3A787631-66A2-4634-B928-A37E73B58FB6}, , [de6bae517901a3938c213c772bd8c43c],
Registry Values: 1
PUP.Optional.Spigot.A, HKU\S-1-5-21-707345232-136388631-313284310-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|Slick Savings, "C:\Users\Doma-pc\AppData\Roaming\Slick Savings\CouponsHelper.exe", , [de6bae517901a3938c213c772bd8c43c]
Registry Data: 0
(No malicious items detected)
Folders: 8
PUP.Optional.Spigot.A, C:\Users\Doma-pc\AppData\Roaming\Slick Savings, , [de6bae517901a3938c213c772bd8c43c],
PUP.Optional.Spigot.A, C:\Users\Doma-pc\AppData\Local\Slick Savings, , [3a0f956a89f12313fbb54c678c7709f7],
PUP.Optional.SlickSavings.A, C:\Users\Doma-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk, , [d4750bf4532749ed41456f1cee146f91],
PUP.Optional.SlickSavings.A, C:\Users\Doma-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk\2.5_0, , [d4750bf4532749ed41456f1cee146f91],
PUP.Optional.SlickSavings.A, C:\Users\Doma-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk\2.5_0\icons, , [d4750bf4532749ed41456f1cee146f91],
PUP.Optional.SlickSavings.A, C:\Users\Doma-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk\2.5_0\scripts, , [d4750bf4532749ed41456f1cee146f91],
PUP.Optional.SlickSavings.A, C:\Users\Doma-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfndaklgolladniicklehhancnlgocpp, , [80c9d02f601ae452fe89a4e79072f60a],
PUP.Optional.SlickSavings.A, C:\Users\Doma-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfndaklgolladniicklehhancnlgocpp\1.0_2, , [80c9d02f601ae452fe89a4e79072f60a],
Files: 48
PUP.Optional.MultiPlug.A, C:\ProgramData\5u0CouuPoNs\0xcB.dll, , [1138aa55d7a3e74f0635a6e6c140f20e],
PUP.Optional.MultiPlug.A, C:\ProgramData\SavELots\Kc7ly_d.dll, , [b891bc433941a2940e2dabe159a82dd3],
PUP.Optional.MultiPlug.A, C:\ProgramData\RoeboSaver\x0L7i662Q.dll, , [55f429d6daa05adc6ad1781407fafd03],
PUP.Optional.Spigot, C:\Users\Doma-pc\AppData\Roaming\Slick Savings\Coupons.dll, , [86c328d7403acd692c3bf54c748ebd43],
PUP.Optional.MultiPlug.A, C:\ProgramData\5u0CouuPoNs\trzE0F9.tmp, , [d47521def4862a0cab90f89444bd7090],
PUP.Optional.MultiPlug.A, C:\ProgramData\RoeboSaver\x0L7i662Q.exe, , [e56450afc8b25adc07348efe966b8878],
PUP.Optional.MultiPlug.A, C:\ProgramData\SavELots\trz313C.tmp, , [e960679866142b0bc9720e7e2dd42bd5],
Trojan.SProtector, C:\Program Files\trz8E81.tmp, , [1f2adc23abcfb6806d11f7a59a6706fa],
Trojan.SProtector, C:\Program Files\trzEA6D.tmp, , [0a3fb748e694132394e9bedee71adf21],
Trojan.FakeMS, C:\Users\Doma-pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\trz167C.tmp, , [fd4cd52a4535a0965f6aea369b665aa6],
Trojan.FakeMS, C:\Users\Doma-pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\trz2461.tmp, , [72d7e817f189fd391dacd749f30e6799],
Trojan.FakeMS, C:\Users\Doma-pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\trz71E4.tmp, , [7fca55aab8c221159f2a1010bd44a759],
Trojan.FakeMS, C:\Users\Doma-pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\trz72AF.tmp, , [4efb07f842386ccabe0ba77916eb7a86],
Trojan.FakeMS, C:\Users\Doma-pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\trzADEA.tmp, , [65e4946b6a101224c60332eec9380df3],
Trojan.FakeMS, C:\Users\Doma-pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\trzF6FB.tmp, , [f4550ef163171e1865643be519e85aa6],
Trojan.FakeMS, C:\Users\Doma-pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\trzFEF6.tmp, , [4aff1de289f140f63990a080d42d24dc],
Trojan.BitMiner, C:\Windows\System32\dcgmncfhhc.exe, , [6fdaa857e991fa3c6c2e76388f72c63a],
Trojan.BitMiner, C:\Windows\System32\dcgmncggrk.exe, , [b79228d73d3dc67083179915f11045bb],
Trojan.BitMiner, C:\Windows\System32\dcgmncgihywl.exe, , [a7a2bf40b4c6ae887921694552af04fc],
PUP.Optional.OutBrowse, C:\Users\Doma-pc\Downloads\Install Game Setup.exe, , [81c839c64832290dd0063734b050a35d],
Trojan.MSIL, C:\Users\Doma-pc\Downloads\gta-san-andreas-crack.exe, , [4108718e0b6f6accccfb93db68980000],
PUP.Optional.Softonic.A, C:\Users\Doma-pc\Downloads\SoftonicDownloader_for_mcedit.exe, , [de6bf00fef8b3600ec178ed4fe0307f9],
Trojan.Downloader, C:\Users\Doma-pc\Downloads\NFSU-2-Crack-100%.rar, , [62e7f807f08ade58ea592a685ba5946c],
Trojan.Bitcoin.SE, C:\Users\Doma-pc\Downloads\Battlefield-Bad-Company-2-Crack-Fix.zip, , [c287f30c106a0432fb903e22c63b0af6],
Malware.Packer, C:\Users\Doma-pc\Microsoft\DesktopLayer.exe, , [0b3eac53275394a22dd7711c2bd5936d],
Trojan.FakeMS, C:\Users\Doma-pc\Microsoft\DesktopLayermgr.exe, , [84c55fa06713152133965ec2ea173bc5],
Riskware.BitcoinMiner, C:\Users\Public\Other\minerd.exe, , [43069f6045351620d7e1ceb550b145bb],
PUP.Proxy.BCM, C:\Users\Public\Other\mining_proxy.exe, , [69e0b24ded8d81b501e22e35837de41c],
Malware.Trace, C:\Windows\inf\ntvdm.inf, , [e16839c6592133030bfe08a44ab9e51b],
PUP.Optional.Spigot.A, C:\Users\Doma-pc\AppData\Roaming\Slick Savings\coupons_2.4.crx, , [de6bae517901a3938c213c772bd8c43c],
PUP.Optional.Spigot.A, C:\Users\Doma-pc\AppData\Roaming\Slick Savings\Coupons64.dll, , [de6bae517901a3938c213c772bd8c43c],
PUP.Optional.Spigot.A, C:\Users\Doma-pc\AppData\Roaming\Slick Savings\CouponsHelper.exe, , [de6bae517901a3938c213c772bd8c43c],
PUP.Optional.Spigot.A, C:\Users\Doma-pc\AppData\Roaming\Slick Savings\coupons_2.9.xpi, , [de6bae517901a3938c213c772bd8c43c],
PUP.Optional.Spigot.A, C:\Users\Doma-pc\AppData\Roaming\Slick Savings\Uninstall.exe, , [de6bae517901a3938c213c772bd8c43c],
PUP.Optional.Spigot.A, C:\Users\Doma-pc\AppData\Local\Slick Savings\coupons.crx, , [3a0f956a89f12313fbb54c678c7709f7],
PUP.Optional.SlickSavings.A, C:\Users\Doma-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk\2.5_0\background.html, , [d4750bf4532749ed41456f1cee146f91],
PUP.Optional.SlickSavings.A, C:\Users\Doma-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk\2.5_0\config.json, , [d4750bf4532749ed41456f1cee146f91],
PUP.Optional.SlickSavings.A, C:\Users\Doma-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk\2.5_0\manifest.json, , [d4750bf4532749ed41456f1cee146f91],
PUP.Optional.SlickSavings.A, C:\Users\Doma-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk\2.5_0\icons\ss-128.png, , [d4750bf4532749ed41456f1cee146f91],
PUP.Optional.SlickSavings.A, C:\Users\Doma-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk\2.5_0\icons\ss-48.png, , [d4750bf4532749ed41456f1cee146f91],
PUP.Optional.SlickSavings.A, C:\Users\Doma-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk\2.5_0\scripts\background.js, , [d4750bf4532749ed41456f1cee146f91],
PUP.Optional.SlickSavings.A, C:\Users\Doma-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk\2.5_0\scripts\loader_1036.js, , [d4750bf4532749ed41456f1cee146f91],
PUP.Optional.SlickSavings.A, C:\Users\Doma-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk\2.5_0\scripts\utils.js, , [d4750bf4532749ed41456f1cee146f91],
PUP.Optional.SlickSavings.A, C:\Users\Doma-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfndaklgolladniicklehhancnlgocpp\1.0_2\amazon-128.png, , [80c9d02f601ae452fe89a4e79072f60a],
PUP.Optional.SlickSavings.A, C:\Users\Doma-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfndaklgolladniicklehhancnlgocpp\1.0_2\amazon-19.png, , [80c9d02f601ae452fe89a4e79072f60a],
PUP.Optional.SlickSavings.A, C:\Users\Doma-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfndaklgolladniicklehhancnlgocpp\1.0_2\amazon-48.png, , [80c9d02f601ae452fe89a4e79072f60a],
PUP.Optional.SlickSavings.A, C:\Users\Doma-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfndaklgolladniicklehhancnlgocpp\1.0_2\background.js, , [80c9d02f601ae452fe89a4e79072f60a],
PUP.Optional.SlickSavings.A, C:\Users\Doma-pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfndaklgolladniicklehhancnlgocpp\1.0_2\manifest.json, , [80c9d02f601ae452fe89a4e79072f60a],
Physical Sectors: 0
(No malicious items detected)
(end)
RK:
RogueKiller V9.1.0.0 [Jun 23 2014] by Adlice Software
mail :
http://www.adlice.com/contact/Podpora :
http://forum.adlice.comWebové stránky :
http://www.adlice.com/softwares/roguekiller/ :
http://www.adlice.comOperační systém : Windows Vista (6.0.6001 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : Doma-pc [Práva správce]
Mód : Kontrola -- Datum : 06/29/2014 11:33:32
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 14 ¤¤¤
[Suspicious.Path] HKEY_USERS\S-1-5-21-707345232-136388631-313284310-1000\Software\Microsoft\Windows\CurrentVersion\Run | reg_svr : "C:\Windows\System32\regsvr32.exe" /s "C:\Users\Doma-pc\AppData\Roaming\glister\nvm.dll" -> NALEZENO
[Suspicious.Path] HKEY_USERS\S-1-5-21-707345232-136388631-313284310-1000\Software\Microsoft\Windows\CurrentVersion\Run | Slick Savings : "C:\Users\Doma-pc\AppData\Roaming\Slick Savings\CouponsHelper.exe" -> NALEZENO
[PUM.Dns] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters | DhcpNameServer : 213.46.172.37 213.46.172.36 -> NALEZENO
[PUM.Dns] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters | DhcpNameServer : 213.46.172.37 213.46.172.36 -> NALEZENO
[PUM.Dns] HKEY_LOCAL_MACHINE\System\ControlSet002\Services\Tcpip\Parameters | DhcpNameServer : 213.46.172.37 213.46.172.36 -> NALEZENO
[PUM.Dns] HKEY_LOCAL_MACHINE\System\ControlSet003\Services\Tcpip\Parameters | DhcpNameServer : 213.46.172.37 213.46.172.36 -> NALEZENO
[PUM.Dns] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{934A6B6A-DCE4-49CF-8AE9-8A7AF803EB81} | DhcpNameServer : 213.46.172.37 213.46.172.36 -> NALEZENO
[PUM.Dns] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{934A6B6A-DCE4-49CF-8AE9-8A7AF803EB81} | DhcpNameServer : 213.46.172.37 213.46.172.36 -> NALEZENO
[PUM.Dns] HKEY_LOCAL_MACHINE\System\ControlSet002\Services\Tcpip\Parameters\Interfaces\{934A6B6A-DCE4-49CF-8AE9-8A7AF803EB81} | DhcpNameServer : 213.46.172.37 213.46.172.36 -> NALEZENO
[PUM.Dns] HKEY_LOCAL_MACHINE\System\ControlSet003\Services\Tcpip\Parameters\Interfaces\{934A6B6A-DCE4-49CF-8AE9-8A7AF803EB81} | DhcpNameServer : 213.46.172.37 213.46.172.36 -> NALEZENO
[PUM.Policies] HKEY_USERS\S-1-5-21-707345232-136388631-313284310-1000\Software\Microsoft\Windows\CurrentVersion\Policies\System | DisableRegistryTools : 0 -> NALEZENO
[PUM.Policies] HKEY_USERS\S-1-5-21-707345232-136388631-313284310-1000\Software\Microsoft\Windows\CurrentVersion\Policies\System | DisableTaskMgr : 0 -> NALEZENO
[PUM.DesktopIcons] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1 -> NALEZENO
[PUM.DesktopIcons] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1 -> NALEZENO
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ Soubory : 0 ¤¤¤
¤¤¤ Soubor HOSTS : 2 ¤¤¤
[C:\Windows\System32\drivers\etc\hosts] 127.0.0.1 localhost
[C:\Windows\System32\drivers\etc\hosts] ::1 localhost
¤¤¤ Antirootkit : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 3 ¤¤¤
[PUP][CHROME:Addon] Default : Ebay Shopping Assistant by Spigot [hbcennhacfaagdopikcegfcobcadeocj] -> NALEZENO
[PUP][CHROME:Addon] Default : Slick Savings [mhkaekfpcppmmioggniknbnbdbcigpkk] -> NALEZENO
[PUP][CHROME:Addon] Default : Amazon Shopping Assistant by Spigot [pfndaklgolladniicklehhancnlgocpp] -> NALEZENO
¤¤¤ Kontrola MBR : ¤¤¤
+++++ PhysicalDrive0: ST9200827AS +++++
--- User ---
[MBR] 24fa79e2aed1d14e360fb2872ff3b4dd
[BSP] c83f6d3cdea8c218388548da794008b8 : Windows Vista/7/8 MBR Code
Partition table:
0 - [XXXXXX] FAT32-LBA (0x1c) [HIDDEN!] Offset (sectors): 63 | Size: 10001 MB
1 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 20484096 | Size: 180779 MB
User = LL1 ... OK
User = LL2 ... OK