Příspěvekod olinka123 » 29 srp 2014 19:01
Zoek.exe v5.0.0.0 Updated 28-08-2014
Tool run by Jiýˇ on p 29. 08. 2014 at 18:45:04,26.
Microsoft Windows 8 6.2.9200 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\JI10BB~1\Desktop\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
29. 8. 2014 18:46:28 Zoek.exe System Restore Point Created Succesfully.
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-409746375-2400753399-3449076528-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} deleted successfully
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
==== FireFox Fix ======================
Deleted from C:\Users\JI10BB~1\AppData\Roaming\Mozilla\Firefox\Profiles\m326y2zn.default\prefs.js:
user_pref("browser.startup.homepage", "http://www.seznam.cz/");
user_pref("browser.search.defaultEngineName", "Centrum.cz");
user_pref("browser.search.defaultenginename", "Centrum.cz");
user_pref("browser.search.selectedEngine", "Centrum.cz");
user_pref("keyword.URL", "http://search.centrum.cz/?charset=UTF-8&channel_id=ch-toolbar-ff,ch-toolbar-ff-searchbox&utm_source=ch-toolbar&utm_medium=ff-centrum-cz&utm_content=toolbar-searchbox&q=");
Added to C:\Users\JI10BB~1\AppData\Roaming\Mozilla\Firefox\Profiles\m326y2zn.default\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);
Deleted from C:\Users\JI10BB~1\AppData\Roaming\Thunderbird\Profiles\eox10i5r.default\prefs.js:
Added to C:\Users\JI10BB~1\AppData\Roaming\Thunderbird\Profiles\eox10i5r.default\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);
ProfilePath: C:\Users\JI10BB~1\AppData\Roaming\Mozilla\Firefox\Profiles\m326y2zn.default
user.js not found
---- FireFox user.js and prefs.js backups ----
prefs_201429.08._1855_.backup
ProfilePath: C:\Users\JI10BB~1\AppData\Roaming\Thunderbird\Profiles\eox10i5r.default
user.js not found
---- FireFox user.js and prefs.js backups ----
prefs_201429.08._1855_.backup
==== Deleting Files \ Folders ======================
C:\PROGRA~2\Mozilla Firefox\defaults\preferences\pref.js deleted
C:\Users\JI10BB~1\AppData\Local\LMIR0001.tmp.bat deleted
C:\Users\JI10BB~1\AppData\Local\LMIR0001.tmp_r.bat deleted
C:\WINDOWS\SysNative\config\systemprofile\Searches deleted
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [05. 08. 2014 03:51]
==== Firefox Extensions ======================
ProfilePath: C:\Users\JI10BB~1\AppData\Roaming\Mozilla\Firefox\Profiles\m326y2zn.default
- Undetermined - C:\Users\JiĹ™Ă\AppData\Roaming\Mozilla\Firefox\Profiles\m326y2zn.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
- avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF
- Undetermined - C:\Users\JiĹ™Ă\AppData\Roaming\Mozilla\Firefox\Profiles\m326y2zn.default\extensions\low_quality_flash@pie2k.com
- Undetermined - C:\Users\JiĹ™Ă\AppData\Roaming\Mozilla\Firefox\Profiles\m326y2zn.default\extensions\toolbar@centrumholdings.com
- esk slovnk pro kontrolu pravopisu - %ProfilePath%\extensions\cs@dictionaries.addons.mozilla.org
- Low Quality Flash - %ProfilePath%\extensions\low_quality_flash@pie2k.com
- Lita Centrum.cz - %ProfilePath%\extensions\toolbar@centrumholdings.com
- Seznam litika - %ProfilePath%\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
- Tiny JavaScript Debugger - %ProfilePath%\extensions\tinyjsdebugger@enigmail.net.xpi
- QuickJava - %ProfilePath%\extensions\{E6C1199F-E687-42da-8C24-E7770CC3AE66}.xpi
- JavaScript Debugger - %ProfilePath%\extensions\{f13b157f-b174-47e7-a34d-4815ddfdfeb8}.xpi
ProfilePath: C:\Users\JI10BB~1\AppData\Roaming\Thunderbird\Profiles\eox10i5r.default
- esk slovnk pro kontrolu pravopisu - %ProfilePath%\extensions\cs@dictionaries.addons.mozilla.org
AppDir: C:\Program Files (x86)\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
==== Firefox Plugins ======================
==== Chrome Look ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[15. 07. 2014 11:45]
Seznam Lištička - Email - JI10BB~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig
Seznam LištiÄŤka - SlovnĂk - JI10BB~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd
avast Online Security - JI10BB~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
Seznam Lištička - Rychlá volba - JI10BB~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak
==== Chromium Startpages ======================
C:\Users\JI10BB~1\AppData\Local\Google\Chrome\User Data\Default\Preferences
"homepage": "http://www.seznam.cz/?clid=12902",
"startup_urls": [ "http://www.google.com/" ],
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/p/?LinkId=255141"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
No DefaultScope Set For HKCU
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/p/?LinkId=255141"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
{487B3A36-82C5-4996-AC19-F237085FCE12} Firmy.cz Url="http://www.firmy.cz/?q={searchTerms}&sourceid=QuickSearch_12902"
{5FD30709-ECC2-4AF5-9201-97EA5B6DD508} Slovnˇk EN/CZ Url="http://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_12902"
{8B2DBE75-1675-41A4-8ADF-3EA869D47F07} Novinky.cz Url="http://www.novinky.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12902"
{9BCD75DF-CDB5-4D99-AB6D-5769D48400BC} Mapy.cz Url="http://www.mapy.cz/?query={searchTerms}&sourceid=QuickSearch_12902"
{9F8B1E55-770B-492C-97FE-6F395D5EE857} Seznam TV Program Url="http://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12902"
{B2C75713-5D6C-407D-BD64-D3B3E16D5F48} Slovnˇk CZ/EN Url="http://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_12902"
{CCC11FA9-0A90-4F4F-9E02-585DC0E847BE} Zbo§ˇ.cz Url="http://www.zbozi.cz/?q={searchTerms}&r=campmoz&sourceid=QuickSearch_12902"
{D1A77E45-DC70-4604-A8CD-92796DCA5D4D} Unknown Url="Not_Found"
{D99E1B12-9398-4755-8262-5554A34089EB} Encyklopedie Seznam Url="http://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_12902"
==== Reset Google Chrome ======================
C:\Users\JI10BB~1\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\JI10BB~1\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-409746375-2400753399-3449076528-1001\Software\Microsoft\Internet Explorer\SearchScopes\{D1A77E45-DC70-4604-A8CD-92796DCA5D4D} deleted successfully
==== Deleting CLSID Registry Values ======================
==== Empty IE Cache ======================
C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\JI10BB~1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\JI10BB~1\Desktop\Programy PORTABLE\Any Video Converter Professional v3.1.5 CZ Portable\[portable.down4share.com] - Any Video Converter Professional v3.1.5\%Internet Cache%\Content.IE5 emptied successfully
C:\Users\JI10BB~1\Desktop\Programy PORTABLE\Format_Factory_2.60_Portable\FormatFactory 2.60\%Internet Cache%\Content.IE5 emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
==== Empty FireFox Cache ======================
C:\Users\JI10BB~1\AppData\Local\Mozilla\Firefox\Profiles\m326y2zn.default\Cache emptied successfully
==== Empty Chrome Cache ======================
C:\Users\JI10BB~1\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=8 folders=1 72021 bytes)
==== Empty Temp Folders ======================
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\JI10BB~1\AppData\Local\Temp will be emptied at reboot
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\WINDOWS\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\WINDOWS\Temp successfully emptied
C:\Users\JI10BB~1\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== EOF on p 29. 08. 2014 at 18:59:44,58 ======================