Shooper pro
Re: Shooper pro
vypada to že shooper pro pryč,ani v ovladaich panelech není,jěště mam něco udělat nebo to je vše?děkuji
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Shooper pro
. spusť znovu MbAM a dej Skenovat nyní
- po proběhnutí programu se ti objeví hláška tak klikni na „Vše do karantény(smazat vybrané)“ a na „Exportovat záznam“ a vyber „textový soubor“ , soubor nějak pojmenuj a někam ho ulož. Zkopíruj se celý obsah toho logu.
tohle si neudělal , nebo nedal log..
Zavři všechny programy a prohlížeče. Deaktivuj antivir a firewall.
Prosím, odpoj všechny USB (kromě myši s klávesnice) nebo externí disky z počítače před spuštěním tohoto programu.
Spusť znovu RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Pak klikni na "Prohledat " ,po jeho skončení:
- V záložkách (Registry , Tasks , Web Browser apod.) vše zatrhni (dej zatržítka)
(musíš dát myší zatržítko do toho čtverečku vlevo od registru ap.)
- Klikni na "Smazat"
- Počkej, dokud Status box nezobrazí " Mazání dokončeno "
- Klikni na "Zpráva " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller
Vypni antivir i firewall.
Stáhni
Zoek.exe
a uloz si ho na plochu.
Zavři všechny ostatní programy , okna i prohlížeče.
Spusť Zoek.exe ( u win vista , win7, 8 klikni na něj pravým a vyber : „Spustit jako správce“
- pozor , náběh programu může trvat déle.
Do okna programu vlož skript níže:
Kód: Vybrat vše
autoclean;
emptyclsid;
iedefaults;
FFdefaults;
CHRdefaults;
emptyalltemp;
resethosts;
klikni na Run Script
Program provede sken , opravu, sken i oprava může trvat i více minut ,je třeba posečkat do konce. Do okna neklikej!
Program nabídne restart , potvrď .
Po restartu se může nějaký čas ukázat pouze černá plocha , to je normální. Je třeba počkat až se vytvoří log. Ten si můžeš uložit třeba do dokumentů , jinak se sám ukládá do:
C:\zoek-results.log
Zkopíruj sem celý obsah toho logu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Shooper pro
RogueKiller V10.9.4.0 (x64) [Jul 30 2015] by Adlice Software
mail : http://www.adlice.com/contact/
Feedback : http://forum.adlice.com
Webová stránka : http://www.adlice.com/softwares/roguekiller/
Blog : http://www.adlice.com
Operační systém : Windows 8 (6.2.9200 ) 64 bits version
Spuštěno : Normální režim
Uživatel : oem [Práva správce]
Started from : C:\Users\oem\Desktop\RogueKillerX64.exe
Mód : Smazat -- Datum : 08/06/2015 19:53:52
¤¤¤ Procesy : 0 ¤¤¤
¤¤¤ Registry : 6 ¤¤¤
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-3151455530-778848104-440523627-1000\Software\Microsoft\Internet Explorer\Main | Start Page : http://go.microsoft.com/fwlink/p/?LinkId=255141 -> Nahrazeno (http://go.microsoft.com/fwlink/p/?LinkId=255141)
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-3151455530-778848104-440523627-1000\Software\Microsoft\Internet Explorer\Main | Start Page : http://go.microsoft.com/fwlink/p/?LinkId=255141 -> Nahrazeno (http://go.microsoft.com/fwlink/p/?LinkId=255141)
[PUM.SearchPage] (X64) HKEY_USERS\S-1-5-21-3151455530-778848104-440523627-1000\Software\Microsoft\Internet Explorer\Main | Search Bar : http://search.msn.com/spbasic.htm -> Nahrazeno (http://search.msn.com/spbasic.htm)
[PUM.SearchPage] (X86) HKEY_USERS\S-1-5-21-3151455530-778848104-440523627-1000\Software\Microsoft\Internet Explorer\Main | Search Bar : http://search.msn.com/spbasic.htm -> Nahrazeno (http://search.msn.com/spbasic.htm)
[PUM.StartMenu] (X64) HKEY_USERS\S-1-5-21-3151455530-778848104-440523627-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced | Start_ShowMyGames : 1 -> Nahrazeno (1)
[PUM.StartMenu] (X86) HKEY_USERS\S-1-5-21-3151455530-778848104-440523627-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced | Start_ShowMyGames : 1 -> Nahrazeno (1)
¤¤¤ Úlohy : 0 ¤¤¤
¤¤¤ Soubory : 0 ¤¤¤
¤¤¤ Soubor HOSTS : 0 ¤¤¤
¤¤¤ Antirootkit : 0 (Driver: Nahrán) ¤¤¤
¤¤¤ Webové prohlížeče : 2 ¤¤¤
[PUP][FIREFX:Addon] jz5f9ijo.default-1432920841821 : Seznam li?ti?ka [{ea614400-e918-4741-9a97-7a972ff7c30b}] -> Nevybráno
[PUM.HomePage][FIREFX:Config] jz5f9ijo.default-1432920841821 : user_pref("browser.startup.homepage", "https://www.seznam.cz/"); -> Nevybráno
¤¤¤ Kontrola MBR : ¤¤¤
+++++ PhysicalDrive0: SAMSUNG HD502HJ ATA Device +++++
--- User ---
[MBR] 2d35d44118884082efb757ce3b7fca33
[BSP] 37a3239771826a9248e70b0b8205f8a7 : Windows Vista/7/8|VT.Unknown MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 100 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 206848 | Size: 299450 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
2 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 613480448 | Size: 450 MB
3 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 614402048 | Size: 176938 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
User = LL1 ... OK
User = LL2 ... OK
mail : http://www.adlice.com/contact/
Feedback : http://forum.adlice.com
Webová stránka : http://www.adlice.com/softwares/roguekiller/
Blog : http://www.adlice.com
Operační systém : Windows 8 (6.2.9200 ) 64 bits version
Spuštěno : Normální režim
Uživatel : oem [Práva správce]
Started from : C:\Users\oem\Desktop\RogueKillerX64.exe
Mód : Smazat -- Datum : 08/06/2015 19:53:52
¤¤¤ Procesy : 0 ¤¤¤
¤¤¤ Registry : 6 ¤¤¤
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-3151455530-778848104-440523627-1000\Software\Microsoft\Internet Explorer\Main | Start Page : http://go.microsoft.com/fwlink/p/?LinkId=255141 -> Nahrazeno (http://go.microsoft.com/fwlink/p/?LinkId=255141)
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-3151455530-778848104-440523627-1000\Software\Microsoft\Internet Explorer\Main | Start Page : http://go.microsoft.com/fwlink/p/?LinkId=255141 -> Nahrazeno (http://go.microsoft.com/fwlink/p/?LinkId=255141)
[PUM.SearchPage] (X64) HKEY_USERS\S-1-5-21-3151455530-778848104-440523627-1000\Software\Microsoft\Internet Explorer\Main | Search Bar : http://search.msn.com/spbasic.htm -> Nahrazeno (http://search.msn.com/spbasic.htm)
[PUM.SearchPage] (X86) HKEY_USERS\S-1-5-21-3151455530-778848104-440523627-1000\Software\Microsoft\Internet Explorer\Main | Search Bar : http://search.msn.com/spbasic.htm -> Nahrazeno (http://search.msn.com/spbasic.htm)
[PUM.StartMenu] (X64) HKEY_USERS\S-1-5-21-3151455530-778848104-440523627-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced | Start_ShowMyGames : 1 -> Nahrazeno (1)
[PUM.StartMenu] (X86) HKEY_USERS\S-1-5-21-3151455530-778848104-440523627-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced | Start_ShowMyGames : 1 -> Nahrazeno (1)
¤¤¤ Úlohy : 0 ¤¤¤
¤¤¤ Soubory : 0 ¤¤¤
¤¤¤ Soubor HOSTS : 0 ¤¤¤
¤¤¤ Antirootkit : 0 (Driver: Nahrán) ¤¤¤
¤¤¤ Webové prohlížeče : 2 ¤¤¤
[PUP][FIREFX:Addon] jz5f9ijo.default-1432920841821 : Seznam li?ti?ka [{ea614400-e918-4741-9a97-7a972ff7c30b}] -> Nevybráno
[PUM.HomePage][FIREFX:Config] jz5f9ijo.default-1432920841821 : user_pref("browser.startup.homepage", "https://www.seznam.cz/"); -> Nevybráno
¤¤¤ Kontrola MBR : ¤¤¤
+++++ PhysicalDrive0: SAMSUNG HD502HJ ATA Device +++++
--- User ---
[MBR] 2d35d44118884082efb757ce3b7fca33
[BSP] 37a3239771826a9248e70b0b8205f8a7 : Windows Vista/7/8|VT.Unknown MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 100 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 206848 | Size: 299450 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
2 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 613480448 | Size: 450 MB
3 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 614402048 | Size: 176938 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
User = LL1 ... OK
User = LL2 ... OK
Re: Shooper pro
už ten rogueKiller je spravně?
- Michael850
- Elite Level 11.5
- Příspěvky: 14681
- Registrován: srpen 14
- Pohlaví:
- Stav:
Offline
Re: Shooper pro
Kriste pane... On myslí Malwarebytes Anti-Malware
.

Ryzen 7 2700 + Freezer 34/X370 C6H/RM650x/RX 5700 Gaming X 8GB GDDR6/Vengeance LPX 2x8GB 3000MHz/Gammix XPG S11 Pro 512GB/Define S + 4x F14 Silent
- Orcus
- člen Security týmu
-
Elite Level 10.5
- Příspěvky: 10645
- Registrován: duben 10
- Bydliště: Okolo rostou 3 růže =o)
- Pohlaví:
- Stav:
Offline
Re: Shooper pro
RogueKiller ano je správně. Ale MBAM + ZOEK stále nikde. 

Láska hřeje, ale uhlí je uhlí.
Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.

Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.
Re: Shooper pro
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 7.8.2015
Čas skenování: 15:48
Protokol: mabm.txt
Správce: Ano
Verze: 2.1.8.1057
Databáze malwaru: v2015.08.07.03
Databáze rootkitů: v2015.08.06.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Ochrana programu: Vypnuto
OS: Windows 10
CPU: x64
Souborový systém: NTFS
Uživatel: oem
Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 431088
Uplynulý čas: 8 min, 40 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(Nenalezeny žádné škodlivé položky)
Moduly: 0
(Nenalezeny žádné škodlivé položky)
Klíče registru: 0
(Nenalezeny žádné škodlivé položky)
Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)
Data registru: 0
(Nenalezeny žádné škodlivé položky)
Složky: 0
(Nenalezeny žádné škodlivé položky)
Soubory: 0
(Nenalezeny žádné škodlivé položky)
Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)
(end)
www.malwarebytes.org
Datum skenování: 7.8.2015
Čas skenování: 15:48
Protokol: mabm.txt
Správce: Ano
Verze: 2.1.8.1057
Databáze malwaru: v2015.08.07.03
Databáze rootkitů: v2015.08.06.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Ochrana programu: Vypnuto
OS: Windows 10
CPU: x64
Souborový systém: NTFS
Uživatel: oem
Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 431088
Uplynulý čas: 8 min, 40 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(Nenalezeny žádné škodlivé položky)
Moduly: 0
(Nenalezeny žádné škodlivé položky)
Klíče registru: 0
(Nenalezeny žádné škodlivé položky)
Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)
Data registru: 0
(Nenalezeny žádné škodlivé položky)
Složky: 0
(Nenalezeny žádné škodlivé položky)
Soubory: 0
(Nenalezeny žádné škodlivé položky)
Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)
(end)
Re: Shooper pro
Zoek.exe v5.0.0.0 Updated 04-May-2015
Tool run by oem on p 07.08.2015 at 16:20:19,86.
Microsoft Windows 10 Pro 10.0.10240 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\oem\Desktop\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
7.8.2015 16:21:31 Zoek.exe System Restore Point Created Successfully.
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
127.0.0.1 localhost
==== Empty Folders Check ======================
C:\PROGRA~3\Comms deleted successfully
C:\Users\Guest\AppData\Local\VirtualStore deleted successfully
C:\Users\oem\AppData\Local\EmieBrowserModeList deleted successfully
C:\Users\oem\AppData\Local\EmieSiteList deleted successfully
C:\Users\oem\AppData\Local\EmieUserList deleted successfully
C:\Users\oem\AppData\Local\Opera Software deleted successfully
C:\Users\oem\AppData\Local\PeerDistRepub deleted successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\PeerDistPub deleted successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\PeerDistRepub deleted successfully
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
==== FireFox Fix ======================
Deleted from C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\6mv297hd.default\prefs.js:
Added to C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\6mv297hd.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
Deleted from C:\Users\oem\AppData\Roaming\Mozilla\Firefox\Profiles\jz5f9ijo.default-1432920841821\prefs.js:
user_pref("browser.startup.homepage", "https://www.seznam.cz/");
user_pref("browser.search.selectedEngine", "");
user_pref("browser.search.useDBForOrder", true);
Added to C:\Users\oem\AppData\Roaming\Mozilla\Firefox\Profiles\jz5f9ijo.default-1432920841821\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
==== Deleting Files \ Folders ======================
C:\extensions deleted
C:\PROGRA~3\Package Cache deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted
C:\windows\SysNative\Tasks\avastBCLRestartS-1-5-21-3151455530-778848104-440523627-1000 deleted
C:\Users\oem\uninstall.exe deleted
C:\Users\oem\utorrent.exe deleted
"C:\Users\oem\AppData\Local\{CDB20ABD-56E9-484E-B60A-4753BD778E39}" deleted
==== Firefox Start and Search pages ======================
ProfilePath: C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\6mv297hd.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
ProfilePath: C:\Users\oem\AppData\Roaming\Mozilla\Firefox\Profiles\jz5f9ijo.default-1432920841821
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [25.07.2015 12:50]
[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]
"DSE"="true" []
==== Firefox Extensions ======================
AppDir: C:\Program Files (x86)\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
==== Firefox Plugins ======================
Profilepath: C:\Users\oem\AppData\Roaming\Mozilla\Firefox\Profiles\jz5f9ijo.default-1432920841821
FD82108FD60B63010325D9AF6F00AF99 - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll - Shockwave Flash
==== Chromium Look ======================
Google Chrome Version: 44.0.2403.130
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
eofcbnmajmjmplflapaojjnihcjkigck - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx[25.05.2015 22:27]
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[25.05.2015 22:27]
Avast SafePrice - Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Avast Online Security - Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
Seznam Lištička - Email - oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig
Seznam LištiÄŤka - SlovnĂk - oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd
OneTab - oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\chphlpgkkbolifaimnlloiipkdnihall
Avast SafePrice - oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Avast Online Security - oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
Seznam Lištička - Rychlá volba - oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak
==== Chromium Startpages ======================
C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Preferences
tifications","storage","tabs","webstorePrivate"],"explicit_host":["*://*.google.com/*","*://*.gstatic.com/*","https://*.googleapis.com/*","https://*.googleusercontent.com/*"],"manifest_permissions":[]},"commands":{},"content_settings":[],"creation_flags":1,"events":["alarms.onAlarm","gcm.onMessage","identity.onSignInChanged","notifications.onButtonClicked","notifications.onClicked","notifications.onClosed","notifications.onPermissionLevelChanged","notifications.onShowSettings","runtime.onInstalled","runtime.onStartup","runtime.onSuspend","storage.onChanged"],"from_bookmark":false,"from_webstore":false,"incognito_content_settings":[],"incognito_preferences":{},"initial_keybindings_set":true,"install_time":"13081778203968414","location":5,"manifest":{"background":{"persistent":false,"scripts":["utility.js","cards.js","background.js"]},"description":"Integrates Google Now into Chrome.","icons":{"128":"images/icon128.png","16":"images/icon16.png","48":"images/icon48.png"},"key":"MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAkhqJr32OFD/bMXW4Md7jMfd7LbwHXVc6x5bBQG5U+dloofoxrICDR20yur/40mQ8O//0sS1b8srvbab1CRlSrxoNCr9T80NAkfzx0gHyVS+p1Zow+1FzLMu9PiGwwFyN80HIB7GI/dIa0wC9K/2OrrzcHEhVH96DacTtWQqjfDVtZPjT7Xwv23dgoWcpbkRC86jMJot3dmX9xnn0KzoVc9gDOHSIkBLbkkr6Sp3LGXCCM4L0DJgxdFwaLr5WBzgC3y5x0/wwPIwN4PtIaK3BhH6njlksfnKwwIJ9iRT41V4BqbWu4mszO/7VJ3HJyw2DBpIc2grU9ZRRxrV3fRQG4wIDAQAB","manifest_version":2,"name":"Google Now","oauth2":{"auto_approve":true,"scopes":["https://www.googleapis.com/auth/gcm","https://www.googleapis.com/auth/googlenow"]},"optional_permissions":["background"],"permissions":["alarms","gcm","identity","metricsPrivate","notifications","storage","tabs","webstorePrivate","*://*.google.com/*","*://*.gstatic.com/*","https://*.googleapis.com/chromenow/v1/*","https://*.googleapis.com/gcm/*","https://*.googleusercontent.com/*"],"version":"1.2.0.1"},"path":"C:\\Program Files (x86)\\Google\\Chrome\\Application\\43.0.2357.134\\resources\\google_now","preferences":{},"regular_only_preferences":{},"state":1,"was_installed_by_default":false,"was_installed_by_oem":false},"pjkljhegncpnkpknbcohdijeoejaedia":{"ack_external":true,"active_permissions":{"api":["notifications"],"manifest_permissions":[]},"app_launcher_ordinal":"y","commands":{},"content_settings":[],"creation_flags":137,"events":[],"from_bookmark":false,"from_webstore":true,"granted_permissions":{"api":["notifications"],"manifest_permissions":[]},"incognito_content_settings":[],"incognito_preferences":{},"install_time":"13081778239875391","lastpingday":"13081762803643452","location":1,"manifest":{"app":{"launch":{"container":"tab","web_url":"https://mail.google.com/mail/ca"},"urls":["*://mail.google.com/mail/ca"]},"current_locale":"cs","default_locale":"en","description":"RychlĂ˝ e-mail s moĹľnostĂ vyhledávánĂ a menšĂm mnoĹľstvĂm spamu.","icons":{"128":"128.png"},"key":"MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDCuGglK43iAz3J9BEYK/Mz6ZhloIMMDqQSAaf3vJt4eHbTbSDsu4WdQ9dQDRcKlg8nwQdePBt0C3PSUBtiSNSS37Z3qEGfS7LCju3h6pI1Yr9MQtxw+jUa7kXXIS09VV73pEFUT/F7c6Qe8L5ZxgAcBvXBh1Fie63qb02I9XQ/CQIDAQAB","manifest_version":2,"name":"Gmail","options_page":"https://mail.google.com/mail/ca/#settings","permissions":["notifications"],"update_url":"http://clients2.google.com/service/update2/crx","version":"8.1"},"page_ordinal":"n","path":"pjkljhegncpnkpknbcohdijeoejaedia\\8.1_0","preferences":{},"regular_only_preferences":{},"state":1,"was_installed_by_default":true,"was_installed_by_oem":false}}},"pinned_tabs":[],"protection":{"macs":{"browser":{"show_home_button":"5C24D9D501F49919AC61FC87E7F40D53ED369A2B3A76455A07CAE24F4E0C45FA"},"default_search_provider":{"keyword":"8E03B8BDBB0545554ED130E04590641CE88DEB6B4F9A41F8FD26D2DAA03BC7F8","name":"BB55C34991797419646A86B31C2C6A5741984ACB5F3195AC33992C011CC55C98","search_url":"8125FB87104DBC96303204305A554E20B6F10547F0782E5AF3F43A0318E7E37F"},"default_search_provider_data":{"template_url_data":"477DA852280AF0C010A6C293173FDA7BD0A0BDBFA70E7C134E7DA3EFEA9B53F8"},"extensions":{"settings":{"aapocclcgogkmnckokdopfmhonfmgoek":"0580D87EFF5210C8D4B3F137846FA2D91EADA6F4C907670B573EB29ECBC533B1","ahfgeienlihckogmohjhadlkjgocpleb":"66523A88B41ABE8EC6285000B440621727B0549A278941FB27D6505875D8961F","aohghmighlieiainnegkcijnfilokake":"0111BABC0BFA98DAB94C805B69F46D5A53729235FB878530B9107693CADF0591","apdfllckaahabafndbhieahigkjlhalf":"8EF8A6EDCFE27CA25423E77B88C2FD29F16E7DA5DEA6CE5BB07EDA8C0B5EA799","bepbmhgboaologfdajaanbcjmnhjmhfn":"BD216D3E80DBE687F985DBFEC9629713A45BCECBD92A99B2EC55218EBDCFC8C8","blpcfgokakmgnkcojhhkbfbldkacnbeo":"DE6E4A43DA3ABEC1ACB316D4E39C67308D5EF7DEC5153184EB3CB1BD4312C818","coobgpohoikkiipiblmjeljniedjpjpf":"9111AF8EE899D8904A448B7572F62E4E2A575E1F18E38AD34B0475F2E16A8A1F","eemcgdkfndhakfknompkggombfjjjeno":"933615C474FCFB441093C6273324CC4466E9C026B383ED9E4B94925AB0F5C271","ennkphjdgehloodpbhlhldgbnhmacadg":"BF7EA7AB55458FC8A100FF83C83F91764D84C539C203BCB9D2042A4FFC4D86D8","eofcbnmajmjmplflapaojjnihcjkigck":"42B159BE9EB36100D676A5F426ECB2E21DD6F9BF077CF67532C034CB03DC4612","felcaaldnbdncclmgdcncolpebgiejap":"CD1CF268C97026C83AD1C12ECD4E985EA1631B209AB88392B92E00345A0C0D53","gfdkimpbcpahaombhbimeihdjnejgicl":"880BE92B4A4B6532EFE05F59D6D321C4C2FF88A04014D72E742898AFB9BE73FE","gomekmidlodglbbmalcneegieacbdmki":"414C3EE74A1E053B990F6D898039016B9FB71444908C6FEFDDBA6F5A52831819","kmendfapggjehodndflmmgagdbamhnfd":"2AA22D213FB1950A428E0AC700ADF8D21434E675205F513993F00638E96BEB99","mfehgcgbbipciphmccgaenjidiccnmng":"D7FF01FC824F13C2913A2F9DAA2CAB33CE32253EE334E2BBD043A2069090896D","mfffpogegjflfpflabcdkioaeobkgjik":"25B6F2FF6B39CF711580F8BE246F1DE24D39D5ABE8459119A7F9F5001C71F524","mgndgikekgjfcpckkfioiadnlibdjbkf":"0A2648218FA29F0B13F5AF7AAC911509CB1181E3E46DB301747F79151C04AEDC","mhjfbmdgcfjbbpaeojofohoefgiehjai":"A4C3D07E450EA4761C21534ADB5DF5222977C359AB5CE655080521F0C975DE63","neajdppkdcdipfabeoofebfddakdcjhd":"77F984699AC2658F0501B5E2F49F241B0203C38DC47FC33B8C00BDD0FC7C27A7","nkeimhogjdpnpccoofpliimaahmaaome":"54EE76B457E3C668E26756A6DE92F68A5E3EEFB278FD21FCDF92FBAB981D3100","nmmhkkegccagdldgiimedpiccmgmieda":"182F775E1A4A770B2B16D165E70E4CE13B31B3E85BFD7C23968E70A1E8290A1D","pafkbggdmjlpgkdkcbjmhmfcdpncadgh":"D240F4F3CF22352F2F2BA265D377AA8A695AA7803BB40993FECEC49A9963B023","pjkljhegncpnkpknbcohdijeoejaedia":"858CE39742380E099E3F4ADE800391CB7EC5DC566B4DEEBBD59DC7C57230EA6D"}},"google":{"services":{"last_username":"B8DB7E04310C6427D67F33D6ED15A8B74DAAA4574CDD6EA125BAA5403BE35A98","username":"1729ED76C0B76F9C7C78086F2AEE755C7D8DF4938500A034080A69853FD37E41"}},"homepage":"6B4A43BE7DAFD86CCED92912B69584597F2A9F8005D2B340457F2DA1E778A2C0","homepage_is_newtabpage":"3F37D9E2E9D833AD68B283F557D52162A1C0F6812F3703DBCE52B0413F544236","pinned_tabs":"FE63D10078F472D838D3F675763D384EACD146D14BA9590330540AF7EA740B26","prefs":{"preference_reset_time":"57496F74FE05693CD5B9D8DDFD92142E21AEB92A8DAFEE6E03FCDBF05694B32B"},"profile":{"reset_prompt_memento":"ABE74940D9791814F3CE5BBF2EE4C649E7BD7388664142AA61285F92A8BFDAAF"},"safebrowsing":{"incidents_sent":"53FA0E4D113158C8EF66DE91FEE0CF6AC70671AFAF659044EC7CDF5025ADB484"},"search_provider_overrides":"8574E368FC1B30E245C280023D7790D375DE6F044B8B30C3368B175914AA30DB","session":{"restore_on_startup":"06F65C1BA07196CD05EDB490DE020E0230BE4E4332A2739BE46981CAA936BA44","startup_urls":"D0E3B77D388A1666013027DFF782F803D2C218C53122DF393E362C6DC29647E7"},"software_reporter":{"prompt_reason":"A766BC05288467E4B7509BF880D9FE548953A58851905B8DD8B59964E9714C8F","prompt_seed":"C3B8F68E6E698EE4A6B57EEB47EE50ECFA43933F105A963954F84C90E8BBBBC4","prompt_version":"7155C346298496C832F7E72370D81C109D0A57969FA05AAD8464DA11123F28B1"},"sync":{"remaining_rollback_tries":"3B9D13BA4ABB926D4BB8BC6D0D3E393FE1920C4F0AF48429DF9EB979B9D3B3C5"}},"super_mac":"0AEC8097BA4CEC715DB74C00703BBC6DBB6CA86B9B9EB472DE36211FC19CACD6"}}
C:\Users\oem\AppData\Local\Google\Chrome\User Data\Default\Preferences
B942A3E45C03C7F42549EB69DA3C","neajdppkdcdipfabeoofebfddakdcjhd":"E71879D6F97A05919F5F5719C1196DE6F1DD873546B53137C162743700308F32","nkeimhogjdpnpccoofpliimaahmaaome":"DD8A63A10FDBD440EB5187B6A2664789AC2EABF42D647D5842652B9C52C1D381","nmmhkkegccagdldgiimedpiccmgmieda":"2F32ADB7B275D8B656B875E83F29895CB29F692084F8E8BD23E9220A5A527E70","olfeabkoenfaoljndfecamgilllcpiak":"F4338978F6275E73624481F539E60792CF8E6E2B8B92A628C9460ACDB13761F9","pafkbggdmjlpgkdkcbjmhmfcdpncadgh":"5CA394E30D75921F607002EFCCC437B50B524001E33EF05F41EBAD4CB424442F","pjkljhegncpnkpknbcohdijeoejaedia":"FAD33BB4FA5B966F9669673F3BBCC8C8165326870510A106F50131AC779BFE54"}},"google":{"services":{"account_id":"8DB56C0A5AB7148614A7D0CAE21090AC48CE8BD48E71DDB2362B07395FC47029","last_username":"CA18A901857907518C443D4B9C89B16CD70F4C23DC25294F9946876F7AF7DD37","username":"1729ED76C0B76F9C7C78086F2AEE755C7D8DF4938500A034080A69853FD37E41"}},"homepage":"1059C46385C435256ADE365D3D403369330C3F34BD1754B892687DE681B2F7D5","homepage_is_newtabpage":"F42025FB37758A0EFA1C7D877EFAEC51BBD86F16D30EF3378FF2B690A116AB7D","pinned_tabs":"FE63D10078F472D838D3F675763D384EACD146D14BA9590330540AF7EA740B26","prefs":{"preference_reset_time":"68219A70D9EF33906275BA1BE3DB75A5D867E92E77D6AFD8E9F37CBE5242EB11"},"profile":{"reset_prompt_memento":"ABE74940D9791814F3CE5BBF2EE4C649E7BD7388664142AA61285F92A8BFDAAF"},"safebrowsing":{"incidents_sent":"53FA0E4D113158C8EF66DE91FEE0CF6AC70671AFAF659044EC7CDF5025ADB484"},"search_provider_overrides":"8574E368FC1B30E245C280023D7790D375DE6F044B8B30C3368B175914AA30DB","session":{"restore_on_startup":"1D15C4F3D55AE137C2CEBA3BC6370262BEE891CD90B5D82201D8D55C36D282A6","startup_urls":"59C91C8D3F6904670208D755262D901BEECC65C526F2C4ECBC155F7A70223292"},"software_reporter":{"prompt_reason":"A766BC05288467E4B7509BF880D9FE548953A58851905B8DD8B59964E9714C8F","prompt_seed":"C3B8F68E6E698EE4A6B57EEB47EE50ECFA43933F105A963954F84C90E8BBBBC4","prompt_version":"7155C346298496C832F7E72370D81C109D0A57969FA05AAD8464DA11123F28B1"},"sync":{"remaining_rollback_tries":"573A5F84688ABC948386FBF3B6C749E0F557B6DAF8448562E0A0063D15B54478"}},"super_mac":"5263C9E87699C560ACFD70001D2287E55F8AB5C031A0DC79399E8C1522CF66E6"},"session":{"restore_on_startup":4,"startup_urls":["https://www.seznam.cz/"]},"sync":{"remaining_rollback_tries":0}}
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/p/?LinkId=255141"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/p/?LinkId=255141"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02"
{0675CA2D-86AB-42B1-B355-19F3C826BAB4} Encyklopedie Seznam Url="http://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_1"
{2C5A6B59-523C-4848-86F0-8E2184884901} Mapy.cz Url="http://www.mapy.cz/?query={searchTerms}&sourceid=QuickSearch_1"
{4C83829E-717F-4B44-8BC8-7345FD966C79} Novinky.cz Url="http://www.novinky.cz/hledej?w={searchTerms}&sourceid=QuickSearch_1"
{4F3BE501-0DB9-4C93-A11D-BEAA8C99E6C2} Slovnˇk CZ/EN Url="http://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_1"
{92F2FD55-714B-4648-A432-6009BE26BCF6} Seznam TV Program Url="http://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_1"
{A144886F-F8F9-456B-ACBD-5C6DAFFD9B85} Google Url="https://www.google.com/search?q={searchTerms}"
{B42AE3B3-D0AD-4249-9628-C5B7D7489E74} Zbo§ˇ.cz Url="http://www.zbozi.cz/?q={searchTerms}&r=campmoz&sourceid=QuickSearch_1"
{E0B705F7-6A54-423A-B875-17B192CFBD58} Firmy.cz Url="http://www.firmy.cz/?q={searchTerms}&sourceid=QuickSearch_1"
{FE02B30F-28DA-456A-82BC-41EE3F3819F8} Slovnˇk EN/CZ Url="http://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_1"
==== Reset Google Chrome ======================
C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\oem\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\oem\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
C:\Users\oem\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\oem\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RGSC deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDVCPL deleted successfully
==== Empty IE Cache ======================
C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\oem\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\oem\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\oem\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\oem\AppData\Local\Microsoft\Windows\INetCache\Low\IE\54DEX686 will be deleted at reboot
C:\Users\oem\AppData\Local\Microsoft\Windows\INetCache\Low\IE\5Q1JXZDG will be deleted at reboot
C:\Users\oem\AppData\Local\Microsoft\Windows\INetCache\Low\IE\94ZVKM5K will be deleted at reboot
C:\Users\oem\AppData\Local\Microsoft\Windows\INetCache\Low\IE\AMKPCDBV will be deleted at reboot
==== Empty FireFox Cache ======================
C:\Users\oem\AppData\Local\Mozilla\Firefox\Profiles\jz5f9ijo.default-1432920841821\cache2 emptied successfully
==== Empty Chrome Cache ======================
C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\oem\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
No Flash Cache Found
==== Empty All Java Cache ======================
No Java Cache Found
==== C:\zoek_backup content ======================
C:\zoek_backup (files=22 folders=17 14840299 bytes)
==== Empty Temp Folders ======================
C:\WINDOWS\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\WINDOWS\Temp successfully emptied
C:\Users\oem\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== Deleting Files / Folders ======================
"C:\Users\oem\AppData\Local\Microsoft\Windows\INetCache\Low\IE\54DEX686" not found
"C:\Users\oem\AppData\Local\Microsoft\Windows\INetCache\Low\IE\5Q1JXZDG" not found
"C:\Users\oem\AppData\Local\Microsoft\Windows\INetCache\Low\IE\94ZVKM5K" not found
"C:\Users\oem\AppData\Local\Microsoft\Windows\INetCache\Low\IE\AMKPCDBV" not found
==== EOF on p 07.08.2015 at 16:47:39,94 ======================
Tool run by oem on p 07.08.2015 at 16:20:19,86.
Microsoft Windows 10 Pro 10.0.10240 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\oem\Desktop\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
7.8.2015 16:21:31 Zoek.exe System Restore Point Created Successfully.
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
127.0.0.1 localhost
==== Empty Folders Check ======================
C:\PROGRA~3\Comms deleted successfully
C:\Users\Guest\AppData\Local\VirtualStore deleted successfully
C:\Users\oem\AppData\Local\EmieBrowserModeList deleted successfully
C:\Users\oem\AppData\Local\EmieSiteList deleted successfully
C:\Users\oem\AppData\Local\EmieUserList deleted successfully
C:\Users\oem\AppData\Local\Opera Software deleted successfully
C:\Users\oem\AppData\Local\PeerDistRepub deleted successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\PeerDistPub deleted successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\PeerDistRepub deleted successfully
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
==== FireFox Fix ======================
Deleted from C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\6mv297hd.default\prefs.js:
Added to C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\6mv297hd.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
Deleted from C:\Users\oem\AppData\Roaming\Mozilla\Firefox\Profiles\jz5f9ijo.default-1432920841821\prefs.js:
user_pref("browser.startup.homepage", "https://www.seznam.cz/");
user_pref("browser.search.selectedEngine", "");
user_pref("browser.search.useDBForOrder", true);
Added to C:\Users\oem\AppData\Roaming\Mozilla\Firefox\Profiles\jz5f9ijo.default-1432920841821\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
==== Deleting Files \ Folders ======================
C:\extensions deleted
C:\PROGRA~3\Package Cache deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted
C:\windows\SysNative\Tasks\avastBCLRestartS-1-5-21-3151455530-778848104-440523627-1000 deleted
C:\Users\oem\uninstall.exe deleted
C:\Users\oem\utorrent.exe deleted
"C:\Users\oem\AppData\Local\{CDB20ABD-56E9-484E-B60A-4753BD778E39}" deleted
==== Firefox Start and Search pages ======================
ProfilePath: C:\Users\Guest\AppData\Roaming\Mozilla\Firefox\Profiles\6mv297hd.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
ProfilePath: C:\Users\oem\AppData\Roaming\Mozilla\Firefox\Profiles\jz5f9ijo.default-1432920841821
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [25.07.2015 12:50]
[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]
"DSE"="true" []
==== Firefox Extensions ======================
AppDir: C:\Program Files (x86)\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
==== Firefox Plugins ======================
Profilepath: C:\Users\oem\AppData\Roaming\Mozilla\Firefox\Profiles\jz5f9ijo.default-1432920841821
FD82108FD60B63010325D9AF6F00AF99 - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll - Shockwave Flash
==== Chromium Look ======================
Google Chrome Version: 44.0.2403.130
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
eofcbnmajmjmplflapaojjnihcjkigck - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx[25.05.2015 22:27]
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[25.05.2015 22:27]
Avast SafePrice - Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Avast Online Security - Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
Seznam Lištička - Email - oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig
Seznam LištiÄŤka - SlovnĂk - oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd
OneTab - oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\chphlpgkkbolifaimnlloiipkdnihall
Avast SafePrice - oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Avast Online Security - oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
Seznam Lištička - Rychlá volba - oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak
==== Chromium Startpages ======================
C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Preferences
tifications","storage","tabs","webstorePrivate"],"explicit_host":["*://*.google.com/*","*://*.gstatic.com/*","https://*.googleapis.com/*","https://*.googleusercontent.com/*"],"manifest_permissions":[]},"commands":{},"content_settings":[],"creation_flags":1,"events":["alarms.onAlarm","gcm.onMessage","identity.onSignInChanged","notifications.onButtonClicked","notifications.onClicked","notifications.onClosed","notifications.onPermissionLevelChanged","notifications.onShowSettings","runtime.onInstalled","runtime.onStartup","runtime.onSuspend","storage.onChanged"],"from_bookmark":false,"from_webstore":false,"incognito_content_settings":[],"incognito_preferences":{},"initial_keybindings_set":true,"install_time":"13081778203968414","location":5,"manifest":{"background":{"persistent":false,"scripts":["utility.js","cards.js","background.js"]},"description":"Integrates Google Now into Chrome.","icons":{"128":"images/icon128.png","16":"images/icon16.png","48":"images/icon48.png"},"key":"MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAkhqJr32OFD/bMXW4Md7jMfd7LbwHXVc6x5bBQG5U+dloofoxrICDR20yur/40mQ8O//0sS1b8srvbab1CRlSrxoNCr9T80NAkfzx0gHyVS+p1Zow+1FzLMu9PiGwwFyN80HIB7GI/dIa0wC9K/2OrrzcHEhVH96DacTtWQqjfDVtZPjT7Xwv23dgoWcpbkRC86jMJot3dmX9xnn0KzoVc9gDOHSIkBLbkkr6Sp3LGXCCM4L0DJgxdFwaLr5WBzgC3y5x0/wwPIwN4PtIaK3BhH6njlksfnKwwIJ9iRT41V4BqbWu4mszO/7VJ3HJyw2DBpIc2grU9ZRRxrV3fRQG4wIDAQAB","manifest_version":2,"name":"Google Now","oauth2":{"auto_approve":true,"scopes":["https://www.googleapis.com/auth/gcm","https://www.googleapis.com/auth/googlenow"]},"optional_permissions":["background"],"permissions":["alarms","gcm","identity","metricsPrivate","notifications","storage","tabs","webstorePrivate","*://*.google.com/*","*://*.gstatic.com/*","https://*.googleapis.com/chromenow/v1/*","https://*.googleapis.com/gcm/*","https://*.googleusercontent.com/*"],"version":"1.2.0.1"},"path":"C:\\Program Files (x86)\\Google\\Chrome\\Application\\43.0.2357.134\\resources\\google_now","preferences":{},"regular_only_preferences":{},"state":1,"was_installed_by_default":false,"was_installed_by_oem":false},"pjkljhegncpnkpknbcohdijeoejaedia":{"ack_external":true,"active_permissions":{"api":["notifications"],"manifest_permissions":[]},"app_launcher_ordinal":"y","commands":{},"content_settings":[],"creation_flags":137,"events":[],"from_bookmark":false,"from_webstore":true,"granted_permissions":{"api":["notifications"],"manifest_permissions":[]},"incognito_content_settings":[],"incognito_preferences":{},"install_time":"13081778239875391","lastpingday":"13081762803643452","location":1,"manifest":{"app":{"launch":{"container":"tab","web_url":"https://mail.google.com/mail/ca"},"urls":["*://mail.google.com/mail/ca"]},"current_locale":"cs","default_locale":"en","description":"RychlĂ˝ e-mail s moĹľnostĂ vyhledávánĂ a menšĂm mnoĹľstvĂm spamu.","icons":{"128":"128.png"},"key":"MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDCuGglK43iAz3J9BEYK/Mz6ZhloIMMDqQSAaf3vJt4eHbTbSDsu4WdQ9dQDRcKlg8nwQdePBt0C3PSUBtiSNSS37Z3qEGfS7LCju3h6pI1Yr9MQtxw+jUa7kXXIS09VV73pEFUT/F7c6Qe8L5ZxgAcBvXBh1Fie63qb02I9XQ/CQIDAQAB","manifest_version":2,"name":"Gmail","options_page":"https://mail.google.com/mail/ca/#settings","permissions":["notifications"],"update_url":"http://clients2.google.com/service/update2/crx","version":"8.1"},"page_ordinal":"n","path":"pjkljhegncpnkpknbcohdijeoejaedia\\8.1_0","preferences":{},"regular_only_preferences":{},"state":1,"was_installed_by_default":true,"was_installed_by_oem":false}}},"pinned_tabs":[],"protection":{"macs":{"browser":{"show_home_button":"5C24D9D501F49919AC61FC87E7F40D53ED369A2B3A76455A07CAE24F4E0C45FA"},"default_search_provider":{"keyword":"8E03B8BDBB0545554ED130E04590641CE88DEB6B4F9A41F8FD26D2DAA03BC7F8","name":"BB55C34991797419646A86B31C2C6A5741984ACB5F3195AC33992C011CC55C98","search_url":"8125FB87104DBC96303204305A554E20B6F10547F0782E5AF3F43A0318E7E37F"},"default_search_provider_data":{"template_url_data":"477DA852280AF0C010A6C293173FDA7BD0A0BDBFA70E7C134E7DA3EFEA9B53F8"},"extensions":{"settings":{"aapocclcgogkmnckokdopfmhonfmgoek":"0580D87EFF5210C8D4B3F137846FA2D91EADA6F4C907670B573EB29ECBC533B1","ahfgeienlihckogmohjhadlkjgocpleb":"66523A88B41ABE8EC6285000B440621727B0549A278941FB27D6505875D8961F","aohghmighlieiainnegkcijnfilokake":"0111BABC0BFA98DAB94C805B69F46D5A53729235FB878530B9107693CADF0591","apdfllckaahabafndbhieahigkjlhalf":"8EF8A6EDCFE27CA25423E77B88C2FD29F16E7DA5DEA6CE5BB07EDA8C0B5EA799","bepbmhgboaologfdajaanbcjmnhjmhfn":"BD216D3E80DBE687F985DBFEC9629713A45BCECBD92A99B2EC55218EBDCFC8C8","blpcfgokakmgnkcojhhkbfbldkacnbeo":"DE6E4A43DA3ABEC1ACB316D4E39C67308D5EF7DEC5153184EB3CB1BD4312C818","coobgpohoikkiipiblmjeljniedjpjpf":"9111AF8EE899D8904A448B7572F62E4E2A575E1F18E38AD34B0475F2E16A8A1F","eemcgdkfndhakfknompkggombfjjjeno":"933615C474FCFB441093C6273324CC4466E9C026B383ED9E4B94925AB0F5C271","ennkphjdgehloodpbhlhldgbnhmacadg":"BF7EA7AB55458FC8A100FF83C83F91764D84C539C203BCB9D2042A4FFC4D86D8","eofcbnmajmjmplflapaojjnihcjkigck":"42B159BE9EB36100D676A5F426ECB2E21DD6F9BF077CF67532C034CB03DC4612","felcaaldnbdncclmgdcncolpebgiejap":"CD1CF268C97026C83AD1C12ECD4E985EA1631B209AB88392B92E00345A0C0D53","gfdkimpbcpahaombhbimeihdjnejgicl":"880BE92B4A4B6532EFE05F59D6D321C4C2FF88A04014D72E742898AFB9BE73FE","gomekmidlodglbbmalcneegieacbdmki":"414C3EE74A1E053B990F6D898039016B9FB71444908C6FEFDDBA6F5A52831819","kmendfapggjehodndflmmgagdbamhnfd":"2AA22D213FB1950A428E0AC700ADF8D21434E675205F513993F00638E96BEB99","mfehgcgbbipciphmccgaenjidiccnmng":"D7FF01FC824F13C2913A2F9DAA2CAB33CE32253EE334E2BBD043A2069090896D","mfffpogegjflfpflabcdkioaeobkgjik":"25B6F2FF6B39CF711580F8BE246F1DE24D39D5ABE8459119A7F9F5001C71F524","mgndgikekgjfcpckkfioiadnlibdjbkf":"0A2648218FA29F0B13F5AF7AAC911509CB1181E3E46DB301747F79151C04AEDC","mhjfbmdgcfjbbpaeojofohoefgiehjai":"A4C3D07E450EA4761C21534ADB5DF5222977C359AB5CE655080521F0C975DE63","neajdppkdcdipfabeoofebfddakdcjhd":"77F984699AC2658F0501B5E2F49F241B0203C38DC47FC33B8C00BDD0FC7C27A7","nkeimhogjdpnpccoofpliimaahmaaome":"54EE76B457E3C668E26756A6DE92F68A5E3EEFB278FD21FCDF92FBAB981D3100","nmmhkkegccagdldgiimedpiccmgmieda":"182F775E1A4A770B2B16D165E70E4CE13B31B3E85BFD7C23968E70A1E8290A1D","pafkbggdmjlpgkdkcbjmhmfcdpncadgh":"D240F4F3CF22352F2F2BA265D377AA8A695AA7803BB40993FECEC49A9963B023","pjkljhegncpnkpknbcohdijeoejaedia":"858CE39742380E099E3F4ADE800391CB7EC5DC566B4DEEBBD59DC7C57230EA6D"}},"google":{"services":{"last_username":"B8DB7E04310C6427D67F33D6ED15A8B74DAAA4574CDD6EA125BAA5403BE35A98","username":"1729ED76C0B76F9C7C78086F2AEE755C7D8DF4938500A034080A69853FD37E41"}},"homepage":"6B4A43BE7DAFD86CCED92912B69584597F2A9F8005D2B340457F2DA1E778A2C0","homepage_is_newtabpage":"3F37D9E2E9D833AD68B283F557D52162A1C0F6812F3703DBCE52B0413F544236","pinned_tabs":"FE63D10078F472D838D3F675763D384EACD146D14BA9590330540AF7EA740B26","prefs":{"preference_reset_time":"57496F74FE05693CD5B9D8DDFD92142E21AEB92A8DAFEE6E03FCDBF05694B32B"},"profile":{"reset_prompt_memento":"ABE74940D9791814F3CE5BBF2EE4C649E7BD7388664142AA61285F92A8BFDAAF"},"safebrowsing":{"incidents_sent":"53FA0E4D113158C8EF66DE91FEE0CF6AC70671AFAF659044EC7CDF5025ADB484"},"search_provider_overrides":"8574E368FC1B30E245C280023D7790D375DE6F044B8B30C3368B175914AA30DB","session":{"restore_on_startup":"06F65C1BA07196CD05EDB490DE020E0230BE4E4332A2739BE46981CAA936BA44","startup_urls":"D0E3B77D388A1666013027DFF782F803D2C218C53122DF393E362C6DC29647E7"},"software_reporter":{"prompt_reason":"A766BC05288467E4B7509BF880D9FE548953A58851905B8DD8B59964E9714C8F","prompt_seed":"C3B8F68E6E698EE4A6B57EEB47EE50ECFA43933F105A963954F84C90E8BBBBC4","prompt_version":"7155C346298496C832F7E72370D81C109D0A57969FA05AAD8464DA11123F28B1"},"sync":{"remaining_rollback_tries":"3B9D13BA4ABB926D4BB8BC6D0D3E393FE1920C4F0AF48429DF9EB979B9D3B3C5"}},"super_mac":"0AEC8097BA4CEC715DB74C00703BBC6DBB6CA86B9B9EB472DE36211FC19CACD6"}}
C:\Users\oem\AppData\Local\Google\Chrome\User Data\Default\Preferences
B942A3E45C03C7F42549EB69DA3C","neajdppkdcdipfabeoofebfddakdcjhd":"E71879D6F97A05919F5F5719C1196DE6F1DD873546B53137C162743700308F32","nkeimhogjdpnpccoofpliimaahmaaome":"DD8A63A10FDBD440EB5187B6A2664789AC2EABF42D647D5842652B9C52C1D381","nmmhkkegccagdldgiimedpiccmgmieda":"2F32ADB7B275D8B656B875E83F29895CB29F692084F8E8BD23E9220A5A527E70","olfeabkoenfaoljndfecamgilllcpiak":"F4338978F6275E73624481F539E60792CF8E6E2B8B92A628C9460ACDB13761F9","pafkbggdmjlpgkdkcbjmhmfcdpncadgh":"5CA394E30D75921F607002EFCCC437B50B524001E33EF05F41EBAD4CB424442F","pjkljhegncpnkpknbcohdijeoejaedia":"FAD33BB4FA5B966F9669673F3BBCC8C8165326870510A106F50131AC779BFE54"}},"google":{"services":{"account_id":"8DB56C0A5AB7148614A7D0CAE21090AC48CE8BD48E71DDB2362B07395FC47029","last_username":"CA18A901857907518C443D4B9C89B16CD70F4C23DC25294F9946876F7AF7DD37","username":"1729ED76C0B76F9C7C78086F2AEE755C7D8DF4938500A034080A69853FD37E41"}},"homepage":"1059C46385C435256ADE365D3D403369330C3F34BD1754B892687DE681B2F7D5","homepage_is_newtabpage":"F42025FB37758A0EFA1C7D877EFAEC51BBD86F16D30EF3378FF2B690A116AB7D","pinned_tabs":"FE63D10078F472D838D3F675763D384EACD146D14BA9590330540AF7EA740B26","prefs":{"preference_reset_time":"68219A70D9EF33906275BA1BE3DB75A5D867E92E77D6AFD8E9F37CBE5242EB11"},"profile":{"reset_prompt_memento":"ABE74940D9791814F3CE5BBF2EE4C649E7BD7388664142AA61285F92A8BFDAAF"},"safebrowsing":{"incidents_sent":"53FA0E4D113158C8EF66DE91FEE0CF6AC70671AFAF659044EC7CDF5025ADB484"},"search_provider_overrides":"8574E368FC1B30E245C280023D7790D375DE6F044B8B30C3368B175914AA30DB","session":{"restore_on_startup":"1D15C4F3D55AE137C2CEBA3BC6370262BEE891CD90B5D82201D8D55C36D282A6","startup_urls":"59C91C8D3F6904670208D755262D901BEECC65C526F2C4ECBC155F7A70223292"},"software_reporter":{"prompt_reason":"A766BC05288467E4B7509BF880D9FE548953A58851905B8DD8B59964E9714C8F","prompt_seed":"C3B8F68E6E698EE4A6B57EEB47EE50ECFA43933F105A963954F84C90E8BBBBC4","prompt_version":"7155C346298496C832F7E72370D81C109D0A57969FA05AAD8464DA11123F28B1"},"sync":{"remaining_rollback_tries":"573A5F84688ABC948386FBF3B6C749E0F557B6DAF8448562E0A0063D15B54478"}},"super_mac":"5263C9E87699C560ACFD70001D2287E55F8AB5C031A0DC79399E8C1522CF66E6"},"session":{"restore_on_startup":4,"startup_urls":["https://www.seznam.cz/"]},"sync":{"remaining_rollback_tries":0}}
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/p/?LinkId=255141"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/p/?LinkId=255141"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02"
{0675CA2D-86AB-42B1-B355-19F3C826BAB4} Encyklopedie Seznam Url="http://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_1"
{2C5A6B59-523C-4848-86F0-8E2184884901} Mapy.cz Url="http://www.mapy.cz/?query={searchTerms}&sourceid=QuickSearch_1"
{4C83829E-717F-4B44-8BC8-7345FD966C79} Novinky.cz Url="http://www.novinky.cz/hledej?w={searchTerms}&sourceid=QuickSearch_1"
{4F3BE501-0DB9-4C93-A11D-BEAA8C99E6C2} Slovnˇk CZ/EN Url="http://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_1"
{92F2FD55-714B-4648-A432-6009BE26BCF6} Seznam TV Program Url="http://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_1"
{A144886F-F8F9-456B-ACBD-5C6DAFFD9B85} Google Url="https://www.google.com/search?q={searchTerms}"
{B42AE3B3-D0AD-4249-9628-C5B7D7489E74} Zbo§ˇ.cz Url="http://www.zbozi.cz/?q={searchTerms}&r=campmoz&sourceid=QuickSearch_1"
{E0B705F7-6A54-423A-B875-17B192CFBD58} Firmy.cz Url="http://www.firmy.cz/?q={searchTerms}&sourceid=QuickSearch_1"
{FE02B30F-28DA-456A-82BC-41EE3F3819F8} Slovnˇk EN/CZ Url="http://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_1"
==== Reset Google Chrome ======================
C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\oem\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\oem\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
C:\Users\oem\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\oem\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RGSC deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDVCPL deleted successfully
==== Empty IE Cache ======================
C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\oem\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\oem\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\oem\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\oem\AppData\Local\Microsoft\Windows\INetCache\Low\IE\54DEX686 will be deleted at reboot
C:\Users\oem\AppData\Local\Microsoft\Windows\INetCache\Low\IE\5Q1JXZDG will be deleted at reboot
C:\Users\oem\AppData\Local\Microsoft\Windows\INetCache\Low\IE\94ZVKM5K will be deleted at reboot
C:\Users\oem\AppData\Local\Microsoft\Windows\INetCache\Low\IE\AMKPCDBV will be deleted at reboot
==== Empty FireFox Cache ======================
C:\Users\oem\AppData\Local\Mozilla\Firefox\Profiles\jz5f9ijo.default-1432920841821\cache2 emptied successfully
==== Empty Chrome Cache ======================
C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\oem\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
No Flash Cache Found
==== Empty All Java Cache ======================
No Java Cache Found
==== C:\zoek_backup content ======================
C:\zoek_backup (files=22 folders=17 14840299 bytes)
==== Empty Temp Folders ======================
C:\WINDOWS\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\WINDOWS\Temp successfully emptied
C:\Users\oem\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== Deleting Files / Folders ======================
"C:\Users\oem\AppData\Local\Microsoft\Windows\INetCache\Low\IE\54DEX686" not found
"C:\Users\oem\AppData\Local\Microsoft\Windows\INetCache\Low\IE\5Q1JXZDG" not found
"C:\Users\oem\AppData\Local\Microsoft\Windows\INetCache\Low\IE\94ZVKM5K" not found
"C:\Users\oem\AppData\Local\Microsoft\Windows\INetCache\Low\IE\AMKPCDBV" not found
==== EOF on p 07.08.2015 at 16:47:39,94 ======================
Re: Shooper pro
tak ted jsem dodal i mabm a zoek,tak co ted už to mam v pořadku nebo ne?děkuji
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Shooper pro
Vlož nový log z HJT + informuj o problémech.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Shooper pro
měl jsem v pc program shooper pro,nemohl jsem ho odstranit,ale pomocí navodu na těchle strankach jsem ho odstranil,a jaky log mam vložit?
Re: Shooper pro
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:31:33, on 5.8.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10240.16384)
FIREFOX: 39.0 (x86 cs)
Boot mode: Normal
Running processes:
C:\Program Files\WindowsApps\Microsoft.BingWeather_4.4.200.0_x86__8wekyb3d8bbwe\Microsoft.Msn.Weather.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\oem\Desktop\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: ShopperProBHO - {A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} - C:\ProgramData\ShopperPro\ShopperPro.dll (file missing)
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [SPDriver] C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.2243\jsdrv.exe
O4 - HKCU\..\Run: [OneDrive] "C:\Users\oem\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\oem\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\oem\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [SPDriver] C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.2243\jsdrv.exe
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{bbae49b3-b4f7-43a9-bce6-86ce729d9478}: NameServer = 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Avast Firewall (avast! Firewall) - AVAST Software - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\System32\ngcsvc.dll,-100 (NgcSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: ShopperPro Update (SPBIUpd) - ShopperPro - C:\Program Files\Common Files\ShopperPro\spbiu.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9650 bytes
tenhle log?
Scan saved at 17:31:33, on 5.8.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10240.16384)
FIREFOX: 39.0 (x86 cs)
Boot mode: Normal
Running processes:
C:\Program Files\WindowsApps\Microsoft.BingWeather_4.4.200.0_x86__8wekyb3d8bbwe\Microsoft.Msn.Weather.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\oem\Desktop\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: ShopperProBHO - {A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} - C:\ProgramData\ShopperPro\ShopperPro.dll (file missing)
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [SPDriver] C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.2243\jsdrv.exe
O4 - HKCU\..\Run: [OneDrive] "C:\Users\oem\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\oem\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\oem\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [SPDriver] C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.2243\jsdrv.exe
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{bbae49b3-b4f7-43a9-bce6-86ce729d9478}: NameServer = 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Avast Firewall (avast! Firewall) - AVAST Software - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\System32\ngcsvc.dll,-100 (NgcSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: ShopperPro Update (SPBIUpd) - ShopperPro - C:\Program Files\Common Files\ShopperPro\spbiu.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9650 bytes
tenhle log?
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 62 hostů