Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Problém se spouštěním netu - prosím o kontrolu logu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Antusek
Návštěvník
Návštěvník
Příspěvky: 488
Registrován: 17 úno 2007 20:54

Problém se spouštěním netu - prosím o kontrolu logu

#1 Příspěvek od Antusek »

Dobrý večer,
minulý týden jsem zde řešil s panem Rudym problém Prosím o kontrolu PC podivně funguje Skype, E-mail a windows. Když jsme to vyřešily a dal jsem pokyn k uzavření vlákna, vypadlo připojení k netu a internet nefungoval. Technici O2 nám sdělili, že je to modemem a dostali jsme nový modem. Net již začal fungovat, ale některé stránky to nenačetlo. Došel jsem k podezření, že to dělá ZoneAlarm. Tak jsem jej chtěl odinstalovat ale pomocí Windows i CC cleaneru to nešlo. Nic to nedělalo. Tak jsem jej smazal ručně a naštěstí si něco systém pamatoval a nainstaloval je na stejné umístění. Již se stránky načítají, ale zdá se mi, že je to ještě trošku pomalé. Proto prosím o kontrolu logu jestli tam není nějaká havět či jen to nechce pročistit. Nejspíše nebyl firewall několik dní správně funkční. Posílám log a dík za další postup. :)

Logfile of random's system information tool 1.09 (written by random/random)
Run by User at 2018-08-10 20:49:46
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 3 GB (5%) free of 50 GB
Total RAM: 2047 MB (53% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:50:52, on 10.8.2018
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.19081)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Program Files\Microsoft Security Client\msseces.exe
D:\Web kamera\Web Kamera Logitech\LWS\Webcam Software\LWS.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\CCleaner\CCleaner.exe
D:\Aviry\Secunia\PSI\psi_tray.exe
D:\Web kamera\Web Kamera Logitech\LWS\Webcam Software\CameraHelperShell.exe
C:\Windows\System32\mshta.exe
C:\Windows\System32\cmd.exe
C:\Windows\system32\conhost.exe
C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe
D:\Aviry\RSIT\RSIT.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\trend micro\User.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkI ... id=UE12DHP
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - D:\Programy\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: Zonealarm Helper Object - {2A841F7A-A014-4DA5-B6D9-8B913DFB7A8C} - (no file)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_151\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_151\bin\jp2ssv.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - D:\Programy\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: (no name) - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - (no file)
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [MSC] "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [LWS] D:\Web kamera\Web Kamera Logitech\LWS\Webcam Software\LWS.exe -hide
O4 - HKLM\..\Run: [RTHDVCPL] "C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe" -s
O4 - HKLM\..\Run: [ZoneAlarm] "D:\Aviry\CheckPoint\ZoneAlarm\zatray.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR
O4 - HKUS\S-1-5-18\..\Run: [ZoneAlarm Windows 10 Upgrader] "C:\ProgramData\CheckPoint\ZoneAlarm\Data\Updates\unpacked==win10=update_win10.zip\upgrade.exe" /delay (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [ZoneAlarm Windows 10 Upgrader] "C:\ProgramData\CheckPoint\ZoneAlarm\Data\Updates\unpacked==win10=update_win10.zip\upgrade.exe" /delay (User 'Default user')
O4 - Startup: AutorunsDisabled
O4 - Global Startup: Secunia PSI Tray.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://D:\Programy\MICROS~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\User\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\Programy\MICROS~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Zobrazit nebo skrýt HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - D:\Programy\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Active File Monitor V10 (AdobeActiveFileMonitor10.0) - Adobe Systems Incorporated - D:\Fotoeditory\Adobe Photoshop Elements 10\Elements 10 Organizer\PhotoshopElementsFileAgent.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Secunia PSI Agent - Secunia - D:\Aviry\Secunia\PSI\PSIA.exe
O23 - Service: Secunia Update Agent - Secunia - D:\Aviry\Secunia\PSI\sua.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies Ltd. - D:\Aviry\CheckPoint\ZoneAlarm\vsmon.exe
O23 - Service: ZoneAlarm Privacy Service (ZAPrivacyService) - Check Point Software Technologies, Ltd. - D:\Aviry\CheckPoint\ZoneAlarm\ZaPrivacyService.exe
O23 - Service: ZoneAlarm ICM Service - Check Point Software Technologies Ltd. - D:\Aviry\CheckPoint\ZoneAlarm\ICM-Service.exe

--
End of file - 7029 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - D:\Programy\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-09-20 328248]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A841F7A-A014-4DA5-B6D9-8B913DFB7A8C}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_151\bin\ssv.dll [2017-11-05 473664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_151\bin\jp2ssv.dll [2017-11-05 187968]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - D:\Programy\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-09-20 509496]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107}

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AdobeAAMUpdater-1.0"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2013-12-10 472984]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2016-11-14 1002984]
"LWS"=D:\Web kamera\Web Kamera Logitech\LWS\Webcam Software\LWS.exe [2012-09-13 204136]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2016-03-15 14737664]
"ZoneAlarm"=D:\Aviry\CheckPoint\ZoneAlarm\zatray.exe [2017-02-14 144696]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2009-09-23 141848]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2009-09-23 173592]
"Persistence"=C:\Windows\system32\igfxpers.exe [2009-09-23 150552]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner.exe [2018-07-20 13684416]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Creative Cloud]
C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2014-02-11 2239376]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon]
C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring]
C:\Program Files\CCleaner\CCleaner.exe [2018-07-20 13684416]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DriverPack Notifier]
C:\Program Files\DriverPack Notifier\DriverPackNotifier.exe [2015-12-18 258560]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\hpqSRMon]
D:\Programy\HP\Digital Imaging\bin\hpqSRMon.exe [2008-07-22 150528]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
C:\Program Files\iTunes\iTunesHelper.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LifeCam]
C:\Program Files\Microsoft LifeCam\LifeExp.exe [2010-12-13 135536]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PDFPrint]
D:\Prográmky\PDF24\pdf24.exe [2014-02-06 189480]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\QuickTime\QTTask.exe [2014-01-17 421888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDVCPL]
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2016-03-15 14737664]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RunUVC]
D:\Web kamera\UVC Video Camera\EffectDir\UVCtray.exe [2010-08-23 7548928]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files\Skype\Phone\Skype.exe /minimized /regrun []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2017-09-05 587288]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UVCSti]
D:\Web kamera\UVC Video Camera\UVCSti.exe [2010-08-23 245760]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinFast Schedule]
C:\Program Files\WinFast\WFDTV\WFWIZ.exe [2010-08-11 2920448]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinFastDTV]
C:\Program Files\WinFast\WFDTV\DTVSchdl.exe [2011-01-12 101888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
D:\Programy\HP\DIGITA~1\bin\hpqtra08.exe [2009-09-20 270336]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^WinZip Quick Pick.lnk]
D:\ARCHIV~1\WinZip\WZQKPICK.EXE [2011-05-27 610120]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Secunia PSI Tray.lnk - D:\Aviry\Secunia\PSI\psi_tray.exe

C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
AutorunsDisabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2009-09-23 218112]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2018-06-16 230400]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\Windows\system32\wpdshserviceobj.dll [2010-11-20 105984]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=lvcodec2.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux1"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux2"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux3"=wdmaud.drv
"wave5"=wdmaud.drv
"mixer5"=wdmaud.drv
"msacm.siren"=sirenacm.dll
"wave6"=wdmaud.drv
"mixer6"=wdmaud.drv
"MSVideo"=vfwwdm32.dll
"wave7"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer7"=wdmaud.drv
"aux4"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave8"=wdmaud.drv
"mixer8"=wdmaud.drv
"wave9"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer9"=wdmaud.drv
"aux5"=wdmaud.drv
"midi7"=wdmaud.drv
"aux6"=wdmaud.drv
"midi8"=wdmaud.drv
"aux7"=wdmaud.drv
"midi9"=wdmaud.drv
"aux8"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2018-08-10 20:20:00 ----A---- C:\Windows\ntbtlog.txt
2018-08-10 19:54:45 ----ASH---- C:\pagefile.sys
2018-08-04 16:19:26 ----A---- C:\ProgramData\ntuser.dat
2018-07-11 08:26:50 ----A---- C:\Windows\system32\mshtml.dll
2018-07-11 08:26:47 ----A---- C:\Windows\system32\ieframe.dll
2018-07-11 08:26:45 ----A---- C:\Windows\system32\shell32.dll
2018-07-11 08:26:45 ----A---- C:\Windows\system32\jscript9.dll
2018-07-11 08:26:44 ----A---- C:\Windows\system32\vbscript.dll
2018-07-11 08:26:44 ----A---- C:\Windows\system32\urlmon.dll
2018-07-11 08:26:44 ----A---- C:\Windows\system32\ucrtbase.dll
2018-07-11 08:26:44 ----A---- C:\Windows\system32\drivers\tcpip.sys
2018-07-11 08:26:43 ----A---- C:\Windows\system32\win32k.sys
2018-07-11 08:26:43 ----A---- C:\Windows\system32\iertutil.dll
2018-07-11 08:26:43 ----A---- C:\Windows\system32\ExplorerFrame.dll
2018-07-11 08:26:42 ----A---- C:\Windows\system32\zipfldr.dll
2018-07-11 08:26:42 ----A---- C:\Windows\system32\wkssvc.dll
2018-07-11 08:26:42 ----A---- C:\Windows\system32\drivers\usbport.sys
2018-07-11 08:26:42 ----A---- C:\Windows\system32\drivers\usbhub.sys
2018-07-11 08:26:42 ----A---- C:\Windows\system32\drivers\dfsc.sys
2018-07-11 08:26:41 ----A---- C:\Windows\system32\ntdll.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2018-07-11 08:26:40 ----A---- C:\Windows\system32\mshtmlmedia.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\iedkcs32.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\drivers\netio.sys
2018-07-11 08:26:40 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2018-07-11 08:26:40 ----A---- C:\Windows\system32\dnsapi.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2018-07-11 08:26:40 ----A---- C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2018-07-11 08:26:39 ----A---- C:\Windows\system32\ntoskrnl.exe
2018-07-11 08:26:39 ----A---- C:\Windows\system32\ntkrnlpa.exe
2018-07-11 08:26:39 ----A---- C:\Windows\system32\halmacpi.dll
2018-07-11 08:26:39 ----A---- C:\Windows\system32\halacpi.dll
2018-07-11 08:26:39 ----A---- C:\Windows\system32\hal.dll
2018-07-11 08:26:39 ----A---- C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2018-07-11 08:26:39 ----A---- C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2018-07-11 08:26:39 ----A---- C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2018-07-11 08:26:39 ----A---- C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2018-07-11 08:26:38 ----A---- C:\Windows\system32\wininet.dll
2018-07-11 08:26:38 ----A---- C:\Windows\system32\msrating.dll
2018-07-11 08:26:38 ----A---- C:\Windows\system32\dxtmsft.dll
2018-07-11 08:26:38 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2018-07-11 08:26:38 ----A---- C:\Windows\system32\drivers\usbehci.sys
2018-07-11 08:26:38 ----A---- C:\Windows\system32\drivers\mpsdrv.sys
2018-07-11 08:26:38 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2018-07-11 08:26:38 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2018-07-11 08:26:38 ----A---- C:\Windows\system32\dnsrslvr.dll
2018-07-11 08:26:38 ----A---- C:\Windows\system32\dnscacheugc.exe
2018-07-11 08:26:37 ----A---- C:\Windows\system32\webcheck.dll
2018-07-11 08:26:37 ----A---- C:\Windows\system32\ole32.dll
2018-07-11 08:26:37 ----A---- C:\Windows\system32\dxtrans.dll
2018-07-11 08:26:36 ----A---- C:\Windows\system32\msfeeds.dll
2018-07-11 08:26:36 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2018-07-11 08:26:35 ----A---- C:\Windows\system32\winsrv.dll
2018-07-11 08:26:35 ----A---- C:\Windows\system32\rstrui.exe
2018-07-11 08:26:35 ----A---- C:\Windows\system32\ieui.dll
2018-07-11 08:26:35 ----A---- C:\Windows\system32\ie4uinit.exe
2018-07-11 08:26:35 ----A---- C:\Windows\system32\drivers\usbohci.sys
2018-07-11 08:26:35 ----A---- C:\Windows\system32\conhost.exe
2018-07-11 08:26:34 ----A---- C:\Windows\system32\wdigest.dll
2018-07-11 08:26:34 ----A---- C:\Windows\system32\srcore.dll
2018-07-11 08:26:34 ----A---- C:\Windows\system32\schannel.dll
2018-07-11 08:26:34 ----A---- C:\Windows\system32\rpcrt4.dll
2018-07-11 08:26:34 ----A---- C:\Windows\system32\mshtmled.dll
2018-07-11 08:26:34 ----A---- C:\Windows\system32\lsasrv.dll
2018-07-11 08:26:34 ----A---- C:\Windows\system32\kerberos.dll
2018-07-11 08:26:34 ----A---- C:\Windows\system32\iesetup.dll
2018-07-11 08:26:34 ----A---- C:\Windows\system32\advapi32.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\TSpkg.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\smss.exe
2018-07-11 08:26:33 ----A---- C:\Windows\system32\rpchttp.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\occache.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\ncrypt.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\msv1_0.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\KernelBase.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\kernel32.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\jscript9diag.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\inseng.dll
2018-07-11 08:26:33 ----A---- C:\Windows\system32\ieUnatt.exe
2018-07-11 08:26:33 ----A---- C:\Windows\system32\iernonce.dll
2018-07-11 08:26:32 ----A---- C:\Windows\system32\rpcss.dll
2018-07-11 08:26:32 ----A---- C:\Windows\system32\jsproxy.dll
2018-07-11 08:26:32 ----A---- C:\Windows\system32\drivers\videoprt.sys
2018-07-11 08:26:32 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2018-07-11 08:26:32 ----A---- C:\Windows\system32\csrsrv.dll
2018-07-11 08:26:32 ----A---- C:\Windows\system32\auditpol.exe
2018-07-11 08:26:32 ----A---- C:\Windows\system32\appidsvc.dll
2018-07-11 08:26:32 ----A---- C:\Windows\system32\appidapi.dll
2018-07-11 08:26:31 ----A---- C:\Windows\system32\MshtmlDac.dll
2018-07-11 08:26:31 ----A---- C:\Windows\system32\ieetwproxystub.dll
2018-07-11 08:26:31 ----A---- C:\Windows\system32\ieetwcollector.exe
2018-07-11 08:26:31 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2018-07-11 08:26:31 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2018-07-11 08:26:31 ----A---- C:\Windows\system32\apisetschema.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\sspisrv.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\sspicli.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\srclient.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\setbcdlocale.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\secur32.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\msobjs.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\msaudite.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\lsass.exe
2018-07-11 08:26:30 ----A---- C:\Windows\system32\jscript.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\ieapfltr.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\FirewallAPI.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\drivers\appid.sys
2018-07-11 08:26:30 ----A---- C:\Windows\system32\cryptbase.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\credssp.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\comcat.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\bcrypt.dll
2018-07-11 08:26:30 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2018-07-11 08:26:29 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2018-07-11 08:26:29 ----A---- C:\Windows\system32\oleres.dll
2018-07-11 08:26:29 ----A---- C:\Windows\system32\MPSSVC.dll
2018-07-11 08:26:29 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2018-07-11 08:26:29 ----A---- C:\Windows\system32\icfupgd.dll
2018-07-11 08:26:29 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2018-07-11 08:26:29 ----A---- C:\Windows\system32\adtschema.dll
2018-07-11 08:26:28 ----A---- C:\Windows\system32\wfapigp.dll
2018-07-11 08:26:28 ----A---- C:\Windows\system32\drivers\usbd.sys
2018-07-11 08:23:08 ----A---- C:\Windows\system32\aitstatic.exe
2018-07-11 08:23:08 ----A---- C:\Windows\system32\aeinv.dll
2018-07-11 08:23:07 ----A---- C:\Windows\system32\appraiser.dll
2018-07-11 08:23:06 ----A---- C:\Windows\system32\invagent.dll
2018-07-11 08:23:06 ----A---- C:\Windows\system32\generaltel.dll
2018-07-11 08:23:06 ----A---- C:\Windows\system32\devinv.dll
2018-07-11 08:23:06 ----A---- C:\Windows\system32\CompatTelRunner.exe
2018-07-11 08:23:06 ----A---- C:\Windows\system32\centel.dll
2018-07-11 08:23:06 ----A---- C:\Windows\system32\aepic.dll
2018-07-11 08:23:06 ----A---- C:\Windows\system32\acmigration.dll

======List of files/folders modified in the last 1 month======

2018-08-10 20:49:54 ----D---- C:\Windows\Temp
2018-08-10 20:49:54 ----D---- C:\Program Files\trend micro
2018-08-10 20:45:30 ----D---- C:\Windows\system32\drivers
2018-08-10 20:45:27 ----D---- C:\Windows\inf
2018-08-10 20:44:51 ----D---- C:\Windows\system32\config
2018-08-10 20:38:08 ----D---- C:\Windows\tracing
2018-08-10 20:37:52 ----SHD---- C:\Windows\Installer
2018-08-10 20:37:52 ----D---- C:\Config.Msi
2018-08-10 20:34:19 ----AD---- C:\Users\User\AppData\Roaming\DriverPack Notifier
2018-08-10 20:30:49 ----D---- C:\Program Files\Opera
2018-08-10 20:29:49 ----RD---- C:\Program Files
2018-08-10 20:20:00 ----D---- C:\Windows
2018-08-10 19:37:32 ----D---- C:\Windows\winsxs
2018-08-10 19:33:47 ----D---- C:\Windows\system32\catroot2
2018-08-10 18:45:46 ----D---- C:\Windows\system32\NDF
2018-08-10 13:22:22 ----SHD---- C:\System Volume Information
2018-08-07 14:16:42 ----SD---- C:\ProgramData\Microsoft
2018-08-05 20:35:41 ----D---- C:\Users\User\AppData\Roaming\DRPSu
2018-08-05 02:32:09 ----D---- C:\Windows\system32\Macromed
2018-08-05 02:26:05 ----D---- C:\Program Files\CCleaner
2018-08-05 02:16:45 ----D---- C:\Windows\Tasks
2018-08-05 02:16:45 ----D---- C:\Windows\system32\wfp
2018-08-05 02:16:42 ----D---- C:\Windows\system32\wbem
2018-08-05 02:14:35 ----D---- C:\Windows\system32\Tasks
2018-08-05 02:14:35 ----D---- C:\Windows\system32\DriverStore
2018-08-05 02:14:35 ----D---- C:\Windows\system32\drivers\etc
2018-08-05 02:14:35 ----D---- C:\Program Files\Internet Explorer
2018-08-05 02:14:35 ----AD---- C:\Windows\System32
2018-08-05 02:14:34 ----D---- C:\Users\User\AppData\Roaming\OpenCandy
2018-08-05 02:14:34 ----D---- C:\Users\User\AppData\Roaming\IObit
2018-08-05 02:14:33 ----D---- C:\ProgramData\Skype
2018-08-05 02:14:33 ----D---- C:\ProgramData\IObit
2018-08-05 02:14:33 ----D---- C:\ProgramData\AVAST Software
2018-08-05 02:14:33 ----D---- C:\ProgramData
2018-08-05 02:14:31 ----RD---- C:\Program Files\Skype
2018-08-05 02:14:31 ----D---- C:\Program Files\Zrychleni Pocitace
2018-08-05 02:14:31 ----D---- C:\Program Files\WinZip Self-Extractor
2018-08-05 02:14:31 ----D---- C:\Program Files\WinRAR
2018-08-05 02:14:31 ----D---- C:\Program Files\Safari
2018-08-05 02:14:31 ----D---- C:\Program Files\QuickTime
2018-08-05 02:14:29 ----D---- C:\Program Files\OpenType Extension
2018-08-05 02:14:28 ----D---- C:\Program Files\OpenOffice.org 3
2018-08-05 02:14:23 ----D---- C:\Program Files\Microsoft
2018-08-05 02:14:23 ----D---- C:\Program Files\IObitCom
2018-08-05 02:14:23 ----D---- C:\Program Files\IObit
2018-08-05 02:14:23 ----D---- C:\Program Files\ICQToolbar
2018-08-05 02:14:23 ----D---- C:\Program Files\GIMP-2.0
2018-08-05 02:14:19 ----D---- C:\Program Files\CheckPoint
2018-08-05 02:14:19 ----D---- C:\Program Files\DVDVideoSoft
2018-08-05 02:14:19 ----D---- C:\Program Files\DriverPack Notifier
2018-08-05 02:14:19 ----D---- C:\Program Files\Common Files\AVAST Software
2018-08-05 02:14:19 ----D---- C:\Program Files\Common Files
2018-08-05 02:14:18 ----D---- C:\Program Files\Avant Browser
2018-08-05 02:14:14 ----D---- C:\Program Files\Ashampoo
2018-08-05 02:14:14 ----D---- C:\Program Files\Advanced Registry Optimizer
2018-08-05 02:14:14 ----D---- C:\Program Files\Adobe
2018-08-05 02:13:35 ----D---- C:\Windows\registration
2018-08-05 02:12:37 ----D---- C:\Users\User\AppData\Roaming\Skype
2018-08-05 02:12:28 ----D---- C:\Users\User\AppData\Roaming\Macromedia
2018-08-05 02:11:51 ----D---- C:\ProgramData\Real
2018-08-03 21:05:06 ----D---- C:\Users\User\AppData\Roaming\CheckPoint
2018-07-29 12:25:40 ----A---- C:\Windows\system32\PerfStringBackup.INI
2018-07-24 08:57:13 ----SD---- C:\Users\User\AppData\Roaming\Microsoft
2018-07-17 00:02:15 ----N---- C:\Windows\system32\MpSigStub.exe
2018-07-15 16:21:12 ----D---- C:\Windows\Microsoft.NET
2018-07-15 16:14:21 ----RSD---- C:\Windows\assembly
2018-07-11 22:52:32 ----D---- C:\Windows\debug
2018-07-11 15:26:19 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2018-07-11 15:10:54 ----D---- C:\Windows\system32\drivers\cs-CZ
2018-07-11 15:10:54 ----D---- C:\Windows\system32\cs-CZ
2018-07-11 15:10:53 ----D---- C:\Windows\system32\en-US
2018-07-11 15:10:45 ----RSD---- C:\Windows\Fonts
2018-07-11 15:10:45 ----D---- C:\Windows\AppPatch
2018-07-11 15:10:38 ----D---- C:\Windows\system32\appraiser
2018-07-11 09:40:18 ----D---- C:\Windows\system32\MRT
2018-07-11 09:39:58 ----AC---- C:\Windows\system32\MRT.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 KL1;kl1; C:\Windows\system32\DRIVERS\kl1.sys [2012-01-09 133208]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2016-08-25 252808]
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12368]
R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2010-03-19 45648]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2018-01-01 173288]
R1 kl2;kl2; C:\Windows\system32\DRIVERS\kl2.sys [2012-01-09 11352]
R1 KLIF;Kaspersky Lab Driver; C:\Windows\system32\DRIVERS\klif.sys [2012-01-09 468272]
R1 Vsdatant;Zone Alarm Firewall Driver; C:\Windows\system32\DRIVERS\vsdatant.sys [2018-08-10 365496]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-07-14 4194816]
R3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2016-03-15 3795712]
R3 LVRS;Logitech RightSound Filter Driver; C:\Windows\system32\DRIVERS\lvrs.sys [2012-09-21 310504]
R3 LVUVC;Logitech HD Webcam C270(UVC); C:\Windows\system32\DRIVERS\lvuvc.sys [2012-09-21 4261224]
R3 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2016-08-25 105696]
S1 wfcxacap;WinFast TV PCI Audio Capture Driver; C:\Windows\system32\DRIVERS\wfcxacap.sys [2007-09-19 9856]
S2 wfcxatun;WinFast TV Analog Tuner Driver; C:\Windows\system32\drivers\wfcxatun.sys [2007-09-19 31744]
S2 WFCXVCAP;WinFast TV Video Capture Driver; C:\Windows\system32\drivers\wfcxvcap.sys [2007-09-19 167040]
S3 adusbmdm6501;AnyDATA CDMA USB Modem Driver (PID 6501); C:\Windows\system32\DRIVERS\adusbmdm65.sys [2005-05-02 65408]
S3 adusbser;AnyDATA USB Device for Legacy Serial Communication; C:\Windows\system32\DRIVERS\adusbser.sys [2006-12-20 97920]
S3 adusbser6501;AnyDATA CDMA USB Serial Port (PID 6501); C:\Windows\system32\DRIVERS\adusbser65.sys [2005-05-02 65408]
S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2018-02-10 52928]
S3 aswTap;avast! SecureLine TAP Adapter v3; C:\Windows\system32\DRIVERS\aswTap.sys [2014-07-05 38984]
S3 AtcL001;NDIS Miniport Driver for Atheros L1 Gigabit Ethernet - adaptér; C:\Windows\system32\DRIVERS\l160x86.sys [2009-07-14 47104]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 78336]
S3 Cam3820;Cam3820 PC Camera Driver; C:\Windows\System32\Drivers\cam3820a.sys [2010-08-25 369024]
S3 catchme;catchme; \??\C:\Users\User\AppData\Local\Temp\catchme.sys []
S3 Dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 131072]
S3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2010-11-20 16384]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 36864]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2012-07-28 49088]
S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2009-09-23 4808192]
S3 int0800;Intel 28F320C3 Flash Update Device Driver v6.4; C:\Windows\system32\DRIVERS\flashud.sys [2009-09-09 42496]
S3 MSHUSBVideo;NX6000/NX3000/VX2000/VX5000/VX5500/VX7000/Cinema Filter Driver; C:\Windows\System32\Drivers\nx6000.sys [2010-12-13 30576]
S3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2009-07-16 13216]
S3 PSI;PSI; C:\Windows\system32\DRIVERS\psi_mf.sys [2010-09-01 15544]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-11-10 14848]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2018-02-10 51904]
S3 teamviewervpn;TeamViewer VPN Adapter; C:\Windows\system32\DRIVERS\teamviewervpn.sys [2011-03-30 25088]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 49152]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-11-10 27136]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 36352]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2018-02-10 52928]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\drivers\viac7.sys [2009-07-14 52736]
S3 wfcxdtun;WinFast DTV BDA Tuner/Demod Driver; C:\Windows\system32\drivers\wfcxdtun.sys [2007-09-19 21248]
S3 wfcxtcap;WinFast DTV BDA Transport Stream Capture Driver; C:\Windows\system32\drivers\wfcxtcap.sys [2007-09-19 15872]
S3 wfcxxbar;WinFast TV Crossbar Driver; C:\Windows\system32\drivers\wfcxxbar.sys [2007-09-19 10496]
S3 wind502u;ASUS USB 2.0 Wireless Network Adapter; C:\Windows\system32\DRIVERS\wind502u.sys [2004-03-25 336256]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ACDaemon;ArcSoft Connect Daemon; C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
R2 AdobeActiveFileMonitor10.0;Adobe Active File Monitor V10; D:\Fotoeditory\Adobe Photoshop Elements 10\Elements 10 Organizer\PhotoshopElementsFileAgent.exe [2011-09-14 169624]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2018-03-21 83984]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 MSCamSvc;MSCamSvc; C:\Program Files\Microsoft LifeCam\MSCamS32.exe [2010-12-13 135536]
R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\MsMpEng.exe [2016-11-14 103696]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 Secunia Update Agent;Secunia Update Agent; D:\Aviry\Secunia\PSI\sua.exe [2011-04-19 399416]
R2 UleadBurningHelper;Ulead Burning Helper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [2004-12-13 49152]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 1713904]
R2 ZoneAlarm ICM Service;ZoneAlarm ICM Service; D:\Aviry\CheckPoint\ZoneAlarm\ICM-Service.exe [2017-02-14 1037624]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; C:\Program Files\Microsoft Security Client\NisSrv.exe [2016-11-14 280864]
R3 ZAPrivacyService;ZoneAlarm Privacy Service; D:\Aviry\CheckPoint\ZoneAlarm\ZaPrivacyService.exe [2016-11-01 114936]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2017-10-04 107624]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S2 Secunia PSI Agent;Secunia PSI Agent; D:\Aviry\Secunia\PSI\PSIA.exe [2011-04-19 993848]
S2 vsmon;TrueVector Internet Monitor; D:\Aviry\CheckPoint\ZoneAlarm\vsmon.exe [2017-02-14 4076744]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2018-07-11 335872]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2017-10-04 47200]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2012-09-12 1512448]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2013-12-19 136120]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2018-06-16 104960]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-06-08 1343400]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2017-10-04 136288]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2017-10-04 136288]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2017-10-04 136288]

-----------------EOF-----------------

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Problém se spouštěním netu - prosím o kontrolu logu

#2 Příspěvek od Conder »

Ahoj :)

:arrow: Stiahni AdwCleaner: https://toolslib.net/downloads/finish/1/
  • Uloz na plochu a ukonci vsetky programy
  • Spusti AdwCleaner ako spravca
  • Odsuhlas licencne podmienky
  • Klikni na Skenovat nyni (Scan now) a pockaj na dokoncenie
  • Nechaj zaskrtnute vsetky nalezy
  • Klikni na Cisteni a opravy (Clean and Repair) a potvrd restart PC teraz
  • Po restartovani PC sa otvori AdwCleaner, klikni na Zobrazit soubor protokolu
  • Otvori sa log, jeho obsah sem skopiruj
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

Antusek
Návštěvník
Návštěvník
Příspěvky: 488
Registrován: 17 úno 2007 20:54

Re: Problém se spouštěním netu - prosím o kontrolu logu

#3 Příspěvek od Antusek »

Posílám log a díky za další postup.

# -------------------------------
# Malwarebytes AdwCleaner 7.2.2.0
# -------------------------------
# Build: 07-17-2018
# Database: 2018-08-10.2
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start: 08-10-2018
# Duration: 00:01:42
# OS: Windows 7 Home Premium
# Scanned: 41771
# Detected: 96


***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

PUP.Optional.AdvancedSystemCare C:\Users\User\AppData\Roaming\IObit\Advanced SystemCare
PUP.Optional.DriverPack C:\Users\User\AppData\Roaming\DRPSu
PUP.Optional.DriverPack C:\Program Files\DriverPack Notifier
PUP.Optional.DriverPack C:\Users\User\AppData\Roaming\DriverPack Notifier
PUP.Optional.FileViewPro C:\Users\User\AppData\Local\FileViewPro
PUP.Optional.Legacy C:\ProgramData\IObit\ASCDownloader
PUP.Optional.Legacy C:\Program Files\advanced registry optimizer
PUP.Optional.Legacy C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free FLV Converter
PUP.Optional.Legacy C:\Program Files\icqtoolbar
PUP.Optional.Legacy C:\Users\User\AppData\LocalLow\Check Point Software Technologies LTD
PUP.Optional.Legacy C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zrychleni Pocitace
PUP.Optional.Legacy C:\Program Files\Zrychleni Pocitace
PUP.Optional.OpenCandy C:\Users\User\AppData\Roaming\OpenCandy

***** [ Files ] *****

PUP.Optional.AdvancedSystemCare C:\Windows\System32\REGISTRYDEFRAGBOOTTIME.EXE
PUP.Optional.Legacy C:\Windows\System32\roboot.exe

***** [ DLL ] *****

No malicious DLLs found.

***** [ WMI ] *****

No malicious WMI found.

***** [ Shortcuts ] *****

No malicious shortcuts found.

***** [ Tasks ] *****

PUP.Optional.DriverPack C:\Windows\System32\Tasks\DriverPack Notifier

***** [ Registry ] *****

PUP.Optional.AdvancedSystemCare HKLM\Software\Classes\Interface\{BA935377-E17C-4475-B1BF-DE3110613A99}
PUP.Optional.DefaultSearch.ShrtCln HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\defaultsearch.com
PUP.Optional.DriverPack HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\DriverPack Notifier
PUP.Optional.DriverPack HKCU\Software\drpsu
PUP.Optional.DriverPack HKLM\Software\drpsu
PUP.Optional.DriverPack HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\DriverPack Notifier
PUP.Optional.DriverPack HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5FBE96EA-F8D7-4423-9704-FD5F2C40D5C6}
PUP.Optional.DriverPack HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5FBE96EA-F8D7-4423-9704-FD5F2C40D5C6}
PUP.Optional.DriverPack HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DriverPack Notifier
PUP.Optional.Legacy HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\WinFast Schedule
PUP.Optional.Legacy HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Free FLV Converter_is1
PUP.Optional.Legacy HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{1AE46C09-2AB8-4EE5-88FB-08CD0FF7F2DF}
PUP.Optional.Legacy HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\ZoneAlarm Toolbar
PUP.Optional.Legacy HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\68E4BF4B11615E03C97732FD581AB607
PUP.Optional.Legacy HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\00E944CB89111313EAF35A0553F547F9
PUP.Optional.Legacy HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\53F55AF3F4049ED3FA6EA6F88E414E24
PUP.Optional.Legacy HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FB1E44269B58F433A8C8E671E37CFDCF
PUP.Optional.Legacy HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AF6CE16AFEA5C9A39B766468A8B35C21
PUP.Optional.Legacy HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8CE3DDAB2D152683FBCEB4866BCD2B0F
PUP.Optional.Legacy HKLM\SOFTWARE\Classes\AppID\esrv.EXE
PUP.Optional.Legacy HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
PUP.Optional.Legacy HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
PUP.Optional.Legacy HKLM\SOFTWARE\Classes\AppID\escort.DLL
PUP.Optional.Legacy HKLM\Software\Classes\TypeLib\{DC97D932-ED6C-4AD3-A0D6-AA03C4C76A97}
PUP.Optional.Legacy HKLM\Software\Classes\TypeLib\{E00DE9B9-B128-4C39-B732-B5D85013FA48}
PUP.Optional.Legacy HKLM\Software\Classes\TypeLib\{99DF8440-814E-497F-BDDD-FB93E9E9DF96}
PUP.Optional.Legacy HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{83CAD530-387D-40FD-82EA-B9E863D92A9B}
PUP.Optional.Legacy HKLM\Software\Classes\Interface\{744E0E81-BC79-4719-A58B-C98F7E78EE5D}
PUP.Optional.Legacy HKLM\Software\Classes\TypeLib\{4A115D8A-6A7B-4C72-92B1-2E2D01F36979}
PUP.Optional.Legacy HKLM\Software\Classes\TypeLib\{3C5D1D57-16C8-473C-A552-37B8D88596FE}
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2A841F7A-A014-4DA5-B6D9-8B913DFB7A8C}
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2A841F7A-A014-4DA5-B6D9-8B913DFB7A8C}
PUP.Optional.Legacy HKLM\Software\Classes\TypeLib\{212C2C4F-C845-4FBC-9561-C833A13D8DCE}
PUP.Optional.Legacy HKLM\Software\Classes\TypeLib\{06DEB529-DE09-43EC-B6E2-451AAB0FF000}
PUP.Optional.Legacy HKLM\Software\Classes\AppID\{06DEB529-DE09-43EC-B6E2-451AAB0FF000}
PUP.Optional.Legacy HKLM\Software\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
PUP.Optional.Legacy HKLM\Software\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
PUP.Optional.Legacy HKLM\Software\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
PUP.Optional.Legacy HKLM\Software\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\mywebsearch.net
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\searchnow.ws
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\mysearchnow.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\youfindall.net
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\youfindall.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\hotbar.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\isearch.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\get-search.cc
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\yoursearchresults.net
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\yoursearcher.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\yoursearchbar.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\yoursearch247.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\whatsyoursearch.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\resultsyoursearch.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\crawlermachine.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\nicecodec.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\niceblowjob.info
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\fucknicepics.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\codecnice.net
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\ifinditall.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\icanfindit.net
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\findit-now.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\clearask.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\searchengine2000.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\best-searchengine.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\adultdatingsearchengine.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\http602.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\you-search.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\bestcrawler.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\tangounion.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2D713BD4-3CA5-4F6F-B7E9-7A6673C9FB98}
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\search-web.us
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\searchoutlaw.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\digistreamsa.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{FC16970D-D309-4E46-9206-8A304B754A05}
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\searchable-sex.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\securesurface.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\easy-search.net
PUP.Optional.SafeFinder HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\startravelsnp.com
PUP.Optional.SearchProtect HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\searchproject.net
PUP.Optional.SpeedChecker.PrxySvrRST HKCU\Software\Speedchecker Limited

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries found.

***** [ Chromium URLs ] *****

No malicious Chromium URLs found.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries found.

***** [ Firefox URLs ] *****

No malicious Firefox URLs found.



########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S00].txt ##########

Antusek
Návštěvník
Návštěvník
Příspěvky: 488
Registrován: 17 úno 2007 20:54

Re: Problém se spouštěním netu - prosím o kontrolu logu

#4 Příspěvek od Antusek »

Zapomněl jsem pročistit. Posílám správná log.

# -------------------------------
# Malwarebytes AdwCleaner 7.2.2.0
# -------------------------------
# Build: 07-17-2018
# Database: 2018-08-10.2
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 08-10-2018
# Duration: 00:00:20
# OS: Windows 7 Home Premium
# Cleaned: 96
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

Deleted C:\Users\User\AppData\Roaming\IObit\Advanced SystemCare
Deleted C:\Users\User\AppData\Roaming\DRPSu
Deleted C:\Program Files\DriverPack Notifier
Deleted C:\Users\User\AppData\Roaming\DriverPack Notifier
Deleted C:\Users\User\AppData\Local\FileViewPro
Deleted C:\ProgramData\IObit\ASCDownloader
Deleted C:\Program Files\advanced registry optimizer
Deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free FLV Converter
Deleted C:\Program Files\icqtoolbar
Deleted C:\Users\User\AppData\LocalLow\Check Point Software Technologies LTD
Deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zrychleni Pocitace
Deleted C:\Program Files\Zrychleni Pocitace
Deleted C:\Users\User\AppData\Roaming\OpenCandy

***** [ Files ] *****

Deleted C:\Windows\System32\REGISTRYDEFRAGBOOTTIME.EXE
Deleted C:\Windows\System32\roboot.exe

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

Deleted C:\Windows\System32\Tasks\DriverPack Notifier

***** [ Registry ] *****

Deleted HKLM\Software\Classes\Interface\{BA935377-E17C-4475-B1BF-DE3110613A99}
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\defaultsearch.com
Deleted HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\DriverPack Notifier
Deleted HKCU\Software\drpsu
Deleted HKLM\Software\drpsu
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\DriverPack Notifier
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5FBE96EA-F8D7-4423-9704-FD5F2C40D5C6}
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5FBE96EA-F8D7-4423-9704-FD5F2C40D5C6}
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DriverPack Notifier
Deleted HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\WinFast Schedule
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Free FLV Converter_is1
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{1AE46C09-2AB8-4EE5-88FB-08CD0FF7F2DF}
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\ZoneAlarm Toolbar
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\68E4BF4B11615E03C97732FD581AB607
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\00E944CB89111313EAF35A0553F547F9
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\53F55AF3F4049ED3FA6EA6F88E414E24
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FB1E44269B58F433A8C8E671E37CFDCF
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AF6CE16AFEA5C9A39B766468A8B35C21
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8CE3DDAB2D152683FBCEB4866BCD2B0F
Deleted HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Deleted HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Deleted HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Deleted HKLM\SOFTWARE\Classes\AppID\escort.DLL
Deleted HKLM\Software\Classes\TypeLib\{DC97D932-ED6C-4AD3-A0D6-AA03C4C76A97}
Deleted HKLM\Software\Classes\TypeLib\{E00DE9B9-B128-4C39-B732-B5D85013FA48}
Deleted HKLM\Software\Classes\TypeLib\{99DF8440-814E-497F-BDDD-FB93E9E9DF96}
Deleted HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{83CAD530-387D-40FD-82EA-B9E863D92A9B}
Deleted HKLM\Software\Classes\Interface\{744E0E81-BC79-4719-A58B-C98F7E78EE5D}
Deleted HKLM\Software\Classes\TypeLib\{4A115D8A-6A7B-4C72-92B1-2E2D01F36979}
Deleted HKLM\Software\Classes\TypeLib\{3C5D1D57-16C8-473C-A552-37B8D88596FE}
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2A841F7A-A014-4DA5-B6D9-8B913DFB7A8C}
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2A841F7A-A014-4DA5-B6D9-8B913DFB7A8C}
Deleted HKLM\Software\Classes\TypeLib\{212C2C4F-C845-4FBC-9561-C833A13D8DCE}
Deleted HKLM\Software\Classes\TypeLib\{06DEB529-DE09-43EC-B6E2-451AAB0FF000}
Deleted HKLM\Software\Classes\AppID\{06DEB529-DE09-43EC-B6E2-451AAB0FF000}
Deleted HKLM\Software\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Deleted HKLM\Software\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Deleted HKLM\Software\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Deleted HKLM\Software\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\mywebsearch.net
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\searchnow.ws
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\mysearchnow.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\youfindall.net
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\youfindall.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\hotbar.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\isearch.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\get-search.cc
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\yoursearchresults.net
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\yoursearcher.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\yoursearchbar.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\yoursearch247.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\whatsyoursearch.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\resultsyoursearch.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\crawlermachine.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\nicecodec.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\niceblowjob.info
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\fucknicepics.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\codecnice.net
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\ifinditall.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\icanfindit.net
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\findit-now.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\clearask.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\searchengine2000.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\best-searchengine.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\adultdatingsearchengine.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\http602.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\you-search.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\bestcrawler.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\tangounion.com
Deleted HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2D713BD4-3CA5-4F6F-B7E9-7A6673C9FB98}
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\search-web.us
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\searchoutlaw.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\digistreamsa.com
Deleted HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{FC16970D-D309-4E46-9206-8A304B754A05}
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\searchable-sex.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\securesurface.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\easy-search.net
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\startravelsnp.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\searchproject.net
Deleted HKCU\Software\Speedchecker Limited

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [12059 octets] - [10/08/2018 22:28:22]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########

Antusek
Návštěvník
Návštěvník
Příspěvky: 488
Registrován: 17 úno 2007 20:54

Re: Problém se spouštěním netu - prosím o kontrolu logu

#5 Příspěvek od Antusek »

Další úkon udělám zítra. Díky za další postup.
:)

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Problém se spouštěním netu - prosím o kontrolu logu

#6 Příspěvek od Conder »

:arrow: V predchadzajucej teme ti Rudy odporucil uvolnit miesto na disku C:, podla aktualneho RSIT logu su na disku C: stale len 3 GB volneho miesta. V takom pripade mozu problemy so systemom len pribudat. Uvolni teda miesto na C: presunutim dat na ine ulozisko a/alebo odinstalaciou nepotrebnych programov, pripadne zvacsenim particie (oddielu).

:arrow: AdwCleaner znova precistil smejdy od IObitu (Advanced SystemCare, Driver Booster...). Programy od IObitu odporucame nepouzivat a odinstalovat, kedze mozu poskodit system. Podobne to plati aj pre programy "Zrychleni Pocitace" a "Advanced Registry Optimizer".

:arrow: Potom posli obidva logy z FRST podla tohto navodu (FRST.txt a Addition.txt): https://forum.viry.cz/viewtopic.php?f=13&t=152707

:arrow: V pripade, ze sa FRSTLauncher nebude dat stiahnut alebo spustit, pouzi iba samotny FRST.

:arrow: Ak sa logy nezmestia do jedneho prispevku, zabal ich do archivu RAR alebo ZIP a posli ako prilohu.
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

Antusek
Návštěvník
Návštěvník
Příspěvky: 488
Registrován: 17 úno 2007 20:54

Re: Problém se spouštěním netu - prosím o kontrolu logu

#7 Příspěvek od Antusek »

Trochu jsem vyčistil disk C, tím, že jsem nějaké programy z Program files přesunul na D.
Teď čistím pomocí FRST, ale nepodařilo se mi nahrát ten druhý, ač jsem vypnul antivir a firewall. Nemohu se podívat na ten obrázek, abych donastavil FRST. Stránky jsou nebezpečné a když to dle vaší rady spustím nic tam není
Dooznačíme položku Addition.txt - viz obrázek.
Co tam mám ještě označit.
Díky za radu a pak ten první FRST spustím a dám log. Také se stále objevují nové aktualizace windows. Nic jsem neaktualizoval. Na druhém PC doma je nemám.
:)

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Problém se spouštěním netu - prosím o kontrolu logu

#8 Příspěvek od Conder »

:arrow: Ak ten FRSTLauncher nejde, tak pouzi iba samotny FRST. Ak je uz polozka Addition.txt zaskrtnuta (co by mala byt), tak nie je potrebne robit nic, iba dat Scan.

:arrow: Co sa tyka Windows Update aktualizacii, tak urcite odporucam nainstalovat vsetky dolezite aktualizacie.
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

Antusek
Návštěvník
Návštěvník
Příspěvky: 488
Registrován: 17 úno 2007 20:54

Re: Problém se spouštěním netu - prosím o kontrolu logu

#9 Příspěvek od Antusek »

Díky, provedu. Co se týká těch aktualizací, objevují se každý den. A když jsem to neaktualizoval a restartoval tak tam už nebyli a po nějakém čase se zase objevili. Takže jsem nabyl přesvědčení, že ty aktualizace mají co do činění s těmi potvorami, co se dostali do PC. Divné je, že na druhém PC jsem je neměl.
:)

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Problém se spouštěním netu - prosím o kontrolu logu

#10 Příspěvek od Conder »

:arrow: OK, tie aktualizacie vyriesime na konci. Pockam teda na FRST.
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

Antusek
Návštěvník
Návštěvník
Příspěvky: 488
Registrován: 17 úno 2007 20:54

Re: Problém se spouštěním netu - prosím o kontrolu logu

#11 Příspěvek od Antusek »

Zaškrtl jsem raději vše. A dle instrukcí vložil do Addition.txt Vkládám jako přílohu. Díky za další postup. :)
Addition.zip
(52.97 KiB) Staženo 63 x

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Problém se spouštěním netu - prosím o kontrolu logu

#12 Příspěvek od Conder »

:arrow: Otvor poznamkovy blok (Win+R -> notepad -> enter)
  • Skopiruj nasledujuci text a vloz ho do poznamkoveho bloku:

    Kód: Vybrat vše

    Start
    CloseProcesses:
    CreateRestorePoint:
    
    HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = 
    HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
    HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
    SearchScopes: HKLM -> DefaultScope value is missing
    Toolbar: HKLM - No Name - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} -  No File
    FF HKLM\...\Firefox\Extensions: [{97E22097-9A2F-45b1-8DAF-36AD648C7EF4}] - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext => not found
    FF HKLM\...\Firefox\Extensions: [{FFB96CC1-7EB3-449D-B827-DB661701C6BB}] - C:\Program Files\CheckPoint\ZAForceField\TrustChecker => not found
    FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
    FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [No File]
    FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [No File]
    CHR HKLM\...\Chrome\Extension: [jfmjfhklogoienhpfnppmbcbjfjnkonk] - <no Path/update_url>
    CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - hxxps://clients2.google.com/service/update2/crx
    U5 AppMgmt; C:\Windows\system32\svchost.exe [20992 2009-07-14] (Microsoft Corporation) <==== ATTENTION (no ServiceDLL)
    U3 aswbdisk; no ImagePath
    S3 catchme; \??\C:\Users\User\AppData\Local\Temp\catchme.sys [X] <==== ATTENTION
    U3 iswSvc; no ImagePath
    2018-08-10 20:49 - 2011-06-10 17:45 - 000000000 ____D C:\Program Files\trend micro
    2015-03-17 18:58 - 2015-03-17 18:58 - 006103040 _____ () C:\Program Files\GUT4B.tmp
    2017-04-06 17:30 - 2017-04-06 17:30 - 000000000 _____ () C:\Users\User\AppData\Local\{D748AAC2-C82B-4CFF-AE9A-B4909BC9D048}
    
    ContextMenuHandlers1: [PfMenu] -> {2F844462-7CB8-489C-828C-32A6422506AF} =>  -> No File
    ContextMenuHandlers1: [ZLAVShExt] -> {D9872D13-7651-4471-9EEE-F0A00218BEBB} =>  -> No File
    ContextMenuHandlers4: [PfMenu] -> {2F844462-7CB8-489C-828C-32A6422506AF} =>  -> No File
    ContextMenuHandlers6: [PfMenu] -> {2F844462-7CB8-489C-828C-32A6422506AF} =>  -> No File
    ContextMenuHandlers6: [ZLAVShExt] -> {D9872D13-7651-4471-9EEE-F0A00218BEBB} =>  -> No File
    Task: {13CE9414-581D-4D39-B14C-D285DEA59792} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
    Task: {1A0A97EA-2AF7-4CCD-8E38-422E97E57D7F} - System32\Tasks\{68CB31DE-3C33-468F-B840-4D339790289F} => C:\Windows\system32\pcalua.exe -a E:\setup.exe -d E:\
    Task: {233A416B-2FDC-4DDD-997D-296EE638F673} - System32\Tasks\{801807E8-BF70-420F-9FE5-F949E82EFA00} => C:\Windows\system32\pcalua.exe -a D:\Drivers\Skener\Setup.exe -d D:\Drivers\Skener
    Task: {763BDA5A-8871-4B41-9C63-ED072458021D} - \Microsoft\Windows\Windows Activation Technologies\ValidationTask -> No File <==== ATTENTION
    Task: {84A7D51E-16FE-45AA-809B-9BFB89D9E9BD} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
    Task: {9ED412DC-85F3-4F69-A055-F7716981D529} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
    Task: {B082B77F-1A57-4899-9FFF-9F2D0BD79EE5} - \Microsoft\Windows\Windows Activation Technologies\ValidationTaskDeadline -> No File <==== ATTENTION
    Task: {CB623753-D8E8-40F4-85C7-7B60CBAE0CFA} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
    Task: {DCFEEF15-1FBB-41E3-9F80-7987AD944308} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> No File <==== ATTENTION
    Task: {EFD6172D-E1B3-404E-92F5-B5AC73ADC9DB} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
    
    C:\Program Files\IObit
    C:\Program Files (x86)\IObit
    C:\Program Files\Common Files\IObit
    C:\ProgramData\IObit
    C:\ProgramData\ProductData
    C:\Users\User\AppData\Roaming\IObit
    C:\Users\User\AppData\LocalLow\IObit
    C:\Users\User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\*Driver Booster*
    C:\Users\User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\*Advanced SystemCare*
    C:\Users\Default\AppData\Roaming\IObit
    C:\Users\Default\AppData\LocalLow\IObit
    C:\Users\Public\Desktop\*Driver Booster*
    C:\Users\Public\Desktop\*Advanced SystemCare*
    C:\Windows\IObit
    C:\Windows\Tasks\ImCleanDisabled
    C:\ProgramData\{13CFD044-61E4-4EAC-AD61-02536D961216}
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 5
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare
    
    Hosts:
    EmptyTemp:
    End
  • Uloz na plochu s nazvom fixlist.txt
  • Spusti znovu FRST a klikni na Fix
  • Po dokonceni si FRST vyziada restart PC, potvrd kliknutim na OK
  • Po restartovani PC bude na ploche subor Fixlog.txt, jeho obsah sem skopiruj
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

Antusek
Návštěvník
Návštěvník
Příspěvky: 488
Registrován: 17 úno 2007 20:54

Re: Problém se spouštěním netu - prosím o kontrolu logu

#13 Příspěvek od Antusek »

Posílám log. Zase se objevila ikonka aktualizací Windows. Při spuštění PC nebyla, pak byla. Při provádění této akce dokonce 2x. Po dokončení restartem zase není. Díky za další postup. V 16:00 jedu domů a budu na tomto PC až další víkend. Během týdne bude používán tatínkem. Věřím, že to bude o.k.
:)

Fix result of Farbar Recovery Scan Tool (x86) Version: 02.08.2018
Ran by User (12-08-2018 10:25:23) Run:1
Running from C:\Users\User\Desktop
Loaded Profiles: User (Available Profiles: User)
Boot Mode: Normal

==============================================

fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:

HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
SearchScopes: HKLM -> DefaultScope value is missing
Toolbar: HKLM - No Name - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - No File
FF HKLM\...\Firefox\Extensions: [{97E22097-9A2F-45b1-8DAF-36AD648C7EF4}] - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext => not found
FF HKLM\...\Firefox\Extensions: [{FFB96CC1-7EB3-449D-B827-DB661701C6BB}] - C:\Program Files\CheckPoint\ZAForceField\TrustChecker => not found
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [No File]
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [No File]
CHR HKLM\...\Chrome\Extension: [jfmjfhklogoienhpfnppmbcbjfjnkonk] - <no Path/update_url>
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - hxxps://clients2.google.com/service/update2/crx
U5 AppMgmt; C:\Windows\system32\svchost.exe [20992 2009-07-14] (Microsoft Corporation) <==== ATTENTION (no ServiceDLL)
U3 aswbdisk; no ImagePath
S3 catchme; \??\C:\Users\User\AppData\Local\Temp\catchme.sys [X] <==== ATTENTION
U3 iswSvc; no ImagePath
2018-08-10 20:49 - 2011-06-10 17:45 - 000000000 ____D C:\Program Files\trend micro
2015-03-17 18:58 - 2015-03-17 18:58 - 006103040 _____ () C:\Program Files\GUT4B.tmp
2017-04-06 17:30 - 2017-04-06 17:30 - 000000000 _____ () C:\Users\User\AppData\Local\{D748AAC2-C82B-4CFF-AE9A-B4909BC9D048}

ContextMenuHandlers1: [PfMenu] -> {2F844462-7CB8-489C-828C-32A6422506AF} => -> No File
ContextMenuHandlers1: [ZLAVShExt] -> {D9872D13-7651-4471-9EEE-F0A00218BEBB} => -> No File
ContextMenuHandlers4: [PfMenu] -> {2F844462-7CB8-489C-828C-32A6422506AF} => -> No File
ContextMenuHandlers6: [PfMenu] -> {2F844462-7CB8-489C-828C-32A6422506AF} => -> No File
ContextMenuHandlers6: [ZLAVShExt] -> {D9872D13-7651-4471-9EEE-F0A00218BEBB} => -> No File
Task: {13CE9414-581D-4D39-B14C-D285DEA59792} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {1A0A97EA-2AF7-4CCD-8E38-422E97E57D7F} - System32\Tasks\{68CB31DE-3C33-468F-B840-4D339790289F} => C:\Windows\system32\pcalua.exe -a E:\setup.exe -d E:\
Task: {233A416B-2FDC-4DDD-997D-296EE638F673} - System32\Tasks\{801807E8-BF70-420F-9FE5-F949E82EFA00} => C:\Windows\system32\pcalua.exe -a D:\Drivers\Skener\Setup.exe -d D:\Drivers\Skener
Task: {763BDA5A-8871-4B41-9C63-ED072458021D} - \Microsoft\Windows\Windows Activation Technologies\ValidationTask -> No File <==== ATTENTION
Task: {84A7D51E-16FE-45AA-809B-9BFB89D9E9BD} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {9ED412DC-85F3-4F69-A055-F7716981D529} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {B082B77F-1A57-4899-9FFF-9F2D0BD79EE5} - \Microsoft\Windows\Windows Activation Technologies\ValidationTaskDeadline -> No File <==== ATTENTION
Task: {CB623753-D8E8-40F4-85C7-7B60CBAE0CFA} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {DCFEEF15-1FBB-41E3-9F80-7987AD944308} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> No File <==== ATTENTION
Task: {EFD6172D-E1B3-404E-92F5-B5AC73ADC9DB} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION

C:\Program Files\IObit
C:\Program Files (x86)\IObit
C:\Program Files\Common Files\IObit
C:\ProgramData\IObit
C:\ProgramData\ProductData
C:\Users\User\AppData\Roaming\IObit
C:\Users\User\AppData\LocalLow\IObit
C:\Users\User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\*Driver Booster*
C:\Users\User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\*Advanced SystemCare*
C:\Users\Default\AppData\Roaming\IObit
C:\Users\Default\AppData\LocalLow\IObit
C:\Users\Public\Desktop\*Driver Booster*
C:\Users\Public\Desktop\*Advanced SystemCare*
C:\Windows\IObit
C:\Windows\Tasks\ImCleanDisabled
C:\ProgramData\{13CFD044-61E4-4EAC-AD61-02536D961216}
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 5
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare

Hosts:
EmptyTemp:
End
*****************

Processes closed successfully.
Restore point was successfully created.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Local Page => value restored successfully
"HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Search Page" => removed successfully.
"HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page" => removed successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
"HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107}" => removed successfully.
HKLM\Software\Classes\CLSID\{EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} => not found
"HKLM\Software\Mozilla\Firefox\Extensions\\{97E22097-9A2F-45b1-8DAF-36AD648C7EF4}" => removed successfully.
"HKLM\Software\Mozilla\Firefox\Extensions\\{FFB96CC1-7EB3-449D-B827-DB661701C6BB}" => removed successfully.
"HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE" => removed successfully.
"HKLM\Software\MozillaPlugins\Adobe Reader" => removed successfully.
"HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect" => removed successfully.
"HKLM\SOFTWARE\Google\Chrome\Extensions\jfmjfhklogoienhpfnppmbcbjfjnkonk" => removed successfully.
"HKLM\SOFTWARE\Google\Chrome\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl" => removed successfully.
"HKLM\System\CurrentControlSet\Services\AppMgmt" => removed successfully.
AppMgmt => service removed successfully.
"HKLM\System\CurrentControlSet\Services\aswbdisk" => removed successfully.
aswbdisk => service removed successfully.
"HKLM\System\CurrentControlSet\Services\catchme" => removed successfully.
catchme => service removed successfully.
"HKLM\System\CurrentControlSet\Services\iswSvc" => removed successfully.
iswSvc => service removed successfully.
C:\Program Files\trend micro => moved successfully
C:\Program Files\GUT4B.tmp => moved successfully
C:\Users\User\AppData\Local\{D748AAC2-C82B-4CFF-AE9A-B4909BC9D048} => moved successfully
"HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\PfMenu" => removed successfully.
HKLM\Software\Classes\CLSID\{2F844462-7CB8-489C-828C-32A6422506AF} => not found
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ZLAVShExt => could not remove, key could be protected
HKLM\Software\Classes\CLSID\{D9872D13-7651-4471-9EEE-F0A00218BEBB} => not found
"HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\PfMenu" => removed successfully.
HKLM\Software\Classes\CLSID\{2F844462-7CB8-489C-828C-32A6422506AF} => not found
"HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\PfMenu" => removed successfully.
HKLM\Software\Classes\CLSID\{2F844462-7CB8-489C-828C-32A6422506AF} => not found
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\ZLAVShExt => could not remove, key could be protected
HKLM\Software\Classes\CLSID\{D9872D13-7651-4471-9EEE-F0A00218BEBB} => not found
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{13CE9414-581D-4D39-B14C-D285DEA59792}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{13CE9414-581D-4D39-B14C-D285DEA59792}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1A0A97EA-2AF7-4CCD-8E38-422E97E57D7F}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1A0A97EA-2AF7-4CCD-8E38-422E97E57D7F}" => removed successfully.
C:\Windows\System32\Tasks\{68CB31DE-3C33-468F-B840-4D339790289F} => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{68CB31DE-3C33-468F-B840-4D339790289F}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{233A416B-2FDC-4DDD-997D-296EE638F673}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{233A416B-2FDC-4DDD-997D-296EE638F673}" => removed successfully.
C:\Windows\System32\Tasks\{801807E8-BF70-420F-9FE5-F949E82EFA00} => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{801807E8-BF70-420F-9FE5-F949E82EFA00}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{763BDA5A-8871-4B41-9C63-ED072458021D}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{763BDA5A-8871-4B41-9C63-ED072458021D}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Windows Activation Technologies\ValidationTask" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{84A7D51E-16FE-45AA-809B-9BFB89D9E9BD}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{84A7D51E-16FE-45AA-809B-9BFB89D9E9BD}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{9ED412DC-85F3-4F69-A055-F7716981D529}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9ED412DC-85F3-4F69-A055-F7716981D529}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B082B77F-1A57-4899-9FFF-9F2D0BD79EE5}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B082B77F-1A57-4899-9FFF-9F2D0BD79EE5}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Windows Activation Technologies\ValidationTaskDeadline" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CB623753-D8E8-40F4-85C7-7B60CBAE0CFA}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CB623753-D8E8-40F4-85C7-7B60CBAE0CFA}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DCFEEF15-1FBB-41E3-9F80-7987AD944308}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DCFEEF15-1FBB-41E3-9F80-7987AD944308}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EFD6172D-E1B3-404E-92F5-B5AC73ADC9DB}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EFD6172D-E1B3-404E-92F5-B5AC73ADC9DB}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d" => removed successfully.
"C:\Program Files\IObit" => not found
"C:\Program Files (x86)\IObit" => not found
"C:\Program Files\Common Files\IObit" => not found
"C:\ProgramData\IObit" => not found
"C:\ProgramData\ProductData" => not found
C:\Users\User\AppData\Roaming\IObit => moved successfully
C:\Users\User\AppData\LocalLow\IObit => moved successfully

=========== "C:\Users\User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\*Driver Booster*" ==========

not found

========= End -> "C:\Users\User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\*Driver Booster*" ========


=========== "C:\Users\User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\*Advanced SystemCare*" ==========

not found

========= End -> "C:\Users\User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\*Advanced SystemCare*" ========

"C:\Users\Default\AppData\Roaming\IObit" => not found
"C:\Users\Default\AppData\LocalLow\IObit" => not found

=========== "C:\Users\Public\Desktop\*Driver Booster*" ==========

not found

========= End -> "C:\Users\Public\Desktop\*Driver Booster*" ========


=========== "C:\Users\Public\Desktop\*Advanced SystemCare*" ==========

not found

========= End -> "C:\Users\Public\Desktop\*Advanced SystemCare*" ========

"C:\Windows\IObit" => not found
"C:\Windows\Tasks\ImCleanDisabled" => not found
"C:\ProgramData\{13CFD044-61E4-4EAC-AD61-02536D961216}" => not found
"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 5" => not found
"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare" => not found
Could not move "C:\Windows\System32\Drivers\etc\hosts" => Scheduled to move on reboot.

=========== EmptyTemp: ==========

BITS transfer queue => 8388608 B
DOMStoree, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 7892843 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => 125855 B
Edge => 0 B
Chrome => 8942175 B
Firefox => 0 B
Opera => 73768647 B

Temp, IE cache, history, cookies, recent:
Users => 0 B
Default => 33058 B
Public => 0 B
ProgramData => 0 B
systemprofile => 33058 B
LocalService => 4429084 B
NetworkService => 264404730 B
User => 1762645 B

RecycleBin => 0 B
EmptyTemp: => 352.7 MB temporary data Removed.

================================

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 12-08-2018 10:32:24)

"C:\Windows\System32\Drivers\etc\hosts" => Could not move.
Could not restore Hosts.

Result of scheduled keys to remove after reboot:

HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ZLAVShExt => could not remove, key could be protected
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\ZLAVShExt => could not remove, key could be protected

==== End of Fixlog 10:32:24 ====

Antusek
Návštěvník
Návštěvník
Příspěvky: 488
Registrován: 17 úno 2007 20:54

Re: Problém se spouštěním netu - prosím o kontrolu logu

#14 Příspěvek od Antusek »

Jsem na PC doma a tam mám jednu důležitou a 4 volitelné aktualizace. Na PC na chalupě, který řešíme je jen jedna důležitá aktualizace a je to Microsoft Security Essentials, což je antivir, který tam máme. Ale ty jíné co mám doma tak ty tam nejsou. Na e-mailu od googlu (Gmail), kde má také tatínek účet se objevil tento e-mail a mám podezření, že je podvodný, neb žádný účet na Pinterestu nemáme. Tatínek má účet na Facebooku jen aby mohl okomentovat nějaký článek v novinách nic víc, ale nic teď nekomentuje a nepřihlašuje se tam a vůbec jsme tam dnes nebyly. A když jsem přes víkend na chalupě, tak nejsem v Praze. Myslím, že to možná souvisí s těmi šmejdy, co jsme tam měly a také blblo připojení k netu po výměně modemu, který přestal fungovat správně a několik dní nešel net vůbec. Pak net šel ale některé weby se nenačetly, což způsobil nesprávně funkční firewall ZoneAlarm. Již o.k. Na E-mail rozhodně reagovat nebudu a nic tam nebudu zadávat a po vaší odpovědi jej smažu. Ale jak se dostal k tatínkově e-mailové adrese? Neměly bychom raději změnit hesla na e-mailech, facebooku, skypu ?
Díky za další rady. :)

3 z 1 760

Nové přihlášení do vašeho účtu na Pinterestu
Doručená pošta
x

Pinterest <noreply@account.pinterest.com> Odhlásit odběr
12:24 (před 7 hodinami)
komu: mně
Všimli jsme si, že došlo k přihlášení z nového zařízení nebo umístění, a chceme…

Všimli jsme si, že došlo k přihlášení z nového zařízení nebo umístění, a chceme se ujistit, že jste to opravdu vy.
Zařízení: Chrome, Windows 7

Kde: Hlavni mesto Praha, Czechia (přibližně)
Pokud jste to byli vy:
Všechno je v pořádku! Nemusíte nic dělat.

Pokud jste to nebyli vy:
Někdo zná vaše přihlašovací údaje a použil je pro přístup k vašemu účtu. Chcete-li svůj účet ochránit, vytvořte si nové heslo a zapněte dvojúrovňové ověřování. Také zkontrolujte podezřelé aktivity na všech propojených účtech sociálních sítí (např. Facebook, Google+ nebo Twitter).
Pinterest
572 7th Street · San Francisco CA, 94103
Centrum nápovědy · Ochrana osobních údajů · Smluvní podmínky
Zrušit odběr tohoto e-mailu na adrese jméno@gmail.com

Místo jména e-mailu jsem tam dal slovo jméno.

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Problém se spouštěním netu - prosím o kontrolu logu

#15 Příspěvek od Conder »

:arrow: V Gmali otvor ten e-mail, vpravo klikni na sipku dole, vyber Zobrazit povodnu spravu, najdi riadok zacinajuci "Received-SPF" a skopiruj sem cely tento riadok.

:arrow: Ukazuje Gmail pri tom e-maili nejake upozornenie? Ak ten e-mail nebol odoslany z domeny pinterest.com, tak gmail by to mal vediet lahko odhalit a upozornit na to. Ak nie, tak skus overit, ci ten ucet na Pintereste predsalen neexistuje. Skus sa prihlasit na https://pinterest.com/login/ alebo skus moznost zabudnute heslo a napis tam e-mailovu adresu. Je mozne, ze ten ucet bol vytvoreny omylom, napr. cez moznost Prihlasit cez Facebook.
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

Zamčeno