Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Čistenie PC - prosím o preventívku

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
godfather13
Návštěvník
Návštěvník
Příspěvky: 81
Registrován: 26 lis 2008 10:42

Čistenie PC - prosím o preventívku

#1 Příspěvek od godfather13 »

Dobrý deň
Dnes som sa pustil do upratovania PC. Prosím Vás o preventívnu kontrolu.

Ďakujem :)

Log FRST:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 12-11-2017 03
Ran by tomas (administrator) on ACER-TOMAS (15-11-2017 11:18:30)
Running from C:\Users\tomas\Desktop
Loaded Profiles: tomas (Available Profiles: tomas)
Platform: Windows 10 Home Version 1703 15063.674 (X64) Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82119d956c80af5a\igfxCUIService.exe
(Intel Corporation) C:\Windows\System32\IntelSSTAPO\ParameterService\ParameterService.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82119d956c80af5a\IntelCpHDCPSvc.exe
(Autodesk Inc.) C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft) C:\Program Files\Softland\novaPDF 8\Server\novapdfs.exe
(Windows (R) Win 7 DDK provider) C:\Windows\System32\AdminService.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Firebird Project) D:\ProgramFilesPersonal\CENKROS_DEMO\Firebird\FBbin\fbserver.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82119d956c80af5a\IntelCpHeciSvc.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QASvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QALSvc.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe
(Acer Cloud Technology) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82119d956c80af5a\igfxEM.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.8.487.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QAAgent.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QALockHandler.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\QAAdminAgent.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82119d956c80af5a\igfxext.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
(Akamai Technologies, Inc.) C:\Users\tomas\AppData\Local\Akamai\netsession_win.exe
(Akamai Technologies, Inc.) C:\Users\tomas\AppData\Local\Akamai\netsession_win.exe
(Adobe Systems Inc.) D:\ProgramFilesPersonal\Adobe_PRO\Program\Acrobat\acrotray.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe
(Acer) C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe
() C:\Program Files (x86)\Acer\Care Center\ACCStd.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Quick Access\ePowerButton_NB.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11710.1001.27.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
() C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1709.2703.0_x64__8wekyb3d8bbwe\Calculator.exe
() C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.17092.13511.0_x64__8wekyb3d8bbwe\Video.UI.exe
() C:\Program Files\WindowsApps\Microsoft.ZuneMusic_10.17084.21621.0_x64__8wekyb3d8bbwe\Music.UI.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [629152 2017-03-18] (Microsoft Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16475392 2016-06-03] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_TrueHarmony] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1454336 2016-06-03] (Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [320584 2016-06-01] (Intel Corporation)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2398776 2016-06-15] (NVIDIA Corporation)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-01-07] (Adobe Systems Incorporated)
HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [629152 2017-03-18] (Microsoft Corporation)
HKLM-x32\...\Run: [ADSKAppManager] => C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe [529480 2016-02-24] (Autodesk Inc.)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => D:\ProgramFilesPersonal\Adobe_PRO\Program\Acrobat\Acrotray.exe [3499640 2017-03-28] (Adobe Systems Inc.)
HKU\S-1-5-21-1772258607-4237981511-2433331023-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [9292504 2016-12-21] (Piriform Ltd)
HKU\S-1-5-21-1772258607-4237981511-2433331023-1001\...\Run: [Steam] => D:\ProgramFilesPersonal\STEAM\steam.exe [3102496 2017-10-31] (Valve Corporation)
HKU\S-1-5-21-1772258607-4237981511-2433331023-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2017-07-14] (Apple Inc.)
HKU\S-1-5-21-1772258607-4237981511-2433331023-1001\...\Run: [Akamai NetSession Interface] => C:\Users\tomas\AppData\Local\Akamai\netsession_win.exe [4490200 2017-09-08] (Akamai Technologies, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 147.175.167.251 208.67.222.222
Tcpip\..\Interfaces\{74acbb97-940f-49c0-b676-a2392c718d86}: [DhcpNameServer] 147.175.167.251 208.67.222.222
Tcpip\..\Interfaces\{bbfe5e38-0227-4929-84e7-eedce8a3ec7c}: [DhcpNameServer] 147.175.167.251 208.67.222.222

Internet Explorer:
==================
HKU\S-1-5-21-1772258607-4237981511-2433331023-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://acer17win10.msn.com/?pc=ACTE
HKU\S-1-5-21-1772258607-4237981511-2433331023-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer17win10.msn.com/?pc=ACTE
SearchScopes: HKU\S-1-5-21-1772258607-4237981511-2433331023-1001 -> DefaultScope {5CE0BC2D-CB8C-4D7B-B4BA-08FC77D881DB} URL =
SearchScopes: HKU\S-1-5-21-1772258607-4237981511-2433331023-1001 -> {5CE0BC2D-CB8C-4D7B-B4BA-08FC77D881DB} URL =
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2017-11-06] (Microsoft Corporation)
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2016-04-23] (Adobe Systems Incorporated)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2017-11-06] (Microsoft Corporation)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2016-04-23] (Adobe Systems Incorporated)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2017-10-20] (Microsoft Corporation)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2016-04-23] (Adobe Systems Incorporated)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL [2017-11-06] (Microsoft Corporation)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2016-04-23] (Adobe Systems Incorporated)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2016-04-23] (Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2016-04-23] (Adobe Systems Incorporated)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-11-06] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-11-06] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-11-06] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-11-06] (Microsoft Corporation)

FireFox:
========
FF DefaultProfile: gs5q1l3p.default
FF ProfilePath: C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\gs5q1l3p.default [2017-11-15]
FF Homepage: Mozilla\Firefox\Profiles\gs5q1l3p.default -> hxxps://www.google.sk/
FF Extension: (MEGA) - C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\gs5q1l3p.default\Extensions\firefox@mega.co.nz.xpi [2017-10-06]
FF Extension: (OmniSidebar) - C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\gs5q1l3p.default\Extensions\osb@quicksaver.xpi [2017-01-29]
FF Extension: (uBlock Origin) - C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\gs5q1l3p.default\Extensions\uBlock0@raymondhill.net.xpi [2017-11-09]
FF Extension: (System.Runtime.Remoting.Contexts.SynchronizationAttribute) - C:\Users\tomas\AppData\Roaming\Mozilla\Firefox\Profiles\gs5q1l3p.default\Extensions\{55145B00-B917-07A5-0CF9-3B5B393758D2} [2016-11-23] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.15@web2pdf.adobedotcom] - D:\ProgramFilesPersonal\Adobe_PRO\Program\Acrobat\Browser\WCFirefoxExtn
FF Extension: (Adobe Acrobat - Create PDF) - D:\ProgramFilesPersonal\Adobe_PRO\Program\Acrobat\Browser\WCFirefoxExtn [2017-05-15]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_24_0_0_186.dll [2016-12-15] ()
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-07-29] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWoW64\Macromed\Flash\NPSWF32_24_0_0_186.dll [2016-12-15] ()
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2017-10-20] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2017-10-20] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-14] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-14] (Google Inc.)
FF Plugin-x32: Adobe Acrobat -> D:\ProgramFilesPersonal\Adobe_PRO\Program\Acrobat\Air\nppdf32.dll [2017-03-28] (Adobe Systems Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-08-24] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-07-29] (Adobe Systems)
FF Plugin HKU\S-1-5-21-1772258607-4237981511-2433331023-1001: SkypePlugin -> C:\Users\tomas\AppData\Local\SkypePlugin\7.31.0.56\npGatewayNpapi.dll [2017-02-03] (Skype Technologies S.A.)
FF Plugin HKU\S-1-5-21-1772258607-4237981511-2433331023-1001: SkypePlugin64 -> C:\Users\tomas\AppData\Local\SkypePlugin\7.31.0.56\npGatewayNpapi-x64.dll [2017-02-03] (Skype Technologies S.A.)

Chrome:
=======
CHR Profile: C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Default [2017-11-14]
CHR Extension: (Dokumenty) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-22]
CHR Extension: (Disk Google) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-11-25]
CHR Extension: (YouTube) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-11-25]
CHR Extension: (Adblock Plus) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2017-10-10]
CHR Extension: (Adobe Acrobat) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-03-16]
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-11-25]
CHR Extension: (IE Tab) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\hehijbfgiekmjfkfjpbkbammjbdenadd [2017-10-22]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-09-10]
CHR Extension: (Gmail) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-11-25]
CHR Extension: (Chrome Media Router) - C:\Users\tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-10-10]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - D:\ProgramFilesPersonal\Adobe_PRO\Program\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx [2017-03-28]
CHR HKLM-x32\...\Chrome\Extension: [pbjikboenpfhbbejgkoklgkhjpfogcam] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdAppMgrSvc; C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe [1145928 2016-02-24] (Autodesk Inc.)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2257016 2017-08-23] (Adobe Systems, Incorporated)
S2 Autodesk Content Service; C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe [31160 2015-02-05] (Autodesk, Inc.)
R2 CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2278616 2017-03-20] (Acer Incorporated)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8063656 2017-10-31] (Microsoft Corporation)
S2 Dashlane Upgrade Service; C:\Program Files (x86)\Dashlane\Upgrade\DashlaneUpgradeService.exe [83992 2017-08-23] (Dashlane, Inc.)
R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2836296 2017-03-06] (ESET)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [17992 2016-06-01] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [974632 2016-02-19] (Intel(R) Corporation)
R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2016-03-02] (Intel Corporation) [File not signed]
R2 IntelSSTSvc; C:\WINDOWS\system32\IntelSSTAPO\ParameterService\ParameterService.exe [26592 2016-03-04] (Intel Corporation)
S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [8704 2016-03-02] (Intel Corporation) [File not signed]
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [215328 2016-05-17] (Intel Corporation)
R2 KrosPlusFireBird; D:\ProgramFilesPersonal\CENKROS_DEMO\Firebird\FBbin\fbserver.exe [3784704 2013-03-19] (Firebird Project) [File not signed]
R2 NovaPdfServer; C:\Program Files\Softland\novaPDF 8\Server\novapdfs.exe [50600 2016-03-03] (Microsoft)
S3 npggsvc; C:\WINDOWS\SysWOW64\GameMon.des [7987104 2017-04-10] (INCA Internet Co., Ltd.)
R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462968 2017-05-01] (NVIDIA Corporation)
S2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2522680 2016-06-15] (NVIDIA Corporation)
R3 QALSvc; C:\Program Files\Acer\Acer Quick Access\QALSvc.exe [440224 2016-07-29] (Acer Incorporated)
R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [481696 2016-07-29] (Acer Incorporated)
S3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [295840 2016-05-27] (acer)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [342264 2017-03-18] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [102816 2017-06-20] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd.)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [132272 2017-03-06] (ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [15488 2016-10-13] (ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [180544 2017-03-06] (ESET)
R1 epfwwfpr; C:\WINDOWS\system32\DRIVERS\epfwwfpr.sys [70960 2017-03-06] (ESET)
R3 LMDriver; C:\WINDOWS\System32\drivers\LMDriver.sys [21344 2016-07-29] (Acer Incorporated)
R1 MpKslafcab66a; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{13664689-4B19-437C-8BCE-15FB5DCA3140}\MpKslafcab66a.sys [58120 2017-11-14] (Microsoft Corporation)
R1 MpKsle6b6f95c; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E6FEF7E7-4CDF-4F72-B19C-F878DA2AAD33}\MpKsle6b6f95c.sys [58120 2017-11-12] (Microsoft Corporation)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvacwu.inf_amd64_9d2734742a07f3cf\nvlddmkm.sys [14456920 2017-05-18] (NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [28216 2016-06-15] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [56384 2016-04-14] (NVIDIA Corporation)
R3 RadioShim; C:\WINDOWS\System32\drivers\RadioShim.sys [14688 2016-07-29] (Acer Incorporated)
R3 ROCKEYNT; C:\WINDOWS\system32\DRIVERS\Rockey4.sys [36904 2017-04-30] (Feitian Technologies Co., Ltd.)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [935168 2015-11-19] (Realtek )
R3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [769752 2015-12-18] (Realsil Semiconductor Corporation)
S3 SDFRd; C:\WINDOWS\System32\drivers\SDFRd.sys [31128 2017-03-18] ()
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd.)
R3 SynRMIHID; C:\WINDOWS\system32\DRIVERS\SynRMIHID.sys [57448 2015-10-22] (Synaptics Incorporated)
S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44632 2017-03-18] (Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [294816 2017-03-18] (Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [121248 2017-03-18] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-11-15 11:18 - 2017-11-15 11:18 - 000022633 _____ C:\Users\tomas\Desktop\FRST.txt
2017-11-15 09:12 - 2017-11-15 09:12 - 000000000 ___HD C:\OneDriveTemp
2017-11-14 22:39 - 2017-11-15 11:15 - 000000000 ___HD C:\Users\Public\Documents\AdobeGC
2017-11-14 13:57 - 2017-11-14 13:57 - 000015873 _____ C:\Users\tomas\Downloads\PAHAPSialoguePatcher-31160-1-0.rar
2017-11-14 13:53 - 2017-11-14 13:53 - 000480013 _____ C:\Users\tomas\Downloads\FNIS Creature Pack 6_1-11811-6-1.7z
2017-11-14 13:41 - 2017-11-14 13:44 - 098229348 _____ C:\Users\tomas\Downloads\MoreNastyCritters9_0_fomod.7z
2017-11-14 13:30 - 2017-11-14 13:30 - 071723590 _____ C:\Users\tomas\Downloads\SexLabFramework_v162_FULL.7z
2017-11-14 00:52 - 2017-11-14 00:52 - 000003454 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2017-11-14 00:52 - 2017-11-14 00:52 - 000003330 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2017-11-13 11:38 - 2017-11-13 11:38 - 000003388 _____ C:\WINDOWS\System32\Tasks\AcerCloud
2017-11-12 23:11 - 2017-11-12 23:11 - 007566767 _____ C:\Users\tomas\Desktop\Projektový manažment.rar
2017-11-10 00:06 - 2017-11-10 00:06 - 000010597 _____ C:\Users\tomas\Desktop\Financie.xlsx
2017-11-06 16:12 - 2017-11-06 16:12 - 000000000 ____D C:\Users\Public\Documents\uPlay
2017-11-06 15:43 - 2008-10-15 06:22 - 005631312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_40.dll
2017-11-06 15:43 - 2008-10-15 06:22 - 004379984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_40.dll
2017-11-06 15:43 - 2008-10-15 06:22 - 002605920 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_40.dll
2017-11-06 15:43 - 2008-10-15 06:22 - 002036576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_40.dll
2017-11-06 15:43 - 2008-10-15 06:22 - 000519000 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_40.dll
2017-11-06 15:43 - 2008-10-15 06:22 - 000452440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_40.dll
2017-11-06 15:42 - 2017-11-06 15:42 - 000000863 _____ C:\Users\Public\Desktop\South Park The Fractured But Whole.lnk
2017-11-06 15:42 - 2017-11-06 15:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\South Park The Fractured But Whole
2017-11-05 20:03 - 2017-11-05 20:03 - 000000000 ____D C:\Users\tomas\AppData\LocalLow\uTorrent
2017-11-05 11:34 - 2017-11-05 11:34 - 000242239 _____ C:\Users\tomas\Desktop\vyluka_Zvolen-Vlkanova_45._tyzden.pdf
2017-11-02 22:55 - 2017-11-02 22:55 - 000000000 ____D C:\WINDOWS\LastGood.Tmp
2017-11-02 12:28 - 2017-11-02 12:28 - 000097831 _____ C:\Users\tomas\Desktop\ň.pdf
2017-11-01 14:52 - 2017-11-01 14:52 - 000000000 ___RD C:\Users\tomas\Downloads\2504AtefShehata.DuplexMediaPlayer_yf78sj3bsdbta!App
2017-11-01 14:39 - 2017-11-01 14:39 - 000000735 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Asistent pri aktualizácii na Windows 10.lnk
2017-11-01 14:39 - 2017-11-01 14:39 - 000000723 _____ C:\Users\tomas\Desktop\Asistent pri aktualizácii na Windows 10.lnk
2017-11-01 14:39 - 2017-11-01 14:39 - 000000000 ___HD C:\$GetCurrent
2017-11-01 14:39 - 2017-11-01 14:39 - 000000000 ____D C:\Windows10Upgrade
2017-10-31 17:14 - 2017-10-31 17:14 - 000000000 _____ C:\Users\tomas\AppData\Local\{E8537FF0-65A8-401E-A082-61CEF0CC0023}
2017-10-30 16:52 - 2017-11-01 14:55 - 000000000 ____D C:\Users\tomas\Documents\My Vehicle Tracking Data
2017-10-30 16:52 - 2017-10-30 16:52 - 000000000 ____D C:\Users\Public\Documents\Vehicle Tracking
2017-10-30 16:48 - 2017-10-30 16:48 - 000000000 ____D C:\Users\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Autodesk
2017-10-30 16:44 - 2017-10-30 16:45 - 000000000 ____D C:\Users\tomas\AppData\Local\Akamai
2017-10-30 16:44 - 2017-10-30 16:44 - 000000000 ____D C:\Autodesk
2017-10-25 20:36 - 2017-10-25 20:36 - 039024062 _____ C:\Users\tomas\Desktop\Ukážky.rar
2017-10-25 17:08 - 2017-10-25 20:36 - 000000000 ____D C:\Users\tomas\Desktop\Príklady
2017-10-25 16:02 - 2017-10-25 16:02 - 000002071 _____ C:\Users\tomas\Desktop\South Park - The Stick of Truth – odkaz.lnk
2017-10-23 21:16 - 2017-10-23 21:16 - 000002910 _____ C:\Users\tomas\Downloads\rar-password.bat
2017-10-23 21:15 - 2017-10-23 21:16 - 000002910 _____ C:\Users\tomas\Downloads\rar-password.bat.txt
2017-10-23 21:07 - 2017-10-23 21:07 - 000000000 ____D C:\Users\tomas\Downloads\Sto_Much_-_Fsehochut
2017-10-22 15:03 - 2017-10-22 15:03 - 000000017 _____ C:\Users\tomas\Desktop\ZAPNUT DEFENDER.txt
2017-10-21 18:18 - 2017-10-21 18:18 - 000000203 ____H C:\Users\tomas\Documents\Drawing1.dwl2
2017-10-21 18:18 - 2017-10-21 18:18 - 000000052 ____H C:\Users\tomas\Documents\Drawing1.dwl
2017-10-21 12:22 - 2017-10-21 12:27 - 084882160 _____ C:\Users\tomas\Downloads\Sto_Much_-_Fsehochut.rar
2017-10-21 11:31 - 2017-10-21 11:37 - 106543169 _____ C:\Users\tomas\Downloads\Sto múch - 2011 - Skorotlčúce (128).rar
2017-10-19 09:32 - 2017-10-19 09:32 - 002731381 _____ C:\Users\tomas\Downloads\3FF1EDF15C634C13BAF3F0CCF0B63D85.pdf
2017-10-17 16:21 - 2017-10-17 16:21 - 000124332 _____ C:\Users\tomas\Desktop\Kópia - Potreba-vody-RADO.xlsx

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-11-15 11:18 - 2017-06-01 13:55 - 000000000 ____D C:\Users\tomas\Desktop\FRST-OlderVersion
2017-11-15 11:18 - 2017-05-28 22:47 - 002392576 _____ (Farbar) C:\Users\tomas\Desktop\FRST64.exe
2017-11-15 11:18 - 2016-12-01 21:40 - 000000000 ____D C:\FRST
2017-11-15 11:18 - 2016-11-16 22:01 - 000000000 ____D C:\Users\tomas\AppData\LocalLow\Mozilla
2017-11-15 11:11 - 2017-05-18 19:29 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2017-11-15 09:14 - 2017-05-18 19:39 - 000003508 _____ C:\WINDOWS\System32\Tasks\DashlaneUpgradeCheck
2017-11-15 09:14 - 2017-03-18 22:03 - 000000000 ____D C:\WINDOWS\AppReadiness
2017-11-15 09:12 - 2016-11-08 19:17 - 000000000 ___RD C:\Users\tomas\OneDrive
2017-11-15 09:12 - 2016-11-08 19:14 - 000000000 __SHD C:\Users\tomas\IntelGraphicsProfiles
2017-11-15 02:11 - 2017-05-18 19:33 - 000000000 ____D C:\Users\tomas
2017-11-15 02:11 - 2016-11-09 13:27 - 000000000 ____D C:\ProgramData\NVIDIA
2017-11-15 02:00 - 2016-12-15 09:12 - 000000000 ____D C:\Users\tomas\AppData\Local\Adobe
2017-11-15 00:19 - 2017-05-18 19:39 - 000004562 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2017-11-14 23:04 - 2016-11-08 19:14 - 000000000 ____D C:\Users\tomas\AppData\Local\Packages
2017-11-14 17:20 - 2017-03-18 22:01 - 000000000 ____D C:\WINDOWS\INF
2017-11-14 09:30 - 2017-03-18 22:03 - 000000000 ___HD C:\Program Files\WindowsApps
2017-11-13 15:03 - 2017-03-18 22:03 - 000000000 ____D C:\WINDOWS\system32\NDF
2017-11-13 11:38 - 2016-09-28 03:21 - 000000000 ____D C:\Program Files (x86)\Acer
2017-11-13 11:36 - 2017-05-18 19:40 - 001215690 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2017-11-13 11:36 - 2016-11-08 19:16 - 000000000 ____D C:\Users\tomas\AppData\Local\clear.fi
2017-11-13 11:34 - 2017-05-18 19:39 - 000003508 _____ C:\WINDOWS\System32\Tasks\BacKGroundAgent
2017-11-13 11:34 - 2016-08-03 06:34 - 000000000 ___HD C:\OEM
2017-11-13 11:34 - 2016-08-03 05:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer
2017-11-13 11:30 - 2017-05-18 19:39 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2017-11-13 11:30 - 2017-05-18 19:29 - 001400904 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2017-11-12 19:00 - 2017-03-18 12:40 - 001835008 _____ C:\WINDOWS\system32\config\BBI
2017-11-07 15:24 - 2017-08-06 22:34 - 000003368 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1772258607-4237981511-2433331023-1001
2017-11-07 15:24 - 2016-11-08 19:17 - 000002375 _____ C:\Users\tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-11-06 16:07 - 2016-11-21 01:01 - 000000000 ____D C:\Users\tomas\Documents\My Games
2017-11-06 09:10 - 2017-03-18 22:03 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2017-11-06 09:09 - 2016-09-28 02:00 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2017-11-06 00:37 - 2016-11-12 18:17 - 000000000 ____D C:\Users\tomas\AppData\Roaming\uTorrent
2017-11-02 22:56 - 2016-11-21 00:05 - 000000000 ____D C:\Users\tomas\AppData\Local\ElevatedDiagnostics
2017-10-31 17:14 - 2017-06-30 13:56 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2017-10-31 17:14 - 2016-11-28 01:17 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2017-10-31 15:51 - 2017-08-06 22:43 - 000000000 ____D C:\Users\tomas\AppData\Roaming\Apple Computer
2017-10-30 16:52 - 2016-11-09 21:18 - 000000000 ____D C:\Users\tomas\AppData\Roaming\Autodesk
2017-10-30 16:48 - 2016-11-22 20:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk
2017-10-30 16:48 - 2016-11-09 21:18 - 000000000 ____D C:\ProgramData\Autodesk
2017-10-30 16:46 - 2016-11-22 20:35 - 000000000 ____D C:\Program Files\Autodesk
2017-10-19 09:52 - 2017-03-18 21:51 - 000000000 ____D C:\WINDOWS\CbsTemp
2017-10-19 09:37 - 2017-03-22 08:36 - 000000000 ____D C:\Users\tomas\AppData\Local\IE Tab
2017-10-19 07:31 - 2017-03-14 14:00 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk

==================== Files in the root of some directories =======

2016-12-01 22:51 - 2017-05-28 22:49 - 000029696 _____ () C:\Users\tomas\AppData\Local\MSGBOX.EXE
2017-04-08 17:05 - 2017-04-08 17:05 - 000000552 _____ () C:\Users\tomas\AppData\Local\TroubleshooterConfig.json
2017-10-31 17:14 - 2017-10-31 17:14 - 000000000 _____ () C:\Users\tomas\AppData\Local\{E8537FF0-65A8-401E-A082-61CEF0CC0023}
2016-11-22 20:38 - 2016-11-22 20:38 - 000000133 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.64.bc
2016-11-18 14:15 - 2016-11-18 14:15 - 000010392 _____ () C:\ProgramData\regid.2004-07.com.synchroltd_570D7473-B70E-4DE9-9C14-221D354F7A11.swidtag

Some files in TEMP:
====================
2017-10-30 16:48 - 2015-01-26 06:59 - 000060296 _____ (Autodesk, Inc.) C:\Users\tomas\AppData\Local\Temp\AcDeltree.exe

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2017-11-12 13:33

==================== End of FRST.txt ============================

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Čistenie PC - prosím o preventívku

#2 Příspěvek od Márty84 »

Zdravim :)

:arrow: Stahnete AdwCleaner https://toolslib.net/downloads/finish/1/ a ulozte ho na plochu.
Ukoncete vsechny programy, jinak to AdwCleaner udela za vas.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Kliknete na Scan a pockejte, az kontrola dobehne.
Pak kliknete na Cleaning
Program zacne pracovat (muze dojit k restartu pc) a vyplivne log (pripadne bude zde C:\AdwCleaner\AdwCleaner[C?].txt ). Ten mi sem zkopirujte.

:arrow: Udelejte kontrolu s MBAM. Test nastavte podle tohoto navodu (cili Vlastni sken vsech disku) http://forum.viry.cz/viewtopic.php?f=29&t=144868 a dejte sem vysledky. Predem nic nemazte, miva obcas falesne detekce
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

godfather13
Návštěvník
Návštěvník
Příspěvky: 81
Registrován: 26 lis 2008 10:42

Re: Čistenie PC - prosím o preventívku

#3 Příspěvek od godfather13 »

Ospravedlňnujem sa za neskorú reakciu.
Pridávam log z ADW:
# AdwCleaner 7.0.4.0 - Logfile created on Sun Nov 19 15:05:05 2017
# Updated on 2017/27/10 by Malwarebytes
# Running on Windows 10 Home (X64)
# Mode: clean
# Support: https://www.malwarebytes.com/support

***** [ Services ] *****

No malicious services deleted.

***** [ Folders ] *****

No malicious folders deleted.

***** [ Files ] *****

No malicious files deleted.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks deleted.

***** [ Registry ] *****

Deleted: [Key] - HKLM\SOFTWARE\Classes\Interface\{7BCA6879-A9F8-47DE-AE05-F5CE7EA3A474}
Deleted: [Key] - HKLM\SOFTWARE\Classes\TypeLib\{ADF1FA2A-6EAA-4A97-A55F-3C8B92843EF5}
Deleted: [Key] - HKLM\SOFTWARE\Classes\AppID\OverlayIcon.DLL


***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries deleted.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries deleted.

*************************

::Tracing keys deleted
::Winsock settings cleared
::Additional Actions: 0



*************************

C:/AdwCleaner/AdwCleaner[C0].txt - [3363 B] - [2016/12/1 20:0:17]
C:/AdwCleaner/AdwCleaner[C2].txt - [1193 B] - [2017/5/28 17:37:32]
C:/AdwCleaner/AdwCleaner[S0].txt - [3281 B] - [2016/12/1 19:59:0]
C:/AdwCleaner/AdwCleaner[S1].txt - [1336 B] - [2017/5/28 17:37:22]
C:/AdwCleaner/AdwCleaner[S2].txt - [1453 B] - [2017/11/19 15:4:16]


########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt ##########




Pridávam Log z MBAM:

Malwarebytes
www.malwarebytes.com

-Podrobnosti denníka-
Dátum skenovania: 19.11.17
Čas skenovania: 17:47
Súbor denníka: 5e5e5ca0-cd49-11e7-9e78-ccb0dacbff8a.json
Správca: Áno

-Údaje o softvéri-
Verzia: 3.3.1.2183
Verzia súčastí: 1.0.236
Aktualizovať verziu balíka: 1.0.3295
Licencia: Skúšobná verzia

-Systémové informácie-
OS: Windows 10 (Build 15063.726)
Procesor: x64
Systém súborov: NTFS
Používateľ: ACER-TOMAS\tomas

-Zhrnutie skenovania-
Typ skenovania: Vlastné skenovanie
Výsledok: Dokončené
Preskenované objekty: 477886
Zistené hrozby: 7
Hrozby umiestnené do karantény: 0
(Nezistili sa nijaké škodlivé položky)
Uplynulý čas: 2 h, 1 min, 15 s

-Možnosti skenovania-
Pamäť: Povolené
Spúšťanie: Povolené
Systém súborov: Povolené
Archívy: Povolené
Rootkity: Povolené
Heuristika: Povolené
PUP: Zistiť
PUM: Zistiť

-Podrobnosti skenovania-
Proces: 0
(Nezistili sa nijaké škodlivé položky)

Modul: 0
(Nezistili sa nijaké škodlivé položky)

Kľúč databázy Registry: 2
Trojan.Agent.Generic, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{FB35F967-8258-4A2D-B222-C3DF2C6B3CE8}, Bez zásahu používateľa, [465], [361952],1.0.3295
Trojan.Agent.Generic, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\30200-13360, Bez zásahu používateľa, [465], [361959],1.0.3295

Hodnota databázy Registry: 1
Trojan.Agent.Generic, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{FB35F967-8258-4A2D-B222-C3DF2C6B3CE8}|PATH, Bez zásahu používateľa, [465], [361952],1.0.3295

Údaje databázy Registry: 0
(Nezistili sa nijaké škodlivé položky)

Prúd údajov: 0
(Nezistili sa nijaké škodlivé položky)

Priečinok: 0
(Nezistili sa nijaké škodlivé položky)

Súbor: 4
RiskWare.Tool.HCK, C:\USERS\TOMAS\DESKTOP\DYSG\ADOBE ACROBAT XI PRO 11.0.16 MULTILINGUAL + CRACK [SADEEMPC]\CRACK\CRACK\ADOBE CC 2015 UNIVERSAL PATCHER 1.5\ADOBE.SNR.PATCH-PAINTER.EXE, Bez zásahu používateľa, [2123], [69152],1.0.3295
RiskWare.Tool.HCK, C:\USERS\TOMAS\DESKTOP\DYSG\ADOBE ACROBAT XI PRO 11.0.16 MULTILINGUAL + CRACK [SADEEMPC]\CRACK.RAR, Bez zásahu používateľa, [2123], [69152],1.0.3295
RiskWare.Agent.Keygen, C:\USERS\TOMAS\DESKTOP\DYSG\ADOBE ACROBAT XI PRO 11.0.16 MULTILINGUAL + CRACK [SADEEMPC]\CRACK\CRACK\ADOBE_CC_V2015-XFORCE\XF-ADOBECC2015.EXE, Bez zásahu používateľa, [1419], [352875],1.0.3295
Trojan.Agent.Generic, C:\WINDOWS\SYSTEM32\TASKS\30200-13360, Bez zásahu používateľa, [465], [361975],1.0.3295

Fyzický sektor: 0
(Nezistili sa nijaké škodlivé položky)


(end)

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Čistenie PC - prosím o preventívku

#4 Příspěvek od Márty84 »

Nalezy nechte odstranit. Po odstraneni a restartu pc test s MBAM zopakujte (staci uz jen rychly sken), at vime, jestli se to nevraci. Napiste vysledek testu a podle nej zvolim dalsi postup.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

godfather13
Návštěvník
Návštěvník
Příspěvky: 81
Registrován: 26 lis 2008 10:42

Re: Čistenie PC - prosím o preventívku

#5 Příspěvek od godfather13 »

Po odstránení hrozieb a po následnom rýchlom skenovaní už nenašlo žiadne hrozby.

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Čistenie PC - prosím o preventívku

#6 Příspěvek od Márty84 »

:arrow: MBAM odinstalujte a dejte novy log z FRST.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

godfather13
Návštěvník
Návštěvník
Příspěvky: 81
Registrován: 26 lis 2008 10:42

Re: Čistenie PC - prosím o preventívku

#7 Příspěvek od godfather13 »

Dobrý deň

Prepáčte že nereagujem, ale kľaklo mi HDD, takže už nie je čo skenovať a opravovať :)

Každopádne ďakujem za pomoc :)

:closed:

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Čistenie PC - prosím o preventívku

#8 Příspěvek od Márty84 »

To je mi lito, tak snad novy pobezi bez potizi :-)

Mejte se a treba zase nekdy :bye:

:closed:
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Zamčeno