Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosim o kontrolu

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosim o kontrolu

#16 Příspěvek od Márty84 »

:!: Vypnete antivir, at nebrani programu v praci!
:arrow: Znovu spustte OTL jako spravce
Do spodniho okna vlozte nasledujici text (vcetne te dvojtecky pred slovem commands)

Kód: Vybrat vše

:commands
[EMPTYTEMP]
[EMPTYFLASH]
[RESETHOSTS]
[Purity]
[CreateRestorePoint]

:services
AdobeARMservice
BBUpdate
BBSvc
gupdate
MsMpSvc
AdobeFlashPlayerUpdateSvc
gupdatem

:files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\OptimizerPro1UpdaterTask{F90A533A-D07D-4BDB-822A-81F4B94D69B1}.job
C:\Program Files (x86)\IObit
C:\Users\Robert\AppData\Roaming\IObit

:otl
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&form=LENDF8&pc=MALN&src=IE-SearchBox
IE - HKCU\..\SearchScopes\{BCA9508E-7328-4347-825A-504FE9DF74C8}: "URL" = http://search.yahoo.com/search?fr=chr-g ... =114576&p={searchTerms}
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&ilc=12&type=114576&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&ilc=12&type=114576"
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: File not found
[2013/08/03 14:55:16 | 000,000,904 | ---- | M] () -- C:\Users\Robert\AppData\Roaming\mozilla\firefox\profiles\gjrt8zz4.default-1359745726677\searchplugins\yahoo.xml
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
[4 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[9 C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ]
[1 C:\Windows\inf\Intel Storage Counters\*.tmp files -> C:\Windows\inf\Intel Storage Counters\*.tmp -> ]
[1 C:\Windows\inf\Intel Storage Counters\0000\*.tmp files -> C:\Windows\inf\Intel Storage Counters\0000\*.tmp -> ]
[1 C:\Windows\inf\Intel Storage Counters\0009\*.tmp files -> C:\Windows\inf\Intel Storage Counters\0009\*.tmp -> ]
[1 C:\Windows\inf\Intel Storage Counters\001B\*.tmp files -> C:\Windows\inf\Intel Storage Counters\001B\*.tmp -> ]
[7 C:\Windows\Installer\*.tmp files -> C:\Windows\Installer\*.tmp -> ]
[1 C:\Windows\Installer\{FD8E178D-8B4E-42DA-B434-EFF270329B1C}\*.tmp files -> C:\Windows\Installer\{FD8E178D-8B4E-42DA-B434-EFF270329B1C}\*.tmp -> ]
[1 C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Temp\*.tmp files -> C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Temp\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\2819e438990b1c36a72831c65b190846\*.tmp files -> C:\Windows\SoftwareDistribution\Download\2819e438990b1c36a72831c65b190846\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\643f044c6e9fe1954d6d16e2c755c98c\*.tmp files -> C:\Windows\SoftwareDistribution\Download\643f044c6e9fe1954d6d16e2c755c98c\*.tmp -> ]
[1 C:\Windows\SoftwareDistribution\Download\75faa2308dcbcccdeeb7e9e74b2ec68a\*.tmp files -> C:\Windows\SoftwareDistribution\Download\75faa2308dcbcccdeeb7e9e74b2ec68a\*.tmp -> ]
[9 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ]
[9 C:\Windows\SysWOW64\*.tmp files -> C:\Windows\SysWOW64\*.tmp -> ]
[16 C:\Windows\Temp\*.tmp files -> C:\Windows\Temp\*.tmp -> ]
[2013/07/06 14:38:11 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\IObit
[2012/10/12 08:04:19 | 000,000,000 | ---D | M] -- C:\ProgramData\Application Data\McAfee
[2013/06/21 08:09:35 | 022,403,880 | ---- | M] (IObit ) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\ASCSetup.exe
[2013/07/10 22:02:41 | 020,185,568 | ---- | M] (IObit ) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\IObit Malware Fighter 2.exe
[2013/07/09 19:50:08 | 004,710,160 | ---- | M] (IObit ) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Smart Defrag 2.exe
[2013/03/29 11:51:37 | 003,758,248 | ---- | M] (IObit ) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Smart Defrag.exe
[2013/06/21 08:09:35 | 022,403,880 | ---- | M] (IObit ) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\ASCSetup.exe
[2013/07/10 22:02:41 | 020,185,568 | ---- | M] (IObit ) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\IObit Malware Fighter 2.exe
[2013/07/09 19:50:08 | 004,710,160 | ---- | M] (IObit ) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Smart Defrag 2.exe
[2013/03/29 11:51:37 | 003,758,248 | ---- | M] (IObit ) -- C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Smart Defrag.exe
[1 \Program Files (x86)\IObit\Advanced SystemCare 6\*.tmp files -> \Program Files (x86)\IObit\Advanced SystemCare 6\*.tmp -> ]
[2013/08/06 08:23:05 | 000,000,339 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log
[2013/08/06 08:23:05 | 000,000,339 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log
[2013/08/06 08:23:05 | 000,000,339 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log
[2013/08/06 08:23:05 | 000,000,339 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log
[2013/08/06 08:23:05 | 000,000,339 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log
[2013/08/06 08:23:05 | 000,000,339 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log
[2013/08/06 08:23:05 | 000,000,339 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log
[2013/08/06 08:23:05 | 000,000,339 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log
[2013/08/06 08:23:05 | 000,000,339 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log
[2013/08/06 08:23:05 | 000,000,339 | ---- | M] () -- \ProgramData\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log
[2013/08/06 08:23:05 | 000,000,339 | ---- | M] () -- \ProgramData\Application Data\Application Data\IObit\ASCDownloader\Downloader.log
[2013/08/06 08:23:05 | 000,000,339 | ---- | M] () -- \ProgramData\Application Data\IObit\ASCDownloader\Downloader.log
[2013/08/06 08:23:05 | 000,000,339 | ---- | M] () -- \ProgramData\IObit\ASCDownloader\Downloader.log
[2013/08/06 08:23:05 | 000,000,339 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log
[2013/08/06 08:23:05 | 000,000,339 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log
[2013/08/06 08:23:05 | 000,000,339 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log
[2013/08/06 08:23:05 | 000,000,339 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log
[2013/08/06 08:23:05 | 000,000,339 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log
[2013/08/06 08:23:05 | 000,000,339 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log
[2013/08/06 08:23:05 | 000,000,339 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log
[2013/08/06 08:23:05 | 000,000,339 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log
[2013/08/06 08:23:05 | 000,000,339 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log
[2013/08/06 08:23:05 | 000,000,339 | ---- | M] () -- \Users\All Users\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log
[2013/08/06 08:23:05 | 000,000,339 | ---- | M] () -- \Users\All Users\Application Data\Application Data\IObit\ASCDownloader\Downloader.log
[2013/08/06 08:23:05 | 000,000,339 | ---- | M] () -- \Users\All Users\Application Data\IObit\ASCDownloader\Downloader.log
[2013/08/06 08:23:05 | 000,000,339 | ---- | M] () -- \Users\All Users\IObit\ASCDownloader\Downloader.log
[2013/07/13 21:53:12 | 000,008,463 | ---- | M] () -- \Users\Robert\AppData\Roaming\IObit\Advanced SystemCare V6\DiskCleaner\FileUploader.err
[2013/07/13 21:50:02 | 000,045,266 | ---- | M] () -- \Users\Robert\AppData\Roaming\IObit\Advanced SystemCare V6\DiskCleaner\FileUploader.log
[30 \Users\Robert\AppData\Roaming\IObit\Advanced SystemCare V6\DiskCleaner\*.tmp files -> \Users\Robert\AppData\Roaming\IObit\Advanced SystemCare V6\DiskCleaner\*.tmp -> ]
@Alternate Data Stream - 6248 bytes -> C:\Windows\PLA\System\System Diagnostics.xml:0v1ieca3Feahez0jAwxjjk5uRh

:reg
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BitTorrent] /64
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite] /64
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IObit Malware Fighter] /64
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched] /64
Kliknete na Opravit a nechte program pracovat. Pri otazce na restart souhlaste.
Po restartu se objevi novy log, ten sem dejte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

silvias
Návštěvník
Návštěvník
Příspěvky: 85
Registrován: 22 říj 2008 19:50

Re: Prosim o kontrolu

#17 Příspěvek od silvias »

All processes killed
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: MSOCache

User: Public

User: Robert
->Temp folder emptied: 8188020 bytes
->Temporary Internet Files folder emptied: 10639 bytes
->Java cache emptied: 25446939 bytes
->FireFox cache emptied: 347931781 bytes
->Google Chrome cache emptied: 0 bytes
->Flash cache emptied: 2284 bytes

User: UpdatusUser
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 56504 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 115148 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 42333006 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 405,00 mb


[EMPTYFLASH]

User: All Users

User: Default

User: Default User

User: MSOCache

User: Public

User: Robert
->Flash cache emptied: 0 bytes

User: UpdatusUser
->Flash cache emptied: 0 bytes

Total Flash Files Cleaned = 0,00 mb

C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
Restore point Set: OTL Restore Point
========== SERVICES/DRIVERS ==========
Service AdobeARMservice stopped successfully!
Service AdobeARMservice deleted successfully!
Service BBUpdate stopped successfully!
Service BBUpdate deleted successfully!
Service BBSvc stopped successfully!
Service BBSvc deleted successfully!
Service gupdate stopped successfully!
Service gupdate deleted successfully!
Error: No service named MsMpSvc was found to stop!
Unable to delete service\driver key MsMpSvc.
Service AdobeFlashPlayerUpdateSvc stopped successfully!
Service AdobeFlashPlayerUpdateSvc deleted successfully!
Service gupdatem stopped successfully!
Service gupdatem deleted successfully!
========== FILES ==========
File/Folder C:\Windows\system32\*.tmp.dll not found.
File/Folder C:\Windows\system32\SET*.tmp not found.
File/Folder C:\Windows\*.tmp not found.
C:\Windows\tasks\Adobe Flash Player Updater.job moved successfully.
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job moved successfully.
C:\Windows\tasks\OptimizerPro1UpdaterTask{F90A533A-D07D-4BDB-822A-81F4B94D69B1}.job moved successfully.
C:\Program Files (x86)\IObit\Smart Defrag 2\Update folder moved successfully.
C:\Program Files (x86)\IObit\Smart Defrag 2\LatestNews folder moved successfully.
C:\Program Files (x86)\IObit\Smart Defrag 2 folder moved successfully.
C:\Program Files (x86)\IObit\Advanced SystemCare 6\Update folder moved successfully.
C:\Program Files (x86)\IObit\Advanced SystemCare 6\SecurityHole_Backup folder moved successfully.
C:\Program Files (x86)\IObit\Advanced SystemCare 6\LatestNews folder moved successfully.
C:\Program Files (x86)\IObit\Advanced SystemCare 6\BrowerProtect\images folder moved successfully.
C:\Program Files (x86)\IObit\Advanced SystemCare 6\BrowerProtect folder moved successfully.
C:\Program Files (x86)\IObit\Advanced SystemCare 6\BootTimeLog folder moved successfully.
C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCServiceLog folder moved successfully.
C:\Program Files (x86)\IObit\Advanced SystemCare 6 folder moved successfully.
C:\Program Files (x86)\IObit folder moved successfully.
C:\Users\Robert\AppData\Roaming\IObit\Smart Defrag 2 folder moved successfully.
C:\Users\Robert\AppData\Roaming\IObit\IObit Uninstaller\Log folder moved successfully.
C:\Users\Robert\AppData\Roaming\IObit\IObit Uninstaller folder moved successfully.
C:\Users\Robert\AppData\Roaming\IObit\Advanced SystemCare V6\Startup Manager folder moved successfully.
C:\Users\Robert\AppData\Roaming\IObit\Advanced SystemCare V6\SmartRAM folder moved successfully.
C:\Users\Robert\AppData\Roaming\IObit\Advanced SystemCare V6\Registrycleaner\backup\Registry folder moved successfully.
C:\Users\Robert\AppData\Roaming\IObit\Advanced SystemCare V6\Registrycleaner\backup folder moved successfully.
C:\Users\Robert\AppData\Roaming\IObit\Advanced SystemCare V6\Registrycleaner folder moved successfully.
C:\Users\Robert\AppData\Roaming\IObit\Advanced SystemCare V6\Log folder moved successfully.
C:\Users\Robert\AppData\Roaming\IObit\Advanced SystemCare V6\Internet Booster folder moved successfully.
C:\Users\Robert\AppData\Roaming\IObit\Advanced SystemCare V6\EmptyFolder folder moved successfully.
C:\Users\Robert\AppData\Roaming\IObit\Advanced SystemCare V6\Driver Manager\DriverBackup folder moved successfully.
C:\Users\Robert\AppData\Roaming\IObit\Advanced SystemCare V6\Driver Manager folder moved successfully.
C:\Users\Robert\AppData\Roaming\IObit\Advanced SystemCare V6\DiskCleaner folder moved successfully.
C:\Users\Robert\AppData\Roaming\IObit\Advanced SystemCare V6\DiskCheck folder moved successfully.
C:\Users\Robert\AppData\Roaming\IObit\Advanced SystemCare V6\ClonedFilesScanner folder moved successfully.
C:\Users\Robert\AppData\Roaming\IObit\Advanced SystemCare V6\Boottime folder moved successfully.
C:\Users\Robert\AppData\Roaming\IObit\Advanced SystemCare V6\Backup folder moved successfully.
C:\Users\Robert\AppData\Roaming\IObit\Advanced SystemCare V6\AutoShutdown folder moved successfully.
C:\Users\Robert\AppData\Roaming\IObit\Advanced SystemCare V6 folder moved successfully.
C:\Users\Robert\AppData\Roaming\IObit folder moved successfully.
========== OTL ==========
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Local Page| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BCA9508E-7328-4347-825A-504FE9DF74C8}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BCA9508E-7328-4347-825A-504FE9DF74C8}\ not found.
Prefs.js: "Yahoo" removed from browser.search.defaultenginename
Prefs.js: "Yahoo" removed from browser.search.selectedEngine
Prefs.js: "http://search.yahoo.com/search?fr=green ... =114576&p=" removed from keyword.URL
Prefs.js: "chr-greentree_ff&ilc=12&type=114576" removed from browser.search.param.yahoo-fr
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin\ deleted successfully.
C:\Users\Robert\AppData\Roaming\mozilla\firefox\profiles\gjrt8zz4.default-1359745726677\searchplugins\yahoo.xml moved successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{21FA44EF-376D-4D53-9B0F-8A89D3229068} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21FA44EF-376D-4D53-9B0F-8A89D3229068}\ not found.
64bit-Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP472C.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP6596.tmp\Microsoft.Windows.Diagnosis.Commands.WriteDiagProgress.dll deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP6596.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP74E2.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP9E41.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP369.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP5A31.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP69F8.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP73E8.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPA0C1.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPADFA.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE291.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE56E.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAPEC9F.tmp folder deleted successfully.
C:\Windows\inf\Intel Storage Counters\tmpB912.tmp deleted successfully.
C:\Windows\inf\Intel Storage Counters\0000\tmpB901.tmp deleted successfully.
C:\Windows\inf\Intel Storage Counters\0009\tmpB901.tmp deleted successfully.
C:\Windows\inf\Intel Storage Counters\001B\tmpB901.tmp deleted successfully.
C:\Windows\Installer\MSI13D5.tmp deleted successfully.
C:\Windows\Installer\MSI75C4.tmp deleted successfully.
C:\Windows\Installer\MSI771C.tmp deleted successfully.
C:\Windows\Installer\MSIA1B5.tmp deleted successfully.
C:\Windows\Installer\MSIB6BC.tmp deleted successfully.
C:\Windows\Installer\MSIB8DF.tmp deleted successfully.
C:\Windows\Installer\MSIBCB7.tmp deleted successfully.
C:\Windows\Installer\{FD8E178D-8B4E-42DA-B434-EFF270329B1C}\upd81.tmp deleted successfully.
C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Temp\dBPEFFA.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\2819e438990b1c36a72831c65b190846\$dpx$.tmp\job.xml deleted successfully.
C:\Windows\SoftwareDistribution\Download\2819e438990b1c36a72831c65b190846\$dpx$.tmp folder deleted successfully.
C:\Windows\SoftwareDistribution\Download\643f044c6e9fe1954d6d16e2c755c98c\$dpx$.tmp\job.xml deleted successfully.
C:\Windows\SoftwareDistribution\Download\643f044c6e9fe1954d6d16e2c755c98c\$dpx$.tmp folder deleted successfully.
C:\Windows\SoftwareDistribution\Download\75faa2308dcbcccdeeb7e9e74b2ec68a\$dpx$.tmp\job.xml deleted successfully.
C:\Windows\SoftwareDistribution\Download\75faa2308dcbcccdeeb7e9e74b2ec68a\$dpx$.tmp folder deleted successfully.
C:\ProgramData\Application Data\IObit\ASCDownloader folder moved successfully.
C:\ProgramData\Application Data\IObit\Advanced SystemCare V6 folder moved successfully.
C:\ProgramData\Application Data\IObit folder moved successfully.
C:\ProgramData\Application Data\McAfee\MSC\Cache folder moved successfully.
C:\ProgramData\Application Data\McAfee\MSC folder moved successfully.
C:\ProgramData\Application Data\McAfee\MCLOGS\PartnerCustom\SSScheduler folder moved successfully.
C:\ProgramData\Application Data\McAfee\MCLOGS\PartnerCustom\SecurityScan_Release folder moved successfully.
C:\ProgramData\Application Data\McAfee\MCLOGS\PartnerCustom folder moved successfully.
C:\ProgramData\Application Data\McAfee\MCLOGS folder moved successfully.
C:\ProgramData\Application Data\McAfee folder moved successfully.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\ASCSetup.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\IObit Malware Fighter 2.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Smart Defrag 2.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Smart Defrag.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\ASCSetup.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\IObit Malware Fighter 2.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Smart Defrag 2.exe not found.
File C:\ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Smart Defrag.exe not found.
File \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log not found.
File \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log not found.
File \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log not found.
File \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log not found.
File \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log not found.
File \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log not found.
File \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log not found.
File \ProgramData\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log not found.
File \ProgramData\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log not found.
File \ProgramData\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log not found.
File \ProgramData\Application Data\Application Data\IObit\ASCDownloader\Downloader.log not found.
File \ProgramData\Application Data\IObit\ASCDownloader\Downloader.log not found.
File \ProgramData\IObit\ASCDownloader\Downloader.log not found.
File \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log not found.
File \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log not found.
File \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log not found.
File \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log not found.
File \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log not found.
File \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log not found.
File \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log not found.
File \Users\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log not found.
File \Users\All Users\Application Data\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log not found.
File \Users\All Users\Application Data\Application Data\Application Data\IObit\ASCDownloader\Downloader.log not found.
File \Users\All Users\Application Data\Application Data\IObit\ASCDownloader\Downloader.log not found.
File \Users\All Users\Application Data\IObit\ASCDownloader\Downloader.log not found.
File \Users\All Users\IObit\ASCDownloader\Downloader.log not found.
File \Users\Robert\AppData\Roaming\IObit\Advanced SystemCare V6\DiskCleaner\FileUploader.err not found.
File \Users\Robert\AppData\Roaming\IObit\Advanced SystemCare V6\DiskCleaner\FileUploader.log not found.
ADS C:\Windows\PLA\System\System Diagnostics.xml:0v1ieca3Feahez0jAwxjjk5uRh deleted successfully.
========== REGISTRY ==========
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BitTorrent\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IObit Malware Fighter\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched\ deleted successfully.

OTL by OldTimer - Version 3.2.69.0 log created on 08082013_202012

Files\Folders moved on Reboot...
C:\Users\Robert\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
C:\Users\Robert\AppData\Local\Mozilla\Firefox\Profiles\jvtw7ve9.default-1375515950893\Cache\_CACHE_001_ moved successfully.
C:\Users\Robert\AppData\Local\Mozilla\Firefox\Profiles\jvtw7ve9.default-1375515950893\Cache\_CACHE_002_ moved successfully.
C:\Users\Robert\AppData\Local\Mozilla\Firefox\Profiles\jvtw7ve9.default-1375515950893\Cache\_CACHE_003_ moved successfully.
C:\Users\Robert\AppData\Local\Mozilla\Firefox\Profiles\jvtw7ve9.default-1375515950893\Cache\_CACHE_MAP_ moved successfully.
C:\Users\Robert\AppData\Local\Mozilla\Firefox\Profiles\jvtw7ve9.default-1375515950893\_CACHE_CLEAN_ moved successfully.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosim o kontrolu

#18 Příspěvek od Márty84 »

:arrow: Stahnete RogueKiller http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe , ulozte ho na plochu, kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Probehne kratoucky testik a pak se zpristupni vpravo nahore tlacitko Prohledat. Na to kliknete a probehne dalsi test.
Po dokonceni kliknete na napis Zprava a objevi se log. Ten mi sem vlozte
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

silvias
Návštěvník
Návštěvník
Příspěvky: 85
Registrován: 22 říj 2008 19:50

Re: Prosim o kontrolu

#19 Příspěvek od silvias »

RogueKiller V8.6.5 [Aug 5 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Feedback : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
Blog : http://tigzyrk.blogspot.com/

Operačný systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spustené v : Normálny režim
Užívateľ : Robert [Práva Správcu]
Režim : Kontrola -- Dátum : 08/09/2013 07:28:11
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy : 0 ¤¤¤

¤¤¤ Záznamy Registrov : 6 ¤¤¤
[HJ POL] HKLM\[...]\System : ConsentPromptBehaviorAdmin (0) -> NÁJDENÉ
[HJ POL] HKLM\[...]\System : EnableLUA (0) -> NÁJDENÉ
[HJ POL] HKLM\[...]\Wow6432Node\[...]\System : ConsentPromptBehaviorAdmin (0) -> NÁJDENÉ
[HJ POL] HKLM\[...]\Wow6432Node\[...]\System : EnableLUA (0) -> NÁJDENÉ
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NÁJDENÉ
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NÁJDENÉ

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spustenie položky : 0 ¤¤¤

¤¤¤ webové prehliadače : 0 ¤¤¤

¤¤¤ Zvláštne súbory / Adresáre: ¤¤¤

¤¤¤ Ovládač : [NENAHRATÉ 0x0] ¤¤¤

¤¤¤ Vonkajšie Hives: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Súbor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts


ÿþ1

¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: ATA HITACHI HTS54757 SCSI Disk Device +++++
--- User ---
[MBR] 8d5ab6603b2cef5f023751fa19283b48
[BSP] cf7800065ad6a8643835f074afb54a4e : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 200 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 411648 | Size: 103931 Mo
2 - [XXXXXX] COMPAQ (0x12) [VISIBLE] Offset (sectors): 1434206208 | Size: 15108 Mo
3 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 213262875 | Size: 596163 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončené : << RKreport[0]_S_08092013_072811.txt >>

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosim o kontrolu

#20 Příspěvek od Márty84 »

:arrow: Znovu spustte RogueKiller jako spravce (pokud jste ho jeste nezavrel/a, rovnou kliknete na napis Smazat)
Probehne kratoucky testik a pak se zpristupni vpravo nahore tlacitko Prohledat. Na to kliknete a probehne dalsi test.
Po dokonceni kliknete na napis Smazat.
Pak kliknete na napis Zprava a objevi se log. Ten mi sem vlozte.
Pak kliknete na napis Oprava Host a Zprava.
Objevi se dalsi log. I ten mi sem vlozte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

silvias
Návštěvník
Návštěvník
Příspěvky: 85
Registrován: 22 říj 2008 19:50

Re: Prosim o kontrolu

#21 Příspěvek od silvias »

RogueKiller V8.6.5 [Aug 5 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Feedback : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
Blog : http://tigzyrk.blogspot.com/

Operačný systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spustené v : Normálny režim
Užívateľ : Robert [Práva Správcu]
Režim : Odebrať -- Dátum : 08/09/2013 09:15:46
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy : 0 ¤¤¤

¤¤¤ Záznamy Registrov : 0 ¤¤¤

¤¤¤ naplánované úlohy : 0 ¤¤¤

¤¤¤ spustenie položky : 0 ¤¤¤

¤¤¤ webové prehliadače : 0 ¤¤¤

¤¤¤ Zvláštne súbory / Adresáre: ¤¤¤

¤¤¤ Ovládač : [NENAHRATÉ 0x0] ¤¤¤

¤¤¤ Vonkajšie Hives: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Súbor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts


ÿþ1

¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: ATA HITACHI HTS54757 SCSI Disk Device +++++
--- User ---
[MBR] 8d5ab6603b2cef5f023751fa19283b48
[BSP] cf7800065ad6a8643835f074afb54a4e : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 200 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 411648 | Size: 103931 Mo
2 - [XXXXXX] COMPAQ (0x12) [VISIBLE] Offset (sectors): 1434206208 | Size: 15108 Mo
3 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 213262875 | Size: 596163 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončené : << RKreport[0]_D_08092013_091546.txt >>
RKreport[0]_D_08092013_090758.txt;RKreport[0]_D_08092013_091018.txt;RKreport[0]_S_08092013_072811.txt
RKreport[0]_S_08092013_091014.txt;RKreport[0]_S_08092013_091532.txt

silvias
Návštěvník
Návštěvník
Příspěvky: 85
Registrován: 22 říj 2008 19:50

Re: Prosim o kontrolu

#22 Příspěvek od silvias »

RogueKiller V8.6.5 [Aug 5 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Feedback : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
Blog : http://tigzyrk.blogspot.com/

Operačný systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spustené v : Normálny režim
Užívateľ : Robert [Práva Správcu]
Režim : Oprava HOSTS -- Dátum : 08/09/2013 09:16:20
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy : 0 ¤¤¤

¤¤¤ Záznamy Registrov : 0 ¤¤¤

¤¤¤ Ovládač : [NENAHRATÉ 0x0] ¤¤¤

¤¤¤ Vonkajšie Hives: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Súbor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts


ÿþ1

¤¤¤ Resetovaný HOSTS: ¤¤¤
127.0.0.1 localhost


Dokončené : << RKreport[0]_H_08092013_091620.txt >>
RKreport[0]_D_08092013_090758.txt;RKreport[0]_D_08092013_091018.txt;RKreport[0]_D_08092013_091546.txt
RKreport[0]_S_08092013_072811.txt;RKreport[0]_S_08092013_091014.txt;RKreport[0]_S_08092013_091532.txt

silvias
Návštěvník
Návštěvník
Příspěvky: 85
Registrován: 22 říj 2008 19:50

Re: Prosim o kontrolu

#23 Příspěvek od silvias »

pred prvím logom som bol vyzvaný na reštart systému , dufam že je to OK

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosim o kontrolu

#24 Příspěvek od Márty84 »

Ano, je to OK. Nekdy chce restart. Zalezi co maze, ci opravuje :)


:!: Vsechny tyto programy - vcetne pripadne instalace - spoustejte jako spravce (kliknete na ne pravym mysidlem a zvolte - Spustit jako spravce)

:arrow:
vyosek píše: :arrow: T-Cleaner http://tharifas.sweb.cz/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry mohou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: Stahnete OTC http://oldtimer.geekstogo.com/OTC.exe , ulozte a spustte.
Kliknete na napis CleanUp a pote OK - Po uklidu dojde k restartu pc.

:arrow: Stahnete TFC http://oldtimer.geekstogo.com/TFC.exe , ulozte a spustte
Kliknete na START a pote OK - Po uklidu dojde k restartu pc.
Po pouziti muzete programek smazat

:arrow: Stahnete Ccleaner http://www.stahuj.centrum.cz/utility_a_ ... /ccleaner/ a spustte.
Pri instalaci pozor na toolbar (ci jine doplnky), jestli vam nabidne jeho instalaci, tak zruste zatrzitko.
Po spusteni se ocitnete ve funkci Cistic. Vlevo je spousta zatrzitek. Pozor dejte hlavne na kos, pokud nechate zatrzene, vzdy ho vysype.
Dale, podle toho jak je nastaven, smaze vsechna hesla ulozena na netu!!! Takze jestli mate nastavene, at si pocitac hesla pamatuje (coz neni pro bezpecnost dobre), budete je muset pak napsat znova rucne (napr mail, facebook, ruzna fora atd.)
Kliknete na Analyzovat a az dokonci analyzu, kliknete na Spustit Cleaner.
Potom kliknete vlevo na funkci Registry
Kliknete na Hledej problemy, kdyz najde, kliknete na Opravit problemy. Nabidne Vam zalohu, tu udelejte a ulozte ji tak, at ji v pripade potreby najdete.
Funkce Nastroje umoznuje odinstalovani programu. Je dukladnejsi nez samotny windows!

:arrow: Defragmentujte disk(y)
Stahnete program Defraggler http://www.stahuj.centrum.cz/utility_a_ ... efraggler/
Pri instalaci opet pozor na toolbar
Po nainstalovani program spustte a kliknete na Analyzovat, po analyze kliknete na Defragmentovat a programek odvede svou praci.




:arrow: Pak dejte novy log z RSIT a napiste, jak je na tom pc.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

silvias
Návštěvník
Návštěvník
Příspěvky: 85
Registrován: 22 říj 2008 19:50

Re: Prosim o kontrolu

#25 Příspěvek od silvias »

Logfile of random's system information tool 1.09 (written by random/random)
Run by Robert at 2013-08-09 10:52:57
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 57 GB (55%) free of 104 GB
Total RAM: 3959 MB (62% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:52:59, on 9. 8. 2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16635)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Thread Manager\ThreadManager.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\Robert.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O4 - HKCU\..\Run: [ThreadManager.exe] C:\Program Files (x86)\Thread Manager\ThreadManager.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~2\MIF5BA~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MIF5BA~1\Office12\REFIEBAR.DLL
O10 - Broken Internet access because of LSP provider 'c:\program files (x86)\bonjour\mdnsnsp.dll' missing
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {361E6B79-4A69-4376-B0F2-3D1EBEE9D7E2} (RtspVaPgCtrl Class) - http://www.kysak-brezie.sk/scripts/cam/RtspVaPgDec.cab
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Microsoft Antimalware Service (MsMpSvc) - Unknown owner - C:\Program Files\Microsoft Security Client\MsMpEng.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)

--
End of file - 6414 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
winlogon.exe
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\WLANExt.exe 28943904
\??\C:\Windows\system32\conhost.exe "-13862622251553610198-1555489529-713025106-1387078638596702822-1380355405-438760457
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
"C:\Program Files (x86)\Thread Manager\ThreadManager.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"D:\PREVZATÉ SÚBORY\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\Robert\AppData\Roaming\Mozilla\Firefox\Profiles\jvtw7ve9.default-1375515950893

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.94 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.25.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.25.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.94 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.13.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.0.5]
"Description"=VLC Multimedia Plugin
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.0.7]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll

C:\Program Files (x86)\Mozilla Firefox\extensions\
{5ddeb737-082c-48fb-8c06-aa4b38d61e5f}

C:\Program Files (x86)\Mozilla Firefox\plugins\
NPOFF12.DLL
nppdf32.dll

C:\Program Files (x86)\Mozilla Firefox\searchplugins\
yahoo.xml

C:\Users\Robert\AppData\Roaming\Mozilla\Firefox\Profiles\jvtw7ve9.default-1375515950893\searchplugins\
yahoo.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\utility.exe [2009-12-17 4367808]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2009-12-17 6988736]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2013-03-21 6330568]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ThreadManager.exe"=C:\Program Files (x86)\Thread Manager\ThreadManager.exe [2013-07-31 10915608]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cAudioFilterAgent]
C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [2010-03-22 521272]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ContentTransferWMDetector.exe]
[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ETDCtrl]
C:\Program Files\Elantech\ETDCtrl.exe [2012-10-04 2872720]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAStorIcon]
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2012-12-20 56720]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
C:\Windows\system32\NvCpl.dll [2013-02-10 6393120]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth.lnk]
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTTray.exe [2012-04-01 1390368]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^TMMonitor.lnk]
C:\PROGRA~2\Lenovo\ARCSOF~1.5\TMMONI~1.EXE [2009-12-03 258048]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
C:\Program Files\WIDCOMM\Bluetooth Software\BtwProximityCP.dll

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"LogonHoursAction"=2
"DontDisplayLogonHoursWarnings"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"PromptOnSecureDesktop"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - %SystemRoot%\SysWow64\CScript.exe "%1" %*
.vbs - open - %SystemRoot%\SysWow64\CScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2013-08-09 10:52:57 ----D---- C:\rsit
2013-08-09 09:39:58 ----D---- C:\Program Files\Defraggler
2013-08-06 20:02:31 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-08-05 21:56:37 ----D---- C:\Program Files\trend micro
2013-08-01 13:25:49 ----D---- C:\ProgramData\Ashampoo
2013-08-01 13:25:45 ----D---- C:\Program Files (x86)\Ashampoo
2013-07-31 10:06:19 ----D---- C:\Users\Robert\AppData\Roaming\DG
2013-07-31 10:06:05 ----D---- C:\Program Files (x86)\Thread Manager
2013-07-17 20:00:05 ----D---- C:\Program Files (x86)\Sony Ericsson
2013-07-15 20:56:34 ----D---- C:\Program Files\VideoLAN
2013-07-15 20:52:08 ----D---- C:\Users\Robert\AppData\Roaming\Media Player Classic
2013-07-15 20:51:31 ----D---- C:\Program Files (x86)\K-Lite Codec Pack
2013-07-14 12:53:40 ----D---- C:\ProgramData\Sony
2013-07-14 09:42:55 ----D---- C:\Program Files\Lenovo

======List of files/folders modified in the last 1 month======

2013-08-09 10:52:59 ----D---- C:\Windows\Prefetch
2013-08-09 10:52:58 ----D---- C:\Windows\Temp
2013-08-09 10:37:20 ----D---- C:\Windows\system32\config
2013-08-09 09:39:58 ----RD---- C:\Program Files
2013-08-09 09:38:31 ----D---- C:\Windows\SoftwareDistribution
2013-08-09 09:37:44 ----D---- C:\Windows
2013-08-09 09:37:36 ----A---- C:\Windows\SYSWOW64\log.txt
2013-08-09 09:37:32 ----D---- C:\Users\Robert\AppData\Roaming\Winamp
2013-08-09 09:35:04 ----D---- C:\ProgramData\NVIDIA
2013-08-09 09:15:24 ----D---- C:\Windows\system32\drivers
2013-08-08 20:22:12 ----HD---- C:\ProgramData
2013-08-08 20:22:11 ----SHD---- C:\Windows\Installer
2013-08-08 20:22:07 ----RD---- C:\Program Files (x86)
2013-08-08 20:22:06 ----D---- C:\Windows\Tasks
2013-08-08 20:21:35 ----SHD---- C:\System Volume Information
2013-08-08 20:21:06 ----D---- C:\Windows\system32\drivers\etc
2013-08-08 20:21:05 ----D---- C:\Windows\SysWOW64
2013-08-06 22:50:16 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-08-06 08:22:50 ----D---- C:\Windows\system32\Tasks
2013-08-05 22:33:14 ----D---- C:\Program Files (x86)\Common Files
2013-08-05 11:14:38 ----D---- C:\Windows\System32
2013-08-05 11:14:38 ----D---- C:\Windows\inf
2013-08-05 11:14:38 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-08-04 17:06:21 ----D---- C:\Windows\system32\NDF
2013-08-04 16:38:21 ----D---- C:\Users\Robert\AppData\Roaming\vlc
2013-08-03 09:48:01 ----D---- C:\Windows\debug
2013-08-01 21:31:52 ----D---- C:\Windows\system32\catroot2
2013-07-28 19:08:34 ----D---- C:\Users\Robert\AppData\Roaming\Mp3tag
2013-07-28 18:59:59 ----D---- C:\Program Files (x86)\Mp3tag
2013-07-27 15:13:25 ----D---- C:\Program Files\CCleaner
2013-07-18 22:00:15 ----D---- C:\Windows\winsxs
2013-07-18 21:49:12 ----D---- C:\Program Files (x86)\Sony
2013-07-18 21:49:11 ----D---- C:\Program Files (x86)\Windows Sidebar
2013-07-17 20:01:17 ----D---- C:\Windows\system32\catroot
2013-07-17 20:00:23 ----D---- C:\ProgramData\Sony Ericsson
2013-07-17 19:30:35 ----D---- C:\Windows\system32\DriverStore
2013-07-14 20:59:47 ----D---- C:\Program Files (x86)\Google
2013-07-14 16:52:45 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-07-14 13:21:48 ----HD---- C:\Windows\system32\GroupPolicyUsers
2013-07-14 13:21:48 ----HD---- C:\Windows\system32\GroupPolicy
2013-07-14 12:53:40 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-07-14 10:54:17 ----D---- C:\Windows\system32\wfp
2013-07-14 10:54:01 ----D---- C:\Windows\system32\wbem
2013-07-14 10:54:01 ----D---- C:\Windows\registration
2013-07-13 23:04:36 ----D---- C:\ProgramData\redistpart
2013-07-13 23:04:36 ----D---- C:\ProgramData\mergeparts
2013-07-13 23:04:36 ----D---- C:\ProgramData\launcher
2013-07-13 23:04:36 ----D---- C:\ProgramData\install_clap
2013-07-13 23:04:36 ----D---- C:\ProgramData\explauncher
2013-07-13 23:04:36 ----D---- C:\ProgramData\DriverGenius
2013-07-13 23:04:36 ----D---- C:\ProgramData\deletepart
2013-07-13 23:04:36 ----D---- C:\ProgramData\createpart
2013-07-12 22:31:22 ----D---- C:\Windows\rescache
2013-07-12 21:04:53 ----D---- C:\Windows\system32\sk-SK
2013-07-12 09:06:58 ----D---- C:\Users\Robert\AppData\Roaming\BitTorrent
2013-07-10 22:40:55 ----D---- C:\Windows\Microsoft.NET
2013-07-10 21:04:32 ----RSD---- C:\Windows\assembly
2013-07-10 20:44:32 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2013-02-14 58416]
R0 fltsrv;Acronis Storage Filter Management; C:\Windows\system32\DRIVERS\fltsrv.sys [2012-04-01 132704]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-03-03 540696]
R0 iaStorA;iaStorA; C:\Windows\system32\DRIVERS\iaStorA.sys [2012-12-11 652344]
R0 iaStorF;iaStorF; C:\Windows\system32\DRIVERS\iaStorF.sys [2012-12-11 28216]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2013-01-20 230320]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-01-12 283200]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2013-02-14 213416]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2013-01-10 150616]
R1 EpfwLWF;Epfw NDIS LightWeight Filter; C:\Windows\system32\DRIVERS\EpfwLWF.sys [2013-01-10 59440]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 {1BA31E5A-C098-42d8-8F88-3C9F78A2FDDC};Power Control [2012/04/01 15:08:27]; \??\C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\000.fcl [2010-11-17 146928]
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2013-01-10 190232]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\Windows\system32\DRIVERS\AcpiVpc.sys [2013-01-01 29792]
R3 BCM43XX;Broadcom 802.11 - ovládač sieťového adaptéru; C:\Windows\system32\DRIVERS\bcmwl664.sys [2010-06-18 4170304]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT64.sys [2010-01-18 717368]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2012-10-03 323920]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2012-12-19 194488]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUStor.sys [2012-08-29 243712]
R3 seehcri;Sony Ericsson seehcri Device Driver; C:\Windows\system32\DRIVERS\seehcri.sys [2008-01-09 34032]
R3 vm331avs;Digital Camera 1; C:\Windows\System32\Drivers\vm331avs.sys [2010-03-18 215168]
S3 ATP;Comodo Unite Miniport Driver; C:\Windows\system32\DRIVERS\cmdatp.sys []
S3 BthEnum;Bluetooth Request Block Driver; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 btusbflt;Bluetooth USB Filter; C:\Windows\system32\drivers\btusbflt.sys [2009-07-01 52264]
S3 btwampfl;btwampfl Bluetooth filter driver; \??\C:\Windows\system32\drivers\btwampfl.sys [2012-04-01 594472]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2012-04-01 184872]
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\DRIVERS\btwavdt.sys [2012-03-06 210984]
S3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys [2011-09-17 39976]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2012-03-06 21544]
S3 clwvd;CyberLink WebCam Virtual Driver; C:\Windows\system32\DRIVERS\clwvd.sys []
S3 cpuz130;cpuz130; C:\Windows\system32\drivers\cpuz130.sys []
S3 cpuz136;cpuz136; C:\Windows\system32\drivers\cpuz136.sys []
S3 ggflt;SEMC USB Flash Driver Filter; C:\Windows\system32\DRIVERS\ggflt.sys [2012-07-21 14448]
S3 ggsemc;SEMC USB Flash Driver; C:\Windows\system32\DRIVERS\ggsemc.sys [2012-07-21 27760]
S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2009-06-10 6108416]
S3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\k57nd60a.sys [2009-06-10 270848]
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit; C:\Windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 pwdrvio;pwdrvio; \??\C:\Windows\syswow64\pwdrvio.sys []
S3 pwdspio;pwdspio; \??\C:\Windows\syswow64\pwdspio.sys []
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2012-10-25 769168]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2012-08-23 57856]
S3 usb_rndisx;USB RNDIS Adapter; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 19968]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 WinUsb;ASUS Android USB Driver; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2012-04-01 957216]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [2013-03-21 1341664]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2012-12-11 14904]
R2 IconMan_R;IconMan_R; C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe [2012-09-07 2464400]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-04-16 325656]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-02-10 877856]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-02-09 383264]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-04-16 2533400]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\MsMpEng.exe []
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-02-10 1266464]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-08-06 117656]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Sony PC Companion;Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [2013-02-04 155824]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-04-01 1255736]
S4 NetMsmqActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosim o kontrolu

#26 Příspěvek od Márty84 »

:arrow: Kliknete na START a pak na Spustit
V okenku co vyskoci bude radek, do ktereho napiste

Kód: Vybrat vše

services.msc
Kliknete na OK
Najdete sluzbu MsMpSvc, kliknete na ni pravym mysidlem a levym na napis Vlastnosti
Zastavte sluzbu kliknutim na Zastavit a u typu spusteni nastavte Zakazano


Márty84 píše:....a napiste, jak je na tom pc.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

silvias
Návštěvník
Návštěvník
Příspěvky: 85
Registrován: 22 říj 2008 19:50

Re: Prosim o kontrolu

#27 Příspěvek od silvias »

Myslíte toto ? http://s3.imgimg.de/uploads/n4845e06djpg.jpg
Lebo to sa nedá vypnúť

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosim o kontrolu

#28 Příspěvek od Márty84 »

Je to pozustatek po MSE. Nejak se to tam kouslo.

Zkuste pouzit Revo Uninstaller http://www.stahuj.centrum.cz/utility_a_ ... installer/
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

silvias
Návštěvník
Návštěvník
Příspěvky: 85
Registrován: 22 říj 2008 19:50

Re: Prosim o kontrolu

#29 Příspěvek od silvias »

Netuším ako na to, neviem to nájst v Revo U.

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosim o kontrolu

#30 Příspěvek od Márty84 »

No zustalo to tam nejak viset, ale na tom obrazku pise status stopped, coz by nevadilo.

Jak je na tom jinak pc?
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Zamčeno