
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
preventivni kontrola ale nespustim rsit
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
-
- Návštěvník
- Příspěvky: 209
- Registrován: 26 pro 2007 17:47
preventivni kontrola ale nespustim rsit
zdravim, rad bych si nechal zkontroloval notebook, ale nepodarilo se mi dostat log z rsit, haze to v prubehu chybu: "autoit error: line -1: error: variable used without being declared."
dival jsem se na foru, ze uz se to tu ruzne resilo, ale nechci do toho satrat sam.) diky
dival jsem se na foru, ze uz se to tu ruzne resilo, ale nechci do toho satrat sam.) diky
Re: preventivni kontrola ale nespustim rsit
Zdravim
Zkuste udelat FRSTL http://forum.viry.cz/viewtopic.php?f=30&t=132520
Pripadne DDS http://forum.viry.cz/viewtopic.php?f=30&t=125172



-
- Návštěvník
- Příspěvky: 209
- Registrován: 26 pro 2007 17:47
Re: preventivni kontrola ale nespustim rsit
diky, tady je log z frst
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 07-09-2013 03
Ran by Lucka (administrator) on LUCKA-PC on 07-09-2013 21:06:05
Running from C:\Users\Lucka\Desktop
Microsoft Windows 7 Starter Service Pack 1 (X86) OS Language: Czech
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(Check Point Software Technologies LTD) C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
(Check Point Software Technologies) C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\AvastUI.exe
(Check Point Software Technologies LTD) C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe
(Check Point Software Technologies) C:\Program Files\CheckPoint\ZAForceField\ForceField.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Google) C:\Program Files\Google\Drive\googledrivesync.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Intel Corporation) C:\windows\system32\igfxsrvc.exe
(Google) C:\Program Files\Google\Drive\googledrivesync.exe
() C:\Windows\System32\AsusService.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(Skype Technologies S.A.) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(ASUSTeK Computer Inc.) C:\Program Files\EeePC\HotkeyService\HotKeyMon.exe
(ASUSTeK Computer Inc.) C:\Program Files\EeePC\SHE\SuperHybridEngine.exe
(ASUSTeK Computer Inc.) C:\Program Files\EeePC\HotkeyService\HotkeyService.exe
(Panda Security) C:\Program Files\Panda USB Vaccine\USBVaccine.exe
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Lucka\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\windows\system32\cmd.exe
(Microsoft Corporation) C:\windows\system32\PING.EXE
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1545512 2009-07-20] (Synaptics Incorporated)
HKLM\...\Run: [SynAsusAcpi] - C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe [83240 2009-07-20] (Synaptics Incorporated)
HKLM\...\Run: [HotkeyService] - C:\Program Files\EeePC\HotkeyService\HotkeyService.exe [750008 2009-09-12] (ASUSTeK Computer Inc.)
HKLM\...\Run: [HotKeyMon] - C:\Program Files\EeePC\HotkeyService\HotKeyMon.exe [100328 2009-09-11] (ASUSTeK Computer Inc.)
HKLM\...\Run: [SuperHybridEngine] - C:\Program Files\EeePC\SHE\SuperHybridEngine.exe [407552 2009-09-01] (ASUSTeK Computer Inc.)
HKLM\...\Run: [IAAnotif] - C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2009-08-07] (Intel Corporation)
HKLM\...\Run: [HotKeysCmds] - C:\windows\system32\hkcmd.exe [ ] ()
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [8129056 2009-12-25] (Realtek Semiconductor)
HKLM\...\Run: [avast5] - C:\Program Files\Alwil Software\Avast5\avastUI.exe [4858968 2013-05-09] (AVAST Software)
HKLM\...\Run: [ZoneAlarm] - C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe [73984 2013-01-02] (Check Point Software Technologies LTD)
HKLM\...\Run: [ISW] - C:\Program Files\CheckPoint\ZAForceField\ForceField.exe [738984 2012-11-22] (Check Point Software Technologies)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation)
HKCU\...\Run: [GoogleDriveSync] - C:\Program Files\Google\Drive\googledrivesync.exe [20097696 2013-06-27] (Google)
MountPoints2: {ea8247ae-2e72-11df-8f1d-90e6ba2209ca} - E:\LaunchU3.exe -a
HKU\Default\...\Run: [Eee Docking] - C:\Program Files\ASUS\Eee Docking\Eee Docking.exe [ 2009-08-26] ()
HKU\Default User\...\Run: [Eee Docking] - C:\Program Files\ASUS\Eee Docking\Eee Docking.exe [ 2009-08-26] ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://eeepc.asus.com
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKCU - {C5423866-DED5-475F-AED6-F56F091D25DA} URL = http://search.yahoo.com/search?fr=chr-g ... earchTerms}
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: ZoneAlarm Security Engine Registrar - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
Toolbar: HKCU -No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
Toolbar: HKCU -ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 178.17.80.66 178.17.80.67
Chrome:
=======
CHR Extension: (Google Docs) - C:\Users\Lucka\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0
CHR Extension: (Google Drive) - C:\Users\Lucka\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0
CHR Extension: (YouTube) - C:\Users\Lucka\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\Users\Lucka\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (AdBlock) - C:\Users\Lucka\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0
CHR Extension: (Chrome In-App Payments service) - C:\Users\Lucka\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0
CHR Extension: (Gmail) - C:\Users\Lucka\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx
========================== Services (Whitelisted) =================
R2 AsusService; C:\Windows\System32\AsusService.exe [219136 2009-08-19] ()
R2 avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [46808 2013-05-09] (AVAST Software)
R2 IswSvc; C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe [497320 2012-11-22] (Check Point Software Technologies)
R2 Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [3291008 2013-08-14] (Skype Technologies S.A.)
R2 vsmon; C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe [2448032 2013-01-02] (Check Point Software Technologies LTD)
==================== Drivers (Whitelisted) ====================
R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [29816 2013-05-09] (AVAST Software)
R2 aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [66336 2013-05-09] (AVAST Software)
R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [61680 2013-05-09] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [49376 2013-05-09] ()
R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [770344 2013-06-28] (AVAST Software)
R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [369584 2013-06-28] (AVAST Software)
R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [56080 2013-05-09] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [175176 2013-06-28] ()
R2 CDRPDACC; C:\Program Files\Quintessential Media Player\cdrpdacc.sys [5273 2007-01-25] (Arrowkey)
R0 CLFS; C:\Windows\System32\CLFS.sys [249408 2009-07-14] (Microsoft Corporation)
R2 ISWKL; C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys [27056 2012-11-22] (Check Point Software Technologies)
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [13880 2009-07-20] ( )
R2 npf; C:\Windows\System32\drivers\npf.sys [50704 2010-01-27] (CACE Technologies, Inc.)
R1 Vsdatant; C:\Windows\System32\DRIVERS\vsdatant.sys [454744 2012-12-13] (Check Point Software Technologies LTD)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-09-07 21:04 - 2013-09-07 21:04 - 00000000 ____D C:\Users\Lucka\AppData\Local\qb3B4F96.DB
2013-09-07 21:04 - 2013-09-07 14:06 - 01081941 _____ (Farbar) C:\Users\Lucka\Desktop\FRST.exe
2013-09-07 21:04 - 2013-08-27 11:56 - 00044923 _____ C:\Users\Lucka\Desktop\logmodification.bat
2013-09-07 21:03 - 2013-09-07 21:04 - 00364544 _____ (forum.viry.cz) C:\Users\Lucka\Desktop\FRSTLauncher.exe
2013-09-07 19:38 - 2013-09-07 19:59 - 00000000 ____D C:\Program Files\trend micro
2013-09-07 19:38 - 2013-09-07 19:38 - 00781909 _____ C:\Users\Lucka\Desktop\RSIT.exe
2013-09-07 19:38 - 2013-09-07 19:38 - 00000000 ____D C:\rsit
2013-08-29 19:22 - 2013-09-03 20:01 - 00000000 ____D C:\Users\Lucka\AppData\Roaming\VDownloader
2013-08-29 19:21 - 2013-09-03 19:53 - 00000000 ____D C:\Program Files\VDownloader
2013-08-29 19:21 - 2013-08-29 19:21 - 00001919 _____ C:\Users\Public\Desktop\VDownloader.lnk
2013-08-29 19:21 - 2013-08-29 19:21 - 00000000 ____D C:\Program Files\WinPcap
2013-08-29 19:21 - 2010-01-26 18:11 - 00444283 _____ C:\Program Files\Common Files\WinPcapNmap.exe
2013-08-28 12:29 - 2013-09-07 19:59 - 00001740 _____ C:\windows\setupact.log
2013-08-28 12:29 - 2013-08-28 12:29 - 00000000 _____ C:\windows\setuperr.log
2013-08-21 20:57 - 2013-08-21 20:59 - 00000000 ____D C:\Users\Lucka\Desktop\Default
2013-08-21 20:52 - 2013-08-21 21:00 - 00000000 ____D C:\AdwCleaner
2013-08-21 20:47 - 2013-08-21 20:51 - 00975858 _____ C:\Users\Lucka\Desktop\AdwCleaner.exe
2013-08-21 20:36 - 2013-08-21 20:36 - 00002684 _____ C:\Users\Lucka\Desktop\JRT.txt
2013-08-21 20:22 - 2013-08-21 20:22 - 00000000 ____D C:\windows\ERUNT
2013-08-21 20:19 - 2013-08-21 20:19 - 01018947 _____ (Thisisu) C:\Users\Lucka\Desktop\JRT.exe
2013-08-21 08:37 - 2013-08-21 08:37 - 00000000 ____D C:\Users\Lucka\kbpki
2013-08-17 12:11 - 2013-08-17 12:11 - 00000000 ____D C:\Users\Default\AppData\Local\Google
2013-08-17 12:11 - 2013-08-17 12:11 - 00000000 ____D C:\Users\Default User\AppData\Local\Google
2013-08-16 22:58 - 2013-07-26 05:13 - 01767936 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2013-08-16 22:58 - 2013-07-26 05:13 - 01141248 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2013-08-16 22:58 - 2013-07-26 05:13 - 00042496 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2013-08-16 22:58 - 2013-07-26 05:12 - 02877440 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2013-08-16 22:58 - 2013-07-26 05:12 - 02048512 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2013-08-16 22:58 - 2013-07-26 05:12 - 00690688 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2013-08-16 22:58 - 2013-07-26 05:12 - 00493056 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2013-08-16 22:58 - 2013-07-26 05:12 - 00391168 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2013-08-16 22:58 - 2013-07-26 05:12 - 00109056 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll
2013-08-16 22:58 - 2013-07-26 05:12 - 00061440 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2013-08-16 22:58 - 2013-07-26 05:12 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2013-08-16 22:58 - 2013-07-26 05:11 - 00033280 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2013-08-16 22:58 - 2013-07-26 04:49 - 02706432 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2013-08-16 22:58 - 2013-07-26 03:59 - 00071680 _____ (Microsoft Corporation) C:\windows\system32\RegisterIEPKEYs.exe
2013-08-16 22:57 - 2013-07-26 05:12 - 14329344 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2013-08-16 22:57 - 2013-07-26 05:11 - 13761024 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2013-08-16 22:18 - 2013-07-19 03:41 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll
2013-08-16 22:18 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\windows\system32\wintrust.dll
2013-08-16 22:18 - 2013-07-09 06:50 - 00652800 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll
2013-08-16 22:18 - 2013-07-09 06:46 - 01166848 _____ (Microsoft Corporation) C:\windows\system32\crypt32.dll
2013-08-16 22:18 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\windows\system32\cryptsvc.dll
2013-08-16 22:18 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\windows\system32\cryptnet.dll
2013-08-16 22:17 - 2013-07-09 07:03 - 03968960 _____ (Microsoft Corporation) C:\windows\system32\ntkrnlpa.exe
2013-08-16 22:17 - 2013-07-09 07:03 - 03913664 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2013-08-16 22:17 - 2013-07-09 06:53 - 01289096 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll
2013-08-16 22:12 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\windows\system32\WMVDECOD.DLL
2013-08-16 22:12 - 2013-07-06 07:05 - 01293760 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tcpip.sys
2013-08-16 22:12 - 2013-06-15 05:38 - 00031232 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tssecsrv.sys
==================== One Month Modified Files and Folders =======
2013-09-07 21:06 - 2013-06-27 10:56 - 00000938 _____ C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-09-07 21:05 - 2013-09-07 21:05 - 00000000 ____D C:\FRST
2013-09-07 21:04 - 2013-09-07 21:04 - 00000000 ____D C:\Users\Lucka\AppData\Local\qb3B4F96.DB
2013-09-07 21:04 - 2013-09-07 21:03 - 00364544 _____ (forum.viry.cz) C:\Users\Lucka\Desktop\FRSTLauncher.exe
2013-09-07 20:58 - 2012-04-12 00:26 - 00000914 _____ C:\windows\Tasks\Adobe Flash Player Updater.job
2013-09-07 20:43 - 2013-06-16 13:14 - 01632411 _____ C:\windows\WindowsUpdate.log
2013-09-07 20:10 - 2009-07-14 06:34 - 00009696 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-09-07 20:10 - 2009-07-14 06:34 - 00009696 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-09-07 20:00 - 2013-06-27 10:56 - 00000934 _____ C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-09-07 20:00 - 2009-07-14 06:53 - 00000006 ____H C:\windows\Tasks\SA.DAT
2013-09-07 19:59 - 2013-09-07 19:38 - 00000000 ____D C:\Program Files\trend micro
2013-09-07 19:59 - 2013-08-28 12:29 - 00001740 _____ C:\windows\setupact.log
2013-09-07 19:38 - 2013-09-07 19:38 - 00781909 _____ C:\Users\Lucka\Desktop\RSIT.exe
2013-09-07 19:38 - 2013-09-07 19:38 - 00000000 ____D C:\rsit
2013-09-07 14:06 - 2013-09-07 21:04 - 01081941 _____ (Farbar) C:\Users\Lucka\Desktop\FRST.exe
2013-09-04 22:37 - 2013-06-27 10:58 - 00002165 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2013-09-03 20:01 - 2013-08-29 19:22 - 00000000 ____D C:\Users\Lucka\AppData\Roaming\VDownloader
2013-09-03 19:53 - 2013-08-29 19:21 - 00000000 ____D C:\Program Files\VDownloader
2013-09-03 09:47 - 2009-07-25 09:50 - 01470298 _____ C:\windows\system32\PerfStringBackup.INI
2013-08-29 21:34 - 2010-02-20 17:34 - 00000000 ____D C:\Users\Lucka\AppData\Local\vdownloader
2013-08-29 19:21 - 2013-08-29 19:21 - 00001919 _____ C:\Users\Public\Desktop\VDownloader.lnk
2013-08-29 19:21 - 2013-08-29 19:21 - 00000000 ____D C:\Program Files\WinPcap
2013-08-28 12:29 - 2013-08-28 12:29 - 00000000 _____ C:\windows\setuperr.log
2013-08-27 20:05 - 2013-07-07 21:15 - 00000000 ____D C:\Users\Lucka\Desktop\media
2013-08-27 20:01 - 2013-07-12 21:32 - 00002463 _____ C:\Users\Lucka\Desktop\Disk Google.lnk
2013-08-27 11:56 - 2013-09-07 21:04 - 00044923 _____ C:\Users\Lucka\Desktop\logmodification.bat
2013-08-24 23:14 - 2010-01-21 21:05 - 00000000 ____D C:\Users\Lucka\AppData\Roaming\Skype
2013-08-21 21:19 - 2009-09-16 23:10 - 00000000 ____D C:\Program Files\Common Files\Adobe AIR
2013-08-21 21:09 - 2010-02-08 13:10 - 00001071 _____ C:\windows\wincmd.ini
2013-08-21 21:03 - 2010-04-05 17:35 - 00000000 ____D C:\Users\Lucka\AppData\Roaming\CheckPoint
2013-08-21 21:00 - 2013-08-21 20:52 - 00000000 ____D C:\AdwCleaner
2013-08-21 20:59 - 2013-08-21 20:57 - 00000000 ____D C:\Users\Lucka\Desktop\Default
2013-08-21 20:51 - 2013-08-21 20:47 - 00975858 _____ C:\Users\Lucka\Desktop\AdwCleaner.exe
2013-08-21 20:36 - 2013-08-21 20:36 - 00002684 _____ C:\Users\Lucka\Desktop\JRT.txt
2013-08-21 20:22 - 2013-08-21 20:22 - 00000000 ____D C:\windows\ERUNT
2013-08-21 20:19 - 2013-08-21 20:19 - 01018947 _____ (Thisisu) C:\Users\Lucka\Desktop\JRT.exe
2013-08-21 08:37 - 2013-08-21 08:37 - 00000000 ____D C:\Users\Lucka\kbpki
2013-08-21 08:37 - 2010-01-21 02:41 - 00000000 ____D C:\Users\Lucka
2013-08-17 21:39 - 2010-10-30 14:46 - 00000000 ____D C:\windows\rescache
2013-08-17 19:50 - 2009-07-14 04:37 - 00000000 ____D C:\windows\Microsoft.NET
2013-08-17 15:00 - 2012-07-12 20:48 - 00000000 ____D C:\Users\Lucka\Desktop\logika
2013-08-17 12:11 - 2013-08-17 12:11 - 00000000 ____D C:\Users\Default\AppData\Local\Google
2013-08-17 12:11 - 2013-08-17 12:11 - 00000000 ____D C:\Users\Default User\AppData\Local\Google
2013-08-16 23:19 - 2013-07-13 23:11 - 00000000 ____D C:\windows\system32\MRT
2013-08-16 23:13 - 2010-01-23 17:55 - 75778376 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2013-08-16 23:12 - 2009-09-16 22:36 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-08-16 21:35 - 2009-09-16 22:52 - 00000000 ___RD C:\Program Files\Skype
Files to move or delete:
====================
C:\Users\Lucka\AppData\Local\Temp\KMP_3.6.0.87.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-09-02 23:14
==================== End Of Log ============================
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 07-09-2013 03
Ran by Lucka (administrator) on LUCKA-PC on 07-09-2013 21:06:05
Running from C:\Users\Lucka\Desktop
Microsoft Windows 7 Starter Service Pack 1 (X86) OS Language: Czech
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(Check Point Software Technologies LTD) C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
(Check Point Software Technologies) C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\AvastUI.exe
(Check Point Software Technologies LTD) C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe
(Check Point Software Technologies) C:\Program Files\CheckPoint\ZAForceField\ForceField.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Google) C:\Program Files\Google\Drive\googledrivesync.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Intel Corporation) C:\windows\system32\igfxsrvc.exe
(Google) C:\Program Files\Google\Drive\googledrivesync.exe
() C:\Windows\System32\AsusService.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(Skype Technologies S.A.) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(ASUSTeK Computer Inc.) C:\Program Files\EeePC\HotkeyService\HotKeyMon.exe
(ASUSTeK Computer Inc.) C:\Program Files\EeePC\SHE\SuperHybridEngine.exe
(ASUSTeK Computer Inc.) C:\Program Files\EeePC\HotkeyService\HotkeyService.exe
(Panda Security) C:\Program Files\Panda USB Vaccine\USBVaccine.exe
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Lucka\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\windows\system32\cmd.exe
(Microsoft Corporation) C:\windows\system32\PING.EXE
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1545512 2009-07-20] (Synaptics Incorporated)
HKLM\...\Run: [SynAsusAcpi] - C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe [83240 2009-07-20] (Synaptics Incorporated)
HKLM\...\Run: [HotkeyService] - C:\Program Files\EeePC\HotkeyService\HotkeyService.exe [750008 2009-09-12] (ASUSTeK Computer Inc.)
HKLM\...\Run: [HotKeyMon] - C:\Program Files\EeePC\HotkeyService\HotKeyMon.exe [100328 2009-09-11] (ASUSTeK Computer Inc.)
HKLM\...\Run: [SuperHybridEngine] - C:\Program Files\EeePC\SHE\SuperHybridEngine.exe [407552 2009-09-01] (ASUSTeK Computer Inc.)
HKLM\...\Run: [IAAnotif] - C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2009-08-07] (Intel Corporation)
HKLM\...\Run: [HotKeysCmds] - C:\windows\system32\hkcmd.exe [ ] ()
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [8129056 2009-12-25] (Realtek Semiconductor)
HKLM\...\Run: [avast5] - C:\Program Files\Alwil Software\Avast5\avastUI.exe [4858968 2013-05-09] (AVAST Software)
HKLM\...\Run: [ZoneAlarm] - C:\Program Files\CheckPoint\ZoneAlarm\zatray.exe [73984 2013-01-02] (Check Point Software Technologies LTD)
HKLM\...\Run: [ISW] - C:\Program Files\CheckPoint\ZAForceField\ForceField.exe [738984 2012-11-22] (Check Point Software Technologies)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation)
HKCU\...\Run: [GoogleDriveSync] - C:\Program Files\Google\Drive\googledrivesync.exe [20097696 2013-06-27] (Google)
MountPoints2: {ea8247ae-2e72-11df-8f1d-90e6ba2209ca} - E:\LaunchU3.exe -a
HKU\Default\...\Run: [Eee Docking] - C:\Program Files\ASUS\Eee Docking\Eee Docking.exe [ 2009-08-26] ()
HKU\Default User\...\Run: [Eee Docking] - C:\Program Files\ASUS\Eee Docking\Eee Docking.exe [ 2009-08-26] ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://eeepc.asus.com
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKCU - {C5423866-DED5-475F-AED6-F56F091D25DA} URL = http://search.yahoo.com/search?fr=chr-g ... earchTerms}
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: ZoneAlarm Security Engine Registrar - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
Toolbar: HKCU -No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
Toolbar: HKCU -ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 178.17.80.66 178.17.80.67
Chrome:
=======
CHR Extension: (Google Docs) - C:\Users\Lucka\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0
CHR Extension: (Google Drive) - C:\Users\Lucka\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0
CHR Extension: (YouTube) - C:\Users\Lucka\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\Users\Lucka\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (AdBlock) - C:\Users\Lucka\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.6_0
CHR Extension: (Chrome In-App Payments service) - C:\Users\Lucka\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0
CHR Extension: (Gmail) - C:\Users\Lucka\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx
========================== Services (Whitelisted) =================
R2 AsusService; C:\Windows\System32\AsusService.exe [219136 2009-08-19] ()
R2 avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [46808 2013-05-09] (AVAST Software)
R2 IswSvc; C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe [497320 2012-11-22] (Check Point Software Technologies)
R2 Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [3291008 2013-08-14] (Skype Technologies S.A.)
R2 vsmon; C:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe [2448032 2013-01-02] (Check Point Software Technologies LTD)
==================== Drivers (Whitelisted) ====================
R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [29816 2013-05-09] (AVAST Software)
R2 aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [66336 2013-05-09] (AVAST Software)
R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [61680 2013-05-09] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [49376 2013-05-09] ()
R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [770344 2013-06-28] (AVAST Software)
R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [369584 2013-06-28] (AVAST Software)
R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [56080 2013-05-09] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [175176 2013-06-28] ()
R2 CDRPDACC; C:\Program Files\Quintessential Media Player\cdrpdacc.sys [5273 2007-01-25] (Arrowkey)
R0 CLFS; C:\Windows\System32\CLFS.sys [249408 2009-07-14] (Microsoft Corporation)
R2 ISWKL; C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys [27056 2012-11-22] (Check Point Software Technologies)
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [13880 2009-07-20] ( )
R2 npf; C:\Windows\System32\drivers\npf.sys [50704 2010-01-27] (CACE Technologies, Inc.)
R1 Vsdatant; C:\Windows\System32\DRIVERS\vsdatant.sys [454744 2012-12-13] (Check Point Software Technologies LTD)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-09-07 21:04 - 2013-09-07 21:04 - 00000000 ____D C:\Users\Lucka\AppData\Local\qb3B4F96.DB
2013-09-07 21:04 - 2013-09-07 14:06 - 01081941 _____ (Farbar) C:\Users\Lucka\Desktop\FRST.exe
2013-09-07 21:04 - 2013-08-27 11:56 - 00044923 _____ C:\Users\Lucka\Desktop\logmodification.bat
2013-09-07 21:03 - 2013-09-07 21:04 - 00364544 _____ (forum.viry.cz) C:\Users\Lucka\Desktop\FRSTLauncher.exe
2013-09-07 19:38 - 2013-09-07 19:59 - 00000000 ____D C:\Program Files\trend micro
2013-09-07 19:38 - 2013-09-07 19:38 - 00781909 _____ C:\Users\Lucka\Desktop\RSIT.exe
2013-09-07 19:38 - 2013-09-07 19:38 - 00000000 ____D C:\rsit
2013-08-29 19:22 - 2013-09-03 20:01 - 00000000 ____D C:\Users\Lucka\AppData\Roaming\VDownloader
2013-08-29 19:21 - 2013-09-03 19:53 - 00000000 ____D C:\Program Files\VDownloader
2013-08-29 19:21 - 2013-08-29 19:21 - 00001919 _____ C:\Users\Public\Desktop\VDownloader.lnk
2013-08-29 19:21 - 2013-08-29 19:21 - 00000000 ____D C:\Program Files\WinPcap
2013-08-29 19:21 - 2010-01-26 18:11 - 00444283 _____ C:\Program Files\Common Files\WinPcapNmap.exe
2013-08-28 12:29 - 2013-09-07 19:59 - 00001740 _____ C:\windows\setupact.log
2013-08-28 12:29 - 2013-08-28 12:29 - 00000000 _____ C:\windows\setuperr.log
2013-08-21 20:57 - 2013-08-21 20:59 - 00000000 ____D C:\Users\Lucka\Desktop\Default
2013-08-21 20:52 - 2013-08-21 21:00 - 00000000 ____D C:\AdwCleaner
2013-08-21 20:47 - 2013-08-21 20:51 - 00975858 _____ C:\Users\Lucka\Desktop\AdwCleaner.exe
2013-08-21 20:36 - 2013-08-21 20:36 - 00002684 _____ C:\Users\Lucka\Desktop\JRT.txt
2013-08-21 20:22 - 2013-08-21 20:22 - 00000000 ____D C:\windows\ERUNT
2013-08-21 20:19 - 2013-08-21 20:19 - 01018947 _____ (Thisisu) C:\Users\Lucka\Desktop\JRT.exe
2013-08-21 08:37 - 2013-08-21 08:37 - 00000000 ____D C:\Users\Lucka\kbpki
2013-08-17 12:11 - 2013-08-17 12:11 - 00000000 ____D C:\Users\Default\AppData\Local\Google
2013-08-17 12:11 - 2013-08-17 12:11 - 00000000 ____D C:\Users\Default User\AppData\Local\Google
2013-08-16 22:58 - 2013-07-26 05:13 - 01767936 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2013-08-16 22:58 - 2013-07-26 05:13 - 01141248 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2013-08-16 22:58 - 2013-07-26 05:13 - 00042496 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2013-08-16 22:58 - 2013-07-26 05:12 - 02877440 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2013-08-16 22:58 - 2013-07-26 05:12 - 02048512 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2013-08-16 22:58 - 2013-07-26 05:12 - 00690688 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2013-08-16 22:58 - 2013-07-26 05:12 - 00493056 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2013-08-16 22:58 - 2013-07-26 05:12 - 00391168 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2013-08-16 22:58 - 2013-07-26 05:12 - 00109056 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll
2013-08-16 22:58 - 2013-07-26 05:12 - 00061440 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2013-08-16 22:58 - 2013-07-26 05:12 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2013-08-16 22:58 - 2013-07-26 05:11 - 00033280 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2013-08-16 22:58 - 2013-07-26 04:49 - 02706432 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2013-08-16 22:58 - 2013-07-26 03:59 - 00071680 _____ (Microsoft Corporation) C:\windows\system32\RegisterIEPKEYs.exe
2013-08-16 22:57 - 2013-07-26 05:12 - 14329344 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2013-08-16 22:57 - 2013-07-26 05:11 - 13761024 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2013-08-16 22:18 - 2013-07-19 03:41 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll
2013-08-16 22:18 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\windows\system32\wintrust.dll
2013-08-16 22:18 - 2013-07-09 06:50 - 00652800 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll
2013-08-16 22:18 - 2013-07-09 06:46 - 01166848 _____ (Microsoft Corporation) C:\windows\system32\crypt32.dll
2013-08-16 22:18 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\windows\system32\cryptsvc.dll
2013-08-16 22:18 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\windows\system32\cryptnet.dll
2013-08-16 22:17 - 2013-07-09 07:03 - 03968960 _____ (Microsoft Corporation) C:\windows\system32\ntkrnlpa.exe
2013-08-16 22:17 - 2013-07-09 07:03 - 03913664 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2013-08-16 22:17 - 2013-07-09 06:53 - 01289096 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll
2013-08-16 22:12 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\windows\system32\WMVDECOD.DLL
2013-08-16 22:12 - 2013-07-06 07:05 - 01293760 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tcpip.sys
2013-08-16 22:12 - 2013-06-15 05:38 - 00031232 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tssecsrv.sys
==================== One Month Modified Files and Folders =======
2013-09-07 21:06 - 2013-06-27 10:56 - 00000938 _____ C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-09-07 21:05 - 2013-09-07 21:05 - 00000000 ____D C:\FRST
2013-09-07 21:04 - 2013-09-07 21:04 - 00000000 ____D C:\Users\Lucka\AppData\Local\qb3B4F96.DB
2013-09-07 21:04 - 2013-09-07 21:03 - 00364544 _____ (forum.viry.cz) C:\Users\Lucka\Desktop\FRSTLauncher.exe
2013-09-07 20:58 - 2012-04-12 00:26 - 00000914 _____ C:\windows\Tasks\Adobe Flash Player Updater.job
2013-09-07 20:43 - 2013-06-16 13:14 - 01632411 _____ C:\windows\WindowsUpdate.log
2013-09-07 20:10 - 2009-07-14 06:34 - 00009696 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-09-07 20:10 - 2009-07-14 06:34 - 00009696 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-09-07 20:00 - 2013-06-27 10:56 - 00000934 _____ C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-09-07 20:00 - 2009-07-14 06:53 - 00000006 ____H C:\windows\Tasks\SA.DAT
2013-09-07 19:59 - 2013-09-07 19:38 - 00000000 ____D C:\Program Files\trend micro
2013-09-07 19:59 - 2013-08-28 12:29 - 00001740 _____ C:\windows\setupact.log
2013-09-07 19:38 - 2013-09-07 19:38 - 00781909 _____ C:\Users\Lucka\Desktop\RSIT.exe
2013-09-07 19:38 - 2013-09-07 19:38 - 00000000 ____D C:\rsit
2013-09-07 14:06 - 2013-09-07 21:04 - 01081941 _____ (Farbar) C:\Users\Lucka\Desktop\FRST.exe
2013-09-04 22:37 - 2013-06-27 10:58 - 00002165 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2013-09-03 20:01 - 2013-08-29 19:22 - 00000000 ____D C:\Users\Lucka\AppData\Roaming\VDownloader
2013-09-03 19:53 - 2013-08-29 19:21 - 00000000 ____D C:\Program Files\VDownloader
2013-09-03 09:47 - 2009-07-25 09:50 - 01470298 _____ C:\windows\system32\PerfStringBackup.INI
2013-08-29 21:34 - 2010-02-20 17:34 - 00000000 ____D C:\Users\Lucka\AppData\Local\vdownloader
2013-08-29 19:21 - 2013-08-29 19:21 - 00001919 _____ C:\Users\Public\Desktop\VDownloader.lnk
2013-08-29 19:21 - 2013-08-29 19:21 - 00000000 ____D C:\Program Files\WinPcap
2013-08-28 12:29 - 2013-08-28 12:29 - 00000000 _____ C:\windows\setuperr.log
2013-08-27 20:05 - 2013-07-07 21:15 - 00000000 ____D C:\Users\Lucka\Desktop\media
2013-08-27 20:01 - 2013-07-12 21:32 - 00002463 _____ C:\Users\Lucka\Desktop\Disk Google.lnk
2013-08-27 11:56 - 2013-09-07 21:04 - 00044923 _____ C:\Users\Lucka\Desktop\logmodification.bat
2013-08-24 23:14 - 2010-01-21 21:05 - 00000000 ____D C:\Users\Lucka\AppData\Roaming\Skype
2013-08-21 21:19 - 2009-09-16 23:10 - 00000000 ____D C:\Program Files\Common Files\Adobe AIR
2013-08-21 21:09 - 2010-02-08 13:10 - 00001071 _____ C:\windows\wincmd.ini
2013-08-21 21:03 - 2010-04-05 17:35 - 00000000 ____D C:\Users\Lucka\AppData\Roaming\CheckPoint
2013-08-21 21:00 - 2013-08-21 20:52 - 00000000 ____D C:\AdwCleaner
2013-08-21 20:59 - 2013-08-21 20:57 - 00000000 ____D C:\Users\Lucka\Desktop\Default
2013-08-21 20:51 - 2013-08-21 20:47 - 00975858 _____ C:\Users\Lucka\Desktop\AdwCleaner.exe
2013-08-21 20:36 - 2013-08-21 20:36 - 00002684 _____ C:\Users\Lucka\Desktop\JRT.txt
2013-08-21 20:22 - 2013-08-21 20:22 - 00000000 ____D C:\windows\ERUNT
2013-08-21 20:19 - 2013-08-21 20:19 - 01018947 _____ (Thisisu) C:\Users\Lucka\Desktop\JRT.exe
2013-08-21 08:37 - 2013-08-21 08:37 - 00000000 ____D C:\Users\Lucka\kbpki
2013-08-21 08:37 - 2010-01-21 02:41 - 00000000 ____D C:\Users\Lucka
2013-08-17 21:39 - 2010-10-30 14:46 - 00000000 ____D C:\windows\rescache
2013-08-17 19:50 - 2009-07-14 04:37 - 00000000 ____D C:\windows\Microsoft.NET
2013-08-17 15:00 - 2012-07-12 20:48 - 00000000 ____D C:\Users\Lucka\Desktop\logika
2013-08-17 12:11 - 2013-08-17 12:11 - 00000000 ____D C:\Users\Default\AppData\Local\Google
2013-08-17 12:11 - 2013-08-17 12:11 - 00000000 ____D C:\Users\Default User\AppData\Local\Google
2013-08-16 23:19 - 2013-07-13 23:11 - 00000000 ____D C:\windows\system32\MRT
2013-08-16 23:13 - 2010-01-23 17:55 - 75778376 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2013-08-16 23:12 - 2009-09-16 22:36 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-08-16 21:35 - 2009-09-16 22:52 - 00000000 ___RD C:\Program Files\Skype
Files to move or delete:
====================
C:\Users\Lucka\AppData\Local\Temp\KMP_3.6.0.87.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-09-02 23:14
==================== End Of Log ============================
- Přílohy
-
- Addition.rar
- (5.43 KiB) Staženo 45 x
Re: preventivni kontrola ale nespustim rsit

- Spustte poznamkovy blok (Start-spustit-notepad)
- Zkopirujte skript nize
Kód: Vybrat vše
Start HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation) HKCU\...\Run: [GoogleDriveSync] - C:\Program Files\Google\Drive\googledrivesync.exe [20097696 2013-06-27] (Google) MountPoints2: {ea8247ae-2e72-11df-8f1d-90e6ba2209ca} - E:\LaunchU3.exe -a SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKCU - {C5423866-DED5-475F-AED6-F56F091D25DA} URL = http://search.yahoo.com/search?fr=chr-g ... =302398&p={searchTerms} Toolbar: HKCU -No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe Hosts: CMD: shutdown /r /f /t 2 End
- Ulozte vytvoreny TXT jako fixlist.txt
- Presunte vytvoreny fixlist vedle FRST

- Kliknete na Fix
- Probehne oprava a vytvori log Fixlog.txt

-
- Návštěvník
- Příspěvky: 209
- Registrován: 26 pro 2007 17:47
Re: preventivni kontrola ale nespustim rsit
tady fixlog:
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 07-09-2013 03
Ran by Lucka at 2013-09-07 22:38:09 Run:1
Running from C:\Users\Lucka\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation)
HKCU\...\Run: [GoogleDriveSync] - C:\Program Files\Google\Drive\googledrivesync.exe [20097696 2013-06-27] (Google)
MountPoints2: {ea8247ae-2e72-11df-8f1d-90e6ba2209ca} - E:\LaunchU3.exe -a
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKCU - {C5423866-DED5-475F-AED6-F56F091D25DA} URL = http://search.yahoo.com/search?fr=chr-g ... =302398&p={searchTerms}
Toolbar: HKCU -No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Hosts:
CMD: shutdown /r /f /t 2
End
*****************
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\GoogleDriveSync => Value deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ea8247ae-2e72-11df-8f1d-90e6ba2209ca} => Key deleted successfully.
HKCR\CLSID\{ea8247ae-2e72-11df-8f1d-90e6ba2209ca} => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{C5423866-DED5-475F-AED6-F56F091D25DA} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{C5423866-DED5-475F-AED6-F56F091D25DA} => Key not found.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{21FA44EF-376D-4D53-9B0F-8A89D3229068} => Value deleted successfully.
HKCR\CLSID\{21FA44EF-376D-4D53-9B0F-8A89D3229068} => Key not found.
C:\windows\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
========= shutdown /r /f /t 2 =========
========= End of CMD: =========
==== End of Fixlog ====
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 07-09-2013 03
Ran by Lucka at 2013-09-07 22:38:09 Run:1
Running from C:\Users\Lucka\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation)
HKCU\...\Run: [GoogleDriveSync] - C:\Program Files\Google\Drive\googledrivesync.exe [20097696 2013-06-27] (Google)
MountPoints2: {ea8247ae-2e72-11df-8f1d-90e6ba2209ca} - E:\LaunchU3.exe -a
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKCU - {C5423866-DED5-475F-AED6-F56F091D25DA} URL = http://search.yahoo.com/search?fr=chr-g ... =302398&p={searchTerms}
Toolbar: HKCU -No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Hosts:
CMD: shutdown /r /f /t 2
End
*****************
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\GoogleDriveSync => Value deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ea8247ae-2e72-11df-8f1d-90e6ba2209ca} => Key deleted successfully.
HKCR\CLSID\{ea8247ae-2e72-11df-8f1d-90e6ba2209ca} => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{C5423866-DED5-475F-AED6-F56F091D25DA} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{C5423866-DED5-475F-AED6-F56F091D25DA} => Key not found.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{21FA44EF-376D-4D53-9B0F-8A89D3229068} => Value deleted successfully.
HKCR\CLSID\{21FA44EF-376D-4D53-9B0F-8A89D3229068} => Key not found.
C:\windows\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
========= shutdown /r /f /t 2 =========
========= End of CMD: =========
==== End of Fixlog ====
Re: preventivni kontrola ale nespustim rsit
Tak jeste uklidime
T-Cleaner http://vyosek.ic.cz/pro_usery/T-Cleaner.exe
OTC http://oldtimer.geekstogo.com/OTC.exe
TFC http://oldtimer.geekstogo.com/TFC.exe
Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
A pokud nejsou problemy ci dotazy, je to z me strany vse 


- Stahnete a spustte
- Pro potvrzeni volby mackejte A, Enter
- Po pouziti utilitu smazte
- Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)

- Stahnete a spustte
- Kliknete na CleanUp a potvrdte YES
- Program uklidi a restartuje PC

- Stahnete a spustte
- Kliknete na Start a potvrdte OK
- Program uklidi a restartuje pc
- Po pouziti utilitu smazte

Panel čistič
- Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
- dejte Hledej problémy
- nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
- postup opakujte dokud nebude bez problemu - vetsinou cca 3x
- Zde muzete odinstalovat nepotrebne programy


-
- Návštěvník
- Příspěvky: 209
- Registrován: 26 pro 2007 17:47
Re: preventivni kontrola ale nespustim rsit
tak pocisteno. dekuju za bleskovou pomoc