
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
kdbsync.exe a mspsouyxq.exe přestal pracovat
Moderátor: Moderátoři
Pravidla fóra
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní: http://forum.viry.cz/viewtopic.php?f=12&t=123975 . Děkujeme za pochopení.
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní: http://forum.viry.cz/viewtopic.php?f=12&t=123975 . Děkujeme za pochopení.
Re: kdbsync.exe a mspsouyxq.exe přestal pracovat
Tady ho máte, super už to hlášky nevyhazuje, ale předtím než mi ve windousech naběhlo vítejte tak jsem měl asi 20 sec černou obrazovku.
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 23-10-2013
Ran by Matěj at 2013-10-23 22:48:35 Run:1
Running from C:\Users\Matěj\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
HKLM\...\Run: [AMD AVT] - cmd.exe /c start "amd accelerated video transcoding device initialization" /min "c:\program files (x86)\amd avt\bin\kdbsync.exe" aml
HKCU\...\Policies\system: [LogonHoursAction] 2
HKCU\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
MountPoints2: {05a7e11d-9a9c-11e2-a28d-206a8a20361a} - E:\Autorun.exe
MountPoints2: {a2987300-04ad-11e3-8305-005056c00008} - F:\Autorun.exe
MountPoints2: {a298730e-04ad-11e3-8305-005056c00008} - F:\Autorun.exe
MountPoints2: {a298731c-04ad-11e3-8305-005056c00008} - F:\Autorun.exe
MountPoints2: {d5eb7fcb-a112-11e2-b897-206a8a20361a} - F:\AutoRun.exe {D2D77DC2-8299-11D1-8949-444553540000} 5.2066.1.A14B04 PID_0083 {01D42BF0-ED08-463f-8A28-99EB6FEE962B}
MountPoints2: {eaa550ac-3c37-11d8-9e82-206a8a20361a} - F:\Autorun.exe
MountPoints2: {eaa550ba-3c37-11d8-9e82-206a8a20361a} - F:\Autorun.exe
HKLM-x32\...\Run: [mshcwyqoSrv] - C:\Windows\inf\mshcwyqo.vbe [1558 2013-08-27] ()
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:Tabs
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
Toolbar: HKCU - No Name - {434D452D-5637-006A-76A7-7A786E7484D7} - No File
FF DefaultSearchEngine: Yahoo!
FF SelectedSearchEngine: Yahoo!
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Extension: AccelerateTab - C:\Users\Matěj\AppData\Roaming\Mozilla\Firefox\Profiles\ibnebrqn.default\Extensions\speeddial@instair.net
FF Extension: Address Bar Search - C:\Users\Matěj\AppData\Roaming\Mozilla\Firefox\Profiles\ibnebrqn.default\Extensions\{badea1ae-72ed-4f6a-8c37-4db9a4ac7bc9}
FF Extension: ftd - C:\Users\Matěj\AppData\Roaming\Mozilla\Firefox\Profiles\ibnebrqn.default\Extensions\ftd@ftd.com.xpi
FF Extension: iobitapps - C:\Users\Matěj\AppData\Roaming\Mozilla\Firefox\Profiles\ibnebrqn.default\Extensions\iobitapps@mybrowserbar.com
Error reading preferences. Please check "preferences" file for possible corruption. <======= ATTENTION
CHR Extension: (AccelerateTab) - C:\Users\MATJ~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0
CHR HKLM-x32\...\Chrome\Extension: [hbcennhacfaagdopikcegfcobcadeocj] - C:\Program Files (x86)\Common Files\Spigot\GC\saebay_1.1.crx
CHR HKLM-x32\...\Chrome\Extension: [icdlfehblmklkikfigmjhbmmpmkmpooj] - C:\Program Files (x86)\Common Files\Spigot\GC\errorassistant_1.1.crx
CHR HKLM-x32\...\Chrome\Extension: [mhkaekfpcppmmioggniknbnbdbcigpkk] - C:\Program Files (x86)\Common Files\Spigot\GC\coupons_2.4.crx
CHR HKLM-x32\...\Chrome\Extension: [pfndaklgolladniicklehhancnlgocpp] - C:\Program Files (x86)\Common Files\Spigot\GC\saamazon_1.0.crx
S2 PnkBstrA;
S2 SecureUpdateSvc; C:\Program Files (x86)\Secure Speed Dial\IE\SecureUpdate.exe [x]
S3 cpuz130; No ImagePath
S3 EagleX64; No ImagePath
S3 Maplom; No ImagePath
S3 MaplomL; No ImagePath
2013-10-23 22:31 - 2013-10-23 22:31 - 00029696 _____ C:\Users\Matěj\AppData\Local\MSGBOX.EXE
2013-10-23 22:31 - 2013-10-23 22:31 - 00015327 _____ C:\Users\Matěj\Desktop\LM.bat
2013-10-23 22:26 - 2013-10-23 22:26 - 00000000 _____ C:\Users\Matěj\Desktop\first.txt
2013-10-23 22:21 - 2013-10-23 22:21 - 00048091 _____ C:\Users\Matěj\Desktop\FRST3.txt
2013-10-23 22:07 - 2013-04-20 15:31 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2013-10-18 14:33 - 2013-10-18 14:33 - 00000000 ____D C:\Users\Default\AppData\Roaming\IObit
2013-10-18 14:33 - 2013-10-18 14:33 - 00000000 ____D C:\Users\Default User\AppData\Roaming\IObit
2013-10-12 23:01 - 2013-08-17 22:13 - 00000000 ____D C:\ProgramData\IObit
C:\Program Files (x86)\Secure Speed Dial
C:\Windows\inf\mshcwyqo.vbe
C:\Program Files (x86)\IObit
C:\Users\Matěj\AppData\Local\Temp\EADEE92.exe
C:\Users\Matěj\AppData\Local\Temp\ICReinstall_acer-epower-management.exe
C:\Users\Matěj\AppData\Local\Temp\mgsqlite3.dll
C:\Users\Matěj\AppData\Local\Temp\ose00000.exe
C:\Users\Matěj\AppData\Local\Temp\Quarantine.exe
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Advanced SystemCare 6" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Dxtory Update Checker 2.0" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EA Core" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Guard.Mail.ru.gui" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RGSC" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SearchSettings" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\vmware-tray.exe" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Matěj^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Gamma.lnk" /f
Hosts:
End
*****************
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\AMD AVT => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\system\\LogonHoursAction => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\system\\DontDisplayLogonHoursWarnings => Value deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{05a7e11d-9a9c-11e2-a28d-206a8a20361a} => Key deleted successfully.
HKCR\CLSID\{05a7e11d-9a9c-11e2-a28d-206a8a20361a} => Key not found.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{a2987300-04ad-11e3-8305-005056c00008} => Key deleted successfully.
HKCR\CLSID\{a2987300-04ad-11e3-8305-005056c00008} => Key not found.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{a298730e-04ad-11e3-8305-005056c00008} => Key deleted successfully.
HKCR\CLSID\{a298730e-04ad-11e3-8305-005056c00008} => Key not found.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{a298731c-04ad-11e3-8305-005056c00008} => Key deleted successfully.
HKCR\CLSID\{a298731c-04ad-11e3-8305-005056c00008} => Key not found.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d5eb7fcb-a112-11e2-b897-206a8a20361a} - F:\AutoRun.exe {D2D77DC2-8299-11D1-8949-444553540000} 5.2066.1.A14B04 PID_0083 {01D42BF0-ED08-463f-8A28-99EB6FEE962B} => Key not found.
HKCR\CLSID\{d5eb7fcb-a112-11e2-b897-206a8a20361a} - F:\AutoRun.exe {D2D77DC2-8299-11D1-8949-444553540000} 5.2066.1.A14B04 PID_0083 {01D42BF0-ED08-463f-8A28-99EB6FEE962B} => Key not found.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{eaa550ac-3c37-11d8-9e82-206a8a20361a} => Key deleted successfully.
HKCR\CLSID\{eaa550ac-3c37-11d8-9e82-206a8a20361a} => Key not found.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{eaa550ba-3c37-11d8-9e82-206a8a20361a} => Key deleted successfully.
HKCR\CLSID\{eaa550ba-3c37-11d8-9e82-206a8a20361a} => Key not found.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\mshcwyqoSrv => Value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key deleted successfully.
HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key not found.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{434D452D-5637-006A-76A7-7A786E7484D7} => Value deleted successfully.
HKCR\CLSID\{434D452D-5637-006A-76A7-7A786E7484D7} => Key not found.
Firefox DefaultSearchEngine deleted successfully.
Firefox SelectedSearchEngine deleted successfully.
HKLM\Software\MozillaPlugins\FF Plugin: @microsoft.com/GENUINE - disabled No File => Key not found.
"FF Plugin: @microsoft.com/GENUINE - disabled No File" => not found.
HKLM\Software\Wow6432Node\MozillaPlugins\FF Plugin-x32: @microsoft.com/GENUINE - disabled No File => Key not found.
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File not found.
C:\Users\Matěj\AppData\Roaming\Mozilla\Firefox\Profiles\ibnebrqn.default\Extensions\speeddial@instair.net => Moved successfully.
C:\Users\Matěj\AppData\Roaming\Mozilla\Firefox\Profiles\ibnebrqn.default\Extensions\{badea1ae-72ed-4f6a-8c37-4db9a4ac7bc9} => Moved successfully.
C:\Users\Matěj\AppData\Roaming\Mozilla\Firefox\Profiles\ibnebrqn.default\Extensions\ftd@ftd.com.xpi => Moved successfully.
C:\Users\Matěj\AppData\Roaming\Mozilla\Firefox\Profiles\ibnebrqn.default\Extensions\iobitapps@mybrowserbar.com => Moved successfully.
C:\Users\MATJ~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\glmfgahfleepmdfffonfckpmkondpdkg => Moved successfully.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\hbcennhacfaagdopikcegfcobcadeocj => Key deleted successfully.
"C:\Program Files (x86)\Common Files\Spigot\GC\saebay_1.1.crx" => File/Directory not found.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj => Key deleted successfully.
"C:\Program Files (x86)\Common Files\Spigot\GC\errorassistant_1.1.crx" => File/Directory not found.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk => Key deleted successfully.
"C:\Program Files (x86)\Common Files\Spigot\GC\coupons_2.4.crx" => File/Directory not found.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\pfndaklgolladniicklehhancnlgocpp => Key deleted successfully.
"C:\Program Files (x86)\Common Files\Spigot\GC\saamazon_1.0.crx" => File/Directory not found.
PnkBstrA => Service deleted successfully.
SecureUpdateSvc => Service deleted successfully.
cpuz130 => Service deleted successfully.
EagleX64 => Service deleted successfully.
Maplom => Service deleted successfully.
MaplomL => Service deleted successfully.
"C:\Users\Matěj\AppData\Local\MSGBOX.EXE" => File/Directory not found.
"C:\Users\Matěj\Desktop\LM.bat" => File/Directory not found.
"C:\Users\Matěj\Desktop\first.txt" => File/Directory not found.
"C:\Users\Matěj\Desktop\FRST3.txt" => File/Directory not found.
C:\Program Files (x86)\Microsoft Office => Moved successfully.
C:\Users\Default\AppData\Roaming\IObit => Moved successfully.
"C:\Users\Default User\AppData\Roaming\IObit" => File/Directory not found.
C:\ProgramData\IObit => Moved successfully.
"C:\Program Files (x86)\Secure Speed Dial" => File/Directory not found.
C:\Windows\inf\mshcwyqo.vbe => Moved successfully.
C:\Program Files (x86)\IObit => Moved successfully.
C:\Users\Matěj\AppData\Local\Temp\EADEE92.exe => Moved successfully.
C:\Users\Matěj\AppData\Local\Temp\ICReinstall_acer-epower-management.exe => Moved successfully.
C:\Users\Matěj\AppData\Local\Temp\mgsqlite3.dll => Moved successfully.
C:\Users\Matěj\AppData\Local\Temp\ose00000.exe => Moved successfully.
C:\Users\Matěj\AppData\Local\Temp\Quarantine.exe => Moved successfully.
========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM" /f =========
Operace byla dokonźena ŁspŘçnŘ.
========= End of Reg: =========
========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0" /f =========
Operace byla dokonźena ŁspŘçnŘ.
========= End of Reg: =========
========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Advanced SystemCare 6" /f =========
Operace byla dokonźena ŁspŘçnŘ.
========= End of Reg: =========
========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite" /f =========
Operace byla dokonźena ŁspŘçnŘ.
========= End of Reg: =========
========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Dxtory Update Checker 2.0" /f =========
Operace byla dokonźena ŁspŘçnŘ.
========= End of Reg: =========
========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EA Core" /f =========
Operace byla dokonźena ŁspŘçnŘ.
========= End of Reg: =========
========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Guard.Mail.ru.gui" /f =========
Operace byla dokonźena ŁspŘçnŘ.
========= End of Reg: =========
========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RGSC" /f =========
Operace byla dokonźena ŁspŘçnŘ.
========= End of Reg: =========
========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SearchSettings" /f =========
Operace byla dokonźena ŁspŘçnŘ.
========= End of Reg: =========
========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype" /f =========
Operace byla dokonźena ŁspŘçnŘ.
========= End of Reg: =========
========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched" /f =========
Operace byla dokonźena ŁspŘçnŘ.
========= End of Reg: =========
========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\vmware-tray.exe" /f =========
Operace byla dokonźena ŁspŘçnŘ.
========= End of Reg: =========
========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Matěj^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Gamma.lnk" /f =========
Operace byla dokonźena ŁspŘçnŘ.
========= End of Reg: =========
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
==== End of Fixlog ====
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 23-10-2013
Ran by Matěj at 2013-10-23 22:48:35 Run:1
Running from C:\Users\Matěj\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
HKLM\...\Run: [AMD AVT] - cmd.exe /c start "amd accelerated video transcoding device initialization" /min "c:\program files (x86)\amd avt\bin\kdbsync.exe" aml
HKCU\...\Policies\system: [LogonHoursAction] 2
HKCU\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
MountPoints2: {05a7e11d-9a9c-11e2-a28d-206a8a20361a} - E:\Autorun.exe
MountPoints2: {a2987300-04ad-11e3-8305-005056c00008} - F:\Autorun.exe
MountPoints2: {a298730e-04ad-11e3-8305-005056c00008} - F:\Autorun.exe
MountPoints2: {a298731c-04ad-11e3-8305-005056c00008} - F:\Autorun.exe
MountPoints2: {d5eb7fcb-a112-11e2-b897-206a8a20361a} - F:\AutoRun.exe {D2D77DC2-8299-11D1-8949-444553540000} 5.2066.1.A14B04 PID_0083 {01D42BF0-ED08-463f-8A28-99EB6FEE962B}
MountPoints2: {eaa550ac-3c37-11d8-9e82-206a8a20361a} - F:\Autorun.exe
MountPoints2: {eaa550ba-3c37-11d8-9e82-206a8a20361a} - F:\Autorun.exe
HKLM-x32\...\Run: [mshcwyqoSrv] - C:\Windows\inf\mshcwyqo.vbe [1558 2013-08-27] ()
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:Tabs
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
Toolbar: HKCU - No Name - {434D452D-5637-006A-76A7-7A786E7484D7} - No File
FF DefaultSearchEngine: Yahoo!
FF SelectedSearchEngine: Yahoo!
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Extension: AccelerateTab - C:\Users\Matěj\AppData\Roaming\Mozilla\Firefox\Profiles\ibnebrqn.default\Extensions\speeddial@instair.net
FF Extension: Address Bar Search - C:\Users\Matěj\AppData\Roaming\Mozilla\Firefox\Profiles\ibnebrqn.default\Extensions\{badea1ae-72ed-4f6a-8c37-4db9a4ac7bc9}
FF Extension: ftd - C:\Users\Matěj\AppData\Roaming\Mozilla\Firefox\Profiles\ibnebrqn.default\Extensions\ftd@ftd.com.xpi
FF Extension: iobitapps - C:\Users\Matěj\AppData\Roaming\Mozilla\Firefox\Profiles\ibnebrqn.default\Extensions\iobitapps@mybrowserbar.com
Error reading preferences. Please check "preferences" file for possible corruption. <======= ATTENTION
CHR Extension: (AccelerateTab) - C:\Users\MATJ~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0
CHR HKLM-x32\...\Chrome\Extension: [hbcennhacfaagdopikcegfcobcadeocj] - C:\Program Files (x86)\Common Files\Spigot\GC\saebay_1.1.crx
CHR HKLM-x32\...\Chrome\Extension: [icdlfehblmklkikfigmjhbmmpmkmpooj] - C:\Program Files (x86)\Common Files\Spigot\GC\errorassistant_1.1.crx
CHR HKLM-x32\...\Chrome\Extension: [mhkaekfpcppmmioggniknbnbdbcigpkk] - C:\Program Files (x86)\Common Files\Spigot\GC\coupons_2.4.crx
CHR HKLM-x32\...\Chrome\Extension: [pfndaklgolladniicklehhancnlgocpp] - C:\Program Files (x86)\Common Files\Spigot\GC\saamazon_1.0.crx
S2 PnkBstrA;
S2 SecureUpdateSvc; C:\Program Files (x86)\Secure Speed Dial\IE\SecureUpdate.exe [x]
S3 cpuz130; No ImagePath
S3 EagleX64; No ImagePath
S3 Maplom; No ImagePath
S3 MaplomL; No ImagePath
2013-10-23 22:31 - 2013-10-23 22:31 - 00029696 _____ C:\Users\Matěj\AppData\Local\MSGBOX.EXE
2013-10-23 22:31 - 2013-10-23 22:31 - 00015327 _____ C:\Users\Matěj\Desktop\LM.bat
2013-10-23 22:26 - 2013-10-23 22:26 - 00000000 _____ C:\Users\Matěj\Desktop\first.txt
2013-10-23 22:21 - 2013-10-23 22:21 - 00048091 _____ C:\Users\Matěj\Desktop\FRST3.txt
2013-10-23 22:07 - 2013-04-20 15:31 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2013-10-18 14:33 - 2013-10-18 14:33 - 00000000 ____D C:\Users\Default\AppData\Roaming\IObit
2013-10-18 14:33 - 2013-10-18 14:33 - 00000000 ____D C:\Users\Default User\AppData\Roaming\IObit
2013-10-12 23:01 - 2013-08-17 22:13 - 00000000 ____D C:\ProgramData\IObit
C:\Program Files (x86)\Secure Speed Dial
C:\Windows\inf\mshcwyqo.vbe
C:\Program Files (x86)\IObit
C:\Users\Matěj\AppData\Local\Temp\EADEE92.exe
C:\Users\Matěj\AppData\Local\Temp\ICReinstall_acer-epower-management.exe
C:\Users\Matěj\AppData\Local\Temp\mgsqlite3.dll
C:\Users\Matěj\AppData\Local\Temp\ose00000.exe
C:\Users\Matěj\AppData\Local\Temp\Quarantine.exe
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Advanced SystemCare 6" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Dxtory Update Checker 2.0" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EA Core" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Guard.Mail.ru.gui" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RGSC" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SearchSettings" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\vmware-tray.exe" /f
REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Matěj^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Gamma.lnk" /f
Hosts:
End
*****************
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\AMD AVT => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\system\\LogonHoursAction => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\system\\DontDisplayLogonHoursWarnings => Value deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{05a7e11d-9a9c-11e2-a28d-206a8a20361a} => Key deleted successfully.
HKCR\CLSID\{05a7e11d-9a9c-11e2-a28d-206a8a20361a} => Key not found.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{a2987300-04ad-11e3-8305-005056c00008} => Key deleted successfully.
HKCR\CLSID\{a2987300-04ad-11e3-8305-005056c00008} => Key not found.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{a298730e-04ad-11e3-8305-005056c00008} => Key deleted successfully.
HKCR\CLSID\{a298730e-04ad-11e3-8305-005056c00008} => Key not found.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{a298731c-04ad-11e3-8305-005056c00008} => Key deleted successfully.
HKCR\CLSID\{a298731c-04ad-11e3-8305-005056c00008} => Key not found.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d5eb7fcb-a112-11e2-b897-206a8a20361a} - F:\AutoRun.exe {D2D77DC2-8299-11D1-8949-444553540000} 5.2066.1.A14B04 PID_0083 {01D42BF0-ED08-463f-8A28-99EB6FEE962B} => Key not found.
HKCR\CLSID\{d5eb7fcb-a112-11e2-b897-206a8a20361a} - F:\AutoRun.exe {D2D77DC2-8299-11D1-8949-444553540000} 5.2066.1.A14B04 PID_0083 {01D42BF0-ED08-463f-8A28-99EB6FEE962B} => Key not found.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{eaa550ac-3c37-11d8-9e82-206a8a20361a} => Key deleted successfully.
HKCR\CLSID\{eaa550ac-3c37-11d8-9e82-206a8a20361a} => Key not found.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{eaa550ba-3c37-11d8-9e82-206a8a20361a} => Key deleted successfully.
HKCR\CLSID\{eaa550ba-3c37-11d8-9e82-206a8a20361a} => Key not found.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\mshcwyqoSrv => Value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key deleted successfully.
HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key not found.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{434D452D-5637-006A-76A7-7A786E7484D7} => Value deleted successfully.
HKCR\CLSID\{434D452D-5637-006A-76A7-7A786E7484D7} => Key not found.
Firefox DefaultSearchEngine deleted successfully.
Firefox SelectedSearchEngine deleted successfully.
HKLM\Software\MozillaPlugins\FF Plugin: @microsoft.com/GENUINE - disabled No File => Key not found.
"FF Plugin: @microsoft.com/GENUINE - disabled No File" => not found.
HKLM\Software\Wow6432Node\MozillaPlugins\FF Plugin-x32: @microsoft.com/GENUINE - disabled No File => Key not found.
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File not found.
C:\Users\Matěj\AppData\Roaming\Mozilla\Firefox\Profiles\ibnebrqn.default\Extensions\speeddial@instair.net => Moved successfully.
C:\Users\Matěj\AppData\Roaming\Mozilla\Firefox\Profiles\ibnebrqn.default\Extensions\{badea1ae-72ed-4f6a-8c37-4db9a4ac7bc9} => Moved successfully.
C:\Users\Matěj\AppData\Roaming\Mozilla\Firefox\Profiles\ibnebrqn.default\Extensions\ftd@ftd.com.xpi => Moved successfully.
C:\Users\Matěj\AppData\Roaming\Mozilla\Firefox\Profiles\ibnebrqn.default\Extensions\iobitapps@mybrowserbar.com => Moved successfully.
C:\Users\MATJ~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\glmfgahfleepmdfffonfckpmkondpdkg => Moved successfully.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\hbcennhacfaagdopikcegfcobcadeocj => Key deleted successfully.
"C:\Program Files (x86)\Common Files\Spigot\GC\saebay_1.1.crx" => File/Directory not found.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj => Key deleted successfully.
"C:\Program Files (x86)\Common Files\Spigot\GC\errorassistant_1.1.crx" => File/Directory not found.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk => Key deleted successfully.
"C:\Program Files (x86)\Common Files\Spigot\GC\coupons_2.4.crx" => File/Directory not found.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\pfndaklgolladniicklehhancnlgocpp => Key deleted successfully.
"C:\Program Files (x86)\Common Files\Spigot\GC\saamazon_1.0.crx" => File/Directory not found.
PnkBstrA => Service deleted successfully.
SecureUpdateSvc => Service deleted successfully.
cpuz130 => Service deleted successfully.
EagleX64 => Service deleted successfully.
Maplom => Service deleted successfully.
MaplomL => Service deleted successfully.
"C:\Users\Matěj\AppData\Local\MSGBOX.EXE" => File/Directory not found.
"C:\Users\Matěj\Desktop\LM.bat" => File/Directory not found.
"C:\Users\Matěj\Desktop\first.txt" => File/Directory not found.
"C:\Users\Matěj\Desktop\FRST3.txt" => File/Directory not found.
C:\Program Files (x86)\Microsoft Office => Moved successfully.
C:\Users\Default\AppData\Roaming\IObit => Moved successfully.
"C:\Users\Default User\AppData\Roaming\IObit" => File/Directory not found.
C:\ProgramData\IObit => Moved successfully.
"C:\Program Files (x86)\Secure Speed Dial" => File/Directory not found.
C:\Windows\inf\mshcwyqo.vbe => Moved successfully.
C:\Program Files (x86)\IObit => Moved successfully.
C:\Users\Matěj\AppData\Local\Temp\EADEE92.exe => Moved successfully.
C:\Users\Matěj\AppData\Local\Temp\ICReinstall_acer-epower-management.exe => Moved successfully.
C:\Users\Matěj\AppData\Local\Temp\mgsqlite3.dll => Moved successfully.
C:\Users\Matěj\AppData\Local\Temp\ose00000.exe => Moved successfully.
C:\Users\Matěj\AppData\Local\Temp\Quarantine.exe => Moved successfully.
========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM" /f =========
Operace byla dokonźena ŁspŘçnŘ.
========= End of Reg: =========
========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0" /f =========
Operace byla dokonźena ŁspŘçnŘ.
========= End of Reg: =========
========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Advanced SystemCare 6" /f =========
Operace byla dokonźena ŁspŘçnŘ.
========= End of Reg: =========
========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite" /f =========
Operace byla dokonźena ŁspŘçnŘ.
========= End of Reg: =========
========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Dxtory Update Checker 2.0" /f =========
Operace byla dokonźena ŁspŘçnŘ.
========= End of Reg: =========
========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EA Core" /f =========
Operace byla dokonźena ŁspŘçnŘ.
========= End of Reg: =========
========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Guard.Mail.ru.gui" /f =========
Operace byla dokonźena ŁspŘçnŘ.
========= End of Reg: =========
========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RGSC" /f =========
Operace byla dokonźena ŁspŘçnŘ.
========= End of Reg: =========
========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SearchSettings" /f =========
Operace byla dokonźena ŁspŘçnŘ.
========= End of Reg: =========
========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype" /f =========
Operace byla dokonźena ŁspŘçnŘ.
========= End of Reg: =========
========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched" /f =========
Operace byla dokonźena ŁspŘçnŘ.
========= End of Reg: =========
========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\vmware-tray.exe" /f =========
Operace byla dokonźena ŁspŘçnŘ.
========= End of Reg: =========
========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Matěj^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Gamma.lnk" /f =========
Operace byla dokonźena ŁspŘçnŘ.
========= End of Reg: =========
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
==== End of Fixlog ====
Re: kdbsync.exe a mspsouyxq.exe přestal pracovat

Tak jeste uklidime


- Stahnete a spustte
- Pro potvrzeni volby mackejte A, Enter
- Po pouziti utilitu smazte
- Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)

- Stahnete a spustte
- Kliknete na CleanUp a potvrdte YES
- Program uklidi a restartuje PC

- Stahnete a spustte
- Kliknete na Start a potvrdte OK
- Program uklidi a restartuje pc
- Po pouziti utilitu smazte

Panel čistič
- Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
- dejte Hledej problémy
- nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
- postup opakujte dokud nebude bez problemu - vetsinou cca 3x
- Zde muzete odinstalovat nepotrebne programy


Re: kdbsync.exe a mspsouyxq.exe přestal pracovat
Ok uklízet budeme až ráno protože dnes už jsem docela vyčerpaný, a chtěl jsem se zeptat ty programy co jsem instalovali/spouštěli můžu vymazat ?
Re: kdbsync.exe a mspsouyxq.exe přestal pracovat
Pouzite programy se prave vymazou pri tom uklidu 

Re: kdbsync.exe a mspsouyxq.exe přestal pracovat
aha tak to jo, zítra ráno bych tu měl být, tak to uděláme 

Re: kdbsync.exe a mspsouyxq.exe přestal pracovat
Ták jdeme na to 

Re: kdbsync.exe a mspsouyxq.exe přestal pracovat
Tak hotovo uklizeno, moc vám děkuji, chtěl bych se zeptat co nebo jaký program to způsobovalo ?
Re: kdbsync.exe a mspsouyxq.exe přestal pracovat


Nemate zac, rad jsem pomohl


A na zaklade Pravidla o zamykani temat
