prosím o pomoc,asi vir
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Re: prosím o pomoc,asi vir
Zdravim,bude probíhat ještě nějaká akce?
Re: prosím o pomoc,asi vir
Ty problemy se Skype jsou stale??
Re: prosím o pomoc,asi vir
Problem se skype už není.Ikonky na plose když vytvořim novy tak jsou taky už v poradku,uz se nepremenuji.
Po spusteni PC se automaticky zapne internet s touto adresou "file:///C:/Users/PC/AppData/Roaming/Microsoft/Windows/Start%20Menu/Programs/Startup/hamachi.lnk"
V menu START zustavaji ikonky ve tvaru soubor Google Chrome
Po spusteni PC se automaticky zapne internet s touto adresou "file:///C:/Users/PC/AppData/Roaming/Microsoft/Windows/Start%20Menu/Programs/Startup/hamachi.lnk"
V menu START zustavaji ikonky ve tvaru soubor Google Chrome
Re: prosím o pomoc,asi vir
Dejte mi novy log z RSIT
Re: prosím o pomoc,asi vir
Logfile of random's system information tool 1.08 (written by random/random)
Run by PC at 2013-11-13 16:40:52
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 64 GB (42%) free of 153 GB
Total RAM: 2047 MB (60% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:40:58, on 13.11.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal
Running processes:
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Internet Explorer\IELowutil.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\PC.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [icq] C:\Users\PC\AppData\Roaming\ICQM\icq.exe -CU
O4 - HKUS\S-1-5-21-1774098787-2647536372-2567428949-1001\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-1774098787-2647536372-2567428949-1001\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - HKUS\S-1-5-18\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun (User 'Default user')
O4 - Startup: hamachi.lnk = C:\Program Files (x86)\Hamachi\hamachi.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: SInstalátor (ssinstall) - PS Media s.r.o. - C:\Windows\SysWOW64\ssins.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 7092 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"taskhost.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
C:\Windows\system32\svchost.exe -k SDRSVC
"C:\Program Files (x86)\Internet Explorer\IELowutil.exe" -embedding
"C:\Windows\system32\wuauclt.exe"
"taskhost.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" "C:\Users\PC\Desktop\chrome – zástupce.lnk"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4100.0.724347951\170319787" --supports-dual-gpus=false --gpu-driver-bug-workarounds=0,3,12,22,26 --gpu-vendor-id=0x10de --gpu-device-id=0x0402 --gpu-driver-vendor=NVIDIA --gpu-driver-version=9.18.13.1106 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group5 pct:10d stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/default/UMA-Uniformity-Trial-1-Percent/group_38/UMA-Uniformity-Trial-10-Percent/group_06/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --renderer-print-preview --instant-process --disable-html-notifications --channel="4100.1.1584423601\1742101404" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group5 pct:10d stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/default/UMA-Uniformity-Trial-1-Percent/group_38/UMA-Uniformity-Trial-10-Percent/group_06/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --renderer-print-preview --disable-html-notifications --channel="4100.9.1957098279\149748333" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="4100.10.914086059\1777704060" --ppapi-flash-args --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\Users\PC\Downloads\RSITx64 (1).exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-11-08 1567016]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-08-22 463272]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-11-08 606544]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-08-22 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-11-08 1567016]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-11-08 606544]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"icq"=C:\Users\PC\AppData\Roaming\ICQM\icq.exe [2013-09-21 27598184]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2013-11-08 3568312]
C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
hamachi.lnk - C:\Program Files (x86)\Hamachi\hamachi.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 months======
2013-11-13 16:40:52 ----D---- C:\rsit
2013-11-12 18:10:49 ----HD---- C:\Windows\msdownld.tmp
2013-11-12 10:25:19 ----A---- C:\Windows\system32\IEUDINIT.EXE
2013-11-12 10:20:49 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2013-11-12 10:20:49 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2013-11-12 10:20:43 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-11-12 10:20:43 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-11-12 10:20:43 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-11-12 10:20:43 ----A---- C:\Windows\SYSWOW64\msrating.dll
2013-11-12 10:20:43 ----A---- C:\Windows\SYSWOW64\msls31.dll
2013-11-12 10:20:43 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-11-12 10:20:43 ----A---- C:\Windows\SYSWOW64\jsIntl.dll
2013-11-12 10:20:43 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2013-11-12 10:20:43 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-11-12 10:20:43 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-11-12 10:20:43 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-11-12 10:20:43 ----A---- C:\Windows\system32\elshyph.dll
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\wextract.exe
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\url.dll
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\inseng.dll
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\icardie.dll
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2013-11-12 10:20:41 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2013-11-12 10:20:41 ----A---- C:\Windows\SYSWOW64\occache.dll
2013-11-12 10:20:41 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2013-11-12 10:20:41 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2013-11-12 10:20:41 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-11-12 10:20:41 ----A---- C:\Windows\SYSWOW64\mshta.exe
2013-11-12 10:20:41 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2013-11-12 10:20:41 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2013-11-12 10:20:41 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2013-11-12 10:20:41 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-11-12 10:20:41 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2013-11-12 10:20:41 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-11-12 10:20:41 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2013-11-12 10:20:41 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2013-11-12 10:20:41 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2013-11-12 10:20:40 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-11-12 10:20:40 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-11-12 10:20:39 ----A---- C:\Windows\system32\urlmon.dll
2013-11-12 10:20:39 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-11-12 10:20:39 ----A---- C:\Windows\system32\jsIntl.dll
2013-11-12 10:20:38 ----A---- C:\Windows\system32\wininet.dll
2013-11-12 10:20:38 ----A---- C:\Windows\system32\msrating.dll
2013-11-12 10:20:38 ----A---- C:\Windows\system32\msls31.dll
2013-11-12 10:20:38 ----A---- C:\Windows\system32\jsproxy.dll
2013-11-12 10:20:38 ----A---- C:\Windows\system32\iertutil.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\wextract.exe
2013-11-12 10:20:37 ----A---- C:\Windows\system32\webcheck.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\vbscript.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\url.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2013-11-12 10:20:37 ----A---- C:\Windows\system32\pngfilt.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\occache.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\mshtmlmedia.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\mshtmler.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\mshtmled.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\MshtmlDac.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\mshtml.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\mshta.exe
2013-11-12 10:20:37 ----A---- C:\Windows\system32\msfeedssync.exe
2013-11-12 10:20:37 ----A---- C:\Windows\system32\msfeedsbs.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\msfeeds.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\licmgr10.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\jscript9diag.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\jscript9.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\jscript.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\inseng.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\imgutil.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\iexpress.exe
2013-11-12 10:20:37 ----A---- C:\Windows\system32\ieUnatt.exe
2013-11-12 10:20:37 ----A---- C:\Windows\system32\ieui.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\iesysprep.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\iesetup.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\iernonce.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\iepeers.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\ieframe.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\ieetwproxystub.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\ieetwcollector.exe
2013-11-12 10:20:37 ----A---- C:\Windows\system32\iedkcs32.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\ieapfltr.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\IEAdvpack.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\ie4uinit.exe
2013-11-12 10:20:37 ----A---- C:\Windows\system32\icardie.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\dxtrans.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\dxtmsft.dll
2013-11-10 17:01:34 ----SHD---- C:\$RECYCLE.BIN
2013-11-10 08:32:57 ----D---- C:\Windows\temp
2013-11-09 23:50:48 ----D---- C:\ProgramData\Malwarebytes
2013-11-09 23:50:42 ----D---- C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2013-11-09 23:50:42 ----A---- C:\Windows\system32\drivers\MBAMSwissArmy.sys
2013-11-09 23:49:14 ----A---- C:\Windows\system32\drivers\mbamchameleon.sys
2013-11-08 18:35:27 ----D---- C:\Windows\ERUNT
2013-11-08 18:31:49 ----A---- C:\sc-cleaner.txt
2013-11-08 17:11:32 ----D---- C:\Program Files\trend micro
2013-11-08 16:55:11 ----D---- C:\Users\PC\AppData\Roaming\TuneUp Software
2013-11-08 16:50:14 ----D---- C:\Users\PC\AppData\Roaming\AVAST Software
2013-11-08 16:49:22 ----A---- C:\Windows\system32\drivers\aswTdi.sys
2013-11-08 16:49:21 ----A---- C:\Windows\system32\drivers\aswVmm.sys
2013-11-08 16:49:20 ----A---- C:\Windows\system32\drivers\aswsp.sys
2013-11-08 16:49:20 ----A---- C:\Windows\system32\drivers\aswSnx.sys
2013-11-08 16:49:20 ----A---- C:\Windows\system32\drivers\aswRvrt.sys
2013-11-08 16:49:19 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2013-11-08 16:49:16 ----A---- C:\Windows\system32\drivers\aswFsBlk.sys
2013-11-08 16:49:15 ----A---- C:\Windows\system32\drivers\aswRdr2.sys
2013-11-08 16:49:09 ----A---- C:\Windows\system32\aswBoot.exe
2013-11-08 16:48:43 ----D---- C:\Program Files\AVAST Software
2013-11-08 16:48:06 ----D---- C:\ProgramData\AVAST Software
2013-10-26 18:53:04 ----A---- C:\Windows\system32\drivers\hamachi.sys
2013-10-26 18:53:02 ----D---- C:\Program Files (x86)\Hamachi
2013-10-19 12:22:02 ----D---- C:\Program Files (x86)\Fraps 3.5.9 CZ pln verze!!! - by kopiha
2013-10-15 17:21:27 ----D---- C:\Program Files (x86)\Steam
======List of files/folders modified in the last 1 months======
2013-11-13 16:40:59 ----D---- C:\Windows\Prefetch
2013-11-13 16:24:14 ----D---- C:\Users\PC\AppData\Roaming\Skype
2013-11-13 16:17:53 ----D---- C:\Users\PC\AppData\Roaming\.minecraft
2013-11-13 16:07:35 ----D---- C:\Windows\system32\config
2013-11-13 15:56:32 ----D---- C:\Windows\system32\catroot2
2013-11-13 15:56:32 ----D---- C:\Windows\system32\catroot
2013-11-13 15:56:27 ----D---- C:\Windows\winsxs
2013-11-13 15:41:50 ----D---- C:\ProgramData\NVIDIA
2013-11-12 18:11:00 ----SHD---- C:\Windows\Installer
2013-11-12 18:10:49 ----D---- C:\Windows
2013-11-12 18:10:48 ----D---- C:\Windows\SYSWOW64\directx
2013-11-12 18:10:48 ----D---- C:\Windows\Logs
2013-11-12 18:10:48 ----D---- C:\Windows\inf
2013-11-12 15:05:37 ----D---- C:\Windows\rescache
2013-11-12 13:39:31 ----D---- C:\Windows\Panther
2013-11-12 13:38:42 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-11-12 13:38:42 ----D---- C:\Windows\system32\cs-CZ
2013-11-12 13:38:42 ----D---- C:\Program Files\Internet Explorer
2013-11-12 13:38:42 ----D---- C:\Program Files (x86)\Internet Explorer
2013-11-12 13:38:40 ----D---- C:\Windows\SYSWOW64\migration
2013-11-12 13:38:40 ----D---- C:\Windows\SYSWOW64\en-US
2013-11-12 13:38:39 ----D---- C:\Windows\SysWOW64
2013-11-12 13:38:38 ----D---- C:\Windows\system32\migration
2013-11-12 13:38:38 ----D---- C:\Windows\system32\en-US
2013-11-12 13:38:38 ----D---- C:\Windows\PolicyDefinitions
2013-11-12 13:38:37 ----D---- C:\Windows\System32
2013-11-12 10:19:01 ----SHD---- C:\System Volume Information
2013-11-11 22:06:42 ----RD---- C:\Program Files (x86)
2013-11-11 21:48:53 ----D---- C:\Windows\SoftwareDistribution
2013-11-11 16:46:14 ----D---- C:\Windows\system32\drivers
2013-11-10 19:49:23 ----D---- C:\ProgramData\Skype
2013-11-10 19:49:20 ----RD---- C:\Program Files (x86)\Skype
2013-11-10 18:19:41 ----D---- C:\Program Files\CCleaner
2013-11-10 08:34:39 ----A---- C:\Windows\system.ini
2013-11-10 08:34:31 ----D---- C:\Windows\system32\drivers\etc
2013-11-10 08:30:12 ----D---- C:\Windows\SYSWOW64\drivers
2013-11-10 08:30:12 ----D---- C:\Windows\AppPatch
2013-11-10 08:30:10 ----D---- C:\Program Files (x86)\Common Files
2013-11-09 23:50:48 ----D---- C:\ProgramData
2013-11-08 17:11:32 ----RD---- C:\Program Files
2013-11-08 16:56:58 ----D---- C:\ProgramData\MFAData
2013-11-08 16:55:54 ----D---- C:\ProgramData\AVG2013
2013-11-08 16:55:35 ----D---- C:\$AVG
2013-11-08 16:49:30 ----D---- C:\Windows\system32\Tasks
2013-11-07 21:30:41 ----D---- C:\Windows\Tasks
2013-11-07 21:30:41 ----D---- C:\Windows\system32\wfp
2013-11-07 21:30:39 ----D---- C:\Windows\system32\wbem
2013-11-07 21:29:43 ----D---- C:\Windows\system32\DriverStore
2013-11-07 21:29:41 ----D---- C:\Windows\registration
2013-11-07 19:45:45 ----SD---- C:\Users\PC\AppData\Roaming\Microsoft
2013-11-07 14:46:02 ----D---- C:\Fraps
2013-11-07 14:35:03 ----D---- C:\Users\PC\AppData\Roaming\Hamachi
2013-11-03 08:05:48 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-11-02 20:57:08 ----RSD---- C:\Windows\Fonts
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2013-11-08 65776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2013-11-08 205320]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 aswRdr;aswRdr; \??\C:\Windows\system32\drivers\aswRdr2.sys [2013-11-08 92544]
R1 aswSnx;aswSnx; \??\C:\Windows\system32\drivers\aswSnx.sys [2013-11-08 1032416]
R1 aswSP;aswSP; \??\C:\Windows\system32\drivers\aswSP.sys [2013-11-08 409832]
R1 aswTdi;aswTdi; \??\C:\Windows\system32\drivers\aswTdi.sys [2013-11-08 65264]
R2 aswFsBlk;aswFsBlk; \??\C:\Windows\system32\drivers\aswFsBlk.sys [2013-11-08 38984]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2013-11-08 84328]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2013-11-07 33344]
R3 RTL8023x64;Realtek 10/100 NIC Family NDIS x64 Driver; C:\Windows\system32\DRIVERS\Rtnic64.sys [2009-06-10 51712]
R3 RTL8167;Ovladač Realtek 8167 NT; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-06-10 187392]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 42496]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-11-08 50344]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-01-18 884512]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-02-25 1260320]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-01-18 383264]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-08-20 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-09-05 171680]
S2 ssinstall;SInstalátor; C:\Windows\SysWOW64\ssins.exe [2013-10-07 2324216]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-10-09 257416]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-08-20 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2013-11-12 111616]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2013-10-30 566696]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-09-19 1255736]
-----------------EOF-----------------
Run by PC at 2013-11-13 16:40:52
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 64 GB (42%) free of 153 GB
Total RAM: 2047 MB (60% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:40:58, on 13.11.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal
Running processes:
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Internet Explorer\IELowutil.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\PC.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [icq] C:\Users\PC\AppData\Roaming\ICQM\icq.exe -CU
O4 - HKUS\S-1-5-21-1774098787-2647536372-2567428949-1001\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-1774098787-2647536372-2567428949-1001\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - HKUS\S-1-5-18\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun (User 'Default user')
O4 - Startup: hamachi.lnk = C:\Program Files (x86)\Hamachi\hamachi.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: SInstalátor (ssinstall) - PS Media s.r.o. - C:\Windows\SysWOW64\ssins.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 7092 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"taskhost.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
C:\Windows\system32\svchost.exe -k SDRSVC
"C:\Program Files (x86)\Internet Explorer\IELowutil.exe" -embedding
"C:\Windows\system32\wuauclt.exe"
"taskhost.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" "C:\Users\PC\Desktop\chrome – zástupce.lnk"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4100.0.724347951\170319787" --supports-dual-gpus=false --gpu-driver-bug-workarounds=0,3,12,22,26 --gpu-vendor-id=0x10de --gpu-device-id=0x0402 --gpu-driver-vendor=NVIDIA --gpu-driver-version=9.18.13.1106 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group5 pct:10d stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/default/UMA-Uniformity-Trial-1-Percent/group_38/UMA-Uniformity-Trial-10-Percent/group_06/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --renderer-print-preview --instant-process --disable-html-notifications --channel="4100.1.1584423601\1742101404" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/100-pct-default/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group5 pct:10d stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/default/UMA-Uniformity-Trial-1-Percent/group_38/UMA-Uniformity-Trial-10-Percent/group_06/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_09/UMA-Uniformity-Trial-50-Percent/default/" --enable-threaded-compositing --renderer-print-preview --disable-html-notifications --channel="4100.9.1957098279\149748333" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="4100.10.914086059\1777704060" --ppapi-flash-args --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\Users\PC\Downloads\RSITx64 (1).exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-11-08 1567016]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-08-22 463272]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-11-08 606544]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-08-22 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-11-08 1567016]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-11-08 606544]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"icq"=C:\Users\PC\AppData\Roaming\ICQM\icq.exe [2013-09-21 27598184]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2013-11-08 3568312]
C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
hamachi.lnk - C:\Program Files (x86)\Hamachi\hamachi.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 months======
2013-11-13 16:40:52 ----D---- C:\rsit
2013-11-12 18:10:49 ----HD---- C:\Windows\msdownld.tmp
2013-11-12 10:25:19 ----A---- C:\Windows\system32\IEUDINIT.EXE
2013-11-12 10:20:49 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2013-11-12 10:20:49 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2013-11-12 10:20:43 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-11-12 10:20:43 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-11-12 10:20:43 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-11-12 10:20:43 ----A---- C:\Windows\SYSWOW64\msrating.dll
2013-11-12 10:20:43 ----A---- C:\Windows\SYSWOW64\msls31.dll
2013-11-12 10:20:43 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-11-12 10:20:43 ----A---- C:\Windows\SYSWOW64\jsIntl.dll
2013-11-12 10:20:43 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2013-11-12 10:20:43 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-11-12 10:20:43 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-11-12 10:20:43 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-11-12 10:20:43 ----A---- C:\Windows\system32\elshyph.dll
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\wextract.exe
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\url.dll
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\inseng.dll
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\icardie.dll
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2013-11-12 10:20:42 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2013-11-12 10:20:41 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2013-11-12 10:20:41 ----A---- C:\Windows\SYSWOW64\occache.dll
2013-11-12 10:20:41 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2013-11-12 10:20:41 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2013-11-12 10:20:41 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-11-12 10:20:41 ----A---- C:\Windows\SYSWOW64\mshta.exe
2013-11-12 10:20:41 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2013-11-12 10:20:41 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2013-11-12 10:20:41 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2013-11-12 10:20:41 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-11-12 10:20:41 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2013-11-12 10:20:41 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-11-12 10:20:41 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2013-11-12 10:20:41 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2013-11-12 10:20:41 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2013-11-12 10:20:40 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-11-12 10:20:40 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-11-12 10:20:39 ----A---- C:\Windows\system32\urlmon.dll
2013-11-12 10:20:39 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-11-12 10:20:39 ----A---- C:\Windows\system32\jsIntl.dll
2013-11-12 10:20:38 ----A---- C:\Windows\system32\wininet.dll
2013-11-12 10:20:38 ----A---- C:\Windows\system32\msrating.dll
2013-11-12 10:20:38 ----A---- C:\Windows\system32\msls31.dll
2013-11-12 10:20:38 ----A---- C:\Windows\system32\jsproxy.dll
2013-11-12 10:20:38 ----A---- C:\Windows\system32\iertutil.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\wextract.exe
2013-11-12 10:20:37 ----A---- C:\Windows\system32\webcheck.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\vbscript.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\url.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2013-11-12 10:20:37 ----A---- C:\Windows\system32\pngfilt.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\occache.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\mshtmlmedia.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\mshtmler.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\mshtmled.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\MshtmlDac.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\mshtml.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\mshta.exe
2013-11-12 10:20:37 ----A---- C:\Windows\system32\msfeedssync.exe
2013-11-12 10:20:37 ----A---- C:\Windows\system32\msfeedsbs.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\msfeeds.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\licmgr10.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\jscript9diag.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\jscript9.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\jscript.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\inseng.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\imgutil.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\iexpress.exe
2013-11-12 10:20:37 ----A---- C:\Windows\system32\ieUnatt.exe
2013-11-12 10:20:37 ----A---- C:\Windows\system32\ieui.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\iesysprep.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\iesetup.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\iernonce.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\iepeers.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\ieframe.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\ieetwproxystub.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\ieetwcollector.exe
2013-11-12 10:20:37 ----A---- C:\Windows\system32\iedkcs32.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\ieapfltr.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\IEAdvpack.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\ie4uinit.exe
2013-11-12 10:20:37 ----A---- C:\Windows\system32\icardie.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\dxtrans.dll
2013-11-12 10:20:37 ----A---- C:\Windows\system32\dxtmsft.dll
2013-11-10 17:01:34 ----SHD---- C:\$RECYCLE.BIN
2013-11-10 08:32:57 ----D---- C:\Windows\temp
2013-11-09 23:50:48 ----D---- C:\ProgramData\Malwarebytes
2013-11-09 23:50:42 ----D---- C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2013-11-09 23:50:42 ----A---- C:\Windows\system32\drivers\MBAMSwissArmy.sys
2013-11-09 23:49:14 ----A---- C:\Windows\system32\drivers\mbamchameleon.sys
2013-11-08 18:35:27 ----D---- C:\Windows\ERUNT
2013-11-08 18:31:49 ----A---- C:\sc-cleaner.txt
2013-11-08 17:11:32 ----D---- C:\Program Files\trend micro
2013-11-08 16:55:11 ----D---- C:\Users\PC\AppData\Roaming\TuneUp Software
2013-11-08 16:50:14 ----D---- C:\Users\PC\AppData\Roaming\AVAST Software
2013-11-08 16:49:22 ----A---- C:\Windows\system32\drivers\aswTdi.sys
2013-11-08 16:49:21 ----A---- C:\Windows\system32\drivers\aswVmm.sys
2013-11-08 16:49:20 ----A---- C:\Windows\system32\drivers\aswsp.sys
2013-11-08 16:49:20 ----A---- C:\Windows\system32\drivers\aswSnx.sys
2013-11-08 16:49:20 ----A---- C:\Windows\system32\drivers\aswRvrt.sys
2013-11-08 16:49:19 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2013-11-08 16:49:16 ----A---- C:\Windows\system32\drivers\aswFsBlk.sys
2013-11-08 16:49:15 ----A---- C:\Windows\system32\drivers\aswRdr2.sys
2013-11-08 16:49:09 ----A---- C:\Windows\system32\aswBoot.exe
2013-11-08 16:48:43 ----D---- C:\Program Files\AVAST Software
2013-11-08 16:48:06 ----D---- C:\ProgramData\AVAST Software
2013-10-26 18:53:04 ----A---- C:\Windows\system32\drivers\hamachi.sys
2013-10-26 18:53:02 ----D---- C:\Program Files (x86)\Hamachi
2013-10-19 12:22:02 ----D---- C:\Program Files (x86)\Fraps 3.5.9 CZ pln verze!!! - by kopiha
2013-10-15 17:21:27 ----D---- C:\Program Files (x86)\Steam
======List of files/folders modified in the last 1 months======
2013-11-13 16:40:59 ----D---- C:\Windows\Prefetch
2013-11-13 16:24:14 ----D---- C:\Users\PC\AppData\Roaming\Skype
2013-11-13 16:17:53 ----D---- C:\Users\PC\AppData\Roaming\.minecraft
2013-11-13 16:07:35 ----D---- C:\Windows\system32\config
2013-11-13 15:56:32 ----D---- C:\Windows\system32\catroot2
2013-11-13 15:56:32 ----D---- C:\Windows\system32\catroot
2013-11-13 15:56:27 ----D---- C:\Windows\winsxs
2013-11-13 15:41:50 ----D---- C:\ProgramData\NVIDIA
2013-11-12 18:11:00 ----SHD---- C:\Windows\Installer
2013-11-12 18:10:49 ----D---- C:\Windows
2013-11-12 18:10:48 ----D---- C:\Windows\SYSWOW64\directx
2013-11-12 18:10:48 ----D---- C:\Windows\Logs
2013-11-12 18:10:48 ----D---- C:\Windows\inf
2013-11-12 15:05:37 ----D---- C:\Windows\rescache
2013-11-12 13:39:31 ----D---- C:\Windows\Panther
2013-11-12 13:38:42 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-11-12 13:38:42 ----D---- C:\Windows\system32\cs-CZ
2013-11-12 13:38:42 ----D---- C:\Program Files\Internet Explorer
2013-11-12 13:38:42 ----D---- C:\Program Files (x86)\Internet Explorer
2013-11-12 13:38:40 ----D---- C:\Windows\SYSWOW64\migration
2013-11-12 13:38:40 ----D---- C:\Windows\SYSWOW64\en-US
2013-11-12 13:38:39 ----D---- C:\Windows\SysWOW64
2013-11-12 13:38:38 ----D---- C:\Windows\system32\migration
2013-11-12 13:38:38 ----D---- C:\Windows\system32\en-US
2013-11-12 13:38:38 ----D---- C:\Windows\PolicyDefinitions
2013-11-12 13:38:37 ----D---- C:\Windows\System32
2013-11-12 10:19:01 ----SHD---- C:\System Volume Information
2013-11-11 22:06:42 ----RD---- C:\Program Files (x86)
2013-11-11 21:48:53 ----D---- C:\Windows\SoftwareDistribution
2013-11-11 16:46:14 ----D---- C:\Windows\system32\drivers
2013-11-10 19:49:23 ----D---- C:\ProgramData\Skype
2013-11-10 19:49:20 ----RD---- C:\Program Files (x86)\Skype
2013-11-10 18:19:41 ----D---- C:\Program Files\CCleaner
2013-11-10 08:34:39 ----A---- C:\Windows\system.ini
2013-11-10 08:34:31 ----D---- C:\Windows\system32\drivers\etc
2013-11-10 08:30:12 ----D---- C:\Windows\SYSWOW64\drivers
2013-11-10 08:30:12 ----D---- C:\Windows\AppPatch
2013-11-10 08:30:10 ----D---- C:\Program Files (x86)\Common Files
2013-11-09 23:50:48 ----D---- C:\ProgramData
2013-11-08 17:11:32 ----RD---- C:\Program Files
2013-11-08 16:56:58 ----D---- C:\ProgramData\MFAData
2013-11-08 16:55:54 ----D---- C:\ProgramData\AVG2013
2013-11-08 16:55:35 ----D---- C:\$AVG
2013-11-08 16:49:30 ----D---- C:\Windows\system32\Tasks
2013-11-07 21:30:41 ----D---- C:\Windows\Tasks
2013-11-07 21:30:41 ----D---- C:\Windows\system32\wfp
2013-11-07 21:30:39 ----D---- C:\Windows\system32\wbem
2013-11-07 21:29:43 ----D---- C:\Windows\system32\DriverStore
2013-11-07 21:29:41 ----D---- C:\Windows\registration
2013-11-07 19:45:45 ----SD---- C:\Users\PC\AppData\Roaming\Microsoft
2013-11-07 14:46:02 ----D---- C:\Fraps
2013-11-07 14:35:03 ----D---- C:\Users\PC\AppData\Roaming\Hamachi
2013-11-03 08:05:48 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-11-02 20:57:08 ----RSD---- C:\Windows\Fonts
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2013-11-08 65776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2013-11-08 205320]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 aswRdr;aswRdr; \??\C:\Windows\system32\drivers\aswRdr2.sys [2013-11-08 92544]
R1 aswSnx;aswSnx; \??\C:\Windows\system32\drivers\aswSnx.sys [2013-11-08 1032416]
R1 aswSP;aswSP; \??\C:\Windows\system32\drivers\aswSP.sys [2013-11-08 409832]
R1 aswTdi;aswTdi; \??\C:\Windows\system32\drivers\aswTdi.sys [2013-11-08 65264]
R2 aswFsBlk;aswFsBlk; \??\C:\Windows\system32\drivers\aswFsBlk.sys [2013-11-08 38984]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2013-11-08 84328]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2013-11-07 33344]
R3 RTL8023x64;Realtek 10/100 NIC Family NDIS x64 Driver; C:\Windows\system32\DRIVERS\Rtnic64.sys [2009-06-10 51712]
R3 RTL8167;Ovladač Realtek 8167 NT; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-06-10 187392]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 42496]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-11-08 50344]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-01-18 884512]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-02-25 1260320]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-01-18 383264]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-08-20 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-09-05 171680]
S2 ssinstall;SInstalátor; C:\Windows\SysWOW64\ssins.exe [2013-10-07 2324216]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-10-09 257416]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-08-20 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2013-11-12 111616]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2013-10-30 566696]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-09-19 1255736]
-----------------EOF-----------------
Re: prosím o pomoc,asi vir
- HJT najdete zde C:\Program Files\trend micro\PC.exe
- Otevre se Vam okno, kliknete na Do a system scan only
- V dalsim okne najdete radky které jsem Vam vypsal nize, vedle nich je ctverecek, do ktereho udelate zatrzitko
- R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O4 - HKCU\..\Run: [icq] C:\Users\PC\AppData\Roaming\ICQM\icq.exe -CU
O4 - HKUS\S-1-5-21-1774098787-2647536372-2567428949-1001\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - HKUS\S-1-5-18\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun (User 'Default user')
O4 - Startup: hamachi.lnk = C:\Program Files (x86)\Hamachi\hamachi.exe - Kliknete na Fix checked (vlevo dole)
- HJT se Vas zepta zda opravdu ANO, s tim souhlasite a je hotovo




Přispějete na provoz fóra?