Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Spravce procesu píše 99 Procesu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
dominikvyt
Návštěvník
Návštěvník
Příspěvky: 69
Registrován: 24 led 2012 10:12
Bydliště: Ostrava

Spravce procesu píše 99 Procesu

#1 Příspěvek od dominikvyt »

Dobrý den chtěl bych požadat o kontrolu logu spravce procesu píše že je zaplo 99 procesu zdá se mi to divné.

Kód: Vybrat vše

Logfile of random's system information tool 1.09 (written by random/random)
Run by Zbyna at 2014-02-09 15:38:59
Microsoft Windows 7 Home Premium  Service Pack 1
System drive C: has 249 GB (27%) free of 909 GB
Total RAM: 8094 MB (61% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:39:03, on 9.2.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeySupport.exe
C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
C:\Program Files (x86)\LockKey\LockKey.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files\Lenovo\Intelligent Touchpad\TouchZone.exe
C:\Program Files (x86)\AWC\AWC.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
C:\Users\Zbyna\AppData\Local\VNT\vntldr.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Users\Zbyna\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Zbyna\Downloads\RSIT.exe
C:\Program Files (x86)\trend micro\Zbyna.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=13415
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = 
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = 
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = 
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Ask Toolbar BHO - {5054562D-5247-006A-76A7-7A786E7484D7} - "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\PTV-RG\Passport.dll" (file missing)
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - c:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Surftastic - {c6673938-a52b-4dc6-af05-783e7e2c8b65} - C:\Program Files (x86)\Surftastic\Surftasticbho.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: Ask Toolbar - {5054562D-5247-006A-76A7-7A786E7484D7} - "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\PTV-RG\Passport.dll" (file missing)
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [LockKey] C:\Program Files (x86)\LockKey\LockKey.exe                                                                                                                                                                                                                               
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe                                                                                                                                                                                            
O4 - HKLM\..\Run: [Intelligent Touchpad] C:\Program Files\Lenovo\Intelligent Touchpad\TouchZone.exe
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [AWC] C:\Program Files (x86)\AWC\AWC.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [NCUpdateHelper] C:\Program Files (x86)\NCWest\NCLauncher\NCUpdateHelper.exe
O4 - HKLM\..\Run: [ApnTBMon] "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe"
O4 - HKLM\..\Run: [VNT] C:\Program Files (x86)\VNT\vntldr.exe
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [mobilegeni daemon] C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
O4 - HKLM\..\Run: [MSStp] C:\Windows\system32\msstp.vbe
O4 - HKLM\..\Run: [mncwmhffiSrv] C:\Windows\inf\mncwmhffi.vbe
O4 - HKCU\..\Run: [Adobe Reader Synchronizer] "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AdobeCollabSync.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun                                                                                                                                                                                                           
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Zbyna\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Zbyna\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe"  -q
O4 - HKCU\..\Run: [NextLive] C:\Windows\SysWOW64\rundll32.exe "C:\Users\Zbyna\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_43C348BC2E93EB2B.dll/cmsidewiki.html
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{F640B5C0-FFCF-4DB3-AA9E-19A53D8CAAF3}: NameServer = 192.168.17.1
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Ask Update Service (APNMCP) - APN LLC. - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: McAfee Personal Firewall Service (McMPFSvc) - Unknown owner - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe (file missing)
O23 - Service: MgAssist Service (MgAssistService) - Unknown owner - C:\Program Files (x86)\Mobogenie\MgAssist.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\Windows\system32\GameMon.des.exe (file missing)
O23 - Service: Fast boot service of lenovo (NSDSvc) - Unknown owner - C:\Windows\System32\NSDSvc.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: Internet Pass-Through Service (PassThru Service) - Unknown owner - C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Programy\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Update Surftastic - Unknown owner - C:\Program Files (x86)\Surftastic\updateSurftastic.exe
O23 - Service: Util Surftastic - Unknown owner - C:\Program Files (x86)\Surftastic\bin\utilSurftastic.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 14674 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\AmiUpdXp.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5054562D-5247-006A-76A7-7A786E7484D7}]
Ask Toolbar - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\PTV-RG\Passport.dll [2014-02-08 12240]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-03-09 4171464]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-10-08 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-11-30 606544]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - c:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{c6673938-a52b-4dc6-af05-783e7e2c8b65}]
Surftastic - C:\Program Files (x86)\Surftastic\Surftasticbho.dll [2014-02-05 249632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-10-08 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-11-30 606544]
{5054562D-5247-006A-76A7-7A786E7484D7} - Ask Toolbar - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\PTV-RG\Passport.dll [2014-02-08 12240]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2011-12-05 291096]
"LockKey"=C:\Program Files (x86)\LockKey\LockKey.exe [2011-08-26 337776]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2011-11-30 284440]
"Intelligent Touchpad"=C:\Program Files\Lenovo\Intelligent Touchpad\TouchZone.exe [2011-12-08 291272]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2010-07-27 222504]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2012-11-05 89184]
"AWC"=C:\Program Files (x86)\AWC\AWC.exe [2010-01-29 42496]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2013-11-30 3568312]
"NCUpdateHelper"=C:\Program Files (x86)\NCWest\NCLauncher\NCUpdateHelper.exe [2014-02-09 528360]
"ApnTBMon"=C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [2014-02-08 1757648]
"VNT"=C:\Program Files (x86)\VNT\vntldr.exe [2014-02-08 195536]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"mobilegeni daemon"=C:\Program Files (x86)\Mobogenie\DaemonProcess.exe [2014-02-08 775872]
"MSStp"=C:\Windows\system32\msstp.vbe [2014-01-19 1419]
"mncwmhffiSrv"=C:\Windows\inf\mncwmhffi.vbe [2014-01-19 1342]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Adobe Reader Synchronizer"=C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AdobeCollabSync.exe [2013-09-03 1272704]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-03-14 3672640]
"cz.seznam.software.autoupdate"=C:\Users\Zbyna\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Zbyna\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"NextLive"=C:\Users\Zbyna\AppData\Roaming\newnext.me\nengine.dll [2014-01-06 1283584]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\SysWOW64\nvinit.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-03-09 4171464]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\McMPFSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\connectify.exe]
"Debugger=""C:\Programy\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\connectifyshutdown.exe]
"Debugger=""C:\Programy\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\connectifysupportcenter.exe]
"Debugger=""C:\Programy\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dtlite.exe]
"Debugger=""C:\Programy\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\iastorui.exe]
"Debugger=""C:\Programy\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\sptdinst-x64.exe]
"Debugger=""C:\Programy\TuneUp Utilities 2012\TUAutoReactivator64.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\SysWOW64\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"msacm.clmp3enc"=C:\PROGRA~2\Lenovo\Power2Go\CLMP3Enc.ACM
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2014-02-09 15:36:07 ----D---- C:\rsit
2014-02-09 15:36:07 ----D---- C:\Program Files (x86)\trend micro
2014-02-09 09:58:51 ----D---- C:\Users\Zbyna\AppData\Roaming\Mozilla
2014-02-09 09:45:20 ----D---- C:\Program Files (x86)\NCSOFT
2014-02-09 04:08:46 ----A---- C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-02-09 04:08:45 ----D---- C:\Windows\SysWOW64\Macromed
2014-02-09 04:06:29 ----D---- C:\ProgramData\Mozilla
2014-02-09 04:06:27 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-02-08 19:43:57 ----D---- C:\Program Files (x86)\Batman Arkham Origins
2014-02-08 19:25:37 ----D---- C:\Windows\SysWOW64\xlive
2014-02-08 19:25:33 ----D---- C:\Program Files (x86)\Microsoft Games for Windows - LIVE
2014-02-08 19:06:37 ----SHD---- C:\ProgramData\DSS
2014-02-08 19:06:36 ----D---- C:\ProgramData\Codemasters
2014-02-08 19:04:07 ----A---- C:\Windows\SysWOW64\rapture3d_oal.dll
2014-02-08 19:04:07 ----A---- C:\Windows\SysWOW64\mkl_blueripple.dll
2014-02-08 19:04:06 ----D---- C:\Program Files (x86)\BRS
2014-02-08 19:04:03 ----D---- C:\Program Files (x86)\OpenAL
2014-02-08 19:04:03 ----A---- C:\Windows\SysWOW64\wrap_oal.dll
2014-02-08 19:04:03 ----A---- C:\Windows\SysWOW64\OpenAL32.dll
2014-02-08 19:04:02 ----RA---- C:\Windows\SysWOW64\tmpB320.tmp
2014-02-08 18:33:02 ----D---- C:\Program Files (x86)\Codemasters
2014-02-08 16:01:09 ----D---- C:\Users\Zbyna\AppData\Roaming\newnext.me
2014-02-08 16:00:25 ----D---- C:\Program Files (x86)\Mobogenie
2014-02-08 16:00:13 ----D---- C:\Program Files (x86)\Surftastic
2014-02-07 14:22:34 ----D---- C:\Program Files (x86)\Activision
2014-02-07 14:21:04 ----SHD---- C:\Windows\ftpcache
2014-02-06 02:15:00 ----D---- C:\Games
2014-02-06 01:53:06 ----D---- C:\Users\Zbyna\AppData\Roaming\Milestone
2014-02-03 11:24:48 ----D---- C:\Program Files (x86)\Prototype 2
2014-01-31 19:28:18 ----D---- C:\Program Files (x86)\Origin Games
2014-01-31 19:27:16 ----D---- C:\Users\Zbyna\AppData\Roaming\Origin
2014-01-31 19:24:50 ----D---- C:\ProgramData\Electronic Arts
2014-01-31 19:24:48 ----D---- C:\Program Files (x86)\Origin
2014-01-31 19:06:07 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2014-01-31 18:51:45 ----D---- C:\Program Files (x86)\Seznam.cz
2014-01-31 18:51:15 ----D---- C:\Users\Zbyna\AppData\Roaming\Seznam.cz
2014-01-26 10:54:28 ----D---- C:\Program Files (x86)\Common Files\Steam
2014-01-26 10:54:26 ----D---- C:\Program Files (x86)\Steam
2014-01-25 01:02:58 ----D---- C:\ProgramData\Samsung
2014-01-23 20:43:57 ----A---- C:\Windows\SysWOW64\nvaudcap32v.dll
2014-01-23 17:59:02 ----D---- C:\Windows\SysWOW64\no
2014-01-23 17:59:02 ----D---- C:\Program Files (x86)\SRSRoot
2014-01-23 16:28:35 ----D---- C:\Users\Zbyna\AppData\Roaming\abgx360
2014-01-14 19:40:32 ----D---- C:\Users\Zbyna\AppData\Roaming\Unity
2014-01-13 17:45:38 ----D---- C:\Users\Zbyna\AppData\Roaming\ParetoLogic
2014-01-13 17:45:38 ----D---- C:\Users\Zbyna\AppData\Roaming\DriverCure
2014-01-13 17:45:29 ----D---- C:\ProgramData\ParetoLogic
2014-01-11 14:51:26 ----D---- C:\Program Files (x86)\NCWest

======List of files/folders modified in the last 1 month======

2014-02-09 15:39:03 ----D---- C:\Windows\Prefetch
2014-02-09 15:39:01 ----D---- C:\Windows\Temp
2014-02-09 15:36:07 ----RD---- C:\Program Files (x86)
2014-02-09 15:16:36 ----D---- C:\Users\Zbyna\AppData\Roaming\Skype
2014-02-09 13:32:44 ----SHD---- C:\System Volume Information
2014-02-09 11:29:45 ----SHD---- C:\Config.Msi
2014-02-09 09:58:57 ----SHD---- C:\Windows\Installer
2014-02-09 09:58:51 ----D---- C:\Program Files (x86)\VNT
2014-02-09 09:45:20 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-02-09 08:51:57 ----HD---- C:\ProgramData
2014-02-09 08:51:02 ----D---- C:\Windows\System32
2014-02-09 08:51:02 ----D---- C:\Windows\inf
2014-02-09 08:45:22 ----D---- C:\Users\Zbyna\AppData\Roaming\uTorrent
2014-02-09 04:08:49 ----D---- C:\ProgramData\McAfee
2014-02-09 04:08:47 ----D---- C:\Windows\Tasks
2014-02-09 04:08:46 ----D---- C:\Windows\SysWOW64
2014-02-09 03:13:10 ----D---- C:\Windows\winsxs
2014-02-09 02:27:40 ----D---- C:\Users\Zbyna\AppData\Roaming\vlc
2014-02-08 20:04:53 ----D---- C:\ProgramData\Steam
2014-02-08 20:03:17 ----D---- C:\Temp
2014-02-08 19:25:24 ----D---- C:\Program Files (x86)\Common Files\microsoft shared
2014-02-08 18:03:34 ----SD---- C:\ProgramData\Microsoft
2014-02-07 14:25:58 ----RSD---- C:\Windows\assembly
2014-02-07 14:25:22 ----AD---- C:\Windows
2014-02-05 07:36:17 ----D---- C:\Windows\Microsoft.NET
2014-02-05 03:05:11 ----D---- C:\ProgramData\Microsoft Help
2014-02-05 03:05:03 ----A---- C:\Windows\win.ini
2014-02-04 03:03:10 ----D---- C:\Program Files (x86)\Common Files\System
2014-02-01 23:29:11 ----D---- C:\Program Files (x86)\Common Files\Merge Modules
2014-02-01 11:07:15 ----D---- C:\Hry
2014-02-01 11:03:01 ----D---- C:\filmy, serialy
2014-02-01 10:44:07 ----D---- C:\Program Files (x86)\The KMPlayer
2014-01-31 19:28:18 ----D---- C:\ProgramData\Origin
2014-01-31 19:06:07 ----RD---- C:\Program Files
2014-01-26 10:54:28 ----D---- C:\Program Files (x86)\Common Files
2014-01-23 20:44:17 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2014-01-23 06:39:24 ----A---- C:\Windows\SysWOW64\PnkBstrB.exe
2014-01-21 03:53:40 ----A---- C:\Windows\SysWOW64\nvspcap.dll
2014-01-16 14:12:49 ----D---- C:\Users\Zbyna\AppData\Roaming\TS3Client
2014-01-14 11:50:23 ----D---- C:\ProgramData\GFACE
2014-01-14 09:34:33 ----D---- C:\ProgramData\VeriFace

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\Windows\SysWOW64\drivers\aswRvrt.sys []
R0 aswVmm;avast! VM Monitor; C:\Windows\SysWOW64\drivers\aswVmm.sys []
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys []
R0 iusb3hcs;Intel(R) USB 3.0 Host Controller Switch Driver; C:\Windows\system32\DRIVERS\iusb3hcs.sys []
R0 LHDmgr;LHDmgr; C:\Windows\System32\DRIVERS\LhdX64.sys []
R0 NSD;NSD; C:\Windows\system32\drivers\nsd.sys []
R0 nvpciflt;nvpciflt; C:\Windows\system32\DRIVERS\nvpciflt.sys []
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys []
R1 aswRdr;aswRdr; \??\C:\Windows\system32\drivers\aswRdr2.sys []
R1 aswSnx;aswSnx; \??\C:\Windows\system32\drivers\aswSnx.sys []
R1 aswSP;aswSP; \??\C:\Windows\system32\drivers\aswSP.sys []
R1 aswTdi;aswTdi; \??\C:\Windows\system32\drivers\aswTdi.sys []
R1 cnnctfy2;Connectify LightWeight Filter; C:\Windows\system32\DRIVERS\cnnctfy2.sys []
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys []
R1 Nsdfltr;Nsdfltr; C:\Windows\system32\drivers\Nsdfltr.sys []
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys []
R2 aswFsBlk;aswFsBlk; \??\C:\Windows\system32\drivers\aswFsBlk.sys []
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys []
R3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\Windows\system32\DRIVERS\AcpiVpc.sys []
R3 AMPPAL;Intel® Centrino® Wireless Bluetooth® 3.0 + High Speed Virtual Adapter; C:\Windows\system32\DRIVERS\AMPPAL.sys []
R3 clwvd;CyberLink WebCam Virtual Driver; C:\Windows\system32\DRIVERS\clwvd.sys []
R3 hswpan;WPAN Driver; C:\Windows\system32\DRIVERS\hswpan.sys []
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys []
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys []
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys []
R3 iusb3hub;Intel(R) USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\iusb3hub.sys []
R3 iusb3xhc;Intel(R) USB 3.0 eXtensible Host Controller Driver; C:\Windows\system32\DRIVERS\iusb3xhc.sys []
R3 iwdbus;IWD Bus Enumerator; C:\Windows\system32\DRIVERS\iwdbus.sys []
R3 L1C;NDIS Miniport Driver for Atheros AR81xx PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1C62x64.sys []
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys []
R3 NETwNs64;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\Windows\system32\DRIVERS\NETwNs64.sys []
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys []
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys []
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Programy\TuneUp Utilities 2012\TuneUpUtilitiesDriver64.sys [2011-12-12 11856]
R3 vm2uvcflt;Vimicro USB Camera Filter 2; C:\Windows\System32\Drivers\vm2uvcflt.sys []
R3 vm332avs;Lenovo Camera2; C:\Windows\System32\Drivers\vm332avs.sys []
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys []
S3 AMPPALP;Intel® Centrino® Wireless Bluetooth® 3.0 + High Speed Protocol; C:\Windows\system32\DRIVERS\amppal.sys []
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys []
S3 HTCAND64;HTC Device Driver; C:\Windows\System32\Drivers\ANDROIDUSB.sys []
S3 htcnprot;HTC NDIS Protocol Driver; C:\Windows\system32\DRIVERS\htcnprot.sys []
S3 intaud_WaveExtensible;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys []
S3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys []
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys []
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys []
S3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys []
S3 ssudmdm;SAMSUNG  Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys []
S3 TPM;TPM; C:\Windows\system32\drivers\tpm.sys []
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys []
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-10 65640]
R2 APNMCP;Ask Update Service; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [2014-02-08 166352]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-11-30 50344]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2011-12-08 618256]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2011-12-09 607456]
R2 MgAssistService;MgAssist Service; C:\Program Files (x86)\Mobogenie\MgAssist.exe [2014-02-08 63168]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-01-21 1593632]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-01-21 16939296]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe []
R2 PassThru Service;Internet Pass-Through Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [2012-12-07 167424]
R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2013-07-18 76888]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2011-12-08 148752]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; C:\Programy\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe [2012-05-29 2143072]
R2 Update Surftastic;Update Surftastic; C:\Program Files (x86)\Surftastic\updateSurftastic.exe [2014-02-05 80160]
R2 Util Surftastic;Util Surftastic; C:\Program Files (x86)\Surftastic\bin\utilSurftastic.exe [2014-02-08 80160]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-04-20 136176]
S2 McMPFSvc;McAfee Personal Firewall Service; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe /McCoreSvc []
S2 NSDSvc;Fast boot service of lenovo; C:\Windows\System32\NSDSvc.exe []
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-09-05 171680]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-09 257928]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-19 44376]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2012-12-14 277616]
S3 gupdatem;Google Update Service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-04-20 136176]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe /V []
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2013-03-09 30798512]
S3 npggsvc;nProtect GameGuard Service; C:\Windows\system32\GameMon.des [2012-10-24 4702568]
S3 ose;Office  Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2013-11-26 569768]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe []
S4 AMPPALR3;Intel® Centrino® Wireless Bluetooth® 3.0 + High Speed Service; C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe [2011-12-05 659968]
S4 BTHSSecurityMgr;Intel(R) Centrino(R) Wireless Bluetooth(R) 3.0 + High Speed Security Service; C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe [2011-12-05 135952]
S4 Connectify;Connectify; C:\Program Files (x86)\Connectify\ConnectifyService.exe [2012-11-09 65536]
S4 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-11-30 13592]
S4 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2011-12-16 161560]
S4 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2011-12-16 277784]
S4 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2011-12-08 273168]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2011-12-16 363800]

-----------------EOF-----------------
Obrázek
Domininik Výtisk
Ostrava-Poruba
Programator: PHP,HTML,MYSQL
Znalosti v: Photoshop,Sony Vegas,FL Studio

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Spravce procesu píše 99 Procesu

#2 Příspěvek od vyosek »

Zdravim :)

:arrow: Stahnete Malwarebytes' Anti-Malware (zkracene MBAM) http://forum.viry.cz/viewtopic.php?f=29&t=115222
  • Provedte aktualizaci
  • Provedte uplny sken - nic nemazte :!:
  • MBAM miva obcas falesne detekce, proto vlozte log do prispevku a pockejte na posouzeni
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

dominikvyt
Návštěvník
Návštěvník
Příspěvky: 69
Registrován: 24 led 2012 10:12
Bydliště: Ostrava

Re: Spravce procesu píše 99 Procesu

#3 Příspěvek od dominikvyt »

Wau tak to sem nečekal...

Kód: Vybrat vše

Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org

Verze: v2014.02.09.04

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 11.0.9600.16476
Zbyna :: ZBYNA-PC [administrátor]

Ochrana: Povolena

9.2.2014 17:25:53
MBAM-log-2014-02-09 (18-23-14).txt

Typ: Kompletní kontrola (C:\|)
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 445727
Uplynulý čas: 57 minut, 14 sekund

Nalezené procesy v paměti: 2
C:\Program Files (x86)\Surftastic\updateSurftastic.exe (PUP.Optional.Surftastic.A) -> 4312 -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Surftastic\bin\utilSurftastic.exe (PUP.Optional.Surftastic.A) -> 4800 -> Nebyla provedena žádná instrukce.

Nalezené moduly v paměti: 2
C:\Users\Zbyna\AppData\Roaming\newnext.me\nengine.dll (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Surftastic\bin\Surftastic.BrowserFilter.Helper.dll (PUP.Optional.Surftastic.A) -> Nebyla provedena žádná instrukce.

Nalezené klíče v registru: 17
HKLM\SYSTEM\CurrentControlSet\Services\Update Surftastic (PUP.Optional.Surftastic.A) -> Nebyla provedena žádná instrukce.
HKLM\SYSTEM\CurrentControlSet\Services\Util Surftastic (PUP.Optional.Surftastic.A) -> Nebyla provedena žádná instrukce.
HKCR\CLSID\{c6673938-a52b-4dc6-af05-783e7e2c8b65} (PUP.Optional.Surftastic.A) -> Nebyla provedena žádná instrukce.
HKCR\TypeLib\{07eeef8a-080a-4478-94b6-778245d7a04f} (PUP.Optional.Surftastic.A) -> Nebyla provedena žádná instrukce.
HKCR\Interface\{861E67AE-B5A7-4EC6-9B02-54AA7825F2DC} (PUP.Optional.Surftastic.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C6673938-A52B-4DC6-AF05-783E7E2C8B65} (PUP.Optional.Surftastic.A) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{C6673938-A52B-4DC6-AF05-783E7E2C8B65} (PUP.Optional.Surftastic.A) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C6673938-A52B-4DC6-AF05-783E7E2C8B65} (PUP.Optional.Surftastic.A) -> Nebyla provedena žádná instrukce.
HKCR\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23} (PUP.Optional.BrowseFox.A) -> Nebyla provedena žádná instrukce.
HKCR\CLSID\{67BD9EEB-AA06-4329-A940-D250019300C9} (PUP.Optional.SoftwareUpdater) -> Nebyla provedena žádná instrukce.
HKCR\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476} (PUP.Optional.SoftwareUpdater) -> Nebyla provedena žádná instrukce.
HKCR\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67} (PUP.Optional.SoftwareUpdater) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96} (PUP.Optional.SoftwareUpdater) -> Nebyla provedena žádná instrukce.
HKCR\Updater.AmiUpd.1 (PUP.Optional.SoftwareUpdater) -> Nebyla provedena žádná instrukce.
HKCR\Updater.AmiUpd (PUP.Optional.SoftwareUpdater) -> Nebyla provedena žádná instrukce.
HKCU\Software\Surftastic (PUP.Optional.Surftastic.A) -> Nebyla provedena žádná instrukce.
HKLM\Software\Surftastic (PUP.Optional.Surftastic.A) -> Nebyla provedena žádná instrukce.

Nalezené hodnoty v registru: 2
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|NextLive (PUP.Optional.NextLive.A) -> Data: C:\Windows\SysWOW64\rundll32.exe "C:\Users\Zbyna\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|MSStp (Malware.Trace) -> Data: C:\Windows\system32\msstp.vbe -> Nebyla provedena žádná instrukce.

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 7
C:\Program Files (x86)\Surftastic (PUP.Optional.Surftastic.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Surftastic\bin (PUP.Optional.Surftastic.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Surftastic\bin\plugins (PUP.Optional.Surftastic.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zbyna\AppData\Roaming\newnext.me (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zbyna\AppData\Roaming\newnext.me\cache (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mncwmhffi (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mncwmhffi\bitstreams (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.

Nalezené soubory: 44
C:\Program Files (x86)\Surftastic\updateSurftastic.exe (PUP.Optional.Surftastic.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Surftastic\bin\utilSurftastic.exe (PUP.Optional.Surftastic.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zbyna\AppData\Roaming\newnext.me\nengine.dll (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Surftastic\SurftasticBHO.dll (PUP.Optional.Surftastic.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zbyna\AppData\Local\SwvUpdater\Updater.exe (PUP.Optional.SoftwareUpdater) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Mobogenie\nengine.dll (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zbyna\AppData\Local\genienext\nengine.dll (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zbyna\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\631DJ3RD\Setup[1].exe (PUP.Optional.Surftastic.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zbyna\AppData\Local\Mobogenie\Version\OldVersion\Mobogenie2.2.0.zip (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zbyna\AppData\Local\Mobogenie\Version\OldVersion\Mobogenie\nengine.dll (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zbyna\Downloads\EA.Sports.MMA.Full.Version__2299_i341379299_il1323901.exe (PUP.Optional.InstallMonetizer) -> Nebyla provedena žádná instrukce.
C:\Users\Zbyna\Downloads\TeĎ\ImgBurn-2.5.8.0.rar (PUP.Optional.OpenCandy) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mncwmhffi\mncwmhffi.exe (Trojan.BitMiner) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Surftastic\Surftastic.ico (PUP.Optional.Surftastic.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Surftastic\7za.exe (PUP.Optional.Surftastic.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Surftastic\SurftasticUninstall.exe (PUP.Optional.Surftastic.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Surftastic\updateSurftastic.InstallState (PUP.Optional.Surftastic.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Surftastic\bin\sqlite3.dll (PUP.Optional.Surftastic.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Surftastic\bin\Surftastic.BrowserFilter.Helper.dll (PUP.Optional.Surftastic.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Surftastic\bin\Surftastic.BrowserFilter.Helper.dll.old.9444f347-9c09-4dd5-bc7f-b31c3a562c30 (PUP.Optional.Surftastic.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Surftastic\bin\SurftasticBrowserFilter.exe (PUP.Optional.Surftastic.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Surftastic\bin\utilSurftastic.InstallState (PUP.Optional.Surftastic.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Surftastic\bin\plugins\Surftastic.BrowserFilterG.dll (PUP.Optional.Surftastic.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Surftastic\bin\plugins\Surftastic.CompatibilityChecker.dll (PUP.Optional.Surftastic.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Surftastic\bin\plugins\Surftastic.FFUpdate.dll (PUP.Optional.Surftastic.A) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Surftastic\bin\plugins\Surftastic.IEUpdate.dll (PUP.Optional.Surftastic.A) -> Nebyla provedena žádná instrukce.
C:\Windows\System32\msstp.vbe (Malware.Trace) -> Nebyla provedena žádná instrukce.
C:\Windows\SysWOW64\msstp.vbe (Malware.Trace) -> Nebyla provedena žádná instrukce.
C:\Windows\Tasks\AmiUpdXp.job (PUP.Software.Updater) -> Nebyla provedena žádná instrukce.
C:\Users\Zbyna\AppData\Roaming\newnext.me\nengine.cookie (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zbyna\AppData\Roaming\newnext.me\cache\spark.bin (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mncwmhffi\diablo130302.cl (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mncwmhffi\diakgcn121016.cl (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mncwmhffi\libcurl-4.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mncwmhffi\libeay32.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mncwmhffi\libidn-11.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mncwmhffi\librtmp.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mncwmhffi\libssh2.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mncwmhffi\phatk121016.cl (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mncwmhffi\poclbm130302.cl (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mncwmhffi\scrypt130511.cl (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mncwmhffi\ssleay32.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mncwmhffi\zlib1.dll (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.
C:\Windows\inf\mncwmhffi\bitstreams\fpgaminer_top_fixed7_197MHz.ncd (Trojan.Agent.BCM) -> Nebyla provedena žádná instrukce.

(konec)
Obrázek
Domininik Výtisk
Ostrava-Poruba
Programator: PHP,HTML,MYSQL
Znalosti v: Photoshop,Sony Vegas,FL Studio

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Spravce procesu píše 99 Procesu

#4 Příspěvek od vyosek »

:arrow: Nedavejte logy do code

:arrow: Nalezy smazte, obejvi se log, ten rad uvidim
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

dominikvyt
Návštěvník
Návštěvník
Příspěvky: 69
Registrován: 24 led 2012 10:12
Bydliště: Ostrava

Re: Spravce procesu píše 99 Procesu

#5 Příspěvek od dominikvyt »

A chtěl bych se omluvit za ten

Kód: Vybrat vše

 zdalo se mi to přehlednější . jinak tady je log:

Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org

Verze: v2014.02.09.04

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 11.0.9600.16476
Zbyna :: ZBYNA-PC [administrátor]

Ochrana: Povolena

9.2.2014 17:25:53
mbam-log-2014-02-09 (17-25-53).txt

Typ: Kompletní kontrola (C:\|)
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 445727
Uplynulý čas: 57 minut, 14 sekund

Nalezené procesy v paměti: 2
C:\Program Files (x86)\Surftastic\updateSurftastic.exe (PUP.Optional.Surftastic.A) -> 4312 -> Bude smazán při restartu.
C:\Program Files (x86)\Surftastic\bin\utilSurftastic.exe (PUP.Optional.Surftastic.A) -> 4800 -> Bude smazán při restartu.

Nalezené moduly v paměti: 2
C:\Users\Zbyna\AppData\Roaming\newnext.me\nengine.dll (PUP.Optional.NextLive.A) -> Bude smazán při restartu.
C:\Program Files (x86)\Surftastic\bin\Surftastic.BrowserFilter.Helper.dll (PUP.Optional.Surftastic.A) -> Bude smazán při restartu.

Nalezené klíče v registru: 17
HKLM\SYSTEM\CurrentControlSet\Services\Update Surftastic (PUP.Optional.Surftastic.A) -> Přesun do karantény a smazání se zdařilo.
HKLM\SYSTEM\CurrentControlSet\Services\Util Surftastic (PUP.Optional.Surftastic.A) -> Přesun do karantény a smazání se zdařilo.
HKCR\CLSID\{c6673938-a52b-4dc6-af05-783e7e2c8b65} (PUP.Optional.Surftastic.A) -> Přesun do karantény a smazání se zdařilo.
HKCR\TypeLib\{07eeef8a-080a-4478-94b6-778245d7a04f} (PUP.Optional.Surftastic.A) -> Přesun do karantény a smazání se zdařilo.
HKCR\Interface\{861E67AE-B5A7-4EC6-9B02-54AA7825F2DC} (PUP.Optional.Surftastic.A) -> Přesun do karantény a smazání se zdařilo.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C6673938-A52B-4DC6-AF05-783E7E2C8B65} (PUP.Optional.Surftastic.A) -> Přesun do karantény a smazání se zdařilo.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{C6673938-A52B-4DC6-AF05-783E7E2C8B65} (PUP.Optional.Surftastic.A) -> Přesun do karantény a smazání se zdařilo.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C6673938-A52B-4DC6-AF05-783E7E2C8B65} (PUP.Optional.Surftastic.A) -> Přesun do karantény a smazání se zdařilo.
HKCR\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23} (PUP.Optional.BrowseFox.A) -> Přesun do karantény a smazání se zdařilo.
HKCR\CLSID\{67BD9EEB-AA06-4329-A940-D250019300C9} (PUP.Optional.SoftwareUpdater) -> Přesun do karantény a smazání se zdařilo.
HKCR\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476} (PUP.Optional.SoftwareUpdater) -> Přesun do karantény a smazání se zdařilo.
HKCR\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67} (PUP.Optional.SoftwareUpdater) -> Přesun do karantény a smazání se zdařilo.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96} (PUP.Optional.SoftwareUpdater) -> Přesun do karantény a smazání se zdařilo.
HKCR\Updater.AmiUpd.1 (PUP.Optional.SoftwareUpdater) -> Přesun do karantény a smazání se zdařilo.
HKCR\Updater.AmiUpd (PUP.Optional.SoftwareUpdater) -> Přesun do karantény a smazání se zdařilo.
HKCU\Software\Surftastic (PUP.Optional.Surftastic.A) -> Přesun do karantény a smazání se zdařilo.
HKLM\Software\Surftastic (PUP.Optional.Surftastic.A) -> Přesun do karantény a smazání se zdařilo.

Nalezené hodnoty v registru: 2
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|NextLive (PUP.Optional.NextLive.A) -> Data: C:\Windows\SysWOW64\rundll32.exe "C:\Users\Zbyna\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l -> Přesun do karantény a smazání se zdařilo.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|MSStp (Malware.Trace) -> Data: C:\Windows\system32\msstp.vbe -> Přesun do karantény a smazání se zdařilo.

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 7
C:\Program Files (x86)\Surftastic (PUP.Optional.Surftastic.A) -> Bude smazán při restartu.
C:\Program Files (x86)\Surftastic\bin (PUP.Optional.Surftastic.A) -> Bude smazán při restartu.
C:\Program Files (x86)\Surftastic\bin\plugins (PUP.Optional.Surftastic.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Zbyna\AppData\Roaming\newnext.me (PUP.Optional.NextLive.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Zbyna\AppData\Roaming\newnext.me\cache (PUP.Optional.NextLive.A) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\inf\mncwmhffi (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\inf\mncwmhffi\bitstreams (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.

Nalezené soubory: 44
C:\Program Files (x86)\Surftastic\updateSurftastic.exe (PUP.Optional.Surftastic.A) -> Bude smazán při restartu.
C:\Program Files (x86)\Surftastic\bin\utilSurftastic.exe (PUP.Optional.Surftastic.A) -> Bude smazán při restartu.
C:\Users\Zbyna\AppData\Roaming\newnext.me\nengine.dll (PUP.Optional.NextLive.A) -> Bude smazán při restartu.
C:\Program Files (x86)\Surftastic\SurftasticBHO.dll (PUP.Optional.Surftastic.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Zbyna\AppData\Local\SwvUpdater\Updater.exe (PUP.Optional.SoftwareUpdater) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Mobogenie\nengine.dll (PUP.Optional.NextLive.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Zbyna\AppData\Local\genienext\nengine.dll (PUP.Optional.NextLive.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Zbyna\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\631DJ3RD\Setup[1].exe (PUP.Optional.Surftastic.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Zbyna\AppData\Local\Mobogenie\Version\OldVersion\Mobogenie2.2.0.zip (PUP.Optional.NextLive.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Zbyna\AppData\Local\Mobogenie\Version\OldVersion\Mobogenie\nengine.dll (PUP.Optional.NextLive.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Zbyna\Downloads\EA.Sports.MMA.Full.Version__2299_i341379299_il1323901.exe (PUP.Optional.InstallMonetizer) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Zbyna\Downloads\TeĎ\ImgBurn-2.5.8.0.rar (PUP.Optional.OpenCandy) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\inf\mncwmhffi\mncwmhffi.exe (Trojan.BitMiner) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Surftastic\Surftastic.ico (PUP.Optional.Surftastic.A) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Surftastic\7za.exe (PUP.Optional.Surftastic.A) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Surftastic\SurftasticUninstall.exe (PUP.Optional.Surftastic.A) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Surftastic\updateSurftastic.InstallState (PUP.Optional.Surftastic.A) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Surftastic\bin\sqlite3.dll (PUP.Optional.Surftastic.A) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Surftastic\bin\Surftastic.BrowserFilter.Helper.dll (PUP.Optional.Surftastic.A) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Surftastic\bin\Surftastic.BrowserFilter.Helper.dll.old.9444f347-9c09-4dd5-bc7f-b31c3a562c30 (PUP.Optional.Surftastic.A) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Surftastic\bin\SurftasticBrowserFilter.exe (PUP.Optional.Surftastic.A) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Surftastic\bin\utilSurftastic.InstallState (PUP.Optional.Surftastic.A) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Surftastic\bin\plugins\Surftastic.BrowserFilterG.dll (PUP.Optional.Surftastic.A) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Surftastic\bin\plugins\Surftastic.CompatibilityChecker.dll (PUP.Optional.Surftastic.A) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Surftastic\bin\plugins\Surftastic.FFUpdate.dll (PUP.Optional.Surftastic.A) -> Přesun do karantény a smazání se zdařilo.
C:\Program Files (x86)\Surftastic\bin\plugins\Surftastic.IEUpdate.dll (PUP.Optional.Surftastic.A) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\System32\msstp.vbe (Malware.Trace) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\SysWOW64\msstp.vbe (Malware.Trace) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\Tasks\AmiUpdXp.job (PUP.Software.Updater) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Zbyna\AppData\Roaming\newnext.me\nengine.cookie (PUP.Optional.NextLive.A) -> Přesun do karantény a smazání se zdařilo.
C:\Users\Zbyna\AppData\Roaming\newnext.me\cache\spark.bin (PUP.Optional.NextLive.A) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\inf\mncwmhffi\diablo130302.cl (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\inf\mncwmhffi\diakgcn121016.cl (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\inf\mncwmhffi\libcurl-4.dll (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\inf\mncwmhffi\libeay32.dll (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\inf\mncwmhffi\libidn-11.dll (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\inf\mncwmhffi\librtmp.dll (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\inf\mncwmhffi\libssh2.dll (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\inf\mncwmhffi\phatk121016.cl (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\inf\mncwmhffi\poclbm130302.cl (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\inf\mncwmhffi\scrypt130511.cl (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\inf\mncwmhffi\ssleay32.dll (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\inf\mncwmhffi\zlib1.dll (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.
C:\Windows\inf\mncwmhffi\bitstreams\fpgaminer_top_fixed7_197MHz.ncd (Trojan.Agent.BCM) -> Přesun do karantény a smazání se zdařilo.

(konec)
Obrázek
Domininik Výtisk
Ostrava-Poruba
Programator: PHP,HTML,MYSQL
Znalosti v: Photoshop,Sony Vegas,FL Studio

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Spravce procesu píše 99 Procesu

#6 Příspěvek od vyosek »

:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
:arrow: Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do okna vlozte skript nize
  • Kód: Vybrat vše

    srinfo;
    autoclean;
    emptyclsid;
    iedefaults;
    FFdefaults;
    CHRdefaults;
    emptyalltemp;
    resethosts;
    
  • Nasledne kliknete na Run Script
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

dominikvyt
Návštěvník
Návštěvník
Příspěvky: 69
Registrován: 24 led 2012 10:12
Bydliště: Ostrava

Re: Spravce procesu píše 99 Procesu

#7 Příspěvek od dominikvyt »

LOG z ADWCleaner :

# AdwCleaner v3.018 - Report created 11/02/2014 at 13:18:13
# Updated 28/01/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Zbyna - ZBYNA-PC
# Running from : C:\Users\Zbyna\Desktop\adwcleaner.exe
# Option : Clean

***** [ Services ] *****

Service Deleted : APNMCP

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\apn
Folder Deleted : C:\ProgramData\AskPartnerNetwork
Folder Deleted : C:\ProgramData\ParetoLogic
Folder Deleted : C:\ProgramData\Partner
Folder Deleted : C:\Program Files (x86)\AskPartnerNetwork
Folder Deleted : C:\Users\Zbyna\AppData\Local\SwvUpdater
Folder Deleted : C:\Users\Zbyna\AppData\Local\TempDir
Folder Deleted : C:\Users\Zbyna\AppData\Local\Temp\apn
Folder Deleted : C:\Users\Zbyna\AppData\Roaming\DriverCure
Folder Deleted : C:\Users\Zbyna\AppData\Roaming\ParetoLogic
File Deleted : C:\Windows\System32\roboot64.exe

***** [ Shortcuts ] *****


***** [ Registry ] *****

Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [ApnTbMon]
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{D54C859C-6066-4F31-8FE0-2AAEDCAE67D7}
Key Deleted : HKCU\Software\APN PIP
Key Deleted : HKCU\Software\AskPartnerNetwork
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\ParetoLogic
Key Deleted : HKLM\Software\AskPartnerNetwork
Key Deleted : HKLM\Software\ParetoLogic
Key Deleted : HKLM\Software\PIP
Key Deleted : [x64] HKLM\SOFTWARE\AskPartnerNetwork

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.16428


-\\ Mozilla Firefox v

-\\ Google Chrome v32.0.1700.107

[ File : C:\Users\Zbyna\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [2456 octets] - [11/02/2014 13:17:07]
AdwCleaner[S0].txt - [2257 octets] - [11/02/2014 13:18:13]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2317 octets] ##########


ZOEK mi nešel zapnout v normal mode tak sem to musek zapnout v safe modu :

Zoek.exe v5.0.0.0 Updated 10-February-2014
Tool run by Zbyna on Łt 11.02.2014 at 13:29:34,39.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64
Running in: Safe Mode NETWORK Internet Access Detected
Launched: C:\Users\Zbyna\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost

==== Creating Sample_11.02.2014_1335.zip ======================

Copied file C:\Users\Zbyna\AppData\Local\MSGBOX.EXE to sample\MSGBOX.EXE
sample\MSGBOX.EXE renamed to DD091A1C8075F061811515A1B13A5E07

C:\Users\Public\Desktop\sample_11.02.2014_1335.zip created successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-2402170196-3093424588-816858538-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5054562D-5247-006A-76A7-7A786E7484D7} deleted successfully
HKEY_USERS\S-1-5-21-2402170196-3093424588-816858538-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{5054562D-5247-006A-76A7-7A786E7484D7} deleted successfully
HKEY_USERS\S-1-5-21-2402170196-3093424588-816858538-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{318A227B-5E9F-45BD-8999-7F8F10CA4CF5} deleted successfully
HKEY_USERS\S-1-5-21-2402170196-3093424588-816858538-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{318A227B-5E9F-45BD-8999-7F8F10CA4CF5} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{5054562D-5247-006A-76A7-7A786E7484D7} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{5054562D-5247-006A-76A7-7A786E7484D7} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5054562D-5247-006A-76A7-7A786E7484D7} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5054562D-5247-006A-76A7-7A786E7484D7} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{318A227B-5E9F-45BD-8999-7F8F10CA4CF5} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45BD-8999-7F8F10CA4CF5} deleted successfully

==== Deleting CLSID Registry Values ======================

HKEY_USERS\S-1-5-21-2402170196-3093424588-816858538-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{2318C2B1-4965-11D4-9B18-009027A5CD4F} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{5054562D-5247-006A-76A7-7A786E7484D7} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{5054562D-5247-006A-76A7-7A786E7484D7} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{318A227B-5E9F-45BD-8999-7F8F10CA4CF5} deleted successfully

==== Deleting Services ======================

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MgAssistService deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\MgAssistService deleted successfully

==== FireFox Fix ======================

Deleted from C:\Users\Zbyna\AppData\Roaming\Mozilla\Firefox\Profiles\{DefaultProfilesFolder}\prefs.js:

Added to C:\Users\Zbyna\AppData\Roaming\Mozilla\Firefox\Profiles\{DefaultProfilesFolder}\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);

ProfilePath: C:\Users\Zbyna\AppData\Roaming\Mozilla\Firefox\Profiles\{DefaultProfilesFolder}

user.js not found
---- FireFox user.js and prefs.js backups ----


==== Deleting Files \ Folders ======================

C:\ProgramData\OneKey Recovery deleted
C:\Users\Zbyna\AppData\Local\genienext deleted
C:\Users\Zbyna\daemonprocess.txt deleted
C:\Users\Zbyna\.android deleted
C:\PROGRA~2\Mobogenie deleted
C:\PROGRA~2\Surftastic deleted
C:\ProgramData\Package Cache deleted
C:\Users\Zbyna\AppData\Local\Mobogenie deleted
C:\Users\Zbyna\AppData\Local\cache deleted
C:\Users\Zbyna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mobogenie deleted
C:\Users\Zbyna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SmartTweak Software deleted
C:\Windows\Syswow64\lMMLDeleteUserData42107612FX.tmp deleted
C:\Windows\Syswow64\tmpB293.tmp deleted
C:\Windows\Syswow64\tmpB320.tmp deleted
C:\Users\Zbyna\Documents\Mobogenie deleted
C:\Users\Zbyna\Desktop\Mobogenie.lnk deleted
C:\Users\Zbyna\AppData\Local\MSGBOX.EXE deleted
"C:\Users\Zbyna\AppData\Roaming\Mozilla\Firefox\Profiles\{DefaultProfilesFolder}\extensions\toolbar_PTV-RG@apn.ask.com.xpi" deleted

======== System Restore Points ========

RP139: 10.2.2014 8:22:41 - Naplánovaný kontrolní bod
RP140: 10.2.2014 18:33:36 - Nainstalováno rozhraní DirectX

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [30.11.2013 15:18]

==== Firefox Extensions ======================

==== Firefox Plugins ======================


==== Chrome Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
aaaahnibljmklpljnbpgfobmfpfhplch - C:\ProgramData\AskPartnerNetwork\Toolbar\PTV-RG\CRX\ToolbarCR.crx[]


==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.seznam.cz/?clid=13415"
"Default_Page_URL"="http://www.google.com/ig/redirectdomain ... &bmod=LENN"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
No DefaultScope Set For HKCU

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://www.seznam.cz/?clid=13415"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{03865041-9350-4492-BC8B-7AD9818F3AAF} Seznam TV Program Url="http://tv.seznam.cz/hledej?w={searchTer ... arch_13415"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE11SR"
{20276287-3720-42C5-9FDE-AC71A75F7F11} Slovnˇk CZ/EN Url="http://slovnik.seznam.cz/?q={searchTerm ... arch_13415"
{256DF56D-B8C1-4DB6-A7A0-58657278DCF7} Firmy.cz Url="http://www.firmy.cz/?q={searchTerms}&so ... arch_13415"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchT ... {startPage}"
{898BE524-D6CF-41B2-B483-26A23C252CDF} Slovnˇk EN/CZ Url="http://slovnik.seznam.cz/?q={searchTerm ... arch_13415"
{9772B727-37B5-482B-B2E0-DE12B1E6CD5C} Zbo§ˇ.cz Url="http://www.zbozi.cz/?q={searchTerms}&r= ... arch_13415"
{BF60D914-5476-4460-B89D-3B38C16C6888} Seznam Url="http://search.seznam.cz/?q={searchTerms ... arch_13415"
{D956243D-BF5C-4205-AB67-F97447B5985D} Novinky.cz Url="http://www.novinky.cz/hledej?w={searchT ... arch_13415"
{E482A354-A69A-466D-98AF-CA4B69F59D30} Encyklopedie Seznam Url="http://encyklopedie.seznam.cz/search?q= ... arch_13415"
{EF31A10B-6324-40F8-A1B0-3595E0E81560} Mapy.cz Url="http://www.mapy.cz/?query={searchTerms} ... arch_13415"

==== Reset Google Chrome ======================

C:\Users\Zbyna\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Zbyna\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\aaaahnibljmklpljnbpgfobmfpfhplch deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Mobogenie deleted successfully

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Zbyna\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Zbyna\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

No FireFox Cache found

==== Empty Chrome Cache ======================

C:\Users\Zbyna\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=2503 folders=216 144877649 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Users\Zbyna\AppData\Local\Temp will be emptied at reboot
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\Zbyna\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== EOF on Łt 11.02.2014 at 13:40:59,28 ======================
Obrázek
Domininik Výtisk
Ostrava-Poruba
Programator: PHP,HTML,MYSQL
Znalosti v: Photoshop,Sony Vegas,FL Studio

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Spravce procesu píše 99 Procesu

#8 Příspěvek od vyosek »

"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Odpovědět