Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Virus,při scanu malwarebytes zamrzá windows

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
robinham
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 10 úno 2014 23:38
Bydliště: Danov

Virus,při scanu malwarebytes zamrzá windows

#1 Příspěvek od robinham »

Ahoj,mám problém stahoval jsem pro někoho nějaké ty prográmky a o se my vymstilo cps jede věčně na 80 i 100% a pokud se snažím něco řešit přes malwarebytes padají/zamrzají windows.Zde je log:






Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 10-02-2014 01
Ran by Čistej (administrator) on ROBIN-ROBIN on 10-02-2014 23:32:34
Running from C:\Users\Čistej\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: Czech
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Adobe Systems Incorporated) c:\Program Files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe
(Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe
(Acer Incorporated) C:\Program Files (x86)\Packard Bell\Registration\GREGsvc.exe
() C:\Program Files\IMPI\ExtensionUpdaterService.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe
(Ask) C:\Program Files (x86)\Ask.com\Updater\Updater.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler.exe
(Symantec Corporation) C:\Program Files (x86)\Norton 360\Engine\21.1.0.18\N360.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler64.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Symantec Corporation) C:\Program Files (x86)\Norton 360\Engine\21.1.0.18\N360.exe
(Microsoft Corporation) C:\Windows\system32\taskmgr.exe
(CyberLink) C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe
(Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerEvent.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
(Microsoft Corporation) C:\Windows\System32\alg.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Windows\SysWOW64\DllHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [ETDCtrl] - C:\Program Files\Elantech\ETDCtrl.exe [2589992 2011-04-05] (ELAN Microelectronics Corp.)
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11786344 2011-03-28] (Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [497648 2010-07-29] (Adobe Systems Incorporated)
HKLM\...\Run: [Power Management] - C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe [1831016 2011-08-02] (Acer Incorporated)
HKLM\...\Run: [Logitech Download Assistant] - C:\Windows\System32\LogiLDA.dll [1832760 2012-09-20] (Logitech, Inc.)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [LManager] - C:\Program Files (x86)\Launch Manager\LManager.exe [1103440 2011-07-01] (Dritek System Inc.)
HKLM-x32\...\Run: [QuickTime Task] - "C:\Program Files (x86)\QuickTime\qttask.exe" -atboottime
HKLM-x32\...\Run: [ApnUpdater] - C:\Program Files (x86)\Ask.com\Updater\Updater.exe [1646216 2013-03-31] (Ask)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [mobilegeni daemon] - C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2288673239-1925662271-2590280838-1009\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-2288673239-1925662271-2590280838-1009\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [241984 2011-11-26] (NVIDIA Corporation)
AppInit_DLLs-x32: xxC:\PROGRA~3\BROWSE~1\261249~1.132\{C16C1~1\BROWSE~1.DLL => File Not Found
AppInit_DLLs-x32: c:\windows\syswow64\nvinit.dll => c:\windows\syswow64\nvinit.dll [203072 2011-11-26] (NVIDIA Corporation)
Startup: C:\Users\robik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk
ShortcutTarget: OpenOffice.org 3.3.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()

==================== Internet (Whitelisted) ====================

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.mysearchdial.com/?f=1&a=so ... 911446&ir=
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.symantec.com/redirects/secur ... =20.3.1.22
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Default_Page_URL = http://search.certified-toolbar.com?si= ... e&tid=3231
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/ ... chcust.htm
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/ ... chcust.htm
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Bar = http://search.msn.com/spbasic.htm
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,SearchURL = http://home.microsoft.com/access/autosearch.asp?p=%s
SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://start.mysearchdial.com/results.p ... 911446&ir=
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://start.mysearchdial.com/results.p ... 911446&ir=
SearchScopes: HKLM-x32 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://start.mysearchdial.com/results.p ... 911446&ir=
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://start.mysearchdial.com/results.p ... 911446&ir=
SearchScopes: HKLM-x32 - {154d339e-ccaa-49a5-9b38-6878ad4220bc} URL = http://www.searchamong.com/searchview.p ... s&bar=true
BHO: IMPI - {17E113E6-CD0E-4045-B154-65F0E57959EF} - C:\Program Files\IMPI\Extension64.dll ()
BHO: avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\PROGRA~1\AVASTS~1\Avast\aswWebRepIE64.dll No File
BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton 360\Engine64\21.1.0.18\coIEPlg.dll (Symantec Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: No Name - {0E1230F8-EA50-42A9-983C-D22ABC2EED3B} - No File
BHO-x32: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton 360\Engine\21.1.0.18\coIEPlg.dll (Symantec Corporation)
BHO-x32: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton 360\Engine\21.1.0.18\IPS\IPSBHO.DLL (Symantec Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\PROGRA~1\AVASTS~1\Avast\aswWebRepIE.dll No File
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\PROGRA~1\AVASTS~1\Avast\aswWebRepIE64.dll No File
Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine64\21.1.0.18\coIEPlg.dll (Symantec Corporation)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
Toolbar: HKLM-x32 - Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask)
Toolbar: HKLM-x32 - avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\PROGRA~1\AVASTS~1\Avast\aswWebRepIE.dll No File
Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine\21.1.0.18\coIEPlg.dll (Symantec Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

Chrome:
=======
CHR Extension: (Dokumenty Google) - C:\Users\Čistej\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-01-13]
CHR Extension: (Disk Google) - C:\Users\Čistej\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-01-13]
CHR Extension: (YouTube) - C:\Users\Čistej\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-01-13]
CHR Extension: (Vyhledávání Google) - C:\Users\Čistej\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-01-13]
CHR Extension: (iVidi Chrome Toolbar) - C:\Users\Čistej\AppData\Local\Google\Chrome\User Data\Default\Extensions\kpdhgpkkloealnjnmepfhanpcleldbef [2014-01-13]
CHR Extension: (Norton Identity Protection) - C:\Users\Čistej\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk [2014-01-13]
CHR Extension: (Peněženka Google) - C:\Users\Čistej\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-02-10]
CHR Extension: (Gmail) - C:\Users\Čistej\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-01-13]
CHR HKLM\...\Chrome\Extension: [pflphaooapbgpeakohlggbpidpppgdff] - C:\Users\robik\AppData\Local\mysearchdial.crx [2013-05-14]
CHR HKLM-x32\...\Chrome\Extension: [kpdhgpkkloealnjnmepfhanpcleldbef] - C:\Program Files (x86)\Unitech LLC\ividi\1.8.23.0\ividi.crx [2013-07-25]
CHR HKLM-x32\...\Chrome\Extension: [mkfokfffehpeedafpekjeddnmnjhmcmk] - C:\Program Files (x86)\Norton 360\Engine\21.1.0.18\Exts\Chrome.crx [2013-12-15]
CHR HKLM-x32\...\Chrome\Extension: [mocblcnaofikinigmceddfghppkkjbog] - C:\Users\robik\AppData\Roaming\PlusWinks\PlusWinks.crx [2013-06-11]
CHR HKLM-x32\...\Chrome\Extension: [nohfdhapjjlndfgjnmdlcabloeembdkj] - C:\Users\robinham\AppData\Roaming\BabSolution\CR\delta2.crx [2013-04-28]
CHR HKLM-x32\...\Chrome\Extension: [pflphaooapbgpeakohlggbpidpppgdff] - C:\Users\robik\AppData\Local\mysearchdial.crx [2013-05-14]

==================== Services (Whitelisted) =================

S2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [45248 2013-03-06] (AVAST Software)
R2 ePowerSvc; C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe [872552 2011-08-02] (Acer Incorporated)
R2 GREGService; C:\Program Files (x86)\Packard Bell\Registration\GREGsvc.exe [36456 2011-05-30] (Acer Incorporated)
R2 IMPI Updater; C:\Program Files\IMPI\ExtensionUpdaterService.exe [185856 2013-02-05] ()
R2 Live Updater Service; C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe [244624 2011-04-22] (Acer Incorporated)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 N360; C:\Program Files (x86)\Norton 360\Engine\21.1.0.18\N360.exe [264360 2013-10-08] (Symantec Corporation)
R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [4233088 2013-04-29] (Symantec Corporation)
S4 BrowserProtect; C:\ProgramData\BrowserProtect\2.6.1249.132\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe [X]

==================== Drivers (Whitelisted) ====================

R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [33400 2013-03-06] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [80816 2013-03-06] (AVAST Software)
R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [70992 2013-03-06] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65336 2013-03-06] ()
R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [1025808 2013-03-06] (AVAST Software)
R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [377920 2013-03-06] (AVAST Software)
R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [68920 2013-03-06] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [178624 2013-03-06] ()
R1 BHDrvx64; C:\Program Files (x86)\Norton 360\NortonData\21.1.0.18\Definitions\BASHDefs\20131218.001\BHDrvx64.sys [1526488 2013-12-18] (Symantec Corporation)
R1 ccSet_N360; C:\Windows\system32\drivers\N360x64\1501000.012\ccSetx64.sys [162392 2013-09-26] (Symantec Corporation)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2012-12-30] (DT Soft Ltd)
R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484952 2013-12-13] (Symantec Corporation)
R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [137648 2013-12-13] (Symantec Corporation)
R1 IDSVia64; C:\Program Files (x86)\Norton 360\NortonData\21.1.0.18\Definitions\IPSDefs\20140110.001_970\IDSvia64.sys [521944 2014-01-10] (Symantec Corporation)
S0 jdxolpdj; C:\Windows\SysWOW64\drivers\rhdcisbk.sys [61440 2013-04-10] ()
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
S3 NAVENG; C:\Program Files (x86)\Norton 360\NortonData\21.1.0.18\Definitions\VirusDefs\20140113.002\ENG64.SYS [126040 2014-01-13] (Symantec Corporation)
S3 NAVEX15; C:\Program Files (x86)\Norton 360\NortonData\21.1.0.18\Definitions\VirusDefs\20140113.002\EX64.SYS [2099288 2014-01-13] (Symantec Corporation)
S3 SRTSP; C:\Windows\system32\drivers\N360x64\1501000.012\SRTSP64.SYS [858200 2013-09-27] (Symantec Corporation)
R1 SRTSPX; C:\Windows\system32\drivers\N360x64\1501000.012\SRTSPX64.SYS [36952 2013-09-10] (Symantec Corporation)
R0 SymDS; C:\Windows\System32\drivers\N360x64\1501000.012\SYMDS64.SYS [493656 2013-09-10] (Symantec Corporation)
R0 SymEFA; C:\Windows\System32\drivers\N360x64\1501000.012\SYMEFA64.SYS [1147480 2013-09-27] (Symantec Corporation)
R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [177752 2013-12-14] (Symantec Corporation)
R1 SymIRON; C:\Windows\system32\drivers\N360x64\1501000.012\Ironx64.SYS [264280 2013-09-27] (Symantec Corporation)
R1 SymNetS; C:\Windows\system32\drivers\N360x64\1501000.012\SYMNETS.SYS [590936 2013-09-26] (Symantec Corporation)
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [X]
U0 Partizan; system32\drivers\Partizan.sys [X]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-02-10 23:32 - 2014-02-10 23:33 - 00019056 _____ () C:\Users\Čistej\Downloads\FRST.txt
2014-02-10 23:31 - 2014-02-10 23:32 - 00000000 ____D () C:\FRST
2014-02-10 23:31 - 2014-02-10 23:31 - 02151424 _____ (Farbar) C:\Users\Čistej\Downloads\FRST64.exe
2014-02-10 23:31 - 2014-02-10 23:31 - 00112107 _____ (forum.viry.cz) C:\Users\Čistej\Downloads\Nepotvrzeno 950200.crdownload
2014-02-10 22:41 - 2014-02-10 22:41 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\robik\Downloads\mbam-setup-1.75.0.1300.exe
2014-02-10 22:41 - 2014-02-10 22:41 - 00001125 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-02-10 22:41 - 2014-02-10 22:41 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-02-10 22:41 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-02-10 22:24 - 2014-02-10 23:14 - 00000168 _____ () C:\Windows\setupact.log
2014-02-10 22:24 - 2014-02-10 22:24 - 00000000 _____ () C:\Windows\setuperr.log
2014-02-10 22:23 - 2014-02-10 22:23 - 00000578 _____ () C:\Windows\PFRO.log
2014-02-10 21:32 - 2014-02-10 21:34 - 00000137 _____ () C:\Users\robik\Desktop\Nový textový dokument.txt
2014-02-10 21:19 - 2014-02-10 22:06 - 38733775 _____ () C:\Users\robik\Desktop\Robinham Server.wmv
2014-02-10 21:17 - 2014-02-10 21:17 - 02347384 _____ (ESET) C:\Users\robik\Downloads\esetsmartinstaller_csy.exe
2014-02-10 21:07 - 2014-02-10 21:07 - 00003086 _____ () C:\Windows\System32\Tasks\{089254B0-5F8F-4D61-AD07-C1D7D2913391}
2014-02-10 21:03 - 2014-02-10 21:04 - 00000000 ___RD () C:\Users\robik\Desktop\Server
2014-02-10 20:58 - 2014-02-10 20:58 - 00002772 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-02-10 20:58 - 2014-02-10 20:58 - 00000000 ____D () C:\Program Files\CCleaner
2014-02-10 20:57 - 2014-02-10 20:57 - 04721920 _____ (Piriform Ltd) C:\Users\robik\Downloads\ccsetup410.exe
2014-02-10 16:54 - 2014-02-10 16:54 - 00615801 _____ (Setup Master ) C:\Users\robik\Downloads\All Gaming 2014.exe
2014-02-10 16:14 - 2014-02-10 16:14 - 01294295 _____ (WOT Ultimate Gold ) C:\Users\robik\Downloads\WOT Ultimate Gold Hack v.3.31.exe
2014-02-08 17:40 - 2014-02-08 17:40 - 00000000 ____D () C:\Users\robik\AppData\Local\Unnamed
2014-02-06 15:49 - 2014-02-06 15:49 - 00020912 _____ () C:\Users\robik\Downloads\Chernobyl-Diaries_cz_tit_torrent.avi
2014-02-01 09:37 - 2014-02-01 09:37 - 00847304 _____ (Google Inc.) C:\Users\robik\Downloads\GoogleEarthSetup.exe
2014-02-01 09:29 - 2014-02-01 09:29 - 00847320 _____ (Google Inc.) C:\Users\robik\Downloads\GoogleEarthPluginSetup.exe
2014-01-31 18:10 - 2014-01-31 18:12 - 08065840 _____ (Cheat Engine ) C:\Users\robik\Downloads\CheatEngine63.exe
2014-01-31 18:05 - 2014-01-31 18:06 - 10414824 _____ (BlueStack Systems Inc.) C:\Users\robik\Downloads\BlueStacks-SplitInstaller_native.exe
2014-01-31 17:22 - 2014-01-31 17:22 - 03528120 _____ (Digital Generation, Inc ) C:\Users\robik\Downloads\threadmanagersetup (1).exe
2014-01-31 17:05 - 2014-01-31 20:20 - 00000000 ____D () C:\Users\robik\AppData\Local\Origin
2014-01-31 16:39 - 2014-01-31 16:39 - 00000995 _____ () C:\Users\Public\Desktop\Origin.lnk
2014-01-31 16:36 - 2014-02-10 23:04 - 00000000 ____D () C:\Program Files (x86)\Origin
2014-01-31 16:17 - 2014-01-31 16:17 - 00000000 ____D () C:\ProgramData\SystemRequirementsLab
2014-01-31 16:17 - 2014-01-31 16:17 - 00000000 ____D () C:\Program Files (x86)\SystemRequirementsLab
2014-01-31 14:12 - 2014-01-31 14:12 - 00100591 _____ () C:\Users\robik\Downloads\watch (9)
2014-01-31 14:12 - 2014-01-31 14:12 - 00100591 _____ () C:\Users\robik\Downloads\watch (8)
2014-01-31 14:12 - 2014-01-31 14:12 - 00100591 _____ () C:\Users\robik\Downloads\watch (7)
2014-01-31 14:12 - 2014-01-31 14:12 - 00100591 _____ () C:\Users\robik\Downloads\watch (6)
2014-01-31 14:12 - 2014-01-31 14:12 - 00100591 _____ () C:\Users\robik\Downloads\watch (5)
2014-01-31 14:12 - 2014-01-31 14:12 - 00100591 _____ () C:\Users\robik\Downloads\watch (4)
2014-01-31 14:12 - 2014-01-31 14:12 - 00100591 _____ () C:\Users\robik\Downloads\watch (3)
2014-01-31 14:12 - 2014-01-31 14:12 - 00100591 _____ () C:\Users\robik\Downloads\watch (2)
2014-01-31 14:12 - 2014-01-31 14:12 - 00100591 _____ () C:\Users\robik\Downloads\watch (1)
2014-01-31 14:12 - 2014-01-31 14:12 - 00100591 _____ () C:\Users\robik\Downloads\watch
2014-01-31 12:51 - 2014-02-10 22:29 - 00000000 ____D () C:\Program Files (x86)\Thread Manager
2014-01-31 12:51 - 2014-01-31 12:51 - 00000000 ____D () C:\Users\robik\AppData\Roaming\DG
2014-01-31 12:50 - 2014-01-31 12:50 - 03528120 _____ (Digital Generation, Inc ) C:\Users\robik\Downloads\threadmanagersetup.exe
2014-01-26 12:05 - 2014-01-26 12:05 - 00000000 ____D () C:\Users\robik\Documents\Moje Spore výtvory
2014-01-26 11:49 - 2014-01-26 11:49 - 00000000 ____D () C:\Program Files (x86)\Electronic Arts
2014-01-26 10:12 - 2014-02-08 19:47 - 00000000 ____D () C:\Users\robik\AppData\Roaming\Spore
2014-01-25 12:23 - 2014-01-25 12:36 - 00000912 _____ () C:\Users\robik\AppData\Local\_settings.ini
2014-01-25 12:22 - 2014-01-25 12:22 - 00090624 _____ () C:\Users\robik\Downloads\LMAOBOX_[www.unknowncheats.me]_.dll
2014-01-25 12:20 - 2014-01-25 12:20 - 00189952 _____ () C:\Users\robik\Downloads\LMAOBOXLOADER_[www.unknowncheats.me]_.exe
2014-01-25 11:31 - 2014-01-25 11:31 - 00000189 _____ () C:\Users\robik\Downloads\banned-ips.txt
2014-01-25 11:29 - 2014-01-25 11:29 - 00000412 _____ () C:\Users\robik\Downloads\banned-players.txt
2014-01-25 10:56 - 2014-01-25 10:56 - 00000297 _____ () C:\Users\robik\Downloads\Plug.Dj AutoWoot.txt
2014-01-25 10:49 - 2014-01-25 10:49 - 00000000 ____D () C:\Program Files (x86)\1C Company
2014-01-23 16:53 - 2008-07-12 08:18 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll
2014-01-23 14:56 - 2014-01-25 16:54 - 00000000 ____D () C:\Users\Public\Documents\stalker-shoc
2014-01-23 14:46 - 2014-01-23 14:46 - 00000000 ____D () C:\Program Files (x86)\THQ
2014-01-22 14:59 - 2013-12-18 21:09 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-01-22 14:59 - 2013-12-18 21:04 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-01-22 14:59 - 2013-12-18 21:04 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-01-22 14:59 - 2013-12-18 21:03 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-01-22 14:58 - 2014-01-22 14:59 - 00005175 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_51-b13.log
2014-01-20 12:30 - 2014-02-08 17:28 - 00000000 ____D () C:\Users\robik\Documents\OpenTTD
2014-01-15 03:02 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2014-01-15 03:02 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2014-01-15 03:02 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-01-15 03:02 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2014-01-15 03:02 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2014-01-15 03:02 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2014-01-15 03:02 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2014-01-15 03:02 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2014-01-15 03:02 - 2013-11-26 11:32 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-01-13 21:49 - 2014-01-13 21:49 - 00000000 ____D () C:\Users\Čistej\AppData\Roaming\WildTangent
2014-01-13 21:49 - 2014-01-13 21:49 - 00000000 ____D () C:\Users\Čistej\AppData\Local\CrashDumps
2014-01-13 21:48 - 2014-01-13 21:48 - 00000000 ____D () C:\Users\Čistej\AppData\Roaming\Origin
2014-01-13 21:48 - 2014-01-13 21:48 - 00000000 ____D () C:\Users\Čistej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2014-01-13 21:48 - 2014-01-13 21:48 - 00000000 ____D () C:\Users\Čistej\AppData\Local\Origin
2014-01-13 21:44 - 2014-01-13 21:47 - 00000000 ____D () C:\Users\Čistej\AppData\Local\LogMeIn Hamachi
2014-01-13 21:44 - 2014-01-13 21:44 - 00118280 _____ () C:\Users\Čistej\AppData\Local\GDIPFONTCACHEV1.DAT
2014-01-13 21:44 - 2014-01-13 21:44 - 00000000 ____D () C:\Users\Čistej\AppData\Roaming\Screensaver
2014-01-13 21:44 - 2014-01-13 21:44 - 00000000 ____D () C:\Users\Čistej\AppData\Local\LogMeIn
2014-01-13 21:44 - 2014-01-13 21:44 - 00000000 ____D () C:\Users\Čistej\AppData\Local\Google
2014-01-13 21:44 - 2014-01-13 21:44 - 00000000 ____D () C:\Users\Čistej\AppData\Local\Adobe
2014-01-13 21:43 - 2014-01-13 21:44 - 00002271 _____ () C:\Users\Čistej\Desktop\Google Chrome.lnk
2014-01-13 21:43 - 2014-01-13 21:44 - 00000000 ___RD () C:\Users\Čistej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-01-13 21:43 - 2014-01-13 21:44 - 00000000 ___RD () C:\Users\Čistej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-01-13 21:43 - 2014-01-13 21:43 - 00001429 _____ () C:\Users\Čistej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-01-13 21:43 - 2014-01-13 21:43 - 00000644 __RSH () C:\Users\Čistej\ntuser.pol
2014-01-13 21:43 - 2014-01-13 21:43 - 00000020 ___SH () C:\Users\Čistej\ntuser.ini
2014-01-13 21:43 - 2014-01-13 21:43 - 00000000 _SHDL () C:\Users\Čistej\Šablony
2014-01-13 21:43 - 2014-01-13 21:43 - 00000000 _SHDL () C:\Users\Čistej\Soubory cookie
2014-01-13 21:43 - 2014-01-13 21:43 - 00000000 _SHDL () C:\Users\Čistej\Poslední
2014-01-13 21:43 - 2014-01-13 21:43 - 00000000 _SHDL () C:\Users\Čistej\Okolní tiskárny
2014-01-13 21:43 - 2014-01-13 21:43 - 00000000 _SHDL () C:\Users\Čistej\Okolní síť
2014-01-13 21:43 - 2014-01-13 21:43 - 00000000 _SHDL () C:\Users\Čistej\Nabídka Start
2014-01-13 21:43 - 2014-01-13 21:43 - 00000000 _SHDL () C:\Users\Čistej\Dokumenty
2014-01-13 21:43 - 2014-01-13 21:43 - 00000000 _SHDL () C:\Users\Čistej\Documents\Obrázky
2014-01-13 21:43 - 2014-01-13 21:43 - 00000000 _SHDL () C:\Users\Čistej\Documents\Hudba
2014-01-13 21:43 - 2014-01-13 21:43 - 00000000 _SHDL () C:\Users\Čistej\Documents\Filmy
2014-01-13 21:43 - 2014-01-13 21:43 - 00000000 _SHDL () C:\Users\Čistej\Data aplikací
2014-01-13 21:43 - 2014-01-13 21:43 - 00000000 _SHDL () C:\Users\Čistej\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-01-13 21:43 - 2014-01-13 21:43 - 00000000 _SHDL () C:\Users\Čistej\AppData\Local\Data aplikací
2014-01-13 21:43 - 2014-01-13 21:43 - 00000000 ____D () C:\Users\Čistej\AppData\Roaming\Adobe
2014-01-13 21:43 - 2014-01-13 21:43 - 00000000 ____D () C:\Users\Čistej\AppData\Local\VirtualStore
2014-01-13 21:43 - 2014-01-13 21:43 - 00000000 ____D () C:\Users\Čistej
2014-01-13 21:43 - 2013-05-30 20:16 - 00000000 ____D () C:\Users\Čistej\AppData\Local\Microsoft Help
2014-01-13 21:43 - 2012-02-07 10:54 - 00000000 ____D () C:\Users\Čistej\AppData\Roaming\Macromedia
2014-01-13 21:43 - 2009-07-14 05:54 - 00000000 ___RD () C:\Users\Čistej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-01-13 21:43 - 2009-07-14 05:49 - 00000000 ___RD () C:\Users\Čistej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-01-13 18:21 - 2014-01-13 18:21 - 00000000 ____D () C:\Users\robik\AppData\Roaming\QuickScan
2014-01-13 13:45 - 2014-01-13 13:45 - 00000000 ____D () C:\Users\Guest\AppData\Local\LogMeIn
2014-01-13 13:35 - 2014-01-13 13:35 - 00003298 _____ () C:\Windows\System32\Tasks\{8EAAF0A3-3C61-43F3-A38B-B6EC29958463}
2014-01-12 23:34 - 2014-01-12 23:34 - 00000000 ____D () C:\Users\robik\AppData\Roaming\Malwarebytes
2014-01-12 23:34 - 2014-01-12 23:34 - 00000000 ____D () C:\ProgramData\Malwarebytes

==================== One Month Modified Files and Folders =======

2014-02-10 23:33 - 2014-02-10 23:32 - 00019056 _____ () C:\Users\Čistej\Downloads\FRST.txt
2014-02-10 23:32 - 2014-02-10 23:31 - 00000000 ____D () C:\FRST
2014-02-10 23:31 - 2014-02-10 23:31 - 02151424 _____ (Farbar) C:\Users\Čistej\Downloads\FRST64.exe
2014-02-10 23:31 - 2014-02-10 23:31 - 00112107 _____ (forum.viry.cz) C:\Users\Čistej\Downloads\Nepotvrzeno 950200.crdownload
2014-02-10 23:27 - 2012-02-07 10:56 - 00000000 ____D () C:\Program Files (x86)\CyberLink
2014-02-10 23:27 - 2012-02-07 10:21 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-02-10 23:26 - 2013-04-26 18:32 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-02-10 23:24 - 2009-07-14 05:45 - 00016976 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-02-10 23:24 - 2009-07-14 05:45 - 00016976 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-02-10 23:20 - 2013-03-02 19:07 - 01488335 _____ () C:\Windows\WindowsUpdate.log
2014-02-10 23:19 - 2013-05-22 20:35 - 00000000 ____D () C:\ProgramData\boost_interprocess
2014-02-10 23:17 - 2013-05-07 19:06 - 00000962 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2288673239-1925662271-2590280838-1006UA.job
2014-02-10 23:16 - 2013-01-05 02:59 - 00000962 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2288673239-1925662271-2590280838-1001UA.job
2014-02-10 23:16 - 2012-12-29 11:09 - 00000440 _____ () C:\Windows\system32\Drivers\etc\hosts.ics
2014-02-10 23:15 - 2013-01-21 17:27 - 00000356 _____ () C:\Windows\Tasks\AmiUpdXp.job
2014-02-10 23:15 - 2013-01-02 15:19 - 00000946 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-02-10 23:15 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-02-10 23:14 - 2014-02-10 22:24 - 00000168 _____ () C:\Windows\setupact.log
2014-02-10 23:12 - 2013-05-14 18:12 - 00000292 _____ () C:\Windows\Tasks\MySearchDial.job
2014-02-10 23:12 - 2013-01-02 15:19 - 00000950 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-02-10 23:08 - 2013-10-20 14:27 - 00000000 ____D () C:\Users\robik\AppData\Roaming\.minecraft
2014-02-10 23:04 - 2014-01-31 16:36 - 00000000 ____D () C:\Program Files (x86)\Origin
2014-02-10 23:04 - 2013-08-26 01:42 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-02-10 22:41 - 2014-02-10 22:41 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\robik\Downloads\mbam-setup-1.75.0.1300.exe
2014-02-10 22:41 - 2014-02-10 22:41 - 00001125 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-02-10 22:41 - 2014-02-10 22:41 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-02-10 22:29 - 2014-01-31 12:51 - 00000000 ____D () C:\Program Files (x86)\Thread Manager
2014-02-10 22:24 - 2014-02-10 22:24 - 00000000 _____ () C:\Windows\setuperr.log
2014-02-10 22:23 - 2014-02-10 22:23 - 00000578 _____ () C:\Windows\PFRO.log
2014-02-10 22:16 - 2013-05-04 04:30 - 00000000 ____D () C:\Users\robik\AppData\Roaming\Skype
2014-02-10 22:06 - 2014-02-10 21:19 - 38733775 _____ () C:\Users\robik\Desktop\Robinham Server.wmv
2014-02-10 21:34 - 2014-02-10 21:32 - 00000137 _____ () C:\Users\robik\Desktop\Nový textový dokument.txt
2014-02-10 21:17 - 2014-02-10 21:17 - 02347384 _____ (ESET) C:\Users\robik\Downloads\esetsmartinstaller_csy.exe
2014-02-10 21:15 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2014-02-10 21:13 - 2013-08-04 15:58 - 00000000 ____D () C:\Users\robik\AppData\Roaming\vlc
2014-02-10 21:13 - 2013-08-04 14:14 - 00000000 ____D () C:\Users\robik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2014-02-10 21:11 - 2013-05-11 10:23 - 00000000 ___RD () C:\Users\robik\Desktop\Programy
2014-02-10 21:07 - 2014-02-10 21:07 - 00003086 _____ () C:\Windows\System32\Tasks\{089254B0-5F8F-4D61-AD07-C1D7D2913391}
2014-02-10 21:05 - 2013-05-04 00:57 - 00000000 ___RD () C:\Users\robik\Desktop\Hry
2014-02-10 21:04 - 2014-02-10 21:03 - 00000000 ___RD () C:\Users\robik\Desktop\Server
2014-02-10 21:03 - 2013-05-11 10:17 - 00000000 ___RD () C:\Users\robik\Desktop\Obrázky
2014-02-10 21:01 - 2013-12-19 21:01 - 00000000 ____D () C:\Users\robik\AppData\Roaming\BitTorrent
2014-02-10 21:01 - 2013-12-14 23:09 - 00000000 ___RD () C:\Users\robik\Desktop\Videa
2014-02-10 21:01 - 2013-10-21 17:39 - 00000000 ____D () C:\Users\robik\AppData\Roaming\DAEMON Tools Lite
2014-02-10 21:00 - 2013-05-04 03:26 - 00000000 ____D () C:\Users\robik\AppData\Local\CrashDumps
2014-02-10 21:00 - 2007-07-12 02:49 - 00000000 ____D () C:\Windows\Panther
2014-02-10 20:59 - 2013-01-02 15:19 - 00000000 ____D () C:\Program Files (x86)\Google
2014-02-10 20:58 - 2014-02-10 20:58 - 00002772 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-02-10 20:58 - 2014-02-10 20:58 - 00000000 ____D () C:\Program Files\CCleaner
2014-02-10 20:57 - 2014-02-10 20:57 - 04721920 _____ (Piriform Ltd) C:\Users\robik\Downloads\ccsetup410.exe
2014-02-10 17:16 - 2013-01-05 02:59 - 00000910 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2288673239-1925662271-2590280838-1001Core.job
2014-02-10 16:54 - 2014-02-10 16:54 - 00615801 _____ (Setup Master ) C:\Users\robik\Downloads\All Gaming 2014.exe
2014-02-10 16:14 - 2014-02-10 16:14 - 01294295 _____ (WOT Ultimate Gold ) C:\Users\robik\Downloads\WOT Ultimate Gold Hack v.3.31.exe
2014-02-10 08:17 - 2013-05-12 15:14 - 00000910 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2288673239-1925662271-2590280838-1006Core1ce4f1baf67845.job
2014-02-10 08:00 - 2013-11-21 20:16 - 00003938 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{31EF1783-4B18-40F2-9514-340298C37799}
2014-02-09 16:18 - 2013-06-10 16:29 - 00000000 ____D () C:\Users\robik\AppData\Roaming\Mozilla
2014-02-09 16:03 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-02-08 19:47 - 2014-01-26 10:12 - 00000000 ____D () C:\Users\robik\AppData\Roaming\Spore
2014-02-08 17:40 - 2014-02-08 17:40 - 00000000 ____D () C:\Users\robik\AppData\Local\Unnamed
2014-02-08 17:28 - 2014-01-20 12:30 - 00000000 ____D () C:\Users\robik\Documents\OpenTTD
2014-02-08 14:49 - 2013-08-29 20:46 - 00000000 ____D () C:\ProgramData\Origin
2014-02-06 15:49 - 2014-02-06 15:49 - 00020912 _____ () C:\Users\robik\Downloads\Chernobyl-Diaries_cz_tit_torrent.avi
2014-02-05 20:26 - 2013-04-26 18:32 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-02-05 20:26 - 2013-04-26 18:32 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-02-05 20:26 - 2012-02-07 10:51 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-02-04 22:36 - 2013-05-04 00:49 - 00000000 ____D () C:\Users\robik\AppData\Local\LogMeIn Hamachi
2014-02-04 22:00 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Public\Libraries
2014-02-03 18:08 - 2013-11-13 16:46 - 00000000 ____D () C:\Program Files (x86)\WarThunder
2014-02-03 17:14 - 2012-07-27 18:33 - 00669560 _____ () C:\Windows\system32\perfh005.dat
2014-02-03 17:14 - 2012-07-27 18:33 - 00141930 _____ () C:\Windows\system32\perfc005.dat
2014-02-03 17:14 - 2009-07-14 06:13 - 01586066 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-02-02 18:09 - 2013-05-13 17:12 - 00290184 _____ () C:\Windows\SysWOW64\PnkBstrB.xtr
2014-02-02 18:09 - 2013-05-10 22:21 - 00280904 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0
2014-02-01 10:48 - 2013-05-11 10:24 - 00000000 ___RD () C:\Users\robik\Desktop\Hudba
2014-02-01 09:38 - 2013-05-04 00:49 - 00000000 ____D () C:\Users\robik\AppData\Local\Google
2014-02-01 09:37 - 2014-02-01 09:37 - 00847304 _____ (Google Inc.) C:\Users\robik\Downloads\GoogleEarthSetup.exe
2014-02-01 09:29 - 2014-02-01 09:29 - 00847320 _____ (Google Inc.) C:\Users\robik\Downloads\GoogleEarthPluginSetup.exe
2014-01-31 20:20 - 2014-01-31 17:05 - 00000000 ____D () C:\Users\robik\AppData\Local\Origin
2014-01-31 19:39 - 2013-05-04 03:48 - 00000000 ____D () C:\Users\robik\Documents\Euro Truck Simulator 2
2014-01-31 18:40 - 2013-05-04 00:49 - 00000000 ____D () C:\Users\robik\AppData\Local\VirtualStore
2014-01-31 18:22 - 2013-10-04 13:15 - 00000000 ____D () C:\Users\robik\AppData\Roaming\OpenCandy
2014-01-31 18:14 - 2013-08-07 11:46 - 00000000 ____D () C:\ProgramData\BlueStacksSetup
2014-01-31 18:12 - 2014-01-31 18:10 - 08065840 _____ (Cheat Engine ) C:\Users\robik\Downloads\CheatEngine63.exe
2014-01-31 18:06 - 2014-01-31 18:05 - 10414824 _____ (BlueStack Systems Inc.) C:\Users\robik\Downloads\BlueStacks-SplitInstaller_native.exe
2014-01-31 17:22 - 2014-01-31 17:22 - 03528120 _____ (Digital Generation, Inc ) C:\Users\robik\Downloads\threadmanagersetup (1).exe
2014-01-31 17:09 - 2013-08-29 20:48 - 00000000 ____D () C:\Users\robik\AppData\Roaming\Origin
2014-01-31 16:39 - 2014-01-31 16:39 - 00000995 _____ () C:\Users\Public\Desktop\Origin.lnk
2014-01-31 16:39 - 2013-04-10 18:14 - 00002385 _____ () C:\Windows\wininit.ini
2014-01-31 16:17 - 2014-01-31 16:17 - 00000000 ____D () C:\ProgramData\SystemRequirementsLab
2014-01-31 16:17 - 2014-01-31 16:17 - 00000000 ____D () C:\Program Files (x86)\SystemRequirementsLab
2014-01-31 14:12 - 2014-01-31 14:12 - 00100591 _____ () C:\Users\robik\Downloads\watch (9)
2014-01-31 14:12 - 2014-01-31 14:12 - 00100591 _____ () C:\Users\robik\Downloads\watch (8)
2014-01-31 14:12 - 2014-01-31 14:12 - 00100591 _____ () C:\Users\robik\Downloads\watch (7)
2014-01-31 14:12 - 2014-01-31 14:12 - 00100591 _____ () C:\Users\robik\Downloads\watch (6)
2014-01-31 14:12 - 2014-01-31 14:12 - 00100591 _____ () C:\Users\robik\Downloads\watch (5)
2014-01-31 14:12 - 2014-01-31 14:12 - 00100591 _____ () C:\Users\robik\Downloads\watch (4)
2014-01-31 14:12 - 2014-01-31 14:12 - 00100591 _____ () C:\Users\robik\Downloads\watch (3)
2014-01-31 14:12 - 2014-01-31 14:12 - 00100591 _____ () C:\Users\robik\Downloads\watch (2)
2014-01-31 14:12 - 2014-01-31 14:12 - 00100591 _____ () C:\Users\robik\Downloads\watch (1)
2014-01-31 14:12 - 2014-01-31 14:12 - 00100591 _____ () C:\Users\robik\Downloads\watch
2014-01-31 12:51 - 2014-01-31 12:51 - 00000000 ____D () C:\Users\robik\AppData\Roaming\DG
2014-01-31 12:50 - 2014-01-31 12:50 - 03528120 _____ (Digital Generation, Inc ) C:\Users\robik\Downloads\threadmanagersetup.exe
2014-01-31 09:15 - 2012-12-30 13:00 - 00000000 ____D () C:\hry
2014-01-30 00:12 - 2013-09-14 11:31 - 00000188 _____ () C:\Users\robik\AppData\Roaming\WB.CFG
2014-01-30 00:12 - 2013-05-14 18:12 - 00003238 _____ () C:\Windows\System32\Tasks\MySearchDial
2014-01-26 12:05 - 2014-01-26 12:05 - 00000000 ____D () C:\Users\robik\Documents\Moje Spore výtvory
2014-01-26 11:49 - 2014-01-26 11:49 - 00000000 ____D () C:\Program Files (x86)\Electronic Arts
2014-01-25 16:54 - 2014-01-23 14:56 - 00000000 ____D () C:\Users\Public\Documents\stalker-shoc
2014-01-25 12:36 - 2014-01-25 12:23 - 00000912 _____ () C:\Users\robik\AppData\Local\_settings.ini
2014-01-25 12:22 - 2014-01-25 12:22 - 00090624 _____ () C:\Users\robik\Downloads\LMAOBOX_[www.unknowncheats.me]_.dll
2014-01-25 12:20 - 2014-01-25 12:20 - 00189952 _____ () C:\Users\robik\Downloads\LMAOBOXLOADER_[www.unknowncheats.me]_.exe
2014-01-25 11:31 - 2014-01-25 11:31 - 00000189 _____ () C:\Users\robik\Downloads\banned-ips.txt
2014-01-25 11:29 - 2014-01-25 11:29 - 00000412 _____ () C:\Users\robik\Downloads\banned-players.txt
2014-01-25 11:14 - 2013-05-04 00:49 - 00000000 ____D () C:\Users\robik\AppData\Local\Adobe
2014-01-25 10:56 - 2014-01-25 10:56 - 00000297 _____ () C:\Users\robik\Downloads\Plug.Dj AutoWoot.txt
2014-01-25 10:49 - 2014-01-25 10:49 - 00000000 ____D () C:\Program Files (x86)\1C Company
2014-01-23 16:54 - 2013-05-11 09:57 - 00000000 ____D () C:\Users\robik\Documents\My Games
2014-01-23 16:43 - 2013-11-14 12:48 - 00000000 ____D () C:\Program Files (x86)\Codemasters
2014-01-23 14:46 - 2014-01-23 14:46 - 00000000 ____D () C:\Program Files (x86)\THQ
2014-01-22 14:59 - 2014-01-22 14:58 - 00005175 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_51-b13.log
2014-01-22 14:59 - 2013-11-12 17:02 - 00000000 ____D () C:\ProgramData\Oracle
2014-01-22 14:59 - 2013-06-25 10:30 - 00000000 ____D () C:\Program Files (x86)\Java
2014-01-18 21:53 - 2013-12-11 20:18 - 00003584 _____ () C:\Users\robik\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-01-15 06:09 - 2009-07-14 05:45 - 00460664 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-01-15 06:06 - 2013-05-29 19:05 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-01-15 06:04 - 2013-08-05 02:00 - 00000000 ____D () C:\Windows\system32\MRT
2014-01-15 06:00 - 2013-01-19 11:12 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-01-14 01:42 - 2013-06-15 19:26 - 00000000 ____D () C:\Program Files (x86)\Speed Analysis 2
2014-01-13 22:31 - 2013-02-20 20:06 - 00000000 ____D () C:\Program Files\IMPI
2014-01-13 21:49 - 2014-01-13 21:49 - 00000000 ____D () C:\Users\Čistej\AppData\Roaming\WildTangent
2014-01-13 21:49 - 2014-01-13 21:49 - 00000000 ____D () C:\Users\Čistej\AppData\Local\CrashDumps
2014-01-13 21:48 - 2014-01-13 21:48 - 00000000 ____D () C:\Users\Čistej\AppData\Roaming\Origin
2014-01-13 21:48 - 2014-01-13 21:48 - 00000000 ____D () C:\Users\Čistej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2014-01-13 21:48 - 2014-01-13 21:48 - 00000000 ____D () C:\Users\Čistej\AppData\Local\Origin
2014-01-13 21:48 - 2012-12-24 18:34 - 00000000 ____D () C:\Windows\System32\Tasks\Games
2014-01-13 21:47 - 2014-01-13 21:44 - 00000000 ____D () C:\Users\Čistej\AppData\Local\LogMeIn Hamachi
2014-01-13 21:44 - 2014-01-13 21:44 - 00118280 _____ () C:\Users\Čistej\AppData\Local\GDIPFONTCACHEV1.DAT
2014-01-13 21:44 - 2014-01-13 21:44 - 00000000 ____D () C:\Users\Čistej\AppData\Roaming\Screensaver
2014-01-13 21:44 - 2014-01-13 21:44 - 00000000 ____D () C:\Users\Čistej\AppData\Local\LogMeIn
2014-01-13 21:44 - 2014-01-13 21:44 - 00000000 ____D () C:\Users\Čistej\AppData\Local\Google
2014-01-13 21:44 - 2014-01-13 21:44 - 00000000 ____D () C:\Users\Čistej\AppData\Local\Adobe
2014-01-13 21:44 - 2014-01-13 21:43 - 00002271 _____ () C:\Users\Čistej\Desktop\Google Chrome.lnk
2014-01-13 21:44 - 2014-01-13 21:43 - 00000000 ___RD () C:\Users\Čistej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-01-13 21:44 - 2014-01-13 21:43 - 00000000 ___RD () C:\Users\Čistej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-01-13 21:43 - 2014-01-13 21:43 - 00001429 _____ () C:\Users\Čistej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-01-13 21:43 - 2014-01-13 21:43 - 00000644 __RSH () C:\Users\Čistej\ntuser.pol
2014-01-13 21:43 - 2014-01-13 21:43 - 00000020 ___SH () C:\Users\Čistej\ntuser.ini
2014-01-13 21:43 - 2014-01-13 21:43 - 00000000 _SHDL () C:\Users\Čistej\Šablony
2014-01-13 21:43 - 2014-01-13 21:43 - 00000000 _SHDL () C:\Users\Čistej\Soubory cookie
2014-01-13 21:43 - 2014-01-13 21:43 - 00000000 _SHDL () C:\Users\Čistej\Poslední
2014-01-13 21:43 - 2014-01-13 21:43 - 00000000 _SHDL () C:\Users\Čistej\Okolní tiskárny
2014-01-13 21:43 - 2014-01-13 21:43 - 00000000 _SHDL () C:\Users\Čistej\Okolní síť
2014-01-13 21:43 - 2014-01-13 21:43 - 00000000 _SHDL () C:\Users\Čistej\Nabídka Start
2014-01-13 21:43 - 2014-01-13 21:43 - 00000000 _SHDL () C:\Users\Čistej\Dokumenty
2014-01-13 21:43 - 2014-01-13 21:43 - 00000000 _SHDL () C:\Users\Čistej\Documents\Obrázky
2014-01-13 21:43 - 2014-01-13 21:43 - 00000000 _SHDL () C:\Users\Čistej\Documents\Hudba
2014-01-13 21:43 - 2014-01-13 21:43 - 00000000 _SHDL () C:\Users\Čistej\Documents\Filmy
2014-01-13 21:43 - 2014-01-13 21:43 - 00000000 _SHDL () C:\Users\Čistej\Data aplikací
2014-01-13 21:43 - 2014-01-13 21:43 - 00000000 _SHDL () C:\Users\Čistej\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-01-13 21:43 - 2014-01-13 21:43 - 00000000 _SHDL () C:\Users\Čistej\AppData\Local\Data aplikací
2014-01-13 21:43 - 2014-01-13 21:43 - 00000000 ____D () C:\Users\Čistej\AppData\Roaming\Adobe
2014-01-13 21:43 - 2014-01-13 21:43 - 00000000 ____D () C:\Users\Čistej\AppData\Local\VirtualStore
2014-01-13 21:43 - 2014-01-13 21:43 - 00000000 ____D () C:\Users\Čistej
2014-01-13 18:21 - 2014-01-13 18:21 - 00000000 ____D () C:\Users\robik\AppData\Roaming\QuickScan
2014-01-13 18:15 - 2013-10-04 14:42 - 00000000 ____D () C:\ProgramData\Package Cache
2014-01-13 13:45 - 2014-01-13 13:45 - 00000000 ____D () C:\Users\Guest\AppData\Local\LogMeIn
2014-01-13 13:45 - 2013-04-26 13:18 - 00118280 _____ () C:\Users\Guest\AppData\Local\GDIPFONTCACHEV1.DAT
2014-01-13 13:45 - 2013-04-26 13:18 - 00000000 ____D () C:\Users\Guest\AppData\Local\LogMeIn Hamachi
2014-01-13 13:45 - 2013-04-26 13:17 - 00000000 ___RD () C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-01-13 13:45 - 2013-04-26 13:17 - 00000000 ___RD () C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-01-13 13:44 - 2013-04-26 13:18 - 00001425 _____ () C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-01-13 13:35 - 2014-01-13 13:35 - 00003298 _____ () C:\Windows\System32\Tasks\{8EAAF0A3-3C61-43F3-A38B-B6EC29958463}
2014-01-13 13:27 - 2013-06-15 19:26 - 00000000 ____D () C:\ProgramData\IBUpdaterService
2014-01-13 13:27 - 2013-04-09 18:00 - 00000000 ____D () C:\Program Files (x86)\MagniPic
2014-01-13 13:26 - 2013-05-14 18:11 - 00000000 ____D () C:\Program Files (x86)\Mysearchdial
2014-01-13 12:18 - 2013-02-08 23:05 - 00000000 ____D () C:\Program Files (x86)\NCH Software
2014-01-13 11:55 - 2013-05-03 23:12 - 00000000 ____D () C:\Users\robik
2014-01-13 11:55 - 2013-01-09 17:09 - 00000000 ____D () C:\Program Files (x86)\Protected Search
2014-01-13 11:53 - 2014-01-05 01:34 - 00000000 ____D () C:\Program Files (x86)\SplitMediaLabs
2014-01-13 11:53 - 2013-11-30 12:19 - 00000000 ____D () C:\Program Files (x86)\WorldPainter
2014-01-13 11:53 - 2013-11-21 20:13 - 00000000 ____D () C:\Program Files (x86)\GreyGray
2014-01-13 11:53 - 2013-08-29 20:52 - 00000000 ____D () C:\Program Files (x86)\Origin Games
2014-01-13 11:53 - 2013-08-09 16:02 - 00000000 ____D () C:\Program Files (x86)\Ubisoft
2014-01-13 11:53 - 2013-06-28 19:03 - 00000000 ____D () C:\Users\Robinham98
2014-01-13 11:53 - 2013-05-12 14:10 - 00000000 ____D () C:\Users\robik\AppData\Roaming\SNS
2014-01-13 11:53 - 2013-04-28 05:15 - 00000000 ____D () C:\Users\robinham
2014-01-13 11:53 - 2013-04-26 13:16 - 00000000 ____D () C:\Users\Guest
2014-01-13 11:53 - 2013-04-09 18:03 - 00000000 ____D () C:\ProgramData\Premium
2014-01-13 11:53 - 2013-04-09 18:00 - 00000000 ____D () C:\ProgramData\MyaagniPPicc
2014-01-13 11:53 - 2013-04-09 18:00 - 00000000 ____D () C:\ProgramData\InstallMate
2014-01-13 11:53 - 2013-01-09 17:09 - 00000000 ____D () C:\Windows\System32\Tasks\ProtectedSearch
2014-01-13 11:53 - 2012-12-24 18:25 - 00000000 ____D () C:\Users\Robin
2014-01-13 11:53 - 2012-02-07 10:51 - 00000000 ____D () C:\ProgramData\Norton
2014-01-13 11:52 - 2013-09-12 11:07 - 00000000 ____D () C:\Program Files (x86)\BRS
2014-01-13 11:52 - 2013-08-05 13:30 - 00000000 ____D () C:\Users\robik\AppData\Local\Apps\2.0
2014-01-13 11:52 - 2010-11-21 08:16 - 00000000 ___RD () C:\Users\Public\Recorded TV
2014-01-13 11:52 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\registration
2014-01-13 11:50 - 2014-01-05 01:33 - 00000000 ____D () C:\Users\robik\AppData\Roaming\SplitMediaLabs
2014-01-13 11:50 - 2013-05-16 22:01 - 00000000 ____D () C:\ProgramData\Sony
2014-01-13 11:50 - 2013-02-20 19:27 - 00000000 ____D () C:\ProgramData\SplitMediaLabs
2014-01-13 11:49 - 2013-05-04 00:07 - 00000000 ____D () C:\Program Files (x86)\Eidos Interactive
2014-01-12 23:34 - 2014-01-12 23:34 - 00000000 ____D () C:\Users\robik\AppData\Roaming\Malwarebytes
2014-01-12 23:34 - 2014-01-12 23:34 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-01-12 19:05 - 2013-08-05 13:30 - 00000000 ____D () C:\Users\robik\AppData\Local\Deployment
2014-01-12 18:34 - 2014-01-05 01:34 - 00000000 __SHD () C:\Windows\SysWOW64\AI_RecycleBin

Files to move or delete:
====================
C:\Users\robik\worldpainter_1.7.0.exe
C:\Users\robik\worldpainter_1.7.1.exe


Some content of TEMP:
====================
C:\Users\robik\AppData\Local\Temp\DownloadManager.exe
C:\Users\robik\AppData\Local\Temp\vlc-2.1.3-win32.exe
C:\Users\robinham\AppData\Local\Temp\DeltaTB.exe
C:\Users\robinham\AppData\Local\Temp\i4jdel0.exe
C:\Users\robinham\AppData\Local\Temp\SkypeSetup.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2014-01-29 23:49

==================== End Of Log ============================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Virus,při scanu malwarebytes zamrzá windows

#2 Příspěvek od vyosek »

Zdravim :)

:arrow: Stahnete Shortcut Cleaner http://www.bleepingcomputer.com/downloa ... t-cleaner/
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Spustte tradicne dvouklikem
  • Probehne skenovani a pak se objevi log, pripadne bude ulozen v miste spusteni jako sc-cleaner.txt, ten sem vlozte
:arrow: Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
  • Ulozte nejlepe na plochu
  • Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
  • Probehne vytvoreni zalohy a nasledne prohledavani
  • Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte
:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

robinham
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 10 úno 2014 23:38
Bydliště: Danov

Re: Virus,při scanu malwarebytes zamrzá windows

#3 Příspěvek od robinham »

Log AdwCleaner:

# AdwCleaner v3.018 - Report created 12/02/2014 at 10:07:03
# Updated 28/01/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : robik - ROBIN-ROBIN
# Running from : C:\Users\robik\Desktop\adwcleaner.exe
# Option : Clean

***** [ Services ] *****

[#] Service Deleted : BrowserProtect

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\MyaagniPPicc
Folder Deleted : C:\ProgramData\AlawarWrapper
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyaagniPPicc
Folder Deleted : C:\Program Files (x86)\Red Sky
Folder Deleted : C:\Windows\Installer\{A0C9DF2B-89B5-4483-8983-18A68200F1B4}
Folder Deleted : C:\Users\Robin\AppData\LocalLow\SimplyTech
Folder Deleted : C:\Users\Robin\AppData\Roaming\Babylon
Folder Deleted : C:\Users\Robin\AppData\Roaming\CRMixiDJTB
Folder Deleted : C:\Users\Robin\AppData\Roaming\Industriya
Folder Deleted : C:\Users\Robin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DownTango
Folder Deleted : C:\Users\robinham98\AppData\LocalLow\AskToolbar
Folder Deleted : C:\Users\robinham\AppData\LocalLow\AskToolbar
Folder Deleted : C:\Users\robinham\AppData\LocalLow\Industriya
Folder Deleted : C:\Users\robinham\AppData\LocalLow\SimplyTech
Folder Deleted : C:\Users\robinham\AppData\LocalLow\SweetIM
Folder Deleted : C:\Users\robinham\AppData\Roaming\BabSolution
Folder Deleted : C:\Users\robinham\AppData\Roaming\Babylon
Folder Deleted : C:\Users\robinham\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BrowserProtect
Folder Deleted : C:\Users\robik\AppData\Local\PackageAware
Folder Deleted : C:\Users\robik\AppData\Local\AlawarWrapper
Folder Deleted : C:\Users\robik\AppData\Roaming\SpeedAnalysis2
Folder Deleted : C:\Users\Čistej\AppData\LocalLow\AskToolbar
File Deleted : C:\Windows\System32\roboot64.exe
File Deleted : C:\Users\robik\AppData\Local\mysearchdial.crx
File Deleted : C:\Users\robik\AppData\Local\Temp\Uninstall.exe
File Deleted : C:\Users\robik\AppData\Roaming\speedanalysis.ico
File Deleted : C:\Users\robinham\AppData\Local\Google\Chrome\User Data\Default\bProtector Web Data
File Deleted : C:\Users\robinham\AppData\Local\Google\Chrome\User Data\Default\bprotectorpreferences
File Deleted : C:\Windows\System32\Tasks\AmiUpdXp
File Deleted : C:\Windows\System32\Tasks\BrowserProtect
File Deleted : C:\Windows\System32\Tasks\EPUpdater
File Deleted : C:\Windows\Tasks\MySearchDial.job
File Deleted : C:\Windows\System32\Tasks\MySearchDial
File Deleted : C:\Windows\System32\Tasks\ProtectedSearch
File Deleted : C:\Windows\System32\Tasks\Scheduled Update for Ask Toolbar

***** [ Shortcuts ] *****


***** [ Registry ] *****

Value Deleted : HKCU\Software\Mozilla\Firefox\Extensions [pluswinks@PlusWinks]
Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [pluswinks@PlusWinks]
Value Deleted : HKCU\Software\Mozilla\Firefox\Extensions [speedanalysis02@SpeedAnalysis.com]
Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [speedanalysis02@SpeedAnalysis.com]
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\nohfdhapjjlndfgjnmdlcabloeembdkj
Key Deleted : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs [C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgHelperApp.exe]
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs [C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarProxy.dll]
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SP_008a99b9
Key Deleted : HKCU\Software\d28888b43db840
Key Deleted : HKLM\SOFTWARE\d28888b43db840
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3FC27B34-0C19-49DA-875E-1875DDD4A6B2}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4ED063C9-4A0B-4B44-A9DC-23AFF424A0D3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A4A0CB15-8465-4F58-A7E5-73084EA2A064}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C358B3D0-B911-41E3-A276-E7D43A6BA56D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{EF8E6DEE-EE93-F108-B9A5-336BB8418920}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{8DA8B89E-0C65-403B-8231-AB22ECFA0687}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A928E66C-F501-4E66-9953-855C712F93B2}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B0E28FA0-DF07-44B6-95CE-48BE26DB9266}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E6B4EE8F-C38E-4994-BE28-229A3F92262C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FCA8936E-403A-4487-A966-70F80F1D5A6A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E1230F8-EA50-42A9-983C-D22ABC2EED3B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{6F6A5334-78E9-4D9B-8182-8B41EA8C39EF}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CFD485F0-96BD-47CD-BB6D-CD7DDA95F102}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{8DA8B89E-0C65-403B-8231-AB22ECFA0687}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{A36867C6-302D-49FC-9D8E-1EB037B5F1AB}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{A928E66C-F501-4E66-9953-855C712F93B2}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{B0E28FA0-DF07-44B6-95CE-48BE26DB9266}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E6B4EE8F-C38E-4994-BE28-229A3F92262C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FCA8936E-403A-4487-A966-70F80F1D5A6A}
Key Deleted : HKLM\Software\DownTango
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\mysearchdial
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{EB03EF39-C655-D560-FA95-79182B837D64}
Data Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - xxC:\PROGRA~3\BROWSE~1\261249~1.132\{C16C1~1\BROWSE~1.DLL
Key Deleted : HKLM\Software\Classes\Installer\Features\B2FD9C0A5B9838449838816A28001F4B
Key Deleted : HKLM\Software\Classes\Installer\Features\EB6AF8AEEB922FA4392548F13812E50B
Key Deleted : HKLM\Software\Classes\Installer\Products\B2FD9C0A5B9838449838816A28001F4B
Key Deleted : HKLM\Software\Classes\Installer\Products\EB6AF8AEEB922FA4392548F13812E50B

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.16428

Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Default_Page_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [Start Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [Start Default_Page_URL]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]

-\\ Google Chrome v32.0.1700.107

[ File : C:\Users\robinham98\AppData\Local\Google\Chrome\User Data\Default\preferences ]


[ File : C:\Users\robinham\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted : homepage
Deleted : search_url
Deleted : urls_to_restore_on_startup

[ File : C:\Users\robik\AppData\Local\Google\Chrome\User Data\Default\preferences ]


[ File : C:\Users\Čistej\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [9003 octets] - [12/02/2014 10:06:05]
AdwCleaner[S0].txt - [8436 octets] - [12/02/2014 10:07:03]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [8496 octets] ##########

JRT:

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.1 (02.04.2014:1)
OS: Windows 7 Home Premium x64
Ran by robik on st 12.02.2014 at 10:02:07,92
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values

Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\apnupdater
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_DLLs
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_DLLs
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\DisplayName
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\URL
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\DisplayName
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\URL
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{D4027C7F-154A-4066-A1AD-4243D8127440}



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\sim-packages
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\sweetim_urlsearchhook.toolbarurlsearchhook
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\wtb.band
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\wtb.band.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{B302A1BD-0157-49FA-90F1-4E94F22C7B4B}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\escort.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\escortapp.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\escorteng.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\escortlbr.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\esrv.exe
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\extension.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\genericasktoolbar.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{A928E66C-F501-4E66-9953-855C712F93B2}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{CC99A798-FD3D-4AB4-969E-6071612524F9}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{A36867C6-302D-49FC-9D8E-1EB037B5F1AB}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{F4EBB1E2-21F3-4786-8CF4-16EC5925867F}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{1D5A4199-956E-49BC-B89F-6A35C57C0D13}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{EEE6C35F-6118-11DC-9C72-001320C79847}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\ctoolbar
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\filescout
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\installcore
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\mysearchdial
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\softonic
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\simplytech
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CC99A798-FD3D-4AB4-969E-6071612524F9}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-2288673239-1925662271-2590280838-1006\Software\sweetim
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\babylon
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\conduit
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\ctoolbar
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\datamngr
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\installcore
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\sweetim
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\systweak
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\extension.extensionhelperobject
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\extension.extensionhelperobject.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\genericasktoolbar.toolbarwnd
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\genericasktoolbar.toolbarwnd.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\installer\features\a28b4d68debaa244eb686953b7074fef
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\installer\products\a28b4d68debaa244eb686953b7074fef
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\installer\upgradecodes\f928123a039649549966d4c29d35b1c9
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\mediaplayer.graphicsutils
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\mediaplayer.graphicsutils.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\mysearchdial.mysearchdialappcore
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\mysearchdial.mysearchdialappcore.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\prod.cap
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\sweetim_urlsearchhook.toolbarurlsearchhook.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\wtb.notificationsource
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\wtb.notificationsource.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\wtb.sourcesinkimpl
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\wtb.sourcesinkimpl.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\wtb.toolbarinfo
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\wtb.toolbarinfo.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEE6C367-6118-11DC-9C72-001320C79847}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\au__rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\au__rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\sweetim_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\sweetim_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\sweetpacksupdatemanager_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\sweetpacksupdatemanager_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Paths\sweetim.exe
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\downtango
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\mysearchdial
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\protected search_is1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\sweetim bundle by sweetpacks
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{86d4b82a-abed-442a-be86-96357b70f4fe}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{96e2e493-c484-43e3-9b95-d62ee7d40d3a}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{99c91fc5-db5b-4aa0-bb70-5d89c5a4df96}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{a0c9df2b-89b5-4483-8983-18a68200f1b4}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{b49962af-cab9-44de-8729-a4369f44ba0d}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{ea8fa6be-29be-4af2-9352-841f83215eb0}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\sp global
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\sprotector
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{EEE6C35D-6118-11DC-9C72-001320C79847}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{EEE6C35D-6118-11DC-9C72-001320C79847}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\TaskScheduler_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\TaskScheduler_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_for_slender-the-eight-pages (1)_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_for_slender-the-eight-pages (1)_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_for_slender-the-eight-pages (2)_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_for_slender-the-eight-pages (2)_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_for_slender-the-eight-pages_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_for_slender-the-eight-pages_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\TaskScheduler_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\TaskScheduler_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\SoftonicDownloader_for_slender-the-eight-pages (1)_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\SoftonicDownloader_for_slender-the-eight-pages (1)_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\SoftonicDownloader_for_slender-the-eight-pages (2)_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\SoftonicDownloader_for_slender-the-eight-pages (2)_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\SoftonicDownloader_for_slender-the-eight-pages_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\SoftonicDownloader_for_slender-the-eight-pages_RASMANCS
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{154d339e-ccaa-49a5-9b38-6878ad4220bc}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5bfbc635-8e77-459e-b715-9cdd671b323d}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{5bfbc635-8e77-459e-b715-9cdd671b323d}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}
Successfully deleted: [Registry Key] "hkey_current_user\software\apn"
Successfully deleted: [Registry Key] "hkey_local_machine\software\apn"
Successfully deleted: [Registry Key] "hkey_local_machine\software\asktoolbar"
Successfully deleted: [Registry Key] "hkey_local_machine\software\classes\appid\{9b0cb95c-933a-4b8c-b6d4-edcd19a43874}"
Successfully deleted: [Registry Key] "hkey_local_machine\software\classes\typelib\{2996f0e7-292b-4cae-893f-47b8b1c05b56}"



~~~ Files

Successfully deleted: [File] C:\Windows\Tasks\amiupdxp.job
Successfully deleted: [File] "C:\Users\robik\appdata\local\google\chrome\user data\default\bprotector web data"
Successfully deleted: [File] "C:\Users\robik\appdata\local\google\chrome\user data\default\bprotectorpreferences"
Successfully deleted: [File] C:\Windows\syswow64\sho59B9.tmp



~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\babylon"
Successfully deleted: [Folder] "C:\ProgramData\boost_interprocess"
Successfully deleted: [Folder] "C:\ProgramData\clsoft ltd"
Successfully deleted: [Folder] "C:\ProgramData\ibupdaterservice"
Successfully deleted: [Folder] "C:\ProgramData\premium"
Successfully deleted: [Folder] "C:\ProgramData\sweetim"
Successfully deleted: [Folder] "C:\Users\robik\AppData\Roaming\appgraffiti"
Successfully deleted: [Folder] "C:\Users\robik\AppData\Roaming\file scout"
Successfully deleted: [Folder] "C:\Users\robik\AppData\Roaming\mysearchdial"
Successfully deleted: [Folder] "C:\Users\robik\AppData\Roaming\opencandy"
Successfully deleted: [Folder] "C:\Users\robik\AppData\Roaming\performersoft"
Successfully deleted: [Folder] "C:\Users\robik\AppData\Roaming\pluswinks"
Successfully deleted: [Folder] "C:\Users\robik\AppData\Roaming\systweak"
Successfully deleted: [Folder] "C:\Users\robik\appdata\locallow\industriya"
Successfully deleted: [Folder] "C:\Users\robik\appdata\locallow\simplytech"
Successfully deleted: [Folder] "C:\Users\robik\appdata\locallow\sweetim"
Successfully deleted: [Folder] "C:\Program Files (x86)\mysearchdial"
Successfully deleted: [Folder] "C:\Program Files (x86)\protected search"
Successfully deleted: [Folder] "C:\Program Files (x86)\speed analysis 2"
Successfully deleted: [Folder] "C:\Program Files (x86)\sweetim"
Successfully deleted: [Folder] "C:\Program Files (x86)\sweetpacks bundle uninstaller"
Successfully deleted: [Folder] "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\protected search"
Successfully deleted: [Folder] "C:\Windows\syswow64\ai_recyclebin"
Successfully deleted: [Empty Folder] C:\Users\robik\appdata\local\{149652A9-5CD8-46B7-9C24-ED54C4F2BA80}
Successfully deleted: [Empty Folder] C:\Users\robik\appdata\local\{3522BE35-BDCA-4E5C-97FC-8E12109B7F4D}
Successfully deleted: [Empty Folder] C:\Users\robik\appdata\local\{52EBBA25-D32B-49C2-AFD3-1267AB84313E}
Successfully deleted: [Empty Folder] C:\Users\robik\appdata\local\{563C402F-61DA-485A-9CDC-352EF9BD7D57}
Successfully deleted: [Empty Folder] C:\Users\robik\appdata\local\{8091B79E-D0DA-47E4-A8BC-C32962EC7E25}
Successfully deleted: [Empty Folder] C:\Users\robik\appdata\local\{86363CDC-50E4-4C6B-9CE3-8FB087052591}
Successfully deleted: [Empty Folder] C:\Users\robik\appdata\local\{8EF6FED2-17AF-404D-A6CF-35A633665D84}
Successfully deleted: [Empty Folder] C:\Users\robik\appdata\local\{A49151A6-4AD5-479C-8FD5-AFE0BBB1B312}
Successfully deleted: [Empty Folder] C:\Users\robik\appdata\local\{C5E0CF31-B60E-4AA5-A862-6BDAF5ABB332}
Successfully deleted: [Empty Folder] C:\Users\robik\appdata\local\{DE02DD20-D5D5-4F61-B50C-63B324697089}
Successfully deleted: [Empty Folder] C:\Users\robik\appdata\local\{E02F85DD-A85D-46E5-8702-16B22C92DC37}
Successfully deleted: [Empty Folder] C:\Users\robik\appdata\local\{E62CFFDE-43C4-4BB3-BFF7-ECE7067BC800}
Successfully deleted: [Empty Folder] C:\Users\robik\appdata\local\{F300C01A-471C-40AF-9186-F2E69209A859}
Successfully deleted: [Empty Folder] C:\Users\robik\appdata\local\{F5A96893-3C33-4D7E-AD26-EF81FDBCCDDE}
Successfully deleted: [Empty Folder] C:\Users\robik\appdata\local\{FE8A6470-02FF-4EA8-89DD-7C3735C1AB97}
Successfully deleted: [Folder] "C:\ProgramData\ask"
Successfully deleted: [Folder] "C:\Users\robik\appdata\locallow\asktoolbar"
Successfully deleted: [Folder] "C:\Program Files (x86)\ask.com"
Successfully deleted: [Folder] "C:\Windows\installer\{86d4b82a-abed-442a-be86-96357b70f4fe}"



~~~ Chrome

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Google\Chrome\Extensions\mocblcnaofikinigmceddfghppkkjbog
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on st 12.02.2014 at 10:05:07,61
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


Bohužel my zase začíná zamrzat takže log z sc-cleaneru dodám pro jistotu za chvíly

robinham
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 10 úno 2014 23:38
Bydliště: Danov

Re: Virus,při scanu malwarebytes zamrzá windows

#4 Příspěvek od robinham »

A log z sc cleaneru:

Shortcut Cleaner 1.2.8 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2014 BleepingComputer.com
More Information about Shortcut Cleaner can be found at this link:
http://www.bleepingcomputer.com/downloa ... t-cleaner/

Windows Version: Windows 7 Home Premium Service Pack 1
Program started at: 02/12/2014 10:31:42 AM.

Scanning for registry hijacks:

* No issues found in the Registry.

Searching for Hijacked Shortcuts:

Searching C:\Users\robik\AppData\Roaming\Microsoft\Windows\Start Menu\

Searching C:\ProgramData\Microsoft\Windows\Start Menu\

Searching C:\Users\robik\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\

Searching C:\Users\Public\Desktop\

Searching C:\Users\robik\Desktop


0 bad shortcuts found.

Program finished at: 02/12/2014 10:42:14 AM
Execution time: 0 hours(s), 10 minute(s), and 35 seconds(s)

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Virus,při scanu malwarebytes zamrzá windows

#5 Příspěvek od vyosek »

Poprosim o novy log z FRST
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

robinham
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 10 úno 2014 23:38
Bydliště: Danov

Re: Virus,při scanu malwarebytes zamrzá windows

#6 Příspěvek od robinham »

Tak, mě to dosralo windows.Nainstaloval jsem nový windows a ovladače.Vše je v pořádku a díky za pomoc.

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Virus,při scanu malwarebytes zamrzá windows

#7 Příspěvek od vyosek »

Neni tedy zac, i tohle je zpusob reseni, ale ja jej moc rad nemam :worship:



A na zaklade Pravidla o zamykani temat :lock:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Zamčeno