
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím o kontrolu děkuji
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Prosím o kontrolu děkuji
Logfile of random's system information tool 1.09 (written by random/random)
Run by Petra at 2014-04-07 14:14:47
Microsoft Windows 7 Home Basic Service Pack 1
System drive C: has 14 GB (32%) free of 44 GB
Total RAM: 1012 MB (38% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:15:26, on 7.4.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16521)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Opera\20.0.1387.91\opera.exe
C:\Program Files\Opera\20.0.1387.91\opera_crashreporter.exe
C:\Program Files\Opera\20.0.1387.91\opera.exe
C:\Program Files\Opera\20.0.1387.91\opera.exe
C:\Program Files\Opera\20.0.1387.91\opera.exe
C:\Program Files\Opera\20.0.1387.91\opera.exe
C:\Users\Petra\Downloads\RSIT.exe
C:\Program Files\trend micro\Petra.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
O4 - HKLM\..\Run: [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\Alwil Software\Avast5\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{4BADB08B-320A-401A-896D-4B4B5F24C17C}: NameServer = 8.8.8.8,4.4.4.4
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
--
End of file - 4961 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll [2013-12-19 1138536]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - avast! Online Security - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll [2013-12-19 1138536]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"avast5"=C:\Program Files\Alwil Software\Avast5\avastUI.exe [2013-12-19 3764024]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2009-09-23 141848]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2009-09-23 173592]
"Persistence"=C:\Windows\system32\igfxpers.exe [2009-09-23 150552]
"AvastUI.exe"=C:\Program Files\Alwil Software\Avast5\AvastUI.exe [2013-12-19 3764024]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2009-09-23 218112]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-04-07 14:14:48 ----D---- C:\Program Files\trend micro
2014-04-07 14:14:47 ----D---- C:\rsit
2014-03-12 20:23:53 ----A---- C:\Windows\system32\qedit.dll
2014-03-12 20:23:52 ----A---- C:\Windows\system32\iernonce.dll
2014-03-12 20:23:52 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-03-12 20:23:51 ----A---- C:\Windows\system32\jsproxy.dll
2014-03-12 20:23:51 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-03-12 20:23:50 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-03-12 20:23:50 ----A---- C:\Windows\system32\jscript9diag.dll
2014-03-12 20:23:50 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-03-12 20:23:49 ----A---- C:\Windows\system32\ieapfltr.dll
2014-03-12 20:23:48 ----A---- C:\Windows\system32\wininet.dll
2014-03-12 20:23:45 ----A---- C:\Windows\system32\ieui.dll
2014-03-12 20:23:44 ----A---- C:\Windows\system32\ieUnatt.exe
2014-03-12 20:23:43 ----A---- C:\Windows\system32\iertutil.dll
2014-03-12 20:23:41 ----A---- C:\Windows\system32\jscript9.dll
2014-03-12 20:23:39 ----A---- C:\Windows\system32\mshtml.dll
2014-03-12 20:23:35 ----A---- C:\Windows\system32\urlmon.dll
2014-03-12 20:23:33 ----A---- C:\Windows\system32\msfeeds.dll
2014-03-12 20:23:30 ----A---- C:\Windows\system32\msrating.dll
2014-03-12 20:23:29 ----A---- C:\Windows\system32\ie4uinit.exe
2014-03-12 20:23:28 ----A---- C:\Windows\system32\iesetup.dll
2014-03-12 20:23:27 ----A---- C:\Windows\system32\ieframe.dll
2014-03-12 20:22:42 ----A---- C:\Windows\system32\wwansvc.dll
2014-03-12 20:22:40 ----A---- C:\Windows\system32\win32k.sys
2014-03-12 20:22:39 ----A---- C:\Windows\system32\WindowsCodecs.dll
2014-03-12 20:22:37 ----A---- C:\Windows\system32\wer.dll
======List of files/folders modified in the last 1 month======
2014-04-07 14:15:01 ----D---- C:\Windows\Prefetch
2014-04-07 14:14:55 ----D---- C:\Windows\Temp
2014-04-07 14:14:48 ----RD---- C:\Program Files
2014-04-07 13:20:12 ----D---- C:\Windows\System32
2014-04-07 13:20:12 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-04-07 13:20:10 ----D---- C:\Windows\inf
2014-04-07 13:16:50 ----D---- C:\Windows\system32\config
2014-04-07 08:24:48 ----D---- C:\Windows
2014-04-05 20:35:58 ----SHD---- C:\System Volume Information
2014-04-05 10:28:04 ----D---- C:\Windows\system32\catroot2
2014-04-03 15:25:26 ----D---- C:\Program Files\Opera
2014-03-30 19:17:27 ----D---- C:\Windows\debug
2014-03-29 12:23:05 ----SHD---- C:\Windows\Installer
2014-03-29 12:23:05 ----SHD---- C:\Config.Msi
2014-03-28 08:36:04 ----D---- C:\Windows\system32\NDF
2014-03-19 04:50:59 ----D---- C:\Windows\system32\MRT
2014-03-18 22:50:35 ----A---- C:\Windows\system32\MRT.exe
2014-03-15 23:50:24 ----D---- C:\Program Files\Microsoft Silverlight
2014-03-15 09:44:40 ----D---- C:\Windows\winsxs
2014-03-15 09:41:17 ----D---- C:\Program Files\Internet Explorer
2014-03-13 20:00:39 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2014-03-12 20:22:21 ----D---- C:\Windows\system32\catroot
2014-03-11 15:21:51 ----SD---- C:\Users\Petra\AppData\Roaming\Microsoft
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2013-12-19 49944]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2013-12-19 180248]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 aswRdr;aswRdr; \??\C:\Windows\system32\drivers\aswRdr2.sys [2013-12-19 79720]
R1 aswSnx;aswSnx; \??\C:\Windows\system32\drivers\aswSnx.sys [2013-12-19 775952]
R1 aswSP;aswSP; \??\C:\Windows\system32\drivers\aswSP.sys [2013-12-19 410528]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2013-10-31 56080]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2013-12-19 67824]
R3 aswStm;aswStm; \??\C:\Windows\system32\drivers\aswStm.sys [2013-12-20 64168]
R3 athr;Qualcomm Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2012-08-23 2992640]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2009-09-23 4808192]
R3 L1E;NDIS Miniport Driver for Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1E62x86.sys [2009-08-23 48640]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 393728]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
S3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 84992]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2013-12-19 50344]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 1713904]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-12-17 116648]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-03-13 257928]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2013-09-11 46688]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-12-17 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-03-01 108032]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-12-16 1343400]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
Run by Petra at 2014-04-07 14:14:47
Microsoft Windows 7 Home Basic Service Pack 1
System drive C: has 14 GB (32%) free of 44 GB
Total RAM: 1012 MB (38% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:15:26, on 7.4.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16521)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Opera\20.0.1387.91\opera.exe
C:\Program Files\Opera\20.0.1387.91\opera_crashreporter.exe
C:\Program Files\Opera\20.0.1387.91\opera.exe
C:\Program Files\Opera\20.0.1387.91\opera.exe
C:\Program Files\Opera\20.0.1387.91\opera.exe
C:\Program Files\Opera\20.0.1387.91\opera.exe
C:\Users\Petra\Downloads\RSIT.exe
C:\Program Files\trend micro\Petra.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll
O4 - HKLM\..\Run: [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\Alwil Software\Avast5\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{4BADB08B-320A-401A-896D-4B4B5F24C17C}: NameServer = 8.8.8.8,4.4.4.4
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
--
End of file - 4961 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll [2013-12-19 1138536]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - avast! Online Security - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll [2013-12-19 1138536]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"avast5"=C:\Program Files\Alwil Software\Avast5\avastUI.exe [2013-12-19 3764024]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2009-09-23 141848]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2009-09-23 173592]
"Persistence"=C:\Windows\system32\igfxpers.exe [2009-09-23 150552]
"AvastUI.exe"=C:\Program Files\Alwil Software\Avast5\AvastUI.exe [2013-12-19 3764024]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2009-09-23 218112]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-04-07 14:14:48 ----D---- C:\Program Files\trend micro
2014-04-07 14:14:47 ----D---- C:\rsit
2014-03-12 20:23:53 ----A---- C:\Windows\system32\qedit.dll
2014-03-12 20:23:52 ----A---- C:\Windows\system32\iernonce.dll
2014-03-12 20:23:52 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-03-12 20:23:51 ----A---- C:\Windows\system32\jsproxy.dll
2014-03-12 20:23:51 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-03-12 20:23:50 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2014-03-12 20:23:50 ----A---- C:\Windows\system32\jscript9diag.dll
2014-03-12 20:23:50 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-03-12 20:23:49 ----A---- C:\Windows\system32\ieapfltr.dll
2014-03-12 20:23:48 ----A---- C:\Windows\system32\wininet.dll
2014-03-12 20:23:45 ----A---- C:\Windows\system32\ieui.dll
2014-03-12 20:23:44 ----A---- C:\Windows\system32\ieUnatt.exe
2014-03-12 20:23:43 ----A---- C:\Windows\system32\iertutil.dll
2014-03-12 20:23:41 ----A---- C:\Windows\system32\jscript9.dll
2014-03-12 20:23:39 ----A---- C:\Windows\system32\mshtml.dll
2014-03-12 20:23:35 ----A---- C:\Windows\system32\urlmon.dll
2014-03-12 20:23:33 ----A---- C:\Windows\system32\msfeeds.dll
2014-03-12 20:23:30 ----A---- C:\Windows\system32\msrating.dll
2014-03-12 20:23:29 ----A---- C:\Windows\system32\ie4uinit.exe
2014-03-12 20:23:28 ----A---- C:\Windows\system32\iesetup.dll
2014-03-12 20:23:27 ----A---- C:\Windows\system32\ieframe.dll
2014-03-12 20:22:42 ----A---- C:\Windows\system32\wwansvc.dll
2014-03-12 20:22:40 ----A---- C:\Windows\system32\win32k.sys
2014-03-12 20:22:39 ----A---- C:\Windows\system32\WindowsCodecs.dll
2014-03-12 20:22:37 ----A---- C:\Windows\system32\wer.dll
======List of files/folders modified in the last 1 month======
2014-04-07 14:15:01 ----D---- C:\Windows\Prefetch
2014-04-07 14:14:55 ----D---- C:\Windows\Temp
2014-04-07 14:14:48 ----RD---- C:\Program Files
2014-04-07 13:20:12 ----D---- C:\Windows\System32
2014-04-07 13:20:12 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-04-07 13:20:10 ----D---- C:\Windows\inf
2014-04-07 13:16:50 ----D---- C:\Windows\system32\config
2014-04-07 08:24:48 ----D---- C:\Windows
2014-04-05 20:35:58 ----SHD---- C:\System Volume Information
2014-04-05 10:28:04 ----D---- C:\Windows\system32\catroot2
2014-04-03 15:25:26 ----D---- C:\Program Files\Opera
2014-03-30 19:17:27 ----D---- C:\Windows\debug
2014-03-29 12:23:05 ----SHD---- C:\Windows\Installer
2014-03-29 12:23:05 ----SHD---- C:\Config.Msi
2014-03-28 08:36:04 ----D---- C:\Windows\system32\NDF
2014-03-19 04:50:59 ----D---- C:\Windows\system32\MRT
2014-03-18 22:50:35 ----A---- C:\Windows\system32\MRT.exe
2014-03-15 23:50:24 ----D---- C:\Program Files\Microsoft Silverlight
2014-03-15 09:44:40 ----D---- C:\Windows\winsxs
2014-03-15 09:41:17 ----D---- C:\Program Files\Internet Explorer
2014-03-13 20:00:39 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2014-03-12 20:22:21 ----D---- C:\Windows\system32\catroot
2014-03-11 15:21:51 ----SD---- C:\Users\Petra\AppData\Roaming\Microsoft
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2013-12-19 49944]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2013-12-19 180248]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 aswRdr;aswRdr; \??\C:\Windows\system32\drivers\aswRdr2.sys [2013-12-19 79720]
R1 aswSnx;aswSnx; \??\C:\Windows\system32\drivers\aswSnx.sys [2013-12-19 775952]
R1 aswSP;aswSP; \??\C:\Windows\system32\drivers\aswSP.sys [2013-12-19 410528]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2013-10-31 56080]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2013-12-19 67824]
R3 aswStm;aswStm; \??\C:\Windows\system32\drivers\aswStm.sys [2013-12-20 64168]
R3 athr;Qualcomm Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2012-08-23 2992640]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2009-09-23 4808192]
R3 L1E;NDIS Miniport Driver for Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1E62x86.sys [2009-08-23 48640]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 393728]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
S3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 84992]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2013-12-19 50344]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 1713904]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-12-17 116648]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-03-13 257928]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2013-09-11 46688]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-12-17 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-03-01 108032]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-12-16 1343400]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
Re: Prosím o kontrolu děkuji
Zdravim 
Je s pc nejaky problem?
Udelejte !!!kompletni!!! kontrolu s MBAM http://forum.viry.cz/viewtopic.php?f=29&t=115222 a dejte sem vysledky. Predem nic nemazte, miva obcas falesne detekce



Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: Prosím o kontrolu děkuji
dost se zpomalil ntb
díky za kontroly...
Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org
Verze: v2014.04.07.14
Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 11.0.9600.16521
Petra :: PETRA-PC [administrátor]
Ochrana: Povolena
8.4.2014 7:45:01
MBAM-log-2014-04-08 (10-40-12).txt
Typ: Kompletní kontrola (C:\|D:\|)
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 332421
Uplynulý čas: 2 hodin, 27 minut,
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 3
C:\Users\Petra\AppData\Roaming\OpenCandy (PUP.Optional.OpenCandy) -> Nebyla provedena žádná instrukce.
C:\Users\Petra\AppData\Roaming\OpenCandy\7B2350C8ECFB4ABD9366129C625F3577 (PUP.Optional.OpenCandy) -> Nebyla provedena žádná instrukce.
C:\Users\Petra\AppData\Roaming\OpenCandy\7FA57D2949874D0A9EE1B15639551FEF (PUP.Optional.OpenCandy) -> Nebyla provedena žádná instrukce.
Nalezené soubory: 5
C:\Users\Petra\AppData\Roaming\OpenCandy\7B2350C8ECFB4ABD9366129C625F3577\dlm.exe (PUP.Optional.OpenCandy.A) -> Nebyla provedena žádná instrukce.
C:\Users\Petra\AppData\Roaming\OpenCandy\7FA57D2949874D0A9EE1B15639551FEF\dlm.exe (PUP.Optional.OpenCandy.A) -> Nebyla provedena žádná instrukce.
C:\Users\Petra\Downloads\install_flashplayer12x32ax_chrd_aaa_aih(ie).exe (PUP.Optional.OpenCandy) -> Nebyla provedena žádná instrukce.
C:\Users\Petra\AppData\Roaming\OpenCandy\7FA57D2949874D0A9EE1B15639551FEF\6866.ico (PUP.Optional.OpenCandy) -> Nebyla provedena žádná instrukce.
C:\Users\Petra\AppData\Roaming\OpenCandy\7FA57D2949874D0A9EE1B15639551FEF\avg_tuht_stf_cs_2014_206_CZ.exe (PUP.Optional.OpenCandy) -> Nebyla provedena žádná instrukce.
(konec)
díky za kontroly...
Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org
Verze: v2014.04.07.14
Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 11.0.9600.16521
Petra :: PETRA-PC [administrátor]
Ochrana: Povolena
8.4.2014 7:45:01
MBAM-log-2014-04-08 (10-40-12).txt
Typ: Kompletní kontrola (C:\|D:\|)
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 332421
Uplynulý čas: 2 hodin, 27 minut,
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 3
C:\Users\Petra\AppData\Roaming\OpenCandy (PUP.Optional.OpenCandy) -> Nebyla provedena žádná instrukce.
C:\Users\Petra\AppData\Roaming\OpenCandy\7B2350C8ECFB4ABD9366129C625F3577 (PUP.Optional.OpenCandy) -> Nebyla provedena žádná instrukce.
C:\Users\Petra\AppData\Roaming\OpenCandy\7FA57D2949874D0A9EE1B15639551FEF (PUP.Optional.OpenCandy) -> Nebyla provedena žádná instrukce.
Nalezené soubory: 5
C:\Users\Petra\AppData\Roaming\OpenCandy\7B2350C8ECFB4ABD9366129C625F3577\dlm.exe (PUP.Optional.OpenCandy.A) -> Nebyla provedena žádná instrukce.
C:\Users\Petra\AppData\Roaming\OpenCandy\7FA57D2949874D0A9EE1B15639551FEF\dlm.exe (PUP.Optional.OpenCandy.A) -> Nebyla provedena žádná instrukce.
C:\Users\Petra\Downloads\install_flashplayer12x32ax_chrd_aaa_aih(ie).exe (PUP.Optional.OpenCandy) -> Nebyla provedena žádná instrukce.
C:\Users\Petra\AppData\Roaming\OpenCandy\7FA57D2949874D0A9EE1B15639551FEF\6866.ico (PUP.Optional.OpenCandy) -> Nebyla provedena žádná instrukce.
C:\Users\Petra\AppData\Roaming\OpenCandy\7FA57D2949874D0A9EE1B15639551FEF\avg_tuht_stf_cs_2014_206_CZ.exe (PUP.Optional.OpenCandy) -> Nebyla provedena žádná instrukce.
(konec)
Re: Prosím o kontrolu děkuji


Ukoncete vsechny programy, jinak to AdwCleaner udela za vas.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Kliknete na Scan a pockejte, az kontrola dobehne.
Pak kliknete na Clean
Program zacne pracovat (muze dojit k restartu pc) a vyplivne log (pripadne bude zde C:\AdwCleaner\AdwCleaner [S?].txt ). Ten mi sem zkopirujte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: Prosím o kontrolu děkuji
# AdwCleaner v3.023 - Report created 08/04/2014 at 18:22:50
# Updated 01/04/2014 by Xplode
# Operating System : Windows 7 Home Basic Service Pack 1 (32 bits)
# Username : Petra - PETRA-PC
# Running from : C:\Users\Petra\Desktop\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.16521
-\\ Google Chrome v33.0.1750.154
[ File : C:\Users\Petra\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [759 octets] - [08/04/2014 18:17:00]
AdwCleaner[S0].txt - [681 octets] - [08/04/2014 18:22:50]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [740 octets] ##########
# Updated 01/04/2014 by Xplode
# Operating System : Windows 7 Home Basic Service Pack 1 (32 bits)
# Username : Petra - PETRA-PC
# Running from : C:\Users\Petra\Desktop\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.16521
-\\ Google Chrome v33.0.1750.154
[ File : C:\Users\Petra\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [759 octets] - [08/04/2014 18:17:00]
AdwCleaner[S0].txt - [681 octets] - [08/04/2014 18:22:50]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [740 octets] ##########
Re: Prosím o kontrolu děkuji

Spustte jako spravce. Za chvili se zobrazi vysledek.
Kliknete nahore na napis Úpravy a pak na napis Kopírovat. To co se zkopiruje (ulozi se to do pameti) mi sem vlozte (ctrl + V)


Probehne kratoucky testik a pak se zpristupni vpravo nahore tlacitko Prohledat. Na to kliknete a probehne dalsi test.
Po dokonceni kliknete na napis Zprava a objevi se log. Ten mi sem vlozte
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: Prosím o kontrolu děkuji
----------------------------------------------------------------------------
CrystalDiskInfo 5.0.0 (C) 2008-2012 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------
OS : Windows 7 Home Basic Edition SP1 [6.1 Build 7601] (x86)
Date : 2014/04/09 18:14:24
-- Controller Map ----------------------------------------------------------
+ ATA Channel 0 (0) [ATA]
- ST9160314AS ATA Device
- ATA Channel 2 (2) [ATA]
+ Standardní řadič AHCI 1.0 s rozhraním Serial ATA [ATA]
- ATA Channel 0 (0)
- ATA Channel 2 (2)
-- Disk List ---------------------------------------------------------------
(1) ST9160314AS : 160,0 GB [0/0/0, pd1] - st
----------------------------------------------------------------------------
(1) ST9160314AS
----------------------------------------------------------------------------
Model : ST9160314AS
Firmware : 0001SDM1
Serial Number : 5VC3Y7K5
Disk Size : 160,0 GB (8,4/137,4/160,0)
Buffer Size : 8192 KB
Queue Depth : 32
# of Sectors : 312581808
Rotation Rate : 5400 RPM
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ATA8-ACS version 4
Transfer Mode : SATA/300
Power On Hours : 9768 hod.
Power On Count : 7645 krát
Temparature : 33 C (91 F)
Health Status : Pozor
Features : S.M.A.R.T., APM, 48bit LBA, NCQ
APM Level : 8080h [ON]
AAM Level : ----
-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 119 _99 __6 00000C78F6AA Počet chyb čtení
03 _99 _99 __0 000000000000 Čas na roztočení ploten
04 _93 _93 _20 000000001E66 Počet spuštění/zastavení
05 100 100 _36 000000000001 Počet přemapovaných sektorů
07 _81 _60 _30 0000099FD554 Počet chybných hledání
09 _89 _89 __0 000000002628 Hodin v činnosti
0A 100 100 _97 000000000000 Počet opakovaných pokusů o roztočení ploten
0C _93 _37 _20 000000001DDD Počet cyklů zapnutí zařízení
B8 100 100 _99 000000000000 Ukončovacích chyb
BB _99 _99 __0 000000000001 Ohlášeno neopravitelných chyb
BC 100 _99 __0 00020003001E Časový limit příkazu
BD 100 100 __0 000000000000 Vysoká rychlost zápisu
BE _67 _33 _45 0055211D0021 Teplota toku vzduchu
BF 100 100 __0 000000000316 Počet udalostí zaznamenaných otřesovým senzorem
C0 100 100 __0 000000000066 Počet vypnutí disku
C1 __1 __1 __0 000000033ADD Počet cyklů načítání/vymazání
C2 _33 _67 __0 000F00000021 Teplota
C3 _60 _45 __0 00000C78F6AA Počet oprav chybného čtení
C5 100 100 __0 000000000000 Počet podezřelých sektorů
C6 100 100 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
FE 100 100 __0 000000000000 Ochrana proti pádu
-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0C5A 3FFF C837 0010 0000 003F 003F 0000 0000 0000
010: 2020 2020 2020 2020 2020 3556 3556 4333 5937 4B35
020: 0000 4000 0004 3030 3031 4D31 4D31 5354 3931 3630
030: 3331 3441 5320 2020 2020 2020 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4000 0200 0200 0007 3FFF 003F 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0407 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 0506 0506 0000 0048 0040
080: 01F0 0029 346B 7D09 6123 BC09 BC09 6123 007F 0018
090: 0018 8080 FFFE 0000 FE00 0000 0000 0000 0000 0000
100: 9EB0 12A1 0000 0000 0000 0000 0000 0000 5000 C500
110: 181E 0E4B 0000 0000 0000 0000 0000 0000 0000 401E
120: 401C 0000 0000 0000 0000 0000 0000 0000 0029 9EB0
130: 12A1 9EB0 12A1 2020 0002 0100 0100 5000 3C06 3C0A
140: 0000 003C 0000 0008 0000 001F 001F 0280 0000 0000
150: 0008 0000 0000 0000 0000 0000 0000 0000 3C00 8000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 103B 103B 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 1518 0000 0000
220: 0000 0000 1010 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 A6A5
CrystalDiskInfo 5.0.0 (C) 2008-2012 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------
OS : Windows 7 Home Basic Edition SP1 [6.1 Build 7601] (x86)
Date : 2014/04/09 18:14:24
-- Controller Map ----------------------------------------------------------
+ ATA Channel 0 (0) [ATA]
- ST9160314AS ATA Device
- ATA Channel 2 (2) [ATA]
+ Standardní řadič AHCI 1.0 s rozhraním Serial ATA [ATA]
- ATA Channel 0 (0)
- ATA Channel 2 (2)
-- Disk List ---------------------------------------------------------------
(1) ST9160314AS : 160,0 GB [0/0/0, pd1] - st
----------------------------------------------------------------------------
(1) ST9160314AS
----------------------------------------------------------------------------
Model : ST9160314AS
Firmware : 0001SDM1
Serial Number : 5VC3Y7K5
Disk Size : 160,0 GB (8,4/137,4/160,0)
Buffer Size : 8192 KB
Queue Depth : 32
# of Sectors : 312581808
Rotation Rate : 5400 RPM
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ATA8-ACS version 4
Transfer Mode : SATA/300
Power On Hours : 9768 hod.
Power On Count : 7645 krát
Temparature : 33 C (91 F)
Health Status : Pozor
Features : S.M.A.R.T., APM, 48bit LBA, NCQ
APM Level : 8080h [ON]
AAM Level : ----
-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 119 _99 __6 00000C78F6AA Počet chyb čtení
03 _99 _99 __0 000000000000 Čas na roztočení ploten
04 _93 _93 _20 000000001E66 Počet spuštění/zastavení
05 100 100 _36 000000000001 Počet přemapovaných sektorů
07 _81 _60 _30 0000099FD554 Počet chybných hledání
09 _89 _89 __0 000000002628 Hodin v činnosti
0A 100 100 _97 000000000000 Počet opakovaných pokusů o roztočení ploten
0C _93 _37 _20 000000001DDD Počet cyklů zapnutí zařízení
B8 100 100 _99 000000000000 Ukončovacích chyb
BB _99 _99 __0 000000000001 Ohlášeno neopravitelných chyb
BC 100 _99 __0 00020003001E Časový limit příkazu
BD 100 100 __0 000000000000 Vysoká rychlost zápisu
BE _67 _33 _45 0055211D0021 Teplota toku vzduchu
BF 100 100 __0 000000000316 Počet udalostí zaznamenaných otřesovým senzorem
C0 100 100 __0 000000000066 Počet vypnutí disku
C1 __1 __1 __0 000000033ADD Počet cyklů načítání/vymazání
C2 _33 _67 __0 000F00000021 Teplota
C3 _60 _45 __0 00000C78F6AA Počet oprav chybného čtení
C5 100 100 __0 000000000000 Počet podezřelých sektorů
C6 100 100 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
FE 100 100 __0 000000000000 Ochrana proti pádu
-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0C5A 3FFF C837 0010 0000 003F 003F 0000 0000 0000
010: 2020 2020 2020 2020 2020 3556 3556 4333 5937 4B35
020: 0000 4000 0004 3030 3031 4D31 4D31 5354 3931 3630
030: 3331 3441 5320 2020 2020 2020 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4000 0200 0200 0007 3FFF 003F 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0407 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 0506 0506 0000 0048 0040
080: 01F0 0029 346B 7D09 6123 BC09 BC09 6123 007F 0018
090: 0018 8080 FFFE 0000 FE00 0000 0000 0000 0000 0000
100: 9EB0 12A1 0000 0000 0000 0000 0000 0000 5000 C500
110: 181E 0E4B 0000 0000 0000 0000 0000 0000 0000 401E
120: 401C 0000 0000 0000 0000 0000 0000 0000 0029 9EB0
130: 12A1 9EB0 12A1 2020 0002 0100 0100 5000 3C06 3C0A
140: 0000 003C 0000 0008 0000 001F 001F 0280 0000 0000
150: 0008 0000 0000 0000 0000 0000 0000 0000 3C00 8000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 103B 103B 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 1518 0000 0000
220: 0000 0000 1010 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 A6A5
Re: Prosím o kontrolu děkuji
Co RK? Spoustel jste ho?
Jinak disk na tom neni dobre
Jinak disk na tom neni dobre

Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: Prosím o kontrolu děkuji
RogueKiller V8.8.15 [Mar 27 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : Petra [Práva správce]
Mód : Kontrola -- Datum : 04/09/2014 18:29:48
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 5 ¤¤¤
[DNS][PUM] HKLM\[...]\CCSet\[...]\{4BADB08B-320A-401A-896D-4B4B5F24C17C} : NameServer (8.8.8.8,4.4.4.4 [UNITED STATES (US) - UNITED STATES (US)]) -> NALEZENO
[DNS][PUM] HKLM\[...]\CS001\[...]\{4BADB08B-320A-401A-896D-4B4B5F24C17C} : NameServer (8.8.8.8,4.4.4.4 [UNITED STATES (US) - UNITED STATES (US)]) -> NALEZENO
[DNS][PUM] HKLM\[...]\CS002\[...]\{4BADB08B-320A-401A-896D-4B4B5F24C17C} : NameServer (8.8.8.8,4.4.4.4 [UNITED STATES (US) - UNITED STATES (US)]) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Browser Addons : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
[Address] EAT @explorer.exe (DllCanUnloadNow) : ntlanman.dll -> HOOKED (C:\Windows\system32\Syncreg.dll @ 0x733B3418)
[Address] EAT @explorer.exe (DllGetClassObject) : ntlanman.dll -> HOOKED (C:\Windows\system32\Syncreg.dll @ 0x733B34C5)
[Address] EAT @explorer.exe (DllRegisterServer) : ntlanman.dll -> HOOKED (C:\Windows\system32\Syncreg.dll @ 0x733B33A5)
[Address] EAT @explorer.exe (DllUnregisterServer) : ntlanman.dll -> HOOKED (C:\Windows\system32\Syncreg.dll @ 0x733B3408)
[Address] EAT @explorer.exe (BeginBufferedAnimation) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF09AE)
[Address] EAT @explorer.exe (BeginBufferedPaint) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE49A1)
[Address] EAT @explorer.exe (BeginPanningFeedback) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74010731)
[Address] EAT @explorer.exe (BufferedPaintClear) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE6395)
[Address] EAT @explorer.exe (BufferedPaintInit) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE940E)
[Address] EAT @explorer.exe (BufferedPaintRenderAnimation) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF08ED)
[Address] EAT @explorer.exe (BufferedPaintSetAlpha) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FFE6B3)
[Address] EAT @explorer.exe (BufferedPaintStopAllAnimations) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FFD395)
[Address] EAT @explorer.exe (BufferedPaintUnInit) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE94AB)
[Address] EAT @explorer.exe (CloseThemeData) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE6A18)
[Address] EAT @explorer.exe (DrawThemeBackground) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE3982)
[Address] EAT @explorer.exe (DrawThemeBackgroundEx) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FFD9DA)
[Address] EAT @explorer.exe (DrawThemeEdge) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74003B52)
[Address] EAT @explorer.exe (DrawThemeIcon) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x740135E7)
[Address] EAT @explorer.exe (DrawThemeParentBackground) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE53E5)
[Address] EAT @explorer.exe (DrawThemeParentBackgroundEx) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE51BF)
[Address] EAT @explorer.exe (DrawThemeText) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE4EA1)
[Address] EAT @explorer.exe (DrawThemeTextEx) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE63E6)
[Address] EAT @explorer.exe (EnableThemeDialogTexture) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEFCAF)
[Address] EAT @explorer.exe (EnableTheming) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74012FEB)
[Address] EAT @explorer.exe (EndBufferedAnimation) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE3F9A)
[Address] EAT @explorer.exe (EndBufferedPaint) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE3F9A)
[Address] EAT @explorer.exe (EndPanningFeedback) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x740106CC)
[Address] EAT @explorer.exe (GetBufferedPaintBits) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE4BAF)
[Address] EAT @explorer.exe (GetBufferedPaintDC) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF04BC)
[Address] EAT @explorer.exe (GetBufferedPaintTargetDC) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF0473)
[Address] EAT @explorer.exe (GetBufferedPaintTargetRect) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74012E7F)
[Address] EAT @explorer.exe (GetCurrentThemeName) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF05DD)
[Address] EAT @explorer.exe (GetThemeAppProperties) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF0FB1)
[Address] EAT @explorer.exe (GetThemeBackgroundContentRect) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FECD2E)
[Address] EAT @explorer.exe (GetThemeBackgroundExtent) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEF8BF)
[Address] EAT @explorer.exe (GetThemeBackgroundRegion) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF165D)
[Address] EAT @explorer.exe (GetThemeBitmap) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEBF93)
[Address] EAT @explorer.exe (GetThemeBool) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE7C1F)
[Address] EAT @explorer.exe (GetThemeColor) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE616C)
[Address] EAT @explorer.exe (GetThemeDocumentationProperty) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74012932)
[Address] EAT @explorer.exe (GetThemeEnumValue) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE616C)
[Address] EAT @explorer.exe (GetThemeFilename) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74012412)
[Address] EAT @explorer.exe (GetThemeFont) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEFF21)
[Address] EAT @explorer.exe (GetThemeInt) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE616C)
[Address] EAT @explorer.exe (GetThemeIntList) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x740123B1)
[Address] EAT @explorer.exe (GetThemeMargins) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE86E9)
[Address] EAT @explorer.exe (GetThemeMetric) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF06E2)
[Address] EAT @explorer.exe (GetThemePartSize) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FECDB1)
[Address] EAT @explorer.exe (GetThemePosition) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74012350)
[Address] EAT @explorer.exe (GetThemePropertyOrigin) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74003FBB)
[Address] EAT @explorer.exe (GetThemeRect) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF3611)
[Address] EAT @explorer.exe (GetThemeStream) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF39D9)
[Address] EAT @explorer.exe (GetThemeString) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x740122E4)
[Address] EAT @explorer.exe (GetThemeSysBool) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74013172)
[Address] EAT @explorer.exe (GetThemeSysColor) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74003274)
[Address] EAT @explorer.exe (GetThemeSysColorBrush) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7401301E)
[Address] EAT @explorer.exe (GetThemeSysFont) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x740129C4)
[Address] EAT @explorer.exe (GetThemeSysInt) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74012BD3)
[Address] EAT @explorer.exe (GetThemeSysSize) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7401320B)
[Address] EAT @explorer.exe (GetThemeSysString) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74012B3F)
[Address] EAT @explorer.exe (GetThemeTextExtent) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE2D57)
[Address] EAT @explorer.exe (GetThemeTextMetrics) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEF992)
[Address] EAT @explorer.exe (GetThemeTransitionDuration) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF1081)
[Address] EAT @explorer.exe (GetWindowTheme) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEDF46)
[Address] EAT @explorer.exe (HitTestThemeBackground) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF3CE3)
[Address] EAT @explorer.exe (IsAppThemed) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEF869)
[Address] EAT @explorer.exe (IsCompositionActive) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE2E9A)
[Address] EAT @explorer.exe (IsThemeActive) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEF785)
[Address] EAT @explorer.exe (IsThemeBackgroundPartiallyTransparent) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE60AB)
[Address] EAT @explorer.exe (IsThemeDialogTextureEnabled) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7401312B)
[Address] EAT @explorer.exe (IsThemePartDefined) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE85B4)
[Address] EAT @explorer.exe (OpenThemeData) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE73D2)
[Address] EAT @explorer.exe (OpenThemeDataEx) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74003D43)
[Address] EAT @explorer.exe (SetThemeAppProperties) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74013296)
[Address] EAT @explorer.exe (SetWindowTheme) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF0134)
[Address] EAT @explorer.exe (SetWindowThemeAttribute) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FFCFE6)
[Address] EAT @explorer.exe (ThemeInitApiHook) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEB176)
[Address] EAT @explorer.exe (UpdatePanningFeedback) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7401068D)
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) ST9160314AS ATA Device +++++
--- User ---
[MBR] dd16747eb06930926c45f311163c0fe7
[BSP] bd5e073074f4363985c3cfb4ee4378bb : Windows 7/8 MBR Code
Partition table:
0 - [XXXXXX] COMPAQ (0x12) [VISIBLE] Offset (sectors): 2048 | Size: 10240 MB
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 20973584 | Size: 44401 MB
2 - [XXXXXX] EXTEN (0x05) [VISIBLE] Offset (sectors): 111908790 | Size: 97982 MB
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[0]_S_04092014_182948.txt >>
RKreport[0]_S_04092014_182836.txt
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : Petra [Práva správce]
Mód : Kontrola -- Datum : 04/09/2014 18:29:48
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 5 ¤¤¤
[DNS][PUM] HKLM\[...]\CCSet\[...]\{4BADB08B-320A-401A-896D-4B4B5F24C17C} : NameServer (8.8.8.8,4.4.4.4 [UNITED STATES (US) - UNITED STATES (US)]) -> NALEZENO
[DNS][PUM] HKLM\[...]\CS001\[...]\{4BADB08B-320A-401A-896D-4B4B5F24C17C} : NameServer (8.8.8.8,4.4.4.4 [UNITED STATES (US) - UNITED STATES (US)]) -> NALEZENO
[DNS][PUM] HKLM\[...]\CS002\[...]\{4BADB08B-320A-401A-896D-4B4B5F24C17C} : NameServer (8.8.8.8,4.4.4.4 [UNITED STATES (US) - UNITED STATES (US)]) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Browser Addons : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
[Address] EAT @explorer.exe (DllCanUnloadNow) : ntlanman.dll -> HOOKED (C:\Windows\system32\Syncreg.dll @ 0x733B3418)
[Address] EAT @explorer.exe (DllGetClassObject) : ntlanman.dll -> HOOKED (C:\Windows\system32\Syncreg.dll @ 0x733B34C5)
[Address] EAT @explorer.exe (DllRegisterServer) : ntlanman.dll -> HOOKED (C:\Windows\system32\Syncreg.dll @ 0x733B33A5)
[Address] EAT @explorer.exe (DllUnregisterServer) : ntlanman.dll -> HOOKED (C:\Windows\system32\Syncreg.dll @ 0x733B3408)
[Address] EAT @explorer.exe (BeginBufferedAnimation) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF09AE)
[Address] EAT @explorer.exe (BeginBufferedPaint) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE49A1)
[Address] EAT @explorer.exe (BeginPanningFeedback) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74010731)
[Address] EAT @explorer.exe (BufferedPaintClear) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE6395)
[Address] EAT @explorer.exe (BufferedPaintInit) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE940E)
[Address] EAT @explorer.exe (BufferedPaintRenderAnimation) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF08ED)
[Address] EAT @explorer.exe (BufferedPaintSetAlpha) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FFE6B3)
[Address] EAT @explorer.exe (BufferedPaintStopAllAnimations) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FFD395)
[Address] EAT @explorer.exe (BufferedPaintUnInit) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE94AB)
[Address] EAT @explorer.exe (CloseThemeData) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE6A18)
[Address] EAT @explorer.exe (DrawThemeBackground) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE3982)
[Address] EAT @explorer.exe (DrawThemeBackgroundEx) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FFD9DA)
[Address] EAT @explorer.exe (DrawThemeEdge) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74003B52)
[Address] EAT @explorer.exe (DrawThemeIcon) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x740135E7)
[Address] EAT @explorer.exe (DrawThemeParentBackground) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE53E5)
[Address] EAT @explorer.exe (DrawThemeParentBackgroundEx) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE51BF)
[Address] EAT @explorer.exe (DrawThemeText) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE4EA1)
[Address] EAT @explorer.exe (DrawThemeTextEx) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE63E6)
[Address] EAT @explorer.exe (EnableThemeDialogTexture) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEFCAF)
[Address] EAT @explorer.exe (EnableTheming) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74012FEB)
[Address] EAT @explorer.exe (EndBufferedAnimation) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE3F9A)
[Address] EAT @explorer.exe (EndBufferedPaint) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE3F9A)
[Address] EAT @explorer.exe (EndPanningFeedback) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x740106CC)
[Address] EAT @explorer.exe (GetBufferedPaintBits) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE4BAF)
[Address] EAT @explorer.exe (GetBufferedPaintDC) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF04BC)
[Address] EAT @explorer.exe (GetBufferedPaintTargetDC) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF0473)
[Address] EAT @explorer.exe (GetBufferedPaintTargetRect) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74012E7F)
[Address] EAT @explorer.exe (GetCurrentThemeName) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF05DD)
[Address] EAT @explorer.exe (GetThemeAppProperties) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF0FB1)
[Address] EAT @explorer.exe (GetThemeBackgroundContentRect) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FECD2E)
[Address] EAT @explorer.exe (GetThemeBackgroundExtent) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEF8BF)
[Address] EAT @explorer.exe (GetThemeBackgroundRegion) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF165D)
[Address] EAT @explorer.exe (GetThemeBitmap) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEBF93)
[Address] EAT @explorer.exe (GetThemeBool) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE7C1F)
[Address] EAT @explorer.exe (GetThemeColor) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE616C)
[Address] EAT @explorer.exe (GetThemeDocumentationProperty) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74012932)
[Address] EAT @explorer.exe (GetThemeEnumValue) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE616C)
[Address] EAT @explorer.exe (GetThemeFilename) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74012412)
[Address] EAT @explorer.exe (GetThemeFont) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEFF21)
[Address] EAT @explorer.exe (GetThemeInt) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE616C)
[Address] EAT @explorer.exe (GetThemeIntList) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x740123B1)
[Address] EAT @explorer.exe (GetThemeMargins) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE86E9)
[Address] EAT @explorer.exe (GetThemeMetric) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF06E2)
[Address] EAT @explorer.exe (GetThemePartSize) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FECDB1)
[Address] EAT @explorer.exe (GetThemePosition) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74012350)
[Address] EAT @explorer.exe (GetThemePropertyOrigin) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74003FBB)
[Address] EAT @explorer.exe (GetThemeRect) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF3611)
[Address] EAT @explorer.exe (GetThemeStream) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF39D9)
[Address] EAT @explorer.exe (GetThemeString) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x740122E4)
[Address] EAT @explorer.exe (GetThemeSysBool) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74013172)
[Address] EAT @explorer.exe (GetThemeSysColor) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74003274)
[Address] EAT @explorer.exe (GetThemeSysColorBrush) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7401301E)
[Address] EAT @explorer.exe (GetThemeSysFont) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x740129C4)
[Address] EAT @explorer.exe (GetThemeSysInt) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74012BD3)
[Address] EAT @explorer.exe (GetThemeSysSize) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7401320B)
[Address] EAT @explorer.exe (GetThemeSysString) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74012B3F)
[Address] EAT @explorer.exe (GetThemeTextExtent) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE2D57)
[Address] EAT @explorer.exe (GetThemeTextMetrics) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEF992)
[Address] EAT @explorer.exe (GetThemeTransitionDuration) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF1081)
[Address] EAT @explorer.exe (GetWindowTheme) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEDF46)
[Address] EAT @explorer.exe (HitTestThemeBackground) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF3CE3)
[Address] EAT @explorer.exe (IsAppThemed) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEF869)
[Address] EAT @explorer.exe (IsCompositionActive) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE2E9A)
[Address] EAT @explorer.exe (IsThemeActive) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEF785)
[Address] EAT @explorer.exe (IsThemeBackgroundPartiallyTransparent) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE60AB)
[Address] EAT @explorer.exe (IsThemeDialogTextureEnabled) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7401312B)
[Address] EAT @explorer.exe (IsThemePartDefined) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE85B4)
[Address] EAT @explorer.exe (OpenThemeData) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE73D2)
[Address] EAT @explorer.exe (OpenThemeDataEx) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74003D43)
[Address] EAT @explorer.exe (SetThemeAppProperties) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74013296)
[Address] EAT @explorer.exe (SetWindowTheme) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF0134)
[Address] EAT @explorer.exe (SetWindowThemeAttribute) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FFCFE6)
[Address] EAT @explorer.exe (ThemeInitApiHook) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEB176)
[Address] EAT @explorer.exe (UpdatePanningFeedback) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7401068D)
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) ST9160314AS ATA Device +++++
--- User ---
[MBR] dd16747eb06930926c45f311163c0fe7
[BSP] bd5e073074f4363985c3cfb4ee4378bb : Windows 7/8 MBR Code
Partition table:
0 - [XXXXXX] COMPAQ (0x12) [VISIBLE] Offset (sectors): 2048 | Size: 10240 MB
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 20973584 | Size: 44401 MB
2 - [XXXXXX] EXTEN (0x05) [VISIBLE] Offset (sectors): 111908790 | Size: 97982 MB
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[0]_S_04092014_182948.txt >>
RKreport[0]_S_04092014_182836.txt
Re: Prosím o kontrolu děkuji
co mám udělat s tím diskem?
Re: Prosím o kontrolu děkuji

Probehne kratoucky testik a pak se zpristupni vpravo nahore tlacitko Prohledat. Na to kliknete a probehne dalsi test.
Po dokonceni kliknete na napis Smazat.
Pak kliknete na napis Zprava a objevi se log. Ten mi sem vlozte.
Pak kliknete na napis Oprava Host a Zprava.
Objevi se dalsi log. I ten mi sem vlozte.

Stahnete http://www.slunecnice.cz/sw/hd-tune/ , nainstalujte a spustte jako spravce (pokud vam pri instalaci nabidne nejaky doplnek, odmitnete ho!)
V tom okne kliknete na posledni zalozku - Error Scan (pokud bude zatrzeny quick scan, tak zatrzitko zruste) a kliknete na Start.
Kontrola bude nejakou dobu trvat. Dejte vedet, jestli tam bylo nejake cervene policko.
Taky se podivejte na zalozku Health a opiste mi (vyfotte), co se tam pise. Melo by tam byt OK http://www.google.cz/imgres?um=1&hl=cs& ... s:20,i:143
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: Prosím o kontrolu děkuji
RogueKiller V8.8.15 [Mar 27 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : Petra [Práva správce]
Mód : Odebrat -- Datum : 04/10/2014 09:33:15
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 2 ¤¤¤
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Browser Addons : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
[Address] EAT @explorer.exe (DllCanUnloadNow) : ntlanman.dll -> HOOKED (C:\Windows\system32\Syncreg.dll @ 0x733B3418)
[Address] EAT @explorer.exe (DllGetClassObject) : ntlanman.dll -> HOOKED (C:\Windows\system32\Syncreg.dll @ 0x733B34C5)
[Address] EAT @explorer.exe (DllRegisterServer) : ntlanman.dll -> HOOKED (C:\Windows\system32\Syncreg.dll @ 0x733B33A5)
[Address] EAT @explorer.exe (DllUnregisterServer) : ntlanman.dll -> HOOKED (C:\Windows\system32\Syncreg.dll @ 0x733B3408)
[Address] EAT @explorer.exe (BeginBufferedAnimation) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF09AE)
[Address] EAT @explorer.exe (BeginBufferedPaint) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE49A1)
[Address] EAT @explorer.exe (BeginPanningFeedback) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74010731)
[Address] EAT @explorer.exe (BufferedPaintClear) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE6395)
[Address] EAT @explorer.exe (BufferedPaintInit) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE940E)
[Address] EAT @explorer.exe (BufferedPaintRenderAnimation) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF08ED)
[Address] EAT @explorer.exe (BufferedPaintSetAlpha) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FFE6B3)
[Address] EAT @explorer.exe (BufferedPaintStopAllAnimations) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FFD395)
[Address] EAT @explorer.exe (BufferedPaintUnInit) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE94AB)
[Address] EAT @explorer.exe (CloseThemeData) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE6A18)
[Address] EAT @explorer.exe (DrawThemeBackground) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE3982)
[Address] EAT @explorer.exe (DrawThemeBackgroundEx) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FFD9DA)
[Address] EAT @explorer.exe (DrawThemeEdge) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74003B52)
[Address] EAT @explorer.exe (DrawThemeIcon) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x740135E7)
[Address] EAT @explorer.exe (DrawThemeParentBackground) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE53E5)
[Address] EAT @explorer.exe (DrawThemeParentBackgroundEx) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE51BF)
[Address] EAT @explorer.exe (DrawThemeText) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE4EA1)
[Address] EAT @explorer.exe (DrawThemeTextEx) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE63E6)
[Address] EAT @explorer.exe (EnableThemeDialogTexture) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEFCAF)
[Address] EAT @explorer.exe (EnableTheming) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74012FEB)
[Address] EAT @explorer.exe (EndBufferedAnimation) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE3F9A)
[Address] EAT @explorer.exe (EndBufferedPaint) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE3F9A)
[Address] EAT @explorer.exe (EndPanningFeedback) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x740106CC)
[Address] EAT @explorer.exe (GetBufferedPaintBits) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE4BAF)
[Address] EAT @explorer.exe (GetBufferedPaintDC) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF04BC)
[Address] EAT @explorer.exe (GetBufferedPaintTargetDC) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF0473)
[Address] EAT @explorer.exe (GetBufferedPaintTargetRect) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74012E7F)
[Address] EAT @explorer.exe (GetCurrentThemeName) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF05DD)
[Address] EAT @explorer.exe (GetThemeAppProperties) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF0FB1)
[Address] EAT @explorer.exe (GetThemeBackgroundContentRect) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FECD2E)
[Address] EAT @explorer.exe (GetThemeBackgroundExtent) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEF8BF)
[Address] EAT @explorer.exe (GetThemeBackgroundRegion) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF165D)
[Address] EAT @explorer.exe (GetThemeBitmap) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEBF93)
[Address] EAT @explorer.exe (GetThemeBool) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE7C1F)
[Address] EAT @explorer.exe (GetThemeColor) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE616C)
[Address] EAT @explorer.exe (GetThemeDocumentationProperty) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74012932)
[Address] EAT @explorer.exe (GetThemeEnumValue) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE616C)
[Address] EAT @explorer.exe (GetThemeFilename) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74012412)
[Address] EAT @explorer.exe (GetThemeFont) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEFF21)
[Address] EAT @explorer.exe (GetThemeInt) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE616C)
[Address] EAT @explorer.exe (GetThemeIntList) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x740123B1)
[Address] EAT @explorer.exe (GetThemeMargins) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE86E9)
[Address] EAT @explorer.exe (GetThemeMetric) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF06E2)
[Address] EAT @explorer.exe (GetThemePartSize) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FECDB1)
[Address] EAT @explorer.exe (GetThemePosition) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74012350)
[Address] EAT @explorer.exe (GetThemePropertyOrigin) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74003FBB)
[Address] EAT @explorer.exe (GetThemeRect) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF3611)
[Address] EAT @explorer.exe (GetThemeStream) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF39D9)
[Address] EAT @explorer.exe (GetThemeString) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x740122E4)
[Address] EAT @explorer.exe (GetThemeSysBool) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74013172)
[Address] EAT @explorer.exe (GetThemeSysColor) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74003274)
[Address] EAT @explorer.exe (GetThemeSysColorBrush) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7401301E)
[Address] EAT @explorer.exe (GetThemeSysFont) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x740129C4)
[Address] EAT @explorer.exe (GetThemeSysInt) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74012BD3)
[Address] EAT @explorer.exe (GetThemeSysSize) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7401320B)
[Address] EAT @explorer.exe (GetThemeSysString) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74012B3F)
[Address] EAT @explorer.exe (GetThemeTextExtent) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE2D57)
[Address] EAT @explorer.exe (GetThemeTextMetrics) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEF992)
[Address] EAT @explorer.exe (GetThemeTransitionDuration) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF1081)
[Address] EAT @explorer.exe (GetWindowTheme) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEDF46)
[Address] EAT @explorer.exe (HitTestThemeBackground) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF3CE3)
[Address] EAT @explorer.exe (IsAppThemed) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEF869)
[Address] EAT @explorer.exe (IsCompositionActive) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE2E9A)
[Address] EAT @explorer.exe (IsThemeActive) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEF785)
[Address] EAT @explorer.exe (IsThemeBackgroundPartiallyTransparent) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE60AB)
[Address] EAT @explorer.exe (IsThemeDialogTextureEnabled) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7401312B)
[Address] EAT @explorer.exe (IsThemePartDefined) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE85B4)
[Address] EAT @explorer.exe (OpenThemeData) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE73D2)
[Address] EAT @explorer.exe (OpenThemeDataEx) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74003D43)
[Address] EAT @explorer.exe (SetThemeAppProperties) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74013296)
[Address] EAT @explorer.exe (SetWindowTheme) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF0134)
[Address] EAT @explorer.exe (SetWindowThemeAttribute) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FFCFE6)
[Address] EAT @explorer.exe (ThemeInitApiHook) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEB176)
[Address] EAT @explorer.exe (UpdatePanningFeedback) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7401068D)
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) ST9160314AS ATA Device +++++
--- User ---
[MBR] dd16747eb06930926c45f311163c0fe7
[BSP] bd5e073074f4363985c3cfb4ee4378bb : Windows 7/8 MBR Code
Partition table:
0 - [XXXXXX] COMPAQ (0x12) [VISIBLE] Offset (sectors): 2048 | Size: 10240 MB
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 20973584 | Size: 44401 MB
2 - [XXXXXX] EXTEN (0x05) [VISIBLE] Offset (sectors): 111908790 | Size: 97982 MB
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[0]_D_04102014_093315.txt >>
RKreport[0]_S_04092014_182836.txt;RKreport[0]_S_04092014_182948.txt
RogueKiller V8.8.15 [Mar 27 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : Petra [Práva správce]
Mód : Oprava HOSTS -- Datum : 04/10/2014 09:34:21
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 0 ¤¤¤
¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
¤¤¤ Resetovaný HOSTS: ¤¤¤
127.0.0.1 localhost
Dokončeno : << RKreport[0]_H_04102014_093421.txt >>
RKreport[0]_D_04102014_093315.txt;RKreport[0]_S_04092014_182836.txt;RKreport[0]_S_04092014_182948.txt
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : Petra [Práva správce]
Mód : Odebrat -- Datum : 04/10/2014 09:33:15
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 2 ¤¤¤
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)
¤¤¤ naplánované úlohy : 0 ¤¤¤
¤¤¤ spuštění položky : 0 ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Browser Addons : 0 ¤¤¤
¤¤¤ Zvláštní soubory / Složky: ¤¤¤
¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
[Address] EAT @explorer.exe (DllCanUnloadNow) : ntlanman.dll -> HOOKED (C:\Windows\system32\Syncreg.dll @ 0x733B3418)
[Address] EAT @explorer.exe (DllGetClassObject) : ntlanman.dll -> HOOKED (C:\Windows\system32\Syncreg.dll @ 0x733B34C5)
[Address] EAT @explorer.exe (DllRegisterServer) : ntlanman.dll -> HOOKED (C:\Windows\system32\Syncreg.dll @ 0x733B33A5)
[Address] EAT @explorer.exe (DllUnregisterServer) : ntlanman.dll -> HOOKED (C:\Windows\system32\Syncreg.dll @ 0x733B3408)
[Address] EAT @explorer.exe (BeginBufferedAnimation) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF09AE)
[Address] EAT @explorer.exe (BeginBufferedPaint) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE49A1)
[Address] EAT @explorer.exe (BeginPanningFeedback) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74010731)
[Address] EAT @explorer.exe (BufferedPaintClear) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE6395)
[Address] EAT @explorer.exe (BufferedPaintInit) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE940E)
[Address] EAT @explorer.exe (BufferedPaintRenderAnimation) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF08ED)
[Address] EAT @explorer.exe (BufferedPaintSetAlpha) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FFE6B3)
[Address] EAT @explorer.exe (BufferedPaintStopAllAnimations) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FFD395)
[Address] EAT @explorer.exe (BufferedPaintUnInit) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE94AB)
[Address] EAT @explorer.exe (CloseThemeData) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE6A18)
[Address] EAT @explorer.exe (DrawThemeBackground) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE3982)
[Address] EAT @explorer.exe (DrawThemeBackgroundEx) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FFD9DA)
[Address] EAT @explorer.exe (DrawThemeEdge) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74003B52)
[Address] EAT @explorer.exe (DrawThemeIcon) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x740135E7)
[Address] EAT @explorer.exe (DrawThemeParentBackground) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE53E5)
[Address] EAT @explorer.exe (DrawThemeParentBackgroundEx) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE51BF)
[Address] EAT @explorer.exe (DrawThemeText) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE4EA1)
[Address] EAT @explorer.exe (DrawThemeTextEx) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE63E6)
[Address] EAT @explorer.exe (EnableThemeDialogTexture) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEFCAF)
[Address] EAT @explorer.exe (EnableTheming) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74012FEB)
[Address] EAT @explorer.exe (EndBufferedAnimation) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE3F9A)
[Address] EAT @explorer.exe (EndBufferedPaint) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE3F9A)
[Address] EAT @explorer.exe (EndPanningFeedback) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x740106CC)
[Address] EAT @explorer.exe (GetBufferedPaintBits) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE4BAF)
[Address] EAT @explorer.exe (GetBufferedPaintDC) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF04BC)
[Address] EAT @explorer.exe (GetBufferedPaintTargetDC) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF0473)
[Address] EAT @explorer.exe (GetBufferedPaintTargetRect) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74012E7F)
[Address] EAT @explorer.exe (GetCurrentThemeName) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF05DD)
[Address] EAT @explorer.exe (GetThemeAppProperties) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF0FB1)
[Address] EAT @explorer.exe (GetThemeBackgroundContentRect) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FECD2E)
[Address] EAT @explorer.exe (GetThemeBackgroundExtent) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEF8BF)
[Address] EAT @explorer.exe (GetThemeBackgroundRegion) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF165D)
[Address] EAT @explorer.exe (GetThemeBitmap) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEBF93)
[Address] EAT @explorer.exe (GetThemeBool) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE7C1F)
[Address] EAT @explorer.exe (GetThemeColor) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE616C)
[Address] EAT @explorer.exe (GetThemeDocumentationProperty) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74012932)
[Address] EAT @explorer.exe (GetThemeEnumValue) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE616C)
[Address] EAT @explorer.exe (GetThemeFilename) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74012412)
[Address] EAT @explorer.exe (GetThemeFont) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEFF21)
[Address] EAT @explorer.exe (GetThemeInt) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE616C)
[Address] EAT @explorer.exe (GetThemeIntList) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x740123B1)
[Address] EAT @explorer.exe (GetThemeMargins) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE86E9)
[Address] EAT @explorer.exe (GetThemeMetric) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF06E2)
[Address] EAT @explorer.exe (GetThemePartSize) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FECDB1)
[Address] EAT @explorer.exe (GetThemePosition) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74012350)
[Address] EAT @explorer.exe (GetThemePropertyOrigin) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74003FBB)
[Address] EAT @explorer.exe (GetThemeRect) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF3611)
[Address] EAT @explorer.exe (GetThemeStream) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF39D9)
[Address] EAT @explorer.exe (GetThemeString) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x740122E4)
[Address] EAT @explorer.exe (GetThemeSysBool) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74013172)
[Address] EAT @explorer.exe (GetThemeSysColor) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74003274)
[Address] EAT @explorer.exe (GetThemeSysColorBrush) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7401301E)
[Address] EAT @explorer.exe (GetThemeSysFont) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x740129C4)
[Address] EAT @explorer.exe (GetThemeSysInt) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74012BD3)
[Address] EAT @explorer.exe (GetThemeSysSize) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7401320B)
[Address] EAT @explorer.exe (GetThemeSysString) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74012B3F)
[Address] EAT @explorer.exe (GetThemeTextExtent) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE2D57)
[Address] EAT @explorer.exe (GetThemeTextMetrics) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEF992)
[Address] EAT @explorer.exe (GetThemeTransitionDuration) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF1081)
[Address] EAT @explorer.exe (GetWindowTheme) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEDF46)
[Address] EAT @explorer.exe (HitTestThemeBackground) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF3CE3)
[Address] EAT @explorer.exe (IsAppThemed) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEF869)
[Address] EAT @explorer.exe (IsCompositionActive) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE2E9A)
[Address] EAT @explorer.exe (IsThemeActive) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEF785)
[Address] EAT @explorer.exe (IsThemeBackgroundPartiallyTransparent) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE60AB)
[Address] EAT @explorer.exe (IsThemeDialogTextureEnabled) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7401312B)
[Address] EAT @explorer.exe (IsThemePartDefined) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE85B4)
[Address] EAT @explorer.exe (OpenThemeData) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FE73D2)
[Address] EAT @explorer.exe (OpenThemeDataEx) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74003D43)
[Address] EAT @explorer.exe (SetThemeAppProperties) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x74013296)
[Address] EAT @explorer.exe (SetWindowTheme) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FF0134)
[Address] EAT @explorer.exe (SetWindowThemeAttribute) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FFCFE6)
[Address] EAT @explorer.exe (ThemeInitApiHook) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x73FEB176)
[Address] EAT @explorer.exe (UpdatePanningFeedback) : mbamext.dll -> HOOKED (C:\Windows\system32\UxTheme.dll @ 0x7401068D)
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
¤¤¤ Kontrola MBR: ¤¤¤
+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) ST9160314AS ATA Device +++++
--- User ---
[MBR] dd16747eb06930926c45f311163c0fe7
[BSP] bd5e073074f4363985c3cfb4ee4378bb : Windows 7/8 MBR Code
Partition table:
0 - [XXXXXX] COMPAQ (0x12) [VISIBLE] Offset (sectors): 2048 | Size: 10240 MB
1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 20973584 | Size: 44401 MB
2 - [XXXXXX] EXTEN (0x05) [VISIBLE] Offset (sectors): 111908790 | Size: 97982 MB
User = LL1 ... OK!
User = LL2 ... OK!
Dokončeno : << RKreport[0]_D_04102014_093315.txt >>
RKreport[0]_S_04092014_182836.txt;RKreport[0]_S_04092014_182948.txt
RogueKiller V8.8.15 [Mar 27 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Podpora : http://forum.adlice.com
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com
Operační systém : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Spuštěno v : Normální režim
Uživatel : Petra [Práva správce]
Mód : Oprava HOSTS -- Datum : 04/10/2014 09:34:21
| ARK || FAK || MBR |
¤¤¤ Škodlivé procesy: : 0 ¤¤¤
¤¤¤ ¤¤¤ Záznamy Registrů: : 0 ¤¤¤
¤¤¤ Ovladač : [NAHRÁNO] ¤¤¤
¤¤¤ Externí včelstvo: ¤¤¤
¤¤¤ Nákaza : ¤¤¤
¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts
¤¤¤ Resetovaný HOSTS: ¤¤¤
127.0.0.1 localhost
Dokončeno : << RKreport[0]_H_04102014_093421.txt >>
RKreport[0]_D_04102014_093315.txt;RKreport[0]_S_04092014_182836.txt;RKreport[0]_S_04092014_182948.txt
Re: Prosím o kontrolu děkuji
A jak vypada HD Tune?
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Re: Prosím o kontrolu děkuji
ted jsem se k tomu dostal...
tak tabulka byla celá zelená a status ukázal tohle..... co je dole tak bylo vše oki jen ty žlutý řádky co sjem sejmul....

- Přílohy
-
- hd.jpg (108.56 KiB) Zobrazeno 1788 x
Re: Prosím o kontrolu děkuji
Chyb je tam ale hlaseno dost, to muze pusobit problemy.
Dejte novy log z RSIT
3.5. pro neaktivitu
http://forum.viry.cz/viewtopic.php?f=12&t=123975
01 119 _99 __6 00000C78F6AA Počet chyb čtení
05 100 100 _36 000000000001 Počet přemapovaných sektorů
07 _81 _60 _30 0000099FD554 Počet chybných hledání
BB _99 _99 __0 000000000001 Ohlášeno neopravitelných chyb
BF 100 100 __0 000000000316 Počet udalostí zaznamenaných otřesovým senzorem
C3 _60 _45 __0 00000C78F6AA Počet oprav chybného čtení

3.5. pro neaktivitu

Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).
Možnost podpořit naše fórum https://platba.viry.cz/payment/
Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).