Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Vyskakující reklama, pomalé PC

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
libork
Návštěvník
Návštěvník
Příspěvky: 120
Registrován: 29 zář 2007 22:48

Vyskakující reklama, pomalé PC

#1 Příspěvek od libork »

Ahoj, prosím o kontrolu logu, počítač je zpomalený a po kliknutí na jakýkoliv odkaz vyskakuje reklama.
Děkuju

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 26-04-2014 03
Ran by Libor (administrator) on LIBOR-PC on 27-04-2014 09:02:14
Running from C:\Users\Libor\Documents\Stažené soubory
Microsoft Windows 7 Home Premium Service Pack 2 (X86) OS Language: Czech
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(Microsoft Corporation) c:\Program Files\Microsoft Security Client\MsMpEng.exe
(ABBYY) C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX86\OfficeClickToRun.exe
(Seiko Epson Corporation) C:\Windows\system32\EscSvc.exe
(SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE
(Logitech Inc.) C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
(pdfforge GbR) C:\Program Files\PDF Architect\HelperService.exe
(pdfforge GbR) C:\Program Files\PDF Architect\ConversionService.exe
() C:\Program Files\WinRST\WinRST.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
() C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(SEIKO EPSON CORPORATION) C:\Program Files\EPSON Software\Event Manager\EEventManager.exe
(SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\w32x86\3\E_FATIIME.EXE
() C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe
(Google Inc.) C:\Program Files\Google\Update\1.3.23.9\GoogleCrashHandler.exe
(Microsoft Corporation) c:\Program Files\Microsoft Security Client\NisSrv.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe
(Adobe Systems, Inc.) C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [10754664 2011-07-07] (Realtek Semiconductor)
HKLM\...\Run: [LogitechQuickCamRibbon] => C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe [2793304 2009-10-14] ()
HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [951576 2014-03-11] (Microsoft Corporation)
HKLM\...\Run: [EEventManager] => C:\Program Files\Epson Software\Event Manager\EEventManager.exe [1058400 2011-10-31] (SEIKO EPSON CORPORATION)
HKLM\...\Run: [APSDaemon] => C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKU\S-1-5-21-726496295-2317986126-1619368687-1000\...\Run: [EPLTarget\P0000000000000000] => C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIIME.EXE [249440 2012-02-29] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-726496295-2317986126-1619368687-1000\...\RunOnce: [FlashPlayerUpdate] - C:\Windows\system32\Macromed\Flash\FlashUtil32_12_0_0_77_Plugin.exe [841096 2014-03-12] (Adobe Systems Incorporated)

==================== Internet (Whitelisted) ====================

ProxyServer: http=http://127.0.0.1:9880
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?q={searchT ... {startPage}
SearchScopes: HKCU - {B11F5F4A-5285-4795-906C-0CF4761EA898} URL = http://www.novinky.cz/hledej?w={searchT ... arch_12454
SearchScopes: HKCU - {E3472CF2-F332-4A9F-B906-F879FD3EC370} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_12454
BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL (Microsoft Corporation)
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.20

FireFox:
========
FF ProfilePath: C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default
FF NewTab: hxxp://www.google.com/
FF DefaultSearchEngine: Google
FF SearchEngineOrder.1: Google
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.seznam.cz
FF Keyword.URL: hxxp://www.google.com/search?btnG=Google+Search&q=
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll ()
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems)
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Pirrit Suggestor - C:\Users\Libor\AppData\Roaming\Mozilla\Firefox\Profiles\cozz22r6.default\Extensions\suggestor@suggestor.pirrit.com.xpi [2014-04-22]

Chrome:
=======
CHR Extension: (Dokumenty Google) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-04-14]
CHR Extension: (Disk Google) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2012-12-23]
CHR Extension: (YouTube) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2012-12-23]
CHR Extension: (Vyhledávání Google) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-12-23]
CHR Extension: (Peněženka Google) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-28]
CHR Extension: (Gmail) - C:\Users\Libor\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-12-23]
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2012-12-23]

========================== Services (Whitelisted) =================

R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX86\OfficeClickToRun.exe [1520824 2014-03-30] (Microsoft Corporation)
R2 EpsonScanSvc; C:\Windows\system32\EscSvc.exe [122000 2011-12-12] (Seiko Epson Corporation)
R2 EPSON_PM_RPCV4_04; C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE [142432 2012-02-21] (SEIKO EPSON CORPORATION)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [22216 2014-03-11] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [279776 2014-03-11] (Microsoft Corporation)
R2 PDF Architect Helper Service; C:\Program Files\PDF Architect\HelperService.exe [1324104 2013-01-09] (pdfforge GbR)
R2 PDF Architect Service; C:\Program Files\PDF Architect\ConversionService.exe [795208 2013-01-09] (pdfforge GbR)
R2 WinRST; C:\Program Files\WinRST\WinRST.exe [59904 2014-02-26] ()

==================== Drivers (Whitelisted) ====================

R3 LVPr2Mon; C:\Windows\System32\DRIVERS\LVPr2Mon.sys [25752 2009-10-07] ()
R3 LVUSBSta; C:\Windows\System32\drivers\LVUSBSta.sys [41752 2008-07-26] (Logitech Inc.)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [231960 2014-01-25] (Microsoft Corporation)
R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [6504 2009-05-13] ()
S3 pepifilter; C:\Windows\System32\DRIVERS\lv302af.sys [13848 2008-07-26] (Logitech Inc.)
S3 PID_PEPI; C:\Windows\System32\DRIVERS\LV302V32.SYS [2570520 2008-07-26] (Logitech Inc.)
R3 vpcbus; C:\Windows\System32\DRIVERS\vpchbus.sys [165376 2009-09-23] (Microsoft Corporation)
R1 vpcnfltr; C:\Windows\System32\DRIVERS\vpcnfltr.sys [55040 2009-09-23] (Microsoft Corporation)
R3 vpcusb; C:\Windows\System32\DRIVERS\vpcusb.sys [78336 2009-09-23] (Microsoft Corporation)
R1 vpcvmm; C:\Windows\System32\drivers\vpcvmm.sys [294912 2009-09-23] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-04-27 08:33 - 2014-04-27 08:45 - 00000381 _____ () C:\Users\Libor\Desktop\dohoda 2.txt
2014-04-27 08:20 - 2014-04-27 08:29 - 00000841 _____ () C:\Users\Libor\Desktop\dohoda.txt
2014-04-27 06:46 - 2014-04-27 06:46 - 00000056 _____ () C:\Windows\setupact.log
2014-04-27 06:46 - 2014-04-27 06:46 - 00000000 _____ () C:\Windows\setuperr.log
2014-04-26 21:47 - 2014-04-27 09:02 - 00000000 ____D () C:\Users\Libor\Documents\Stažené soubory
2014-04-26 20:18 - 2014-04-26 20:19 - 00024140 _____ () C:\Users\Libor\Downloads\Addition.txt
2014-04-26 20:17 - 2014-04-27 09:02 - 00000000 ____D () C:\FRST
2014-04-26 20:16 - 2014-04-26 20:17 - 01049088 _____ (Farbar) C:\Users\Libor\Desktop\FRST.exe
2014-04-25 18:00 - 2014-04-25 19:47 - 992073729 _____ () C:\Users\Libor\Downloads\zivot-po-zivote-2010-brrip-xvid-cz.avi
2014-04-24 20:58 - 2014-04-24 20:58 - 00020992 _____ () C:\Users\Libor\Downloads\vykaz.xls
2014-04-22 10:14 - 2014-04-23 07:39 - 00000000 ____D () C:\Users\Libor\AppData\Roaming\systweak
2014-04-22 10:14 - 2014-04-22 10:14 - 00000000 ____D () C:\Users\Libor\Documents\eRightSoft
2014-04-22 10:14 - 2014-04-22 10:14 - 00000000 ____D () C:\Users\Libor\AppData\Roaming\Pirrit
2014-04-22 10:14 - 2014-04-22 10:14 - 00000000 ____D () C:\Users\Libor\AppData\Local\WinRST
2014-04-22 10:14 - 2014-04-22 10:14 - 00000000 ____D () C:\Program Files\WinRST
2014-04-22 10:14 - 2012-10-05 19:54 - 00188416 __RSH () C:\Windows\system32\winDCE32.dll
2014-04-22 10:14 - 2012-07-11 23:00 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\Olepau32.ax
2014-04-22 10:14 - 2012-01-20 14:14 - 00017280 _____ (Systweak Inc., (www.systweak.com)) C:\Windows\system32\roboot.exe
2014-04-22 10:14 - 2011-06-15 23:00 - 00163328 __RSH () C:\Windows\system32\flvDX.dll
2014-04-22 10:14 - 2011-06-14 19:05 - 00121344 __RSH () C:\Windows\system32\TAKDSDecoder.ax
2014-04-22 10:14 - 2011-02-11 10:26 - 00112128 __RSH () C:\Windows\system32\OptimFROG.dll
2014-04-22 10:14 - 2010-01-06 23:00 - 00107520 __RSH () C:\Windows\system32\TAKDSDecoder.dll
2014-04-22 10:14 - 2009-09-27 23:00 - 00143872 __RSH () C:\Windows\system32\AviDX.ax
2014-04-22 10:14 - 2009-08-10 23:00 - 00352768 __RSH () C:\Windows\system32\ac3DX.ax
2014-04-22 10:14 - 2009-03-17 10:38 - 00070656 __RSH () C:\Windows\system32\RLAPEDec.ax
2014-04-22 10:14 - 2009-01-18 17:15 - 00120832 __RSH () C:\Windows\system32\MPCDx.ax
2014-04-22 10:14 - 2009-01-18 12:03 - 00107520 __RSH () C:\Windows\system32\RLMPCDec.ax
2014-04-22 10:14 - 2008-03-16 14:30 - 00216064 __RSH (MONOGRAM Multimedia, s.r.o.) C:\Windows\system32\nbDX.dll
2014-04-22 10:14 - 2007-02-21 12:47 - 00031232 __RSH (Hans Mayerl) C:\Windows\system32\msfDX.dll
2014-04-22 10:14 - 2006-08-16 15:53 - 00175104 __RSH () C:\Windows\system32\CoreAAC.ax
2014-04-22 10:14 - 2006-03-10 20:21 - 00195584 __RSH () C:\Windows\system32\MatroskaDX.ax
2014-04-22 10:14 - 2006-01-12 23:00 - 00123904 __RSH (CoreCodec) C:\Windows\system32\AVCDX.ax
2014-04-22 10:14 - 2005-11-25 21:46 - 00161792 __RSH (Gabest) C:\Windows\system32\RealMediaDX.ax
2014-04-22 10:14 - 2005-02-22 17:55 - 00081920 __RSH () C:\Windows\system32\aac_parser.ax
2014-04-22 10:14 - 2005-02-13 00:00 - 00186880 __RSH (RadLight) C:\Windows\system32\RLOgg.ax
2014-04-22 10:14 - 2005-02-13 00:00 - 00067584 __RSH (RadLight, LLC) C:\Windows\system32\RLTheoraDec.ax
2014-04-22 10:14 - 2005-02-13 00:00 - 00051712 __RSH () C:\Windows\system32\RLSpeexDec.ax
2014-04-22 10:14 - 2005-02-06 00:00 - 00092672 __RSH (RadLight) C:\Windows\system32\RLVorbisDec.ax
2014-04-22 10:14 - 2005-01-18 00:26 - 00179200 __RSH (Gabest) C:\Windows\system32\DiracSplitter.ax
2014-04-22 10:14 - 2004-09-17 04:07 - 00090112 __RSH (-) C:\Windows\system32\TTADSSplitter.ax
2014-04-22 10:14 - 2004-08-22 11:56 - 00090112 __RSH (-) C:\Windows\system32\TTADSDecoder.ax
2014-04-22 10:14 - 2004-04-27 16:03 - 00017408 __RSH (RadLight) C:\Windows\system32\RLOFRDec.ax
2014-04-22 10:14 - 2003-12-07 08:59 - 00097280 __RSH () C:\Windows\system32\FLACDX.ax
2014-04-22 10:10 - 2014-04-22 10:10 - 64722251 _____ (eRightSoft ) C:\Users\Libor\Downloads\SUPERsetup.exe
2014-04-21 19:51 - 2014-04-21 19:51 - 00000000 ____D () C:\Users\Libor\AppData\Local\Apple Computer
2014-04-21 14:26 - 2014-04-21 14:26 - 00000000 ____D () C:\Users\Libor\AppData\Roaming\Apple Computer
2014-04-21 00:10 - 2014-04-21 00:10 - 00000000 ____D () C:\Users\Libor\AppData\Local\Apple
2014-04-21 00:10 - 2014-04-21 00:10 - 00000000 ____D () C:\Users\All Users\Apple
2014-04-21 00:10 - 2014-04-21 00:10 - 00000000 ____D () C:\ProgramData\Apple
2014-04-21 00:10 - 2014-04-21 00:10 - 00000000 ____D () C:\Program Files\Common Files\Apple
2014-04-21 00:08 - 2014-04-21 00:09 - 41404760 _____ (Apple Inc.) C:\Users\Libor\Downloads\QuickTimeInstaller.exe
2014-04-20 23:52 - 2014-04-20 23:52 - 19231650 _____ ( ) C:\Users\Libor\Downloads\QuickTime_Alternative_320.exe
2014-04-15 10:19 - 2014-04-15 10:19 - 00000000 ____D () C:\Users\Libor\AppData\Local\{95829233-E346-4A6A-A2DD-8257DC024B69}
2014-04-15 10:07 - 2014-04-15 10:07 - 00000000 ____D () C:\Users\Libor\AppData\Local\{35DD6F9D-7189-45C3-8C38-8A919CB627FB}
2014-04-14 18:27 - 2014-04-14 21:40 - 3434798984 _____ () C:\Users\Libor\Downloads\Válka-světů-cz-(1080p,-XVID,-stereo).avi
2014-04-12 17:15 - 2014-04-12 17:15 - 00448512 _____ (OldTimer Tools) C:\Users\Libor\Downloads\TFC.exe
2014-04-12 17:10 - 2014-04-12 17:10 - 00165888 _____ () C:\Users\Libor\Downloads\T-Cleaner.exe
2014-04-10 17:52 - 2014-02-04 04:07 - 00234432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2014-04-10 17:52 - 2014-02-04 04:07 - 00149440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2014-04-10 17:52 - 2014-02-04 04:07 - 00027072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2014-04-10 17:52 - 2014-02-04 04:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll
2014-04-10 17:51 - 2014-03-31 02:13 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-04-10 17:51 - 2014-03-31 01:57 - 17073152 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-04-10 17:51 - 2014-03-04 11:17 - 00868352 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2014-04-10 17:51 - 2014-01-24 04:18 - 01212352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2014-04-09 09:13 - 2014-04-09 09:13 - 00335168 _____ (SuperbApp) C:\Users\Libor\Downloads\Bonanza theme.exe
2014-04-07 10:14 - 2014-04-07 10:14 - 00000000 ____D () C:\Users\Libor\AppData\Local\Comodo
2014-04-07 10:14 - 2014-04-07 10:14 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Torch
2014-04-07 10:14 - 2014-04-07 10:14 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Google
2014-04-07 10:14 - 2014-04-07 10:14 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Comodo
2014-04-07 10:14 - 2014-04-07 10:14 - 00000000 ____D () C:\Users\HomeGroupUser$
2014-04-07 10:14 - 2014-04-07 10:14 - 00000000 ____D () C:\Users\Guest\AppData\Local\Torch
2014-04-07 10:14 - 2014-04-07 10:14 - 00000000 ____D () C:\Users\Guest\AppData\Local\Google
2014-04-07 10:14 - 2014-04-07 10:14 - 00000000 ____D () C:\Users\Guest\AppData\Local\Comodo
2014-04-07 10:14 - 2014-04-07 10:14 - 00000000 ____D () C:\Users\Guest
2014-04-07 10:14 - 2014-04-07 10:14 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Torch
2014-04-07 10:14 - 2014-04-07 10:14 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Google
2014-04-07 10:14 - 2014-04-07 10:14 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Comodo
2014-04-07 10:14 - 2014-04-07 10:14 - 00000000 ____D () C:\Users\Administrator
2014-04-07 10:12 - 2014-04-07 10:15 - 00000000 ____D () C:\Users\All Users\GreenApp
2014-04-07 10:12 - 2014-04-07 10:15 - 00000000 ____D () C:\ProgramData\GreenApp

==================== One Month Modified Files and Folders =======

2014-04-27 09:02 - 2014-04-26 21:47 - 00000000 ____D () C:\Users\Libor\Documents\Stažené soubory
2014-04-27 09:02 - 2014-04-26 20:17 - 00000000 ____D () C:\FRST
2014-04-27 08:45 - 2014-04-27 08:33 - 00000381 _____ () C:\Users\Libor\Desktop\dohoda 2.txt
2014-04-27 08:29 - 2014-04-27 08:20 - 00000841 _____ () C:\Users\Libor\Desktop\dohoda.txt
2014-04-27 06:57 - 2014-02-22 10:31 - 01422010 _____ () C:\Windows\WindowsUpdate.log
2014-04-27 06:55 - 2009-07-14 06:34 - 00017152 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-04-27 06:55 - 2009-07-14 06:34 - 00017152 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-04-27 06:53 - 2010-11-20 23:01 - 01584626 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-04-27 06:47 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-04-27 06:46 - 2014-04-27 06:46 - 00000056 _____ () C:\Windows\setupact.log
2014-04-27 06:46 - 2014-04-27 06:46 - 00000000 _____ () C:\Windows\setuperr.log
2014-04-27 00:18 - 2013-09-22 07:57 - 00017446 ____H () C:\Users\Libor\Documents\Charakteristika.odt
2014-04-26 21:26 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\NDF
2014-04-26 21:19 - 2012-01-14 11:49 - 00000000 ___RD () C:\Program Files\Skype
2014-04-26 21:19 - 2012-01-11 11:57 - 00000000 ____D () C:\Program Files\Google
2014-04-26 20:19 - 2014-04-26 20:18 - 00024140 _____ () C:\Users\Libor\Downloads\Addition.txt
2014-04-26 20:17 - 2014-04-26 20:16 - 01049088 _____ (Farbar) C:\Users\Libor\Desktop\FRST.exe
2014-04-26 20:11 - 2009-07-14 06:52 - 00000000 ____D () C:\Windows\system32\FxsTmp
2014-04-25 19:47 - 2014-04-25 18:00 - 992073729 _____ () C:\Users\Libor\Downloads\zivot-po-zivote-2010-brrip-xvid-cz.avi
2014-04-24 20:58 - 2014-04-24 20:58 - 00020992 _____ () C:\Users\Libor\Downloads\vykaz.xls
2014-04-23 07:39 - 2014-04-22 10:14 - 00000000 ____D () C:\Users\Libor\AppData\Roaming\systweak
2014-04-22 10:14 - 2014-04-22 10:14 - 00000000 ____D () C:\Users\Libor\Documents\eRightSoft
2014-04-22 10:14 - 2014-04-22 10:14 - 00000000 ____D () C:\Users\Libor\AppData\Roaming\Pirrit
2014-04-22 10:14 - 2014-04-22 10:14 - 00000000 ____D () C:\Users\Libor\AppData\Local\WinRST
2014-04-22 10:14 - 2014-04-22 10:14 - 00000000 ____D () C:\Program Files\WinRST
2014-04-22 10:14 - 2012-04-12 08:26 - 00001072 _____ () C:\Users\Public\Desktop\SUPER ©.lnk
2014-04-22 10:14 - 2012-04-12 08:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPER © - by eRightSoft
2014-04-22 10:14 - 2012-04-12 08:25 - 00000000 ____D () C:\Program Files\eRightSoft
2014-04-22 10:10 - 2014-04-22 10:10 - 64722251 _____ (eRightSoft ) C:\Users\Libor\Downloads\SUPERsetup.exe
2014-04-21 19:51 - 2014-04-21 19:51 - 00000000 ____D () C:\Users\Libor\AppData\Local\Apple Computer
2014-04-21 14:26 - 2014-04-21 14:26 - 00000000 ____D () C:\Users\Libor\AppData\Roaming\Apple Computer
2014-04-21 00:48 - 2012-01-16 11:22 - 00000000 ____D () C:\Users\Libor\AppData\Roaming\Media Player Classic
2014-04-21 00:10 - 2014-04-21 00:10 - 00000000 ____D () C:\Users\Libor\AppData\Local\Apple
2014-04-21 00:10 - 2014-04-21 00:10 - 00000000 ____D () C:\Users\All Users\Apple
2014-04-21 00:10 - 2014-04-21 00:10 - 00000000 ____D () C:\ProgramData\Apple
2014-04-21 00:10 - 2014-04-21 00:10 - 00000000 ____D () C:\Program Files\Common Files\Apple
2014-04-21 00:09 - 2014-04-21 00:08 - 41404760 _____ (Apple Inc.) C:\Users\Libor\Downloads\QuickTimeInstaller.exe
2014-04-20 23:55 - 2012-01-02 11:31 - 00000000 ____D () C:\Users\Libor\AppData\Local\VirtualStore
2014-04-20 23:52 - 2014-04-20 23:52 - 19231650 _____ ( ) C:\Users\Libor\Downloads\QuickTime_Alternative_320.exe
2014-04-19 08:17 - 2014-03-01 12:17 - 00000000 ____D () C:\Users\Libor\Documents\Otakárek
2014-04-18 17:52 - 2013-09-15 10:34 - 00000000 ____D () C:\Users\Libor\Desktop\David
2014-04-18 17:52 - 2012-05-01 18:00 - 00000000 ____D () C:\Users\Libor\Desktop\foto
2014-04-18 17:52 - 2012-04-29 09:39 - 00000000 ____D () C:\Users\Libor\Desktop\Terka
2014-04-15 10:19 - 2014-04-15 10:19 - 00000000 ____D () C:\Users\Libor\AppData\Local\{95829233-E346-4A6A-A2DD-8257DC024B69}
2014-04-15 10:19 - 2012-08-10 08:45 - 00000000 ____D () C:\Users\Libor\AppData\Local\Windows Live
2014-04-15 10:07 - 2014-04-15 10:07 - 00000000 ____D () C:\Users\Libor\AppData\Local\{35DD6F9D-7189-45C3-8C38-8A919CB627FB}
2014-04-14 21:40 - 2014-04-14 18:27 - 3434798984 _____ () C:\Users\Libor\Downloads\Válka-světů-cz-(1080p,-XVID,-stereo).avi
2014-04-12 17:15 - 2014-04-12 17:15 - 00448512 _____ (OldTimer Tools) C:\Users\Libor\Downloads\TFC.exe
2014-04-12 17:10 - 2014-04-12 17:10 - 00165888 _____ () C:\Users\Libor\Downloads\T-Cleaner.exe
2014-04-12 17:10 - 2013-05-04 14:16 - 00000000 ____D () C:\Program Files\trend micro
2014-04-12 17:10 - 2012-01-02 11:31 - 00000000 ____D () C:\Users\Libor
2014-04-12 12:33 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache
2014-04-12 11:14 - 2013-03-03 16:40 - 00000000 ____D () C:\Users\Libor\AppData\Roaming\Seznam.cz
2014-04-12 06:41 - 2012-01-12 10:23 - 00000000 ____D () C:\Users\Libor\AppData\Local\Adobe
2014-04-11 10:53 - 2012-01-29 17:55 - 00010240 _____ () C:\Users\Libor\Documents\Sporožiro.xls
2014-04-10 18:02 - 2013-08-14 21:37 - 00000000 ____D () C:\Windows\system32\MRT
2014-04-10 18:00 - 2012-01-02 11:51 - 88028728 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-04-09 09:13 - 2014-04-09 09:13 - 00335168 _____ (SuperbApp) C:\Users\Libor\Downloads\Bonanza theme.exe
2014-04-08 22:13 - 2012-01-17 11:37 - 00000000 ____D () C:\Users\Libor\Documents\Texty Nezmaři
2014-04-08 20:28 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2014-04-08 20:15 - 2013-09-14 01:41 - 00000000 ____D () C:\Program Files\Microsoft Office 15
2014-04-07 10:28 - 2013-01-20 10:08 - 00000000 ____D () C:\Users\Libor\Desktop\odkazy
2014-04-07 10:16 - 2013-04-05 10:12 - 00000000 ____D () C:\Users\Libor\AppData\Local\Mozilla
2014-04-07 10:15 - 2014-04-07 10:12 - 00000000 ____D () C:\Users\All Users\GreenApp
2014-04-07 10:15 - 2014-04-07 10:12 - 00000000 ____D () C:\ProgramData\GreenApp
2014-04-07 10:14 - 2014-04-07 10:14 - 00000000 ____D () C:\Users\Libor\AppData\Local\Comodo
2014-04-07 10:14 - 2014-04-07 10:14 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Torch
2014-04-07 10:14 - 2014-04-07 10:14 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Google
2014-04-07 10:14 - 2014-04-07 10:14 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Comodo
2014-04-07 10:14 - 2014-04-07 10:14 - 00000000 ____D () C:\Users\HomeGroupUser$
2014-04-07 10:14 - 2014-04-07 10:14 - 00000000 ____D () C:\Users\Guest\AppData\Local\Torch
2014-04-07 10:14 - 2014-04-07 10:14 - 00000000 ____D () C:\Users\Guest\AppData\Local\Google
2014-04-07 10:14 - 2014-04-07 10:14 - 00000000 ____D () C:\Users\Guest\AppData\Local\Comodo
2014-04-07 10:14 - 2014-04-07 10:14 - 00000000 ____D () C:\Users\Guest
2014-04-07 10:14 - 2014-04-07 10:14 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Torch
2014-04-07 10:14 - 2014-04-07 10:14 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Google
2014-04-07 10:14 - 2014-04-07 10:14 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Comodo
2014-04-07 10:14 - 2014-04-07 10:14 - 00000000 ____D () C:\Users\Administrator
2014-04-07 10:14 - 2012-01-02 11:34 - 00000000 ____D () C:\Users\Libor\AppData\Local\Google
2014-04-03 07:50 - 2012-05-01 00:07 - 00002123 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk
2014-04-03 07:50 - 2012-01-02 11:37 - 00001912 _____ () C:\Windows\epplauncher.mif
2014-04-03 07:50 - 2012-01-02 11:37 - 00000000 ____D () C:\Program Files\Microsoft Security Client
2014-03-31 02:13 - 2014-04-10 17:51 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-03-31 01:57 - 2014-04-10 17:51 - 17073152 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-03-29 21:17 - 2014-02-22 13:49 - 00000000 ____D () C:\Users\Libor\Documents\Daně 2013
2014-03-29 13:06 - 2013-05-02 07:46 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-03-29 10:23 - 2013-05-02 07:46 - 00000000 ____D () C:\Program Files\Mozilla Firefox

==================== Bamital & volsnap Check =================

C:\Windows\explorer.exe => MD5 is legit
C:\Windows\system32\winlogon.exe => MD5 is legit
C:\Windows\system32\wininit.exe => MD5 is legit
C:\Windows\system32\svchost.exe => MD5 is legit
C:\Windows\system32\services.exe => MD5 is legit
C:\Windows\system32\User32.dll => MD5 is legit
C:\Windows\system32\userinit.exe => MD5 is legit
C:\Windows\system32\rpcss.dll => MD5 is legit
C:\Windows\system32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2014-04-19 01:40

==================== End Of Log ============================

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Vyskakující reklama, pomalé PC

#2 Příspěvek od Márty84 »

Zdravim :)

:???: Proc zakladate druhe tema na jeden pocitac? :boxed:
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

libork
Návštěvník
Návštěvník
Příspěvky: 120
Registrován: 29 zář 2007 22:48

Re: Vyskakující reklama, pomalé PC

#3 Příspěvek od libork »

Ahoj :)
Protože mi přestaly chodit odpovědi :(
Počítač se chová stále stejně a nevím, co s tím...

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Vyskakující reklama, pomalé PC

#4 Příspěvek od Márty84 »

Musite pockat, az se Rudy zase dostane k PC. Pak jiste napise dalsi postup.

Tady :closed:
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Zamčeno