Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Problém se spouštěním scriptu middlecoin run.vbs

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
jenr
Návštěvník
Návštěvník
Příspěvky: 90
Registrován: 10 pro 2003 21:30

Problém se spouštěním scriptu middlecoin run.vbs

#1 Příspěvek od jenr »

Při otevírání internetového prohlížeče se zobrazí zpráva s chybovou hláškou , nelze spustit script middlecoin run.vbs
Předem děkuji za pomoc.


Logfile of random's system information tool 1.10 (written by random/random)
Run by David at 2014-06-18 06:34:17
Microsoft Windows 8 Pro
System drive C: has 118 GB (52%) free of 226 GB
Total RAM: 3070 MB (63% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 6:34:28, on 18. 6. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v10.0 (10.00.9200.16921)
Boot mode: Normal

Running processes:
C:\WINDOWS\system32\taskhostex.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\WINDOWS\system32\wbem\unsecapp.exe
C:\Program Files\DivX\DivX Update\DivXUpdate.exe
C:\Users\David\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Users\David\AppData\Local\Facebook\Update\FacebookUpdate.exe
C:\Program Files\ICQ7M\ICQ.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Users\David\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\David\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\David\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\David\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\David\AppData\Local\Google\Chrome\Application\chrome.exe
C:\WINDOWS\system32\SearchFilterHost.exe
C:\Users\David\Downloads\RSIT.exe
C:\Program Files\trend micro\David.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.bing.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O4 - HKLM\..\Run: [QuickFinder Scheduler] "c:\Program Files\Corel\WordPerfect Office X5\Programs\QFSCHD150.EXE"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKCU\..\Run: [Google Update] "C:\Users\David\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\David\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\Run: [SystemProc] C:\Users\Public\Other\run_shc.lnk
O4 - HKCU\..\Run: [ICQ] "C:\Program Files\ICQ7M\ICQ.exe" silent loginmode=4
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O8 - Extra context menu item: Open with WordPerfect - c:\Program Files\Corel\WordPerfect Office X5\Programs\WPLauncher.hta
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivX Web Player Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @oem1.inf,%BcmBtRSupport.SVCNAME%;Bluetooth Radio Control Service (BcmBtRSupport) - Broadcom Corporation. - C:\WINDOWS\system32\BtwRSupportService.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe

--
End of file - 4840 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-192435782-3781544892-1609080651-1001Core.job - C:\Users\David\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-192435782-3781544892-1609080651-1001UA.job - C:\Users\David\AppData\Local\Facebook\Update\FacebookUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-192435782-3781544892-1609080651-1001Core.job - C:\Users\David\AppData\Local\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-192435782-3781544892-1609080651-1001UA.job - C:\Users\David\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\WpsUpdateTask_David.job - C:\Users\David\hry\Kingsoft Office\wtoolex\wpsupdate.exe -from=task

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-06-15 436600]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-03-21 4502400]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"QuickFinder Scheduler"=c:\Program Files\Corel\WordPerfect Office X5\Programs\QFSCHD150.EXE [2010-03-11 136600]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-06-15 3890208]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"DivXMediaServer"=C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe [2014-05-28 455512]
"DivXUpdate"=C:\Program Files\DivX\DivX Update\DivXUpdate.exe [2014-01-10 1861968]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\David\AppData\Local\Google\Update\GoogleUpdate.exe [2013-02-08 116648]
"Facebook Update"=C:\Users\David\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-06-01 138096]
"SystemProc"=C:\Users\Public\Other\run_shc.lnk [2014-03-04 1352]
"ICQ"=C:\Program Files\ICQ7M\ICQ.exe [2012-11-01 127040]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2014-02-10 20922016]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"PromptOnSecureDesktop"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"msacm.l3acm"=l3codecp.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"vidc.cvid"=iccvid.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.LAGS"=lagarith.dll
"VIDC.FFDS"=ff_vfw.dll
"msacm.ac3acm"=ac3acm.acm
"vidc.DIVX"=DivX.dll
"vidc.yv12"=DivX.dll
"VIDC.FPS1"=frapsvid.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2014-06-18 06:34:18 ----D---- C:\Program Files\trend micro
2014-06-18 06:34:17 ----D---- C:\rsit
2014-06-18 06:27:33 ----D---- C:\Program Files\Common Files\Skype
2014-06-15 17:46:33 ----D---- C:\Program Files\CCleaner
2014-06-15 17:38:59 ----D---- C:\Users\David\AppData\Roaming\DropboxMaster
2014-06-15 17:37:56 ----D---- C:\Users\David\AppData\Roaming\Dropbox
2014-06-15 16:37:17 ----A---- C:\WINDOWS\system32\drivers\aswstm.sys
2014-06-15 16:37:17 ----A---- C:\WINDOWS\system32\drivers\aswHwid.sys
2014-06-15 16:37:11 ----A---- C:\WINDOWS\avastSS.scr
2014-06-15 15:41:59 ----A---- C:\WINDOWS\system32\UXInit.dll
2014-06-15 15:41:59 ----A---- C:\WINDOWS\system32\urlmon.dll
2014-06-15 15:41:58 ----A---- C:\WINDOWS\system32\msrating.dll
2014-06-15 15:41:58 ----A---- C:\WINDOWS\system32\msfeeds.dll
2014-06-15 15:41:58 ----A---- C:\WINDOWS\system32\iernonce.dll
2014-06-15 15:41:58 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2014-06-15 15:41:57 ----A---- C:\WINDOWS\system32\mshtmled.dll
2014-06-15 15:41:57 ----A---- C:\WINDOWS\system32\iesysprep.dll
2014-06-15 15:41:57 ----A---- C:\WINDOWS\system32\iesetup.dll
2014-06-15 15:41:56 ----A---- C:\WINDOWS\system32\uxtheme.dll
2014-06-15 15:41:56 ----A---- C:\WINDOWS\system32\jsproxy.dll
2014-06-15 15:41:55 ----A---- C:\WINDOWS\system32\ieframe.dll
2014-06-15 15:41:53 ----A---- C:\WINDOWS\system32\dxtrans.dll
2014-06-15 15:41:52 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2014-06-15 15:41:51 ----A---- C:\WINDOWS\system32\jscript.dll
2014-06-15 15:41:50 ----A---- C:\WINDOWS\system32\wininet.dll
2014-06-15 15:41:50 ----A---- C:\WINDOWS\system32\iertutil.dll
2014-06-15 15:41:38 ----A---- C:\WINDOWS\system32\jscript9.dll
2014-06-15 15:41:37 ----A---- C:\WINDOWS\system32\mshtml.dll
2014-06-15 15:41:24 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2014-06-15 15:41:22 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2014-06-15 15:40:53 ----A---- C:\WINDOWS\system32\gdi32.dll
2014-06-15 15:39:39 ----A---- C:\WINDOWS\system32\kerberos.dll
2014-06-15 15:39:38 ----A---- C:\WINDOWS\system32\lsasrv.dll
2014-06-15 15:39:37 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2014-06-15 15:39:37 ----A---- C:\WINDOWS\system32\KernelBase.dll
2014-06-15 15:39:37 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2014-06-15 15:39:36 ----A---- C:\WINDOWS\system32\winlogon.exe
2014-06-15 15:39:36 ----A---- C:\WINDOWS\system32\usercpl.dll
2014-06-15 15:39:36 ----A---- C:\WINDOWS\system32\sspicli.dll
2014-06-15 15:39:36 ----A---- C:\WINDOWS\system32\objsel.dll
2014-06-15 15:39:36 ----A---- C:\WINDOWS\system32\msv1_0.dll
2014-06-15 15:39:36 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2014-06-15 15:39:35 ----A---- C:\WINDOWS\system32\wdigest.dll
2014-06-15 15:39:35 ----A---- C:\WINDOWS\system32\TSpkg.dll
2014-06-15 15:39:35 ----A---- C:\WINDOWS\system32\lsm.dll
2014-06-15 15:39:35 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2014-06-15 15:39:35 ----A---- C:\WINDOWS\system32\drivers\ksecdd.sys
2014-06-15 15:39:34 ----A---- C:\WINDOWS\system32\sspisrv.dll
2014-06-15 15:39:34 ----A---- C:\WINDOWS\system32\schannel.dll
2014-06-15 15:39:34 ----A---- C:\WINDOWS\system32\SHCore.dll
2014-06-15 15:39:34 ----A---- C:\WINDOWS\system32\lsass.exe
2014-06-15 15:39:34 ----A---- C:\WINDOWS\system32\dimsroam.dll
2014-06-15 15:39:33 ----A---- C:\WINDOWS\system32\credssp.dll
2014-06-15 15:39:07 ----A---- C:\WINDOWS\system32\msxml3.dll
2014-06-15 15:39:04 ----A---- C:\WINDOWS\system32\schedsvc.dll
2014-06-15 15:37:56 ----A---- C:\WINDOWS\system32\kernel32.dll
2014-06-15 15:37:55 ----A---- C:\WINDOWS\system32\gpedit.dll
2014-06-15 15:37:55 ----A---- C:\WINDOWS\system32\drivers\srvnet.sys
2014-06-15 15:37:55 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2014-06-15 15:37:55 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2014-06-15 15:37:55 ----A---- C:\WINDOWS\system32\drivers\IPMIDrv.sys
2014-06-15 15:37:49 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2014-06-15 15:37:48 ----A---- C:\WINDOWS\system32\wusa.exe
2014-06-15 15:37:48 ----A---- C:\WINDOWS\system32\drivers\Classpnp.sys
2014-06-15 15:37:30 ----A---- C:\WINDOWS\system32\shell32.dll
2014-06-15 15:37:13 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2014-06-15 15:37:00 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2014-06-15 15:36:51 ----A---- C:\WINDOWS\system32\WSShared.dll
2014-06-15 15:36:51 ----A---- C:\WINDOWS\system32\NotificationUI.exe
2014-06-15 15:36:50 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-06-15 15:17:03 ----D---- C:\Users\David\AppData\Roaming\Mozilla

======List of files/folders modified in the last 1 month======

2014-06-18 06:34:24 ----D---- C:\WINDOWS\Prefetch
2014-06-18 06:34:18 ----RD---- C:\Program Files
2014-06-18 06:28:16 ----D---- C:\WINDOWS\Temp
2014-06-18 06:27:50 ----D---- C:\Users\David\AppData\Roaming\Skype
2014-06-18 06:27:36 ----SHD---- C:\WINDOWS\Installer
2014-06-18 06:27:33 ----RD---- C:\Program Files\Skype
2014-06-18 06:27:33 ----D---- C:\Program Files\Common Files
2014-06-18 06:27:32 ----D---- C:\ProgramData\Skype
2014-06-18 06:15:00 ----D---- C:\WINDOWS\AUInstallAgent
2014-06-18 06:14:31 ----HD---- C:\Program Files\WindowsApps
2014-06-16 22:26:49 ----D---- C:\ProgramData\BRowsE2soave
2014-06-16 21:18:01 ----D---- C:\WINDOWS\system32\sru
2014-06-15 17:46:37 ----D---- C:\WINDOWS\system32\Tasks
2014-06-15 17:40:25 ----HD---- C:\ProgramData
2014-06-15 16:44:01 ----D---- C:\WINDOWS\system32\Drivers
2014-06-15 16:41:49 ----D---- C:\WINDOWS\system32\config
2014-06-15 16:37:13 ----D---- C:\Windows
2014-06-15 16:37:11 ----A---- C:\WINDOWS\system32\aswBoot.exe
2014-06-15 16:34:49 ----D---- C:\WINDOWS\rescache
2014-06-15 16:11:24 ----D---- C:\WINDOWS\Microsoft.NET
2014-06-15 16:00:16 ----D---- C:\WINDOWS\WinSxS
2014-06-15 16:00:14 ----RD---- C:\WINDOWS\System32
2014-06-15 15:59:12 ----D---- C:\WINDOWS\inf
2014-06-15 15:56:58 ----D---- C:\WINDOWS\WinStore
2014-06-15 15:56:56 ----D---- C:\Program Files\Internet Explorer
2014-06-15 15:56:53 ----D---- C:\Program Files\Windows Defender
2014-06-15 15:56:50 ----D---- C:\WINDOWS\system32\cs-CZ
2014-06-15 15:56:50 ----D---- C:\WINDOWS\PolicyDefinitions
2014-06-15 15:56:47 ----D---- C:\WINDOWS\system32\SecureBootUpdates
2014-06-15 15:56:41 ----RD---- C:\WINDOWS\ToastData
2014-06-15 15:56:40 ----D---- C:\WINDOWS\system32\DriverStore
2014-06-15 15:55:11 ----D---- C:\WINDOWS\CbsTemp
2014-06-15 15:47:42 ----D---- C:\WINDOWS\system32\MRT
2014-06-15 15:40:36 ----D---- C:\WINDOWS\system32\catroot2
2014-06-15 15:32:48 ----D---- C:\ProgramData\Oracle
2014-06-15 15:30:10 ----D---- C:\ProgramData\DivX
2014-06-15 15:30:07 ----D---- C:\Program Files\DivX
2014-06-15 15:29:58 ----D---- C:\Program Files\WinRAR
2014-06-15 15:28:26 ----D---- C:\Program Files\Common Files\DivX Shared
2014-06-15 15:28:20 ----D---- C:\Users\David\AppData\Roaming\DivX
2014-06-15 15:27:23 ----D---- C:\Program Files\Java
2014-06-15 15:26:54 ----SHD---- C:\System Volume Information
2014-06-01 17:18:38 ----A---- C:\WINDOWS\system32\MRT.exe
2014-05-31 07:16:07 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2014-05-30 07:33:21 ----D---- C:\Program Files\Win Drive

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2014-06-15 49944]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2014-06-15 180632]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2014-06-15 81768]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2014-06-15 777488]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2014-06-15 411680]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2012-07-26 52224]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2014-06-15 24184]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2014-06-15 67824]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2014-06-15 68312]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2012-07-26 10071552]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2012-06-29 290304]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\WINDOWS\System32\drivers\BthEnum.sys [2013-03-02 40448]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Zařízení Bluetooth (síť PAN); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2012-07-26 93696]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2013-01-09 56320]
R3 NETwNs32;@netwns32.inf,___ %NIC_Service_DispName_WIN7%;___ Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 32bitový systém Windows 7; C:\WINDOWS\system32\DRIVERS\NETwNs32.sys [2012-06-02 7518208]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2013-03-02 123904]
R3 SrvHsfHDA;SrvHsfHDA; C:\WINDOWS\system32\DRIVERS\VSTAZL3.SYS [2012-06-02 207360]
R3 SrvHsfV92;SrvHsfV92; C:\WINDOWS\system32\DRIVERS\VSTDPV3.SYS [2012-06-02 980992]
R3 SrvHsfWinac;SrvHsfWinac; C:\WINDOWS\system32\DRIVERS\VSTCNXT3.SYS [2012-06-02 661504]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2013-07-09 175872]
R3 yukonw8;@netmyk32.inf,%yk63x86.DriverDesc%;NDIS6.3 Miniport Driver for Marvell Yukon Ethernet Controller; C:\WINDOWS\system32\DRIVERS\yk63x86.sys [2012-07-26 238080]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2013-03-02 990208]
S3 dg_ssudbus;@oem6.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2013-06-04 84248]
S3 dot4;@oem4.inf,%Dot4_Name%;MS IEEE-1284.4 Driver; C:\WINDOWS\system32\DRIVERS\Dot4.sys [2012-10-19 137632]
S3 Dot4Print;@oem5.inf,%Dot4Print_Name%;Print Class Driver for IEEE-1284.4; C:\WINDOWS\System32\drivers\Dot4Prt.sys [2012-10-19 22432]
S3 dot4usb;@oem4.inf,%DOT4USB_NAME%;Dot4USB Filter; C:\WINDOWS\system32\DRIVERS\dot4usb.sys [2012-10-19 42912]
S3 ssudmdm;@oem8.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2013-06-04 181912]
S3 ssudobex;@oem9.inf,%ssud.Service.Name%;SAMSUNG Mobile USB OBEX Serial Port(DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudobex.sys [2013-06-04 181912]
S3 WinUsb;@oem7.inf,%WinUSB_SvcDesc%;SAMSUNG Android USB Driver; C:\WINDOWS\system32\DRIVERS\WinUsb.sys [2012-07-26 46592]
S3 WSDPrintDevice;@WSDPrint.Inf,%WSDPrintDevice.SVCDESC%;WSD Print Support; C:\WINDOWS\System32\drivers\WSDPrint.sys [2012-07-26 16384]
S3 WUDFSensorLP;@locationprovider.inf,%WudfLocationProviderDisplayName%;Služba Reflektor UMDF pro zprostředkovatele umístění (LocationProvider); C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2012-07-26 155136]
S3 WUDFWpdFs;WUDFWpdFs; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2012-07-26 155136]
S3 WUDFWpdMtp;WUDFWpdMtp; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2012-07-26 155136]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-06-15 50344]
R2 BcmBtRSupport;@oem1.inf,%BcmBtRSupport.SVCNAME%;Bluetooth Radio Control Service; C:\WINDOWS\system32\BtwRSupportService.exe [2011-12-15 1668136]
R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2014-04-11 1390720]
R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2014-04-11 1764992]
R2 PSI_SVC_2;Protexis Licensing V2; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [2007-07-24 185632]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-10-23 172192]

-----------------EOF-----------------

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15729
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Problém se spouštěním scriptu middlecoin run.vbs

#2 Příspěvek od JaRon »

vloz log z MBAM - postaci rychla kontrola
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

jenr
Návštěvník
Návštěvník
Příspěvky: 90
Registrován: 10 pro 2003 21:30

Re: Problém se spouštěním scriptu middlecoin run.vbs

#3 Příspěvek od jenr »

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 18. 6. 2014
Scan Time: 13:38:16
Logfile: MBAM log.txt
Administrator: Yes

Version: 2.00.2.1012
Malware Database: v2014.06.18.03
Rootkit Database: v2014.06.02.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled

OS: Windows 8
CPU: x86
File System: NTFS
User: David

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 243130
Time Elapsed: 8 min, 18 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 3
PUP.Optional.InboxToolBar.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{D3D233D5-9F6D-436C-B6C7-E63F77503B30}, , [e7045524b7c4d363e599ba85000254ac],
PUP.Optional.InboxToolBar.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{D7E97865-918F-41E4-9CD0-25AB1C574CE8}, , [7774c8b13c3ff145187c7dfcd52d0ff1],
PUP.Optional.Softonic.A, HKU\S-1-5-21-192435782-3781544892-1609080651-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SOFTONIC\Universal Downloader, , [8e5db6c3c3b886b0e584456eb84a6b95],

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 0
(No malicious items detected)

Files: 4
PUP.Optional.MultiPlug.A, C:\ProgramData\Seaarch-NEEwTaaby\515da3d62de52.dll, , [876455248cef5cda8ad2bd4daa5716ea],
PUP.Optional.ToolBarInstaller.A, C:\Users\David\Downloads\TVSetup.exe, , [806bea8f9fdc053184298bbb45bc6997],
Riskware.BitcoinMiner, C:\Users\Public\Other\minerd.exe, , [5893e297c3b8a0963d25dd6836cb59a7],
PUP.Proxy.BCM, C:\Users\Public\Other\mining_proxy.exe, , [18d31762ec8fa492d83e9f77d9273bc5],

Physical Sectors: 0
(No malicious items detected)


(end)

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15729
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Problém se spouštěním scriptu middlecoin run.vbs

#4 Příspěvek od JaRon »

vsetko najdene nechaj odstranit v MBAM - RESTART -
napis ci su este problemy ? ak ano vloz log FRST
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Odpovědět