Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

avg search

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
luk4sp
Návštěvník
Návštěvník
Příspěvky: 93
Registrován: 04 led 2013 17:47

Re: avg search

#16 Příspěvek od luk4sp »

jak to myslíte? pc jede normálně, min. týden jsou ho nechal vyčistit od prachu, jediný problém je, že když je požadován restart, tak před spuštením windows se to jakokdyby sekne a začne blikat v levém horním rohu nějaká pomlčka a tak to zůstane, tak pc musím ručně vypnout a znova zapnout, tj. asi tak jediný problém jinak jede normálně...proč?

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: avg search

#17 Příspěvek od vyosek »

:arrow: Ptam se, jestli problemy zmizely a jestli tudiz bychom mohli uklidit a tema ukoncit

Tak jeste uklidime :James008:

:arrow: T-Cleaner http://vyosek.tym.cz/pro_usery/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: OTC http://oldtimer.geekstogo.com/OTC.exe
  • Stahnete a spustte
  • Kliknete na CleanUp a potvrdte YES
  • Program uklidi a restartuje PC

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stahnete a spustte
  • Kliknete na Start a potvrdte OK
  • Program uklidi a restartuje pc
  • Po pouziti utilitu smazte
:arrow: Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: A pokud nejsou problemy ci dotazy, je to z me strany vse :|
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

luk4sp
Návštěvník
Návštěvník
Příspěvky: 93
Registrován: 04 led 2013 17:47

Re: avg search

#18 Příspěvek od luk4sp »

aha, no AVG secure search pořád v mozille mám když kliknu na "otevře nový panel" pak když píšu třeba v ggoglu do vyhledávání tak zničeho nic mně psaní přepne do "hledat nebo vložit adresu" a to dělá třeba i u youtube a u všech stránek to tak přepne...s tím adw cleanerem jsem to zkoušel ještě před tím než jsem sem psal, v 1 případě to avg secure search zmizlo, jenže při dalším zapnutí pc to tam zas bylo, proto jsem se obrátil sem protože si s tím nevím rady, nebo zda pomůže odinstalovat mozillu a znova nainstalovat?

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: avg search

#19 Příspěvek od vyosek »

A trvate na samotnem antiviru AVG?? U nas neni moc obliben - vyssi zatez, slabsi detekce :?:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

luk4sp
Návštěvník
Návštěvník
Příspěvky: 93
Registrován: 04 led 2013 17:47

Re: avg search

#20 Příspěvek od luk4sp »

netrvám (instaloval mi to tam známý) klidně odinstaluju a nainstaluji i nějaký free který "ochrání" pc, stačí jen poradit co a jak

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: avg search

#21 Příspěvek od vyosek »

:arrow: Odinstalujte AVG pomoci tohoto http://download.avg.com/filedir/util/av ... 3_3341.exe

:arrow: Nainstalujte Avast Free http://www.avast.com/cs-cz/index

:arrow: Dejte novy log z FRST
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

luk4sp
Návštěvník
Návštěvník
Příspěvky: 93
Registrován: 04 led 2013 17:47

Re: avg search

#22 Příspěvek od luk4sp »

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:22-06-2014
Ran by xxx (administrator) on LUKAS on 24-06-2014 17:03:42
Running from C:\Users\xxx\Desktop
Platform: Microsoft Windows 7 Ultimate Service Pack 1 (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RTKAUDIOSERVICE.EXE
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVBg.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Pandora.TV) C:\Program Files\PANDORA.TV\PanService\PandoraService.exe
(pdfforge GbR) C:\Program Files\PDF Architect\HelperService.exe
(pdfforge GbR) C:\Program Files\PDF Architect\ConversionService.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes Anti-Malware\mbam.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
() C:\Program Files\Y Soft\SafeQ Client\Client\SafeQ Client.exe
() C:\Windows\System32\C2MP\TrayMenu.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(PandoraTV) C:\Program Files\PANDORA.TV\PanService\PanProcess.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Microsoft Corporation) C:\Windows\System32\msiexec.exe
(Microsoft Corporation) C:\Windows\System32\UI0Detect.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM\...\Run: [Nvtmru] => C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028384 2000-01-01] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\nvspcap.dll [982232 2013-12-10] (NVIDIA Corporation)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [12017368 2000-01-01] (Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2279712 2013-12-10] (NVIDIA Corporation)
HKLM\...\Run: [SafeQ Client] => C:\Program Files\Y Soft\SafeQ Client\Client\SafeQ Client.exe [249856 2010-03-31] ()
HKLM\...\Run: [] => [X]
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [3873704 2014-06-24] (AVAST Software)
HKU\S-1-5-21-2983826374-2796642713-3069972579-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd)
HKU\S-1-5-21-2983826374-2796642713-3069972579-1001\...\MountPoints2: {b1b98efa-81bf-11e2-b1f5-00261889f256} - E:\cdstart.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\CodecPackTrayMenu.lnk
ShortcutTarget: CodecPackTrayMenu.lnk -> C:\Windows\System32\C2MP\TrayMenu.exe ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\CodecPackUpdateChecker.lnk
ShortcutTarget: CodecPackUpdateChecker.lnk -> C:\Windows\System32\C2MP\UpdateChecker.exe ()
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software)
ShellIconOverlayIdentifiers: Správa překryvné ikony digitálních podpisů AutoCADu -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll (Autodesk, Inc.)

==================== Internet (Whitelisted) ====================

SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKCU - {376CC50E-C7B3-43B4-B9D3-B6C2E6E1797E} URL = https://search.yahoo.com/search?fr=chr- ... earchTerms}
BHO: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files\PDF Architect\PDFIEHelper.dll (pdfforge GbR)
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Tcpip\Parameters: [DhcpNameServer] 213.46.172.37 213.46.172.36

FireFox:
========
FF ProfilePath: C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l1frcy73.default-1403010640209
FF Homepage: hxxp://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_13_0_0_214.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Adblock Plus - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l1frcy73.default-1403010640209\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-06-18]
FF HKLM\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files\PDF Architect\FFPDFArchitectExt
FF Extension: PDF Architect Converter For Firefox - C:\Program Files\PDF Architect\FFPDFArchitectExt [2013-04-15]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-06-24]

Chrome:
=======
CHR StartupUrls: "hxxp://www.google.com/"
CHR Extension: (Dokumenty Google) - C:\Users\xxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-06-24]
CHR Extension: (Disk Google) - C:\Users\xxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-06-24]
CHR Extension: (YouTube) - C:\Users\xxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-06-24]
CHR Extension: (Vyhledávání Google) - C:\Users\xxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-06-24]
CHR Extension: (avast! Online Security) - C:\Users\xxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-06-24]
CHR Extension: (Peněženka Google) - C:\Users\xxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-06-24]
CHR Extension: (Gmail) - C:\Users\xxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-06-24]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-06-24]

========================== Services (Whitelisted) =================

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-06-24] (AVAST Software)
S3 DfSdkS; C:\Program Files\Ashampoo\Ashampoo WinOptimizer 6\Dfsdks.exe [406016 2009-08-24] (mst software GmbH, Germany) [File not signed]
S3 FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [651720 2013-03-01] (Macrovision Europe Ltd.) [File not signed]
R2 MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1809720 2014-05-12] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [860472 2014-05-12] (Malwarebytes Corporation)
R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1494304 2013-12-10] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [14658848 2013-12-10] (NVIDIA Corporation)
R2 PanService; C:\Program Files\PANDORA.TV\PanService\PandoraService.exe [625304 2012-09-28] (Pandora.TV)
R2 PDF Architect Helper Service; C:\Program Files\PDF Architect\HelperService.exe [1324104 2013-01-09] (pdfforge GbR)
R2 PDF Architect Service; C:\Program Files\PDF Architect\ConversionService.exe [795208 2013-01-09] (pdfforge GbR)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService.exe [250072 2000-01-01] (Realtek Semiconductor)

==================== Drivers (Whitelisted) ====================

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24184 2014-06-24] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [67824 2014-06-24] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [81768 2014-06-24] (AVAST Software)
S0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49944 2014-06-24] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [777488 2014-06-24] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [411680 2014-06-24] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [68312 2014-06-24] (AVAST Software)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [180632 2014-06-24] ()
R1 avgtp; C:\Windows\system32\drivers\avgtpx86.sys [42272 2014-04-27] (AVG Technologies)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [242240 2013-04-07] (DT Soft Ltd)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [23256 2014-05-12] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [110296 2014-06-24] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [51928 2014-05-12] (Malwarebytes Corporation)
R3 MTsensor; C:\Windows\System32\DRIVERS\ATKACPI.sys [7680 2007-07-31] (ATK0100)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad32v.sys [34080 2013-12-05] (NVIDIA Corporation)
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-06-24 17:03 - 2014-06-24 17:04 - 00011751 _____ () C:\Users\xxx\Desktop\FRST.txt
2014-06-24 17:00 - 2014-06-24 17:00 - 00000000 ____D () C:\Users\xxx\AppData\Local\Adobe
2014-06-24 16:59 - 2014-06-24 16:59 - 00000000 __SHD () C:\Users\xxx\AppData\Local\EmieUserList
2014-06-24 16:59 - 2014-06-24 16:59 - 00000000 __SHD () C:\Users\xxx\AppData\Local\EmieSiteList
2014-06-24 16:59 - 2014-06-24 16:59 - 00000000 ____D () C:\Users\xxx\AppData\Local\Google
2014-06-24 16:55 - 2014-06-24 16:55 - 00002129 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-06-24 16:55 - 2014-06-24 16:55 - 00000000 ____D () C:\Users\xxx\AppData\Roaming\AVAST Software
2014-06-24 16:55 - 2014-06-24 16:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast
2014-06-24 16:54 - 2014-06-24 17:00 - 00000934 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-06-24 16:54 - 2014-06-24 17:00 - 00000930 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-06-24 16:54 - 2014-06-24 16:54 - 00777488 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2014-06-24 16:54 - 2014-06-24 16:54 - 00411680 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2014-06-24 16:54 - 2014-06-24 16:54 - 00068312 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys
2014-06-24 16:54 - 2014-06-24 16:54 - 00002207 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-06-24 16:54 - 2014-06-24 16:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-06-24 16:54 - 2014-06-24 16:54 - 00000000 ____D () C:\Program Files\Google
2014-06-24 16:54 - 2014-06-24 16:53 - 00776976 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys.1403621697835
2014-06-24 16:54 - 2014-06-24 16:53 - 00411552 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys.1403621697835
2014-06-24 16:54 - 2014-06-24 16:53 - 00180632 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-06-24 16:54 - 2014-06-24 16:53 - 00067776 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys.1403621697835
2014-06-24 16:53 - 2014-06-24 16:53 - 00271264 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-06-24 16:53 - 2014-06-24 16:53 - 00081768 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-06-24 16:53 - 2014-06-24 16:53 - 00067824 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-06-24 16:53 - 2014-06-24 16:53 - 00049944 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-06-24 16:53 - 2014-06-24 16:53 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-06-24 16:53 - 2014-06-24 16:53 - 00024184 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-06-24 16:52 - 2014-06-24 16:52 - 00000000 ____D () C:\Program Files\AVAST Software
2014-06-24 16:51 - 2014-06-24 16:51 - 00000000 ____D () C:\ProgramData\AVAST Software
2014-06-24 16:41 - 2014-06-24 16:45 - 00879350 _____ () C:\Users\xxx\Desktop\avgremover.log
2014-06-24 16:40 - 2014-06-24 16:40 - 04796856 _____ (AVAST Software) C:\Users\xxx\Desktop\avast_free_antivirus_setup_online.exe
2014-06-24 16:40 - 2014-06-24 16:40 - 03529160 _____ (AVG Technologies CZ, s.r.o.) C:\Users\xxx\Desktop\avg_remover_stf_x86_2013_3341.exe
2014-06-24 15:51 - 2014-06-24 15:52 - 05068965 _____ () C:\Users\xxx\Downloads\Fitness-vyziva-Kleiner-Susan.mobi
2014-06-24 14:48 - 2014-06-24 16:49 - 00014084 _____ () C:\Windows\PFRO.log
2014-06-24 14:39 - 2014-06-24 14:39 - 01342659 _____ () C:\Users\xxx\Desktop\adwcleaner_3.213.exe
2014-06-24 14:38 - 2014-06-24 14:38 - 00000716 _____ () C:\Users\xxx\Desktop\JRT.txt
2014-06-24 14:29 - 2014-06-24 14:29 - 00000000 ____D () C:\Windows\ERUNT
2014-06-24 14:28 - 2014-06-24 14:28 - 01016261 _____ (Thisisu) C:\Users\xxx\Desktop\JRT.exe
2014-06-24 11:11 - 2014-06-24 11:44 - 00000364 _____ () C:\Users\xxx\Desktop\SystemLook.txt
2014-06-24 11:09 - 2014-06-24 11:09 - 00139264 _____ () C:\Users\xxx\Desktop\SystemLook.exe
2014-06-24 10:53 - 2014-06-24 10:53 - 00050704 _____ () C:\Users\xxx\Desktop\Extras.Txt
2014-06-24 10:52 - 2014-06-24 10:52 - 00065468 _____ () C:\Users\xxx\Desktop\OTL.Txt
2014-06-23 22:45 - 2014-06-23 23:31 - 823367680 _____ () C:\Users\xxx\Downloads\zbohatni-nebo-chcipni-cz-dvdrip-pres-MultiLoad.cz.avi
2014-06-23 21:29 - 2014-06-23 21:59 - 00000512 _____ () C:\PhysicalMBR.bin
2014-06-23 21:22 - 2014-06-23 21:22 - 00602112 _____ (OldTimer Tools) C:\Users\xxx\Desktop\OTL.exe
2014-06-23 21:18 - 2014-06-23 21:18 - 01873344 _____ ( ) C:\Users\xxx\Downloads\AVG_Browser_configuration_tool.exe
2014-06-23 19:59 - 2014-06-24 17:03 - 00000000 ____D () C:\FRST
2014-06-23 19:53 - 2014-06-23 19:54 - 01073152 _____ (Farbar) C:\Users\xxx\Desktop\FRST.exe
2014-06-23 19:18 - 2014-06-23 19:18 - 00153782 _____ () C:\Users\xxx\Desktop\bookmarks.html
2014-06-23 19:18 - 2014-06-23 19:18 - 00066342 _____ () C:\Users\xxx\Desktop\bookmarks-2014-06-23.json
2014-06-23 17:29 - 2014-06-24 16:49 - 00001176 _____ () C:\Windows\setupact.log
2014-06-23 17:29 - 2014-06-23 17:29 - 00000000 _____ () C:\Windows\setuperr.log
2014-06-21 18:07 - 2014-06-21 18:25 - 497612074 _____ () C:\Users\xxx\Downloads\Hercule-Poirot_02_08_Únos-ministerského-předsedy.avi
2014-06-21 17:28 - 2014-06-21 17:28 - 00000000 ____D () C:\Program Files\Enigma Software Group
2014-06-21 17:27 - 2014-06-21 17:50 - 00000000 ____D () C:\Windows\455F074C814E4520B69B5584BD90400C.TMP
2014-06-21 17:27 - 2014-06-21 17:27 - 00000000 ____D () C:\Program Files\Common Files\Wise Installation Wizard
2014-06-19 17:54 - 2014-06-19 18:57 - 603698018 _____ () C:\Users\xxx\Downloads\Hercule-Poirot_02_07_Tajemství-levného-bytu.AVI
2014-06-19 17:22 - 2014-06-19 17:53 - 546783048 _____ () C:\Users\xxx\Downloads\Hercule-Poirot_02_06_Dvojnásobný-zločin.avi
2014-06-19 15:36 - 2014-06-19 16:14 - 691718644 _____ () C:\Users\xxx\Downloads\Hercule-Poirot_02_05_Tajemné-zmizení-pana-Davenheima.AVI
2014-06-19 15:03 - 2014-06-19 15:03 - 00000000 ____D () C:\Users\xxx\Desktop\Nová složka
2014-06-19 03:32 - 2014-06-19 03:33 - 00000000 ____D () C:\Users\xxx\Desktop\Best House Songs 50K Pack - By Oli Tryon
2014-06-18 14:37 - 2014-03-05 23:37 - 00000670 _____ () C:\Users\xxx\Documents\AVG-internet-security-2013-licensed-key.txt
2014-06-17 15:09 - 2014-06-17 15:09 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-06-15 23:52 - 2014-06-15 23:52 - 00003408 ____N () C:\bootsqm.dat
2014-06-14 15:52 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\system32\sqlite3.dll
2014-06-14 15:51 - 2014-06-24 16:47 - 00000000 ____D () C:\AdwCleaner
2014-06-14 10:22 - 2014-06-24 16:57 - 00110296 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-06-14 10:21 - 2014-06-14 10:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-06-14 10:21 - 2014-06-14 10:21 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2014-06-14 10:21 - 2014-05-12 07:26 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-06-14 10:21 - 2014-05-12 07:25 - 00074456 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-06-12 16:35 - 2014-05-30 11:02 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-06-12 16:35 - 2014-05-30 11:02 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-06-12 16:35 - 2014-05-30 10:43 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-06-12 16:35 - 2014-05-30 10:42 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-06-12 16:35 - 2014-05-30 10:38 - 02179072 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-06-12 16:35 - 2014-05-30 10:34 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-06-12 16:35 - 2014-05-30 10:33 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-06-12 16:35 - 2014-05-30 10:30 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-06-12 16:35 - 2014-05-30 10:28 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-06-12 16:35 - 2014-05-30 10:28 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-06-12 16:35 - 2014-05-30 10:21 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-06-12 16:35 - 2014-05-30 10:16 - 00368128 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-06-12 16:35 - 2014-05-30 10:10 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-06-12 16:35 - 2014-05-30 10:06 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-06-12 16:35 - 2014-05-30 10:04 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-06-12 16:35 - 2014-05-30 10:02 - 00242688 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-06-12 16:35 - 2014-05-30 09:57 - 00595968 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-06-12 16:35 - 2014-05-30 09:54 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-06-12 16:35 - 2014-05-30 09:50 - 01068032 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-06-12 16:35 - 2014-05-30 09:49 - 01964544 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-06-12 16:35 - 2014-05-30 09:40 - 11725312 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-06-12 16:35 - 2014-05-30 09:21 - 01790976 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-06-12 16:35 - 2014-05-30 09:15 - 01143296 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-06-12 16:35 - 2014-05-30 09:13 - 00704512 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-06-12 16:34 - 2014-06-08 10:48 - 00391680 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-06-12 16:34 - 2014-06-08 10:43 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-06-12 16:34 - 2014-05-30 11:18 - 17271296 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-06-12 16:34 - 2014-05-30 10:44 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-06-12 16:34 - 2014-05-30 10:27 - 00592896 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-06-12 16:34 - 2014-05-30 09:56 - 04244992 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-06-12 16:34 - 2014-04-25 04:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2014-06-12 16:34 - 2014-04-05 04:25 - 01294272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-06-12 16:34 - 2014-04-05 04:24 - 00187840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2014-06-12 16:34 - 2014-03-26 16:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2014-06-12 16:34 - 2014-03-26 16:27 - 01237504 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-06-12 16:34 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2014-06-12 16:34 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-06-12 15:49 - 2014-05-08 11:06 - 02742784 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-06-12 15:49 - 2014-05-08 11:06 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll

==================== One Month Modified Files and Folders =======

2014-06-24 17:04 - 2014-06-24 17:03 - 00011751 _____ () C:\Users\xxx\Desktop\FRST.txt
2014-06-24 17:03 - 2014-06-23 19:59 - 00000000 ____D () C:\FRST
2014-06-24 17:00 - 2014-06-24 17:00 - 00000000 ____D () C:\Users\xxx\AppData\Local\Adobe
2014-06-24 17:00 - 2014-06-24 16:54 - 00000934 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-06-24 17:00 - 2014-06-24 16:54 - 00000930 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-06-24 16:59 - 2014-06-24 16:59 - 00000000 __SHD () C:\Users\xxx\AppData\Local\EmieUserList
2014-06-24 16:59 - 2014-06-24 16:59 - 00000000 __SHD () C:\Users\xxx\AppData\Local\EmieSiteList
2014-06-24 16:59 - 2014-06-24 16:59 - 00000000 ____D () C:\Users\xxx\AppData\Local\Google
2014-06-24 16:59 - 2014-01-07 06:38 - 00000000 ____D () C:\Users\xxx\AppData\Local\NVIDIA
2014-06-24 16:59 - 2013-02-23 18:38 - 00000000 ____D () C:\Users\xxx\AppData\Local\Microsoft Games
2014-06-24 16:59 - 2013-02-23 17:46 - 00000000 ____D () C:\Users\xxx\AppData\Local\Mozilla
2014-06-24 16:59 - 2013-02-23 17:01 - 00000000 ____D () C:\Users\xxx\AppData\Local\VirtualStore
2014-06-24 16:57 - 2014-06-14 10:22 - 00110296 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-06-24 16:55 - 2014-06-24 16:55 - 00002129 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-06-24 16:55 - 2014-06-24 16:55 - 00000000 ____D () C:\Users\xxx\AppData\Roaming\AVAST Software
2014-06-24 16:55 - 2014-06-24 16:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast
2014-06-24 16:55 - 2013-03-22 10:01 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-06-24 16:54 - 2014-06-24 16:54 - 00777488 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2014-06-24 16:54 - 2014-06-24 16:54 - 00411680 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2014-06-24 16:54 - 2014-06-24 16:54 - 00068312 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys
2014-06-24 16:54 - 2014-06-24 16:54 - 00002207 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-06-24 16:54 - 2014-06-24 16:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-06-24 16:54 - 2014-06-24 16:54 - 00000000 ____D () C:\Program Files\Google
2014-06-24 16:54 - 2013-02-23 16:51 - 01324855 _____ () C:\Windows\WindowsUpdate.log
2014-06-24 16:54 - 2009-07-14 06:34 - 00014016 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-06-24 16:54 - 2009-07-14 06:34 - 00014016 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-06-24 16:53 - 2014-06-24 16:54 - 00776976 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys.1403621697835
2014-06-24 16:53 - 2014-06-24 16:54 - 00411552 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys.1403621697835
2014-06-24 16:53 - 2014-06-24 16:54 - 00180632 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-06-24 16:53 - 2014-06-24 16:54 - 00067776 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys.1403621697835
2014-06-24 16:53 - 2014-06-24 16:53 - 00271264 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-06-24 16:53 - 2014-06-24 16:53 - 00081768 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-06-24 16:53 - 2014-06-24 16:53 - 00067824 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-06-24 16:53 - 2014-06-24 16:53 - 00049944 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-06-24 16:53 - 2014-06-24 16:53 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-06-24 16:53 - 2014-06-24 16:53 - 00024184 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-06-24 16:52 - 2014-06-24 16:52 - 00000000 ____D () C:\Program Files\AVAST Software
2014-06-24 16:51 - 2014-06-24 16:51 - 00000000 ____D () C:\ProgramData\AVAST Software
2014-06-24 16:49 - 2014-06-24 14:48 - 00014084 _____ () C:\Windows\PFRO.log
2014-06-24 16:49 - 2014-06-23 17:29 - 00001176 _____ () C:\Windows\setupact.log
2014-06-24 16:49 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-06-24 16:47 - 2014-06-14 15:51 - 00000000 ____D () C:\AdwCleaner
2014-06-24 16:45 - 2014-06-24 16:41 - 00879350 _____ () C:\Users\xxx\Desktop\avgremover.log
2014-06-24 16:40 - 2014-06-24 16:40 - 04796856 _____ (AVAST Software) C:\Users\xxx\Desktop\avast_free_antivirus_setup_online.exe
2014-06-24 16:40 - 2014-06-24 16:40 - 03529160 _____ (AVG Technologies CZ, s.r.o.) C:\Users\xxx\Desktop\avg_remover_stf_x86_2013_3341.exe
2014-06-24 15:52 - 2014-06-24 15:51 - 05068965 _____ () C:\Users\xxx\Downloads\Fitness-vyziva-Kleiner-Susan.mobi
2014-06-24 14:39 - 2014-06-24 14:39 - 01342659 _____ () C:\Users\xxx\Desktop\adwcleaner_3.213.exe
2014-06-24 14:38 - 2014-06-24 14:38 - 00000716 _____ () C:\Users\xxx\Desktop\JRT.txt
2014-06-24 14:29 - 2014-06-24 14:29 - 00000000 ____D () C:\Windows\ERUNT
2014-06-24 14:28 - 2014-06-24 14:28 - 01016261 _____ (Thisisu) C:\Users\xxx\Desktop\JRT.exe
2014-06-24 14:08 - 2013-02-23 17:07 - 01584554 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-06-24 11:44 - 2014-06-24 11:11 - 00000364 _____ () C:\Users\xxx\Desktop\SystemLook.txt
2014-06-24 11:09 - 2014-06-24 11:09 - 00139264 _____ () C:\Users\xxx\Desktop\SystemLook.exe
2014-06-24 10:53 - 2014-06-24 10:53 - 00050704 _____ () C:\Users\xxx\Desktop\Extras.Txt
2014-06-24 10:52 - 2014-06-24 10:52 - 00065468 _____ () C:\Users\xxx\Desktop\OTL.Txt
2014-06-24 00:24 - 2013-05-16 01:14 - 00000000 ____D () C:\Users\xxx\AppData\Roaming\Mp3tag
2014-06-23 23:31 - 2014-06-23 22:45 - 823367680 _____ () C:\Users\xxx\Downloads\zbohatni-nebo-chcipni-cz-dvdrip-pres-MultiLoad.cz.avi
2014-06-23 21:59 - 2014-06-23 21:29 - 00000512 _____ () C:\PhysicalMBR.bin
2014-06-23 21:22 - 2014-06-23 21:22 - 00602112 _____ (OldTimer Tools) C:\Users\xxx\Desktop\OTL.exe
2014-06-23 21:18 - 2014-06-23 21:18 - 01873344 _____ ( ) C:\Users\xxx\Downloads\AVG_Browser_configuration_tool.exe
2014-06-23 19:54 - 2014-06-23 19:53 - 01073152 _____ (Farbar) C:\Users\xxx\Desktop\FRST.exe
2014-06-23 19:18 - 2014-06-23 19:18 - 00153782 _____ () C:\Users\xxx\Desktop\bookmarks.html
2014-06-23 19:18 - 2014-06-23 19:18 - 00066342 _____ () C:\Users\xxx\Desktop\bookmarks-2014-06-23.json
2014-06-23 17:29 - 2014-06-23 17:29 - 00000000 _____ () C:\Windows\setuperr.log
2014-06-21 18:25 - 2014-06-21 18:07 - 497612074 _____ () C:\Users\xxx\Downloads\Hercule-Poirot_02_08_Únos-ministerského-předsedy.avi
2014-06-21 17:50 - 2014-06-21 17:27 - 00000000 ____D () C:\Windows\455F074C814E4520B69B5584BD90400C.TMP
2014-06-21 17:28 - 2014-06-21 17:28 - 00000000 ____D () C:\Program Files\Enigma Software Group
2014-06-21 17:27 - 2014-06-21 17:27 - 00000000 ____D () C:\Program Files\Common Files\Wise Installation Wizard
2014-06-21 17:23 - 2013-03-28 23:15 - 00000000 ____D () C:\Windows\system32\appmgmt
2014-06-19 18:57 - 2014-06-19 17:54 - 603698018 _____ () C:\Users\xxx\Downloads\Hercule-Poirot_02_07_Tajemství-levného-bytu.AVI
2014-06-19 17:53 - 2014-06-19 17:22 - 546783048 _____ () C:\Users\xxx\Downloads\Hercule-Poirot_02_06_Dvojnásobný-zločin.avi
2014-06-19 16:14 - 2014-06-19 15:36 - 691718644 _____ () C:\Users\xxx\Downloads\Hercule-Poirot_02_05_Tajemné-zmizení-pana-Davenheima.AVI
2014-06-19 15:28 - 2014-02-26 18:35 - 00004429 _____ () C:\Users\xxx\Desktop\Nový textový dokument (2).txt
2014-06-19 15:27 - 2014-05-10 04:28 - 00000000 ____D () C:\Users\xxx\Desktop\plocha
2014-06-19 15:27 - 2014-03-24 03:20 - 00000000 ____D () C:\Users\xxx\Desktop\Deep House
2014-06-19 15:03 - 2014-06-19 15:03 - 00000000 ____D () C:\Users\xxx\Desktop\Nová složka
2014-06-19 03:33 - 2014-06-19 03:32 - 00000000 ____D () C:\Users\xxx\Desktop\Best House Songs 50K Pack - By Oli Tryon
2014-06-17 15:34 - 2013-02-23 17:46 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-06-17 15:09 - 2014-06-17 15:09 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-06-17 15:09 - 2014-05-09 23:55 - 00000000 ____D () C:\Program Files\Mozilla Firefox.bak
2014-06-16 03:00 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache
2014-06-15 23:52 - 2014-06-15 23:52 - 00003408 ____N () C:\bootsqm.dat
2014-06-14 15:54 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\AppCompat
2014-06-14 10:21 - 2014-06-14 10:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-06-14 10:21 - 2014-06-14 10:21 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2014-06-14 10:21 - 2013-02-27 23:55 - 00001080 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-06-14 10:21 - 2013-02-25 19:55 - 00000000 ____D () C:\Users\xxx\AppData\Roaming\Malwarebytes
2014-06-14 10:21 - 2013-02-25 19:55 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-06-14 10:21 - 2013-02-25 19:55 - 00000000 ____D () C:\Program Files\Malwarebytes' Anti-Malware
2014-06-13 12:56 - 2014-03-24 03:42 - 00000000 ____D () C:\Users\xxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line
2014-06-12 19:13 - 2014-05-06 14:15 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-06-12 16:17 - 2013-02-23 18:26 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-06-12 16:16 - 2013-07-12 15:08 - 00000000 ____D () C:\Windows\system32\MRT
2014-06-12 16:14 - 2013-02-23 19:59 - 92708840 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-06-08 10:48 - 2014-06-12 16:34 - 00391680 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-06-08 10:43 - 2014-06-12 16:34 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-05-30 16:40 - 2014-04-04 04:06 - 00000000 ____D () C:\Users\xxx\Desktop\8.SEMESTR
2014-05-30 11:18 - 2014-06-12 16:34 - 17271296 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-05-30 11:02 - 2014-06-12 16:35 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-05-30 11:02 - 2014-06-12 16:35 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-05-30 10:44 - 2014-06-12 16:34 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-05-30 10:43 - 2014-06-12 16:35 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-05-30 10:42 - 2014-06-12 16:35 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-05-30 10:38 - 2014-06-12 16:35 - 02179072 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-05-30 10:34 - 2014-06-12 16:35 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-05-30 10:33 - 2014-06-12 16:35 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-05-30 10:30 - 2014-06-12 16:35 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-05-30 10:28 - 2014-06-12 16:35 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-05-30 10:28 - 2014-06-12 16:35 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-05-30 10:27 - 2014-06-12 16:34 - 00592896 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-05-30 10:21 - 2014-06-12 16:35 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-05-30 10:16 - 2014-06-12 16:35 - 00368128 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-05-30 10:10 - 2014-06-12 16:35 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-05-30 10:06 - 2014-06-12 16:35 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-05-30 10:04 - 2014-06-12 16:35 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-05-30 10:02 - 2014-06-12 16:35 - 00242688 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-05-30 09:57 - 2014-06-12 16:35 - 00595968 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-05-30 09:56 - 2014-06-12 16:34 - 04244992 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-05-30 09:54 - 2014-06-12 16:35 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-05-30 09:50 - 2014-06-12 16:35 - 01068032 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-05-30 09:49 - 2014-06-12 16:35 - 01964544 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-05-30 09:40 - 2014-06-12 16:35 - 11725312 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-05-30 09:21 - 2014-06-12 16:35 - 01790976 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-05-30 09:15 - 2014-06-12 16:35 - 01143296 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-05-30 09:13 - 2014-06-12 16:35 - 00704512 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-05-25 23:02 - 2013-03-18 17:49 - 00020940 _____ () C:\Users\xxx\Documents\vista_dochazka.xlsx

Some content of TEMP:
====================
C:\Users\xxx\AppData\Local\Temp\UNINSTALL.EXE


==================== Bamital & volsnap Check =================

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-06-19 02:53

==================== End Of Log ============================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: avg search

#23 Příspěvek od vyosek »

:arrow: Tvorba fixlistu pro FRST
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    Start
    HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
    HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
    HKLM\...\Run: [Nvtmru] => C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028384 2000-01-01] (NVIDIA Corporation)
    HKLM\...\Run: [SafeQ Client] => C:\Program Files\Y Soft\SafeQ Client\Client\SafeQ Client.exe [249856 2010-03-31] ()
    HKLM\...\Run: [] => [X]
    HKU\S-1-5-21-2983826374-2796642713-3069972579-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd)
    HKU\S-1-5-21-2983826374-2796642713-3069972579-1001\...\MountPoints2: {b1b98efa-81bf-11e2-b1f5-00261889f256} - E:\cdstart.exe
    Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\CodecPackTrayMenu.lnk
    Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\CodecPackUpdateChecker.lnk
    
    SearchScopes: HKLM - DefaultScope value is missing.
    SearchScopes: HKCU - {376CC50E-C7B3-43B4-B9D3-B6C2E6E1797E} URL = https://search.yahoo.com/search?fr=chr- ... =888596&p={searchTerms}
    
    R2 PanService; C:\Program Files\PANDORA.TV\PanService\PandoraService.exe [625304 2012-09-28] (Pandora.TV)
    C:\Program Files\PANDORA.TV
    
    S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
    S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
    S3 VGPU; System32\drivers\rdvgkmd.sys [X]
    
    2014-06-24 14:39 - 2014-06-24 14:39 - 01342659 _____ () C:\Users\xxx\Desktop\adwcleaner_3.213.exe
    2014-06-24 14:38 - 2014-06-24 14:38 - 00000716 _____ () C:\Users\xxx\Desktop\JRT.txt
    2014-06-24 14:29 - 2014-06-24 14:29 - 00000000 ____D () C:\Windows\ERUNT
    2014-06-24 14:28 - 2014-06-24 14:28 - 01016261 _____ (Thisisu) C:\Users\xxx\Desktop\JRT.exe
    2014-06-24 11:11 - 2014-06-24 11:44 - 00000364 _____ () C:\Users\xxx\Desktop\SystemLook.txt
    2014-06-24 11:09 - 2014-06-24 11:09 - 00139264 _____ () C:\Users\xxx\Desktop\SystemLook.exe
    2014-06-24 10:53 - 2014-06-24 10:53 - 00050704 _____ () C:\Users\xxx\Desktop\Extras.Txt
    2014-06-24 10:52 - 2014-06-24 10:52 - 00065468 _____ () C:\Users\xxx\Desktop\OTL.Txt
    2014-06-23 21:29 - 2014-06-23 21:59 - 00000512 _____ () C:\PhysicalMBR.bin
    2014-06-23 21:22 - 2014-06-23 21:22 - 00602112 _____ (OldTimer Tools) C:\Users\xxx\Desktop\OTL.exe
    2014-06-23 21:18 - 2014-06-23 21:18 - 01873344 _____ ( ) C:\Users\xxx\Downloads\AVG_Browser_configuration_tool.exe
    2014-06-18 14:37 - 2014-03-05 23:37 - 00000670 _____ () C:\Users\xxx\Documents\AVG-internet-security-2013-licensed-key.txt
    2014-06-14 15:52 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\system32\sqlite3.dll
    2014-06-14 15:51 - 2014-06-24 16:47 - 00000000 ____D () C:\AdwCleaner
    
    Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
    Task: C:\Windows\Tasks\Driver Robot.job => ?
    
    Hosts:
    Reboot:
    End
    
  • Ulozte vytvoreny TXT jako fixlist.txt
  • Presunte vytvoreny fixlist vedle FRST
:arrow: Spustte znovu FRST.exe
  • Kliknete na Fix
  • Probehne oprava a vytvori log Fixlog.txt
:arrow: Restart PC a dejte mi sem fixlog.txt
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

luk4sp
Návštěvník
Návštěvník
Příspěvky: 93
Registrován: 04 led 2013 17:47

Re: avg search

#24 Příspěvek od luk4sp »

je tohle ono?

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version:22-06-2014
Ran by xxx at 2014-06-24 19:23:22 Run:1
Running from C:\Users\xxx\Desktop
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
Start
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM\...\Run: [Nvtmru] => C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028384 2000-01-01] (NVIDIA Corporation)
HKLM\...\Run: [SafeQ Client] => C:\Program Files\Y Soft\SafeQ Client\Client\SafeQ Client.exe [249856 2010-03-31] ()
HKLM\...\Run: [] => [X]
HKU\S-1-5-21-2983826374-2796642713-3069972579-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd)
HKU\S-1-5-21-2983826374-2796642713-3069972579-1001\...\MountPoints2: {b1b98efa-81bf-11e2-b1f5-00261889f256} - E:\cdstart.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\CodecPackTrayMenu.lnk
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\CodecPackUpdateChecker.lnk

SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKCU - {376CC50E-C7B3-43B4-B9D3-B6C2E6E1797E} URL = https://search.yahoo.com/search?fr=chr- ... =888596&p={searchTerms}

R2 PanService; C:\Program Files\PANDORA.TV\PanService\PandoraService.exe [625304 2012-09-28] (Pandora.TV)
C:\Program Files\PANDORA.TV

S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

2014-06-24 14:39 - 2014-06-24 14:39 - 01342659 _____ () C:\Users\xxx\Desktop\adwcleaner_3.213.exe
2014-06-24 14:38 - 2014-06-24 14:38 - 00000716 _____ () C:\Users\xxx\Desktop\JRT.txt
2014-06-24 14:29 - 2014-06-24 14:29 - 00000000 ____D () C:\Windows\ERUNT
2014-06-24 14:28 - 2014-06-24 14:28 - 01016261 _____ (Thisisu) C:\Users\xxx\Desktop\JRT.exe
2014-06-24 11:11 - 2014-06-24 11:44 - 00000364 _____ () C:\Users\xxx\Desktop\SystemLook.txt
2014-06-24 11:09 - 2014-06-24 11:09 - 00139264 _____ () C:\Users\xxx\Desktop\SystemLook.exe
2014-06-24 10:53 - 2014-06-24 10:53 - 00050704 _____ () C:\Users\xxx\Desktop\Extras.Txt
2014-06-24 10:52 - 2014-06-24 10:52 - 00065468 _____ () C:\Users\xxx\Desktop\OTL.Txt
2014-06-23 21:29 - 2014-06-23 21:59 - 00000512 _____ () C:\PhysicalMBR.bin
2014-06-23 21:22 - 2014-06-23 21:22 - 00602112 _____ (OldTimer Tools) C:\Users\xxx\Desktop\OTL.exe
2014-06-23 21:18 - 2014-06-23 21:18 - 01873344 _____ ( ) C:\Users\xxx\Downloads\AVG_Browser_configuration_tool.exe
2014-06-18 14:37 - 2014-03-05 23:37 - 00000670 _____ () C:\Users\xxx\Documents\AVG-internet-security-2013-licensed-key.txt
2014-06-14 15:52 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\system32\sqlite3.dll
2014-06-14 15:51 - 2014-06-24 16:47 - 00000000 ____D () C:\AdwCleaner

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\Driver Robot.job => ?

Hosts:
Reboot:
End
*****************

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Nvtmru => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SafeQ Client => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\ => value deleted successfully.
HKU\S-1-5-21-2983826374-2796642713-3069972579-1001\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => value deleted successfully.
'HKU\S-1-5-21-2983826374-2796642713-3069972579-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b1b98efa-81bf-11e2-b1f5-00261889f256}' => Key deleted successfully.
'HKCR\CLSID\{b1b98efa-81bf-11e2-b1f5-00261889f256}'=> Key not found.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\CodecPackTrayMenu.lnk => Moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\CodecPackUpdateChecker.lnk => Moved successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
'HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{376CC50E-C7B3-43B4-B9D3-B6C2E6E1797E}' => Key deleted successfully.
'HKCR\Wow6432Node\CLSID\{376CC50E-C7B3-43B4-B9D3-B6C2E6E1797E}'=> Key not found.
PanService => Service stopped successfully.
PanService => Service deleted successfully.
C:\Program Files\PANDORA.TV => Moved successfully.
Synth3dVsc => Service deleted successfully.
tsusbhub => Service deleted successfully.
VGPU => Service deleted successfully.
C:\Users\xxx\Desktop\adwcleaner_3.213.exe => Moved successfully.
C:\Users\xxx\Desktop\JRT.txt => Moved successfully.
C:\Windows\ERUNT => Moved successfully.
C:\Users\xxx\Desktop\JRT.exe => Moved successfully.
C:\Users\xxx\Desktop\SystemLook.txt => Moved successfully.
C:\Users\xxx\Desktop\SystemLook.exe => Moved successfully.
C:\Users\xxx\Desktop\Extras.Txt => Moved successfully.
C:\Users\xxx\Desktop\OTL.Txt => Moved successfully.
C:\PhysicalMBR.bin => Moved successfully.
C:\Users\xxx\Desktop\OTL.exe => Moved successfully.
C:\Users\xxx\Downloads\AVG_Browser_configuration_tool.exe => Moved successfully.
C:\Users\xxx\Documents\AVG-internet-security-2013-licensed-key.txt => Moved successfully.
C:\Windows\system32\sqlite3.dll => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Windows\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\Windows\Tasks\Driver Robot.job not found.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.


The system needed a reboot.

==== End of Fixlog ====

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: avg search

#25 Příspěvek od vyosek »

Ano, to je ono...

Co PC, AVG stale otravuje?
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

luk4sp
Návštěvník
Návštěvník
Příspěvky: 93
Registrován: 04 led 2013 17:47

Re: avg search

#26 Příspěvek od luk4sp »

v mozille když rozkliknu ten nový panel, tak se objeví viz. obrázek a jak jsem psal automaticky si to vždy přepne psaní do "hledat nebo vložit adresu" a já nevím co s tím :(
Přílohy
Bez názvu.jpg
Bez názvu.jpg (47.48 KiB) Zobrazeno 2072 x

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: avg search

#27 Příspěvek od vyosek »

:arrow: Zkusime jeste dle kolegy
Márty84 píše: Zkuste jeste spustit mozillu a do adresniho radku napsat about:config a odentrujte. Slibte ji, ze tam budete opatrny :D a najedte tam.
Napiste avg a vse smazte
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

luk4sp
Návštěvník
Návštěvník
Příspěvky: 93
Registrován: 04 led 2013 17:47

Re: avg search

#28 Příspěvek od luk4sp »

a jak to smažu, jde mi tak akorát přepnout - kopírovat - kopírovat název atd. , když dám obnovit, tak tohle avg.userPreferences.newtabDisabledByUser se vraci furt do původního stavu (když kliknu na otevřít nový panel) a je tam ještě media.navigator.load_adapt.avg_seconds ale tam nejde obnovit ani nic jiného

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: avg search

#29 Příspěvek od vyosek »

Aha, zmena v pojmenovani...zkuste tedy dat Obnovit
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

luk4sp
Návštěvník
Návštěvník
Příspěvky: 93
Registrován: 04 led 2013 17:47

Re: avg search

#30 Příspěvek od luk4sp »

no něco jsem tam poklikal, nějaké hodnoty pozměnil a vypadá to, že OK, a mám to pc ještě nějak vyčistit ?

Odpovědět