
- Spustte poznamkovy blok (Start-spustit-notepad)
- Zkopirujte skript nize
Kód: Vybrat vše
Start HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [35736 2012-04-04] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [843712 2012-04-04] (Adobe Systems Incorporated) HKLM-x32\...\Run: [CLMLServer_For_P2G8] => C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111120 2012-06-08] (CyberLink) HKLM-x32\...\Run: [CLVirtualDrive] => C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [491120 2012-07-12] (CyberLink Corp.) HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [97392 2012-08-15] (CyberLink Corp.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-05-07] (Oracle Corporation) HKU\S-1-5-21-917002104-2466774044-2298986580-1002\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [21444224 2014-05-08] (Skype Technologies S.A.) HKU\S-1-5-21-917002104-2466774044-2298986580-1041\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [21444224 2014-05-08] (Skype Technologies S.A.) GroupPolicy: Group Policy on Chrome detected <======= ATTENTION HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://samsung13.msn.com URLSearchHook: HKCU - PC Tools Browser Guard - {472734EA-242A-422b-ADF8-83D1E48CC825} - C:\Program Files (x86)\PC Tools\PC Tools Security\BDT\PCTBrowserDefender.dll (Threat Expert Ltd.) SearchScopes: HKLM - {86A1A26D-68C5-4BC3-A3BE-08B9CA0331EB} URL = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASMJS SearchScopes: HKLM-x32 - {86A1A26D-68C5-4BC3-A3BE-08B9CA0331EB} URL = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASMJS SearchScopes: HKCU - {86A1A26D-68C5-4BC3-A3BE-08B9CA0331EB} URL = BHO: MySearch -> {08CACAB4-5C0E-1B38-CE35-34B3EE575397} -> C:\Program Files (x86)\MySearch\sLd2qbcd.x64.dll No File BHO: Adblocker -> {C033A9C0-7136-E6D0-0779-AA62C24F3428} -> C:\Program Files (x86)\Adblocker\NjHC3lZ.x64.dll No File BHO: priccechhop -> {EB64504A-9A74-95E7-A09D-935F838FAE5C} -> C:\Program Files (x86)\priccechhop\dgerYu.x64.dll No File BHO-x32: MySearch -> {08CACAB4-5C0E-1B38-CE35-34B3EE575397} -> C:\Program Files (x86)\MySearch\sLd2qbcd.dll No File BHO-x32: Adblocker -> {C033A9C0-7136-E6D0-0779-AA62C24F3428} -> C:\Program Files (x86)\Adblocker\NjHC3lZ.dll No File BHO-x32: priccechhop -> {EB64504A-9A74-95E7-A09D-935F838FAE5C} -> C:\Program Files (x86)\priccechhop\dgerYu.dll No File CHR Extension: (prricechhop) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmhlecapjloklhkfommjnbikoojenjmk [2014-07-31] CHR Extension: (Flash Saving) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\ggfgijbpiheegefliciemofobhmofgce [2014-07-31] CHR Extension: (MySearch) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\omncafadaejkchfcdpklmicfnhbgdiih [2014-07-31] CHR Extension: (prricechhop) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmhlecapjloklhkfommjnbikoojenjmk\3.9 [2014-07-31] CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X] S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X] 2014-08-01 18:19 - 2014-08-01 18:19 - 00112640 _____ (forum.viry.cz) C:\Users\Roman\Downloads\FRSTLauncher (1).exe 2014-08-01 18:19 - 2014-08-01 18:19 - 00112640 _____ (forum.viry.cz) C:\Users\Roman\Desktop\FRSTLauncher (1).exe 2014-08-01 18:17 - 2014-08-01 18:17 - 00112640 _____ (forum.viry.cz) C:\Users\Roman\Downloads\Nepotvrzeno 831100.crdownload 2014-08-01 18:16 - 2014-08-01 18:16 - 02094080 _____ (Farbar) C:\Users\Roman\Downloads\FRST64.exe 2014-08-01 15:15 - 2014-08-01 14:31 - 00001273 _____ () C:\zoek-results2014-08-01-123154.log 2014-08-01 14:30 - 2014-08-01 15:16 - 00001241 _____ () C:\zoek-results.log 2014-08-01 14:29 - 2014-08-01 15:16 - 00000494 _____ () C:\runcheck.txt 2014-08-01 14:29 - 2014-08-01 14:29 - 00000000 ____D () C:\WINDOWS\LastGood.Tmp 2014-08-01 14:28 - 2014-08-01 14:28 - 00000000 ____D () C:\zoek_backup 2014-08-01 14:28 - 2014-08-01 14:27 - 01287168 _____ () C:\Users\Roman\Desktop\zoek.exe 2014-08-01 14:27 - 2014-08-01 14:27 - 01287168 _____ () C:\Users\Roman\Downloads\zoek.exe 2014-08-01 12:17 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\WINDOWS\SysWOW64\sqlite3.dll 2014-08-01 12:06 - 2014-08-01 12:05 - 01361309 _____ () C:\Users\Roman\Desktop\adwcleaner_3.302.exe 2014-08-01 12:05 - 2014-08-01 12:05 - 01361309 _____ () C:\Users\Roman\Downloads\adwcleaner_3.302.exe 2014-07-31 22:47 - 2014-07-31 22:47 - 00000000 ____D () C:\rsit 2014-07-31 22:47 - 2014-07-31 22:47 - 00000000 ____D () C:\Program Files\trend micro 2014-07-31 22:46 - 2014-07-31 22:46 - 01222144 _____ () C:\Users\Roman\Downloads\RSITx64.exe 2014-07-31 22:46 - 2014-07-31 22:46 - 01222144 _____ () C:\Users\Roman\Desktop\RSITx64.exe 2014-07-31 22:42 - 2014-08-01 17:52 - 00000500 ____H () C:\WINDOWS\Tasks\PC_Booster-S-828263068.job 2014-07-31 22:42 - 2014-07-31 22:42 - 00002738 _____ () C:\WINDOWS\System32\Tasks\PC_Booster-S-828263068 2014-07-31 22:42 - 2014-07-31 22:42 - 00000000 ____D () C:\Program Files (x86)\ss Supporter 2014-07-31 22:41 - 2014-07-31 22:43 - 00000000 ____D () C:\ProgramData\b8847bf9066d3291 Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\Norton Security Scan for Roman.job => C:\Program Files (x86)\NORTON~2\Engine\410~1.28\Nss.exe Task: C:\WINDOWS\Tasks\PC_Booster-S-828263068.job => c:\programdata\freshapp installer\pc_booster\PC_Booster.exe <==== ATTENTION Hosts: Reboot: End
- Ulozte vytvoreny TXT jako fixlist.txt
- Presunte vytvoreny fixlist vedle FRST

- Kliknete na Fix
- Probehne oprava a vytvori log Fixlog.txt
