Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Moc prosím o kontrolu

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Haussman77
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 15 srp 2014 09:39

Moc prosím o kontrolu

#1 Příspěvek od Haussman77 »

Dobrý den.Nějak se mi dostal do pc špatný soubor(Nechci říkat jak) a tak prosím abyste udělali kontrolu.

Logfile of random's system information tool 1.10 (written by random/random)
Run by Pc at 2014-08-15 10:36:15
Systém Microsoft Windows XP Professional Service Pack 2
System drive C: has 26 GB (67%) free of 38 GB
Total RAM: 479 MB (56% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:36:45, on 15.8.2014
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\system32\Rundll32.exe
C:\WINDOWS\System32\WScript.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\lcpmnchxdykc.exe
C:\Documents and Settings\Pc\Dokumenty\RSIT.exe
C:\Program Files\trend micro\Pc.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O4 - HKLM\..\Run: [VTPreset] VTPreset.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [P17Helper] Rundll32 P17.dll,P17Helper
O4 - HKLM\..\Run: [mslbgwuSrv] C:\WINDOWS\inf\mslbgwu.vbe
O4 - HKLM\..\Run: [MSStp] C:\WINDOWS\inf\msstp.vbe
O4 - HKLM\..\Run: [mnchxdykcSrv] C:\WINDOWS\system32\mnchxdykc.vbe
O4 - HKLM\..\Run: [msldarSrv] C:\WINDOWS\inf\msldar.vbe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [NextLive] C:\WINDOWS\system32\rundll32.exe "C:\Documents and Settings\Pc\Data aplikací\newnext.me\nengine.dll",EntryPoint -m l
O4 - HKCU\..\Run: [reg_svr] "C:\WINDOWS\System32\regsvr32.exe" /s "C:\Documents and Settings\Pc\Data aplikací\glister\nvm.dll"
O4 - HKCU\..\Run: [CCleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe

--
End of file - 2766 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe

======Registry dump======

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"VTPreset"=C:\WINDOWS\system32\VTPreset.exe [2000-01-01 45056]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2006-11-17 577536]
"P17Helper"=Rundll32 P17.dll,P17Helper []
"mslbgwuSrv"=C:\WINDOWS\inf\mslbgwu.vbe [2013-08-27 1558]
"MSStp"=C:\WINDOWS\inf\msstp.vbe [2014-03-05 1584]
"mnchxdykcSrv"=C:\WINDOWS\system32\mnchxdykc.vbe [2014-03-05 7670]
"msldarSrv"=C:\WINDOWS\inf\msldar.vbe [2013-08-27 1558]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2004-08-17 15360]
"NextLive"=C:\Documents and Settings\Pc\Data aplikací\newnext.me\nengine.dll [2013-11-14 1283584]
"reg_svr"=C:\WINDOWS\System32\regsvr32.exe [2004-08-17 12288]
"CCleaner"=C:\Program Files\CCleaner\CCleaner.exe [2014-01-21 4455704]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UploadMgr]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Counter-Strike 1.6 Standalone\launcher.exe"="C:\Program Files\Counter-Strike 1.6 Standalone\launcher.exe:*:Enabled:Creted by Martin.cz"
"C:\Counter-Strike 1.6\csko.exe"="C:\Counter-Strike 1.6\csko.exe:*:Enabled:Half-Life Launcher"
"C:\Counter-Strike 1.6\hl.exe"="C:\Counter-Strike 1.6\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Program Files\Return to Castle Wolfenstein\WolfMP.exe"="C:\Program Files\Return to Castle Wolfenstein\WolfMP.exe:*:Enabled:WolfMP"
"C:\ZDaemon\zlauncher.exe"="C:\ZDaemon\zlauncher.exe:*:Enabled:ZDaemon Browser"
"C:\Documents and Settings\Pc\Plocha\UT 99\Unreal Tournament\System\UnrealTournament.exe"="C:\Documents and Settings\Pc\Plocha\UT 99\Unreal Tournament\System\UnrealTournament.exe:*:Enabled:UnrealTournament.exe"
"C:\Documents and Settings\Pc\Plocha\HRY\UT 99\Unreal Tournament\System\UnrealTournament.exe"="C:\Documents and Settings\Pc\Plocha\HRY\UT 99\Unreal Tournament\System\UnrealTournament.exe:*:Enabled:UnrealTournament"
"C:\Program Files\Unreal Tournament 2004\System\UT2004.exe"="C:\Program Files\Unreal Tournament 2004\System\UT2004.exe:*:Enabled:UT2004"
"C:\UnrealTournament\System\UnrealTournament.exe"="C:\UnrealTournament\System\UnrealTournament.exe:*:Enabled:UnrealTournament"
"C:\Program Files\Xplosiv\SOF PLATINUM\SoF.exe"="C:\Program Files\Xplosiv\SOF PLATINUM\SoF.exe:*:Enabled:SoF"
"C:\Documents and Settings\Pc\Dokumenty\Half-Life\hl.exe"="C:\Documents and Settings\Pc\Dokumenty\Half-Life\hl.exe:*:Disabled:Half-Life Launcher"
"C:\Documents and Settings\Pc\Plocha\HRY\Half-Life\hl.exe"="C:\Documents and Settings\Pc\Plocha\HRY\Half-Life\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Counter-Strike 2D\CounterStrike2D.exe"="C:\Counter-Strike 2D\CounterStrike2D.exe:*:Enabled:CounterStrike2D"
"C:\UT2003Demo\System\UT2003.exe"="C:\UT2003Demo\System\UT2003.exe:*:Disabled:UT2003"
"C:\Program Files\Rockstar Games\GTA2\gta2.exe"="C:\Program Files\Rockstar Games\GTA2\gta2.exe:*:Enabled:GTA2 main executable"
"C:\WINDOWS\system32\dplaysvr.exe"="C:\WINDOWS\system32\dplaysvr.exe:*:Enabled:Microsoft DirectPlay Helper"
"C:\Program Files\Rockstar Games\Grand Theft Auto\WINO\Grand Theft Auto.exe"="C:\Program Files\Rockstar Games\Grand Theft Auto\WINO\Grand Theft Auto.exe:*:Enabled:Grand Theft Auto"
"C:\Documents and Settings\Pc\Dokumenty\GTA2\gta2.exe"="C:\Documents and Settings\Pc\Dokumenty\GTA2\gta2.exe:*:Enabled:GTA2 main executable"
"C:\Documents and Settings\Pc\Dokumenty\Jack Jazzrabbit 2\Jazz2.exe"="C:\Documents and Settings\Pc\Dokumenty\Jack Jazzrabbit 2\Jazz2.exe:*:Enabled:Jazz Jackrabbit 2"
"C:\Program Files\Counter-Strike 1.6 Non-Steam\hl.exe"="C:\Program Files\Counter-Strike 1.6 Non-Steam\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Program Files\EA GAMES\Medal of Honor Allied Assault Spearhead Demo\moh_spearhead_demo.exe"="C:\Program Files\EA GAMES\Medal of Honor Allied Assault Spearhead Demo\moh_spearhead_demo.exe:*:Enabled:Medal of Honor Allied Assault(tm) Spearhead"
"C:\Program Files\Valve\Half-Life\hl.exe"="C:\Program Files\Valve\Half-Life\hl.exe:*:Enabled:Half-Life Launcher"
"C:\call of duty 1\The Call of Duty\CoDMP.exe"="C:\call of duty 1\The Call of Duty\CoDMP.exe:*:Enabled:CoDMP"
"C:\Documents and Settings\Pc\Plocha\Serious Sam The First Encounter\Bin\SeriousSam.exe"="C:\Documents and Settings\Pc\Plocha\Serious Sam The First Encounter\Bin\SeriousSam.exe:*:Enabled:SeriousSam"
"C:\Documents and Settings\Pc\Plocha\HRY\Serious Sam The First Encounter\Bin\SeriousSam.exe"="C:\Documents and Settings\Pc\Plocha\HRY\Serious Sam The First Encounter\Bin\SeriousSam.exe:*:Enabled:SeriousSam"
"C:\Program Files\UrbanTerror\ioUrbanTerror.exe"="C:\Program Files\UrbanTerror\ioUrbanTerror.exe:*:Enabled:ioUrbanTerror"
"C:\Documents and Settings\Pc\Plocha\UrbanTerror42\Quake3-UrT.exe"="C:\Documents and Settings\Pc\Plocha\UrbanTerror42\Quake3-UrT.exe:*:Enabled:Quake3-UrT"
"C:\Documents and Settings\Pc\Plocha\HRY\UrbanTerror42\Quake3-UrT.exe"="C:\Documents and Settings\Pc\Plocha\HRY\UrbanTerror42\Quake3-UrT.exe:*:Enabled:Quake3-UrT"
"C:\Documents and Settings\Pc\Dokumenty\Team Fortress Classic\hl.exe"="C:\Documents and Settings\Pc\Dokumenty\Team Fortress Classic\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Documents and Settings\Pc\Plocha\HRY\Team Fortress Classic\hl.exe"="C:\Documents and Settings\Pc\Plocha\HRY\Team Fortress Classic\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Program Files\Steam\Steam.exe"="C:\Program Files\Steam\Steam.exe:*:Enabled:Steam"
"C:\Documents and Settings\Pc\Plocha\hlko\hl.exe"="C:\Documents and Settings\Pc\Plocha\hlko\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Documents and Settings\Pc\Plocha\Half-Life\hl.exe"="C:\Documents and Settings\Pc\Plocha\Half-Life\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Documents and Settings\Pc\Dokumenty\Counter-Strike 1.6 Standalone\launcher.exe"="C:\Documents and Settings\Pc\Dokumenty\Counter-Strike 1.6 Standalone\launcher.exe:*:Enabled:Creted by Martin.cz"
"C:\Documents and Settings\Pc\Dokumenty\csko\hl.exe"="C:\Documents and Settings\Pc\Dokumenty\csko\hl.exe:*:Enabled:Half-Life Launcher"
"C:\UT2004Demo\System\UT2004.exe"="C:\UT2004Demo\System\UT2004.exe:*:Enabled:UT2004"
"C:\Documents and Settings\Pc\Plocha\Unreal Tournament 2004\System\UT2004.exe"="C:\Documents and Settings\Pc\Plocha\Unreal Tournament 2004\System\UT2004.exe:*:Enabled:UT2004"
"C:\Documents and Settings\Pc\Dokumenty\csko\csko.exe"="C:\Documents and Settings\Pc\Dokumenty\csko\csko.exe:*:Enabled:Half-Life Launcher"
"C:\Alien Arena 2008\crx.exe"="C:\Alien Arena 2008\crx.exe:*:Enabled:crx"
"C:\Documents and Settings\Pc\Dokumenty\Unreal Tournament 2004\System\UT2004.exe"="C:\Documents and Settings\Pc\Dokumenty\Unreal Tournament 2004\System\UT2004.exe:*:Enabled:UT2004"
"C:\UT2003\System\UT2003.exe"="C:\UT2003\System\UT2003.exe:*:Enabled:UT2003"
"C:\Documents and Settings\Pc\Plocha\CSS\Counter-Strike Source\hl2.exe"="C:\Documents and Settings\Pc\Plocha\CSS\Counter-Strike Source\hl2.exe:*:Enabled:hl2"
"C:\Documents and Settings\Pc\Dokumenty\csko condition\Counter-Strike 1.6\czero.exe"="C:\Documents and Settings\Pc\Dokumenty\csko condition\Counter-Strike 1.6\czero.exe:*:Enabled:Condition Zero Launcher"
"C:\Documents and Settings\Pc\Plocha\cszero\czero.exe"="C:\Documents and Settings\Pc\Plocha\cszero\czero.exe:*:Enabled:Condition Zero Launcher"
"C:\Documents and Settings\Pc\Dokumenty\csko\hlds.exe"="C:\Documents and Settings\Pc\Dokumenty\csko\hlds.exe:*:Enabled:HLDS Launcher"
"C:\Program Files\Wolfenstein - Enemy Territory\ET.exe"="C:\Program Files\Wolfenstein - Enemy Territory\ET.exe:*:Enabled:ET"
"C:\WINDOWS\system32\PnkBstrA.exe"="C:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA"
"C:\WINDOWS\system32\PnkBstrB.exe"="C:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB"
"C:\Program Files\Return to Castle Wolfenstein\Quake3.exe"="C:\Program Files\Return to Castle Wolfenstein\Quake3.exe:*:Enabled:Quake3"
"C:\Program Files\ioQuake3&TA\ioquake3.x86.exe"="C:\Program Files\ioQuake3&TA\ioquake3.x86.exe:*:Enabled:ioquake3.x86"
"C:\Program Files\ioQuake3&TA\ioquake3.x86-TA.exe"="C:\Program Files\ioQuake3&TA\ioquake3.x86-TA.exe:*:Enabled:ioquake3.x86-TA"
"C:\Games\Wolfram\system\wolfram.exe"="C:\Games\Wolfram\system\wolfram.exe:*:Enabled:wolfram"
"C:\Program Files\Soldier of Fortune II - Double Helix MP TEST\SoF2MP-Test.exe"="C:\Program Files\Soldier of Fortune II - Double Helix MP TEST\SoF2MP-Test.exe:*:Disabled:SoF2MP-Test"
"C:\Program Files\Soldier of Fortune II - Double Helix\SoF2MP.exe"="C:\Program Files\Soldier of Fortune II - Double Helix\SoF2MP.exe:*:Enabled:SoF2MP"
"C:\Documents and Settings\Pc\Plocha\Vietcong\Play Vietcong.exe"="C:\Documents and Settings\Pc\Plocha\Vietcong\Play Vietcong.exe:*:Enabled:Play Vietcong"
"C:\Ace of Spades\server.exe"="C:\Ace of Spades\server.exe:*:Enabled:server"
"C:\Program Files\Soldier of Fortune\SoF.exe"="C:\Program Files\Soldier of Fortune\SoF.exe:*:Enabled:SoF"
"C:\Program Files\www.Cstr1k3rs.uCoz.Com\CarbonCS v1.1\cstrike.exe"="C:\Program Files\www.Cstr1k3rs.uCoz.Com\CarbonCS v1.1\cstrike.exe:*:Enabled:CarbonCS v1.1"
"C:\Program Files\www.Cstr1k3rs.uCoz.Com\CarbonCS v1.1\hl.exe"="C:\Program Files\www.Cstr1k3rs.uCoz.Com\CarbonCS v1.1\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Program Files\Counter-Strike 1.6 Standalone\hl.exe"="C:\Program Files\Counter-Strike 1.6 Standalone\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Documents and Settings\Pc\Dokumenty\counter strike 1.6\csko.exe"="C:\Documents and Settings\Pc\Dokumenty\counter strike 1.6\csko.exe:*:Enabled:Half-Life Launcher"
"C:\Documents and Settings\Pc\Dokumenty\counter strike 1.6\hl.exe"="C:\Documents and Settings\Pc\Dokumenty\counter strike 1.6\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Program Files\Quake III Arena\quake3.exe"="C:\Program Files\Quake III Arena\quake3.exe:*:Enabled:quake3"
"C:\Documents and Settings\Pc\Plocha\Quake3\quake3.exe"="C:\Documents and Settings\Pc\Plocha\Quake3\quake3.exe:*:Enabled:quake3"
"C:\Documents and Settings\Pc\Plocha\dyj of defejt\Day of Defeat\hl.exe"="C:\Documents and Settings\Pc\Plocha\dyj of defejt\Day of Defeat\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Documents and Settings\Pc\Plocha\Smokin' Guns\smokinguns.exe"="C:\Documents and Settings\Pc\Plocha\Smokin' Guns\smokinguns.exe:*:Enabled:smokinguns"
"C:\Program Files\Smokin' Guns\smokinguns.exe"="C:\Program Files\Smokin' Guns\smokinguns.exe:*:Disabled:smokinguns"
"C:\Documents and Settings\Pc\Dokumenty\cs 1.6\csko.exe"="C:\Documents and Settings\Pc\Dokumenty\cs 1.6\csko.exe:*:Enabled:Half-Life Launcher"
"C:\Documents and Settings\Pc\Dokumenty\cs 1.6\hl.exe"="C:\Documents and Settings\Pc\Dokumenty\cs 1.6\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Program Files\Counter-Strike Source\hl2.exe"="C:\Program Files\Counter-Strike Source\hl2.exe:*:Enabled:hl2"
"C:\Program Files\EA GAMES\MOHAA\MOHAA.exe"="C:\Program Files\EA GAMES\MOHAA\MOHAA.exe:*:Enabled:Medal of Honor Allied Assault"
"C:\Documents and Settings\Pc\Dokumenty\hiden and dangerous\bin\hde.exe"="C:\Documents and Settings\Pc\Dokumenty\hiden and dangerous\bin\hde.exe:*:Enabled:hde"
"C:\Documents and Settings\Pc\Data aplikací\id Software\quakelive\quakelive.exe"="C:\Documents and Settings\Pc\Data aplikací\id Software\quakelive\quakelive.exe:*:Enabled:Quake Live"
"C:\Documents and Settings\Pc\Dokumenty\Quake3\quake3.exe"="C:\Documents and Settings\Pc\Dokumenty\Quake3\quake3.exe:*:Enabled:quake3"
"C:\Documents and Settings\Pc\Local Settings\Temp\Rar$EX12.9922\terraria 1.1.2\terraria\TerrariaServer.exe"="C:\Documents and Settings\Pc\Local Settings\Temp\Rar$EX12.9922\terraria 1.1.2\terraria\TerrariaServer.exe:*:Enabled:Terraria"
"C:\Documents and Settings\Pc\Dokumenty\quake 3\quake3.exe"="C:\Documents and Settings\Pc\Dokumenty\quake 3\quake3.exe:*:Enabled:quake3"
"C:\Documents and Settings\Pc\Plocha\Quake2\quake2.exe"="C:\Documents and Settings\Pc\Plocha\Quake2\quake2.exe:*:Enabled:quake2"
"C:\Documents and Settings\Pc\Plocha\Quake2\kmquake2.exe"="C:\Documents and Settings\Pc\Plocha\Quake2\kmquake2.exe:*:Enabled:KMQuake2 engine mod"
"C:\Documents and Settings\Pc\Dokumenty\WolfET\et.exe"="C:\Documents and Settings\Pc\Dokumenty\WolfET\et.exe:*:Enabled:et"
"C:\Program Files\Enemy Territory - Legacy\etl.exe"="C:\Program Files\Enemy Territory - Legacy\etl.exe:*:Enabled:etl"
"C:\Program Files\Java\jre7\bin\javaw.exe"="C:\Program Files\Java\jre7\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Program Files\g3torrent\g3torrent.exe"="C:\Program Files\g3torrent\g3torrent.exe:*:Enabled:g3torrent"
"C:\Documents and Settings\Pc\Dokumenty\wolferam\system\wolfram.exe"="C:\Documents and Settings\Pc\Dokumenty\wolferam\system\wolfram.exe:*:Enabled:wolfram"
"C:\Documents and Settings\Pc\Dokumenty\unreal gold\System\Unreal.exe"="C:\Documents and Settings\Pc\Dokumenty\unreal gold\System\Unreal.exe:*:Enabled:Unreal"
"C:\Documents and Settings\Pc\Plocha\hry\UnrealTournament\System\UnrealTournament.exe"="C:\Documents and Settings\Pc\Plocha\hry\UnrealTournament\System\UnrealTournament.exe:*:Enabled:UnrealTournament"
"C:\Documents and Settings\Pc\Dokumenty\UnrealTournament\System\UnrealTournament.exe"="C:\Documents and Settings\Pc\Dokumenty\UnrealTournament\System\UnrealTournament.exe:*:Enabled:UnrealTournament"
"C:\Documents and Settings\Pc\Dokumenty\Quake 2\Quake2.exe"="C:\Documents and Settings\Pc\Dokumenty\Quake 2\Quake2.exe:*:Enabled:Quake2"
"C:\Documents and Settings\Pc\Plocha\Quake 1\qwcl.exe"="C:\Documents and Settings\Pc\Plocha\Quake 1\qwcl.exe:*:Enabled:qwcl"
"C:\Documents and Settings\Pc\Dokumenty\kvik\kmquake2.exe"="C:\Documents and Settings\Pc\Dokumenty\kvik\kmquake2.exe:*:Enabled:KMQuake2 engine mod"
"C:\ZDaemon\zserv32.exe"="C:\ZDaemon\zserv32.exe:*:Enabled:zserv32"
"C:\Documents and Settings\Pc\Dokumenty\duke\Duke3dw.exe"="C:\Documents and Settings\Pc\Dokumenty\duke\Duke3dw.exe:*:Enabled:Duke3dw"
"C:\Program Files\GOG.com\Serious Sam The Second Encounter\Bin\SeriousSam.exe"="C:\Program Files\GOG.com\Serious Sam The Second Encounter\Bin\SeriousSam.exe:*:Enabled:SeriousSam"
"C:\Documents and Settings\Pc\Dokumenty\Duke nukem 3d\bin\duke3d.exe"="C:\Documents and Settings\Pc\Dokumenty\Duke nukem 3d\bin\duke3d.exe:*:Enabled:duke3d"
"C:\Documents and Settings\Pc\Plocha\hry\Team Fortress Classic\hltv.exe"="C:\Documents and Settings\Pc\Plocha\hry\Team Fortress Classic\hltv.exe:*:Enabled:HLTV Launcher"
"C:\Documents and Settings\Pc\Plocha\hry\Quake I\WINQUAKE.EXE"="C:\Documents and Settings\Pc\Plocha\hry\Quake I\WINQUAKE.EXE:*:Enabled:WINQUAKE"
"C:\Program Files\Simon a Schuster\Skutečná Válka\REALWAR.EXE"="C:\Program Files\Simon a Schuster\Skutečná Válka\REALWAR.EXE:*:Enabled:REALWAR"
"C:\Program Files\zIRC\zirc.exe"="C:\Program Files\zIRC\zirc.exe:*:Enabled:z Internet Relay Chat Client"
"C:\Documents and Settings\Pc\Plocha\Command & Conquer The First Decade\Command & Conquer(tm) Tiberian Sun(tm)\SUN\Game.exe"="C:\Documents and Settings\Pc\Plocha\Command & Conquer The First Decade\Command & Conquer(tm) Tiberian Sun(tm)\SUN\Game.exe:*:Enabled:Main executable for Tiberian Sun"
"C:\Documents and Settings\Pc\Dokumenty\command and coquer red alert\GAME.EXE"="C:\Documents and Settings\Pc\Dokumenty\command and coquer red alert\GAME.EXE:*:Enabled:Main executable for Red Alert 2"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"VIDC.LAGS"=lagarith.dll
"VIDC.X264"=x264vfw.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.FFDS"=ff_vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.lameacm"=lameACM.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv

======List of files/folders created in the last 1 month======

2014-08-15 10:36:16 ----D---- C:\Program Files\trend micro
2014-08-15 10:36:15 ----D---- C:\rsit
2014-08-13 11:33:10 ----D---- C:\Counter-Strike 1.6

======List of files/folders modified in the last 1 month======

2014-08-15 10:36:20 ----D---- C:\WINDOWS\Prefetch
2014-08-15 10:36:16 ----RD---- C:\Program Files
2014-08-15 10:08:09 ----RSHDC---- C:\WINDOWS\system32\dllcache
2014-08-15 10:08:03 ----D---- C:\WINDOWS\system32\CatRoot2
2014-08-15 09:35:56 ----D---- C:\ZDaemon
2014-08-15 09:29:13 ----D---- C:\Documents and Settings\Pc\Data aplikací\glister
2014-08-15 09:21:43 ----D---- C:\WINDOWS\Temp
2014-08-15 09:19:56 ----D---- C:\Documents and Settings\Pc\Data aplikací\newnext.me
2014-08-14 22:34:50 ----A---- C:\WINDOWS\SchedLgU.Txt
2014-08-14 12:21:20 ----AC---- C:\WINDOWS\spidla.INI
2014-08-12 12:19:39 ----SHD---- C:\WINDOWS\Installer
2014-08-12 12:18:17 ----D---- C:\WINDOWS
2014-08-12 12:18:16 ----SHD---- C:\Documents and Settings\All Users\Data aplikací\{01BD4FC9-2F86-4706-A62E-774BB7E9D308}
2014-08-12 12:17:02 ----D---- C:\Documents and Settings\Pc\Data aplikací\OpenCandy
2014-08-12 12:14:17 ----RSD---- C:\WINDOWS\Fonts
2014-07-23 18:33:06 ----D---- C:\WINDOWS\AppPatch
2014-07-23 11:10:12 ----D---- C:\Program Files\Mangores.com
2014-07-23 10:34:14 ----D---- C:\WINDOWS\system
2014-07-22 08:31:32 ----D---- C:\WINDOWS\system32

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 viaagp;Filtr VIA sběrnice AGP ; C:\WINDOWS\System32\DRIVERS\viaagp.sys [2004-08-04 42240]
R0 viaagp1;VIA AGP Filter; C:\WINDOWS\system32\DRIVERS\viaagp1.sys [2003-07-02 27904]
R0 videX32;videX32; C:\WINDOWS\system32\DRIVERS\videX32.sys [2006-10-17 9216]
R1 AmdK7;Ovladač procesoru AMD K7; C:\WINDOWS\System32\DRIVERS\amdk7.sys [2004-08-17 41216]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2007-03-08 4027840]
R3 FETNDIS;VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver; C:\WINDOWS\System32\DRIVERS\fetnd5.sys [2001-08-17 27165]
R3 ltmodem5;LT Modem Driver; C:\WINDOWS\System32\DRIVERS\ltmdmnt.sys [2004-08-17 606556]
R3 S3Psddr;S3Psddr; C:\WINDOWS\system32\DRIVERS\s3gnbm.sys [2000-01-01 167168]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2004-08-04 20480]
S2 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys []
S3 ctsfm2k;Creative SoundFont Management Device Driver; C:\WINDOWS\system32\DRIVERS\ctsfm2k.sys [2005-01-10 138752]
S3 FETNDISB;D-Link PCI Fast Ethernet Adapter Driver Service; C:\WINDOWS\system32\DRIVERS\dlkfet5b.sys [2004-12-02 43008]
S3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys []
S3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\System32\DRIVERS\hidusb.sys [2001-10-25 9600]
S3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2001-10-25 12160]
S3 ossrv;Creative OS Services Driver; C:\WINDOWS\system32\DRIVERS\ctoss2k.sys [2005-01-10 106496]
S3 P17;Creative SB Audigy LS; C:\WINDOWS\system32\drivers\P17.sys [2005-07-07 1389056]
S3 S3SavageNB;S3SavageNB; C:\WINDOWS\System32\DRIVERS\s3gnbm.sys [2000-01-01 167168]
S3 SWDUMon;SWDUMon; C:\WINDOWS\system32\DRIVERS\SWDUMon.sys [2014-04-06 13464]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-04 26496]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-09 262320]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2007-10-24 33800]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2007-10-24 70144]

-----------------EOF-----------------

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15671
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Moc prosím o kontrolu

#2 Příspěvek od JaRon »

ahoj
pouzi avenger - jeho script:
Files to delete:
C:\WINDOWS\system32\lcpmnchxdykc.exe
C:\WINDOWS\inf\mslbgwu.vbe
C:\WINDOWS\inf\msstp.vbe
C:\WINDOWS\system32\mnchxdykc.vbe
C:\WINDOWS\inf\msldar.vbe
C:\Documents and Settings\Pc\Data aplikací\newnext.me\nengine.dll
C:\Documents and Settings\Pc\Data aplikací\glister\nvm.dll
C:\Documents and Settings\Pc\Data aplikací\newnext.me
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Haussman77
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 15 srp 2014 09:39

Re: Moc prosím o kontrolu

#3 Příspěvek od Haussman77 »

Ok díky a to co mam smazat je nějakej virus?
Naposledy upravil(a) Haussman77 dne 15 srp 2014 14:08, celkem upraveno 1 x.

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15671
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Moc prosím o kontrolu

#4 Příspěvek od JaRon »

ked kliknes na fialove avenger v mojom podpise tam je navod
a mas to zavirene az po strop ,,,
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Haussman77
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 15 srp 2014 09:39

Re: Moc prosím o kontrolu

#5 Příspěvek od Haussman77 »

Ježiš...ono je to virlé? o my god...a jak se těch virů jako zbavit? Tím avangerem?

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15671
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Moc prosím o kontrolu

#6 Příspěvek od JaRon »

no uz aby si zacal konat :) ja za chvilu tyzden na viroch koncim :)
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Haussman77
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 15 srp 2014 09:39

Re: Moc prosím o kontrolu

#7 Příspěvek od Haussman77 »

Tak mi aspon řekni...co stim mám dělat? Ten avenger ty viry zničí?

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15671
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Moc prosím o kontrolu

#8 Příspěvek od JaRon »

stiahni Avenger a aplikuj script :!:
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Odpovědět