Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

problemy s internetem, prohlížeči, po-up okny, stahováním

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Budkyns
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 07 zář 2014 13:41

problemy s internetem, prohlížeči, po-up okny, stahováním

#1 Příspěvek od Budkyns »

zdravím, zaznamenal jsem následující problémy:

Po spuštění Ntb internet funguje, ovšem ne zcela v pořádku, občas se nejaka stránka nenačte spravně, nebo je třeba ji nacist dvakrat, či obrázky třeba u článků se nekdy zobrazují podivně, zde přikládám screen:
Obrázek
A po chvíli, nekdy pár minut jindy trochu déle, z ničeho nic přestane jít internet, ikdyž připojení se zdá v pořádku, nejde žádný prohlížeč, ani se stránky nezacou nacítat, jen bílá obrazovka, a co se týče firefoxu (mam jen IE a Firefox) tak ten pak odmítá ukončit proces při vypnutí takže ho znovu nezapnu pokud ručně neukončím proces firefox.exe., nekde jsem četl že se to lidem stalo ale fungoval jim třeba skype nebo icq, u mě ne, skype se také nemohl připojit, na toto všechno pomuže jen restart, ale tím opět získám jen chvíli, než se to stane znovu ------> zkusil jsem obnovu systemu ale při obnovení vyskočila chybová hláška, ted uz presne nevím jaka presne a číslo už vubec ne, ikdyž částečně k obnovení došlo, zkusil jsem obnovení vrátit zpět, což se opět tak nějak částečně podařilo ale ne zcela, například z Firefoxu mi zmizel addblock, Ten firefox navíc (když jeste internet jde, pri spustení nenačte domovskou stránku, která nastavená je)

Následně se objevilo neustálé vyskakování oken, občas Avast i hned něco zablokuje, a skáče to uplne všude, dokonce i zde na tomto forku. A také je problém se stahováním, soubour jako třeba Pdf po stahnutí otevřít šel ale co se týče aplikace, instalatoru například, tak ty po stahnutí spustit nejdou (vyskočí chyb, hláška "není platná aplikace typu win32 či "files are corrupted"), stažený video soubor pak nejde pořádně přehrát, stejně tak při pokusu o znovu získání addblocku, který mi po obnovení systemu zmizel, jsem zjistil, že jakkýkoliv pokus o stažení doplnku je neuspesny, nelze stahnout z duvodu chyby pripojeni k addons.mozzila.org atd., jeste jsem zkusil reinstalovat mozzilu ale vzhledem k tomu ze mi nedoslo, ze stazene instalatory stejen nefunguji, nainstaloval jsem hodne starší verzy jejíž funkční instalator jsem tu v PC vyhrabal, ovšem založky všecko jsem zas měl, takže jsem při odinstalaci neodstranil složku profilu, vlastne ani nevim kde ji najit, mno a problemy stejně přetrvávají.

Zkoušel jsem zmenit DNS, nepomohlo, vypnout štíty Avastu taky ne, restartovat sitovku pomoci prikazoveho radku taky nepomohlo (buhvi jestli jsem to udelal spravne).

V současné době ten internet beží, už pár hodin bez toho aniž by se stalo to co je zmíněné výše, ovšem problémy s okny, načítáním stranek i obrazku a stahováním přetrvává. Log bohužel vytvořit žádny nemohu nebot stažené instalátory nefungují viz výše. Občas se při pokusu načist stranku stane toto (viz screen):
Obrázek

nebo při stahování toto (viz screen):
Obrázek

Nejdříve jsem za příčiny pokládal něco jiného, ale když se do toho přidali ty pop-up okna a kdy každou chvili avast hlásí pokus o infiltraci, začínám se domnívat že jde o nějakou verbež.

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: problemy s internetem, prohlížeči, po-up okny, stahování

#2 Příspěvek od vyosek »

Zdravim :)

Z kristalove se spatne vesti, cim by to mohlo byt - dejte log z FRST http://forum.viry.cz/viewtopic.php?f=13&t=133100
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Budkyns
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 07 zář 2014 13:41

Re: problemy s internetem, prohlížeči, po-up okny, stahování

#3 Příspěvek od Budkyns »

takže jsem si FRST a jiné prográmky co by mohli být třeba natahal na flešku v praci, zde je FRST log:

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 07-09-2014
Ran by Budkyns (administrator) on BUDKYNS-HP on 08-09-2014 17:11:25
Running from C:\Users\Budkyns\Desktop
Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 10
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_9b219d80a8843bf8\stacsv.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP HotKey Support\QLBController.exe
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_9b219d80a8843bf8\AEstSrv.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\Shared\HPDrvMntSvc.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe
(PDF Complete Inc) C:\Program Files\PDF Complete\pdfsvc.exe
() C:\Windows\System32\PnkBstrA.exe
() C:\Windows\System32\PnkBstrB.exe
(Protexis Inc.) C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
() C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
(Hewlett-Packard Development Company L.P.) C:\Program Files\Hewlett-Packard\Shared\hpCaslNotification.exe
(Microsoft Corporation) C:\Windows\System32\wuauclt.exe
() C:\Program Files\PodoWeb\bin\utilPodoWeb.exe
() C:\Program Files\PodoWeb\bin\PodoWeb.PurBrowse.exe
() C:\Program Files\PodoWeb\bin\PodoWeb.BrowserAdapter.exe
(forum.viry.cz) C:\Users\Budkyns\Desktop\FRSTLauncher.exe
() C:\Program Files\PodoWeb\updatePodoWeb.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [QLBController] => C:\Program Files\Hewlett-Packard\HP HotKey Support\QLBController.exe [256056 2010-01-28] (Hewlett-Packard Company)
HKLM\...\Run: [IAAnotif] => C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2010-01-08] (Intel Corporation)
HKLM\...\Run: [PDF Complete] => C:\Program Files\PDF Complete\pdfsty.exe [563736 2010-01-12] (PDF Complete Inc)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1791272 2010-06-04] (Synaptics Incorporated)
HKLM\...\Run: [WirelessAssistant] => C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [499768 2009-09-01] (Hewlett-Packard)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray.exe [495708 2010-01-29] (IDT, Inc.)
HKLM\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [37296 2012-03-27] (Adobe Systems Incorporated)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [843712 2012-01-02] ()
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-08-14] (AVAST Software)
HKLM\...\runonceex: [ContentMerger] => c:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\ContentMerger10.exe [19952 2009-11-23] (Sonic Solutions)
HKU\S-1-5-21-1256565636-1676168881-298877341-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-1256565636-1676168881-298877341-1001\...\MountPoints2: {0986a341-aaa0-11df-8f09-806e6f6e6963} - G:\Launch.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GamePark klient 2.lnk
ShortcutTarget: GamePark klient 2.lnk -> C:\Program Files\GamePark2\gpcl.exe (Allstar Group, s.r.o.)
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com
SearchScopes: HKLM - DefaultScope value is missing.
BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Windows Live Messenger Companion Helper -> {9FDDE16B-836F-4806-AB1F-1455CBEFF289} -> C:\Program Files\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
BHO: No Name -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> No File
Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
DPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} http://trial.trymicrosoftoffice.com/tri ... /wrc32.ocx
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - No File
Handler: myrm - {4D034FC3-013F-4b95-B544-44D49ABE3E76} - No File
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - No File
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default
FF Homepage: http://www.seznam.cz
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin: @microsoft.com/GENUINE -> C:\windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF user.js: detected! => C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default\user.js
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\slunecnice-cz.xml
FF Extension: Adblock Plus - C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-08-18]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2011-12-05]

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-08-14]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-08-14] (AVAST Software)
R2 hpHotkeyMonitor; C:\Program Files\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe [265272 2010-01-28] (Hewlett-Packard Company)
R2 pdfcDispatcher; C:\Program Files\PDF Complete\pdfsvc.exe [635416 2010-01-12] (PDF Complete Inc)
R2 PnkBstrA; C:\windows\system32\PnkBstrA.exe [76888 2013-11-14] ()
R2 PnkBstrB; C:\windows\system32\PnkBstrB.exe [214520 2014-08-30] ()
R2 STacSV; C:\windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_9b219d80a8843bf8\STacSV.exe [229458 2010-01-29] (IDT, Inc.)
R2 Update PodoWeb; C:\Program Files\PodoWeb\updatePodoWeb.exe [323352 2014-09-08] ()
R2 Util PodoWeb; C:\Program Files\PodoWeb\bin\utilPodoWeb.exe [323352 2014-09-08] ()

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 Aspi32; C:\windows\System32\drivers\aspi32.sys [16877 2002-07-17] (Adaptec) [File not signed]
R2 aswHwid; C:\windows\system32\drivers\aswHwid.sys [24184 2014-08-14] ()
R2 aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [67824 2014-08-14] (AVAST Software)
R1 aswRdr; C:\windows\system32\drivers\aswRdr2.sys [81768 2014-08-14] (AVAST Software)
R0 aswRvrt; C:\windows\system32\Drivers\aswRvrt.sys [49944 2014-08-14] ()
R1 aswSnx; C:\windows\system32\drivers\aswSnx.sys [779536 2014-08-14] (AVAST Software)
R1 aswSP; C:\windows\system32\drivers\aswSP.sys [414520 2014-08-14] (AVAST Software)
S2 aswStm; C:\windows\system32\drivers\aswStm.sys [71944 2014-08-14] (AVAST Software)
R0 aswVmm; C:\windows\system32\Drivers\aswVmm.sys [192352 2014-08-14] ()
S2 atksgt; C:\windows\System32\DRIVERS\atksgt.sys [271360 2012-05-28] () [File not signed]
R3 dtsoftbus01; C:\windows\System32\DRIVERS\dtsoftbus01.sys [243128 2014-08-18] (Disc Soft Ltd)
S3 k750bus; C:\windows\System32\DRIVERS\k750bus.sys [55216 2005-02-11] (MCCI)
R2 lirsgt; C:\windows\System32\DRIVERS\lirsgt.sys [18048 2012-05-28] () [File not signed]
S3 massfilter; C:\windows\System32\drivers\massfilter.sys [9216 2010-02-22] (MBB Incorporated)
R2 npf; C:\windows\System32\drivers\npf.sys [35088 2011-02-11] (CACE Technologies, Inc.)
R3 rtsuvc; C:\windows\System32\DRIVERS\rtsuvc.sys [73344 2010-01-30] (Realtek Semiconductor Corp.)
R0 sptd; C:\windows\System32\Drivers\sptd.sys [320120 2014-08-18] (Duplex Secure Ltd.)
S3 ssudobex; C:\windows\System32\DRIVERS\ssudobex.sys [181344 2012-09-20] (DEVGURU Co., LTD.(http://www.devguru.co.kr))
R1 {00c97d86-accb-4288-9972-6d929c1fe93a}Gw; C:\windows\System32\drivers\{00c97d86-accb-4288-9972-6d929c1fe93a}Gw.sys [52304 2014-08-18] (StdLib)
R1 {00c97d86-accb-4288-9972-6d929c1fe93a}w; C:\windows\System32\drivers\{00c97d86-accb-4288-9972-6d929c1fe93a}w.sys [52304 2014-09-04] (StdLib)
S1 MpKsl063d3325; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{7001D3D7-86FC-4864-ADB4-2255FED25BB1}\MpKsl063d3325.sys [X]
S1 MpKsl0b07dada; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{14F06194-B871-48C2-819D-172573826A32}\MpKsl0b07dada.sys [X]
S1 MpKsl0c488db8; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{B7457968-FF45-43E0-BBB7-327A09529891}\MpKsl0c488db8.sys [X]
S1 MpKsl11b845b5; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{E899224A-688E-4804-A1C2-50A7D5F10E07}\MpKsl11b845b5.sys [X]
S1 MpKsl11fbe9de; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{1570858C-3B8A-4DFA-9705-6FA9241E5591}\MpKsl11fbe9de.sys [X]
S1 MpKsl283a4546; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{AB6642AD-45A0-428D-9620-460E927B0CD5}\MpKsl283a4546.sys [X]
S1 MpKsl34b6c955; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{A7A4A78A-15A6-449E-994D-90213D523A90}\MpKsl34b6c955.sys [X]
S1 MpKsl3f857992; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{F11E261D-2D59-4A85-8C42-60703CD7B666}\MpKsl3f857992.sys [X]
S1 MpKsl4122098c; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{8AF3C677-CF33-4A72-953B-B9C7C6901A73}\MpKsl4122098c.sys [X]
S1 MpKsl46ac45fd; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{68C3C5B0-0E84-4BBD-BF83-EB1EEFDFE90C}\MpKsl46ac45fd.sys [X]
S1 MpKsl5150bef2; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{8378E8B3-3BDF-4743-A284-73520BAB6CAD}\MpKsl5150bef2.sys [X]
S1 MpKsl6aa8a5d7; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{5DC80CC2-C86A-47F7-9808-3E31AA7DE58B}\MpKsl6aa8a5d7.sys [X]
S1 MpKsl73eda0a3; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{8378E8B3-3BDF-4743-A284-73520BAB6CAD}\MpKsl73eda0a3.sys [X]
S1 MpKsl76fbe8b4; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{7001D3D7-86FC-4864-ADB4-2255FED25BB1}\MpKsl76fbe8b4.sys [X]
S1 MpKsl77fef83b; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{B9534BB1-0A72-4A4D-85A7-E9B3707A202D}\MpKsl77fef83b.sys [X]
S1 MpKsl7dd914f7; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{8E3CA089-1BA2-467A-9B02-E46A17168E0B}\MpKsl7dd914f7.sys [X]
S1 MpKsl84a81fd5; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{561FAA89-B000-46D3-BA64-BC443085E8AE}\MpKsl84a81fd5.sys [X]
S1 MpKsl882911ec; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{B7314B42-1628-49F8-B6F7-D1E0F24F9E39}\MpKsl882911ec.sys [X]
S1 MpKsl8b5b5715; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{37AE29EE-4BD8-4FF3-94B5-3E0FCFB9E401}\MpKsl8b5b5715.sys [X]
S1 MpKsl91e7ee0f; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{5F6EBB37-5D7E-4A84-BCDB-3A0289C14A9C}\MpKsl91e7ee0f.sys [X]
S1 MpKsl9891e768; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{F9E7FAB6-80E2-4F24-AC0A-8FA8D9BD8945}\MpKsl9891e768.sys [X]
S1 MpKsl9cbfd317; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{A765DB23-8AC4-4AE4-83B4-83CDAC92E976}\MpKsl9cbfd317.sys [X]
S1 MpKsla48a29f5; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{C10AD42E-79EA-4CDC-B024-B037B972CDC0}\MpKsla48a29f5.sys [X]
S1 MpKsla5f212df; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{A18C88FC-0AAF-4DE8-BA51-7EB3A9BED2D3}\MpKsla5f212df.sys [X]
S1 MpKslaac0e6df; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{8603782B-AD6C-4154-97CA-F815F484599B}\MpKslaac0e6df.sys [X]
S1 MpKslaedba62a; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{B6CAB0C2-C22C-4A99-ABE6-D28AA3B09B3C}\MpKslaedba62a.sys [X]
S1 MpKslb65e6cc2; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{AFC9B88F-F1E5-408A-B8F7-55945508043E}\MpKslb65e6cc2.sys [X]
S1 MpKslb993a1ae; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{AF8B618A-9D0F-4939-9BC7-8044CF3B9ADE}\MpKslb993a1ae.sys [X]
S1 MpKslc18c2065; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{AF8B618A-9D0F-4939-9BC7-8044CF3B9ADE}\MpKslc18c2065.sys [X]
S1 MpKslc4d4c6f5; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{6D0BAD97-04F9-436E-AFCD-443092D812ED}\MpKslc4d4c6f5.sys [X]
S1 MpKsle34db3ef; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{E899224A-688E-4804-A1C2-50A7D5F10E07}\MpKsle34db3ef.sys [X]
S1 MpKslf3fc0bf7; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{5CD163D4-F674-4A5A-9606-BBDB3AF1CEA2}\MpKslf3fc0bf7.sys [X]
S1 MpKslfb8a4652; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{5F6EBB37-5D7E-4A84-BCDB-3A0289C14A9C}\MpKslfb8a4652.sys [X]
S1 MpKslff15b3b6; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{723CC7EF-6D7A-4CB3-BB0E-C61B290C145B}\MpKslff15b3b6.sys [X]

==================== NetSvcs (Whitelisted) ===================


(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-08 17:11 - 2014-09-08 17:11 - 00018145 _____ () C:\Users\Budkyns\Desktop\FRST.txt
2014-09-08 17:10 - 2014-09-08 17:11 - 00000000 ____D () C:\FRST
2014-09-08 17:09 - 2014-09-08 10:15 - 00112640 _____ (forum.viry.cz) C:\Users\Budkyns\Desktop\FRSTLauncher.exe
2014-09-08 17:05 - 2014-09-08 10:13 - 01097728 _____ (Farbar) C:\Users\Budkyns\Desktop\FRST.exe
2014-09-07 21:16 - 2014-09-07 21:22 - 00000000 ____D () C:\Users\Budkyns\Downloads\Hell on Wheels S04E06 HDTV x264-KILLERS[ettv]
2014-09-07 01:08 - 2014-09-07 01:08 - 00001060 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-09-07 01:08 - 2014-09-07 01:08 - 00001048 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-09-07 01:08 - 2014-09-07 01:08 - 00001048 _____ () C:\ProgramData\Desktop\Mozilla Firefox.lnk
2014-09-07 01:08 - 2014-09-07 01:08 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-09-06 21:14 - 2014-09-04 19:39 - 00052304 _____ (StdLib) C:\windows\system32\Drivers\{00c97d86-accb-4288-9972-6d929c1fe93a}w.sys
2014-09-02 11:14 - 2014-09-02 11:31 - 275429994 _____ () C:\Users\Budkyns\Desktop\Masters.of.Sex.S02E08.HDTV.x264-KILLERS.mp4
2014-09-02 11:14 - 2014-09-02 11:17 - 285735550 _____ () C:\Users\Budkyns\Desktop\Masters.of.Sex.S02E07.HDTV.x264-ASAP.mp4
2014-08-30 17:16 - 2014-09-06 17:27 - 00000000 ____D () C:\Users\Budkyns\Desktop\knihy SW
2014-08-29 17:38 - 2014-08-29 17:56 - 1625767936 ____R () C:\Users\Budkyns\Downloads\Truman Show.avi
2014-08-29 15:19 - 2014-08-29 15:19 - 00001945 _____ () C:\Users\Budkyns\Desktop\Europa Barbarorum.lnk
2014-08-29 15:10 - 2014-09-06 21:33 - 00000000 ____D () C:\Users\Budkyns\AppData\Roaming\Recruitment Viewer
2014-08-29 15:10 - 2014-09-06 21:33 - 00000000 ____D () C:\Program Files\EBTrivialScript
2014-08-29 15:10 - 2014-09-06 21:33 - 00000000 ____D () C:\Program Files\EBRecruitment Viewer
2014-08-29 15:10 - 2014-09-06 21:33 - 00000000 ____D () C:\Program Files\EB Documentation
2014-08-29 15:09 - 2014-09-06 21:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Europa Barbarorum
2014-08-29 13:52 - 2014-09-06 21:33 - 00000000 ____D () C:\Rome - Europa Barbarorum
2014-08-25 13:43 - 2014-08-28 20:54 - 00000000 ____D () C:\Medieval 2 Total War
2014-08-25 13:12 - 2014-09-08 17:01 - 00001344 _____ () C:\windows\setupact.log
2014-08-25 13:12 - 2014-08-25 13:12 - 00000000 _____ () C:\windows\setuperr.log
2014-08-25 13:11 - 2014-09-07 08:10 - 00002610 _____ () C:\windows\PFRO.log
2014-08-25 12:48 - 2014-08-25 13:10 - 00137506 _____ () C:\windows\DirectX.log
2014-08-25 12:39 - 2014-08-25 12:39 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SEGA
2014-08-25 12:39 - 2014-08-25 12:39 - 00000000 ____D () C:\Program Files\SEGA
2014-08-18 18:05 - 2014-08-18 07:43 - 00052304 _____ (StdLib) C:\windows\system32\Drivers\{00c97d86-accb-4288-9972-6d929c1fe93a}Gw.sys
2014-08-18 17:36 - 2014-08-18 17:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC TuneUp 2014
2014-08-18 17:35 - 2014-08-18 17:35 - 00001856 _____ () C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2014-08-18 17:35 - 2014-08-18 17:35 - 00001856 _____ () C:\ProgramData\Desktop\DAEMON Tools Lite.lnk
2014-08-18 17:35 - 2014-08-18 17:35 - 00000000 ____D () C:\Users\Budkyns\AppData\Local\AVG
2014-08-18 17:35 - 2014-08-18 17:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2014-08-18 17:34 - 2014-08-18 17:34 - 00243128 _____ (Disc Soft Ltd) C:\windows\system32\Drivers\dtsoftbus01.sys
2014-08-18 17:34 - 2014-08-18 17:34 - 00000000 ____D () C:\Users\Budkyns\AppData\Roaming\OpenCandy
2014-08-18 17:34 - 2014-08-18 17:34 - 00000000 ____D () C:\Program Files\DAEMON Tools Lite
2014-08-18 17:05 - 2014-08-18 17:05 - 00000000 ____D () C:\ProgramData\2308189059
2014-08-18 17:03 - 2014-09-06 21:33 - 00000000 ____D () C:\Program Files\PodoWeb
2014-08-14 21:16 - 2014-08-14 21:16 - 00043152 _____ (AVAST Software) C:\windows\avastSS.scr
2014-08-14 21:16 - 2014-08-14 21:16 - 00024184 _____ () C:\windows\system32\Drivers\aswHwid.sys
2014-08-11 20:42 - 2014-09-06 23:44 - 00000000 ____D () C:\Users\Budkyns\Downloads\Fargo Season 1 S01 Complete HDTV x264
2014-08-10 18:51 - 2014-08-10 19:32 - 734017536 _____ () C:\Users\Budkyns\Downloads\Špinaví--prohnilí-lumpové-1998-Cz-(nomad1205).avi
2014-08-10 18:49 - 2014-08-10 19:18 - 1666126190 ____R () C:\Users\Budkyns\Downloads\Trhak.pana.Bowfingera.1999.480p.x264.AAC5.1-MiDAZ.mp4

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-08 17:11 - 2014-09-08 17:11 - 00018145 _____ () C:\Users\Budkyns\Desktop\FRST.txt
2014-09-08 17:11 - 2014-09-08 17:10 - 00000000 ____D () C:\FRST
2014-09-08 17:10 - 2012-07-23 13:26 - 01576149 _____ () C:\windows\WindowsUpdate.log
2014-09-08 17:10 - 2009-07-14 06:34 - 00019760 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-09-08 17:10 - 2009-07-14 06:34 - 00019760 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-09-08 17:07 - 2009-07-14 04:04 - 00000580 _____ () C:\windows\win.ini
2014-09-08 17:01 - 2014-08-25 13:12 - 00001344 _____ () C:\windows\setupact.log
2014-09-08 17:01 - 2009-07-14 06:53 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-09-08 10:15 - 2014-09-08 17:09 - 00112640 _____ (forum.viry.cz) C:\Users\Budkyns\Desktop\FRSTLauncher.exe
2014-09-08 10:13 - 2014-09-08 17:05 - 01097728 _____ (Farbar) C:\Users\Budkyns\Desktop\FRST.exe
2014-09-08 08:48 - 2012-06-29 09:56 - 00000914 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2014-09-07 22:48 - 2012-03-01 14:24 - 00000000 ____D () C:\Users\Budkyns\AppData\Roaming\uTorrent
2014-09-07 21:22 - 2014-09-07 21:16 - 00000000 ____D () C:\Users\Budkyns\Downloads\Hell on Wheels S04E06 HDTV x264-KILLERS[ettv]
2014-09-07 17:19 - 2014-07-17 20:25 - 00000000 ____D () C:\Users\Budkyns\AppData\Local\CrashDumps
2014-09-07 08:10 - 2014-08-25 13:11 - 00002610 _____ () C:\windows\PFRO.log
2014-09-07 01:08 - 2014-09-07 01:08 - 00001060 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-09-07 01:08 - 2014-09-07 01:08 - 00001048 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-09-07 01:08 - 2014-09-07 01:08 - 00001048 _____ () C:\ProgramData\Desktop\Mozilla Firefox.lnk
2014-09-07 01:08 - 2014-09-07 01:08 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-09-07 01:08 - 2014-07-30 10:48 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-09-07 01:06 - 2012-11-29 15:06 - 00000000 ____D () C:\Users\Budkyns\AppData\Local\Deployment
2014-09-07 00:55 - 2013-01-28 16:36 - 00000000 ____D () C:\Users\Budkyns\AppData\Roaming\TS3Client
2014-09-07 00:07 - 2010-12-26 15:08 - 00000000 ____D () C:\Users\Budkyns\AppData\Roaming\Skype
2014-09-07 00:04 - 2011-11-03 00:11 - 00000000 ____D () C:\Users\Budkyns\AppData\Roaming\skypePM
2014-09-06 23:56 - 2012-06-03 19:54 - 00000328 _____ () C:\windows\Tasks\HPCeeScheduleForBudkyns.job
2014-09-06 23:44 - 2014-08-11 20:42 - 00000000 ____D () C:\Users\Budkyns\Downloads\Fargo Season 1 S01 Complete HDTV x264
2014-09-06 22:13 - 2009-07-14 04:37 - 00000000 ____D () C:\windows\system32\NDF
2014-09-06 21:42 - 2010-03-27 04:50 - 01604704 _____ () C:\windows\system32\PerfStringBackup.INI
2014-09-06 21:37 - 2011-12-05 14:19 - 00002007 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-09-06 21:37 - 2011-12-05 14:19 - 00002007 _____ () C:\ProgramData\Desktop\avast! Free Antivirus.lnk
2014-09-06 21:35 - 2010-12-25 15:41 - 00000000 ____D () C:\Users\Budkyns
2014-09-06 21:33 - 2014-08-29 15:10 - 00000000 ____D () C:\Users\Budkyns\AppData\Roaming\Recruitment Viewer
2014-09-06 21:33 - 2014-08-29 15:10 - 00000000 ____D () C:\Program Files\EBTrivialScript
2014-09-06 21:33 - 2014-08-29 15:10 - 00000000 ____D () C:\Program Files\EBRecruitment Viewer
2014-09-06 21:33 - 2014-08-29 15:10 - 00000000 ____D () C:\Program Files\EB Documentation
2014-09-06 21:33 - 2014-08-29 15:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Europa Barbarorum
2014-09-06 21:33 - 2014-08-29 13:52 - 00000000 ____D () C:\Rome - Europa Barbarorum
2014-09-06 21:33 - 2014-08-18 17:03 - 00000000 ____D () C:\Program Files\PodoWeb
2014-09-06 21:33 - 2014-03-19 20:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast
2014-09-06 21:33 - 2014-03-19 09:02 - 00000000 ____D () C:\Rome - Total Realism
2014-09-06 21:33 - 2010-12-28 14:50 - 00000000 ____D () C:\Users\Budkyns\AppData\Roaming\DAEMON Tools Lite
2014-09-06 21:33 - 2009-07-14 04:37 - 00000000 ____D () C:\windows\system32\wfp
2014-09-06 21:33 - 2009-07-14 04:37 - 00000000 ____D () C:\windows\registration
2014-09-06 21:33 - 2009-07-14 04:37 - 00000000 ____D () C:\windows\AppCompat
2014-09-06 18:44 - 2013-10-21 17:18 - 00000000 ____D () C:\Program Files\Google
2014-09-06 17:27 - 2014-08-30 17:16 - 00000000 ____D () C:\Users\Budkyns\Desktop\knihy SW
2014-09-04 19:39 - 2014-09-06 21:14 - 00052304 _____ (StdLib) C:\windows\system32\Drivers\{00c97d86-accb-4288-9972-6d929c1fe93a}w.sys
2014-09-02 11:31 - 2014-09-02 11:14 - 275429994 _____ () C:\Users\Budkyns\Desktop\Masters.of.Sex.S02E08.HDTV.x264-KILLERS.mp4
2014-09-02 11:17 - 2014-09-02 11:14 - 285735550 _____ () C:\Users\Budkyns\Desktop\Masters.of.Sex.S02E07.HDTV.x264-ASAP.mp4
2014-09-01 18:12 - 2010-12-25 15:53 - 00000000 ____D () C:\Users\Budkyns\AppData\Local\PDFC
2014-09-01 18:11 - 2013-08-27 17:45 - 00000000 ____D () C:\Users\Budkyns\AppData\Roaming\PrimoPDF
2014-08-30 19:15 - 2013-11-14 21:42 - 00137464 _____ () C:\windows\system32\Drivers\PnkBstrK.sys
2014-08-30 19:14 - 2013-11-14 21:45 - 00214520 _____ () C:\windows\system32\PnkBstrB.xtr
2014-08-30 19:14 - 2013-11-14 21:42 - 00214520 _____ () C:\windows\system32\PnkBstrB.exe
2014-08-30 19:14 - 2013-11-14 21:42 - 00214520 _____ () C:\windows\system32\PnkBstrB.ex0
2014-08-30 17:21 - 2012-04-20 20:58 - 00000000 ____D () C:\Users\Budkyns\AppData\Roaming\vlc
2014-08-29 17:56 - 2014-08-29 17:38 - 1625767936 ____R () C:\Users\Budkyns\Downloads\Truman Show.avi
2014-08-29 15:19 - 2014-08-29 15:19 - 00001945 _____ () C:\Users\Budkyns\Desktop\Europa Barbarorum.lnk
2014-08-28 20:54 - 2014-08-25 13:43 - 00000000 ____D () C:\Medieval 2 Total War
2014-08-25 13:36 - 2010-03-27 04:44 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2014-08-25 13:12 - 2014-08-25 13:12 - 00000000 _____ () C:\windows\setuperr.log
2014-08-25 13:10 - 2014-08-25 12:48 - 00137506 _____ () C:\windows\DirectX.log
2014-08-25 12:39 - 2014-08-25 12:39 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SEGA
2014-08-25 12:39 - 2014-08-25 12:39 - 00000000 ____D () C:\Program Files\SEGA
2014-08-18 18:10 - 2010-12-25 15:44 - 00125120 _____ () C:\Users\Budkyns\AppData\Local\GDIPFONTCACHEV1.DAT
2014-08-18 18:09 - 2009-07-14 06:33 - 00459568 _____ () C:\windows\system32\FNTCACHE.DAT
2014-08-18 17:41 - 2010-12-28 14:50 - 00000000 ____D () C:\ProgramData\DAEMON Tools Lite
2014-08-18 17:38 - 2014-08-18 17:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC TuneUp 2014
2014-08-18 17:36 - 2014-04-21 15:09 - 00000000 ____D () C:\ProgramData\AVG
2014-08-18 17:35 - 2014-08-18 17:35 - 00001856 _____ () C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2014-08-18 17:35 - 2014-08-18 17:35 - 00001856 _____ () C:\ProgramData\Desktop\DAEMON Tools Lite.lnk
2014-08-18 17:35 - 2014-08-18 17:35 - 00000000 ____D () C:\Users\Budkyns\AppData\Local\AVG
2014-08-18 17:35 - 2014-08-18 17:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2014-08-18 17:35 - 2014-04-21 15:09 - 00000000 ____D () C:\Users\Budkyns\AppData\Roaming\AVG
2014-08-18 17:34 - 2014-08-18 17:34 - 00243128 _____ (Disc Soft Ltd) C:\windows\system32\Drivers\dtsoftbus01.sys
2014-08-18 17:34 - 2014-08-18 17:34 - 00000000 ____D () C:\Users\Budkyns\AppData\Roaming\OpenCandy
2014-08-18 17:34 - 2014-08-18 17:34 - 00000000 ____D () C:\Program Files\DAEMON Tools Lite
2014-08-18 17:34 - 2014-04-21 15:09 - 00000000 __SHD () C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308}
2014-08-18 17:05 - 2014-08-18 17:05 - 00000000 ____D () C:\ProgramData\2308189059
2014-08-18 17:01 - 2010-12-28 14:52 - 00320120 _____ (Duplex Secure Ltd.) C:\windows\system32\Drivers\sptd.sys
2014-08-18 07:43 - 2014-08-18 18:05 - 00052304 _____ (StdLib) C:\windows\system32\Drivers\{00c97d86-accb-4288-9972-6d929c1fe93a}Gw.sys
2014-08-14 21:17 - 2011-12-05 14:19 - 00414520 _____ (AVAST Software) C:\windows\system32\Drivers\aswsp.sys
2014-08-14 21:16 - 2014-08-14 21:16 - 00043152 _____ (AVAST Software) C:\windows\avastSS.scr
2014-08-14 21:16 - 2014-08-14 21:16 - 00024184 _____ () C:\windows\system32\Drivers\aswHwid.sys
2014-08-14 21:16 - 2014-03-19 20:45 - 00192352 _____ () C:\windows\system32\Drivers\aswVmm.sys
2014-08-14 21:16 - 2014-03-19 20:45 - 00071944 _____ (AVAST Software) C:\windows\system32\Drivers\aswStm.sys
2014-08-14 21:16 - 2014-03-19 20:45 - 00049944 _____ () C:\windows\system32\Drivers\aswRvrt.sys
2014-08-14 21:16 - 2012-06-03 14:03 - 00081768 _____ (AVAST Software) C:\windows\system32\Drivers\aswRdr2.sys
2014-08-14 21:16 - 2011-12-05 14:19 - 00779536 _____ (AVAST Software) C:\windows\system32\Drivers\aswSnx.sys
2014-08-14 21:16 - 2011-12-05 14:19 - 00067824 _____ (AVAST Software) C:\windows\system32\Drivers\aswMonFlt.sys
2014-08-14 21:16 - 2011-12-05 14:18 - 00276432 _____ (AVAST Software) C:\windows\system32\aswBoot.exe
2014-08-10 19:32 - 2014-08-10 18:51 - 734017536 _____ () C:\Users\Budkyns\Downloads\Špinaví--prohnilí-lumpové-1998-Cz-(nomad1205).avi
2014-08-10 19:18 - 2014-08-10 18:49 - 1666126190 ____R () C:\Users\Budkyns\Downloads\Trhak.pana.Bowfingera.1999.480p.x264.AAC5.1-MiDAZ.mp4

Some content of TEMP:
====================
C:\Users\Budkyns\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Budkyns\AppData\Local\Temp\_is19BA.exe
C:\Users\Budkyns\AppData\Local\Temp\_is2A3E.exe
C:\Users\Budkyns\AppData\Local\Temp\_is2CFC.exe
C:\Users\Budkyns\AppData\Local\Temp\_is30B3.exe
C:\Users\Budkyns\AppData\Local\Temp\_is38D.exe
C:\Users\Budkyns\AppData\Local\Temp\_is3FCD.exe
C:\Users\Budkyns\AppData\Local\Temp\_is4B16.exe
C:\Users\Budkyns\AppData\Local\Temp\_is649C.exe
C:\Users\Budkyns\AppData\Local\Temp\_isAB4C.exe
C:\Users\Budkyns\AppData\Local\Temp\_isCAEC.exe
C:\Users\Budkyns\AppData\Local\Temp\_isEE63.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\windows\explorer.exe => File is digitally signed
C:\windows\system32\winlogon.exe => File is digitally signed
C:\windows\system32\wininit.exe => File is digitally signed
C:\windows\system32\svchost.exe => File is digitally signed
C:\windows\system32\services.exe => File is digitally signed
C:\windows\system32\User32.dll => File is digitally signed
C:\windows\system32\userinit.exe => File is digitally signed
C:\windows\system32\rpcss.dll => File is digitally signed
C:\windows\system32\Drivers\volsnap.sys => File is digitally signed



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================



==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\HPCeeScheduleForBudkyns.job => C:\Program Files\Hewlett-Packard\HP Ceement\HPCEE.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Budkyns\Desktop" je 601 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================
Přílohy
Addition.rar
(9.53 KiB) Staženo 20 x

Budkyns
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 07 zář 2014 13:41

Re: problemy s internetem, prohlížeči, po-up okny, stahování

#4 Příspěvek od Budkyns »

na doporučení jsem si sehnal Kaspersky rescue disc (bootovatelný disk), ale s použitím tedy zatím vyčkávám

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: problemy s internetem, prohlížeči, po-up okny, stahování

#5 Příspěvek od vyosek »

:arrow: Kaspersky zatim vynechame

:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
:arrow: Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do okna vlozte skript nize
  • Kód: Vybrat vše

    autoclean;
    emptyclsid;
    iedefaults;
    FFdefaults;
    CHRdefaults;
    emptyalltemp;
    resethosts;
    
  • Nasledne kliknete na Run Script
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Budkyns
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 07 zář 2014 13:41

Re: problemy s internetem, prohlížeči, po-up okny, stahování

#6 Příspěvek od Budkyns »

# AdwCleaner v3.309 - Report created 08/09/2014 at 21:16:47
# Updated 02/09/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (32 bits)
# Username : Budkyns - BUDKYNS-HP
# Running from : C:\Users\Budkyns\Desktop\adwcleaner_3.309.exe
# Option : Clean

***** [ Services ] *****

[#] Service Deleted : Update PodoWeb
[#] Service Deleted : Util PodoWeb
Service Deleted : {00c97d86-accb-4288-9972-6d929c1fe93a}Gw
Service Deleted : {00c97d86-accb-4288-9972-6d929c1fe93a}w

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\2308189059
[!] Folder Deleted : C:\Program Files\PodoWeb
[!] Folder Deleted : C:\Program Files\PodoWeb
Folder Deleted : C:\Users\Budkyns\AppData\Roaming\OpenCandy
File Deleted : C:\windows\system32\drivers\{00c97d86-accb-4288-9972-6d929c1fe93a}Gw.sys
File Deleted : C:\windows\system32\drivers\{00c97d86-accb-4288-9972-6d929c1fe93a}w.sys
File Deleted : C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default\user.js

***** [ Scheduled Tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\updatePodoWeb_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\updatePodoWeb_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\utilPodoWeb_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\utilPodoWeb_RASMANCS
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Update PodoWeb
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Util PodoWeb
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\Optimizer Pro
Key Deleted : HKCU\Software\PodoWeb
Key Deleted : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Deleted : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Key Deleted : HKLM\SOFTWARE\PodoWeb
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PodoWeb

***** [ Browsers ] *****

-\\ Internet Explorer v10.0.9200.16798


-\\ Mozilla Firefox v15.0.1 (cs)

[ File : C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default\prefs.js ]


*************************

AdwCleaner[R0].txt - [3443 octets] - [08/09/2014 21:13:29]
AdwCleaner[S0].txt - [2988 octets] - [08/09/2014 21:16:47]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [3048 octets] ##########

Budkyns
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 07 zář 2014 13:41

Re: problemy s internetem, prohlížeči, po-up okny, stahování

#7 Příspěvek od Budkyns »

ten Zoek si dal pěkne na čas! :) nicméně zde je log:


Zoek.exe v5.0.0.0 Updated 08-September-2014
Tool run by Budkyns on po 08.09.2014 at 21:32:14,53.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Budkyns\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

8.9.2014 21:34:56 Zoek.exe System Restore Point Created Succesfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost

==== Deleting CLSID Registry Keys ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF} deleted successfully

==== Deleting CLSID Registry Values ======================

HKEY_USERS\S-1-5-21-1256565636-1676168881-298877341-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{21FA44EF-376D-4D53-9B0F-8A89D3229068} deleted successfully

==== Deleting Services ======================


==== FireFox Fix ======================

Deleted from C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default\prefs.js:
user_pref("browser.startup.homepage", "www.seznam.cz");
user_pref("browser.search.useDBForOrder", true);

Added to C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);

==== Deleting Files \ Folders ======================

C:\Program Files\Common Files\DVDVideoSoft\bin deleted
C:\PROGRA~2\ICQ deleted

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [06.09.2014 21:37]

==== Firefox Extensions ======================

ProfilePath: C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default
- avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF
- Adblock Plus - %ProfilePath%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi

AppDir: C:\Program Files\Mozilla Firefox
- Default - %AppDir%\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default
4390CCD3790F8D9C427C0C29590C62D7 - C:\windows\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll - Shockwave Flash
F045DF7AF127DC4BCC53421850114E15 - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll - Silverlight Plug-In
E0AD06BE7DBEC6EF843711E97080549A - C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll - Adobe Acrobat
87132527E2256CF6683A18C4EB34DD3B - C:\windows\system32\Wat\npWatWeb.dll - Windows Activation Technologies
AC421A44DE902F2627F1E63793ED89CD - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll - Windows Live? Photo Gallery
E0AD06BE7DBEC6EF843711E97080549A - C:\Program Files\Adobe\Reader 9.0\Reader\browser\nppdf32.dll - Adobe Acrobat
7D28153B7D586330678AD522B71D89CB - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrlui.dll - Microsoft® Silverlight


==== Chrome Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[14.08.2014 21:16]

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
"Default_Page_URL"="http://www.bing.com"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
No DefaultScope Set For HKCU

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://www.google.com"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE8SRC"
{783FB0DE-DAD1-42CA-BEEF-3AA2038443F1} Bing Url="http://www.bing.com/search?q={searchTer ... -SearchBox"

==== Reset Google Chrome ======================

Nothing found to reset

==== Empty IE Cache ======================

C:\Users\Budkyns\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Budkyns\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

C:\Users\Budkyns\AppData\Local\Mozilla\Firefox\Profiles\0ofy9f9q.default\Cache emptied successfully

==== Empty Chrome Cache ======================

No Chrome User Data found

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=156 folders=27 15528844 bytes)

==== Empty Temp Folders ======================

C:\Users\Budkyns\AppData\Local\Temp will be emptied at reboot
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\windows\Temp successfully emptied
C:\Users\Budkyns\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== EOF on po 08.09.2014 at 22:16:10,77 ======================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: problemy s internetem, prohlížeči, po-up okny, stahování

#8 Příspěvek od vyosek »

Poprosim o novy log z FRST
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Budkyns
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 07 zář 2014 13:41

Re: problemy s internetem, prohlížeči, po-up okny, stahování

#9 Příspěvek od Budkyns »

nový log zde:

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 07-09-2014
Ran by Budkyns (administrator) on BUDKYNS-HP on 09-09-2014 09:51:02
Running from C:\Users\Budkyns\Desktop
Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 10
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_9b219d80a8843bf8\stacsv.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_9b219d80a8843bf8\AEstSrv.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\Shared\HPDrvMntSvc.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe
(PDF Complete Inc) C:\Program Files\PDF Complete\pdfsvc.exe
() C:\Windows\System32\PnkBstrA.exe
() C:\Windows\System32\PnkBstrB.exe
(Protexis Inc.) C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
() C:\Program Files\PodoWeb\updatePodoWeb.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP HotKey Support\QLBController.exe
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray.exe
(Adobe Systems Incorporated) C:\Program Files\Adobe\Reader 9.0\Reader\reader_sl.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
() C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
(Hewlett-Packard Development Company L.P.) C:\Program Files\Hewlett-Packard\Shared\hpCaslNotification.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(forum.viry.cz) C:\Users\Budkyns\Desktop\FRSTLauncher.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [QLBController] => C:\Program Files\Hewlett-Packard\HP HotKey Support\QLBController.exe [256056 2010-01-28] (Hewlett-Packard Company)
HKLM\...\Run: [IAAnotif] => C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2010-01-08] (Intel Corporation)
HKLM\...\Run: [PDF Complete] => C:\Program Files\PDF Complete\pdfsty.exe [563736 2010-01-12] (PDF Complete Inc)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1791272 2010-06-04] (Synaptics Incorporated)
HKLM\...\Run: [WirelessAssistant] => C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [499768 2009-09-01] (Hewlett-Packard)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray.exe [495708 2010-01-29] (IDT, Inc.)
HKLM\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [37296 2012-03-27] (Adobe Systems Incorporated)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [843712 2012-01-02] ()
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-08-14] (AVAST Software)
HKU\S-1-5-21-1256565636-1676168881-298877341-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-1256565636-1676168881-298877341-1001\...\MountPoints2: {0986a341-aaa0-11df-8f09-806e6f6e6963} - G:\Launch.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GamePark klient 2.lnk
ShortcutTarget: GamePark klient 2.lnk -> C:\Program Files\GamePark2\gpcl.exe (Allstar Group, s.r.o.)
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

SearchScopes: HKCU - DefaultScope {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKCU - {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Windows Live Messenger Companion Helper -> {9FDDE16B-836F-4806-AB1F-1455CBEFF289} -> C:\Program Files\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
DPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} http://trial.trymicrosoftoffice.com/tri ... /wrc32.ocx
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - No File
Handler: myrm - {4D034FC3-013F-4b95-B544-44D49ABE3E76} - No File
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - No File
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default
FF NewTab: hxxp://www.google.com/
FF DefaultSearchEngine: Google
FF SearchEngineOrder.1: Google
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.google.com
FF Keyword.URL: hxxp://www.google.com/search?btnG=Google+Search&q=
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin: @microsoft.com/GENUINE -> C:\windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\slunecnice-cz.xml
FF Extension: Adblock Plus - C:\Users\Budkyns\AppData\Roaming\Mozilla\Firefox\Profiles\0ofy9f9q.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-08-18]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2011-12-05]

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-08-14]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-08-14] (AVAST Software)
R2 hpHotkeyMonitor; C:\Program Files\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe [265272 2010-01-28] (Hewlett-Packard Company)
R2 pdfcDispatcher; C:\Program Files\PDF Complete\pdfsvc.exe [635416 2010-01-12] (PDF Complete Inc)
R2 PnkBstrA; C:\windows\system32\PnkBstrA.exe [76888 2013-11-14] ()
R2 PnkBstrB; C:\windows\system32\PnkBstrB.exe [214520 2014-08-30] ()
R2 STacSV; C:\windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_9b219d80a8843bf8\STacSV.exe [229458 2010-01-29] (IDT, Inc.)
R2 Update PodoWeb; C:\Program Files\PodoWeb\updatePodoWeb.exe [323352 2014-09-08] ()

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 Aspi32; C:\windows\System32\drivers\aspi32.sys [16877 2002-07-17] (Adaptec) [File not signed]
R2 aswHwid; C:\windows\system32\drivers\aswHwid.sys [24184 2014-08-14] ()
R2 aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [67824 2014-08-14] (AVAST Software)
R1 aswRdr; C:\windows\system32\drivers\aswRdr2.sys [81768 2014-08-14] (AVAST Software)
R0 aswRvrt; C:\windows\system32\Drivers\aswRvrt.sys [49944 2014-08-14] ()
R1 aswSnx; C:\windows\system32\drivers\aswSnx.sys [779536 2014-08-14] (AVAST Software)
R1 aswSP; C:\windows\system32\drivers\aswSP.sys [414520 2014-08-14] (AVAST Software)
S2 aswStm; C:\windows\system32\drivers\aswStm.sys [71944 2014-08-14] (AVAST Software)
R0 aswVmm; C:\windows\system32\Drivers\aswVmm.sys [192352 2014-08-14] ()
S2 atksgt; C:\windows\System32\DRIVERS\atksgt.sys [271360 2012-05-28] () [File not signed]
R3 dtsoftbus01; C:\windows\System32\DRIVERS\dtsoftbus01.sys [243128 2014-08-18] (Disc Soft Ltd)
S3 k750bus; C:\windows\System32\DRIVERS\k750bus.sys [55216 2005-02-11] (MCCI)
R2 lirsgt; C:\windows\System32\DRIVERS\lirsgt.sys [18048 2012-05-28] () [File not signed]
S3 massfilter; C:\windows\System32\drivers\massfilter.sys [9216 2010-02-22] (MBB Incorporated)
R2 npf; C:\windows\System32\drivers\npf.sys [35088 2011-02-11] (CACE Technologies, Inc.)
R3 rtsuvc; C:\windows\System32\DRIVERS\rtsuvc.sys [73344 2010-01-30] (Realtek Semiconductor Corp.)
R0 sptd; C:\windows\System32\Drivers\sptd.sys [320120 2014-08-18] (Duplex Secure Ltd.)
S3 ssudobex; C:\windows\System32\DRIVERS\ssudobex.sys [181344 2012-09-20] (DEVGURU Co., LTD.(http://www.devguru.co.kr))
S1 MpKsl063d3325; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{7001D3D7-86FC-4864-ADB4-2255FED25BB1}\MpKsl063d3325.sys [X]
S1 MpKsl0b07dada; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{14F06194-B871-48C2-819D-172573826A32}\MpKsl0b07dada.sys [X]
S1 MpKsl0c488db8; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{B7457968-FF45-43E0-BBB7-327A09529891}\MpKsl0c488db8.sys [X]
S1 MpKsl11b845b5; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{E899224A-688E-4804-A1C2-50A7D5F10E07}\MpKsl11b845b5.sys [X]
S1 MpKsl11fbe9de; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{1570858C-3B8A-4DFA-9705-6FA9241E5591}\MpKsl11fbe9de.sys [X]
S1 MpKsl283a4546; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{AB6642AD-45A0-428D-9620-460E927B0CD5}\MpKsl283a4546.sys [X]
S1 MpKsl34b6c955; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{A7A4A78A-15A6-449E-994D-90213D523A90}\MpKsl34b6c955.sys [X]
S1 MpKsl3f857992; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{F11E261D-2D59-4A85-8C42-60703CD7B666}\MpKsl3f857992.sys [X]
S1 MpKsl4122098c; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{8AF3C677-CF33-4A72-953B-B9C7C6901A73}\MpKsl4122098c.sys [X]
S1 MpKsl46ac45fd; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{68C3C5B0-0E84-4BBD-BF83-EB1EEFDFE90C}\MpKsl46ac45fd.sys [X]
S1 MpKsl5150bef2; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{8378E8B3-3BDF-4743-A284-73520BAB6CAD}\MpKsl5150bef2.sys [X]
S1 MpKsl6aa8a5d7; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{5DC80CC2-C86A-47F7-9808-3E31AA7DE58B}\MpKsl6aa8a5d7.sys [X]
S1 MpKsl73eda0a3; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{8378E8B3-3BDF-4743-A284-73520BAB6CAD}\MpKsl73eda0a3.sys [X]
S1 MpKsl76fbe8b4; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{7001D3D7-86FC-4864-ADB4-2255FED25BB1}\MpKsl76fbe8b4.sys [X]
S1 MpKsl77fef83b; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{B9534BB1-0A72-4A4D-85A7-E9B3707A202D}\MpKsl77fef83b.sys [X]
S1 MpKsl7dd914f7; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{8E3CA089-1BA2-467A-9B02-E46A17168E0B}\MpKsl7dd914f7.sys [X]
S1 MpKsl84a81fd5; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{561FAA89-B000-46D3-BA64-BC443085E8AE}\MpKsl84a81fd5.sys [X]
S1 MpKsl882911ec; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{B7314B42-1628-49F8-B6F7-D1E0F24F9E39}\MpKsl882911ec.sys [X]
S1 MpKsl8b5b5715; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{37AE29EE-4BD8-4FF3-94B5-3E0FCFB9E401}\MpKsl8b5b5715.sys [X]
S1 MpKsl91e7ee0f; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{5F6EBB37-5D7E-4A84-BCDB-3A0289C14A9C}\MpKsl91e7ee0f.sys [X]
S1 MpKsl9891e768; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{F9E7FAB6-80E2-4F24-AC0A-8FA8D9BD8945}\MpKsl9891e768.sys [X]
S1 MpKsl9cbfd317; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{A765DB23-8AC4-4AE4-83B4-83CDAC92E976}\MpKsl9cbfd317.sys [X]
S1 MpKsla48a29f5; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{C10AD42E-79EA-4CDC-B024-B037B972CDC0}\MpKsla48a29f5.sys [X]
S1 MpKsla5f212df; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{A18C88FC-0AAF-4DE8-BA51-7EB3A9BED2D3}\MpKsla5f212df.sys [X]
S1 MpKslaac0e6df; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{8603782B-AD6C-4154-97CA-F815F484599B}\MpKslaac0e6df.sys [X]
S1 MpKslaedba62a; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{B6CAB0C2-C22C-4A99-ABE6-D28AA3B09B3C}\MpKslaedba62a.sys [X]
S1 MpKslb65e6cc2; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{AFC9B88F-F1E5-408A-B8F7-55945508043E}\MpKslb65e6cc2.sys [X]
S1 MpKslb993a1ae; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{AF8B618A-9D0F-4939-9BC7-8044CF3B9ADE}\MpKslb993a1ae.sys [X]
S1 MpKslc18c2065; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{AF8B618A-9D0F-4939-9BC7-8044CF3B9ADE}\MpKslc18c2065.sys [X]
S1 MpKslc4d4c6f5; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{6D0BAD97-04F9-436E-AFCD-443092D812ED}\MpKslc4d4c6f5.sys [X]
S1 MpKsle34db3ef; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{E899224A-688E-4804-A1C2-50A7D5F10E07}\MpKsle34db3ef.sys [X]
S1 MpKslf3fc0bf7; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{5CD163D4-F674-4A5A-9606-BBDB3AF1CEA2}\MpKslf3fc0bf7.sys [X]
S1 MpKslfb8a4652; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{5F6EBB37-5D7E-4A84-BCDB-3A0289C14A9C}\MpKslfb8a4652.sys [X]
S1 MpKslff15b3b6; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{723CC7EF-6D7A-4CB3-BB0E-C61B290C145B}\MpKslff15b3b6.sys [X]

==================== NetSvcs (Whitelisted) ===================


(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-09 09:50 - 2014-09-08 10:15 - 00112640 _____ (forum.viry.cz) C:\Users\Budkyns\Desktop\FRSTLauncher.exe
2014-09-08 22:14 - 2014-09-08 21:31 - 00024064 _____ () C:\windows\zoek-delete.exe
2014-09-08 21:34 - 2014-09-08 22:16 - 00008114 _____ () C:\zoek-results.log
2014-09-08 21:28 - 2014-09-08 10:58 - 01288704 _____ () C:\Users\Budkyns\Desktop\zoek.exe
2014-09-08 21:22 - 2014-09-08 22:11 - 00000000 ____D () C:\zoek_backup
2014-09-08 21:18 - 2014-09-08 21:20 - 00000000 ____D () C:\Kaspersky Rescue Disk 10.0
2014-09-08 21:13 - 2014-09-08 21:17 - 00000000 ____D () C:\AdwCleaner
2014-09-08 21:13 - 2014-09-08 10:56 - 01370467 _____ () C:\Users\Budkyns\Desktop\adwcleaner_3.309.exe
2014-09-08 17:15 - 2014-09-08 17:15 - 00009757 _____ () C:\Users\Budkyns\Desktop\Addition.rar
2014-09-08 17:11 - 2014-09-09 09:51 - 00017429 _____ () C:\Users\Budkyns\Desktop\FRST.txt
2014-09-08 17:10 - 2014-09-09 09:51 - 00000000 ____D () C:\FRST
2014-09-08 17:05 - 2014-09-08 10:13 - 01097728 _____ (Farbar) C:\Users\Budkyns\Desktop\FRST.exe
2014-09-07 21:16 - 2014-09-07 21:22 - 00000000 ____D () C:\Users\Budkyns\Downloads\Hell on Wheels S04E06 HDTV x264-KILLERS[ettv]
2014-09-07 01:08 - 2014-09-07 01:08 - 00001060 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-09-07 01:08 - 2014-09-07 01:08 - 00001048 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-09-07 01:08 - 2014-09-07 01:08 - 00001048 _____ () C:\ProgramData\Desktop\Mozilla Firefox.lnk
2014-09-07 01:08 - 2014-09-07 01:08 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-09-02 11:14 - 2014-09-02 11:31 - 275429994 _____ () C:\Users\Budkyns\Desktop\Masters.of.Sex.S02E08.HDTV.x264-KILLERS.mp4
2014-09-02 11:14 - 2014-09-02 11:17 - 285735550 _____ () C:\Users\Budkyns\Desktop\Masters.of.Sex.S02E07.HDTV.x264-ASAP.mp4
2014-08-30 17:16 - 2014-09-06 17:27 - 00000000 ____D () C:\Users\Budkyns\Desktop\knihy SW
2014-08-29 17:38 - 2014-08-29 17:56 - 1625767936 ____R () C:\Users\Budkyns\Downloads\Truman Show.avi
2014-08-29 15:19 - 2014-08-29 15:19 - 00001945 _____ () C:\Users\Budkyns\Desktop\Europa Barbarorum.lnk
2014-08-29 15:10 - 2014-09-06 21:33 - 00000000 ____D () C:\Users\Budkyns\AppData\Roaming\Recruitment Viewer
2014-08-29 15:10 - 2014-09-06 21:33 - 00000000 ____D () C:\Program Files\EBTrivialScript
2014-08-29 15:10 - 2014-09-06 21:33 - 00000000 ____D () C:\Program Files\EBRecruitment Viewer
2014-08-29 15:10 - 2014-09-06 21:33 - 00000000 ____D () C:\Program Files\EB Documentation
2014-08-29 15:09 - 2014-09-06 21:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Europa Barbarorum
2014-08-29 13:52 - 2014-09-06 21:33 - 00000000 ____D () C:\Rome - Europa Barbarorum
2014-08-25 13:43 - 2014-08-28 20:54 - 00000000 ____D () C:\Medieval 2 Total War
2014-08-25 13:12 - 2014-09-09 09:49 - 00001960 _____ () C:\windows\setupact.log
2014-08-25 13:12 - 2014-08-25 13:12 - 00000000 _____ () C:\windows\setuperr.log
2014-08-25 13:11 - 2014-09-08 22:15 - 00005102 _____ () C:\windows\PFRO.log
2014-08-25 12:48 - 2014-08-25 13:10 - 00137506 _____ () C:\windows\DirectX.log
2014-08-25 12:39 - 2014-08-25 12:39 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SEGA
2014-08-25 12:39 - 2014-08-25 12:39 - 00000000 ____D () C:\Program Files\SEGA
2014-08-18 17:36 - 2014-08-18 17:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC TuneUp 2014
2014-08-18 17:35 - 2014-08-18 17:35 - 00001856 _____ () C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2014-08-18 17:35 - 2014-08-18 17:35 - 00001856 _____ () C:\ProgramData\Desktop\DAEMON Tools Lite.lnk
2014-08-18 17:35 - 2014-08-18 17:35 - 00000000 ____D () C:\Users\Budkyns\AppData\Local\AVG
2014-08-18 17:35 - 2014-08-18 17:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2014-08-18 17:34 - 2014-08-18 17:34 - 00243128 _____ (Disc Soft Ltd) C:\windows\system32\Drivers\dtsoftbus01.sys
2014-08-18 17:34 - 2014-08-18 17:34 - 00000000 ____D () C:\Program Files\DAEMON Tools Lite
2014-08-18 17:03 - 2014-09-08 21:17 - 00000000 ____D () C:\Program Files\PodoWeb
2014-08-14 21:16 - 2014-08-14 21:16 - 00043152 _____ (AVAST Software) C:\windows\avastSS.scr
2014-08-14 21:16 - 2014-08-14 21:16 - 00024184 _____ () C:\windows\system32\Drivers\aswHwid.sys
2014-08-11 20:42 - 2014-09-06 23:44 - 00000000 ____D () C:\Users\Budkyns\Downloads\Fargo Season 1 S01 Complete HDTV x264
2014-08-10 18:51 - 2014-08-10 19:32 - 734017536 _____ () C:\Users\Budkyns\Downloads\Špinaví--prohnilí-lumpové-1998-Cz-(nomad1205).avi
2014-08-10 18:49 - 2014-08-10 19:18 - 1666126190 ____R () C:\Users\Budkyns\Downloads\Trhak.pana.Bowfingera.1999.480p.x264.AAC5.1-MiDAZ.mp4

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-09 09:51 - 2014-09-08 17:11 - 00017429 _____ () C:\Users\Budkyns\Desktop\FRST.txt
2014-09-09 09:51 - 2014-09-08 17:10 - 00000000 ____D () C:\FRST
2014-09-09 09:49 - 2014-08-25 13:12 - 00001960 _____ () C:\windows\setupact.log
2014-09-09 09:49 - 2009-07-14 06:53 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-09-09 09:47 - 2012-07-23 13:26 - 01670763 _____ () C:\windows\WindowsUpdate.log
2014-09-09 08:52 - 2009-07-14 06:34 - 00019760 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-09-09 08:52 - 2009-07-14 06:34 - 00019760 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-09-09 08:49 - 2010-03-27 04:50 - 01604704 _____ () C:\windows\system32\PerfStringBackup.INI
2014-09-09 08:48 - 2012-06-29 09:56 - 00000914 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2014-09-09 08:44 - 2009-07-14 06:53 - 00032624 _____ () C:\windows\Tasks\SCHEDLGU.TXT
2014-09-08 22:16 - 2014-09-08 21:34 - 00008114 _____ () C:\zoek-results.log
2014-09-08 22:15 - 2014-08-25 13:11 - 00005102 _____ () C:\windows\PFRO.log
2014-09-08 22:11 - 2014-09-08 21:22 - 00000000 ____D () C:\zoek_backup
2014-09-08 22:11 - 2012-11-09 13:00 - 00000000 ____D () C:\Program Files\Common Files\DVDVideoSoft
2014-09-08 21:31 - 2014-09-08 22:14 - 00024064 _____ () C:\windows\zoek-delete.exe
2014-09-08 21:20 - 2014-09-08 21:18 - 00000000 ____D () C:\Kaspersky Rescue Disk 10.0
2014-09-08 21:17 - 2014-09-08 21:13 - 00000000 ____D () C:\AdwCleaner
2014-09-08 21:17 - 2014-08-18 17:03 - 00000000 ____D () C:\Program Files\PodoWeb
2014-09-08 21:17 - 2009-07-14 04:04 - 00000580 _____ () C:\windows\win.ini
2014-09-08 17:15 - 2014-09-08 17:15 - 00009757 _____ () C:\Users\Budkyns\Desktop\Addition.rar
2014-09-08 10:58 - 2014-09-08 21:28 - 01288704 _____ () C:\Users\Budkyns\Desktop\zoek.exe
2014-09-08 10:56 - 2014-09-08 21:13 - 01370467 _____ () C:\Users\Budkyns\Desktop\adwcleaner_3.309.exe
2014-09-08 10:15 - 2014-09-09 09:50 - 00112640 _____ (forum.viry.cz) C:\Users\Budkyns\Desktop\FRSTLauncher.exe
2014-09-08 10:13 - 2014-09-08 17:05 - 01097728 _____ (Farbar) C:\Users\Budkyns\Desktop\FRST.exe
2014-09-07 22:48 - 2012-03-01 14:24 - 00000000 ____D () C:\Users\Budkyns\AppData\Roaming\uTorrent
2014-09-07 21:22 - 2014-09-07 21:16 - 00000000 ____D () C:\Users\Budkyns\Downloads\Hell on Wheels S04E06 HDTV x264-KILLERS[ettv]
2014-09-07 17:19 - 2014-07-17 20:25 - 00000000 ____D () C:\Users\Budkyns\AppData\Local\CrashDumps
2014-09-07 01:08 - 2014-09-07 01:08 - 00001060 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-09-07 01:08 - 2014-09-07 01:08 - 00001048 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-09-07 01:08 - 2014-09-07 01:08 - 00001048 _____ () C:\ProgramData\Desktop\Mozilla Firefox.lnk
2014-09-07 01:08 - 2014-09-07 01:08 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-09-07 01:08 - 2014-07-30 10:48 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-09-07 01:06 - 2012-11-29 15:06 - 00000000 ____D () C:\Users\Budkyns\AppData\Local\Deployment
2014-09-07 00:55 - 2013-01-28 16:36 - 00000000 ____D () C:\Users\Budkyns\AppData\Roaming\TS3Client
2014-09-07 00:07 - 2010-12-26 15:08 - 00000000 ____D () C:\Users\Budkyns\AppData\Roaming\Skype
2014-09-07 00:04 - 2011-11-03 00:11 - 00000000 ____D () C:\Users\Budkyns\AppData\Roaming\skypePM
2014-09-06 23:56 - 2012-06-03 19:54 - 00000328 _____ () C:\windows\Tasks\HPCeeScheduleForBudkyns.job
2014-09-06 23:44 - 2014-08-11 20:42 - 00000000 ____D () C:\Users\Budkyns\Downloads\Fargo Season 1 S01 Complete HDTV x264
2014-09-06 22:13 - 2009-07-14 04:37 - 00000000 ____D () C:\windows\system32\NDF
2014-09-06 21:37 - 2011-12-05 14:19 - 00002007 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-09-06 21:37 - 2011-12-05 14:19 - 00002007 _____ () C:\ProgramData\Desktop\avast! Free Antivirus.lnk
2014-09-06 21:35 - 2010-12-25 15:41 - 00000000 ____D () C:\Users\Budkyns
2014-09-06 21:33 - 2014-08-29 15:10 - 00000000 ____D () C:\Users\Budkyns\AppData\Roaming\Recruitment Viewer
2014-09-06 21:33 - 2014-08-29 15:10 - 00000000 ____D () C:\Program Files\EBTrivialScript
2014-09-06 21:33 - 2014-08-29 15:10 - 00000000 ____D () C:\Program Files\EBRecruitment Viewer
2014-09-06 21:33 - 2014-08-29 15:10 - 00000000 ____D () C:\Program Files\EB Documentation
2014-09-06 21:33 - 2014-08-29 15:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Europa Barbarorum
2014-09-06 21:33 - 2014-08-29 13:52 - 00000000 ____D () C:\Rome - Europa Barbarorum
2014-09-06 21:33 - 2014-03-19 20:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast
2014-09-06 21:33 - 2014-03-19 09:02 - 00000000 ____D () C:\Rome - Total Realism
2014-09-06 21:33 - 2010-12-28 14:50 - 00000000 ____D () C:\Users\Budkyns\AppData\Roaming\DAEMON Tools Lite
2014-09-06 21:33 - 2009-07-14 04:37 - 00000000 ____D () C:\windows\system32\wfp
2014-09-06 21:33 - 2009-07-14 04:37 - 00000000 ____D () C:\windows\registration
2014-09-06 21:33 - 2009-07-14 04:37 - 00000000 ____D () C:\windows\AppCompat
2014-09-06 18:44 - 2013-10-21 17:18 - 00000000 ____D () C:\Program Files\Google
2014-09-06 17:27 - 2014-08-30 17:16 - 00000000 ____D () C:\Users\Budkyns\Desktop\knihy SW
2014-09-02 11:31 - 2014-09-02 11:14 - 275429994 _____ () C:\Users\Budkyns\Desktop\Masters.of.Sex.S02E08.HDTV.x264-KILLERS.mp4
2014-09-02 11:17 - 2014-09-02 11:14 - 285735550 _____ () C:\Users\Budkyns\Desktop\Masters.of.Sex.S02E07.HDTV.x264-ASAP.mp4
2014-09-01 18:12 - 2010-12-25 15:53 - 00000000 ____D () C:\Users\Budkyns\AppData\Local\PDFC
2014-09-01 18:11 - 2013-08-27 17:45 - 00000000 ____D () C:\Users\Budkyns\AppData\Roaming\PrimoPDF
2014-08-30 19:15 - 2013-11-14 21:42 - 00137464 _____ () C:\windows\system32\Drivers\PnkBstrK.sys
2014-08-30 19:14 - 2013-11-14 21:45 - 00214520 _____ () C:\windows\system32\PnkBstrB.xtr
2014-08-30 19:14 - 2013-11-14 21:42 - 00214520 _____ () C:\windows\system32\PnkBstrB.exe
2014-08-30 19:14 - 2013-11-14 21:42 - 00214520 _____ () C:\windows\system32\PnkBstrB.ex0
2014-08-30 17:21 - 2012-04-20 20:58 - 00000000 ____D () C:\Users\Budkyns\AppData\Roaming\vlc
2014-08-29 17:56 - 2014-08-29 17:38 - 1625767936 ____R () C:\Users\Budkyns\Downloads\Truman Show.avi
2014-08-29 15:19 - 2014-08-29 15:19 - 00001945 _____ () C:\Users\Budkyns\Desktop\Europa Barbarorum.lnk
2014-08-28 20:54 - 2014-08-25 13:43 - 00000000 ____D () C:\Medieval 2 Total War
2014-08-25 13:36 - 2010-03-27 04:44 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2014-08-25 13:12 - 2014-08-25 13:12 - 00000000 _____ () C:\windows\setuperr.log
2014-08-25 13:10 - 2014-08-25 12:48 - 00137506 _____ () C:\windows\DirectX.log
2014-08-25 12:39 - 2014-08-25 12:39 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SEGA
2014-08-25 12:39 - 2014-08-25 12:39 - 00000000 ____D () C:\Program Files\SEGA
2014-08-18 18:10 - 2010-12-25 15:44 - 00125120 _____ () C:\Users\Budkyns\AppData\Local\GDIPFONTCACHEV1.DAT
2014-08-18 18:09 - 2009-07-14 06:33 - 00459568 _____ () C:\windows\system32\FNTCACHE.DAT
2014-08-18 17:41 - 2010-12-28 14:50 - 00000000 ____D () C:\ProgramData\DAEMON Tools Lite
2014-08-18 17:38 - 2014-08-18 17:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC TuneUp 2014
2014-08-18 17:36 - 2014-04-21 15:09 - 00000000 ____D () C:\ProgramData\AVG
2014-08-18 17:35 - 2014-08-18 17:35 - 00001856 _____ () C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2014-08-18 17:35 - 2014-08-18 17:35 - 00001856 _____ () C:\ProgramData\Desktop\DAEMON Tools Lite.lnk
2014-08-18 17:35 - 2014-08-18 17:35 - 00000000 ____D () C:\Users\Budkyns\AppData\Local\AVG
2014-08-18 17:35 - 2014-08-18 17:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2014-08-18 17:35 - 2014-04-21 15:09 - 00000000 ____D () C:\Users\Budkyns\AppData\Roaming\AVG
2014-08-18 17:34 - 2014-08-18 17:34 - 00243128 _____ (Disc Soft Ltd) C:\windows\system32\Drivers\dtsoftbus01.sys
2014-08-18 17:34 - 2014-08-18 17:34 - 00000000 ____D () C:\Program Files\DAEMON Tools Lite
2014-08-18 17:34 - 2014-04-21 15:09 - 00000000 __SHD () C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308}
2014-08-18 17:01 - 2010-12-28 14:52 - 00320120 _____ (Duplex Secure Ltd.) C:\windows\system32\Drivers\sptd.sys
2014-08-14 21:17 - 2011-12-05 14:19 - 00414520 _____ (AVAST Software) C:\windows\system32\Drivers\aswsp.sys
2014-08-14 21:16 - 2014-08-14 21:16 - 00043152 _____ (AVAST Software) C:\windows\avastSS.scr
2014-08-14 21:16 - 2014-08-14 21:16 - 00024184 _____ () C:\windows\system32\Drivers\aswHwid.sys
2014-08-14 21:16 - 2014-03-19 20:45 - 00192352 _____ () C:\windows\system32\Drivers\aswVmm.sys
2014-08-14 21:16 - 2014-03-19 20:45 - 00071944 _____ (AVAST Software) C:\windows\system32\Drivers\aswStm.sys
2014-08-14 21:16 - 2014-03-19 20:45 - 00049944 _____ () C:\windows\system32\Drivers\aswRvrt.sys
2014-08-14 21:16 - 2012-06-03 14:03 - 00081768 _____ (AVAST Software) C:\windows\system32\Drivers\aswRdr2.sys
2014-08-14 21:16 - 2011-12-05 14:19 - 00779536 _____ (AVAST Software) C:\windows\system32\Drivers\aswSnx.sys
2014-08-14 21:16 - 2011-12-05 14:19 - 00067824 _____ (AVAST Software) C:\windows\system32\Drivers\aswMonFlt.sys
2014-08-14 21:16 - 2011-12-05 14:18 - 00276432 _____ (AVAST Software) C:\windows\system32\aswBoot.exe
2014-08-10 19:32 - 2014-08-10 18:51 - 734017536 _____ () C:\Users\Budkyns\Downloads\Špinaví--prohnilí-lumpové-1998-Cz-(nomad1205).avi
2014-08-10 19:18 - 2014-08-10 18:49 - 1666126190 ____R () C:\Users\Budkyns\Downloads\Trhak.pana.Bowfingera.1999.480p.x264.AAC5.1-MiDAZ.mp4

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\windows\explorer.exe => File is digitally signed
C:\windows\system32\winlogon.exe => File is digitally signed
C:\windows\system32\wininit.exe => File is digitally signed
C:\windows\system32\svchost.exe => File is digitally signed
C:\windows\system32\services.exe => File is digitally signed
C:\windows\system32\User32.dll => File is digitally signed
C:\windows\system32\userinit.exe => File is digitally signed
C:\windows\system32\rpcss.dll => File is digitally signed
C:\windows\system32\Drivers\volsnap.sys => File is digitally signed



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================



==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\HPCeeScheduleForBudkyns.job => C:\Program Files\Hewlett-Packard\HP Ceement\HPCEE.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Budkyns\Desktop" je 603 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================
Přílohy
Addition.rar
(10.42 KiB) Staženo 27 x

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: problemy s internetem, prohlížeči, po-up okny, stahování

#10 Příspěvek od vyosek »

:arrow: Tvorba fixlistu pro FRST
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    Start
    HKLM\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [37296 2012-03-27] (Adobe Systems Incorporated)
    HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [843712 2012-01-02] ()
    HKU\S-1-5-21-1256565636-1676168881-298877341-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
    HKU\S-1-5-21-1256565636-1676168881-298877341-1001\...\MountPoints2: {0986a341-aaa0-11df-8f09-806e6f6e6963} - G:\Launch.exe
    Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GamePark klient 2.lnk
    
    Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - No File
    Handler: myrm - {4D034FC3-013F-4b95-B544-44D49ABE3E76} - No File
    Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - No File
    
    R2 Update PodoWeb; C:\Program Files\PodoWeb\updatePodoWeb.exe [323352 2014-09-08] ()
    C:\Program Files\PodoWeb
    
    S1 MpKsl063d3325; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{7001D3D7-86FC-4864-ADB4-2255FED25BB1}\MpKsl063d3325.sys [X]
    S1 MpKsl0b07dada; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{14F06194-B871-48C2-819D-172573826A32}\MpKsl0b07dada.sys [X]
    S1 MpKsl0c488db8; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{B7457968-FF45-43E0-BBB7-327A09529891}\MpKsl0c488db8.sys [X]
    S1 MpKsl11b845b5; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{E899224A-688E-4804-A1C2-50A7D5F10E07}\MpKsl11b845b5.sys [X]
    S1 MpKsl11fbe9de; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{1570858C-3B8A-4DFA-9705-6FA9241E5591}\MpKsl11fbe9de.sys [X]
    S1 MpKsl283a4546; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{AB6642AD-45A0-428D-9620-460E927B0CD5}\MpKsl283a4546.sys [X]
    S1 MpKsl34b6c955; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{A7A4A78A-15A6-449E-994D-90213D523A90}\MpKsl34b6c955.sys [X]
    S1 MpKsl3f857992; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{F11E261D-2D59-4A85-8C42-60703CD7B666}\MpKsl3f857992.sys [X]
    S1 MpKsl4122098c; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{8AF3C677-CF33-4A72-953B-B9C7C6901A73}\MpKsl4122098c.sys [X]
    S1 MpKsl46ac45fd; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{68C3C5B0-0E84-4BBD-BF83-EB1EEFDFE90C}\MpKsl46ac45fd.sys [X]
    S1 MpKsl5150bef2; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{8378E8B3-3BDF-4743-A284-73520BAB6CAD}\MpKsl5150bef2.sys [X]
    S1 MpKsl6aa8a5d7; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{5DC80CC2-C86A-47F7-9808-3E31AA7DE58B}\MpKsl6aa8a5d7.sys [X]
    S1 MpKsl73eda0a3; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{8378E8B3-3BDF-4743-A284-73520BAB6CAD}\MpKsl73eda0a3.sys [X]
    S1 MpKsl76fbe8b4; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{7001D3D7-86FC-4864-ADB4-2255FED25BB1}\MpKsl76fbe8b4.sys [X]
    S1 MpKsl77fef83b; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{B9534BB1-0A72-4A4D-85A7-E9B3707A202D}\MpKsl77fef83b.sys [X]
    S1 MpKsl7dd914f7; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{8E3CA089-1BA2-467A-9B02-E46A17168E0B}\MpKsl7dd914f7.sys [X]
    S1 MpKsl84a81fd5; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{561FAA89-B000-46D3-BA64-BC443085E8AE}\MpKsl84a81fd5.sys [X]
    S1 MpKsl882911ec; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{B7314B42-1628-49F8-B6F7-D1E0F24F9E39}\MpKsl882911ec.sys [X]
    S1 MpKsl8b5b5715; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{37AE29EE-4BD8-4FF3-94B5-3E0FCFB9E401}\MpKsl8b5b5715.sys [X]
    S1 MpKsl91e7ee0f; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{5F6EBB37-5D7E-4A84-BCDB-3A0289C14A9C}\MpKsl91e7ee0f.sys [X]
    S1 MpKsl9891e768; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{F9E7FAB6-80E2-4F24-AC0A-8FA8D9BD8945}\MpKsl9891e768.sys [X]
    S1 MpKsl9cbfd317; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{A765DB23-8AC4-4AE4-83B4-83CDAC92E976}\MpKsl9cbfd317.sys [X]
    S1 MpKsla48a29f5; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{C10AD42E-79EA-4CDC-B024-B037B972CDC0}\MpKsla48a29f5.sys [X]
    S1 MpKsla5f212df; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{A18C88FC-0AAF-4DE8-BA51-7EB3A9BED2D3}\MpKsla5f212df.sys [X]
    S1 MpKslaac0e6df; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{8603782B-AD6C-4154-97CA-F815F484599B}\MpKslaac0e6df.sys [X]
    S1 MpKslaedba62a; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{B6CAB0C2-C22C-4A99-ABE6-D28AA3B09B3C}\MpKslaedba62a.sys [X]
    S1 MpKslb65e6cc2; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{AFC9B88F-F1E5-408A-B8F7-55945508043E}\MpKslb65e6cc2.sys [X]
    S1 MpKslb993a1ae; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{AF8B618A-9D0F-4939-9BC7-8044CF3B9ADE}\MpKslb993a1ae.sys [X]
    S1 MpKslc18c2065; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{AF8B618A-9D0F-4939-9BC7-8044CF3B9ADE}\MpKslc18c2065.sys [X]
    S1 MpKslc4d4c6f5; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{6D0BAD97-04F9-436E-AFCD-443092D812ED}\MpKslc4d4c6f5.sys [X]
    S1 MpKsle34db3ef; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{E899224A-688E-4804-A1C2-50A7D5F10E07}\MpKsle34db3ef.sys [X]
    S1 MpKslf3fc0bf7; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{5CD163D4-F674-4A5A-9606-BBDB3AF1CEA2}\MpKslf3fc0bf7.sys [X]
    S1 MpKslfb8a4652; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{5F6EBB37-5D7E-4A84-BCDB-3A0289C14A9C}\MpKslfb8a4652.sys [X]
    S1 MpKslff15b3b6; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{723CC7EF-6D7A-4CB3-BB0E-C61B290C145B}\MpKslff15b3b6.sys [X]
    
    2014-09-09 09:50 - 2014-09-08 10:15 - 00112640 _____ (forum.viry.cz) C:\Users\Budkyns\Desktop\FRSTLauncher.exe
    2014-09-08 22:14 - 2014-09-08 21:31 - 00024064 _____ () C:\windows\zoek-delete.exe
    2014-09-08 21:34 - 2014-09-08 22:16 - 00008114 _____ () C:\zoek-results.log
    2014-09-08 21:28 - 2014-09-08 10:58 - 01288704 _____ () C:\Users\Budkyns\Desktop\zoek.exe
    2014-09-08 21:22 - 2014-09-08 22:11 - 00000000 ____D () C:\zoek_backup
    2014-09-08 21:18 - 2014-09-08 21:20 - 00000000 ____D () C:\Kaspersky Rescue Disk 10.0
    2014-09-08 21:13 - 2014-09-08 21:17 - 00000000 ____D () C:\AdwCleaner
    2014-09-08 21:13 - 2014-09-08 10:56 - 01370467 _____ () C:\Users\Budkyns\Desktop\adwcleaner_3.309.exe
    2014-09-08 17:15 - 2014-09-08 17:15 - 00009757 _____ () C:\Users\Budkyns\Desktop\Addition.rar
    2014-09-08 17:11 - 2014-09-09 09:51 - 00017429 _____ () C:\Users\Budkyns\Desktop\FRST.txt
    2014-08-18 17:36 - 2014-08-18 17:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC TuneUp 2014
    
    Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
    Task: C:\windows\Tasks\HPCeeScheduleForBudkyns.job => C:\Program Files\Hewlett-Packard\HP Ceement\HPCEE.exe
    
    Hosts:
    Reboot:
    End
    
  • Ulozte vytvoreny TXT jako fixlist.txt
  • Presunte vytvoreny fixlist vedle FRST
:arrow: Spustte znovu FRST.exe
  • Kliknete na Fix
  • Probehne oprava a vytvori log Fixlog.txt
:arrow: Restart PC a dejte mi sem fixlog.txt
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Budkyns
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 07 zář 2014 13:41

Re: problemy s internetem, prohlížeči, po-up okny, stahování

#11 Příspěvek od Budkyns »

takže ten script jsem uložil jako texťák na plochu, kde byl i FRST, doufam že tak to bylo myšleno, a řídil se pokyny.

na ploše jsem měl Zoek, AdwCleaner, FRST + Launcher s logy (FRST & additional)....po restartu mi na ploše zůstal jen FRST bez launcheru a původních logů, přibyl nově vytvořený fixlog, a dávkový soubor LM.bat

neudělal jsem něco špatně?

zde je fixlog:

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 07-09-2014
Ran by Budkyns at 2014-09-09 10:16:52 Run:1
Running from C:\Users\Budkyns\Desktop
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
Start
HKLM\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [37296 2012-03-27] (Adobe Systems Incorporated)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [843712 2012-01-02] ()
HKU\S-1-5-21-1256565636-1676168881-298877341-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-1256565636-1676168881-298877341-1001\...\MountPoints2: {0986a341-aaa0-11df-8f09-806e6f6e6963} - G:\Launch.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GamePark klient 2.lnk

Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - No File
Handler: myrm - {4D034FC3-013F-4b95-B544-44D49ABE3E76} - No File
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - No File

R2 Update PodoWeb; C:\Program Files\PodoWeb\updatePodoWeb.exe [323352 2014-09-08] ()
C:\Program Files\PodoWeb

S1 MpKsl063d3325; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{7001D3D7-86FC-4864-ADB4-2255FED25BB1}\MpKsl063d3325.sys [X]
S1 MpKsl0b07dada; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{14F06194-B871-48C2-819D-172573826A32}\MpKsl0b07dada.sys [X]
S1 MpKsl0c488db8; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{B7457968-FF45-43E0-BBB7-327A09529891}\MpKsl0c488db8.sys [X]
S1 MpKsl11b845b5; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{E899224A-688E-4804-A1C2-50A7D5F10E07}\MpKsl11b845b5.sys [X]
S1 MpKsl11fbe9de; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{1570858C-3B8A-4DFA-9705-6FA9241E5591}\MpKsl11fbe9de.sys [X]
S1 MpKsl283a4546; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{AB6642AD-45A0-428D-9620-460E927B0CD5}\MpKsl283a4546.sys [X]
S1 MpKsl34b6c955; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{A7A4A78A-15A6-449E-994D-90213D523A90}\MpKsl34b6c955.sys [X]
S1 MpKsl3f857992; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{F11E261D-2D59-4A85-8C42-60703CD7B666}\MpKsl3f857992.sys [X]
S1 MpKsl4122098c; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{8AF3C677-CF33-4A72-953B-B9C7C6901A73}\MpKsl4122098c.sys [X]
S1 MpKsl46ac45fd; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{68C3C5B0-0E84-4BBD-BF83-EB1EEFDFE90C}\MpKsl46ac45fd.sys [X]
S1 MpKsl5150bef2; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{8378E8B3-3BDF-4743-A284-73520BAB6CAD}\MpKsl5150bef2.sys [X]
S1 MpKsl6aa8a5d7; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{5DC80CC2-C86A-47F7-9808-3E31AA7DE58B}\MpKsl6aa8a5d7.sys [X]
S1 MpKsl73eda0a3; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{8378E8B3-3BDF-4743-A284-73520BAB6CAD}\MpKsl73eda0a3.sys [X]
S1 MpKsl76fbe8b4; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{7001D3D7-86FC-4864-ADB4-2255FED25BB1}\MpKsl76fbe8b4.sys [X]
S1 MpKsl77fef83b; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{B9534BB1-0A72-4A4D-85A7-E9B3707A202D}\MpKsl77fef83b.sys [X]
S1 MpKsl7dd914f7; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{8E3CA089-1BA2-467A-9B02-E46A17168E0B}\MpKsl7dd914f7.sys [X]
S1 MpKsl84a81fd5; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{561FAA89-B000-46D3-BA64-BC443085E8AE}\MpKsl84a81fd5.sys [X]
S1 MpKsl882911ec; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{B7314B42-1628-49F8-B6F7-D1E0F24F9E39}\MpKsl882911ec.sys [X]
S1 MpKsl8b5b5715; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{37AE29EE-4BD8-4FF3-94B5-3E0FCFB9E401}\MpKsl8b5b5715.sys [X]
S1 MpKsl91e7ee0f; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{5F6EBB37-5D7E-4A84-BCDB-3A0289C14A9C}\MpKsl91e7ee0f.sys [X]
S1 MpKsl9891e768; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{F9E7FAB6-80E2-4F24-AC0A-8FA8D9BD8945}\MpKsl9891e768.sys [X]
S1 MpKsl9cbfd317; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{A765DB23-8AC4-4AE4-83B4-83CDAC92E976}\MpKsl9cbfd317.sys [X]
S1 MpKsla48a29f5; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{C10AD42E-79EA-4CDC-B024-B037B972CDC0}\MpKsla48a29f5.sys [X]
S1 MpKsla5f212df; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{A18C88FC-0AAF-4DE8-BA51-7EB3A9BED2D3}\MpKsla5f212df.sys [X]
S1 MpKslaac0e6df; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{8603782B-AD6C-4154-97CA-F815F484599B}\MpKslaac0e6df.sys [X]
S1 MpKslaedba62a; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{B6CAB0C2-C22C-4A99-ABE6-D28AA3B09B3C}\MpKslaedba62a.sys [X]
S1 MpKslb65e6cc2; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{AFC9B88F-F1E5-408A-B8F7-55945508043E}\MpKslb65e6cc2.sys [X]
S1 MpKslb993a1ae; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{AF8B618A-9D0F-4939-9BC7-8044CF3B9ADE}\MpKslb993a1ae.sys [X]
S1 MpKslc18c2065; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{AF8B618A-9D0F-4939-9BC7-8044CF3B9ADE}\MpKslc18c2065.sys [X]
S1 MpKslc4d4c6f5; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{6D0BAD97-04F9-436E-AFCD-443092D812ED}\MpKslc4d4c6f5.sys [X]
S1 MpKsle34db3ef; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{E899224A-688E-4804-A1C2-50A7D5F10E07}\MpKsle34db3ef.sys [X]
S1 MpKslf3fc0bf7; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{5CD163D4-F674-4A5A-9606-BBDB3AF1CEA2}\MpKslf3fc0bf7.sys [X]
S1 MpKslfb8a4652; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{5F6EBB37-5D7E-4A84-BCDB-3A0289C14A9C}\MpKslfb8a4652.sys [X]
S1 MpKslff15b3b6; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{723CC7EF-6D7A-4CB3-BB0E-C61B290C145B}\MpKslff15b3b6.sys [X]

2014-09-09 09:50 - 2014-09-08 10:15 - 00112640 _____ (forum.viry.cz) C:\Users\Budkyns\Desktop\FRSTLauncher.exe
2014-09-08 22:14 - 2014-09-08 21:31 - 00024064 _____ () C:\windows\zoek-delete.exe
2014-09-08 21:34 - 2014-09-08 22:16 - 00008114 _____ () C:\zoek-results.log
2014-09-08 21:28 - 2014-09-08 10:58 - 01288704 _____ () C:\Users\Budkyns\Desktop\zoek.exe
2014-09-08 21:22 - 2014-09-08 22:11 - 00000000 ____D () C:\zoek_backup
2014-09-08 21:18 - 2014-09-08 21:20 - 00000000 ____D () C:\Kaspersky Rescue Disk 10.0
2014-09-08 21:13 - 2014-09-08 21:17 - 00000000 ____D () C:\AdwCleaner
2014-09-08 21:13 - 2014-09-08 10:56 - 01370467 _____ () C:\Users\Budkyns\Desktop\adwcleaner_3.309.exe
2014-09-08 17:15 - 2014-09-08 17:15 - 00009757 _____ () C:\Users\Budkyns\Desktop\Addition.rar
2014-09-08 17:11 - 2014-09-09 09:51 - 00017429 _____ () C:\Users\Budkyns\Desktop\FRST.txt
2014-08-18 17:36 - 2014-08-18 17:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC TuneUp 2014

Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\HPCeeScheduleForBudkyns.job => C:\Program Files\Hewlett-Packard\HP Ceement\HPCEE.exe

Hosts:
Reboot:
End
*****************

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe Reader Speed Launcher => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => value deleted successfully.
HKU\S-1-5-21-1256565636-1676168881-298877341-1001\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => value deleted successfully.
"HKU\S-1-5-21-1256565636-1676168881-298877341-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{0986a341-aaa0-11df-8f09-806e6f6e6963}" => Key deleted successfully.
"HKCR\CLSID\{0986a341-aaa0-11df-8f09-806e6f6e6963}" => Key not found.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GamePark klient 2.lnk => Moved successfully.
"HKCR\PROTOCOLS\Handler\dssrequest" => Key deleted successfully.
"HKCR\CLSID\{5513F07E-936B-4E52-9B00-067394E91CC5}" => Key not found.
"HKCR\PROTOCOLS\Handler\myrm" => Key deleted successfully.
"HKCR\CLSID\{4D034FC3-013F-4b95-B544-44D49ABE3E76}" => Key not found.
"HKCR\PROTOCOLS\Handler\sacore" => Key deleted successfully.
"HKCR\CLSID\{5513F07E-936B-4E52-9B00-067394E91CC5}" => Key not found.
Update PodoWeb => Unable to stop service
Update PodoWeb => Service deleted successfully.
C:\Program Files\PodoWeb => Moved successfully.
MpKsl063d3325 => Service deleted successfully.
MpKsl0b07dada => Service deleted successfully.
MpKsl0c488db8 => Service deleted successfully.
MpKsl11b845b5 => Service deleted successfully.
MpKsl11fbe9de => Service deleted successfully.
MpKsl283a4546 => Service deleted successfully.
MpKsl34b6c955 => Service deleted successfully.
MpKsl3f857992 => Service deleted successfully.
MpKsl4122098c => Service deleted successfully.
MpKsl46ac45fd => Service deleted successfully.
MpKsl5150bef2 => Service deleted successfully.
MpKsl6aa8a5d7 => Service deleted successfully.
MpKsl73eda0a3 => Service deleted successfully.
MpKsl76fbe8b4 => Service deleted successfully.
MpKsl77fef83b => Service deleted successfully.
MpKsl7dd914f7 => Service deleted successfully.
MpKsl84a81fd5 => Service deleted successfully.
MpKsl882911ec => Service deleted successfully.
MpKsl8b5b5715 => Service deleted successfully.
MpKsl91e7ee0f => Service deleted successfully.
MpKsl9891e768 => Service deleted successfully.
MpKsl9cbfd317 => Service deleted successfully.
MpKsla48a29f5 => Service deleted successfully.
MpKsla5f212df => Service deleted successfully.
MpKslaac0e6df => Service deleted successfully.
MpKslaedba62a => Service deleted successfully.
MpKslb65e6cc2 => Service deleted successfully.
MpKslb993a1ae => Service deleted successfully.
MpKslc18c2065 => Service deleted successfully.
MpKslc4d4c6f5 => Service deleted successfully.
MpKsle34db3ef => Service deleted successfully.
MpKslf3fc0bf7 => Service deleted successfully.
MpKslfb8a4652 => Service deleted successfully.
MpKslff15b3b6 => Service deleted successfully.
C:\Users\Budkyns\Desktop\FRSTLauncher.exe => Moved successfully.
C:\windows\zoek-delete.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\Users\Budkyns\Desktop\zoek.exe => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Kaspersky Rescue Disk 10.0 => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Users\Budkyns\Desktop\adwcleaner_3.309.exe => Moved successfully.
C:\Users\Budkyns\Desktop\Addition.rar => Moved successfully.
"C:\Users\Budkyns\Desktop\FRST.txt" => File/Directory not found.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC TuneUp 2014 => Moved successfully.
C:\windows\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\windows\Tasks\HPCeeScheduleForBudkyns.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.


The system needed a reboot.

==== End of Fixlog ====

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: problemy s internetem, prohlížeči, po-up okny, stahování

#12 Příspěvek od vyosek »

:arrow: Ne, vse jste udelal v poradku :thumbsup:

:arrow: Jak se chova PC, jsou nejake problemy??
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Budkyns
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 07 zář 2014 13:41

Re: problemy s internetem, prohlížeči, po-up okny, stahování

#13 Příspěvek od Budkyns »

PC se chová rozhodně racionálněji, ne vážně, zaznamenávám naprosté zlepšení ----> pop-up okna nevyskakují, stahování opět funguje, tedy i aktualizace, stránky se načítají zdá se korektně. Netroufám si tvrdit že je zcela vyhráno, nicméně je to mnohem lepší :)

a jsem překvapen, čekal jsem, že to dá mnohem víc práce, samozřejmě netuším nakolik je náročné luštit všechny ty logy :worship: respekt! a velké díky :wub:
Naposledy upravil(a) Budkyns dne 09 zář 2014 18:36, celkem upraveno 2 x.

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: problemy s internetem, prohlížeči, po-up okny, stahování

#14 Příspěvek od vyosek »

Tak jeste uklidime :James008:

:arrow: T-Cleaner http://vyosek.tym.cz/pro_usery/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: OTC http://oldtimer.geekstogo.com/OTC.exe
  • Stahnete a spustte
  • Kliknete na CleanUp a potvrdte YES
  • Program uklidi a restartuje PC

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stahnete a spustte
  • Kliknete na Start a potvrdte OK
  • Program uklidi a restartuje pc
  • Po pouziti utilitu smazte
:arrow: Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: A pokud nejsou problemy ci dotazy, je to z me strany vse :|
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Budkyns
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 07 zář 2014 13:41

Re: problemy s internetem, prohlížeči, po-up okny, stahování

#15 Příspěvek od Budkyns »

úklid proveden, jen na ploše stále zůstal dávkový soubor LM.bat vytvořený po použití fixu ve FRSTu, mám ho tedy odstranit ručně?

Odpovědět