Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

částečně nefunkční internet

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
kallesin
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 29 srp 2007 22:40

částečně nefunkční internet

#1 Příspěvek od kallesin »

Zdravím
nějak mne začínán zlobit počítač, špatně otevírá ssl stránky a nějak celkově otevírá www jak se mu zachce.

děkuji

Martin
Prosím o kontrolu:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 24-11-2013 (ATTENTION: ====> FRST version is 288 days old and could be outdated)
Ran by kallesin (administrator) on KALLESIN-PC on 08-09-2014 23:21:44
Running from C:\Users\kallesin\Desktop
Windows 7 Professional Service Pack 1 (X64) OS Language: Czech
Internet Explorer Version 8
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Privacyware/PWI, Inc.) C:\Program Files (x86)\Privacyware\Privatefirewall 7.0\pfsvc.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.0\avp.exe
() C:\Program Files (x86)\Backblaze\bzserv.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
() C:\Program Files (x86)\Sapphire TRIXX\TRIXX.exe
() C:\Program Files (x86)\Backblaze\bzbui.exe
(Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe
() C:\Program Files (x86)\PdaNet for Android\PdaNetPC.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.0\avpui.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
(Privacyware/PWI, Inc.) C:\Program Files (x86)\Privacyware\Privatefirewall 7.0\PFGUI.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Microsoft Corporation) C:\Windows\System32\msiexec.exe
(Just Develop It) C:\Program Files (x86)\JustCloud\BackupStack.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.53\opera.exe
() C:\Program Files (x86)\Opera\24.0.1558.53\opera_crashreporter.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.53\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.53\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.53\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.53\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.53\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\24.0.1558.53\opera.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.0\avp.exe

==================== Registry (Whitelisted) ==================

HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20586656 2013-11-14] (Skype Technologies S.A.)
HKCU\...\Run: [Spybot-S&D Cleaning] - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [3666224 2013-09-20] (Safer-Networking Ltd.)
HKCU\...\Run: [Backblaze] - C:\Program Files (x86)\Backblaze\bzbui.exe [492136 2014-09-05] ()
HKLM-x32\...\Run: [SDTray] - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [5624784 2013-07-25] (Safer-Networking Ltd.)
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766208 2013-12-06] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [Privatefirewall] - C:\Program Files (x86)\Privacyware\Privatefirewall 7.0\PFGUI.exe [3048480 2013-12-17] (Privacyware/PWI, Inc.)
Startup: C:\Users\kallesin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\EvernoteClipper.lnk
ShortcutTarget: EvernoteClipper.lnk -> C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
Startup: C:\Users\kallesin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\PdaNet Desktop.lnk
ShortcutTarget: PdaNet Desktop.lnk -> C:\Program Files (x86)\PdaNet for Android\PdaNetPC.exe ()
SSODL: EldosMountNotificator - {C28617FD-4FE7-4043-AD51-C8132CE90106} - C:\Windows\system32\SSCbFsMntNtf3.dll (EldoS Corporation)
SSODL-x32: EldosMountNotificator - {C28617FD-4FE7-4043-AD51-C8132CE90106} - C:\Windows\SysWOW64\SSCbFsMntNtf3.dll (EldoS Corporation)
BootExecute: autocheck autochk * sdnclean64.exe

==================== Internet (Whitelisted) ====================

StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.0\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Evernote extension - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
DPF: HKLM-x32 {67DABFBF-D0AB-41FA-9C46-CC0F21721616} http://download.divx.com/player/DivXBrowserPlugin.cab
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} https://fpdownload.macromedia.com/get/s ... wflash.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1

FireFox:
========
FF ProfilePath: C:\Users\kallesin\AppData\Roaming\Mozilla\Firefox\Profiles\v77lo0mt.default
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll ()
FF Plugin: @java.com/DTPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1207148.dll (Adobe Systems, Inc.)
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll (DivX, LLC)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 - C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=10.60.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.60.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @kaspersky.com/content_blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.0\FFExt\content_blocker@kaspersky.com ()
FF Plugin-x32: @kaspersky.com/virtual_keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.0\FFExt\virtual_keyboard@kaspersky.com ()
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.2 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Avira Browser Safety - C:\Users\kallesin\AppData\Roaming\Mozilla\Firefox\Profiles\v77lo0mt.default\Extensions\abs@avira.com
FF Extension: firefox-hotfix - C:\Users\kallesin\AppData\Roaming\Mozilla\Firefox\Profiles\v77lo0mt.default\Extensions\firefox-hotfix@mozilla.org.xpi
FF Extension: No Name - C:\Users\kallesin\AppData\Roaming\Mozilla\Firefox\Profiles\v77lo0mt.default\Extensions\{b9acf540-acba-11e1-8ccb-001fd0e08bd4}.xpi
FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.0\FFExt\content_blocker@kaspersky.com
FF Extension: Dangerous Websites Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.0\FFExt\content_blocker@kaspersky.com
FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.0\FFExt\virtual_keyboard@kaspersky.com
FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.0\FFExt\virtual_keyboard@kaspersky.com
FF HKLM-x32\...\Firefox\Extensions: [url_advisor@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.0\FFExt\url_advisor@kaspersky.com
FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.0\FFExt\url_advisor@kaspersky.com

Chrome:
=======
CHR HomePage: D4E984594CAD93989F75BD1C806E4DB0BE97D88504C05643F79969172D90E348
CHR Extension: (Google Docs) - C:\Users\kallesin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0
CHR Extension: (Google Drive) - C:\Users\kallesin\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0
CHR Extension: (YouTube) - C:\Users\kallesin\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\Users\kallesin\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (Avira Browser Safety) - C:\Users\kallesin\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk\1.3.1_0
CHR Extension: (Hola Better Internet) - C:\Users\kallesin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkojfkhlekighikafcpjkiklfbnlmeio\1.4.673_0
CHR Extension: (Google Wallet) - C:\Users\kallesin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0
CHR Extension: (Gmail) - C:\Users\kallesin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1
CHR HKLM-x32\...\Chrome\Extension: [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] - https://chrome.google.com/webstore/deta ... ojhbllhbho

==================== Services (Whitelisted) =================

R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2013-12-06] (Advanced Micro Devices, Inc.)
R2 AVP15.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.0\avp.exe [233552 2014-04-20] (Kaspersky Lab ZAO)
R2 BackupStack; C:\Program Files (x86)\JustCloud\BackupStack.exe [36392 2014-03-14] (Just Develop It)
R2 bzserv; C:\Program Files (x86)\Backblaze\bzserv.exe [234600 2014-09-05] ()
R2 PFNet; C:\Program Files (x86)\Privacyware\Privatefirewall 7.0\pfsvc.exe [374600 2013-12-17] (Privacyware/PWI, Inc.)
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [3921880 2013-10-15] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1042272 2013-09-20] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171416 2013-09-13] (Safer-Networking Ltd.)

==================== Drivers (Whitelisted) ====================

R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [457824 2014-02-20] (Kaspersky Lab ZAO)
R3 klflt; C:\Windows\System32\DRIVERS\klflt.sys [140352 2014-07-25] (Kaspersky Lab ZAO)
R1 klhk; C:\Windows\System32\DRIVERS\klhk.sys [243808 2014-04-10] (Kaspersky Lab ZAO)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [792128 2014-07-25] (Kaspersky Lab ZAO)
R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [30304 2014-02-25] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [28768 2014-03-28] (Kaspersky Lab ZAO)
R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29280 2013-08-08] (Kaspersky Lab ZAO)
R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [15456 2013-04-12] (Kaspersky Lab ZAO)
R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [55904 2014-03-25] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [179296 2014-03-26] (Kaspersky Lab ZAO)
R2 npf; C:\Windows\System32\drivers\npf.sys [36600 2014-04-18] (Riverbed Technology, Inc.)
S3 RTL85n64; C:\Windows\System32\DRIVERS\RTL85n64.sys [378368 2009-06-10] (Realtek)
S3 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)
R3 SSCBFS3; C:\Windows\System32\DRIVERS\sscbfs3.sys [347904 2013-01-30] (EldoS Corporation)
R3 TRIXX; \??\C:\Users\kallesin\AppData\Local\Temp\TRIXX.sys [x]
S3 TuneUpUtilitiesDrv; \??\C:\Program Files (x86)\AVG PC TuneUp 2014\TuneUpUtilitiesDriver64.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-09-08 23:21 - 2014-09-08 23:22 - 00016489 _____ C:\Users\kallesin\Desktop\FRST.txt
2014-09-08 23:21 - 2014-09-08 23:21 - 00000000 ____D C:\FRST
2014-09-08 23:20 - 2014-09-08 23:20 - 00262144 _____ C:\Windows\system32\config\elam
2014-09-08 23:19 - 2014-09-08 23:17 - 01958440 ____N (Farbar) C:\Users\kallesin\Desktop\FRST64.exe
2014-09-08 23:14 - 2014-09-08 23:14 - 00112640 _____ C:\Users\kallesin\Desktop\FRSTLauncher.exe
2014-09-08 21:08 - 2014-09-08 21:07 - 00001165 _____ C:\Users\Public\Desktop\Kaspersky Anti-Virus.lnk
2014-09-08 21:07 - 2013-05-06 09:13 - 00110176 _____ (Kaspersky Lab ZAO) C:\Windows\system32\klfphc.dll
2014-09-08 21:05 - 2014-09-08 23:20 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2014-09-08 21:05 - 2014-09-08 21:05 - 00000000 ____D C:\Windows\ELAMBKUP
2014-09-08 21:05 - 2014-09-08 21:05 - 00000000 ____D C:\Program Files (x86)\Kaspersky Lab
2014-09-08 21:05 - 2014-07-25 18:23 - 00792128 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klif.sys
2014-09-08 21:05 - 2014-07-25 18:23 - 00140352 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klflt.sys
2014-09-08 21:05 - 2014-04-10 17:25 - 00243808 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klhk.sys
2014-09-08 21:03 - 2014-09-08 21:01 - 178794304 ____N (Kaspersky Lab) C:\Users\kallesin\Desktop\kav15.0.0.463acs_6435.exe
2014-09-08 20:46 - 2014-09-08 20:46 - 00012401 _____ C:\Users\kallesin\Desktop\hijackthis.log
2014-09-08 20:44 - 2014-09-08 20:44 - 00388608 _____ (Trend Micro Inc.) C:\Users\kallesin\Desktop\HijackThis.exe
2014-09-08 10:44 - 2014-09-08 10:44 - 00000000 ____D C:\Users\kallesin\Desktop\andromo
2014-09-06 15:17 - 2014-09-06 15:17 - 00000000 ____D C:\Program Files (x86)\PdaNet for Android
2014-09-06 15:17 - 2011-11-25 01:25 - 00015360 _____ (June Fabrics Technology Inc.) C:\Windows\system32\Drivers\pneteth.sys
2014-09-06 13:26 - 2014-09-06 13:26 - 00017914 _____ C:\Users\kallesin\Downloads\[CzT]Top_Gear_Barmsky_special_Top_Gear_The_Burma_Special_2014_720p_.torrent
2014-09-04 05:47 - 2014-09-04 06:14 - 249298524 _____ C:\Users\kallesin\Desktop\Experti-(1.).avi
2014-09-03 21:36 - 2014-09-03 21:36 - 00000000 ____D C:\Users\kallesin\AppData\Local\Evernote
2014-09-03 21:35 - 2014-09-03 21:35 - 00000932 _____ C:\Users\kallesin\Desktop\Evernote.lnk
2014-09-03 21:35 - 2014-09-03 21:35 - 00000000 ____D C:\Program Files (x86)\Evernote
2014-09-03 16:35 - 2014-09-03 16:37 - 00000000 ____D C:\Users\kallesin\AppData\Local\AltDriveWBHome
2014-09-03 16:35 - 2014-09-03 16:35 - 00000000 ____D C:\Users\kallesin\.swt
2014-09-03 16:35 - 2014-09-03 16:35 - 00000000 ____D C:\ProgramData\AltDriveWBHome
2014-09-02 22:18 - 2014-09-05 16:28 - 00000000 ___HD C:\.bzvol
2014-09-02 22:17 - 2014-09-05 16:27 - 00000000 ____D C:\Program Files (x86)\Backblaze
2014-09-02 22:17 - 2014-09-02 22:17 - 00000000 ____D C:\ProgramData\Backblaze
2014-09-02 15:56 - 2014-09-02 15:56 - 04107303 _____ C:\Users\kallesin\Desktop\nwninst.rar
2014-09-01 14:12 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2014-09-01 14:12 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll
2014-09-01 14:12 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2014-09-01 14:12 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll
2014-09-01 14:12 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2014-09-01 14:12 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll
2014-08-29 11:52 - 2014-08-29 11:52 - 00000000 ____D C:\Users\kallesin\Desktop\warthunder
2014-08-29 00:50 - 2014-08-29 00:50 - 00000000 ____D C:\Windows\SysWOW64\IPM
2014-08-27 20:47 - 2014-08-27 20:48 - 00001425 _____ C:\tracert-eu.txt
2014-08-27 11:08 - 2014-08-27 11:19 - 00000000 ____D C:\Users\kallesin\Documents\Bandicam
2014-08-27 11:08 - 2014-08-27 11:08 - 00000000 ____D C:\Users\kallesin\AppData\Roaming\BANDISOFT
2014-08-27 11:07 - 2014-08-27 11:08 - 09395000 _____ (Bandisoft) C:\Users\kallesin\Downloads\bdcamsetup.exe
2014-08-27 11:00 - 2014-08-27 11:05 - 00000000 ____D C:\Fraps
2014-08-27 11:00 - 2014-08-27 11:00 - 00000562 _____ C:\Users\Public\Desktop\Fraps.lnk
2014-08-27 10:59 - 2014-08-27 10:59 - 10962290 _____ C:\Users\kallesin\Downloads\fraps.exe
2014-08-26 12:52 - 2014-08-26 12:52 - 00000000 ____D C:\Users\kallesin\Desktop\Tor Browser
2014-08-26 12:44 - 2014-08-26 12:46 - 27281991 _____ C:\Users\kallesin\Downloads\torbrowser-install-3.6.4_en-US.exe
2014-08-25 19:08 - 2014-08-25 19:08 - 00016625 _____ C:\Users\kallesin\Downloads\[CzT]Ledove_kralovstvi_Frozen_2013_CZ_.torrent
2014-08-15 23:48 - 2014-08-15 23:49 - 06052529 _____ (Tim Kosse) C:\Users\kallesin\Downloads\FileZilla_3.9.0.3_win32-setup.exe
2014-08-15 17:37 - 2014-08-15 17:38 - 00015238 _____ C:\Users\kallesin\Downloads\[CzT]Melodie_meho_srdce_August_Rush.torrent
2014-08-13 22:12 - 2014-08-13 22:12 - 00017579 _____ C:\Users\kallesin\Downloads\[CzT]Twilight_saga_Rozbresk_2_cast_The_Twilight_Saga_Breaking_Dawn_Part_Two_CZ_2012_.torrent
2014-08-10 21:30 - 2014-08-10 21:30 - 00274712 _____ C:\Windows\Minidump\081014-11544-01.dmp
2014-08-09 22:07 - 2014-08-09 22:07 - 00274712 _____ C:\Windows\Minidump\080914-12776-01.dmp

==================== One Month Modified Files and Folders =======

2014-09-08 23:22 - 2014-09-08 23:21 - 00016489 _____ C:\Users\kallesin\Desktop\FRST.txt
2014-09-08 23:21 - 2014-09-08 23:21 - 00000000 ____D C:\FRST
2014-09-08 23:20 - 2014-09-08 23:20 - 00262144 _____ C:\Windows\system32\config\elam
2014-09-08 23:20 - 2014-09-08 21:05 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2014-09-08 23:17 - 2014-09-08 23:19 - 01958440 ____N (Farbar) C:\Users\kallesin\Desktop\FRST64.exe
2014-09-08 23:15 - 2014-01-10 16:22 - 00002697 _____ C:\Users\Public\Desktop\Skype.lnk
2014-09-08 23:15 - 2014-01-10 16:22 - 00000000 ____D C:\ProgramData\Skype
2014-09-08 23:14 - 2014-09-08 23:14 - 00112640 _____ C:\Users\kallesin\Desktop\FRSTLauncher.exe
2014-09-08 23:14 - 2009-07-14 06:45 - 00031088 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-09-08 23:14 - 2009-07-14 06:45 - 00031088 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-09-08 23:08 - 2014-01-10 16:47 - 00000000 ____D C:\Users\kallesin\AppData\Roaming\Skype
2014-09-08 23:07 - 2014-01-10 16:37 - 00000000 ____D C:\ProgramData\Package Cache
2014-09-08 23:07 - 2014-01-10 16:30 - 00000000 ____D C:\Program Files (x86)\Avira
2014-09-08 23:05 - 2014-01-10 16:19 - 00000948 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-09-08 23:04 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2014-09-08 23:04 - 2009-07-14 06:51 - 00060855 _____ C:\Windows\setupact.log
2014-09-08 21:38 - 2010-11-21 05:47 - 00121154 _____ C:\Windows\PFRO.log
2014-09-08 21:35 - 2014-01-10 15:53 - 00703342 _____ C:\Windows\WindowsUpdate.log
2014-09-08 21:07 - 2014-09-08 21:08 - 00001165 _____ C:\Users\Public\Desktop\Kaspersky Anti-Virus.lnk
2014-09-08 21:05 - 2014-09-08 21:05 - 00000000 ____D C:\Windows\ELAMBKUP
2014-09-08 21:05 - 2014-09-08 21:05 - 00000000 ____D C:\Program Files (x86)\Kaspersky Lab
2014-09-08 21:01 - 2014-09-08 21:03 - 178794304 ____N (Kaspersky Lab) C:\Users\kallesin\Desktop\kav15.0.0.463acs_6435.exe
2014-09-08 20:57 - 2014-01-10 16:19 - 00000952 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-09-08 20:46 - 2014-09-08 20:46 - 00012401 _____ C:\Users\kallesin\Desktop\hijackthis.log
2014-09-08 20:45 - 2014-01-10 16:06 - 00000000 ____D C:\Users\kallesin\AppData\Local\VirtualStore
2014-09-08 20:44 - 2014-09-08 20:44 - 00388608 _____ (Trend Micro Inc.) C:\Users\kallesin\Desktop\HijackThis.exe
2014-09-08 20:43 - 2014-06-25 10:15 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-09-08 20:31 - 2014-01-10 16:26 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-09-08 19:21 - 2014-01-10 19:08 - 00000000 ____D C:\Users\kallesin\AppData\Roaming\vlc
2014-09-08 10:44 - 2014-09-08 10:44 - 00000000 ____D C:\Users\kallesin\Desktop\andromo
2014-09-06 15:31 - 2014-05-25 10:47 - 00000000 ____D C:\Users\kallesin\AppData\Roaming\FileZilla
2014-09-06 15:22 - 2010-11-21 11:27 - 00680330 _____ C:\Windows\system32\perfh005.dat
2014-09-06 15:22 - 2010-11-21 11:27 - 00144808 _____ C:\Windows\system32\perfc005.dat
2014-09-06 15:22 - 2009-07-14 07:13 - 01607112 _____ C:\Windows\system32\PerfStringBackup.INI
2014-09-06 15:17 - 2014-09-06 15:17 - 00000000 ____D C:\Program Files (x86)\PdaNet for Android
2014-09-06 15:17 - 2014-01-10 16:06 - 00000000 ___RD C:\Users\kallesin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-09-06 13:26 - 2014-09-06 13:26 - 00017914 _____ C:\Users\kallesin\Downloads\[CzT]Top_Gear_Barmsky_special_Top_Gear_The_Burma_Special_2014_720p_.torrent
2014-09-05 23:37 - 2014-01-10 17:39 - 00000000 ____D C:\Users\kallesin\AppData\Local\GHISLER
2014-09-05 16:28 - 2014-09-02 22:18 - 00000000 ___HD C:\.bzvol
2014-09-05 16:27 - 2014-09-02 22:17 - 00000000 ____D C:\Program Files (x86)\Backblaze
2014-09-04 06:14 - 2014-09-04 05:47 - 249298524 _____ C:\Users\kallesin\Desktop\Experti-(1.).avi
2014-09-03 21:36 - 2014-09-03 21:36 - 00000000 ____D C:\Users\kallesin\AppData\Local\Evernote
2014-09-03 21:35 - 2014-09-03 21:35 - 00000932 _____ C:\Users\kallesin\Desktop\Evernote.lnk
2014-09-03 21:35 - 2014-09-03 21:35 - 00000000 ____D C:\Program Files (x86)\Evernote
2014-09-03 16:37 - 2014-09-03 16:35 - 00000000 ____D C:\Users\kallesin\AppData\Local\AltDriveWBHome
2014-09-03 16:35 - 2014-09-03 16:35 - 00000000 ____D C:\Users\kallesin\.swt
2014-09-03 16:35 - 2014-09-03 16:35 - 00000000 ____D C:\ProgramData\AltDriveWBHome
2014-09-03 16:35 - 2014-01-10 16:05 - 00000000 ____D C:\Users\kallesin
2014-09-03 07:04 - 2014-01-10 16:19 - 00002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2014-09-02 22:17 - 2014-09-02 22:17 - 00000000 ____D C:\ProgramData\Backblaze
2014-09-02 15:56 - 2014-09-02 15:56 - 04107303 _____ C:\Users\kallesin\Desktop\nwninst.rar
2014-09-02 10:41 - 2014-06-25 10:05 - 00003836 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1389363238
2014-09-02 10:41 - 2014-01-10 16:13 - 00000000 ____D C:\Program Files (x86)\Opera
2014-09-02 05:35 - 2014-04-04 09:44 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2014-09-02 05:35 - 2014-04-04 09:44 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2014-09-01 14:11 - 2014-01-13 10:00 - 00028710 _____ C:\Windows\DirectX.log
2014-08-29 14:08 - 2014-04-21 17:13 - 00000000 ____D C:\wow
2014-08-29 14:07 - 2014-04-18 21:19 - 00000000 ____D C:\Users\kallesin\AppData\Local\Battle.net
2014-08-29 11:52 - 2014-08-29 11:52 - 00000000 ____D C:\Users\kallesin\Desktop\warthunder
2014-08-29 00:50 - 2014-08-29 00:50 - 00000000 ____D C:\Windows\SysWOW64\IPM
2014-08-28 21:10 - 2014-01-10 17:34 - 00000000 ____D C:\Program Files (x86)\WarThunder
2014-08-27 20:48 - 2014-08-27 20:47 - 00001425 _____ C:\tracert-eu.txt
2014-08-27 11:19 - 2014-08-27 11:08 - 00000000 ____D C:\Users\kallesin\Documents\Bandicam
2014-08-27 11:08 - 2014-08-27 11:08 - 00000000 ____D C:\Users\kallesin\AppData\Roaming\BANDISOFT
2014-08-27 11:08 - 2014-08-27 11:07 - 09395000 _____ (Bandisoft) C:\Users\kallesin\Downloads\bdcamsetup.exe
2014-08-27 11:08 - 2014-07-02 07:44 - 00000000 ____D C:\Users\martin
2014-08-27 11:05 - 2014-08-27 11:00 - 00000000 ____D C:\Fraps
2014-08-27 11:00 - 2014-08-27 11:00 - 00000562 _____ C:\Users\Public\Desktop\Fraps.lnk
2014-08-27 10:59 - 2014-08-27 10:59 - 10962290 _____ C:\Users\kallesin\Downloads\fraps.exe
2014-08-26 12:52 - 2014-08-26 12:52 - 00000000 ____D C:\Users\kallesin\Desktop\Tor Browser
2014-08-26 12:50 - 2014-05-04 10:16 - 00000000 ____D C:\Users\kallesin\AppData\Roaming\tor
2014-08-26 12:46 - 2014-08-26 12:44 - 27281991 _____ C:\Users\kallesin\Downloads\torbrowser-install-3.6.4_en-US.exe
2014-08-25 19:08 - 2014-08-25 19:08 - 00016625 _____ C:\Users\kallesin\Downloads\[CzT]Ledove_kralovstvi_Frozen_2013_CZ_.torrent
2014-08-16 20:05 - 2014-05-25 10:49 - 00000000 ____D C:\Program Files (x86)\FileZilla FTP Client
2014-08-15 23:49 - 2014-08-15 23:48 - 06052529 _____ (Tim Kosse) C:\Users\kallesin\Downloads\FileZilla_3.9.0.3_win32-setup.exe
2014-08-15 17:38 - 2014-08-15 17:37 - 00015238 _____ C:\Users\kallesin\Downloads\[CzT]Melodie_meho_srdce_August_Rush.torrent
2014-08-13 22:12 - 2014-08-13 22:12 - 00017579 _____ C:\Users\kallesin\Downloads\[CzT]Twilight_saga_Rozbresk_2_cast_The_Twilight_Saga_Breaking_Dawn_Part_Two_CZ_2012_.torrent
2014-08-11 09:20 - 2014-01-10 16:20 - 00001090 _____ C:\Users\Public\Desktop\TeamViewer 9.lnk
2014-08-10 21:30 - 2014-08-10 21:30 - 00274712 _____ C:\Windows\Minidump\081014-11544-01.dmp
2014-08-10 21:30 - 2014-01-11 15:07 - 00000000 ____D C:\Windows\Minidump
2014-08-09 22:07 - 2014-08-09 22:07 - 00274712 _____ C:\Windows\Minidump\080914-12776-01.dmp

Some content of TEMP:
====================
C:\Users\kallesin\AppData\Local\Temp\avgnt.exe
C:\Users\martin\AppData\Local\Temp\avgnt.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2014-09-06 10:29

==================== End Of Log ============================
Přílohy
Addition.rar
(5.98 KiB) Staženo 23 x

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15729
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: částečně nefunkční internet

#2 Příspěvek od JaRon »

ahoj,
- odinstaluj SpyBot
- nainstaluj MSIE v10 + dostupne aktualizacie OS
- vycisti PC s CCleanerom
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Odpovědět