Avira-virusy stale dokola

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz


Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Zamčeno
Zpráva
Autor
Stix
Návštěvník
Návštěvník
Příspěvky: 21
Registrován: 27 Led 2014 21:34

Avira-virusy stale dokola

#1 Příspěvek od Stix »

Zdravim vas borci.
Dnes som zapol notas a odkedy je zapnuty asi kazdych 10 sekund vybehne avira,ze sa nasli nejake virusy.Dam Remove,oskenuje,virusy najde ja ich vymazem a za chvilocku zase.Skusal som aj ten RSIT,ale p ochvilke ancitavanie mi vybehla nejaka chyba(prikladam screen).Dost to spomaluje pc.
Dakujem velmi pekne.

Avatar uživatele
JaRon
Moderátor
Moderátor
Příspěvky: 15924
Registrován: 29 Bře 2005 13:39
Místo/Bydliště: BB-SK

Re: Avira-virusy stale dokola

#2 Příspěvek od JaRon »

ahoj,
skus log FRST
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Stix
Návštěvník
Návštěvník
Příspěvky: 21
Registrován: 27 Led 2014 21:34

Re: Avira-virusy stale dokola

#3 Příspěvek od Stix »

Dakujem,nech sa paci:
Mam dat aj Addition?

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 11-09-2014
Ran by Paťo (administrator) on PC29402 on 11-09-2014 13:14:53
Running from C:\Users\Paťo\Desktop
Platform: Microsoft Windows 7 Ultimate Service Pack 1 (X86) OS Language: Slovenčina (Slovensko)
Internet Explorer Version 10
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
(APN LLC.) C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe
(Comodo Security Solutions, Inc.) C:\Program Files\COMODO\Dragon\dragon_updater.exe
(LogMeIn, Inc.) C:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Pandora.TV) C:\Program Files\PANDORA.TV\PanService\KMPService.exe
() C:\Windows\System32\PnkBstrA.exe
() C:\Windows\System32\PnkBstrB.exe
(PandoraTV) C:\Program Files\PANDORA.TV\PanService\KMPProcess.exe
(ClientConnect Ltd.) C:\Program Files\Tbccint\ToolbarService\ToolbarService.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe
(LogMeIn Inc.) C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avwebg7.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cistray.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(APN) C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
(LogMeIn Inc.) C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cis.exe
() C:\Users\Paťo\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
(Pay By Ads LTD) C:\Users\Paťo\AppData\Local\Pay-By-Ads\Yahoo! Search\1.3.8.2\dsrlte.exe
(Microsoft Corporation) C:\Windows\System32\wuauclt.exe
() C:\Program Files\NetTock\updateNetTock.exe
() C:\Program Files\NetTock\bin\utilNetTock.exe
() C:\Program Files\NetTock\bin\NetTock.PurBrowse.exe
(The Superbird Authors) D:\Software\SuperBird\superbird.exe
(The Superbird Authors) D:\Software\SuperBird\superbird.exe
(The Superbird Authors) D:\Software\SuperBird\superbird.exe
(The Superbird Authors) D:\Software\SuperBird\superbird.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avcenter.exe
(The Superbird Authors) D:\Software\SuperBird\superbird.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Nvtmru] => C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028384 2013-11-14] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [COMODO Internet Security] => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [1225944 2014-03-25] (COMODO)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM\...\Run: [mncuttsehSrv] => C:\Windows\inf\mncuttseh.vbe
HKLM\...\Run: [avgnt] => C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [751184 2014-08-13] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [ApnTBMon] => C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1942424 2014-08-22] (APN)
HKLM\...\Run: [VNT] => C:\Program Files\VNT\vntldr.exe [196504 2014-08-22] (APN LLC.)
HKLM\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe [3813712 2014-02-04] (LogMeIn Inc.)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM\...\Run: [seznam-listicka-distribuce] => C:\Program Files\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM\...\Run: [Avira Systray] => C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe [161584 2014-08-04] (Avira Operations GmbH & Co. KG)
HKU\S-1-5-21-1440249512-142024861-2148780811-1000\...\Run: [CCleaner] => C:\Program Files\CCleaner\CCleaner.exe [4370712 2013-12-17] (Piriform Ltd)
HKU\S-1-5-21-1440249512-142024861-2148780811-1000\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [21650016 2014-07-24] (Skype Technologies S.A.)
HKU\S-1-5-21-1440249512-142024861-2148780811-1000\...\Run: [cz.seznam.software.autoupdate] => "C:\Users\Paeo\AppData\Roaming\Seznam.cz\szninstall.exe" -c
HKU\S-1-5-21-1440249512-142024861-2148780811-1000\...\Run: [cz.seznam.software.szndesktop] => "C:\Users\Paeo\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
HKU\S-1-5-21-1440249512-142024861-2148780811-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-1440249512-142024861-2148780811-1000\...\Run: [Yahoo! Search] => C:\Users\Paeo\AppData\Local\Pay-By-Ads\Yahoo! Search\1.3.8.2\dsrlte.exe
HKU\S-1-5-21-1440249512-142024861-2148780811-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-1440249512-142024861-2148780811-1001\...\Run: [CCleaner] => C:\Program Files\CCleaner\CCleaner.exe [4370712 2013-12-17] (Piriform Ltd)
HKU\S-1-5-21-1440249512-142024861-2148780811-1001\...\MountPoints2: {f1bd50b2-74d9-11e3-bf33-001b38c9db10} - F:\autorun_DATADISK.exe
AppInit_DLLs: C:\Users\PAO~1\AppData\Local\Linkey\IEEXTE~1\iedll.dll => C:\Users\Paťo\AppData\Local\Linkey\IEExtension\iedll.dll [175632 2014-06-01] (Aztec Media Inc)
IFEO\bitguard.exe: [Debugger] tasklist.exe
IFEO\bprotect.exe: [Debugger] tasklist.exe
IFEO\bpsvc.exe: [Debugger] tasklist.exe
IFEO\browserdefender.exe: [Debugger] tasklist.exe
IFEO\browserprotect.exe: [Debugger] tasklist.exe
IFEO\browsersafeguard.exe: [Debugger] tasklist.exe
IFEO\dprotectsvc.exe: [Debugger] tasklist.exe
IFEO\jumpflip: [Debugger] tasklist.exe
IFEO\protectedsearch.exe: [Debugger] tasklist.exe
IFEO\searchinstaller.exe: [Debugger] tasklist.exe
IFEO\searchprotection.exe: [Debugger] tasklist.exe
IFEO\searchprotector.exe: [Debugger] tasklist.exe
IFEO\searchsettings.exe: [Debugger] tasklist.exe
IFEO\searchsettings64.exe: [Debugger] tasklist.exe
IFEO\snapdo.exe: [Debugger] tasklist.exe
IFEO\stinst32.exe: [Debugger] tasklist.exe
IFEO\stinst64.exe: [Debugger] tasklist.exe
IFEO\umbrella.exe: [Debugger] tasklist.exe
IFEO\utiljumpflip.exe: [Debugger] tasklist.exe
IFEO\volaro: [Debugger] tasklist.exe
IFEO\vonteera: [Debugger] tasklist.exe
IFEO\websteroids.exe: [Debugger] tasklist.exe
IFEO\websteroidsservice.exe: [Debugger] tasklist.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Startovanie procesu.lnk
ShortcutTarget: Startovanie procesu.lnk -> C:\ExpertPlus\service\serverStarter.bat ()
HKLM\...\AppCertDlls: [x86] -> C:\Program Files\Settings Manager\systemk\sysapcrt.dll [488464 2014-06-11] ()
HKLM\...\AppCertDlls: [x64] -> c:\program files\settings manager\systemk\x64\sysapcrt.dll
ShellIconOverlayIdentifiers: ###MegaShellExtPending -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Paťo\AppData\Local\MEGAsync\ShellExtX32.dll No File
ShellIconOverlayIdentifiers: ###MegaShellExtSynced -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Paťo\AppData\Local\MEGAsync\ShellExtX32.dll No File
ShellIconOverlayIdentifiers: ###MegaShellExtSyncing -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Paťo\AppData\Local\MEGAsync\ShellExtX32.dll No File
BootExecute: dfboottime \??\C:\Windows\System32\dfboottime.cfgautocheck autochk *

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://rts.dsrlte.com
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x9F1FFB87B408CF01
URLSearchHook: HKLM - BS Player ControlBar B Toolbar - {31264a33-a653-46c4-af49-1232c59a7da5} - C:\Users\Paťo\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_0.dll (ClientConnect Ltd.)
URLSearchHook: HKCU - BS Player ControlBar B Toolbar - {31264a33-a653-46c4-af49-1232c59a7da5} - C:\Users\Paťo\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_0.dll (ClientConnect Ltd.)
SearchScopes: HKLM - DefaultScope {BEA53EF8-1A7D-4764-8D8E-C73FD35C8979} URL =
SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2503} URL = http://www.default-search.net/search?si ... earchTerms}
SearchScopes: HKCU - DefaultScope {BEA53EF8-1A7D-4764-8D8E-C73FD35C8979} URL = http://trovi.com/ResultsExt.aspx?q={sea ... 45983&UM=4
SearchScopes: HKCU - {2094AC7A-5896-4FD6-9860-7DC7F83BB1C0} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_12454
SearchScopes: HKCU - {44AAF4B5-7BB5-4021-8A1C-BA470923BF1C} URL = http://www.novinky.cz/hledej?w={searchT ... arch_12454
SearchScopes: HKCU - {5D7222A7-5A4D-494B-92BD-5210449EA68B} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_12454
SearchScopes: HKCU - {8EEAC88A-079B-4b2c-80C1-7836F79EB40A} URL = http://rts.dsrlte.com/?q={searchTerms}&r=898
SearchScopes: HKCU - {8FD27A8F-09FA-4D1B-BC3B-FF37A7D922F0} URL = http://search.seznam.cz/?q={searchTerms ... arch_12454
SearchScopes: HKCU - {95C90C22-3A93-4F79-A9EB-453211389224} URL = http://encyklopedie.seznam.cz/search?q= ... arch_12454
SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2503} URL = http://www.default-search.net/search?si ... earchTerms}
SearchScopes: HKCU - {BB03A865-02A5-4E0E-80DE-3E4875EA5652} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_12454
SearchScopes: HKCU - {BD5658BD-D9F4-453A-AB49-3419D82D170D} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_12454
SearchScopes: HKCU - {BE41B124-1DAF-4D5A-BA51-DC220C564A4A} URL = http://www.mapy.cz/?query={searchTerms} ... arch_12454
SearchScopes: HKCU - {BEA53EF8-1A7D-4764-8D8E-C73FD35C8979} URL = http://trovi.com/ResultsExt.aspx?q={sea ... 45983&UM=4
SearchScopes: HKCU - {D7BB633A-08AF-4588-8091-6A021704550D} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_12454
BHO: BS Player ControlBar B Toolbar -> {31264a33-a653-46c4-af49-1232c59a7da5} -> C:\Users\Paťo\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_0.dll (ClientConnect Ltd.)
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: Avira SearchFree Toolbar -> {41564952-412D-5637-4300-7A786E7484D7} -> C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport.dll (APN LLC.)
BHO: Linkey -> {4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47} -> C:\Users\Paťo\AppData\Local\Linkey\IEExtension\iedll.dll (Aztec Media Inc)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - Avira SearchFree Toolbar - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport.dll (APN LLC.)
Toolbar: HKLM - BS Player ControlBar B Toolbar - {31264a33-a653-46c4-af49-1232c59a7da5} - C:\Users\Paťo\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_0.dll (ClientConnect Ltd.)
Toolbar: HKCU - Avira SearchFree Toolbar - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport.dll (APN LLC.)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.2 208.67.220.220

FireFox:
========
FF ProfilePath: C:\Users\Paťo\AppData\Roaming\Mozilla\Firefox\Profiles\g3qpcltd.default
FF NewTab: hxxp://rts.dsrlte.com/?m=tab
FF DefaultSearchEngine: Yahoo! Search
FF SearchEngineOrder.1: default-search.net
FF SelectedSearchEngine: Yahoo! Search
FF Homepage: hxxp://www.default-search.net?sid=503&aid=100& ... 92&src=hmp
FF Keyword.URL: hxxp://rts.dsrlte.com/?q=
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_15_0_0_152.dll ()
FF Plugin: @java.com/DTPlugin,version=10.45.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.45.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\4.0.60310.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.1.3 -> D:\Software\VLC\npvlc.dll (VideoLAN)
FF Plugin: Adobe Reader -> D:\Software\Adobe Reader 11\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Paťo\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF user.js: detected! => C:\Users\Paťo\AppData\Roaming\Mozilla\Firefox\Profiles\g3qpcltd.default\user.js
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np32dsw.dll (Macromedia, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\Paťo\AppData\Roaming\Mozilla\Firefox\Profiles\g3qpcltd.default\searchplugins\default-search.xml
FF SearchPlugin: C:\Users\Paťo\AppData\Roaming\Mozilla\Firefox\Profiles\g3qpcltd.default\searchplugins\keepmysearch.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\atlas-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\azet-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\default-search.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\dunaj-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slovnik-sk.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\zoznam-sk.xml
FF Extension: Avira Browser Safety - C:\Users\Paťo\AppData\Roaming\Mozilla\Firefox\Profiles\g3qpcltd.default\Extensions\abs@avira.com [2014-08-16]
FF Extension: PrivDog - C:\Users\Paťo\AppData\Roaming\Mozilla\Firefox\Profiles\g3qpcltd.default\Extensions\PrivDog@AdTrustMedia.com [2014-06-25]
FF Extension: BS Player ControlBar B - C:\Users\Paťo\AppData\Roaming\Mozilla\Firefox\Profiles\g3qpcltd.default\Extensions\{31264a33-a653-46c4-af49-1232c59a7da5} [2014-07-06]
FF Extension: Seznam lištička - C:\Users\Paťo\AppData\Roaming\Mozilla\Firefox\Profiles\g3qpcltd.default\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [2014-06-15]
FF Extension: Avira SearchFree Toolbar plus Web Protection - C:\Users\Paťo\AppData\Roaming\Mozilla\Firefox\Profiles\g3qpcltd.default\Extensions\toolbar_AVIRA-V7C@apn.ask.com.xpi [2014-02-21]
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [pcoohmdcpejoeggdnihdfhohjgdbllgm] - C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7C\CRX\ToolbarCR.crx [2014-09-03]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [430160 2014-08-13] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [430160 2014-08-13] (Avira Operations GmbH & Co. KG)
R2 AntiVirWebService; C:\Program Files\Avira\AntiVir Desktop\avwebg7.exe [1021520 2014-08-13] (Avira Operations GmbH & Co. KG)
R2 APNMCP; C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe [166296 2014-08-22] (APN LLC.)
R2 Avira.OE.ServiceHost; C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe [149296 2014-08-04] (Avira Operations GmbH & Co. KG)
R2 cmdAgent; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [5306504 2014-04-16] (COMODO)
S3 cmdvirth; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [1663192 2014-03-25] (COMODO)
R2 DragonUpdater; C:\Program Files\Comodo\Dragon\dragon_updater.exe [2139328 2014-05-27] (Comodo Security Solutions, Inc.)
R2 Hamachi2Svc; C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [1677648 2014-02-04] (LogMeIn Inc.)
R2 LMIGuardianSvc; C:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe [375056 2014-02-04] (LogMeIn, Inc.)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [14652704 2013-11-14] (NVIDIA Corporation)
R2 PanService; C:\Program Files\PANDORA.TV\PanService\KMPService.exe [1922600 2013-07-08] (Pandora.TV)
R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [66872 2014-01-26] ()
R2 PnkBstrB; C:\Windows\system32\PnkBstrB.exe [103736 2014-01-26] ()
R2 TBSrv; C:\Program Files\Tbccint\ToolbarService\ToolbarService.exe [350528 2014-04-10] (ClientConnect Ltd.)
R2 Update NetTock; C:\Program Files\NetTock\updateNetTock.exe [323352 2014-09-11] ()
R2 Util NetTock; C:\Program Files\NetTock\bin\utilNetTock.exe [323352 2014-09-11] ()
S2 SystemkService; C:\Program Files\Settings Manager\systemk\SystemkService.exe [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R0 68687665; C:\Windows\System32\DRIVERS\68687665.sys [133208 2014-01-28] (Kaspersky Lab ZAO)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [97648 2014-06-24] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [136216 2014-05-22] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-12-09] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\System32\DRIVERS\avnetflt.sys [35848 2014-07-10] (Avira Operations GmbH & Co. KG)
R1 cmderd; C:\Windows\System32\DRIVERS\cmderd.sys [20072 2014-04-16] (COMODO)
R1 cmdGuard; C:\Windows\System32\DRIVERS\cmdguard.sys [607168 2014-04-16] (COMODO)
R1 cmdHlp; C:\Windows\System32\DRIVERS\cmdhlp.sys [43728 2014-04-16] (COMODO)
R3 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [243128 2014-06-09] (Disc Soft Ltd)
R1 F06DEFF2-5B9C-490D-910F-35D3A9119622; C:\Program Files\Settings Manager\systemk\systemkmgrc2.cfg [34192 2014-06-11] (Aztec Media Inc)
R0 giveio; C:\Windows\System32\giveio.sys [5248 1996-04-03] () [File not signed]
R3 hamachi; C:\Windows\System32\DRIVERS\hamachi.sys [26176 2009-03-18] (LogMeIn, Inc.)
R1 inspect; C:\Windows\System32\DRIVERS\inspect.sys [92656 2014-04-16] (COMODO)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad32v.sys [33568 2013-11-14] (NVIDIA Corporation)
S0 sfdrv01; C:\Windows\System32\drivers\sfdrv01.sys [50688 2005-08-10] (Protection Technology) [File not signed]
R0 sfhlp02; C:\Windows\System32\drivers\sfhlp02.sys [6656 2005-05-16] (Protection Technology) [File not signed]
S0 sfsync02; C:\Windows\System32\drivers\sfsync02.sys [19968 2005-08-10] (Protection Technology) [File not signed]
S0 sfvfs02; C:\Windows\System32\drivers\sfvfs02.sys [66048 2005-09-29] (Protection Technology) [File not signed]
R0 speedfan; C:\Windows\System32\speedfan.sys [24184 2012-12-29] (Almico Software)
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2013-12-09] (Avira GmbH)
R1 {0bd9bacb-0a2d-4412-900e-b2473afd87b4}Gw; C:\Windows\System32\drivers\{0bd9bacb-0a2d-4412-900e-b2473afd87b4}Gw.sys [52920 2014-04-24] (StdLib)
R1 {0bd9bacb-0a2d-4412-900e-b2473afd87b4}w; C:\Windows\System32\drivers\{0bd9bacb-0a2d-4412-900e-b2473afd87b4}w.sys [52920 2014-06-09] (StdLib)
S3 catchme; \??\C:\Users\PAO~1\AppData\Local\Temp\catchme.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================


(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-11 13:14 - 2014-09-11 13:18 - 00023193 _____ () C:\Users\Paťo\Desktop\FRST.txt
2014-09-11 13:14 - 2014-09-11 13:15 - 00000000 ____D () C:\FRST
2014-09-11 13:14 - 2014-09-11 13:14 - 01097728 _____ (Farbar) C:\Users\Paťo\Desktop\FRST.exe
2014-09-11 12:40 - 2014-09-11 12:43 - 00000000 ____D () C:\Program Files\trend micro
2014-09-11 12:40 - 2014-09-11 12:40 - 00000000 ____D () C:\rsit
2014-09-10 22:08 - 2014-09-10 22:08 - 00000000 ____D () C:\Users\Paťo\AppData\Roaming\Blender Foundation
2014-09-10 22:07 - 2014-09-10 22:16 - 00000000 ____D () C:\tmp
2014-09-10 18:04 - 2014-09-10 18:04 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_xusb21_01009.Wdf
2014-09-09 19:05 - 2014-09-09 19:05 - 00000000 ____D () C:\Users\Paťo\.thumbnails
2014-09-09 19:04 - 2014-09-09 19:04 - 00000727 _____ () C:\Users\Paťo\Desktop\Blender.lnk
2014-09-09 19:04 - 2014-09-09 19:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blender Foundation
2014-09-08 23:13 - 2014-09-08 23:15 - 00000000 ____D () C:\Users\Paťo\AppData\Roaming\MonoDevelop-Unity-4.0
2014-09-08 23:13 - 2014-09-08 23:13 - 00000000 ____D () C:\Users\Paťo\AppData\Roaming\stetic
2014-09-08 23:12 - 2014-09-08 23:13 - 00000000 ____D () C:\Users\Paťo\AppData\Local\MonoDevelop-Unity-4.0
2014-09-08 22:50 - 2014-09-09 18:41 - 00000000 ____D () C:\ProgramData\Unity
2014-09-08 22:50 - 2014-09-08 22:50 - 00000000 ____D () C:\Users\Paťo\AppData\Roaming\Apple Computer
2014-09-08 22:50 - 2014-09-08 22:50 - 00000000 ____D () C:\Users\Paťo\AppData\Local\Apple Computer
2014-09-08 22:43 - 2014-09-08 22:38 - 00000667 _____ () C:\Users\Paťo\Desktop\Unity.lnk
2014-09-08 22:38 - 2014-09-08 22:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unity
2014-09-08 22:38 - 2014-09-08 22:38 - 00000000 ____D () C:\Users\Public\Documents\Unity Projects
2014-09-07 12:21 - 2014-09-10 14:28 - 00000000 ____D () C:\ProgramData\TEMP
2014-09-07 12:21 - 2014-09-07 12:38 - 00000000 ____D () C:\Users\Paťo\Documents\Syberia Saves
2014-09-06 17:07 - 2014-09-06 17:51 - 00000000 ___RD () C:\Users\Paťo\Documents\MEGAsync
2014-09-06 17:05 - 2014-09-06 17:05 - 00000000 ____D () C:\Users\Paťo\AppData\Local\Mega Limited
2014-09-06 14:50 - 2014-09-06 14:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com
2014-09-06 14:50 - 2014-09-06 14:50 - 00000000 ____D () C:\Program Files\GOG.com
2014-09-02 20:16 - 2014-09-02 20:16 - 00000000 ____D () C:\Users\Guest\AppData\Roaming\Macromedia
2014-09-02 20:15 - 2014-09-02 20:15 - 00000000 ____D () C:\Users\Guest\AppData\Roaming\Avira
2014-09-02 20:10 - 2014-09-02 20:10 - 00000000 ____D () C:\Users\Guest\AppData\Local\Superbird
2014-09-02 09:37 - 2014-09-02 09:37 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-09-01 09:20 - 2014-08-07 03:43 - 00412160 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-09-01 09:20 - 2014-08-07 03:39 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-09-01 09:08 - 2014-03-04 11:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2014-09-01 09:08 - 2014-03-04 11:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-09-01 09:08 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll
2014-09-01 09:08 - 2014-03-04 11:17 - 00304128 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2014-09-01 09:08 - 2014-03-04 11:17 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2014-09-01 09:08 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll
2014-09-01 09:08 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll
2014-09-01 09:08 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll
2014-09-01 09:08 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll
2014-09-01 09:08 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll
2014-09-01 09:08 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll
2014-09-01 09:06 - 2014-05-30 09:52 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-09-01 09:06 - 2014-05-30 09:52 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-09-01 09:06 - 2014-05-30 09:52 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-09-01 09:06 - 2014-05-30 09:52 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-09-01 09:06 - 2014-05-30 09:52 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-09-01 09:06 - 2014-05-30 09:52 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-09-01 09:06 - 2014-05-30 09:52 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-09-01 09:01 - 2014-07-16 04:46 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-09-01 09:00 - 2011-03-11 07:39 - 00143744 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys
2014-09-01 09:00 - 2011-03-11 07:39 - 00117120 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys
2014-09-01 09:00 - 2011-03-11 07:38 - 00332160 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys
2014-09-01 09:00 - 2011-03-11 07:38 - 00080256 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys
2014-09-01 09:00 - 2011-03-11 07:38 - 00022400 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys
2014-09-01 09:00 - 2011-03-11 07:33 - 01699328 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
2014-09-01 09:00 - 2011-03-11 07:31 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\fsutil.exe
2014-09-01 09:00 - 2011-03-11 06:01 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2014-09-01 08:56 - 2014-06-18 03:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2014-09-01 08:55 - 2014-08-23 03:46 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-09-01 08:55 - 2014-08-23 02:42 - 02352640 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-09-01 08:55 - 2014-06-05 16:26 - 01059840 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-09-01 08:55 - 2014-04-12 04:15 - 00136640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-09-01 08:55 - 2014-04-12 04:15 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2014-09-01 08:55 - 2014-04-12 04:12 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2014-09-01 08:55 - 2014-04-12 04:12 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2014-09-01 08:55 - 2014-04-12 04:12 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2014-09-01 08:55 - 2014-04-12 04:11 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2014-09-01 08:55 - 2014-01-24 04:18 - 01212352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2014-09-01 08:52 - 2014-06-03 11:30 - 00101824 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2014-09-01 08:52 - 2014-06-03 11:29 - 02363392 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-09-01 08:52 - 2014-06-03 11:29 - 01805824 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2014-09-01 08:52 - 2014-06-03 11:29 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2014-09-01 08:52 - 2014-04-05 04:25 - 01294272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-09-01 08:52 - 2014-04-05 04:24 - 00187840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2014-09-01 08:52 - 2014-02-04 04:07 - 00234432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2014-09-01 08:52 - 2014-02-04 04:07 - 00149440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2014-09-01 08:52 - 2014-02-04 04:07 - 00027072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2014-09-01 08:52 - 2014-02-04 04:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll
2014-09-01 08:51 - 2014-06-06 11:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2014-09-01 08:51 - 2014-05-30 08:36 - 00338944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2014-09-01 08:51 - 2014-03-04 11:17 - 00868352 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2014-09-01 08:51 - 2012-07-06 21:23 - 00393728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2014-09-01 08:51 - 2011-04-28 05:15 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2014-09-01 08:50 - 2014-04-25 04:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2014-09-01 08:47 - 2014-06-25 03:41 - 12874240 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-09-01 08:47 - 2014-06-16 03:44 - 00730048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2014-09-01 08:47 - 2014-06-16 03:44 - 00219072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2014-09-01 08:47 - 2014-06-16 03:40 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2014-09-01 08:47 - 2014-03-26 16:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2014-09-01 08:47 - 2014-03-26 16:27 - 01237504 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-09-01 08:47 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2014-09-01 08:47 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-09-01 08:46 - 2014-07-14 03:42 - 00654336 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2014-09-01 08:45 - 2014-05-08 11:06 - 00919040 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-08-31 00:17 - 2014-08-31 00:17 - 00003584 _____ () C:\Users\Paťo\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-08-30 21:42 - 2014-09-02 20:11 - 00000000 ____D () C:\Users\Guest\AppData\Roaming\Seznam.cz
2014-08-30 21:42 - 2014-08-30 21:42 - 00111520 _____ () C:\Users\Guest\AppData\Local\GDIPFONTCACHEV1.DAT
2014-08-30 21:42 - 2014-08-30 21:42 - 00000000 ____D () C:\Users\Guest\AppData\Local\LogMeIn
2014-08-30 21:41 - 2014-09-02 20:13 - 00000000 ____D () C:\Users\Guest\AppData\Local\LogMeIn Hamachi
2014-08-30 21:41 - 2014-08-30 21:41 - 00001413 _____ () C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-08-30 21:41 - 2014-08-30 21:41 - 00000020 ___SH () C:\Users\Guest\ntuser.ini
2014-08-30 21:41 - 2014-08-30 21:41 - 00000000 ____D () C:\Users\Guest\AppData\Roaming\Adobe
2014-08-30 21:41 - 2014-08-30 21:41 - 00000000 ____D () C:\Users\Guest\AppData\Local\VNT
2014-08-30 21:41 - 2014-08-30 21:41 - 00000000 ____D () C:\Users\Guest\AppData\Local\VirtualStore
2014-08-30 21:40 - 2014-08-30 21:41 - 00000000 ____D () C:\Users\Guest
2014-08-30 21:40 - 2009-07-14 06:42 - 00000000 ___RD () C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-08-30 21:40 - 2009-07-14 06:37 - 00000000 ___RD () C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-08-18 23:27 - 2014-05-14 18:23 - 01973728 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-08-18 23:27 - 2014-05-14 18:23 - 00054240 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-08-18 23:27 - 2014-05-14 18:23 - 00045536 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2014-08-18 23:27 - 2014-05-14 18:17 - 02425856 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2014-08-18 23:26 - 2014-05-14 18:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2014-08-18 23:26 - 2014-05-14 18:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2014-08-18 23:26 - 2014-05-14 18:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2014-08-18 23:26 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2014-08-18 23:26 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2014-08-17 15:12 - 2014-08-17 15:19 - 00000000 ____D () C:\Users\Paťo\Documents\001
2014-08-17 15:12 - 2014-08-17 15:12 - 00000902 _____ () C:\Users\UpdatusUser\Desktop\Return to Camp Crystal Lake.lnk
2014-08-17 15:12 - 2014-08-17 15:12 - 00000000 ____D () C:\ProgramData\Team001 (Mike Weir)
2014-08-17 15:12 - 2014-08-17 15:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\001
2014-08-17 09:24 - 2014-08-17 09:25 - 00000000 ____D () C:\Users\Paťo\Documents\NFS Most Wanted
2014-08-16 21:24 - 2014-08-16 21:24 - 00000681 _____ () C:\Users\Paťo\Desktop\Dark Island.lnk
2014-08-16 10:35 - 2014-08-19 19:32 - 00000000 ____D () C:\ProgramData\Package Cache

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-11 13:18 - 2014-09-11 13:14 - 00023193 _____ () C:\Users\Paťo\Desktop\FRST.txt
2014-09-11 13:15 - 2014-09-11 13:14 - 00000000 ____D () C:\FRST
2014-09-11 13:14 - 2014-09-11 13:14 - 01097728 _____ (Farbar) C:\Users\Paťo\Desktop\FRST.exe
2014-09-11 12:43 - 2014-09-11 12:40 - 00000000 ____D () C:\Program Files\trend micro
2014-09-11 12:40 - 2014-09-11 12:40 - 00000000 ____D () C:\rsit
2014-09-11 12:33 - 2014-08-07 09:33 - 01732252 _____ () C:\Windows\WindowsUpdate.log
2014-09-11 12:31 - 2014-02-04 11:33 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-09-11 12:26 - 2009-07-14 04:04 - 00000580 _____ () C:\Windows\win.ini
2014-09-11 12:22 - 2009-07-14 06:34 - 00026352 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-09-11 12:22 - 2009-07-14 06:34 - 00026352 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-09-11 12:21 - 2014-04-17 11:59 - 00000000 ____D () C:\Program Files\NetTock
2014-09-11 04:57 - 2014-01-14 22:41 - 00000000 ____D () C:\Users\Paťo\AppData\Roaming\Skype
2014-09-11 04:56 - 2014-05-11 17:22 - 00000000 ____D () C:\Users\Paťo\AppData\Roaming\Seznam.cz
2014-09-11 04:56 - 2014-01-06 15:58 - 00000000 ____D () C:\Users\Paťo\AppData\Local\LogMeIn Hamachi
2014-09-11 04:49 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-09-10 22:16 - 2014-09-10 22:07 - 00000000 ____D () C:\tmp
2014-09-10 22:08 - 2014-09-10 22:08 - 00000000 ____D () C:\Users\Paťo\AppData\Roaming\Blender Foundation
2014-09-10 18:04 - 2014-09-10 18:04 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_xusb21_01009.Wdf
2014-09-10 14:28 - 2014-09-07 12:21 - 00000000 ____D () C:\ProgramData\TEMP
2014-09-10 12:32 - 2014-02-04 11:33 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-09-10 12:32 - 2014-02-04 11:33 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-09-10 11:12 - 2014-07-03 21:32 - 00000000 ____D () C:\Users\Paťo\Desktop\Papiere
2014-09-09 19:05 - 2014-09-09 19:05 - 00000000 ____D () C:\Users\Paťo\.thumbnails
2014-09-09 19:05 - 2014-07-03 21:32 - 00000000 ____D () C:\Users\Paťo\Desktop\Games
2014-09-09 19:05 - 2014-01-03 20:45 - 00000000 ____D () C:\Users\Paťo
2014-09-09 19:04 - 2014-09-09 19:04 - 00000727 _____ () C:\Users\Paťo\Desktop\Blender.lnk
2014-09-09 19:04 - 2014-09-09 19:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blender Foundation
2014-09-09 18:41 - 2014-09-08 22:50 - 00000000 ____D () C:\ProgramData\Unity
2014-09-08 23:15 - 2014-09-08 23:13 - 00000000 ____D () C:\Users\Paťo\AppData\Roaming\MonoDevelop-Unity-4.0
2014-09-08 23:13 - 2014-09-08 23:13 - 00000000 ____D () C:\Users\Paťo\AppData\Roaming\stetic
2014-09-08 23:13 - 2014-09-08 23:12 - 00000000 ____D () C:\Users\Paťo\AppData\Local\MonoDevelop-Unity-4.0
2014-09-08 23:07 - 2014-01-09 22:50 - 00000000 ____D () C:\Users\Paťo\AppData\Roaming\Unity
2014-09-08 22:50 - 2014-09-08 22:50 - 00000000 ____D () C:\Users\Paťo\AppData\Roaming\Apple Computer
2014-09-08 22:50 - 2014-09-08 22:50 - 00000000 ____D () C:\Users\Paťo\AppData\Local\Apple Computer
2014-09-08 22:50 - 2014-01-09 22:47 - 00000000 ____D () C:\Users\Paťo\AppData\Local\Unity
2014-09-08 22:43 - 2014-07-03 21:32 - 00000000 ___RD () C:\Users\Paťo\Desktop\Soft-Odkazy
2014-09-08 22:42 - 2014-09-08 22:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unity
2014-09-08 22:38 - 2014-09-08 22:43 - 00000667 _____ () C:\Users\Paťo\Desktop\Unity.lnk
2014-09-08 22:38 - 2014-09-08 22:38 - 00000000 ____D () C:\Users\Public\Documents\Unity Projects
2014-09-08 10:26 - 2014-01-05 10:47 - 00000000 ____D () C:\Users\Paťo\AppData\Roaming\uTorrent
2014-09-07 12:51 - 2014-01-05 19:17 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2014-09-07 12:43 - 2010-11-21 05:00 - 00000000 ___RD () C:\Users\Public\Recorded TV
2014-09-07 12:38 - 2014-09-07 12:21 - 00000000 ____D () C:\Users\Paťo\Documents\Syberia Saves
2014-09-07 12:20 - 2014-01-05 12:55 - 00000000 ____D () C:\Users\Paťo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2014-09-07 11:45 - 2014-01-04 02:50 - 00000000 ____D () C:\Users\Paťo\AppData\Roaming\DAEMON Tools Lite
2014-09-07 00:53 - 2014-06-09 11:51 - 00000000 ____D () C:\Users\Paťo\AppData\Roaming\vlc
2014-09-06 17:51 - 2014-09-06 17:07 - 00000000 ___RD () C:\Users\Paťo\Documents\MEGAsync
2014-09-06 17:05 - 2014-09-06 17:05 - 00000000 ____D () C:\Users\Paťo\AppData\Local\Mega Limited
2014-09-06 14:50 - 2014-09-06 14:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com
2014-09-06 14:50 - 2014-09-06 14:50 - 00000000 ____D () C:\Program Files\GOG.com
2014-09-05 09:45 - 2010-11-20 23:01 - 00778834 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-09-04 18:54 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache
2014-09-04 09:38 - 2014-02-03 02:19 - 00000000 ____D () C:\Users\Paťo\AppData\Local\VNT
2014-09-04 09:38 - 2014-02-03 02:19 - 00000000 ____D () C:\Program Files\VNT
2014-09-02 20:16 - 2014-09-02 20:16 - 00000000 ____D () C:\Users\Guest\AppData\Roaming\Macromedia
2014-09-02 20:15 - 2014-09-02 20:15 - 00000000 ____D () C:\Users\Guest\AppData\Roaming\Avira
2014-09-02 20:13 - 2014-08-30 21:41 - 00000000 ____D () C:\Users\Guest\AppData\Local\LogMeIn Hamachi
2014-09-02 20:11 - 2014-08-30 21:42 - 00000000 ____D () C:\Users\Guest\AppData\Roaming\Seznam.cz
2014-09-02 20:10 - 2014-09-02 20:10 - 00000000 ____D () C:\Users\Guest\AppData\Local\Superbird
2014-09-02 10:23 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2014-09-02 09:41 - 2009-07-14 06:33 - 00433056 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-09-02 09:38 - 2010-11-21 05:00 - 00000000 ____D () C:\Program Files\Windows Journal
2014-09-02 09:38 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\sk-SK
2014-09-02 09:37 - 2014-09-02 09:37 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-08-31 00:21 - 2014-02-27 23:08 - 00000000 ___RD () C:\Users\Paťo\Desktop\Sounds
2014-08-31 00:17 - 2014-08-31 00:17 - 00003584 _____ () C:\Users\Paťo\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-08-30 21:42 - 2014-08-30 21:42 - 00111520 _____ () C:\Users\Guest\AppData\Local\GDIPFONTCACHEV1.DAT
2014-08-30 21:42 - 2014-08-30 21:42 - 00000000 ____D () C:\Users\Guest\AppData\Local\LogMeIn
2014-08-30 21:41 - 2014-08-30 21:41 - 00001413 _____ () C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-08-30 21:41 - 2014-08-30 21:41 - 00000020 ___SH () C:\Users\Guest\ntuser.ini
2014-08-30 21:41 - 2014-08-30 21:41 - 00000000 ____D () C:\Users\Guest\AppData\Roaming\Adobe
2014-08-30 21:41 - 2014-08-30 21:41 - 00000000 ____D () C:\Users\Guest\AppData\Local\VNT
2014-08-30 21:41 - 2014-08-30 21:41 - 00000000 ____D () C:\Users\Guest\AppData\Local\VirtualStore
2014-08-30 21:41 - 2014-08-30 21:40 - 00000000 ____D () C:\Users\Guest
2014-08-30 21:17 - 2014-06-07 13:33 - 00000000 ___RD () C:\Users\Paťo\Desktop\NEW
2014-08-30 21:16 - 2014-07-18 12:26 - 00000000 ____D () C:\Users\Paťo\Desktop\Kniha
2014-08-24 23:36 - 2014-01-05 00:49 - 00000000 ____D () C:\Program Files\Google
2014-08-23 03:46 - 2014-09-01 08:55 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-08-23 02:42 - 2014-09-01 08:55 - 02352640 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-08-19 19:32 - 2014-08-16 10:35 - 00000000 ____D () C:\ProgramData\Package Cache
2014-08-19 19:32 - 2014-02-03 02:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2014-08-19 19:32 - 2014-02-03 02:16 - 00000000 ____D () C:\Program Files\Avira
2014-08-17 15:19 - 2014-08-17 15:12 - 00000000 ____D () C:\Users\Paťo\Documents\001
2014-08-17 15:12 - 2014-08-17 15:12 - 00000902 _____ () C:\Users\UpdatusUser\Desktop\Return to Camp Crystal Lake.lnk
2014-08-17 15:12 - 2014-08-17 15:12 - 00000000 ____D () C:\ProgramData\Team001 (Mike Weir)
2014-08-17 15:12 - 2014-08-17 15:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\001
2014-08-17 09:25 - 2014-08-17 09:24 - 00000000 ____D () C:\Users\Paťo\Documents\NFS Most Wanted
2014-08-17 09:11 - 2014-06-19 10:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA Games
2014-08-16 21:27 - 2014-07-18 12:10 - 00000000 ____D () C:\Users\Paťo\AppData\Roaming\Bioshock
2014-08-16 21:24 - 2014-08-16 21:24 - 00000681 _____ () C:\Users\Paťo\Desktop\Dark Island.lnk
2014-08-16 16:38 - 2014-01-04 02:40 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-08-16 13:30 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\NDF
2014-08-16 10:36 - 2014-02-03 02:16 - 00000000 ____D () C:\ProgramData\Avira
2014-08-14 12:01 - 2014-04-26 21:26 - 00000000 ____D () C:\Users\Paťo\AppData\Local\Microsoft Games

Some content of TEMP:
====================
C:\Users\Guest\AppData\Local\Temp\avgnt.exe
C:\Users\Paťo\AppData\Local\Temp\avgnt.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-09-06 13:54

==================== End Of Log ============================

Avatar uživatele
JaRon
Moderátor
Moderátor
Příspěvky: 15924
Registrován: 29 Bře 2005 13:39
Místo/Bydliště: BB-SK

Re: Avira-virusy stale dokola

#4 Příspěvek od JaRon »

citat:
Tvorba fixlistu pro FRST

•Spustte poznamkovy blok (Start-spustit-notepad)
•Zkopirujte skript nize

Kód: Vybrat vše

Start
HKLM\...\Run: [mncuttsehSrv] => C:\Windows\inf\mncuttseh.vbe
IFEO\bitguard.exe: [Debugger] tasklist.exe
IFEO\bprotect.exe: [Debugger] tasklist.exe
IFEO\bpsvc.exe: [Debugger] tasklist.exe
IFEO\browserdefender.exe: [Debugger] tasklist.exe
IFEO\browserprotect.exe: [Debugger] tasklist.exe
IFEO\browsersafeguard.exe: [Debugger] tasklist.exe
IFEO\dprotectsvc.exe: [Debugger] tasklist.exe
IFEO\jumpflip: [Debugger] tasklist.exe
IFEO\protectedsearch.exe: [Debugger] tasklist.exe
IFEO\searchinstaller.exe: [Debugger] tasklist.exe
IFEO\searchprotection.exe: [Debugger] tasklist.exe
IFEO\searchprotector.exe: [Debugger] tasklist.exe
IFEO\searchsettings.exe: [Debugger] tasklist.exe
IFEO\searchsettings64.exe: [Debugger] tasklist.exe
IFEO\snapdo.exe: [Debugger] tasklist.exe
IFEO\stinst32.exe: [Debugger] tasklist.exe
IFEO\stinst64.exe: [Debugger] tasklist.exe
IFEO\umbrella.exe: [Debugger] tasklist.exe
IFEO\utiljumpflip.exe: [Debugger] tasklist.exe
IFEO\volaro: [Debugger] tasklist.exe
IFEO\vonteera: [Debugger] tasklist.exe
IFEO\websteroids.exe: [Debugger] tasklist.exe
IFEO\websteroidsservice.exe: [Debugger] tasklist.exe
SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2503} URL = http://www.default-search.net/search?si ... &src=ds&p={searchTerms}
SearchScopes: HKCU - DefaultScope {BEA53EF8-1A7D-4764-8D8E-C73FD35C8979} URL = http://trovi.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3329621&CUI=UN25762081932345983&UM=4



Hosts:
CMD: shutdown /r /f /t 2
End
•Ulozte vytvoreny TXT jako fixlist.txt
•Presunte vytvoreny fixlist vedle FRST

Spustte znovu FRST.exe

•Kliknete na Fix
•Probehne oprava a vytvori log Fixlog.txt

Restart PC a dejte mi sem fixlog.txt
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Stix
Návštěvník
Návštěvník
Příspěvky: 21
Registrován: 27 Led 2014 21:34

Re: Avira-virusy stale dokola

#5 Příspěvek od Stix »

Nech sa paci:

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 11-09-2014
Ran by Paťo at 2014-09-11 14:40:08 Run:1
Running from C:\Users\Paťo\Desktop
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
Start
HKLM\...\Run: [mncuttsehSrv] => C:\Windows\inf\mncuttseh.vbe
IFEO\bitguard.exe: [Debugger] tasklist.exe
IFEO\bprotect.exe: [Debugger] tasklist.exe
IFEO\bpsvc.exe: [Debugger] tasklist.exe
IFEO\browserdefender.exe: [Debugger] tasklist.exe
IFEO\browserprotect.exe: [Debugger] tasklist.exe
IFEO\browsersafeguard.exe: [Debugger] tasklist.exe
IFEO\dprotectsvc.exe: [Debugger] tasklist.exe
IFEO\jumpflip: [Debugger] tasklist.exe
IFEO\protectedsearch.exe: [Debugger] tasklist.exe
IFEO\searchinstaller.exe: [Debugger] tasklist.exe
IFEO\searchprotection.exe: [Debugger] tasklist.exe
IFEO\searchprotector.exe: [Debugger] tasklist.exe
IFEO\searchsettings.exe: [Debugger] tasklist.exe
IFEO\searchsettings64.exe: [Debugger] tasklist.exe
IFEO\snapdo.exe: [Debugger] tasklist.exe
IFEO\stinst32.exe: [Debugger] tasklist.exe
IFEO\stinst64.exe: [Debugger] tasklist.exe
IFEO\umbrella.exe: [Debugger] tasklist.exe
IFEO\utiljumpflip.exe: [Debugger] tasklist.exe
IFEO\volaro: [Debugger] tasklist.exe
IFEO\vonteera: [Debugger] tasklist.exe
IFEO\websteroids.exe: [Debugger] tasklist.exe
IFEO\websteroidsservice.exe: [Debugger] tasklist.exe
SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2503} URL = http://www.default-search.net/search?si ... &src=ds&p={searchTerms}
SearchScopes: HKCU - DefaultScope {BEA53EF8-1A7D-4764-8D8E-C73FD35C8979} URL = http://trovi.com/ResultsExt.aspx?q={sea ... 45983&UM=4



Hosts:
CMD: shutdown /r /f /t 2
End
*****************

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\mncuttsehSrv => value deleted successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\bitguard.exe" => Key deleted successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\bprotect.exe" => Key deleted successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\bpsvc.exe" => Key deleted successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\browserdefender.exe" => Key deleted successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\browserprotect.exe" => Key deleted successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\browsersafeguard.exe" => Key deleted successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\dprotectsvc.exe" => Key deleted successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\jumpflip" => Key deleted successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\protectedsearch.exe" => Key deleted successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\searchinstaller.exe" => Key deleted successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\searchprotection.exe" => Key deleted successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\searchprotector.exe" => Key deleted successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\searchsettings.exe" => Key deleted successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\searchsettings64.exe" => Key deleted successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\snapdo.exe" => Key deleted successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\stinst32.exe" => Key deleted successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\stinst64.exe" => Key deleted successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\umbrella.exe" => Key deleted successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\utiljumpflip.exe" => Key deleted successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\volaro" => Key deleted successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\vonteera" => Key deleted successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\websteroids.exe" => Key deleted successfully.
"HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\websteroidsservice.exe" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2503}" => Key deleted successfully.
"HKCR\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2503}" => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
"C:\Windows\System32\Drivers\etc\hosts" => Could not move.
Could not reset Hosts.

========= shutdown /r /f /t 2 =========


========= End of CMD: =========


==== End of Fixlog ====

Avatar uživatele
JaRon
Moderátor
Moderátor
Příspěvky: 15924
Registrován: 29 Bře 2005 13:39
Místo/Bydliště: BB-SK

Re: Avira-virusy stale dokola

#6 Příspěvek od JaRon »

bolo by dobre to docistit s MBAM
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Stix
Návštěvník
Návštěvník
Příspěvky: 21
Registrován: 27 Led 2014 21:34

Re: Avira-virusy stale dokola

#7 Příspěvek od Stix »

Asi jo,stale to vybieha.

Stix
Návštěvník
Návštěvník
Příspěvky: 21
Registrován: 27 Led 2014 21:34

Re: Avira-virusy stale dokola

#8 Příspěvek od Stix »

Uz je to v pohode,dakujem velmi pekne :)

Avatar uživatele
JaRon
Moderátor
Moderátor
Příspěvky: 15924
Registrován: 29 Bře 2005 13:39
Místo/Bydliště: BB-SK

Re: Avira-virusy stale dokola

#9 Příspěvek od JaRon »

za malicko :)
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Zamčeno