Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Moc prosím o ko pc...co možná nejrychejší-děkuji

Patříte mezi Vzorné návštěvníky? Pak je tato sekce pro vás.

Moderátor: Moderátoři

Pravidla fóra
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
Zpráva
Autor
Uživatelský avatar
jaruneczka
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 417
Registrován: 09 čer 2008 11:45
Bydliště: Ostrava

Re: Moc prosím o ko pc...co možná nejrychejší-děkuji

#16 Příspěvek od jaruneczka »

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 15-10-2014 02
Ran by Jaruneczka at 2014-10-16 11:52:16
Running from C:\Users\Jaruneczka\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Kaspersky Internet Security (Enabled - Up to date) {179979E8-273D-D14E-0543-2861940E4886}
AS: Kaspersky Internet Security (Enabled - Up to date) {ACF8980C-0107-DEC0-3FF3-1313EF89023B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Kaspersky Internet Security (Enabled) {2FA2F8CD-6D52-D016-2E1C-81546ADD0FFD}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Acer Crystal Eye Webcam (HKLM-x32\...\InstallShield_{A0382E3C-7384-429A-9BFA-AF5888E5A193}) (Version: 1.5.3501.00 - CyberLink Corp.)
Acer Crystal Eye Webcam (x32 Version: 1.5.3501.00 - CyberLink Corp.) Hidden
Acer ePower Management (HKLM-x32\...\{3DB0448D-AD82-4923-B305-D001E521A964}) (Version: 6.00.3007 - Acer Incorporated)
Acer eRecovery Management (HKLM-x32\...\{7F811A54-5A09-4579-90E1-C93498E230D9}) (Version: 5.00.3504 - Acer Incorporated)
Acer Registration (HKLM-x32\...\Acer Registration) (Version: 1.04.3504 - Acer Incorporated)
Acer ScreenSaver (HKLM-x32\...\Acer Screensaver) (Version: 1.1.0517.2011 - Acer Incorporated)
Acer Updater (HKLM-x32\...\{EE171732-BEB4-4576-887D-CB62727F01CA}) (Version: 1.02.3502 - Acer Incorporated)
Adblock Plus for IE (32-bit and 64-bit) (HKLM\...\{CB320215-F4BD-40FD-A209-62B131DA1B82}) (Version: 99.9 - Eyeo GmbH)
Adblock Plus for IE (HKLM-x32\...\{fd97d1e2-368a-4cd9-af63-8eeff938044a}) (Version: 1.1 - )
Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.152 - Adobe Systems Incorporated)
Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.152 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.09) - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.09 - Adobe Systems Incorporated)
Alcor Micro USB Card Reader (x32 Version: 1.2.42.68439 - Alcor Micro Corp.) Hidden
Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{2EF5D87E-B7BD-458F-8428-E4D0B8B4E65C}) (Version: 7.0.0.117 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Balíček ovladače systému Windows - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0) (HKLM\...\62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F) (Version: 05/31/2012 7.1.2.0 - Nokia)
Bing Bar (HKLM-x32\...\{C28D96C0-6A90-459E-A077-A6706F4EC0FC}) (Version: 7.0.765.0 - Microsoft Corporation)
CCleaner (HKLM\...\CCleaner) (Version: 4.18 - Piriform)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Fotogalerija Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galeria de Fotografias do Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galería fotográfica de Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galeria fotogràfica del Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galeria fotografii usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galerie de photos Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galerie foto Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
HD Tune 2.55 (HKLM-x32\...\HD Tune_is1) (Version: - EFD Software)
Identity Card (HKLM-x32\...\Identity Card) (Version: 1.00.3501 - Acer Incorporated)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.3347 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.0.0.1046 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.38 - Irfan Skiljan)
Java 7 Update 67 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F06417067FF}) (Version: 7.0.670 - Oracle)
Java 7 Update 67 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217067FF}) (Version: 7.0.670 - Oracle)
Java Auto Updater (x32 Version: 2.1.67.1 - Oracle, Inc.) Hidden
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Kaspersky Internet Security (HKLM-x32\...\InstallWIX_{653C1B5A-3287-47B1-8613-0745D4E771C4}) (Version: 15.0.0.463 - Kaspersky Lab)
Kaspersky Internet Security (x32 Version: 15.0.0.463 - Kaspersky Lab) Hidden
Malwarebytes Anti-Malware verze 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation)
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (CSY) (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 (HKLM-x32\...\{5DA8F6CD-C70E-39D8-8430-3D9808D6BD17}) (Version: 9.0.30411 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft_VC100_CRT_SP1_x64 (Version: 10.0.40219.1 - Nokia) Hidden
Microsoft_VC100_CRT_SP1_x86 (x32 Version: 10.0.40219.1 - Nokia) Hidden
Mozilla Firefox 33.0 (x86 cs) (HKLM-x32\...\Mozilla Firefox 33.0 (x86 cs)) (Version: 33.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 32.0.3 - Mozilla)
Mozilla Thunderbird 31.2.0 (x86 cs) (HKLM-x32\...\Mozilla Thunderbird 31.2.0 (x86 cs)) (Version: 31.2.0 - Mozilla)
MSVC80_x64_v2 (Version: 1.0.3.0 - Nokia) Hidden
MSVC80_x86_v2 (x32 Version: 1.0.3.0 - Nokia) Hidden
MSVC90_x64 (Version: 1.0.1.2 - Nokia) Hidden
MSVC90_x86 (x32 Version: 1.0.1.2 - Nokia) Hidden
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
Nokia Connectivity Cable Driver (HKLM-x32\...\{29373274-977E-413C-A4DE-DC0F8E80C429}) (Version: 7.1.172.0 - Nokia)
Nokia Suite (HKLM-x32\...\Nokia Suite) (Version: 3.8.48.0 - Nokia)
Nokia Suite (x32 Version: 3.8.48.0 - Nokia) Hidden
NTI Media Maker 9 (x32 Version: 9.0.2.9002 - NTI Corporation) Hidden
OLYMPUS Master 2 (HKLM-x32\...\{CB49B376-1136-44B4-83FA-036334B59937}) (Version: 1.0.2 - OLYMPUS IMAGING CORP.)
OpenOffice 4.1.0 (HKLM-x32\...\{43245B34-BAEA-4716-B877-38E7E7026698}) (Version: 4.10.9764 - Apache Software Foundation)
PC Connectivity Solution (HKLM-x32\...\{6D01D1B1-17BD-4F10-BB11-F08F0C47D42B}) (Version: 12.0.109.0 - Nokia)
Poczta usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Podstawowe programy Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Pošta Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Puran Utilities 3.0 (HKLM\...\Puran Utilities_is1) (Version: - Puran Software)
QuickTime 7 (HKLM-x32\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.)
Raccolta foto di Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7250 - Realtek Semiconductor Corp.)
Skype™ 6.21 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.21.104 - Skype Technologies S.A.)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN)
Welcome Center (HKLM-x32\...\Acer Welcome Center) (Version: 1.02.3504 - Acer Incorporated)
Windows Installer Clean Up (HKLM-x32\...\{121634B0-2F4B-11D3-ADA3-00C04F52DD52}) (Version: 3.00.00.0000 - Microsoft Corporation)
Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3538.0513 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Fotogaléria (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Fotogalerie (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Fotogalleri (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Fotoğraf Galerisi (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Fotótár (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Galeria de Fotos (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Galerija fotografija (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4232.0 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Language Selector (Version: 15.4.3538.0513 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mesh (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Messenger (x32 Version: 15.4.3538.0513 - Microsoft Corporation) Hidden
Windows Live Messenger (x32 Version: 15.4.3538.0513 - Корпорация Майкрософт) Hidden
Windows Live MIME IFilter (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live Remote Client (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Client Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Service (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Service Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Temel Parçalar (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live 影像中心 (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live 程式集 (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Liven asennustyökalu (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Liven sähköposti (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Liven valokuvavalikoima (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Media Player Firefox Plugin (HKLM-x32\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp)
WinRAR (HKLM-x32\...\WinRAR archiver) (Version: - )
Zuma Deluxe 1.0 (HKLM-x32\...\Zuma Deluxe 1.0) (Version: - )
Συλλογή φωτογραφιών του Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Основные компоненты Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Почта Windows Live (x32 Version: 15.4.3502.0922 - Корпорация Майкрософт) Hidden
Фотоальбом Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Фотогалерия на Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
גלריית התמונות של Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
بريد Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
معرض صور Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points =========================

15-10-2014 13:41:07 Windows Update
15-10-2014 15:05:49 Instalační služba modulů systému Windows
15-10-2014 15:49:15 Windows Update
15-10-2014 15:54:34 Windows Update
15-10-2014 15:59:51 Windows Update
15-10-2014 16:03:49 Windows Update
15-10-2014 16:48:45 Windows Update
15-10-2014 17:31:13 Windows Update
15-10-2014 20:58:12 Windows Update
16-10-2014 04:39:06 Windows Update
16-10-2014 05:34:08 Windows Update

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2014-08-24 06:45 - 00000855 ____N C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {1B062DFB-9C1D-4A36-B36D-EBAF38358D92} - System32\Tasks\{6B002F8B-B460-4DD3-A08A-A6B384907854} => C:\Users\Jaruneczka\Desktop\Acer.1.5.2904.19458_AVC120510-01.exe
Task: {1E49B377-3828-417E-A5B6-7DB78E0559E8} - System32\Tasks\{5C2D5D76-E254-450A-89EE-6BE40C4E98F6} => C:\Users\Jaruneczka\Desktop\Acer.1.5.2406.18204_AVC111123-01.exe
Task: {314B851A-C8F9-4A08-8B56-3E54F6D14EFB} - \SlimDrivers Scan No Task File <==== ATTENTION
Task: {34E42E4F-3A38-4E6D-998B-1D234969E84B} - System32\Tasks\{ADF96678-24AB-45E6-AE4D-9CBC3DB6FA30} => C:\Windows\system32\msiexec.exe [2010-11-21] (Microsoft Corporation)
Task: {3B2C3AA9-E21A-4850-A702-E7F2B0B0CC91} - System32\Tasks\{A863C37C-DC9D-4D9C-954A-F7EF958F06AE} => C:\Windows\system32\msiexec.exe [2010-11-21] (Microsoft Corporation)
Task: {3C3BBEFA-7E54-456F-8E8D-60A97B82DF7B} - System32\Tasks\{670D8447-71C4-4E14-BDF7-2241EBF87BA4} => C:\Users\Jaruneczka\Desktop\Acer.1.5.2904.19458_AVC120510-01.exe
Task: {43A2316F-2500-4954-8FFD-56EED09C96D2} - System32\Tasks\Recovery Management\Burn Notification => C:\Program Files\Acer\Acer eRecovery Management\NotificationCenter\Notification.exe [2011-08-10] (Acer)
Task: {4C360F39-35AB-43CC-8F77-C6121C0890FC} - System32\Tasks\{7C5C1740-64EB-481F-A359-41F7552A5BA3} => C:\Program Files (x86)\ManyCam\ManyCam.exe
Task: {52006F96-0B6D-49DB-9534-FAA03C650D2B} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-07-25] (Oracle Corporation)
Task: {544F9F22-D098-48EA-97B6-C4FF890602B6} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
Task: {57A9A4DC-53FC-4C7A-81E9-D49C78B62048} - System32\Tasks\{C77C7140-8658-4DFA-9866-A927EAAF29EA} => C:\Windows\system32\msiexec.exe [2010-11-21] (Microsoft Corporation)
Task: {5C799511-28F9-4431-BB7F-E4FCF66AEEA8} - System32\Tasks\Microsoft\Internet Explorer\Odstranit předchozí verze aplikace Internet Explorer => C:\Windows\SYSTEM32\ie4uinit.EXE [2014-08-18] (Microsoft Corporation)
Task: {62361F9E-7E97-43AB-AF1F-0B686C9CCBF4} - System32\Tasks\UALU notificatin => C:\Program Files\Acer\Acer Updater\UALU.exe [2012-04-05] (Acer Incorporated)
Task: {7C2CE3BD-C85C-4E6B-B4C0-C559BE8A491E} - System32\Tasks\{4272064A-E599-4272-8EDA-BDC858184A84} => C:\Program Files (x86)\Acer\Acer Crystal Eye Webcam\WebCam.exe [2012-11-01] (CyberLink Corp.)
Task: {7C410300-30D4-49CE-B1D3-0A291F75876B} - System32\Tasks\clear.fi => C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fi.exe [2011-10-28] (Acer Incorporated)
Task: {86B6E272-8FC7-46E9-9478-D7C6A63C0AB2} - System32\Tasks\{D0D8A35D-C62D-405C-9B0F-F267DBC5F0CD} => C:\Users\Jaruneczka\Desktop\Camera_Cyberlink_1.0.1904_W7x86x64\setup.exe
Task: {9243CD7A-25E9-46D9-ABFE-7025454A1C30} - System32\Tasks\{FD478987-6D49-4966-9DD0-8D3245D38BFC} => C:\Users\Jaruneczka\Desktop\Camera_Cyberlink_1.0.1904_W7x86x64\setup.exe
Task: {9277AC2C-9AA3-4F3D-8251-71BBC2FD47BA} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {A6A98116-09C4-4034-B8A8-35FBE133C2AA} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-2994249906-4171692639-4229379737-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe
Task: {A8857439-B611-46DC-8611-7D8469CA6358} - System32\Tasks\{7E53DA1B-DF23-42BE-922A-8FFB7802044D} => C:\Hry\Camera_Cyberlink_1.0.1904_W7x86x64\setup.exe [2011-07-04] (Macrovision Corporation )
Task: {ABAE4E42-ECDA-40FF-9D6D-64DD1FB6A3D3} - System32\Tasks\DMREngine => C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe [2011-08-25] (CyberLink)
Task: {B05B236F-9495-4FC5-9074-6EDDEE901702} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-09-26] (Piriform Ltd)
Task: {B4F406B7-3019-4408-86CC-7B6D1D8AF87D} - System32\Tasks\clear.fiAgent => C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe [2011-08-25] (CyberLink Corp.)
Task: {BB3C9369-7E49-43C6-9D0A-7653C31E6BCB} - System32\Tasks\{81784438-CF7F-4F30-9864-0374BECE9536} => C:\Program Files (x86)\Acer\Acer Crystal Eye Webcam\WebCam.exe [2012-11-01] (CyberLink Corp.)
Task: {C50D90ED-4CE5-407E-B5CF-68F1350725E2} - System32\Tasks\{0660AD55-1F50-46B1-9BCC-23AC04877656} => C:\Program Files (x86)\ManyCam\ManyCam.exe
Task: {C54DD3A7-5080-45DF-8CD4-E91E1296BD5A} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup
Task: {C9FEB5A5-3E89-498A-93B6-3505CA722A90} - System32\Tasks\{B5C9410F-F6DD-43DE-BD90-A6FD23151FD1} => C:\Windows\system32\msiexec.exe [2010-11-21] (Microsoft Corporation)
Task: {D86848CB-A7DF-430B-BEA8-1998152188B7} - System32\Tasks\{B3213F28-7375-4BF7-8494-94120889B7EA} => C:\Users\Jaruneczka\Desktop\Acer.1.5.2904.19458_AVC120510-01.exe
Task: {E8E6B62C-EEE4-4541-B68D-628C5857541C} - System32\Tasks\{CC5F236A-C653-4151-A9D6-DD2788DE0E8E} => Firefox.exe http://ui.skype.com/ui/0/5.5.0.117.367/ ... Error=1603
Task: {EFB4E985-DF2E-4001-9DE0-F5A323633D20} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-2994249906-4171692639-4229379737-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe
Task: {F276EB2A-A105-4796-9961-9E9FEF9F314F} - System32\Tasks\{4B4F338B-2F87-40B1-BEDB-C20096A6CDC7} => C:\Users\Jaruneczka\Desktop\Acer.1.5.2904.19458_AVC120510-01.exe
Task: {F39479B2-0240-421B-9164-CC82EAA2E5F6} - System32\Tasks\Adobe online update program => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-08-21] (Adobe Systems Incorporated)

==================== Loaded Modules (whitelisted) =============

2012-04-26 15:59 - 2006-12-11 02:14 - 00043008 _____ () C:\Program Files (x86)\WinRAR\rarext64.dll
2014-03-06 15:00 - 2014-03-06 15:00 - 01269952 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\kpcengine.2.3.dll
2011-04-24 03:29 - 2011-04-24 03:29 - 00465640 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\sqlite3.dll
2011-04-24 03:29 - 2011-04-24 03:29 - 01081664 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\ACE.dll
2011-04-24 03:29 - 2011-04-24 03:29 - 00125760 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\MailConverter32.dll
2014-10-16 07:12 - 2014-10-16 07:12 - 00169472 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\b361ddd461d3c5c27c686fa4996d83e3\IsdiInterop.ni.dll
2011-10-13 15:11 - 2010-09-14 03:28 - 00058880 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\ProgramData\Temp:CB0AACC9
AlternateDataStreams: C:\ProgramData\Temp:D1B5B4F1

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ESETOlmarikOlmascoCleaner => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ESETOlmarikOlmascoCleaner.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ESETOlmarikOlmascoCleaner => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ESETOlmarikOlmascoCleaner.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"

==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: AmIcoSinglun64 => C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
MSCONFIG\startupreg: BackupManagerTray => "C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe" -h -k
MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
MSCONFIG\startupreg: GUDelayStartup => "C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe" -delayrun
MSCONFIG\startupreg: HotKeysCmds => "C:\Windows\system32\hkcmd.exe"
MSCONFIG\startupreg: IgfxTray => "C:\Windows\system32\igfxtray.exe"
MSCONFIG\startupreg: LManager => C:\Program Files (x86)\Launch Manager\LManager.exe
MSCONFIG\startupreg: Logitech Download Assistant => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
MSCONFIG\startupreg: ManyCam => "C:/Program Files (x86)/ManyCam/ManyCam.exe" --silent
MSCONFIG\startupreg: msckgraSrv => C:\Windows\inf\msckgra.vbe
MSCONFIG\startupreg: NokiaSuite.exe => C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe -tray
MSCONFIG\startupreg: OM2_Monitor => "C:\Program Files (x86)\OLYMPUS\OLYMPUS Master 2\MMonitor.exe" -NoStart
MSCONFIG\startupreg: Persistence => "C:\Windows\system32\igfxpers.exe"
MSCONFIG\startupreg: Power Management => C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
MSCONFIG\startupreg: RTHDVCPL => "C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
MSCONFIG\startupreg: THGuard =>
MSCONFIG\startupreg: tsiVideo => C:\Windows\SysWOW64\rundll32.exe C:\Users\JARUNE~1\AppData\Local\Temp\\mdi564.dll,runme

========================= Accounts: ==========================

Administrator (S-1-5-21-2994249906-4171692639-4229379737-500 - Administrator - Disabled)
Guest (S-1-5-21-2994249906-4171692639-4229379737-501 - Limited - Enabled)
HomeGroupUser$ (S-1-5-21-2994249906-4171692639-4229379737-1002 - Limited - Enabled)
Jaruneczka (S-1-5-21-2994249906-4171692639-4229379737-1000 - Administrator - Enabled) => C:\Users\Jaruneczka

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (10/16/2014 10:19:46 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: plugin-container.exe, verze: 33.0.0.5397, časové razítko: 0x543924b1
Název chybujícího modulu: mozalloc.dll, verze: 33.0.0.5397, časové razítko: 0x5438ffbb
Kód výjimky: 0x80000003
Posun chyby: 0x00001425
ID chybujícího procesu: 0x2b4
Čas spuštění chybující aplikace: 0xplugin-container.exe0
Cesta k chybující aplikaci: plugin-container.exe1
Cesta k chybujícímu modulu: plugin-container.exe2
ID zprávy: plugin-container.exe3

Error: (10/16/2014 10:19:46 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: plugin-container.exe, verze: 33.0.0.5397, časové razítko: 0x543924b1
Název chybujícího modulu: mozalloc.dll, verze: 33.0.0.5397, časové razítko: 0x5438ffbb
Kód výjimky: 0x80000003
Posun chyby: 0x00001425
ID chybujícího procesu: 0x11b8
Čas spuštění chybující aplikace: 0xplugin-container.exe0
Cesta k chybující aplikaci: plugin-container.exe1
Cesta k chybujícímu modulu: plugin-container.exe2
ID zprávy: plugin-container.exe3

Error: (10/16/2014 10:19:43 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: plugin-container.exe, verze: 33.0.0.5397, časové razítko: 0x543924b1
Název chybujícího modulu: mozalloc.dll, verze: 33.0.0.5397, časové razítko: 0x5438ffbb
Kód výjimky: 0x80000003
Posun chyby: 0x00001425
ID chybujícího procesu: 0xfec
Čas spuštění chybující aplikace: 0xplugin-container.exe0
Cesta k chybující aplikaci: plugin-container.exe1
Cesta k chybujícímu modulu: plugin-container.exe2
ID zprávy: plugin-container.exe3

Error: (10/16/2014 10:19:33 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: plugin-container.exe, verze: 33.0.0.5397, časové razítko: 0x543924b1
Název chybujícího modulu: mozalloc.dll, verze: 33.0.0.5397, časové razítko: 0x5438ffbb
Kód výjimky: 0x80000003
Posun chyby: 0x00001425
ID chybujícího procesu: 0xa0c
Čas spuštění chybující aplikace: 0xplugin-container.exe0
Cesta k chybující aplikaci: plugin-container.exe1
Cesta k chybujícímu modulu: plugin-container.exe2
ID zprávy: plugin-container.exe3

Error: (10/16/2014 08:36:23 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AdblockPlusEngine.exe, verze: 1.2.0.0, časové razítko: 0x53ea2829
Název chybujícího modulu: AdblockPlusEngine.exe, verze: 1.2.0.0, časové razítko: 0x53ea2829
Kód výjimky: 0xc0000005
Posun chyby: 0x0000000000285190
ID chybujícího procesu: 0x308
Čas spuštění chybující aplikace: 0xAdblockPlusEngine.exe0
Cesta k chybující aplikaci: AdblockPlusEngine.exe1
Cesta k chybujícímu modulu: AdblockPlusEngine.exe2
ID zprávy: AdblockPlusEngine.exe3

Error: (10/15/2014 07:54:46 PM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile: System.Deployment, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a . Error code = 0x80070020

Error: (10/15/2014 04:34:49 PM) (Source: System Restore) (EventID: 8193) (User: )
Description: Vytvoření bodu obnovení se nezdařilo (Proces = C:\Windows\servicing\TrustedInstaller.exe; Popis = Instalační služba modulů systému Windows; Chyba = 0x8007043c).

Error: (10/15/2014 04:34:38 PM) (Source: System Restore) (EventID: 8193) (User: )
Description: Vytvoření bodu obnovení se nezdařilo (Proces = C:\Windows\servicing\TrustedInstaller.exe; Popis = Instalační služba modulů systému Windows; Chyba = 0x8007043c).

Error: (10/15/2014 03:54:19 PM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile: System.Deployment, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a . Error code = 0x80070020

Error: (10/15/2014 01:40:34 PM) (Source: ESENT) (EventID: 454) (User: )
Description: Catalog Database (1160) Catalog Database: Při zotavení či obnovení databáze došlo k neočekávané chybě -501.


System errors:
=============
Error: (10/16/2014 11:07:19 AM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Při čekání na odezvu transakce služby DsiWMIService bylo dosaženo časového limitu (30000 ms).

Error: (10/16/2014 09:45:21 AM) (Source: Microsoft-Windows-TaskScheduler) (EventID: 413) (User: NT AUTHORITY)
Description: Službě Plánovač úloh se při spuštění nepodařilo načíst úlohy. Další údaje: Hodnota chyby: 2147942402

Error: (10/16/2014 09:44:05 AM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba NPEService je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.

Error: (10/16/2014 09:40:39 AM) (Source: Microsoft-Windows-TaskScheduler) (EventID: 413) (User: NT AUTHORITY)
Description: Službě Plánovač úloh se při spuštění nepodařilo načíst úlohy. Další údaje: Hodnota chyby: 2147942402

Error: (10/16/2014 09:36:51 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Služba seznamu sítí závisí na službě Sledování umístění v síti (NLA), která neuspěla při spuštění v důsledku následující chyby:
%%1068

Error: (10/16/2014 09:36:51 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Služba seznamu sítí závisí na službě Sledování umístění v síti (NLA), která neuspěla při spuštění v důsledku následující chyby:
%%1068

Error: (10/16/2014 09:36:51 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Služba seznamu sítí závisí na službě Sledování umístění v síti (NLA), která neuspěla při spuštění v důsledku následující chyby:
%%1068

Error: (10/16/2014 09:36:51 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Služba seznamu sítí závisí na službě Sledování umístění v síti (NLA), která neuspěla při spuštění v důsledku následující chyby:
%%1068

Error: (10/16/2014 09:36:51 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Služba seznamu sítí závisí na službě Sledování umístění v síti (NLA), která neuspěla při spuštění v důsledku následující chyby:
%%1068

Error: (10/16/2014 09:36:51 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Služba seznamu sítí závisí na službě Sledování umístění v síti (NLA), která neuspěla při spuštění v důsledku následující chyby:
%%1068


Microsoft Office Sessions:
=========================
Error: (10/16/2014 10:19:46 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: plugin-container.exe33.0.0.5397543924b1mozalloc.dll33.0.0.53975438ffbb80000003000014252b401cfe916847e6aabC:\Program Files (x86)\Mozilla Firefox\plugin-container.exeC:\Program Files (x86)\Mozilla Firefox\mozalloc.dll2fd715dd-550d-11e4-81c4-047d7b1c90b3

Error: (10/16/2014 10:19:46 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: plugin-container.exe33.0.0.5397543924b1mozalloc.dll33.0.0.53975438ffbb800000030000142511b801cfe9167567114eC:\Program Files (x86)\Mozilla Firefox\plugin-container.exeC:\Program Files (x86)\Mozilla Firefox\mozalloc.dll2fd281fc-550d-11e4-81c4-047d7b1c90b3

Error: (10/16/2014 10:19:43 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: plugin-container.exe33.0.0.5397543924b1mozalloc.dll33.0.0.53975438ffbb8000000300001425fec01cfe916750578e3C:\Program Files (x86)\Mozilla Firefox\plugin-container.exeC:\Program Files (x86)\Mozilla Firefox\mozalloc.dll2dfd7399-550d-11e4-81c4-047d7b1c90b3

Error: (10/16/2014 10:19:33 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: plugin-container.exe33.0.0.5397543924b1mozalloc.dll33.0.0.53975438ffbb8000000300001425a0c01cfe91675a4f515C:\Program Files (x86)\Mozilla Firefox\plugin-container.exeC:\Program Files (x86)\Mozilla Firefox\mozalloc.dll2853dd54-550d-11e4-81c4-047d7b1c90b3

Error: (10/16/2014 08:36:23 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: AdblockPlusEngine.exe1.2.0.053ea2829AdblockPlusEngine.exe1.2.0.053ea2829c0000005000000000028519030801cfe90b7dc27ce7C:\Program Files\Adblock Plus for IE\AdblockPlusEngine.exeC:\Program Files\Adblock Plus for IE\AdblockPlusEngine.exebe63fd5e-54fe-11e4-9477-047d7b1c90b3

Error: (10/15/2014 07:54:46 PM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile: System.Deployment, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a . Error code = 0x80070020
System.Deployment, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a

Error: (10/15/2014 04:34:49 PM) (Source: System Restore) (EventID: 8193) (User: )
Description: C:\Windows\servicing\TrustedInstaller.exeInstalační služba modulů systému Windows0x8007043c

Error: (10/15/2014 04:34:38 PM) (Source: System Restore) (EventID: 8193) (User: )
Description: C:\Windows\servicing\TrustedInstaller.exeInstalační služba modulů systému Windows0x8007043c

Error: (10/15/2014 03:54:19 PM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile: System.Deployment, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a . Error code = 0x80070020
System.Deployment, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a

Error: (10/15/2014 01:40:34 PM) (Source: ESENT) (EventID: 454) (User: )
Description: Catalog Database1160Catalog Database: -501


==================== Memory info ===========================

Processor: Intel(R) Celeron(R) CPU B815 @ 1.60GHz
Percentage of memory in use: 57%
Total physical RAM: 1899.86 MB
Available physical RAM: 813.68 MB
Total Pagefile: 3799.72 MB
Available Pagefile: 2138.75 MB
Total Virtual: 8192 MB
Available Virtual: 8191.84 MB

==================== Drives ================================

Drive c: (Acer) (Fixed) (Total:282.99 GB) (Free:237.76 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: B607E9BF)
Partition 1: (Not Active) - (Size=15 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=283 GB) - (Type=07 NTFS)

==================== End Of Log ============================

Uživatelský avatar
jaruneczka
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 417
Registrován: 09 čer 2008 11:45
Bydliště: Ostrava

Re: Moc prosím o ko pc...co možná nejrychejší-děkuji

#17 Příspěvek od jaruneczka »

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 15-10-2014 02
Ran by Jaruneczka (administrator) on JARUNECZKA-PC on 16-10-2014 11:50:56
Running from C:\Users\Jaruneczka\Desktop
Loaded Profile: Jaruneczka (Available profiles: Jaruneczka)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Atheros\Bluetooth Suite\AdminService.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\avp.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMworker.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Registration\GREGsvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Updater\UpdaterService.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\avpui.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\klwtblfs.exe
(Microsoft Corporation) C:\Windows\System32\SndVol.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer: [LinkResolveIgnoreLinkInfo] 0
HKLM\...\Policies\Explorer: [NoResolveSearch] 1
HKU\S-1-5-21-2994249906-4171692639-4229379737-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKU\S-1-5-18\...\RunOnce: [IsMyWinLockerReboot] => msiexec.exe /qn /x{voidguid}
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.centrum.cz/
SearchScopes: HKCU - 04E8C2D9EC4DCEF87C6237E29DECBE5F URL = http://www.firmy.cz/phr/{searchTerms}
SearchScopes: HKCU - 2204C8B03B737DC5B763DD8490B7DF55 URL = http://videa.seznam.cz/?q={searchTerms}
SearchScopes: HKCU - 2AC31381FF2390340E71C64DF2630FB0 URL = http://www.mapy.cz/?sourceid=quicksearc ... earchTerms}
SearchScopes: HKCU - 7DBAAC5D7F117ABB979163FF7953522E URL = http://www.zbozi.cz/?sourceid=quicksear ... earchTerms}
SearchScopes: HKCU - A37F4042148147ED0FA82463B241A77D URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
BHO: Content Blocker Plugin -> {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO: Virtual Keyboard Plugin -> {73455575-E40C-433C-9784-C78DC7761455} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Safe Money Plugin -> {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: URL Advisor Plugin -> {E33CF602-D945-461A-83F0-819F76A199F8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
BHO: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll (Adblock Plus)
BHO-x32: Content Blocker Plugin -> {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: Virtual Keyboard Plugin -> {73455575-E40C-433C-9784-C78DC7761455} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Safe Money Plugin -> {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: URL Advisor Plugin -> {E33CF602-D945-461A-83F0-819F76A199F8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
BHO-x32: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll (Adblock Plus)
Toolbar: HKCU - No Name - {91397D20-1446-11D4-8AF4-0040CA1127B6} - No File
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{F73933D0-D1A5-4A36-9CEF-EA26C568D4D6}: [NameServer] 62.24.64.2,8.8.4.4

FireFox:
========
FF ProfilePath: C:\Users\Jaruneczka\AppData\Roaming\Mozilla\Firefox\Profiles\49wt9mps.default
FF Homepage: www.centrum.cz
FF NetworkProxy: "type", 4
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll ()
FF Plugin: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @kaspersky.com/content_blocker -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\content_blocker@kaspersky.com ()
FF Plugin-x32: @kaspersky.com/online_banking -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\online_banking@kaspersky.com ()
FF Plugin-x32: @kaspersky.com/virtual_keyboard -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\virtual_keyboard@kaspersky.com ()
FF Plugin-x32: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nokia.com/EnablerPlugin -> C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll ( )
FF Plugin-x32: @videolan.org/vlc,version=2.1.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Adblock Plus - C:\Users\Jaruneczka\AppData\Roaming\Mozilla\Firefox\Profiles\49wt9mps.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-10-14]
FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\content_blocker@kaspersky.com
FF Extension: Ngăn chặn trang web nguy hiểm - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\content_blocker@kaspersky.com [2014-10-16]
FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\virtual_keyboard@kaspersky.com
FF Extension: Bàn phím ảo - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\virtual_keyboard@kaspersky.com [2014-10-16]
FF HKLM-x32\...\Firefox\Extensions: [url_advisor@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\url_advisor@kaspersky.com
FF Extension: Công cụ kiểm tra liên kết của Kaspersky - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\url_advisor@kaspersky.com [2014-10-16]
FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\anti_banner@kaspersky.com
FF Extension: Chặn quảng cáo - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\anti_banner@kaspersky.com [2014-10-16]
FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\online_banking@kaspersky.com
FF Extension: An toàn giao dịch tài chính - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\online_banking@kaspersky.com [2014-10-16]

Chrome:
=======
CHR Profile: C:\Users\Jaruneczka\AppData\Local\Google\Chrome\User Data\Default
CHR HKLM\...\Chrome\Extension: [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] - https://chrome.google.com/webstore/deta ... ojhbllhbho []
CHR HKLM-x32\...\Chrome\Extension: [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] - https://chrome.google.com/webstore/deta ... ojhbllhbho []
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx []

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AtherosSvc; C:\Program Files (x86)\Atheros\Bluetooth Suite\adminservice.exe [318592 2013-11-28] (Windows (R) Win 7 DDK provider)
R2 AVP15.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\avp.exe [233552 2014-04-20] (Kaspersky Lab ZAO)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1809720 2014-05-12] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [860472 2014-05-12] (Malwarebytes Corporation)
R2 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [256832 2011-04-24] (NTI Corporation)
S4 PuranDefrag; C:\Windows\system32\PuranDefragS.exe [292736 2013-08-15] (Puran Software) [File not signed]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-09-22] ()
S3 aswTap; C:\Windows\System32\DRIVERS\aswTap.sys [44640 2014-09-22] (The OpenVPN Project)
S3 ESETOlmarikOlmascoCleaner; C:\Windows\system32\Drivers\ESETOlmarikOlmascoCleaner.sys [156360 2014-05-22] ()
S3 GenericMount; C:\Windows\System32\DRIVERS\GenericMount.sys [54320 2009-09-21] (Symantec Corporation)
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [457824 2014-02-20] (Kaspersky Lab ZAO)
R3 klflt; C:\Windows\System32\DRIVERS\klflt.sys [141320 2014-10-16] (Kaspersky Lab ZAO)
R1 klhk; C:\Windows\System32\DRIVERS\klhk.sys [243808 2014-04-10] (Kaspersky Lab ZAO)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [793800 2014-10-16] (Kaspersky Lab ZAO)
R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [30304 2014-02-25] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [28768 2014-03-28] (Kaspersky Lab ZAO)
R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29280 2013-08-08] (Kaspersky Lab ZAO)
R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [15456 2013-04-12] (Kaspersky Lab ZAO)
R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [55904 2014-03-25] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [179296 2014-03-26] (Kaspersky Lab ZAO)
R3 L1C; C:\Windows\System32\DRIVERS\L1C62x64.sys [117912 2000-01-01] (Qualcomm Atheros Co., Ltd.)
S3 ManyCam; C:\Windows\System32\DRIVERS\mcvidrv.sys [42224 2014-05-13] (Visicom Media Inc.)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-05-12] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [122584 2014-10-16] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2014-05-12] (Malwarebytes Corporation)
S3 mcaudrv_simple; C:\Windows\System32\drivers\mcaudrv_x64.sys [35440 2014-05-13] (Visicom Media Inc.)
S3 scvad_simple; C:\Windows\System32\drivers\SplitCamAudio.sys [23552 2013-11-01] (Windows (R) Win 7 DDK provider)
R1 SMR430; C:\Windows\System32\drivers\SMR430.SYS [108216 2014-10-16] (Symantec Corporation)
S3 splitcam_hd_driver; C:\Windows\System32\DRIVERS\splitcam_hd_driver.sys [37496 2013-12-16] (Windows (R) Win 7 DDK provider)
S3 SWDUMon; C:\Windows\System32\DRIVERS\SWDUMon.sys [16152 2014-09-27] ()
S3 trufos; C:\Windows\System32\drivers\trufos.sys [350160 2014-07-13] (BitDefender S.R.L.)
U3 DfSdkS; No ImagePath
U4 Messenger; No ImagePath
U2 V2iMount; No ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-10-16 11:50 - 2014-10-16 11:51 - 00016763 _____ () C:\Users\Jaruneczka\Desktop\FRST.txt
2014-10-16 11:50 - 2014-10-16 11:51 - 00000000 ____D () C:\FRST
2014-10-16 11:48 - 2014-10-16 11:48 - 02111488 _____ (Farbar) C:\Users\Jaruneczka\Desktop\FRST64.exe
2014-10-16 09:58 - 2014-10-16 09:58 - 02286392 _____ (Kaspersky Lab ZAO) C:\Users\Jaruneczka\Desktop\GetSystemInfo.exe
2014-10-16 09:55 - 2014-10-16 09:55 - 00000020 _____ () C:\Windows\system32\Drivers\SMR430.dat
2014-10-16 09:46 - 2014-10-16 09:47 - 00000000 ____D () C:\NPE
2014-10-16 09:43 - 2014-10-16 09:55 - 00108216 _____ (Symantec Corporation) C:\Windows\system32\Drivers\SMR430.SYS
2014-10-16 09:41 - 2014-10-16 11:07 - 00003378 _____ () C:\Windows\WindowsUpdate.log
2014-10-16 09:37 - 2014-10-16 09:55 - 00000000 ____D () C:\Users\Jaruneczka\AppData\Local\NPE
2014-10-16 09:37 - 2014-10-16 09:37 - 00000000 ____D () C:\ProgramData\Norton
2014-10-16 09:27 - 2014-10-16 09:27 - 03060320 ____N (Symantec Corporation) C:\Users\Jaruneczka\Desktop\NPE.exe
2014-10-16 08:41 - 2014-10-16 08:41 - 00002298 _____ () C:\Users\Jaruneczka\Desktop\Ochrana financí.lnk
2014-10-16 08:41 - 2014-10-16 08:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security
2014-10-16 08:41 - 2014-10-16 08:40 - 00001178 _____ () C:\Users\Public\Desktop\Kaspersky Internet Security.lnk
2014-10-16 08:40 - 2013-05-06 09:13 - 00110176 _____ (Kaspersky Lab ZAO) C:\Windows\system32\klfphc.dll
2014-10-16 08:39 - 2014-10-16 09:47 - 00000000 ____D () C:\ProgramData\Kaspersky Lab
2014-10-16 08:39 - 2014-10-16 08:48 - 00793800 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klif.sys
2014-10-16 08:39 - 2014-10-16 08:48 - 00141320 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klflt.sys
2014-10-16 08:39 - 2014-10-16 08:39 - 00000000 ____D () C:\Windows\ELAMBKUP
2014-10-16 08:39 - 2014-10-16 08:39 - 00000000 ____D () C:\Program Files (x86)\Kaspersky Lab
2014-10-16 08:39 - 2014-04-10 17:25 - 00243808 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klhk.sys
2014-10-16 06:22 - 2014-10-16 06:22 - 00001377 _____ () C:\Users\Jaruneczka\Desktop\mbam.txt
2014-10-16 06:04 - 2014-10-16 09:48 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-10-16 06:04 - 2014-10-16 06:04 - 00001070 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-10-16 06:04 - 2014-10-16 06:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-10-16 06:04 - 2014-10-16 06:04 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-10-16 06:04 - 2014-10-16 06:04 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-10-16 06:04 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-10-16 06:04 - 2014-05-12 07:26 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-10-16 06:04 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-10-15 19:23 - 2014-09-13 03:58 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-10-15 19:23 - 2014-09-13 03:40 - 00067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2014-10-15 19:09 - 2014-10-15 19:11 - 00000000 ____D () C:\AdwCleaner
2014-10-15 19:08 - 2014-10-15 19:08 - 01976320 _____ () C:\Users\Jaruneczka\Desktop\adwcleaner_4.000.exe
2014-10-15 18:48 - 2014-08-29 04:07 - 03179520 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-10-15 17:59 - 2014-09-04 07:23 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2014-10-15 17:59 - 2014-09-04 07:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2014-10-15 17:54 - 2014-09-05 04:11 - 06584320 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-10-15 17:54 - 2014-09-05 03:52 - 05703168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2014-10-15 17:49 - 2014-10-10 04:05 - 00507392 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-10-15 17:49 - 2014-10-10 04:05 - 00276480 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-10-15 17:49 - 2014-10-10 04:00 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-10-15 16:16 - 2014-10-15 16:16 - 00000894 _____ () C:\Users\Jaruneczka\Desktop\HD Tune.lnk
2014-10-15 16:16 - 2014-10-15 16:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune
2014-10-15 16:16 - 2014-10-15 16:16 - 00000000 ____D () C:\Program Files (x86)\HD Tune
2014-10-15 15:15 - 2014-10-15 15:15 - 00000000 ____D () C:\Program Files\Windows Defender
2014-10-15 12:50 - 2014-10-15 12:50 - 01222144 _____ () C:\Users\Jaruneczka\Desktop\RSITx64.exe
2014-10-15 12:32 - 2014-10-15 12:32 - 00032768 _____ () C:\Windows\system32\persistent_q.db-shm
2014-10-15 12:32 - 2014-10-15 12:32 - 00009464 _____ () C:\Windows\system32\persistent_q.db-wal
2014-10-15 12:32 - 2014-10-15 12:32 - 00001024 _____ () C:\Windows\system32\persistent_q.db
2014-10-15 10:22 - 2014-10-15 10:22 - 00000000 ____D () C:\Windows\CheckSur
2014-10-15 05:27 - 2014-10-15 05:27 - 00014702 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-10-14 17:44 - 2014-10-15 14:13 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-10-14 16:01 - 2014-10-14 16:01 - 00001127 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-10-14 16:01 - 2014-10-14 16:01 - 00000000 ____D () C:\Users\Jaruneczka\AppData\Roaming\Mozilla
2014-10-14 15:39 - 2014-10-14 15:39 - 00000000 ____D () C:\ProgramData\Mozilla
2014-10-01 05:38 - 2014-09-25 04:08 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2014-10-01 05:38 - 2014-09-25 03:40 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2014-09-28 17:10 - 2014-09-28 17:21 - 00000000 ____D () C:\Users\Jaruneczka\AppData\Roaming\KeePass
2014-09-28 07:38 - 2014-10-13 10:26 - 00000000 ____D () C:\Users\Jaruneczka\AppData\Roaming\Skype
2014-09-28 07:38 - 2014-10-07 05:58 - 00000000 ____D () C:\ProgramData\Skype
2014-09-28 07:38 - 2014-09-28 07:38 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-09-28 07:38 - 2014-09-28 07:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-09-28 06:41 - 2014-09-28 06:41 - 00003980 _____ () C:\Windows\System32\Tasks\UALU notificatin
2014-09-28 06:41 - 2014-09-28 06:41 - 00000000 ____D () C:\ProgramData\Acer
2014-09-28 06:40 - 2014-09-28 06:41 - 00048640 ___SH () C:\Users\Jaruneczka\AppData\Roaming\Thumbs.db
2014-09-27 19:21 - 2014-09-27 19:21 - 36417536 _____ () C:\Windows\system32\config\PuranRegUserClass.pur
2014-09-27 19:21 - 2014-09-27 19:21 - 02535424 _____ () C:\Windows\system32\config\PuranRegUser.pur
2014-09-27 19:21 - 2014-09-27 19:21 - 00286720 _____ () C:\Windows\system32\config\PuranRegDefault.pur
2014-09-27 19:21 - 2014-09-27 19:21 - 00241664 _____ () C:\Windows\system32\config\PuranRegNetwork.pur
2014-09-27 19:21 - 2014-09-27 19:21 - 00237568 _____ () C:\Windows\system32\config\PuranRegLocal.pur
2014-09-27 19:18 - 2014-09-27 19:21 - 72806400 _____ () C:\Windows\system32\config\PuranRegSoft.pur
2014-09-27 19:18 - 2014-09-27 19:18 - 32002048 _____ () C:\Windows\system32\config\PuranRegSys.pur
2014-09-27 19:18 - 2014-09-27 19:18 - 24997888 _____ () C:\Windows\system32\config\PuranRegCOM.pur
2014-09-27 19:18 - 2014-09-27 19:18 - 00057344 _____ () C:\Windows\system32\config\PuranRegSam.pur
2014-09-27 17:17 - 2014-09-27 17:17 - 00000000 ____D () C:\Users\Jaruneczka\AppData\Local\CyberLink
2014-09-27 16:50 - 2014-09-27 16:50 - 00000000 ____D () C:\Users\Jaruneczka\AppData\Roaming\CyberLink
2014-09-27 16:39 - 2014-09-27 16:39 - 00003150 _____ () C:\Windows\System32\Tasks\{B5C9410F-F6DD-43DE-BD90-A6FD23151FD1}
2014-09-27 15:52 - 2014-09-27 15:58 - 00016152 _____ () C:\Windows\system32\Drivers\SWDUMon.sys
2014-09-27 15:30 - 2014-09-27 16:17 - 00000000 ____D () C:\Users\Jaruneczka\AppData\Local\Yandex
2014-09-27 15:29 - 2014-09-27 15:29 - 00000000 ____D () C:\Users\Jaruneczka\AppData\Local\Chromium
2014-09-25 17:33 - 2014-10-15 14:13 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird
2014-09-25 07:39 - 2014-09-25 07:39 - 00000000 _____ () C:\Windows\SysWOW64\config.nt
2014-09-24 04:58 - 2014-09-10 00:11 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-09-24 04:58 - 2014-09-09 23:47 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-09-22 06:32 - 2014-09-22 06:33 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-09-22 06:31 - 2014-09-22 06:31 - 00044640 _____ (The OpenVPN Project) C:\Windows\system32\Drivers\aswTap.sys
2014-09-22 06:31 - 2014-09-22 06:31 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-09-20 16:58 - 2014-09-27 16:59 - 00000032 _____ () C:\ProgramData\Temp.log
2014-09-17 15:54 - 2014-09-17 15:54 - 00000000 ____D () C:\Program Files (x86)\Windows Defender

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-10-16 10:20 - 2014-08-11 06:09 - 00000000 ____D () C:\Users\Jaruneczka\AppData\Local\CrashDumps
2014-10-16 09:54 - 2009-07-14 06:45 - 00024608 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-10-16 09:54 - 2009-07-14 06:45 - 00024608 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-10-16 09:45 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-10-16 09:17 - 2010-11-21 09:16 - 00000000 ___RD () C:\Users\Public\Recorded TV
2014-10-16 08:31 - 2012-09-16 18:30 - 77660160 _____ () C:\Windows\system32\config\PuranRegCSoft.pur
2014-10-16 08:31 - 2012-09-16 18:30 - 36909056 _____ () C:\Windows\system32\config\PuranRegCUserClass.pur
2014-10-16 08:31 - 2012-09-16 18:30 - 32423936 _____ () C:\Windows\system32\config\PuranRegCSys.pur
2014-10-16 08:31 - 2012-09-16 18:30 - 26345472 _____ () C:\Windows\system32\config\PuranRegCCOM.pur
2014-10-16 08:31 - 2012-09-16 18:30 - 02703360 _____ () C:\Windows\system32\config\PuranRegCUser.pur
2014-10-16 08:31 - 2012-09-16 18:30 - 00311296 _____ () C:\Windows\system32\config\PuranRegCDefault.pur
2014-10-16 08:31 - 2012-09-16 18:30 - 00241664 _____ () C:\Windows\system32\config\PuranRegCNetwork.pur
2014-10-16 08:31 - 2012-09-16 18:30 - 00237568 _____ () C:\Windows\system32\config\PuranRegCLocal.pur
2014-10-16 08:31 - 2012-09-16 18:30 - 00057344 _____ () C:\Windows\system32\config\PuranRegCSam.pur
2014-10-16 08:31 - 2012-09-16 18:30 - 00028672 _____ () C:\Windows\system32\config\PuranRegCBCD.pur
2014-10-16 08:31 - 2012-09-16 18:30 - 00000010 _____ () C:\Windows\system32\config\PuranBackupTime.pur
2014-10-16 08:20 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-10-16 07:44 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\Dism
2014-10-16 07:44 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\Dism
2014-10-16 06:51 - 2013-12-22 09:05 - 00297256 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-10-15 22:14 - 2014-07-13 16:31 - 00000000 ____D () C:\Program Files\trend micro
2014-10-15 17:49 - 2014-04-25 07:18 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-10-15 17:12 - 2012-04-26 21:59 - 01536552 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-10-15 17:12 - 2011-12-23 20:29 - 00657390 _____ () C:\Windows\system32\perfh005.dat
2014-10-15 17:12 - 2011-12-23 20:29 - 00137918 _____ () C:\Windows\system32\perfc005.dat
2014-10-15 17:12 - 2009-07-14 07:13 - 01536552 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-10-15 14:30 - 2012-09-16 18:27 - 00000000 ____D () C:\Program Files\Puran Utilities
2014-10-15 06:59 - 2012-04-26 12:42 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-10-15 06:35 - 2013-07-10 05:37 - 00000000 ____D () C:\Windows\system32\MRT
2014-10-15 06:26 - 2012-04-26 14:04 - 103265616 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-10-14 16:40 - 2012-04-26 15:42 - 00000000 ____D () C:\Zálohy
2014-10-13 17:05 - 2013-04-24 21:32 - 00000010 _____ () C:\Windows\popcinfo.dat
2014-10-11 06:37 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache
2014-10-07 05:59 - 2012-04-26 16:00 - 00000000 ____D () C:\Fotky
2014-09-28 06:41 - 2011-10-13 15:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer
2014-09-28 06:41 - 2011-10-13 15:28 - 00000000 ____D () C:\Program Files\Acer
2014-09-27 19:18 - 2014-06-22 17:08 - 00024576 _____ () C:\Windows\system32\config\PuranRegBCD.pur
2014-09-27 18:50 - 2012-04-26 12:40 - 00000000 ____D () C:\Program Files\CCleaner
2014-09-27 18:20 - 2011-10-13 15:28 - 00000000 ____D () C:\Program Files (x86)\Acer
2014-09-27 18:20 - 2011-10-13 15:11 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-09-27 15:29 - 2012-04-26 14:43 - 00000000 ____D () C:\Users\Jaruneczka\AppData\Local\Google
2014-09-25 11:21 - 2012-04-26 18:41 - 00000000 ____D () C:\Users\Jaruneczka
2014-09-25 11:20 - 2012-06-16 07:04 - 00241664 _____ () C:\Windows\system32\config\BPuranRegNetwork.pur
2014-09-25 11:20 - 2012-06-16 07:04 - 00237568 _____ () C:\Windows\system32\config\BPuranRegLocal.pur
2014-09-25 11:20 - 2009-07-14 04:34 - 73138176 _____ () C:\Windows\system32\config\BPuranRegSoft.pur
2014-09-25 11:20 - 2009-07-14 04:34 - 32505856 _____ () C:\Windows\system32\config\BPuranRegSys.pur
2014-09-25 11:20 - 2009-07-14 04:34 - 00524288 _____ () C:\Windows\system32\config\BPuranRegDefault.pur
2014-09-25 11:20 - 2009-07-14 04:34 - 00057344 _____ () C:\Windows\system32\config\BPuranRegSam.pur
2014-09-25 11:19 - 2012-06-16 07:04 - 36962304 _____ () C:\Windows\system32\config\BPuranRegUserClass.pur
2014-09-25 11:19 - 2012-06-16 07:04 - 02621440 _____ () C:\Windows\system32\config\BPuranRegUser.pur
2014-09-25 08:34 - 2009-07-14 04:34 - 25165824 _____ () C:\Windows\system32\config\BPuranRegCOM.pur
2014-09-23 05:58 - 2014-02-23 07:33 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-09-19 16:10 - 2012-04-26 21:59 - 00001912 _____ () C:\Windows\epplauncher.mif
2014-09-18 16:06 - 2011-12-23 20:05 - 00003420 _____ () C:\Windows\System32\Tasks\clear.fi
2014-09-18 16:06 - 2011-12-23 20:05 - 00003368 _____ () C:\Windows\System32\Tasks\DMREngine
2014-09-18 16:05 - 2011-12-23 20:05 - 00003350 _____ () C:\Windows\System32\Tasks\clear.fiAgent
2014-09-18 15:21 - 2012-04-26 12:17 - 00000000 ____D () C:\ProgramData\clear.fi

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-08-26 10:31

==================== End Of Log ============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119320
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Moc prosím o ko pc...co možná nejrychejší-děkuji

#18 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start
Task: {314B851A-C8F9-4A08-8B56-3E54F6D14EFB} - \SlimDrivers Scan No Task File <==== ATTENTION
AlternateDataStreams: C:\ProgramData\Temp:CB0AACC9
AlternateDataStreams: C:\ProgramData\Temp:D1B5B4F1
MSCONFIG\startupreg: msckgraSrv => C:\Windows\inf\msckgra.vbe
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
MSCONFIG\startupreg: THGuard =>
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx []
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-09-22] ()
S3 aswTap; C:\Windows\System32\DRIVERS\aswTap.sys [44640 2014-09-22] (The OpenVPN Project)
U3 DfSdkS; No ImagePath
U4 Messenger; No ImagePath
U2 V2iMount; No ImagePath
C:\Users\Jaruneczka\AppData\Local\Yandex
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
jaruneczka
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 417
Registrován: 09 čer 2008 11:45
Bydliště: Ostrava

Re: Moc prosím o ko pc...co možná nejrychejší-děkuji

#19 Příspěvek od jaruneczka »

a co s tím?
Naposledy upravil(a) jaruneczka dne 16 říj 2014 17:37, celkem upraveno 2 x.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119320
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Moc prosím o ko pc...co možná nejrychejší-děkuji

#20 Příspěvek od Rudy »

Spustíte FRST a kliknete na >Fix<.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
jaruneczka
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 417
Registrován: 09 čer 2008 11:45
Bydliště: Ostrava

Re: Moc prosím o ko pc...co možná nejrychejší-děkuji

#21 Příspěvek od jaruneczka »

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 15-10-2014 02
Ran by Jaruneczka at 2014-10-16 18:29:11 Run:1
Running from C:\Users\Jaruneczka\Desktop
Loaded Profile: Jaruneczka (Available profiles: Jaruneczka)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
Task: {314B851A-C8F9-4A08-8B56-3E54F6D14EFB} - \SlimDrivers Scan No Task File <==== ATTENTION
AlternateDataStreams: C:\ProgramData\Temp:CB0AACC9
AlternateDataStreams: C:\ProgramData\Temp:D1B5B4F1
MSCONFIG\startupreg: msckgraSrv => C:\Windows\inf\msckgra.vbe
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
MSCONFIG\startupreg: THGuard =>
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx []
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-09-22] ()
S3 aswTap; C:\Windows\System32\DRIVERS\aswTap.sys [44640 2014-09-22] (The OpenVPN Project)
U3 DfSdkS; No ImagePath
U4 Messenger; No ImagePath
U2 V2iMount; No ImagePath
C:\Users\Jaruneczka\AppData\Local\Yandex
End
*****************

"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{314B851A-C8F9-4A08-8B56-3E54F6D14EFB}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{314B851A-C8F9-4A08-8B56-3E54F6D14EFB}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SlimDrivers Scan" => Key not found.
C:\ProgramData\Temp => ":CB0AACC9" ADS removed successfully.
C:\ProgramData\Temp => ":D1B5B4F1" ADS removed successfully.
MSCONFIG\startupreg: msckgraSrv => C:\Windows\inf\msckgra.vbe => Error: No automatic fix found for this entry.
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" => Error: No automatic fix found for this entry.
MSCONFIG\startupreg: THGuard => => Error: No automatic fix found for this entry.
"HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\gomekmidlodglbbmalcneegieacbdmki" => Key deleted successfully.
"C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx" => File/Directory not found.
aswHwid => Service stopped successfully.
aswHwid => Service deleted successfully.
aswTap => Service deleted successfully.
DfSdkS => Service deleted successfully.
Messenger => Service deleted successfully.
V2iMount => Service deleted successfully.
C:\Users\Jaruneczka\AppData\Local\Yandex => Moved successfully.

==== End of Fixlog ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119320
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Moc prosím o ko pc...co možná nejrychejší-děkuji

#22 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
jaruneczka
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 417
Registrován: 09 čer 2008 11:45
Bydliště: Ostrava

Re: Moc prosím o ko pc...co možná nejrychejší-děkuji

#23 Příspěvek od jaruneczka »

to mám jako zkusit ty aktualisace, co mě tu furt lezou?

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119320
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Moc prosím o ko pc...co možná nejrychejší-děkuji

#24 Příspěvek od Rudy »

Ano.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
jaruneczka
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 417
Registrován: 09 čer 2008 11:45
Bydliště: Ostrava

Re: Moc prosím o ko pc...co možná nejrychejší-děkuji

#25 Příspěvek od jaruneczka »

..43 minut probíhalo, to co včera, a až nyní se mi objevila plocha: aktualisace stáhlo, instalovalo konfigurovalo a pak už jen:konfigurace aktualisací se nezdařila a vrácení změn, nevypínejte pc..pořád dokola :roll:

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119320
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Moc prosím o ko pc...co možná nejrychejší-děkuji

#26 Příspěvek od Rudy »

Zkuste obnovu systému k nejstaršímu bodu obnovení a zkuste znovu aktualizovat.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
jaruneczka
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 417
Registrován: 09 čer 2008 11:45
Bydliště: Ostrava

Re: Moc prosím o ko pc...co možná nejrychejší-děkuji

#27 Příspěvek od jaruneczka »

stejné -nejde

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119320
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Moc prosím o ko pc...co možná nejrychejší-děkuji

#28 Příspěvek od Rudy »

Začínám se obávat chyby v systému. Zkusíme ještě ComboFix, jestli tam není něco skrytého:
Stahnete a ulozte nejlepe na plochu ComboFix: http://download.bleepingcomputer.com/sUBs/ComboFix.exe

pote spustte aplikaci pod uctem s administratorskym opravnenim

hned po startu se zobrazi obrazovka s licencnimi podminkami, pokracujte kliknutim na tlacitko Ano.

v klidu si postavte na kafe (cela akce trva cca. 5-10 minut, nekdy i dele - dle toho, o jak rychly stroj se

jedna a kolika soubory se skener bude muset prodirat), behem skenu se nepokousejte spoustet zadne jine

aplikace ani nic jineho

behem skenovani nepropadejte panice, vas stroj muze byt restartovan (predevsim pri prvni aplikaci skeneru)

upozorneni: pokud pouzivate antispyware s rezidentnim stitem, prepnete jeho rezidentni stit do Install Mode,

pripadne jej po dobu skenu uplne deaktivujte, protoze dochazi pri skenu a vymazu pripadneho malware k

nezadoucim kolizim s rezidentem antispyware.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
jaruneczka
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 417
Registrován: 09 čer 2008 11:45
Bydliště: Ostrava

Re: Moc prosím o ko pc...co možná nejrychejší-děkuji

#29 Příspěvek od jaruneczka »

obávám se toho od včera, a večer jsem zjistila že nejsem sama, volala jsem ajťákovi, prý to udělala 1 win aktualisace,..at to dnes dovezu, večer mi to hodí zpět.
Byla jsem rozhodnuta, notas vrátit do továr.nastavení, jak radili někteří na jiných forech, jenže si říkám, pak se na mě vyvalí 100 aktualisací a ta špatná tm bude také ..a budu tam, kde včera. Combo fix ještě zkusím, jinak ale moc děkuji, jak tobě rudy,tak i Jaronovi :wub:

Uživatelský avatar
jaruneczka
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 417
Registrován: 09 čer 2008 11:45
Bydliště: Ostrava

Re: Moc prosím o ko pc...co možná nejrychejší-děkuji

#30 Příspěvek od jaruneczka »

zde log, combo fix našel ve Windows-sys wow64/userinit.exe, moc prosím, kdyby na to někdo mrknul, notas bych odvážela ve 3/4 na 9 hod. díky

ComboFix 14-10-15.01 - Jaruneczka 17.10.2014 6:44.5.2 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.1900.691 [GMT 2:00]
Spuštěný z: c:\users\Jaruneczka\Desktop\ComboFix.exe
AV: Kaspersky Internet Security *Disabled/Updated* {179979E8-273D-D14E-0543-2861940E4886}
FW: Kaspersky Internet Security *Disabled* {2FA2F8CD-6D52-D016-2E1C-81546ADD0FFD}
SP: Kaspersky Internet Security *Disabled/Updated* {ACF8980C-0107-DEC0-3FF3-1313EF89023B}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\wininit.ini
.
Nakažená kopie c:\windows\SysWow64\userinit.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2014-09-17 do 2014-10-17 )))))))))))))))))))))))))))))))
.
.
2014-10-17 04:51 . 2014-10-17 04:51 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-10-16 18:15 . 2014-10-16 18:15 -------- d-----w- c:\programdata\Simply Super Software
2014-10-16 07:37 . 2014-10-16 07:55 -------- d-----w- c:\users\Jaruneczka\AppData\Local\NPE
2014-10-16 07:37 . 2014-10-16 07:37 -------- d-----w- c:\programdata\Norton
2014-10-16 06:40 . 2013-05-06 07:13 110176 ----a-w- c:\windows\system32\klfphc.dll
2014-10-16 06:39 . 2014-10-16 06:39 -------- d-----w- c:\windows\ELAMBKUP
2014-10-16 06:39 . 2014-10-17 04:54 -------- d-----w- c:\programdata\Kaspersky Lab
2014-10-16 06:39 . 2014-10-16 06:39 -------- d-----w- c:\program files (x86)\Kaspersky Lab
2014-10-16 06:39 . 2014-10-16 06:48 793800 ----a-w- c:\windows\system32\drivers\klif.sys
2014-10-16 06:39 . 2014-10-16 06:48 141320 ----a-w- c:\windows\system32\drivers\klflt.sys
2014-10-16 06:39 . 2014-04-10 15:25 243808 ----a-w- c:\windows\system32\drivers\klhk.sys
2014-10-16 04:04 . 2014-10-17 04:18 122584 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys
2014-10-16 04:04 . 2014-05-12 05:26 91352 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys
2014-10-16 04:04 . 2014-10-16 04:04 -------- d-----w- c:\program files (x86)\Malwarebytes Anti-Malware
2014-10-16 04:04 . 2014-10-16 04:04 -------- d-----w- c:\programdata\Malwarebytes
2014-10-16 04:04 . 2014-05-12 05:26 63704 ----a-w- c:\windows\system32\drivers\mwac.sys
2014-10-16 04:04 . 2014-05-12 05:25 25816 ----a-w- c:\windows\system32\drivers\mbam.sys
2014-10-15 17:23 . 2014-09-13 01:58 77312 ----a-w- c:\windows\system32\packager.dll
2014-10-15 17:23 . 2014-09-13 01:40 67072 ----a-w- c:\windows\SysWow64\packager.dll
2014-10-15 16:48 . 2014-08-29 02:07 3179520 ----a-w- c:\windows\system32\rdpcorets.dll
2014-10-15 15:59 . 2014-09-04 05:23 424448 ----a-w- c:\windows\system32\rastls.dll
2014-10-15 15:59 . 2014-09-04 05:04 372736 ----a-w- c:\windows\SysWow64\rastls.dll
2014-10-15 15:54 . 2014-09-05 02:11 6584320 ----a-w- c:\windows\system32\mstscax.dll
2014-10-15 15:54 . 2014-09-05 01:52 5703168 ----a-w- c:\windows\SysWow64\mstscax.dll
2014-10-15 15:49 . 2014-10-10 02:05 276480 ----a-w- c:\windows\system32\generaltel.dll
2014-10-15 15:49 . 2014-10-10 02:05 507392 ----a-w- c:\windows\system32\aepdu.dll
2014-10-15 15:49 . 2014-10-10 02:00 424448 ----a-w- c:\windows\system32\aeinv.dll
2014-10-15 14:16 . 2014-10-15 14:16 -------- d-----w- c:\program files (x86)\HD Tune
2014-10-15 13:15 . 2014-10-15 13:15 -------- d-----w- c:\program files\Windows Defender
2014-10-15 08:22 . 2014-10-15 08:22 -------- d-----w- c:\windows\CheckSur
2014-10-01 03:38 . 2014-09-25 02:08 371712 ----a-w- c:\windows\system32\qdvd.dll
2014-10-01 03:38 . 2014-09-25 01:40 519680 ----a-w- c:\windows\SysWow64\qdvd.dll
2014-09-28 15:10 . 2014-09-28 15:21 -------- d-----w- c:\users\Jaruneczka\AppData\Roaming\KeePass
2014-09-28 05:38 . 2014-10-13 08:26 -------- d-----w- c:\users\Jaruneczka\AppData\Roaming\Skype
2014-09-28 05:38 . 2014-09-28 05:38 -------- d-----w- c:\program files (x86)\Common Files\Skype
2014-09-28 05:38 . 2014-09-28 05:38 -------- d-----r- c:\program files (x86)\Skype
2014-09-28 05:38 . 2014-10-07 03:58 -------- d-----w- c:\programdata\Skype
2014-09-28 04:41 . 2014-09-28 04:41 -------- d-----w- c:\programdata\Acer
2014-09-27 15:17 . 2014-09-27 15:17 -------- d-----w- c:\users\Jaruneczka\AppData\Local\CyberLink
2014-09-27 14:50 . 2014-09-27 14:50 -------- d-----w- c:\users\Jaruneczka\AppData\Roaming\CyberLink
2014-09-27 13:52 . 2014-09-27 13:58 16152 ----a-w- c:\windows\system32\drivers\SWDUMon.sys
2014-09-27 13:29 . 2014-09-27 13:29 -------- d-----w- c:\users\Jaruneczka\AppData\Local\Chromium
2014-09-25 15:33 . 2014-10-15 12:13 -------- d-----w- c:\program files (x86)\Mozilla Thunderbird
2014-09-24 02:58 . 2014-09-09 22:11 2048 ----a-w- c:\windows\system32\tzres.dll
2014-09-24 02:58 . 2014-09-09 21:47 2048 ----a-w- c:\windows\SysWow64\tzres.dll
2014-09-22 04:31 . 2014-09-22 04:31 29208 ----a-w- c:\windows\system32\drivers\aswHwid.sys
2014-09-22 04:31 . 2014-09-22 04:31 44640 ----a-w- c:\windows\system32\drivers\aswTap.sys
2014-09-17 13:54 . 2014-09-17 13:54 -------- d-----w- c:\program files (x86)\Windows Defender
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-10-15 04:26 . 2012-04-26 12:04 103265616 ----a-w- c:\windows\system32\MRT.exe
2014-09-10 03:54 . 2014-08-13 06:03 33512 ----a-w- c:\windows\SysWow64\drivers\TrueSight.sys
2014-09-10 03:48 . 2014-02-17 08:48 71344 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2014-09-10 03:48 . 2014-02-17 08:48 701104 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2014-08-23 02:07 . 2014-08-28 03:56 404480 ----a-w- c:\windows\system32\gdi32.dll
2014-08-23 01:45 . 2014-08-28 03:56 311808 ----a-w- c:\windows\SysWow64\gdi32.dll
2014-08-23 00:59 . 2014-08-28 03:56 3163648 ----a-w- c:\windows\system32\win32k.sys
2014-08-19 18:05 . 2014-09-10 03:12 374968 ----a-w- c:\windows\system32\iedkcs32.dll
2014-08-18 23:01 . 2014-09-10 03:12 23591424 ----a-w- c:\windows\system32\mshtml.dll
2014-08-18 22:29 . 2014-09-10 03:12 2724864 ----a-w- c:\windows\system32\mshtml.tlb
2014-08-18 22:29 . 2014-09-10 03:12 4096 ----a-w- c:\windows\system32\ieetwcollectorres.dll
2014-08-18 22:20 . 2014-09-10 03:12 2793984 ----a-w- c:\windows\system32\iertutil.dll
2014-08-18 22:19 . 2014-09-10 03:12 5833728 ----a-w- c:\windows\system32\jscript9.dll
2014-08-18 22:15 . 2014-09-10 03:12 547328 ----a-w- c:\windows\system32\vbscript.dll
2014-08-18 22:15 . 2014-09-10 03:12 66048 ----a-w- c:\windows\system32\iesetup.dll
2014-08-18 22:14 . 2014-09-10 03:12 48640 ----a-w- c:\windows\system32\ieetwproxystub.dll
2014-08-18 22:14 . 2014-09-10 03:12 83968 ----a-w- c:\windows\system32\MshtmlDac.dll
2014-08-18 22:08 . 2014-09-10 03:12 51200 ----a-w- c:\windows\system32\jsproxy.dll
2014-08-18 22:08 . 2014-09-10 03:12 4232704 ----a-w- c:\windows\SysWow64\jscript9.dll
2014-08-18 22:08 . 2014-09-10 03:12 33792 ----a-w- c:\windows\system32\iernonce.dll
2014-08-18 22:05 . 2014-09-10 03:12 596480 ----a-w- c:\windows\system32\ieui.dll
2014-08-18 22:03 . 2014-09-10 03:12 139264 ----a-w- c:\windows\system32\ieUnatt.exe
2014-08-18 22:03 . 2014-09-10 03:12 111616 ----a-w- c:\windows\system32\ieetwcollector.exe
2014-08-18 22:03 . 2014-09-10 03:12 758272 ----a-w- c:\windows\system32\jscript9diag.dll
2014-08-18 21:57 . 2014-09-10 03:12 2724864 ----a-w- c:\windows\SysWow64\mshtml.tlb
2014-08-18 21:56 . 2014-09-10 03:12 940032 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2014-08-18 21:51 . 2014-09-10 03:12 446464 ----a-w- c:\windows\system32\dxtmsft.dll
2014-08-18 21:46 . 2014-09-10 03:12 454656 ----a-w- c:\windows\SysWow64\vbscript.dll
2014-08-18 21:45 . 2014-09-10 03:12 61952 ----a-w- c:\windows\SysWow64\iesetup.dll
2014-08-18 21:45 . 2014-09-10 03:12 72704 ----a-w- c:\windows\system32\JavaScriptCollectionAgent.dll
2014-08-18 21:44 . 2014-09-10 03:12 51200 ----a-w- c:\windows\SysWow64\ieetwproxystub.dll
2014-08-18 21:44 . 2014-09-10 03:12 61952 ----a-w- c:\windows\SysWow64\MshtmlDac.dll
2014-08-18 21:40 . 2014-09-10 03:12 195584 ----a-w- c:\windows\system32\msrating.dll
2014-08-18 21:39 . 2014-09-10 03:12 85504 ----a-w- c:\windows\system32\mshtmled.dll
2014-08-18 21:38 . 2014-09-10 03:12 289280 ----a-w- c:\windows\system32\dxtrans.dll
2014-08-18 21:36 . 2014-09-10 03:12 112128 ----a-w- c:\windows\SysWow64\ieUnatt.exe
2014-08-18 21:35 . 2014-09-10 03:12 597504 ----a-w- c:\windows\SysWow64\jscript9diag.dll
2014-08-18 21:25 . 2014-09-10 03:12 727040 ----a-w- c:\windows\system32\msfeeds.dll
2014-08-18 21:25 . 2014-09-10 03:12 707072 ----a-w- c:\windows\system32\ie4uinit.exe
2014-08-18 21:23 . 2014-09-10 03:12 2104832 ----a-w- c:\windows\system32\inetcpl.cpl
2014-08-18 21:23 . 2014-09-10 03:12 1249280 ----a-w- c:\windows\system32\mshtmlmedia.dll
2014-08-18 21:22 . 2014-09-10 03:12 60416 ----a-w- c:\windows\SysWow64\JavaScriptCollectionAgent.dll
2014-08-18 21:16 . 2014-09-10 03:12 13588480 ----a-w- c:\windows\system32\ieframe.dll
2014-08-18 21:15 . 2014-09-10 03:12 2310656 ----a-w- c:\windows\system32\wininet.dll
2014-08-18 21:08 . 2014-09-10 03:12 2014208 ----a-w- c:\windows\SysWow64\inetcpl.cpl
2014-08-18 21:07 . 2014-09-10 03:12 1068032 ----a-w- c:\windows\SysWow64\mshtmlmedia.dll
2014-08-18 20:55 . 2014-09-10 03:12 1447424 ----a-w- c:\windows\system32\urlmon.dll
2014-08-18 20:46 . 2014-09-10 03:12 1812992 ----a-w- c:\windows\SysWow64\wininet.dll
2014-08-18 20:38 . 2014-09-10 03:12 775168 ----a-w- c:\windows\system32\ieapfltr.dll
2014-08-12 13:33 . 2014-08-12 13:33 98216 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2014-08-12 13:28 . 2014-08-12 13:28 111016 ----a-w- c:\windows\system32\WindowsAccessBridge-64.dll
2014-08-12 13:28 . 2014-08-12 13:28 319912 ----a-w- c:\windows\system32\javaws.exe
2014-08-12 13:28 . 2014-08-12 13:28 189352 ----a-w- c:\windows\system32\javaw.exe
2014-08-12 13:28 . 2014-08-12 13:28 189352 ----a-w- c:\windows\system32\java.exe
2014-08-03 04:52 . 2014-08-03 04:52 30312 ----a-w- c:\windows\system32\drivers\TrueSight.sys
2014-08-01 11:53 . 2014-09-10 02:57 1031168 ----a-w- c:\windows\system32\TSWorkspace.dll
2014-08-01 11:35 . 2014-09-10 02:57 793600 ----a-w- c:\windows\SysWow64\TSWorkspace.dll
2014-07-25 00:35 . 2014-07-25 00:35 875688 ----a-w- c:\windows\SysWow64\msvcr120_clr0400.dll
2014-07-24 21:47 . 2014-07-24 21:47 869544 ----a-w- c:\windows\system32\msvcr120_clr0400.dll
2014-07-22 12:30 . 2014-07-22 12:30 194048 ----a-w- c:\windows\SysWow64\elshyph.dll
2014-07-22 12:30 . 2014-07-22 12:30 645120 ----a-w- c:\windows\SysWow64\jsIntl.dll
2014-07-22 12:30 . 2014-07-22 12:30 235008 ----a-w- c:\windows\system32\elshyph.dll
2014-07-22 12:30 . 2014-07-22 12:30 71680 ----a-w- c:\windows\SysWow64\RegisterIEPKEYs.exe
2014-07-22 12:30 . 2014-07-22 12:30 182272 ----a-w- c:\windows\SysWow64\msls31.dll
2014-07-22 12:30 . 2014-07-22 12:30 62464 ----a-w- c:\windows\SysWow64\tdc.ocx
2014-07-22 12:30 . 2014-07-22 12:30 337408 ----a-w- c:\windows\SysWow64\html.iec
2014-07-22 12:30 . 2014-07-22 12:30 24576 ----a-w- c:\windows\SysWow64\licmgr10.dll
2014-07-22 12:30 . 2014-07-22 12:30 151552 ----a-w- c:\windows\SysWow64\iexpress.exe
2014-07-22 12:30 . 2014-07-22 12:30 139264 ----a-w- c:\windows\SysWow64\wextract.exe
2014-07-22 12:30 . 2014-07-22 12:30 36352 ----a-w- c:\windows\SysWow64\imgutil.dll
2014-07-22 12:30 . 2014-07-22 12:30 13312 ----a-w- c:\windows\SysWow64\mshta.exe
2014-07-22 12:30 . 2014-07-22 12:30 86016 ----a-w- c:\windows\SysWow64\iesysprep.dll
2014-07-22 12:30 . 2014-07-22 12:30 74240 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
2014-07-22 12:30 . 2014-07-22 12:30 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
2014-07-22 12:30 . 2014-07-22 12:30 111616 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
2014-07-22 12:30 . 2014-07-22 12:30 942592 ----a-w- c:\windows\system32\jsIntl.dll
2014-07-22 12:30 . 2014-07-22 12:30 86016 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2014-07-22 12:30 . 2014-07-22 12:30 247808 ----a-w- c:\windows\system32\msls31.dll
2014-07-22 12:30 . 2014-07-22 12:30 52224 ----a-w- c:\windows\system32\msfeedsbs.dll
2014-07-22 12:30 . 2014-07-22 12:30 13312 ----a-w- c:\windows\system32\msfeedssync.exe
2014-07-22 12:30 . 2014-07-22 12:30 131072 ----a-w- c:\windows\system32\IEAdvpack.dll
2014-07-22 12:30 . 2014-07-22 12:30 90112 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2014-07-22 12:30 . 2014-07-22 12:30 48640 ----a-w- c:\windows\system32\mshtmler.dll
2014-07-22 12:30 . 2014-07-22 12:30 105984 ----a-w- c:\windows\system32\iesysprep.dll
2014-07-22 12:30 . 2014-07-22 12:30 77312 ----a-w- c:\windows\system32\tdc.ocx
2014-07-22 12:30 . 2014-07-22 12:30 413696 ----a-w- c:\windows\system32\html.iec
2014-07-22 12:30 . 2014-07-22 12:30 81408 ----a-w- c:\windows\system32\icardie.dll
2014-07-22 12:30 . 2014-07-22 12:30 616104 ----a-w- c:\windows\system32\ieapfltr.dat
2014-07-22 12:30 . 2014-07-22 12:30 235520 ----a-w- c:\windows\system32\url.dll
2014-07-22 12:30 . 2014-07-22 12:30 30208 ----a-w- c:\windows\system32\licmgr10.dll
2014-07-22 12:30 . 2014-07-22 12:30 243200 ----a-w- c:\windows\system32\webcheck.dll
2014-07-22 12:30 . 2014-07-22 12:30 167424 ----a-w- c:\windows\system32\iexpress.exe
2014-07-22 12:30 . 2014-07-22 12:30 143872 ----a-w- c:\windows\system32\wextract.exe
2014-07-22 12:30 . 2014-07-22 12:30 101376 ----a-w- c:\windows\system32\inseng.dll
2014-07-22 12:30 . 2014-07-22 12:30 62464 ----a-w- c:\windows\system32\pngfilt.dll
2014-07-22 12:30 . 2014-07-22 12:30 147968 ----a-w- c:\windows\system32\occache.dll
2014-07-22 12:29 . 2014-07-22 12:29 13824 ----a-w- c:\windows\system32\mshta.exe
2014-07-22 12:29 . 2014-07-22 12:29 774144 ----a-w- c:\windows\system32\jscript.dll
2014-07-22 12:29 . 2014-07-22 12:29 48128 ----a-w- c:\windows\system32\imgutil.dll
2014-07-22 12:29 . 2014-07-22 12:29 135680 ----a-w- c:\windows\system32\iepeers.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"IsMyWinLockerReboot"="msiexec.exe" [2010-11-21 73216]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ESETOlmarikOlmascoCleaner]
@="Service"
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ESETOlmarikOlmascoCleaner.sys]
@="Driver"
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37.sys]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HitmanPro37Crusader]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HitmanPro37CrusaderBoot]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe"
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring"=dword:00000001
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes Anti-Malware\mbamservice.exe;c:\program files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R3 AmUStor;AM USB Stroage Driver;c:\windows\system32\drivers\AmUStor.SYS;c:\windows\SYSNATIVE\drivers\AmUStor.SYS [x]
R3 clwvd;CyberLink WebCam Virtual Driver;c:\windows\system32\DRIVERS\clwvd.sys;c:\windows\SYSNATIVE\DRIVERS\clwvd.sys [x]
R3 DrvAgent64;DrvAgent64;c:\windows\SysWOW64\Drivers\DrvAgent64.SYS;c:\windows\SysWOW64\Drivers\DrvAgent64.SYS [x]
R3 ESETOlmarikOlmascoCleaner;ESET Olmarik/Olmasco Cleaner;c:\windows\system32\Drivers\ESETOlmarikOlmascoCleaner.sys;c:\windows\SYSNATIVE\Drivers\ESETOlmarikOlmascoCleaner.sys [x]
R3 GenericMount;Generic Mount Driver;c:\windows\system32\DRIVERS\GenericMount.sys;c:\windows\SYSNATIVE\DRIVERS\GenericMount.sys [x]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 ManyCam;ManyCam Virtual Webcam;c:\windows\system32\DRIVERS\mcvidrv.sys;c:\windows\SYSNATIVE\DRIVERS\mcvidrv.sys [x]
R3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\MBAMSwissArmy.sys;c:\windows\SYSNATIVE\drivers\MBAMSwissArmy.sys [x]
R3 MBAMWebAccessControl;MBAMWebAccessControl;c:\windows\system32\drivers\mwac.sys;c:\windows\SYSNATIVE\drivers\mwac.sys [x]
R3 mcaudrv_simple;ManyCam Virtual Microphone;c:\windows\system32\drivers\mcaudrv_x64.sys;c:\windows\SYSNATIVE\drivers\mcaudrv_x64.sys [x]
R3 nmwcdnsucx64;Nokia USB Flashing Generic;c:\windows\system32\drivers\nmwcdnsucx64.sys;c:\windows\SYSNATIVE\drivers\nmwcdnsucx64.sys [x]
R3 nmwcdnsux64;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsux64.sys;c:\windows\SYSNATIVE\drivers\nmwcdnsux64.sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 scvad_simple;SplitCam Virtual Microphone (WDM);c:\windows\system32\drivers\SplitCamAudio.sys;c:\windows\SYSNATIVE\drivers\SplitCamAudio.sys [x]
R3 splitcam_hd_driver;SplitCam Virtual Video Driver;c:\windows\system32\DRIVERS\splitcam_hd_driver.sys;c:\windows\SYSNATIVE\DRIVERS\splitcam_hd_driver.sys [x]
R3 SWDUMon;SWDUMon;c:\windows\system32\DRIVERS\SWDUMon.sys;c:\windows\SYSNATIVE\DRIVERS\SWDUMon.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
R4 PuranDefrag;PuranDefrag;c:\windows\system32\PuranDefragS.exe;c:\windows\SYSNATIVE\PuranDefragS.exe [x]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe;c:\program files\Windows Live\Mesh\wlcrasvc.exe [x]
S1 klhk;klhk;c:\windows\system32\DRIVERS\klhk.sys;c:\windows\SYSNATIVE\DRIVERS\klhk.sys [x]
S1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;c:\windows\system32\DRIVERS\klim6.sys;c:\windows\SYSNATIVE\DRIVERS\klim6.sys [x]
S1 klpd;klpd;c:\windows\system32\DRIVERS\klpd.sys;c:\windows\SYSNATIVE\DRIVERS\klpd.sys [x]
S1 kltdi;kltdi;c:\windows\system32\DRIVERS\kltdi.sys;c:\windows\SYSNATIVE\DRIVERS\kltdi.sys [x]
S1 kneps;kneps;c:\windows\system32\DRIVERS\kneps.sys;c:\windows\SYSNATIVE\DRIVERS\kneps.sys [x]
S2 AtherosSvc;AtherosSvc;c:\program files (x86)\Atheros\Bluetooth Suite\adminservice.exe;c:\program files (x86)\Atheros\Bluetooth Suite\adminservice.exe [x]
S2 AVP15.0.0;Služba Kaspersky Anti-Virus 15.0.0;c:\program files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\avp.exe;c:\program files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\avp.exe [x]
S2 DsiWMIService;Dritek WMI Service;c:\program files (x86)\Launch Manager\dsiwmis.exe;c:\program files (x86)\Launch Manager\dsiwmis.exe [x]
S2 ePowerSvc;ePower Service;c:\program files\Acer\Acer ePower Management\ePowerSvc.exe;c:\program files\Acer\Acer ePower Management\ePowerSvc.exe [x]
S2 GREGService;GREGService;c:\program files (x86)\Acer\Registration\GREGsvc.exe;c:\program files (x86)\Acer\Registration\GREGsvc.exe [x]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x]
S2 Live Updater Service;Live Updater Service;c:\program files\Acer\Acer Updater\UpdaterService.exe;c:\program files\Acer\Acer Updater\UpdaterService.exe [x]
S2 NTI IScheduleSvc;NTI IScheduleSvc;c:\program files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe;c:\program files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [x]
S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x]
S3 BTATH_BUS;Qualcomm Atheros Bluetooth Bus;c:\windows\system32\DRIVERS\btath_bus.sys;c:\windows\SYSNATIVE\DRIVERS\btath_bus.sys [x]
S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x]
S3 klflt;Kaspersky Lab Kernel DLL;c:\windows\system32\DRIVERS\klflt.sys;c:\windows\SYSNATIVE\DRIVERS\klflt.sys [x]
S3 klkbdflt;Kaspersky Lab KLKBDFLT;c:\windows\system32\DRIVERS\klkbdflt.sys;c:\windows\SYSNATIVE\DRIVERS\klkbdflt.sys [x]
S3 klmouflt;Kaspersky Lab KLMOUFLT;c:\windows\system32\DRIVERS\klmouflt.sys;c:\windows\SYSNATIVE\DRIVERS\klmouflt.sys [x]
S3 L1C;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x64.sys;c:\windows\SYSNATIVE\DRIVERS\L1C62x64.sys [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x]
.
.
.
--------- X64 Entries -----------
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.centrum.cz/
uDefault_Search_URL = hxxp://www.google.com
uLocal Page = c:\windows\system32\blank.htm
mDefault_Search_URL = hxxp://www.google.com
mSearch Page = hxxp://www.google.com
IE: Přidat do součásti Anti-Banner - c:\program files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\ie_banner_deny.htm
TCP: DhcpNameServer = 192.168.1.1
TCP: Interfaces\{F73933D0-D1A5-4A36-9CEF-EA26C568D4D6}: NameServer = 62.24.64.2,8.8.4.4
FF - ProfilePath - c:\users\Jaruneczka\AppData\Roaming\Mozilla\Firefox\Profiles\49wt9mps.default\
FF - prefs.js: browser.startup.homepage - www.centrum.cz
FF - prefs.js: network.proxy.type - 4
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start
WebBrowser-{91397D20-1446-11D4-8AF4-0040CA1127B6} - (no file)
ShellIconOverlayIdentifiers-{472083B0-C522-11CF-8763-00608CC02F24} - (no file)
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\Approved Extensions]
@Denied: (2) (LocalSystem)
"{8DCB7100-DF86-4384-8842-8FA844297B3F}"=hex:51,66,7a,6c,4c,1d,38,12,6e,72,d8,
89,b4,91,ea,06,f7,54,cc,e8,41,77,3f,2b
"{18DF081C-E8AD-4283-A596-FA578C2EBDC3}"=hex:51,66,7a,6c,4c,1d,38,12,72,0b,cc,
1c,9f,a6,ed,07,da,80,b9,17,89,70,f9,d7
"{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}"=hex:51,66,7a,6c,4c,1d,38,12,d5,94,07,
72,c2,98,42,03,c9,fd,97,9a,f4,87,69,57
"{9030D464-4C02-4ABF-8ECC-5164760863C6}"=hex:51,66,7a,6c,4c,1d,38,12,0a,d7,23,
94,30,02,d1,0f,f1,da,12,24,73,56,27,d2
"{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}"=hex:51,66,7a,6c,4c,1d,38,12,07,5b,93,
aa,6e,60,ba,0b,f0,6d,b2,b7,80,44,00,83
"{D2CE3E00-F94A-4740-988E-03DC2F38C34F}"=hex:51,66,7a,6c,4c,1d,38,12,6e,3d,dd,
d6,78,b7,2e,02,e7,98,40,9c,2a,66,87,5b
"{DBC80044-A445-435B-BC74-9C25C1C588A9}"=hex:51,66,7a,6c,4c,1d,38,12,2a,03,db,
df,77,ea,35,06,c3,62,df,65,c4,9b,cc,bd
.
[HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\ApprovedExtensionsMigration]
@Denied: (2) (LocalSystem)
"Timestamp"=hex:29,f2,a9,b1,20,3f,cd,01
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_15_0_0_152_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_15_0_0_152_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_15_0_0_152_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_15_0_0_152_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_15_0_0_152.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.15"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_15_0_0_152.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_15_0_0_152.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_15_0_0_152.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee]
"SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\mojebanka.cz]
@DACL=(02 0000)
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
c:\program files (x86)\Launch Manager\LMworker.exe
c:\program files (x86)\Launch Manager\LMutilps32.exe
c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
.
**************************************************************************
.
Celkový čas: 2014-10-17 07:02:58 - počítač byl restartován
ComboFix-quarantined-files.txt 2014-10-17 05:02
.
Před spuštěním: Volných bajtů: 260 985 802 752
Po spuštění: Volných bajtů: 260 554 350 592
.
- - End Of File - - C7A30A0ECD70E05A05FCD0505FC8026F

Zamčeno