Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

rundll32 jak ho odstranit?

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Vipo
Návštěvník
Návštěvník
Příspěvky: 37
Registrován: 23 říj 2014 17:10

rundll32 jak ho odstranit?

#1 Příspěvek od Vipo »

Dobrý den, objevil se mi v počítači ten "rádoby" program, pořád se mi spouští hláška, že přestal pracovat. Počítač je pomalý a také se mi sám připojil na stránku, která nešla vypnout (zapla se i camera). Někde jsem četla, že na to pomůže jen program Combofix?

Vipo
Návštěvník
Návštěvník
Příspěvky: 37
Registrován: 23 říj 2014 17:10

Re: rundll32 jak ho odstranit?

#2 Příspěvek od Vipo »

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 22-10-2014
Ran by Veru (administrator) on VERU-PC on 23-10-2014 18:25:30
Running from C:\Users\Veru\Desktop
Loaded Profile: Veru (Available profiles: Veru)
Platform: Microsoft® Windows Vista™ Business Service Pack 1 (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 8
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\System32\SLsvc.exe
() C:\Program Files\ASUS\ATK Hotkey\AsLdrSrv.exe
() C:\Program Files\ATKGFNEX\GFNEXSrv.exe
(Agere Systems) C:\Windows\System32\agrsmsvc.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
() C:\Program Files\CyberLink\Shared Files\RichVideo.exe
() C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Cognizance Corporation) C:\Program Files\ASUS Security Center\ASUS Security Protect Manager\Bin\asghost.exe
(ASUS) C:\Program Files\ASUS\SmartLogon\sensorsrv.exe
() C:\Program Files\ASUS\ASUS Live Update\ALU.exe
() C:\Program Files\ASUS\ATK Hotkey\MsgTranAgt.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\HControl.exe
() C:\Program Files\Wireless Console 2\wcourier.exe
(ASUS) C:\Program Files\ASUS\ASUS CopyProtect\ASPG.exe
(ATK) C:\Program Files\P4G\BatteryLife.exe
(ATK) C:\Program Files\ASUS\Splendid\ACMON.exe
(ASUSTeK) C:\Windows\System32\ACEngSvr.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCui.exe
(Cyberlink Corp.) C:\Program Files\ASUSTek\ASUSDVD\PDVDServ.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\ATKOSD.exe
() C:\Program Files\ASUS\ATK Hotkey\KBFiltr.exe
() C:\Program Files\ASUS\ATK Hotkey\WDC.exe
(CyberLink) C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe
() C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe
(ASUS) C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe
(Realtek Semiconductor) C:\Windows\RtHDVCpl.exe
() C:\Program Files\ASUS\ATK Media\DMedia.exe
(ASUS) C:\Windows\AsScrPro.exe
(Synaptics, Inc.) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
(Google Inc.) C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
(Sony) C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Synaptics, Inc.) C:\Program Files\Synaptics\SynTP\SynAsus.exe
() C:\Program Files\Sony\Sony PC Companion\PCCompanionInfo.exe
(Synaptics, Inc.) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Symantec Corporation) C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Google Inc.) C:\Program Files\Google\Google Toolbar\GoogleToolbarUser_32.exe
(Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil32_15_0_0_167_ActiveX.exe
(Microsoft Corporation) C:\Windows\System32\wuauclt.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Windows\System32\conime.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Windows Defender] => C:\Program Files\Windows Defender\MSASCui.exe [1008184 2008-01-21] (Microsoft Corporation)
HKLM\...\Run: [RemoteControl] => C:\Program Files\ASUSTek\ASUSDVD\PDVDServ.exe [87336 2008-04-03] (Cyberlink Corp.)
HKLM\...\Run: [LanguageShortcut] => C:\Program Files\ASUSTek\ASUSDVD\Language\Language.exe [62760 2008-02-22] ()
HKLM\...\Run: [CLMLServer] => C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe [104936 2008-07-19] (CyberLink)
HKLM\...\Run: [P2Go_Menu] => C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [210216 2008-06-14] (CyberLink Corp.)
HKLM\...\Run: [HControlUser] => C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe [98304 2008-01-12] ()
HKLM\...\Run: [ATKOSD2] => C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe [7651328 2008-07-15] (ASUS)
HKLM\...\Run: [RtHDVCpl] => C:\Windows\RtHDVCpl.exe [6183456 2008-06-13] (Realtek Semiconductor)
HKLM\...\Run: [CognizanceTS] => rundll32.exe C:\PROGRA~1\ASUSSE~1\ASUSSE~1\Bin\ASTSVCC.dll,RegisterModule
HKLM\...\Run: [ATKMEDIA] => C:\Program Files\ASUS\ATK Media\DMEDIA.EXE [61440 2008-02-01] ()
HKLM\...\Run: [ASUS Screen Saver Protector] => C:\Windows\AsScrPro.exe [3054136 2008-09-10] (ASUS)
HKLM\...\Run: [ASUS Camera ScreenSaver] => C:\Windows\AsScrProlog.exe [47672 2008-09-10] ()
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1029416 2007-11-16] (Synaptics, Inc.)
HKLM\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [39792 2008-01-11] (Adobe Systems Incorporated)
HKLM\...\Run: [GrooveMonitor] => C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [1443072 2008-03-13] (ESET)
HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
HKU\S-1-5-19\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\S-1-5-20\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\S-1-5-21-2975284470-2684615546-956607703-1000\...\Run: [LightScribe Control Panel] => C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2363392 2008-06-09] (Hewlett-Packard Company)
HKU\S-1-5-21-2975284470-2684615546-956607703-1000\...\Run: [swg] => C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2013-11-13] (Google Inc.)
HKU\S-1-5-21-2975284470-2684615546-956607703-1000\...\Run: [Sony PC Companion] => C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [468192 2014-09-01] (Sony)
HKU\S-1-5-21-2975284470-2684615546-956607703-1000\...\MountPoints2: {91b28561-f4aa-11e3-b174-0023541079fa} - F:\Installer.exe
HKU\S-1-5-21-2975284470-2684615546-956607703-1000\...\MountPoints2: {924c49b3-13c4-11e4-835b-0023541079fa} - I:\Startme.exe
AppInit_DLLs: APSHook.dll => C:\Windows\system32\APSHook.dll [56832 2006-07-13] (Cognizance Corporation)
Lsa: [Notification Packages] scecli ASWLNPkg
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\Users\Veru\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\program.lnk
ShortcutTarget: program.lnk -> C:\PROGRA~2\07849F26.cpp (No File)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.asus.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.asus.com
BHO: BitComet Helper -> {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} -> C:\Program Files\BitComet\tools\BitCometBHO_1.5.4.11.dll (BitComet)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll (Google Inc.)
BHO: ASUS Security Protect Manager -> {DF21F1DB-80C6-11D3-9483-B03D0EC10000} -> C:\Program Files\ASUS Security Center\ASUS Security Protect Manager\Bin\ItIEAddIn.dll (Bioscrypt Inc.)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
Winsock: Catalog5 02 %SystemRoot%\system32\napinsp.dll [50176] (Společnost Microsoft)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF Extension: GoPhotoIt - C:\Users\Veru\AppData\Roaming\Mozilla\Firefox\profiles\extensions\gophoto@gophoto.it.xpi [2013-08-08]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2013-11-13]

Chrome:
=======
CHR Profile: C:\Users\Veru\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Dokumenty Google) - C:\Users\Veru\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-11-13]
CHR Extension: (Disk Google) - C:\Users\Veru\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-11-13]
CHR Extension: (YouTube) - C:\Users\Veru\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-11-13]
CHR Extension: (Vyhledávání Google) - C:\Users\Veru\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-11-13]
CHR Extension: (Peněženka Google) - C:\Users\Veru\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-11-13]
CHR Extension: (GoPhoto.it) - C:\Users\Veru\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk [2013-12-14]
CHR Extension: (Gmail) - C:\Users\Veru\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-11-13]
CHR HKLM\...\Chrome\Extension: [pfmopbbadnfoelckkcmjjeaaegjpjjbk] - C:\Program Files\Gophoto.it\gophotoit16.crx [2013-08-08]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 ASBroker; C:\Program Files\ASUS Security Center\ASUS Security Protect Manager\Bin\ASWLNPkg.dll [74240 2007-02-07] (Cognizance Corporation) [File not signed]
R2 ASChannel; C:\Program Files\ASUS Security Center\ASUS Security Protect Manager\Bin\AsChnl.dll [131584 2006-06-22] (Cognizance Corporation) [File not signed]
R2 ASLDRService; C:\Program Files\ASUS\ATK Hotkey\ASLDRSrv.exe [94208 2007-10-03] () [File not signed]
R2 ATKGFNEXSrv; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [94208 2007-08-08] () [File not signed]
R2 Automatic LiveUpdate Scheduler; C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe [238968 2008-02-09] (Symantec Corporation)
S3 BITCOMET_HELPER_SERVICE; C:\Program Files\BitComet\tools\BitCometService.exe [1296728 2010-12-28] (http://www.BitComet.com)
S3 EhttpSrv; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [19200 2008-03-13] (ESET)
R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [472320 2008-03-13] (ESET)
R2 LightScribeService; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [73728 2008-06-09] (Hewlett-Packard Company) [File not signed]
S3 LiveUpdate; C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE [3220856 2008-09-05] (Symantec Corporation)
R2 RichVideo; C:\Program Files\CyberLink\Shared Files\RichVideo.exe [272024 2007-05-14] ()
S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155824 2013-02-04] (Avanquest Software)
R2 spmgr; C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe [125496 2007-08-03] ()
S2 NOD32FiXTemDono; C:\Windows\system32\regedt32.exe /s C:\Windows\nod32fixtemdono.reg

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 ASMMAP; C:\Program Files\ATKGFNEX\ASMMAP.sys [13880 2007-07-24] ()
R3 ATSWPDRV; C:\Windows\System32\DRIVERS\ATSwpDrv.sys [146824 2007-06-17] (AuthenTec, Inc.)
R3 DCamUSBET; C:\Windows\System32\DRIVERS\etDevice.sys [474624 2007-09-06] (eMPIA Technology, Inc.)
R2 eamon; C:\Windows\System32\DRIVERS\eamon.sys [40456 2008-03-13] (ESET)
R1 easdrv; C:\Windows\System32\DRIVERS\easdrv.sys [29704 2008-03-13] (ESET)
R1 epfwtdir; C:\Windows\System32\DRIVERS\epfwtdir.sys [33800 2008-03-13] ()
R3 FiltUSBET; C:\Windows\System32\DRIVERS\etFilter.sys [206336 2007-10-15] (eMPIA Technology Inc.)
R0 FltMgr; C:\Windows\System32\drivers\fltmgr.sys [192056 2008-01-21] (Společnost Microsoft)
R2 ghaio; C:\Program Files\ASUS\NB Probe\SPM\ghaio.sys [20936 2007-08-03] ()
R1 IDSvix86; C:\ProgramData\Symantec\Definitions\SymcData\ipsdefs\20131106.001\IDSvix86.sys [286328 2013-10-30] (Symantec Corporation)
R3 itecir; C:\Windows\System32\DRIVERS\itecir.sys [54784 2007-12-19] (ITE Tech. Inc. )
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15928 2008-06-03] ( )
R0 lullaby; C:\Windows\System32\DRIVERS\lullaby.sys [15416 2008-05-29] (Windows (R) Codename Longhorn DDK provider)
R3 MTsensor; C:\Windows\System32\DRIVERS\ATKACPI.sys [7680 2006-12-15] (ATK0100)
R3 Ntfs; C:\Windows\system32\Drivers\Ntfs.sys [1081912 2008-01-21] (Společnost Microsoft)
R3 ScanUSBET; C:\Windows\System32\DRIVERS\etScan.sys [6656 2007-09-06] (eMPIA Technology, Inc.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [721904 2014-06-15] () [File not signed]
U3 ai4oudb4; C:\Windows\system32\Drivers\ai4oudb4.sys [0 ] (Microsoft Corporation)
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]

==================== NetSvcs (Whitelisted) ===================


(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-10-23 18:25 - 2014-10-23 18:26 - 00015725 _____ () C:\Users\Veru\Desktop\FRST.txt
2014-10-23 18:25 - 2014-10-23 18:25 - 00000000 ____D () C:\FRST
2014-10-23 18:24 - 2014-10-23 18:24 - 01103360 _____ (Farbar) C:\Users\Veru\Desktop\FRST.exe
2014-10-23 18:04 - 2014-10-23 18:04 - 00001468 _____ () C:\Windows\PFRO.log
2014-10-23 18:04 - 2014-10-23 18:04 - 00000000 ____D () C:\Users\Veru\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASUSTek ASUSDVD
2014-10-23 17:44 - 2014-10-23 17:44 - 05584933 _____ (Swearware) C:\Users\Veru\Downloads\ComboFix.exe
2014-10-23 16:26 - 2014-10-23 16:26 - 289789458 _____ () C:\Users\Veru\Desktop\arrow-s03e03-hdtv-x264-lol.mp4
2014-10-21 13:45 - 2014-10-21 14:07 - 395757201 _____ () C:\Users\Veru\Downloads\xxx-DorcelClub---Lola-Reve,-Ferrera-Gomez-720p.mp4
2014-10-21 13:37 - 2014-10-21 13:45 - 219722362 _____ () C:\Users\Veru\Downloads\Vanessa-Mae---Backdoor-Driller.mp4
2014-10-21 13:34 - 2014-10-21 13:43 - 190010440 _____ () C:\Users\Veru\Downloads\Fucker-Takes-All---Vanessa-Mae.avi
2014-10-21 13:33 - 2014-10-21 13:39 - 66411220 _____ () C:\Users\Veru\Downloads\rocker-guy-fucking-vanessa-mae.flv
2014-10-21 13:28 - 2014-10-21 13:36 - 227712344 _____ () C:\Users\Veru\Downloads\The-Best-by-Private-126--Vanessa-May,-Boroka-Balls-.avi
2014-10-20 15:47 - 2014-10-20 15:47 - 00000000 ____D () C:\Users\Veru\Desktop\mp3 convert
2014-10-20 15:40 - 2014-10-19 14:21 - 744766680 ____N () C:\Users\Veru\Desktop\2014-10-19_6h45m18.wav___tmp
2014-10-20 15:34 - 2014-10-20 19:25 - 00000000 ____D () C:\Users\Veru\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Moo0
2014-10-20 15:34 - 2014-10-20 19:25 - 00000000 ____D () C:\Program Files\Moo0
2014-10-20 15:25 - 2014-10-20 15:25 - 09355264 _____ (Moo0) C:\Users\Veru\Downloads\Moo0 AudioConverter v1.32 Installer.exe
2014-09-27 18:16 - 2014-09-27 18:18 - 35557313 _____ ( ) C:\Users\Veru\Downloads\K-Lite_Codec_Pack_1075_Mega.exe
2014-09-27 18:15 - 2014-09-27 18:16 - 35697922 _____ ( ) C:\Users\Veru\Downloads\K-Lite_Codec_Pack_1071_Mega.exe
2014-09-27 18:07 - 2014-09-27 18:15 - 230408092 _____ () C:\Users\Veru\Downloads\Emer-rain-2.divx
2014-09-27 18:03 - 2014-09-27 18:13 - 271571570 _____ () C:\Users\Veru\Downloads\Christina-Bella-XXX-porno-..pip...avi
2014-09-27 18:00 - 2014-09-27 18:00 - 36564076 _____ () C:\Users\Veru\Downloads\christina-bella-s-outdoor-anal.avi
2014-09-27 17:53 - 2014-09-27 17:55 - 81479284 _____ () C:\Users\Veru\Downloads\ChristinaBella_CeliaBlanco_Toxic.00.avi
2014-09-27 17:47 - 2014-09-27 17:53 - 193406976 _____ () C:\Users\Veru\Downloads\Christina-Bella---Wife-Lover-Whore-XXX-porno-..pip...avi
2014-09-24 18:31 - 2014-09-24 18:31 - 00001896 _____ () C:\Users\Public\Desktop\Skype.lnk
2014-09-24 18:31 - 2014-09-24 18:31 - 00000000 ____D () C:\Users\Veru\AppData\Local\Skype
2014-09-24 18:31 - 2014-09-24 18:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-09-24 18:31 - 2014-09-24 18:31 - 00000000 ____D () C:\Program Files\Common Files\Skype
2014-09-24 18:30 - 2014-09-24 18:31 - 00000000 ___RD () C:\Program Files\Skype

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-10-23 18:23 - 2006-11-02 14:47 - 00003616 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2014-10-23 18:23 - 2006-11-02 14:47 - 00003616 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2014-10-23 18:11 - 2013-12-13 19:11 - 00001282 _____ () C:\Windows\Tasks\Torntv V6.0-updater.job
2014-10-23 18:11 - 2013-12-13 19:11 - 00001174 _____ () C:\Windows\Tasks\Torntv V6.0-codedownloader.job
2014-10-23 18:11 - 2013-12-13 19:11 - 00001084 _____ () C:\Windows\Tasks\Torntv V6.0-enabler.job
2014-10-23 18:11 - 2006-11-02 12:33 - 01418230 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-10-23 18:04 - 2013-11-14 21:05 - 00031776 _____ () C:\ProgramData\nvModes.dat
2014-10-23 18:04 - 2013-11-14 21:05 - 00031776 _____ () C:\ProgramData\nvModes.001
2014-10-23 18:04 - 2013-11-13 15:00 - 00000936 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-10-23 18:04 - 2013-11-13 14:49 - 00045056 _____ () C:\Windows\system32\acovcnt.exe
2014-10-23 18:04 - 2008-09-10 21:34 - 00000000 ____D () C:\Program Files\ASUS
2014-10-23 18:04 - 2006-11-02 15:01 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-10-23 18:03 - 2008-09-10 20:19 - 00000012 _____ () C:\Windows\bthservsdp.dat
2014-10-23 18:03 - 2008-09-10 20:18 - 01168918 _____ () C:\Windows\WindowsUpdate.log
2014-10-23 18:03 - 2006-11-02 15:01 - 00032558 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-10-23 17:55 - 2013-11-13 22:49 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-10-23 17:50 - 2013-11-13 15:00 - 00000940 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-10-22 19:41 - 2013-11-13 16:38 - 00000416 ____H () C:\Windows\Tasks\User_Feed_Synchronization-{A282210E-BA49-40A2-A842-5B391E5A5A03}.job
2014-10-21 16:03 - 2013-11-15 16:08 - 00189952 _____ () C:\Users\Veru\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-10-20 19:59 - 2013-12-13 19:11 - 00000000 ____D () C:\Program Files\Torntv V6.0
2014-10-20 19:37 - 2013-11-13 21:55 - 00000000 ____D () C:\Users\Veru\AppData\Roaming\Winamp
2014-10-19 22:30 - 2013-11-13 22:22 - 00000000 ____D () C:\Users\Veru\AppData\Roaming\BitComet
2014-10-15 22:10 - 2008-09-10 20:26 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-10-15 22:09 - 2013-11-13 19:37 - 00000000 ____D () C:\Windows\system32\MRT
2014-10-15 22:05 - 2006-11-02 12:24 - 100290944 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2014-10-15 20:49 - 2013-11-13 15:01 - 00001978 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-10-10 16:32 - 2014-09-19 12:08 - 00001886 _____ () C:\Users\Public\Desktop\Sony PC Companion 2.1.lnk
2014-10-10 16:32 - 2014-07-25 14:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2014-10-10 16:32 - 2008-09-10 20:38 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2014-10-02 15:53 - 2013-11-13 21:01 - 00231568 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-09-29 22:40 - 2013-11-13 22:02 - 00000000 ____D () C:\Users\Veru\AppData\Roaming\Skype
2014-09-24 18:30 - 2013-11-13 22:01 - 00000000 ____D () C:\ProgramData\Skype
2014-09-24 18:26 - 2013-11-13 21:08 - 00000000 ____D () C:\Windows\system32\appmgmt
2014-09-24 17:55 - 2013-11-13 22:49 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-09-24 17:55 - 2013-11-13 22:49 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-10-23 18:10

==================== End Of Log ============================
Přílohy
Addition.rar
(7.8 KiB) Staženo 22 x

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: rundll32 jak ho odstranit?

#3 Příspěvek od vyosek »

Zdravim :)

:arrow: Jako moderator si dovolim vstoupit

:arrow: Pred pripadnym pokracovanim odstrante nelegalni ESET NOD32 a nainstalujte najaky free antivir (napr. Avast)
Pravidla fora píše:Pomáhat NELZE:
2) Pokud stroj uživatele prokazatelně obsahuje nelegální hostitelský čí ochranný software
(operační systém, antivir, firewall, atd.), je nutné navést uživatele k nápravě, např. skrze neplacený software,
a začít řešit, až v době kdy je PC "v pořádku". V případě že uživatel nechce na pravidla přistoupit,
je nutné jej vyzvat ať fórum opustí, a vrátí se až je splní.
:arrow: Pak dejte novy log z FRST a kolega bude pokracovat
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Vipo
Návštěvník
Návštěvník
Příspěvky: 37
Registrován: 23 říj 2014 17:10

Re: rundll32 jak ho odstranit?

#4 Příspěvek od Vipo »

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 22-10-2014
Ran by Veru (administrator) on VERU-PC on 23-10-2014 18:59:53
Running from C:\Users\Veru\Desktop
Loaded Profile: Veru (Available profiles: Veru)
Platform: Microsoft® Windows Vista™ Business Service Pack 1 (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 8
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\System32\SLsvc.exe
() C:\Program Files\ASUS\ATK Hotkey\AsLdrSrv.exe
() C:\Program Files\ATKGFNEX\GFNEXSrv.exe
(Agere Systems) C:\Windows\System32\agrsmsvc.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
() C:\Program Files\CyberLink\Shared Files\RichVideo.exe
() C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Cognizance Corporation) C:\Program Files\ASUS Security Center\ASUS Security Protect Manager\Bin\asghost.exe
(ASUS) C:\Program Files\ASUS\SmartLogon\sensorsrv.exe
() C:\Program Files\ASUS\ASUS Live Update\ALU.exe
() C:\Program Files\ASUS\ATK Hotkey\MsgTranAgt.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\HControl.exe
() C:\Program Files\Wireless Console 2\wcourier.exe
(ASUS) C:\Program Files\ASUS\ASUS CopyProtect\ASPG.exe
(ATK) C:\Program Files\P4G\BatteryLife.exe
(ATK) C:\Program Files\ASUS\Splendid\ACMON.exe
(ASUSTeK) C:\Windows\System32\ACEngSvr.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\ATKOSD.exe
() C:\Program Files\ASUS\ATK Hotkey\KBFiltr.exe
() C:\Program Files\ASUS\ATK Hotkey\WDC.exe
(Cyberlink Corp.) C:\Program Files\ASUSTek\ASUSDVD\PDVDServ.exe
(CyberLink) C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe
() C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe
(ASUS) C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe
(Realtek Semiconductor) C:\Windows\RtHDVCpl.exe
() C:\Program Files\ASUS\ATK Media\DMedia.exe
(ASUS) C:\Windows\AsScrPro.exe
(Synaptics, Inc.) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
(Sony) C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCui.exe
(Google Inc.) C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Google Inc.) C:\Program Files\Google\Google Toolbar\GoogleToolbarUser_32.exe
(Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil32_15_0_0_167_ActiveX.exe
(Synaptics, Inc.) C:\Program Files\Synaptics\SynTP\SynAsus.exe
() C:\Program Files\Sony\Sony PC Companion\PCCompanionInfo.exe
(Synaptics, Inc.) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Symantec Corporation) C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
(Microsoft Corporation) C:\Windows\System32\wuauclt.exe
(Microsoft Corporation) C:\Windows\System32\conime.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngtool.exe
(Společnost Microsoft) C:\Windows\System32\WinSAT.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\setup\aswOfferTool.exe
(Dropbox, Inc.) C:\Users\Public\Desktop\DropboxInstallerAvast.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Windows Defender] => C:\Program Files\Windows Defender\MSASCui.exe [1008184 2008-01-21] (Microsoft Corporation)
HKLM\...\Run: [RemoteControl] => C:\Program Files\ASUSTek\ASUSDVD\PDVDServ.exe [87336 2008-04-03] (Cyberlink Corp.)
HKLM\...\Run: [LanguageShortcut] => C:\Program Files\ASUSTek\ASUSDVD\Language\Language.exe [62760 2008-02-22] ()
HKLM\...\Run: [CLMLServer] => C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe [104936 2008-07-19] (CyberLink)
HKLM\...\Run: [P2Go_Menu] => C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [210216 2008-06-14] (CyberLink Corp.)
HKLM\...\Run: [HControlUser] => C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe [98304 2008-01-12] ()
HKLM\...\Run: [ATKOSD2] => C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe [7651328 2008-07-15] (ASUS)
HKLM\...\Run: [RtHDVCpl] => C:\Windows\RtHDVCpl.exe [6183456 2008-06-13] (Realtek Semiconductor)
HKLM\...\Run: [CognizanceTS] => rundll32.exe C:\PROGRA~1\ASUSSE~1\ASUSSE~1\Bin\ASTSVCC.dll,RegisterModule
HKLM\...\Run: [ATKMEDIA] => C:\Program Files\ASUS\ATK Media\DMEDIA.EXE [61440 2008-02-01] ()
HKLM\...\Run: [ASUS Screen Saver Protector] => C:\Windows\AsScrPro.exe [3054136 2008-09-10] (ASUS)
HKLM\...\Run: [ASUS Camera ScreenSaver] => C:\Windows\AsScrProlog.exe [47672 2008-09-10] ()
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1029416 2007-11-16] (Synaptics, Inc.)
HKLM\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [39792 2008-01-11] (Adobe Systems Incorporated)
HKLM\...\Run: [GrooveMonitor] => C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5223016 2014-10-23] (AVAST Software)
HKU\S-1-5-19\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\S-1-5-20\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\S-1-5-21-2975284470-2684615546-956607703-1000\...\Run: [LightScribe Control Panel] => C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2363392 2008-06-09] (Hewlett-Packard Company)
HKU\S-1-5-21-2975284470-2684615546-956607703-1000\...\Run: [swg] => C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2013-11-13] (Google Inc.)
HKU\S-1-5-21-2975284470-2684615546-956607703-1000\...\Run: [Sony PC Companion] => C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [468192 2014-09-01] (Sony)
HKU\S-1-5-21-2975284470-2684615546-956607703-1000\...\MountPoints2: {91b28561-f4aa-11e3-b174-0023541079fa} - F:\Installer.exe
HKU\S-1-5-21-2975284470-2684615546-956607703-1000\...\MountPoints2: {924c49b3-13c4-11e4-835b-0023541079fa} - I:\Startme.exe
AppInit_DLLs: APSHook.dll => C:\Windows\system32\APSHook.dll [56832 2006-07-13] (Cognizance Corporation)
Lsa: [Notification Packages] scecli ASWLNPkg
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\Users\Veru\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\program.lnk
ShortcutTarget: program.lnk -> C:\PROGRA~2\07849F26.cpp (No File)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.asus.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.asus.com
BHO: BitComet Helper -> {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} -> C:\Program Files\BitComet\tools\BitCometBHO_1.5.4.11.dll (BitComet)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll (Google Inc.)
BHO: ASUS Security Protect Manager -> {DF21F1DB-80C6-11D3-9483-B03D0EC10000} -> C:\Program Files\ASUS Security Center\ASUS Security Protect Manager\Bin\ItIEAddIn.dll (Bioscrypt Inc.)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
Winsock: Catalog5 02 %SystemRoot%\system32\napinsp.dll [50176] (Společnost Microsoft)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF Extension: GoPhotoIt - C:\Users\Veru\AppData\Roaming\Mozilla\Firefox\profiles\extensions\gophoto@gophoto.it.xpi [2013-08-08]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2013-11-13]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-10-23]

Chrome:
=======
CHR Profile: C:\Users\Veru\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Dokumenty Google) - C:\Users\Veru\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-11-13]
CHR Extension: (Disk Google) - C:\Users\Veru\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-11-13]
CHR Extension: (YouTube) - C:\Users\Veru\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-11-13]
CHR Extension: (Vyhledávání Google) - C:\Users\Veru\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-11-13]
CHR Extension: (Peněženka Google) - C:\Users\Veru\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-11-13]
CHR Extension: (GoPhoto.it) - C:\Users\Veru\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk [2013-12-14]
CHR Extension: (Gmail) - C:\Users\Veru\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-11-13]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-10-23]
CHR HKLM\...\Chrome\Extension: [pfmopbbadnfoelckkcmjjeaaegjpjjbk] - C:\Program Files\Gophoto.it\gophotoit16.crx [2013-08-08]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 ASBroker; C:\Program Files\ASUS Security Center\ASUS Security Protect Manager\Bin\ASWLNPkg.dll [74240 2007-02-07] (Cognizance Corporation) [File not signed]
R2 ASChannel; C:\Program Files\ASUS Security Center\ASUS Security Protect Manager\Bin\AsChnl.dll [131584 2006-06-22] (Cognizance Corporation) [File not signed]
R2 ASLDRService; C:\Program Files\ASUS\ATK Hotkey\ASLDRSrv.exe [94208 2007-10-03] () [File not signed]
R2 ATKGFNEXSrv; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [94208 2007-08-08] () [File not signed]
R2 Automatic LiveUpdate Scheduler; C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe [238968 2008-02-09] (Symantec Corporation)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-10-23] (AVAST Software)
S3 BITCOMET_HELPER_SERVICE; C:\Program Files\BitComet\tools\BitCometService.exe [1296728 2010-12-28] (http://www.BitComet.com)
R2 LightScribeService; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [73728 2008-06-09] (Hewlett-Packard Company) [File not signed]
S3 LiveUpdate; C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE [3220856 2008-09-05] (Symantec Corporation)
R2 RichVideo; C:\Program Files\CyberLink\Shared Files\RichVideo.exe [272024 2007-05-14] ()
S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155824 2013-02-04] (Avanquest Software)
R2 spmgr; C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe [125496 2007-08-03] ()
S2 NOD32FiXTemDono; C:\Windows\system32\regedt32.exe /s C:\Windows\nod32fixtemdono.reg

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 ASMMAP; C:\Program Files\ATKGFNEX\ASMMAP.sys [13880 2007-07-24] ()
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24184 2014-10-23] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [70384 2014-10-23] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr.sys [55240 2014-10-23] (AVAST Software)
S0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49944 2014-10-23] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [787800 2014-10-23] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [422760 2014-10-23] (AVAST Software)
R1 aswTdi; C:\Windows\system32\drivers\aswTdi.sys [57928 2014-10-23] (AVAST Software)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [206248 2014-10-23] ()
R3 ATSWPDRV; C:\Windows\System32\DRIVERS\ATSwpDrv.sys [146824 2007-06-17] (AuthenTec, Inc.)
R3 DCamUSBET; C:\Windows\System32\DRIVERS\etDevice.sys [474624 2007-09-06] (eMPIA Technology, Inc.)
R3 FiltUSBET; C:\Windows\System32\DRIVERS\etFilter.sys [206336 2007-10-15] (eMPIA Technology Inc.)
R0 FltMgr; C:\Windows\System32\drivers\fltmgr.sys [192056 2008-01-21] (Společnost Microsoft)
R2 ghaio; C:\Program Files\ASUS\NB Probe\SPM\ghaio.sys [20936 2007-08-03] ()
R1 IDSvix86; C:\ProgramData\Symantec\Definitions\SymcData\ipsdefs\20131106.001\IDSvix86.sys [286328 2013-10-30] (Symantec Corporation)
R3 itecir; C:\Windows\System32\DRIVERS\itecir.sys [54784 2007-12-19] (ITE Tech. Inc. )
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15928 2008-06-03] ( )
R0 lullaby; C:\Windows\System32\DRIVERS\lullaby.sys [15416 2008-05-29] (Windows (R) Codename Longhorn DDK provider)
R3 MTsensor; C:\Windows\System32\DRIVERS\ATKACPI.sys [7680 2006-12-15] (ATK0100)
R3 Ntfs; C:\Windows\system32\Drivers\Ntfs.sys [1081912 2008-01-21] (Společnost Microsoft)
R3 ScanUSBET; C:\Windows\System32\DRIVERS\etScan.sys [6656 2007-09-06] (eMPIA Technology, Inc.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [721904 2014-06-15] () [File not signed]
U3 aih7uegm; C:\Windows\system32\Drivers\aih7uegm.sys [0 ] (Microsoft Corporation)
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]

==================== NetSvcs (Whitelisted) ===================


(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-10-23 19:01 - 2014-10-23 19:01 - 00000000 ____D () C:\Users\Veru\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2014-10-23 18:59 - 2014-10-23 19:01 - 00017100 _____ () C:\Users\Veru\Desktop\FRST.txt
2014-10-23 18:59 - 2014-10-23 19:01 - 00000000 ____D () C:\Users\Veru\AppData\Roaming\Dropbox
2014-10-23 18:58 - 2014-10-23 18:58 - 00001878 _____ () C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2014-10-23 18:58 - 2014-10-23 18:58 - 00000000 ____D () C:\Users\Veru\AppData\Roaming\AVAST Software
2014-10-23 18:58 - 2014-10-23 18:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2014-10-23 18:58 - 2014-10-23 18:58 - 00000000 _____ () C:\Windows\setuperr.log
2014-10-23 18:58 - 2014-10-23 18:58 - 00000000 _____ () C:\Windows\setupact.log
2014-10-23 18:57 - 2014-10-23 18:58 - 36818984 _____ (Dropbox, Inc.) C:\Users\Public\Desktop\DropboxInstallerAvast.exe
2014-10-23 18:57 - 2014-10-23 18:56 - 00787800 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2014-10-23 18:57 - 2014-10-23 18:56 - 00422760 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2014-10-23 18:57 - 2014-10-23 18:56 - 00291352 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-10-23 18:57 - 2014-10-23 18:56 - 00206248 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-10-23 18:57 - 2014-10-23 18:56 - 00070384 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-10-23 18:57 - 2014-10-23 18:56 - 00057928 _____ (AVAST Software) C:\Windows\system32\Drivers\aswTdi.sys
2014-10-23 18:57 - 2014-10-23 18:56 - 00055240 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr.sys
2014-10-23 18:57 - 2014-10-23 18:56 - 00049944 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-10-23 18:57 - 2014-10-23 18:56 - 00024184 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-10-23 18:56 - 2014-10-23 18:56 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-10-23 18:53 - 2014-10-23 18:53 - 00000000 ____D () C:\Program Files\AVAST Software
2014-10-23 18:52 - 2014-10-23 18:53 - 00000000 ____D () C:\ProgramData\AVAST Software
2014-10-23 18:43 - 2014-10-23 18:44 - 00000000 ____D () C:\Users\Veru\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASUSTek ASUSDVD
2014-10-23 18:25 - 2014-10-23 19:00 - 00000000 ____D () C:\FRST
2014-10-23 18:24 - 2014-10-23 18:24 - 01103360 _____ (Farbar) C:\Users\Veru\Desktop\FRST.exe
2014-10-23 18:04 - 2014-10-23 18:04 - 00001468 _____ () C:\Windows\PFRO.log
2014-10-23 17:44 - 2014-10-23 17:44 - 05584933 _____ (Swearware) C:\Users\Veru\Downloads\ComboFix.exe
2014-10-23 16:26 - 2014-10-23 16:26 - 289789458 _____ () C:\Users\Veru\Desktop\arrow-s03e03-hdtv-x264-lol.mp4
2014-10-21 13:45 - 2014-10-21 14:07 - 395757201 _____ () C:\Users\Veru\Downloads\xxx-DorcelClub---Lola-Reve,-Ferrera-Gomez-720p.mp4
2014-10-21 13:37 - 2014-10-21 13:45 - 219722362 _____ () C:\Users\Veru\Downloads\Vanessa-Mae---Backdoor-Driller.mp4
2014-10-21 13:34 - 2014-10-21 13:43 - 190010440 _____ () C:\Users\Veru\Downloads\Fucker-Takes-All---Vanessa-Mae.avi
2014-10-21 13:33 - 2014-10-21 13:39 - 66411220 _____ () C:\Users\Veru\Downloads\rocker-guy-fucking-vanessa-mae.flv
2014-10-21 13:28 - 2014-10-21 13:36 - 227712344 _____ () C:\Users\Veru\Downloads\The-Best-by-Private-126--Vanessa-May,-Boroka-Balls-.avi
2014-10-20 15:47 - 2014-10-20 15:47 - 00000000 ____D () C:\Users\Veru\Desktop\mp3 convert
2014-10-20 15:40 - 2014-10-19 14:21 - 744766680 ____N () C:\Users\Veru\Desktop\2014-10-19_6h45m18.wav___tmp
2014-10-20 15:34 - 2014-10-20 19:25 - 00000000 ____D () C:\Users\Veru\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Moo0
2014-10-20 15:34 - 2014-10-20 19:25 - 00000000 ____D () C:\Program Files\Moo0
2014-10-20 15:25 - 2014-10-20 15:25 - 09355264 _____ (Moo0) C:\Users\Veru\Downloads\Moo0 AudioConverter v1.32 Installer.exe
2014-09-27 18:16 - 2014-09-27 18:18 - 35557313 _____ ( ) C:\Users\Veru\Downloads\K-Lite_Codec_Pack_1075_Mega.exe
2014-09-27 18:15 - 2014-09-27 18:16 - 35697922 _____ ( ) C:\Users\Veru\Downloads\K-Lite_Codec_Pack_1071_Mega.exe
2014-09-27 18:07 - 2014-09-27 18:15 - 230408092 _____ () C:\Users\Veru\Downloads\Emer-rain-2.divx
2014-09-27 18:03 - 2014-09-27 18:13 - 271571570 _____ () C:\Users\Veru\Downloads\Christina-Bella-XXX-porno-..pip...avi
2014-09-27 18:00 - 2014-09-27 18:00 - 36564076 _____ () C:\Users\Veru\Downloads\christina-bella-s-outdoor-anal.avi
2014-09-27 17:53 - 2014-09-27 17:55 - 81479284 _____ () C:\Users\Veru\Downloads\ChristinaBella_CeliaBlanco_Toxic.00.avi
2014-09-27 17:47 - 2014-09-27 17:53 - 193406976 _____ () C:\Users\Veru\Downloads\Christina-Bella---Wife-Lover-Whore-XXX-porno-..pip...avi
2014-09-24 18:31 - 2014-09-24 18:31 - 00001896 _____ () C:\Users\Public\Desktop\Skype.lnk
2014-09-24 18:31 - 2014-09-24 18:31 - 00000000 ____D () C:\Users\Veru\AppData\Local\Skype
2014-09-24 18:31 - 2014-09-24 18:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-09-24 18:31 - 2014-09-24 18:31 - 00000000 ____D () C:\Program Files\Common Files\Skype
2014-09-24 18:30 - 2014-09-24 18:31 - 00000000 ___RD () C:\Program Files\Skype

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-10-23 18:56 - 2014-06-15 20:28 - 00000000 ____D () C:\ProgramData\Blizzard Entertainment
2014-10-23 18:56 - 2013-11-13 22:22 - 00000000 ____D () C:\Users\Veru\AppData\Roaming\BitComet
2014-10-23 18:55 - 2013-11-13 22:49 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-10-23 18:50 - 2013-11-13 15:00 - 00000940 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-10-23 18:50 - 2006-11-02 12:33 - 01418230 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-10-23 18:45 - 2008-09-10 20:18 - 01174857 _____ () C:\Windows\WindowsUpdate.log
2014-10-23 18:43 - 2013-12-13 19:11 - 00001282 _____ () C:\Windows\Tasks\Torntv V6.0-updater.job
2014-10-23 18:43 - 2013-12-13 19:11 - 00001174 _____ () C:\Windows\Tasks\Torntv V6.0-codedownloader.job
2014-10-23 18:43 - 2013-12-13 19:11 - 00001084 _____ () C:\Windows\Tasks\Torntv V6.0-enabler.job
2014-10-23 18:43 - 2013-11-14 21:05 - 00031776 _____ () C:\ProgramData\nvModes.dat
2014-10-23 18:43 - 2013-11-14 21:05 - 00031776 _____ () C:\ProgramData\nvModes.001
2014-10-23 18:43 - 2013-11-13 15:00 - 00000936 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-10-23 18:43 - 2013-11-13 14:49 - 00045056 _____ () C:\Windows\system32\acovcnt.exe
2014-10-23 18:42 - 2006-11-02 15:01 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-10-23 18:42 - 2006-11-02 14:47 - 00003616 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2014-10-23 18:42 - 2006-11-02 14:47 - 00003616 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2014-10-23 18:41 - 2008-09-10 20:19 - 00000012 _____ () C:\Windows\bthservsdp.dat
2014-10-23 18:41 - 2006-11-02 15:01 - 00032558 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-10-23 18:04 - 2008-09-10 21:34 - 00000000 ____D () C:\Program Files\ASUS
2014-10-22 19:41 - 2013-11-13 16:38 - 00000416 ____H () C:\Windows\Tasks\User_Feed_Synchronization-{A282210E-BA49-40A2-A842-5B391E5A5A03}.job
2014-10-21 16:03 - 2013-11-15 16:08 - 00189952 _____ () C:\Users\Veru\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-10-20 19:59 - 2013-12-13 19:11 - 00000000 ____D () C:\Program Files\Torntv V6.0
2014-10-20 19:37 - 2013-11-13 21:55 - 00000000 ____D () C:\Users\Veru\AppData\Roaming\Winamp
2014-10-15 22:10 - 2008-09-10 20:26 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-10-15 22:09 - 2013-11-13 19:37 - 00000000 ____D () C:\Windows\system32\MRT
2014-10-15 22:05 - 2006-11-02 12:24 - 100290944 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2014-10-15 20:49 - 2013-11-13 15:01 - 00001978 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-10-10 16:32 - 2014-09-19 12:08 - 00001886 _____ () C:\Users\Public\Desktop\Sony PC Companion 2.1.lnk
2014-10-10 16:32 - 2014-07-25 14:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2014-10-10 16:32 - 2008-09-10 20:38 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2014-10-02 15:53 - 2013-11-13 21:01 - 00231568 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-09-29 22:40 - 2013-11-13 22:02 - 00000000 ____D () C:\Users\Veru\AppData\Roaming\Skype
2014-09-24 18:30 - 2013-11-13 22:01 - 00000000 ____D () C:\ProgramData\Skype
2014-09-24 18:26 - 2013-11-13 21:08 - 00000000 ____D () C:\Windows\system32\appmgmt
2014-09-24 17:55 - 2013-11-13 22:49 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-09-24 17:55 - 2013-11-13 22:49 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-10-23 18:49

==================== End Of Log ============================
Přílohy
Addition.rar
(8.41 KiB) Staženo 21 x

Vipo
Návštěvník
Návštěvník
Příspěvky: 37
Registrován: 23 říj 2014 17:10

Re: rundll32 jak ho odstranit?

#5 Příspěvek od Vipo »

Nevím jestli to takhle stačí je to v příloze
Přílohy
Bez názvu.jpg
Bez názvu.jpg (73.06 KiB) Zobrazeno 793 x

Vipo
Návštěvník
Návštěvník
Příspěvky: 37
Registrován: 23 říj 2014 17:10

Re: rundll32 jak ho odstranit?

#6 Příspěvek od Vipo »

Našla jsem tam jen ten první řádek. A teď se mi prozměnu začal objevovat toto okno.

Vipo
Návštěvník
Návštěvník
Příspěvky: 37
Registrován: 23 říj 2014 17:10

Re: rundll32 jak ho odstranit?

#7 Příspěvek od Vipo »

toto
Přílohy
Bez názvu1.jpg
Bez názvu1.jpg (51.23 KiB) Zobrazeno 787 x

Vipo
Návštěvník
Návštěvník
Příspěvky: 37
Registrován: 23 říj 2014 17:10

Re: rundll32 jak ho odstranit?

#8 Příspěvek od Vipo »

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 22-10-2014
Ran by Veru at 2014-10-23 20:01:08 Run:1
Running from C:\Users\Veru\Desktop
Loaded Profile: Veru (Available profiles: Veru)
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
ShortcutTarget: program.lnk -> C:\PROGRA~2\07849F26.cpp (No File)
*****************

C:\PROGRA~2\07849F26.cpp not found.

==== End of Fixlog ====

Vipo
Návštěvník
Návštěvník
Příspěvky: 37
Registrován: 23 říj 2014 17:10

Re: rundll32 jak ho odstranit?

#9 Příspěvek od Vipo »

Našlo mi to tyto dvě:

c:\Users\Veru\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
c:\programdata\microsoft\windows\start menu

Vipo
Návštěvník
Návštěvník
Příspěvky: 37
Registrován: 23 říj 2014 17:10

Re: rundll32 jak ho odstranit?

#10 Příspěvek od Vipo »

Stačí dát odstranit jeden ten soubor nebo mám to dát u obou?

Vipo
Návštěvník
Návštěvník
Příspěvky: 37
Registrován: 23 říj 2014 17:10

Re: rundll32 jak ho odstranit?

#11 Příspěvek od Vipo »

Už to nepíše.

Vipo
Návštěvník
Návštěvník
Příspěvky: 37
Registrován: 23 říj 2014 17:10

Re: rundll32 jak ho odstranit?

#12 Příspěvek od Vipo »

Zatím se mi nic neukázalo. Moc a moc díky. Jen doufám že tam někde není nějaký jiný vir :)

Odpovědět