Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Virus

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Marian!
Návštěvník
Návštěvník
Příspěvky: 1
Registrován: 04 led 2015 18:57

Virus

#1 Příspěvek od Marian! »

Dobrý den,

počítač mi napadl vir, který mi změnil pozadí plochy. Dále u souborů je napsano ZASIFROVANO-ZAPLAT 3000 kc. Poté mi vyskočil textový soubor, s tím, že je to virus, a že mám zaplatit 3000 na uvedený účet, jinak budou data smazana. Děkuji předem za rady.

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 04-01-2015
Ran by Marian (administrator) on MARIAN on 04-01-2015 18:39:14
Running from C:\Users\Marian\Downloads
Loaded Profile: Marian (Available profiles: Marian)
Platform: Windows 8.1 Connected (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgrsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgcsrva.exe
(Softex Inc.) C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgfws.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
(StarWind Software) C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
(ClientConnect Ltd.) C:\Program Files (x86)\Tbccint\ToolbarService\ToolbarService.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe
(McAfee, Inc.) C:\Program Files\mcafee\msc\McAPExe.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\AMCore\mcshield.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe
(AVG) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
() C:\Program Files\Hewlett-Packard\SimplePass\opvapp.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McUICnt.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgui.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Microsoft Corporation) C:\Config.Msi\91d8f.rbf
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7510896 2014-01-14] (Realtek Semiconductor)
HKLM\...\Run: [SimplePass] => C:\Program Files\Hewlett-Packard\SimplePass\ClientCore.exe /hideui
HKLM\...\Run: [OPBHOBroker] => C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe
HKLM\...\Run: [OPBHOBrokerDesktop] => C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2803440 2013-12-13] (Synaptics Incorporated)
HKLM-x32\...\Run: [mcpltui_exe] => C:\Program Files\McAfee.com\Agent\mcagent.exe [537992 2014-04-25] (McAfee, Inc.)
HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe [1045304 2013-10-08] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [507776 2014-10-07] (Oracle Corporation)
HKLM-x32\...\Run: [ApnTBMon] => C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1942424 2014-10-10] (APN)
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\AVG2015\avgui.exe [3667472 2014-12-18] (AVG Technologies CZ, s.r.o.)
HKLM\...\RunOnce: [NCPluginUpdater] => C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe [21720 2014-12-16] (Hewlett-Packard)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKLM\...\Policies\Explorer: [NoFolderOptions] 0
HKU\S-1-5-21-1089976220-3449558695-605674926-1001\...\Run: [uTorrent] => "C:\Users\Marian\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
HKU\S-1-5-21-1089976220-3449558695-605674926-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-1089976220-3449558695-605674926-1001\...\Run: [AlcoholAutomount] => C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [75624 2012-01-05] (Alcohol Soft Development Team)
HKU\S-1-5-21-1089976220-3449558695-605674926-1001\...\Run: [microsoft.exe] => C:\Users\Marian\AppData\Local\Temp\microsoft.exe <===== ATTENTION
HKU\S-1-5-21-1089976220-3449558695-605674926-1001\...\MountPoints2: {2d56f2d9-4fce-11e4-825f-1458d0c42b0c} - "F:\setup.exe"
IFEO\chrome.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
IFEO\dtlite.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
IFEO\sfaupdater.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
IFEO\sptdinst-x64.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
IFEO\startupchecker.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
Startup: C:\Users\Marian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\HOW TO DECRYPT FILES.txt ()
Startup: C:\Users\Marian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\svchost.exe.ZASIFROVANO-ZAPLAT 3000kc ()

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=HPNTDFJS
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=HPNTDFJS
HKU\S-1-5-21-1089976220-3449558695-605674926-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-1089976220-3449558695-605674926-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=HPNTDFJS
URLSearchHook: HKLM-x32 - BS Player ControlBar B Toolbar - {31264a33-a653-46c4-af49-1232c59a7da5} - C:\Users\Marian\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_P.dll (ClientConnect Ltd.)
URLSearchHook: HKLM-x32 - BS Player ControlBar B Toolbar - {31264a33-a653-46c4-af49-1232c59a7da5} - C:\Users\Marian\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_P.dll (ClientConnect Ltd.)
SearchScopes: HKLM -> {BA154F58-567C-4FF9-8F45-4C23DB62557F} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... earchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {0B5EBC22-066D-413D-B258-4A78651EED09} URL =
SearchScopes: HKLM-x32 -> {BA154F58-567C-4FF9-8F45-4C23DB62557F} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... earchTerms}
SearchScopes: HKU\S-1-5-21-1089976220-3449558695-605674926-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?PC=WCUG&FORM ... earchTerms}
SearchScopes: HKU\S-1-5-21-1089976220-3449558695-605674926-1001 -> 5DB3C7F1C6178E8BDFFC8E374CB54841 URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-1089976220-3449558695-605674926-1001 -> 69ECC716815F98C42E74412412F0314F URL = http://www.mapy.cz/?sourceid=quicksearc ... earchTerms}
SearchScopes: HKU\S-1-5-21-1089976220-3449558695-605674926-1001 -> 74CC3EB37C6C42D4077F4E3ED01D5431 URL = http://www.zbozi.cz/?sourceid=quicksear ... earchTerms}
SearchScopes: HKU\S-1-5-21-1089976220-3449558695-605674926-1001 -> 7ECA0CFB0D6413F8CDB241A08B08F279 URL = http://www.firmy.cz/phr/{searchTerms}
SearchScopes: HKU\S-1-5-21-1089976220-3449558695-605674926-1001 -> 954F8AA0880021355838816734BAAC70 URL = http://www.trovi.com/Results.aspx?gd=&c ... rms}&SSPV=
SearchScopes: HKU\S-1-5-21-1089976220-3449558695-605674926-1001 -> 9AAB613CE009A49E3316AAC5D89D8FF8 URL = http://videa.seznam.cz/?q={searchTerms}
SearchScopes: HKU\S-1-5-21-1089976220-3449558695-605674926-1001 -> {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://www.trovi.com/Results.aspx?gd=&c ... rms}&SSPV=
SearchScopes: HKU\S-1-5-21-1089976220-3449558695-605674926-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?PC=WCUG&FORM ... earchTerms}
SearchScopes: HKU\S-1-5-21-1089976220-3449558695-605674926-1001 -> {0B5EBC22-066D-413D-B258-4A78651EED09} URL = http://trovi.com/ResultsExt.aspx?q={sea ... 19120&UM=4
SearchScopes: HKU\S-1-5-21-1089976220-3449558695-605674926-1001 -> {BA154F58-567C-4FF9-8F45-4C23DB62557F} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... earchTerms}
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO-x32: BS Player ControlBar B Toolbar -> {31264a33-a653-46c4-af49-1232c59a7da5} -> C:\Users\Marian\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_P.dll (ClientConnect Ltd.)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
Toolbar: HKLM - BS Player ControlBar B Toolbar - {31264A33-A653-46C4-AF49-1232C59A7DA5} - C:\Users\Marian\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_P.dll (ClientConnect Ltd.)
Toolbar: HKLM-x32 - BS Player ControlBar B Toolbar - {31264a33-a653-46c4-af49-1232c59a7da5} - C:\Users\Marian\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_P.dll (ClientConnect Ltd.)
Toolbar: HKU\S-1-5-21-1089976220-3449558695-605674926-1001 -> BS Player ControlBar B Toolbar - {31264A33-A653-46C4-AF49-1232C59A7DA5} - C:\Users\Marian\AppData\LocalLow\BS_Player_ControlBar_B\prxtbBS_P.dll (ClientConnect Ltd.)
Toolbar: HKU\S-1-5-21-1089976220-3449558695-605674926-1001 -> No Name - {91397D20-1446-11D4-8AF4-0040CA1127B6} - No File
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\msc\McSnIePl64.dll (McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\msc\McSnIePl.dll (McAfee, Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.88.1

FireFox:
========
FF ProfilePath: C:\Users\Marian\AppData\Roaming\Mozilla\Firefox\Profiles\sb7dvoem.default
FF NewTab: yafd:tabs
FF DefaultSearchEngine: Ask Search
FF SelectedSearchEngine: Ask Search
FF Homepage: about:home
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_246.dll ()
FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_246.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\windows\SysWOW64\Adobe\Director\np32dsw_1204144.dll (Adobe Systems, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL ()
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF user.js: detected! => C:\Users\Marian\AppData\Roaming\Mozilla\Firefox\Profiles\sb7dvoem.default\user.js
FF SearchPlugin: C:\Users\Marian\AppData\Roaming\Mozilla\Firefox\Profiles\sb7dvoem.default\searchplugins\ask-search.xml
FF SearchPlugin: C:\Users\Marian\AppData\Roaming\Mozilla\Firefox\Profiles\sb7dvoem.default\searchplugins\firmy.cz-225309.xml
FF SearchPlugin: C:\Users\Marian\AppData\Roaming\Mozilla\Firefox\Profiles\sb7dvoem.default\searchplugins\HOW TO DECRYPT FILES.txt
FF SearchPlugin: C:\Users\Marian\AppData\Roaming\Mozilla\Firefox\Profiles\sb7dvoem.default\searchplugins\seznam.cz-225309.xml
FF SearchPlugin: C:\Users\Marian\AppData\Roaming\Mozilla\Firefox\Profiles\sb7dvoem.default\searchplugins\videa.seznam.cz-225309.xml
FF SearchPlugin: C:\Users\Marian\AppData\Roaming\Mozilla\Firefox\Profiles\sb7dvoem.default\searchplugins\yqs-barff-yandex.xml
FF SearchPlugin: C:\Users\Marian\AppData\Roaming\Mozilla\Firefox\Profiles\sb7dvoem.default\searchplugins\zbozi.cz-225309.xml
FF Extension: Search App by Ask - C:\Users\Marian\AppData\Roaming\Mozilla\Firefox\Profiles\sb7dvoem.default\Extensions\toolbar_ORJ-SPE@apn.ask.com.xpi [2014-10-10]
FF Extension: Візуальныя закладкі - C:\Users\Marian\AppData\Roaming\Mozilla\Firefox\Profiles\sb7dvoem.default\Extensions\vb@yandex.ru.xpi [2014-12-26]
FF Extension: Adblock Plus - C:\Users\Marian\AppData\Roaming\Mozilla\Firefox\Profiles\sb7dvoem.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-10-10]
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2014-08-23]
FF HKU\S-1-5-21-1089976220-3449558695-605674926-1001\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]

Chrome:
=======
CHR DefaultSuggestURL: Default -> http://suggest.yandex.net/suggest-ff.cg ... earchTerms}
CHR Profile: C:\Users\Marian\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - C:\Users\Marian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-10-09]
CHR Extension: (Яндекс) - C:\Users\Marian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aminlpmkfcdibgpgfajlgnamicjckkjf [2014-11-02]
CHR Extension: (Dokumenty Google) - C:\Users\Marian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-10-09]
CHR Extension: (Disk Google) - C:\Users\Marian\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-10-09]
CHR Extension: (YouTube) - C:\Users\Marian\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-10-09]
CHR Extension: (Vyhledávání Google) - C:\Users\Marian\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-10-09]
CHR Extension: (Tabulky Google) - C:\Users\Marian\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-10-09]
CHR Extension: (Стартовая — Яндекс) - C:\Users\Marian\AppData\Local\Google\Chrome\User Data\Default\Extensions\jdkihdhlegcdggknokfekoemkjjnjhgi [2014-11-02]
CHR Extension: (Peněženka Google) - C:\Users\Marian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-10-09]
CHR Extension: (Gmail) - C:\Users\Marian\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-10-09]
CHR HKLM-x32\...\Chrome\Extension: [aminlpmkfcdibgpgfajlgnamicjckkjf] - No Path
CHR HKLM-x32\...\Chrome\Extension: [bopakagnckmlgajfccecajhnimjiiedh] - No Path
CHR HKLM-x32\...\Chrome\Extension: [jdkihdhlegcdggknokfekoemkjjnjhgi] - No Path

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S4 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [166296 2014-10-10] (APN LLC.)
R2 avgfws; C:\Program Files (x86)\AVG\AVG2015\avgfws.exe [1486664 2014-12-18] (AVG Technologies CZ, s.r.o.)
R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe [3432976 2014-12-18] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe [298080 2014-12-18] (AVG Technologies CZ, s.r.o.)
S2 AxAutoMntSrv; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [75624 2012-01-05] (Alcohol Soft Development Team)
R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [92160 2014-01-13] (Hewlett-Packard Company) [File not signed]
S4 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe [89352 2014-09-15] (Hewlett-Packard Company)
S4 HPWMISVC; C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe [1039160 2013-10-08] (Hewlett-Packard Development Company, L.P.)
S4 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [733696 2013-07-01] (Intel(R) Corporation) [File not signed]
S4 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [822232 2013-07-01] (Intel(R) Corporation)
R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [178528 2014-04-25] (McAfee, Inc.)
S3 McAWFwk; c:\Program Files\Common Files\mcafee\ActWiz\McAWFwk.exe [334608 2013-07-29] (McAfee, Inc.)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.)
R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McNaiAnn; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
S3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [603424 2014-09-04] (McAfee, Inc.)
S4 McOobeSv2; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 mcpltsvc; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McProxy; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1041192 2014-08-20] (McAfee, Inc.)
R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [219752 2014-06-20] (McAfee, Inc.)
R2 mfevtp; C:\Windows\system32\mfevtps.exe [189912 2014-06-20] (McAfee, Inc.)
R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 omniserv; C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe [88064 2014-03-28] (Softex Inc.) [File not signed]
S4 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [290520 2014-01-08] (Realtek Semiconductor)
R2 StarWindServiceAE; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [370688 2009-12-23] (StarWind Software) [File not signed]
R2 TBSrv; C:\Program Files (x86)\Tbccint\ToolbarService\ToolbarService.exe [350528 2014-04-10] (ClientConnect Ltd.)
R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2103096 2013-12-18] (TuneUp Software)
S3 w3logsvc; C:\Windows\system32\inetsrv\w3logsvc.dll [76800 2014-04-02] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S0 Avgboota; C:\Windows\System32\DRIVERS\avgboota.sys [20496 2013-09-04] (AVG Technologies CZ, s.r.o.)
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [153368 2014-06-18] (AVG Technologies CZ, s.r.o.)
R1 Avgfwfd; C:\Windows\system32\DRIVERS\avgfwd6a.sys [57144 2013-09-26] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [260888 2014-12-08] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [203544 2014-11-18] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [243480 2014-08-28] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [313624 2014-07-18] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [124184 2014-10-05] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [31512 2014-06-18] (AVG Technologies CZ, s.r.o.)
R1 Avgwfpa; C:\Windows\system32\DRIVERS\avgwfpa.sys [277784 2014-09-24] (AVG Technologies CZ, s.r.o.)
U3 axscsidrv; C:\Windows\System32\Drivers\axscsidrv.sys [293888 2014-10-10] (Alcohol Soft Development Team)
R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [72128 2014-06-20] (McAfee, Inc.)
R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [91712 2013-03-05] (CyberLink)
U3 dtscsidrv; C:\Windows\System32\Drivers\dtscsidrv.sys [309248 2014-10-10] (Disc Soft Ltd)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2014-10-09] (Disc Soft Ltd)
R3 GPIO; C:\Windows\System32\drivers\iaiogpioe.sys [31232 2013-11-11] (Intel Corporation)
S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.)
R0 MBI; C:\Windows\System32\drivers\MBI.sys [29464 2014-01-23] (Intel Corporation)
R3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [181704 2014-06-20] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [313544 2014-06-20] (McAfee, Inc.)
S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [70600 2014-06-20] (McAfee, Inc.)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [523792 2014-06-20] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [786296 2014-06-20] (McAfee, Inc.)
R3 mfencbdc; C:\Windows\system32\DRIVERS\mfencbdc.sys [445512 2014-08-20] (McAfee, Inc.)
S3 mfencrk; C:\Windows\system32\DRIVERS\mfencrk.sys [96592 2014-08-20] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [348552 2014-06-20] (McAfee, Inc.)
R3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [291544 2014-01-04] (Realtek Semiconductor Corp.)
R3 RTWlanE; C:\Windows\system32\DRIVERS\rtwlane.sys [3379416 2014-03-22] (Realtek Semiconductor Corporation )
S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [29936 2013-12-13] (Synaptics Incorporated)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [31472 2013-12-13] (Synaptics Incorporated)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [386680 2014-10-10] (Duplex Secure Ltd.)
R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [14112 2013-08-21] (TuneUp Software)
R3 TXEIx64; C:\Windows\System32\drivers\TXEIx64.sys [88592 2014-01-15] (Intel Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation)
R3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [20800 2013-07-22] (Hewlett-Packard Development Company, L.P.)
S3 SPPD; \??\C:\Windows\system32\drivers\SPPD.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-04 18:39 - 2015-01-04 18:40 - 00026487 _____ () C:\Users\Marian\Downloads\FRST.txt
2015-01-04 18:37 - 2015-01-04 18:39 - 00000000 ____D () C:\FRST
2015-01-04 18:36 - 2015-01-04 18:36 - 02123776 _____ (Farbar) C:\Users\Marian\Downloads\FRST64.exe
2015-01-04 18:34 - 2015-01-04 18:34 - 00000000 _____ () C:\Users\Marian\Downloads\VerzeOS.exe
2015-01-04 18:06 - 2015-01-04 18:06 - 00000348 _____ () C:\Windows\Tasks\1014avtUpdateInfo.job
2015-01-04 18:06 - 2015-01-04 18:06 - 00000000 ____D () C:\ProgramData\Avg_Update_1014avt
2015-01-04 17:56 - 2015-01-04 17:56 - 00000000 ____D () C:\Users\Marian\AppData\Roaming\AVG2015
2015-01-04 17:54 - 2015-01-04 17:54 - 00001000 _____ () C:\Users\Public\Desktop\AVG 2015.lnk
2015-01-04 17:54 - 2015-01-04 17:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2015-01-04 17:53 - 2015-01-04 17:58 - 00000000 ____D () C:\ProgramData\AVG2015
2015-01-04 17:53 - 2015-01-04 17:53 - 00000000 ___HD () C:\$AVG
2015-01-04 17:52 - 2015-01-04 17:52 - 00000000 ____D () C:\Program Files (x86)\AVG
2015-01-04 17:47 - 2015-01-04 18:05 - 00000000 ____D () C:\ProgramData\MFAData
2015-01-04 17:47 - 2015-01-04 17:59 - 00000000 ____D () C:\Users\Marian\AppData\Local\Avg2015
2015-01-04 17:47 - 2015-01-04 17:47 - 04579184 _____ () C:\Users\Marian\Downloads\avg_free_stb_eu_2015_5315.exe.ZASIFROVANO-ZAPLAT 3000kc
2015-01-04 17:47 - 2015-01-04 17:47 - 00000000 ____D () C:\Users\Marian\AppData\Local\MFAData
2015-01-04 17:39 - 2015-01-04 17:50 - 00000000 ____D () C:\Users\Marian\Downloads\Microsoft Office 2013 32-64 bit - cz - cdkey - 100% funkční
2015-01-04 16:51 - 2015-01-04 17:38 - 805610402 _____ () C:\Users\Marian\Downloads\microsoft-office-2013-32-64-bit-cz-cdkey-100-funkcni-pres-MultiLoad.cz.zip.ZASIFROVANO-ZAPLAT 3000kc
2015-01-04 16:49 - 2015-01-04 16:49 - 00016822 _____ () C:\Users\Marian\Downloads\OFFICE-2013-CZ-TORRENT-+KEY.rar.ZASIFROVANO-ZAPLAT 3000kc
2015-01-04 16:49 - 2015-01-03 14:00 - 00039424 _____ () C:\Users\Marian\Downloads\OFFICE 2013 CZ TORRENT +KEY.exe.ZASIFROVANO-ZAPLAT 3000kc
2015-01-04 16:37 - 2015-01-04 17:31 - 00000000 ____D () C:\Program Files (x86)\csWord
2015-01-04 16:37 - 2015-01-04 16:37 - 00000938 _____ () C:\Users\Marian\Desktop\csWord.lnk.ZASIFROVANO-ZAPLAT 3000kc
2015-01-04 16:37 - 2015-01-04 16:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WordToPDF
2015-01-04 16:36 - 2015-01-04 16:36 - 04897450 _____ () C:\Users\Marian\Downloads\setup_csWord.exe.ZASIFROVANO-ZAPLAT 3000kc
2015-01-04 16:14 - 2015-01-04 16:16 - 73271976 _____ () C:\Users\Marian\Downloads\office2007-kb953328-fullfile-x86-glb.exe.ZASIFROVANO-ZAPLAT 3000kc
2015-01-03 17:16 - 2015-01-03 17:16 - 00000118 _____ () C:\Users\Marian\Desktop\OZ.txt.ZASIFROVANO-ZAPLAT 3000kc
2015-01-03 16:46 - 2015-01-03 16:46 - 00000000 ____D () C:\Program Files (x86)\MSECache
2015-01-03 15:59 - 2015-01-04 18:20 - 00000000 ____D () C:\Program Files\Microsoft Office
2015-01-03 15:09 - 2015-01-03 15:09 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help
2015-01-03 15:09 - 2015-01-03 15:09 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help
2015-01-03 15:09 - 2013-10-29 22:39 - 00000000 ____D () C:\Users\Marian\Downloads\Microsoft Office 2013 Professional Plus x64 + CZ + aktivator + CZ kontrola pravopisu - d3lc0
2015-01-03 14:08 - 2015-01-03 14:09 - 04182920 _____ () C:\Users\Marian\Downloads\MICROSOFT-OFFICE-365-HOME-PREMIUM-TORRENT_downloader.exe.ZASIFROVANO-ZAPLAT 3000kc
2015-01-03 14:07 - 2015-01-03 15:07 - 1001481303 _____ () C:\Users\Marian\Downloads\Microsoft-Office-2013-Professional-Plus-x64-+-CZ-+-aktivator-+-CZ-kontrola-pravopisu----d3lc0.rar.ZASIFROVANO-ZAPLAT 3000kc
2015-01-03 09:24 - 2015-01-04 17:50 - 00000000 ____D () C:\Users\Marian\Downloads\Office
2015-01-03 09:11 - 2015-01-04 17:49 - 00000000 ____D () C:\Users\Marian\Downloads\-= Activation=-
2015-01-02 22:24 - 2015-01-04 18:29 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2015-01-02 18:05 - 2015-01-04 17:50 - 00000000 ____D () C:\Users\Marian\Downloads\Interstellar 2014 HDCAM NEW SOURCE READNFO XVID AC3 ACAB
2015-01-02 17:30 - 2015-01-04 17:50 - 00000000 ____D () C:\Users\Marian\Downloads\Horrible Bosses 2 (2014) HDRip HC XViD AC3-RAV3N
2015-01-01 22:35 - 2015-01-01 22:35 - 00129111 _____ () C:\Users\Marian\Downloads\The-Judge(0000246503).srt
2015-01-01 20:23 - 2015-01-04 17:51 - 00000000 ____D () C:\Users\Marian\Downloads\The.Judge.2014.HDRip.XviD-SaM[ETRG]
2015-01-01 12:32 - 2015-01-04 17:49 - 00000000 ____D () C:\Users\Marian\Desktop\Fotky s kočičkou
2014-12-27 19:45 - 2014-12-28 22:20 - 935413996 ____R () C:\Users\Marian\Downloads\Trabantem.az.na.konec.sveta.2014.DVDRip.avi
2014-12-27 19:43 - 2015-01-04 17:50 - 00000000 ____D () C:\Users\Marian\Downloads\Planet Ocean [2012] 1080p BluRay DTS x264-tomcat12[ETRG]
2014-12-27 14:17 - 2014-12-27 14:17 - 00001008 _____ () C:\Users\Public\Desktop\Divinity Original Sin.lnk
2014-12-27 14:06 - 2014-12-27 14:17 - 00000000 ____D () C:\Program Files (x86)\Divinity Original Sin
2014-12-26 22:19 - 2015-01-04 17:50 - 00000000 ____D () C:\Users\Marian\Downloads\Gone Girl (2014)
2014-12-23 13:28 - 2014-12-23 13:28 - 00000162 ____H () C:\Users\Marian\Desktop\~$ámitky.docx.ZASIFROVANO-ZAPLAT 3000kc
2014-12-20 20:16 - 2015-01-04 17:51 - 00000000 ____D () C:\Users\Marian\Downloads\The Holiday (2006)
2014-12-20 13:24 - 2015-01-04 17:51 - 00000000 ____D () C:\Users\Marian\Downloads\This.War.of.Mine-RELOADED
2014-12-20 13:24 - 2015-01-04 17:50 - 00000000 ____D () C:\Users\Marian\Downloads\Divinity.Original.Sin-RELOADED
2014-12-17 16:42 - 2014-12-17 16:42 - 00000162 ____H () C:\Users\Marian\Downloads\~$azky fb.docx.ZASIFROVANO-ZAPLAT 3000kc
2014-12-16 22:16 - 2014-12-16 22:16 - 00426093 _____ () C:\Users\Marian\Downloads\TP II - přednášky a semináře(2).rar.ZASIFROVANO-ZAPLAT 3000kc
2014-12-16 20:55 - 2014-12-16 20:55 - 00027931 _____ () C:\Users\Marian\Downloads\SPP 13.1._2B20.1._2B27.1.2014 .xlsx.ZASIFROVANO-ZAPLAT 3000kc
2014-12-16 18:45 - 2014-12-16 18:45 - 00437181 _____ () C:\Users\Marian\Downloads\Sylaby.zip.ZASIFROVANO-ZAPLAT 3000kc
2014-12-16 18:45 - 2014-12-16 18:45 - 00031336 _____ () C:\Users\Marian\Downloads\sylaby pdv.docx.ZASIFROVANO-ZAPLAT 3000kc
2014-12-16 18:45 - 2014-12-16 18:45 - 00014929 _____ () C:\Users\Marian\Downloads\otazky fb.docx.ZASIFROVANO-ZAPLAT 3000kc
2014-12-16 18:44 - 2014-12-16 18:44 - 00267761 _____ () C:\Users\Marian\Downloads\Právo na označení.pdf.ZASIFROVANO-ZAPLAT 3000kc
2014-12-16 18:44 - 2014-12-16 18:44 - 00040061 _____ () C:\Users\Marian\Downloads\PDV - Syllaby.docx.ZASIFROVANO-ZAPLAT 3000kc
2014-12-16 18:43 - 2014-12-16 18:43 - 00794931 _____ () C:\Users\Marian\Downloads\trest.rar.ZASIFROVANO-ZAPLAT 3000kc
2014-12-14 21:56 - 2014-12-14 21:56 - 00011758 _____ () C:\Users\Marian\Downloads\Zadani_na_6._sem._PP.docx.ZASIFROVANO-ZAPLAT 3000kc
2014-12-13 01:50 - 2014-12-13 01:50 - 00829264 _____ (Microsoft Corporation) C:\Windows\system32\msvcr100.dll
2014-12-13 01:50 - 2014-12-13 01:50 - 00608080 _____ (Microsoft Corporation) C:\Windows\system32\msvcp100.dll
2014-12-12 23:28 - 2014-11-26 22:10 - 00714720 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-12-12 23:28 - 2014-11-26 22:10 - 00106976 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-12-12 23:22 - 2014-12-12 23:22 - 00773968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr100.dll
2014-12-12 23:22 - 2014-12-12 23:22 - 00421200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp100.dll
2014-12-11 22:03 - 2014-10-30 23:37 - 00129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2014-12-11 22:03 - 2014-10-30 23:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2014-12-10 17:12 - 2014-12-10 17:12 - 00016102 _____ () C:\Users\Marian\Downloads\správní rozhodnutí-DP.docx.ZASIFROVANO-ZAPLAT 3000kc
2014-12-10 13:45 - 2014-11-10 03:29 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupStatusProvider.dll
2014-12-10 13:45 - 2014-11-10 02:51 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceSetupStatusProvider.dll
2014-12-10 13:44 - 2014-11-07 05:16 - 01762840 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-12-10 13:44 - 2014-11-07 04:26 - 01489072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2014-12-10 13:44 - 2014-11-01 00:57 - 01091072 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll
2014-12-10 13:44 - 2014-11-01 00:47 - 00790528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll
2014-12-10 13:44 - 2014-10-31 00:39 - 01970432 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2014-12-10 13:44 - 2014-10-31 00:38 - 01612992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2014-12-10 13:43 - 2014-10-13 03:43 - 00238912 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys
2014-12-10 13:43 - 2014-10-13 03:43 - 00153920 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys
2014-12-10 13:43 - 2014-10-13 03:43 - 00086336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys
2014-12-10 13:43 - 2014-10-13 03:43 - 00039744 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys
2014-12-10 13:42 - 2014-11-22 04:13 - 25059840 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-12-10 13:42 - 2014-11-22 03:22 - 19749376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-12-10 13:41 - 2014-11-22 03:50 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-12-10 13:41 - 2014-11-22 03:49 - 02885120 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-12-10 13:41 - 2014-11-22 03:49 - 00417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-12-10 13:41 - 2014-11-22 03:48 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-12-10 13:41 - 2014-11-22 03:35 - 00812544 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-12-10 13:41 - 2014-11-22 03:34 - 06039552 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-12-10 13:41 - 2014-11-22 03:08 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-12-10 13:41 - 2014-11-22 03:07 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-12-10 13:41 - 2014-11-22 03:06 - 00340992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-12-10 13:41 - 2014-11-22 03:06 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-12-10 13:41 - 2014-11-22 03:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-12-10 13:41 - 2014-11-22 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-12-10 13:41 - 2014-11-22 03:01 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-12-10 13:41 - 2014-11-22 02:59 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2014-12-10 13:41 - 2014-11-22 02:55 - 00661504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-12-10 13:41 - 2014-11-22 02:52 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-12-10 13:41 - 2014-11-22 02:49 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-12-10 13:41 - 2014-11-22 02:49 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-12-10 13:41 - 2014-11-22 02:49 - 00373760 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-12-10 13:41 - 2014-11-22 02:46 - 02125312 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-12-10 13:41 - 2014-11-22 02:43 - 14412800 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-12-10 13:41 - 2014-11-22 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-12-10 13:41 - 2014-11-22 02:34 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-12-10 13:41 - 2014-11-22 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-12-10 13:41 - 2014-11-22 02:29 - 04299264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-12-10 13:41 - 2014-11-22 02:29 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2014-12-10 13:41 - 2014-11-22 02:28 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-12-10 13:41 - 2014-11-22 02:25 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-12-10 13:41 - 2014-11-22 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-12-10 13:41 - 2014-11-22 02:23 - 00326656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-12-10 13:41 - 2014-11-22 02:22 - 02052096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-12-10 13:41 - 2014-11-22 02:15 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-12-10 13:41 - 2014-11-22 02:13 - 12836864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-12-10 13:41 - 2014-11-22 02:03 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-12-10 13:41 - 2014-11-22 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-12-10 13:41 - 2014-11-22 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-12-10 13:41 - 2014-11-22 01:54 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-12-09 19:39 - 2014-12-09 19:39 - 00379311 _____ () C:\Users\Marian\Downloads\Semináře správní procesní 1 str. na list.pdf.ZASIFROVANO-ZAPLAT 3000kc
2014-12-08 23:29 - 2014-12-08 23:29 - 00000641 _____ () C:\Users\Marian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Desktop.lnk.ZASIFROVANO-ZAPLAT 3000kc
2014-12-08 21:24 - 2014-12-08 21:24 - 00260888 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsdrivera.sys
2014-12-08 11:44 - 2014-12-08 11:44 - 00000162 ____H () C:\Users\Marian\Downloads\~$je učební pomůcka.docx.ZASIFROVANO-ZAPLAT 3000kc
2014-12-08 00:31 - 2014-12-08 00:31 - 00016277 _____ () C:\Users\Marian\Downloads\mps - průběžné testy.docx.ZASIFROVANO-ZAPLAT 3000kc
2014-12-07 23:31 - 2014-12-07 23:31 - 00045372 _____ () C:\Users\Marian\Downloads\Moje učební pomůcka.docx.ZASIFROVANO-ZAPLAT 3000kc
2014-12-07 23:25 - 2014-12-07 23:25 - 00071398 _____ () C:\Users\Marian\Downloads\Moje učební pomůcka - rozhodci.docx.ZASIFROVANO-ZAPLAT 3000kc
2014-12-05 18:10 - 2015-01-04 17:51 - 00000000 ____D () C:\Users\Marian\Downloads\Subs

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-04 18:39 - 2014-10-10 08:43 - 00000000 ____D () C:\Program Files (x86)\Smart File Advisor
2015-01-04 18:37 - 2014-10-09 19:12 - 01981531 _____ () C:\Windows\WindowsUpdate.log
2015-01-04 18:33 - 2014-10-09 19:24 - 00003596 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1089976220-3449558695-605674926-1001
2015-01-04 18:29 - 2014-11-25 09:04 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-01-04 18:28 - 2014-04-02 10:50 - 00000000 ____D () C:\Program Files (x86)\MSBuild
2015-01-04 18:20 - 2014-03-18 10:38 - 00000000 ____D () C:\Windows\ShellNew
2015-01-04 18:18 - 2014-04-26 05:40 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection
2015-01-04 18:18 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2015-01-04 18:15 - 2014-10-09 19:20 - 00000000 ____D () C:\Users\Marian\Documents\Youcam
2015-01-04 18:14 - 2014-10-10 08:35 - 00000000 ___DO () C:\Users\Marian\OneDrive
2015-01-04 18:12 - 2014-10-09 19:18 - 00000000 ____D () C:\Users\Marian
2015-01-04 18:09 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-01-04 18:09 - 2013-08-22 15:44 - 00491752 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-01-04 18:08 - 2014-03-18 10:44 - 00062426 _____ () C:\Windows\PFRO.log
2015-01-04 18:00 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sru
2015-01-04 17:59 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM
2015-01-04 17:54 - 2014-10-25 10:48 - 00000000 ____D () C:\Users\Marian\AppData\Roaming\TuneUp Software
2015-01-04 17:54 - 2013-08-22 16:36 - 00000000 ___HD () C:\Windows\ELAMBKUP
2015-01-04 17:51 - 2014-11-28 17:54 - 00000000 ____D () C:\Users\Marian\Downloads\The.Maze.Runner.2014.DVDRip.XviD-EVO
2015-01-04 17:51 - 2014-11-22 22:17 - 00000000 ____D () C:\Users\Marian\Downloads\The Fault in Our Stars (2014)
2015-01-04 17:51 - 2014-11-17 11:21 - 00000000 ____D () C:\Users\Marian\Downloads\[www.Cpasbien.pe] Microsoft Office Professional Plus 2013 VL Edition x86 x64 FR
2015-01-04 17:51 - 2014-10-27 19:19 - 00000000 ____D () C:\Users\Marian\Downloads\Sex Tape 2014 720p BRRip x264 AAC-KiNGDOM
2015-01-04 17:51 - 2014-10-23 23:35 - 00000000 ____D () C:\Users\Marian\SystemRequirementsLab
2015-01-04 17:51 - 2014-10-11 19:34 - 00000000 ____D () C:\Users\Marian\Downloads\Sex Tape (2014)
2015-01-04 17:51 - 2013-08-22 16:36 - 00000000 __RHD () C:\Users\Public\Libraries
2015-01-04 17:50 - 2014-11-24 18:42 - 00000000 ____D () C:\Users\Marian\Downloads\Hořící keř [AVI]
2015-01-04 17:50 - 2014-11-22 17:13 - 00000000 ____D () C:\Users\Marian\Downloads\Guardians of the Galaxy (2014)
2015-01-04 17:50 - 2014-10-29 23:36 - 00000000 ____D () C:\Users\Marian\Downloads\Dawn.Of.The.Planet.of.The.Apes.2014.1080p.WEB-DL.DD51.H264-RARBG
2015-01-04 17:50 - 2014-10-29 19:37 - 00000000 ____D () C:\Users\Marian\Downloads\Hercules (2014) [1080p]
2015-01-04 17:50 - 2014-10-27 19:19 - 00000000 ____D () C:\Users\Marian\Downloads\One Day (2011)
2015-01-04 17:50 - 2014-10-17 15:19 - 00000000 ____D () C:\Users\Marian\Downloads\Adobe Photoshop CC 2014 (64 bit) (Crack) [ChingLiu]
2015-01-04 17:50 - 2014-10-10 22:22 - 00000000 ____D () C:\Users\Marian\Downloads\Civilization IV
2015-01-04 17:49 - 2014-10-27 19:46 - 00000000 ____D () C:\Users\Marian\Desktop\Z plochy
2015-01-04 17:49 - 2014-10-22 16:08 - 00000000 ____D () C:\Users\Marian\Downloads\A Clockwork Orange[1971]DvDrip[Eng]-FXG
2015-01-04 17:49 - 2014-10-21 12:40 - 00000000 ____D () C:\Users\Marian\Desktop\Praxe
2015-01-04 17:49 - 2014-10-13 22:51 - 00000000 ____D () C:\Users\Marian\Documents\Vlastní šablony Office
2015-01-04 17:49 - 2014-10-13 18:46 - 00000000 ____D () C:\Users\Marian\Desktop\Škola
2015-01-04 17:49 - 2014-10-11 20:38 - 00000000 ____D () C:\Users\Marian\Documents\My Games
2015-01-04 17:49 - 2014-10-09 19:18 - 00000000 ___HD () C:\Users\Marian\Documents\hp.system.package.metadata
2015-01-04 17:45 - 2014-10-19 10:20 - 00000000 ____D () C:\Users\Marian\AppData\Roaming\PhotoScape
2015-01-04 17:45 - 2014-10-12 09:51 - 00000000 ____D () C:\Users\Marian\AppData\Roaming\Origin
2015-01-04 17:45 - 2014-10-10 08:39 - 00000000 ____D () C:\Users\Marian\AppData\Roaming\Yandex
2015-01-04 17:45 - 2014-10-09 19:38 - 00000000 ____D () C:\Users\Marian\AppData\Roaming\uTorrent
2015-01-04 17:44 - 2014-10-09 21:47 - 00000000 ____D () C:\Users\Marian\AppData\Roaming\DAEMON Tools Lite
2015-01-04 17:44 - 2014-10-09 19:47 - 00000000 ____D () C:\Users\Marian\AppData\Roaming\BSplayer Pro
2015-01-04 17:44 - 2014-10-09 19:47 - 00000000 ____D () C:\Users\Marian\AppData\Roaming\BSplayer
2015-01-04 17:44 - 2014-10-09 19:18 - 00000000 ___RD () C:\Users\Marian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-01-04 17:44 - 2014-10-09 19:18 - 00000000 ___RD () C:\Users\Marian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-01-04 17:44 - 2014-10-09 19:18 - 00000000 ___RD () C:\Users\Marian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-01-04 17:44 - 2014-10-09 19:18 - 00000000 ____D () C:\Users\Marian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-01-04 17:43 - 2014-10-12 09:47 - 00000000 ____D () C:\Users\Marian\AppData\Local\SWTORPerf
2015-01-04 17:43 - 2014-10-10 09:50 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-01-04 17:42 - 2014-11-25 09:04 - 00000000 ____D () C:\Users\Marian\AppData\Local\Microsoft Help
2015-01-04 17:42 - 2014-10-10 09:01 - 00000000 ____D () C:\Users\Marian\AppData\Local\CodexisRPD
2015-01-04 17:42 - 2014-10-09 19:35 - 00000000 __SHD () C:\Users\Marian\AppData\Local\EmieUserList
2015-01-04 17:42 - 2014-10-09 19:35 - 00000000 __SHD () C:\Users\Marian\AppData\Local\EmieSiteList
2015-01-04 17:41 - 2014-04-01 02:07 - 00000000 ___HD () C:\SYSTEM.SAV
2015-01-04 17:35 - 2014-10-25 10:44 - 00000000 ____D () C:\ProgramData\TuneUp Software
2015-01-04 17:35 - 2014-10-12 09:44 - 00000000 ____D () C:\ProgramData\Origin
2015-01-04 17:35 - 2014-10-10 09:50 - 00000000 ____D () C:\ProgramData\McAfee Security Scan
2015-01-04 17:34 - 2014-10-21 18:03 - 00000000 ____D () C:\Program Files (x86)\Steam
2015-01-04 17:34 - 2014-10-09 21:46 - 00000000 ____D () C:\ProgramData\DAEMON Tools Lite
2015-01-04 17:34 - 2014-08-23 19:42 - 00000000 ____D () C:\ProgramData\install_clap
2015-01-04 17:33 - 2014-10-12 09:44 - 00000000 ____D () C:\Program Files (x86)\Origin
2015-01-04 17:30 - 2014-04-26 14:26 - 00000000 ___HD () C:\HP
2015-01-04 16:48 - 2014-12-02 13:37 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-01-04 16:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\System
2015-01-04 16:43 - 2013-08-22 14:25 - 00000108 _____ () C:\Windows\win.ini
2015-01-04 13:47 - 2014-10-09 19:24 - 00003966 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{A2AE62DB-9F82-405A-9ABA-99198AF28A08}
2015-01-03 17:17 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\BBI
2015-01-03 16:02 - 2014-10-11 14:32 - 00000052 _____ () C:\Windows\SysWOW64\DOErrors.log
2015-01-03 16:02 - 2014-10-11 14:32 - 00000000 _____ () C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2015-01-03 11:28 - 2014-10-13 19:04 - 00004970 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for MARIAN-Marian Marian
2015-01-03 11:12 - 2014-08-23 19:39 - 00000000 ____D () C:\Program Files\Common Files\mcafee
2015-01-02 22:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\LiveKernelReports
2015-01-02 09:21 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness
2015-01-01 12:29 - 2014-04-26 14:47 - 00768392 _____ () C:\Windows\system32\perfh005.dat
2015-01-01 12:29 - 2014-04-26 14:47 - 00166490 _____ () C:\Windows\system32\perfc005.dat
2015-01-01 12:29 - 2014-03-18 10:53 - 01883040 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-01-01 06:15 - 2014-10-09 19:38 - 00000000 ____D () C:\Program Files (x86)\SearchProtect
2014-12-26 12:18 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\NDF
2014-12-21 19:35 - 2013-08-22 15:46 - 00029534 _____ () C:\Windows\setupact.log
2014-12-19 18:19 - 2013-08-22 16:20 - 00000000 ____D () C:\Windows\CbsTemp
2014-12-17 23:30 - 2014-10-09 19:18 - 00000000 ____D () C:\Users\Marian\AppData\Local\Packages
2014-12-17 18:49 - 2014-10-09 19:50 - 00000974 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-12-17 18:49 - 2014-10-09 19:50 - 00000970 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-12-17 14:44 - 2014-10-09 19:50 - 00003948 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-12-17 14:44 - 2014-10-09 19:50 - 00003712 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-12-14 01:02 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\rescache
2014-12-12 23:23 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-RS
2014-12-12 23:23 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-CS
2014-12-12 23:23 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-12-10 14:33 - 2014-10-11 08:29 - 00000000 ____D () C:\Windows\system32\MRT
2014-12-10 14:18 - 2014-10-11 08:29 - 112710672 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-12-09 19:44 - 2014-10-10 09:50 - 00003802 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-12-05 00:43 - 2014-10-09 19:58 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service

Some content of TEMP:
====================
C:\Users\Marian\AppData\Local\Temp\Extract.exe
C:\Users\Marian\AppData\Local\Temp\ose00000.exe
C:\Users\Marian\AppData\Local\Temp\ose00001.exe
C:\Users\Marian\AppData\Local\Temp\ose00004.exe
C:\Users\Marian\AppData\Local\Temp\rootsupd.exe
C:\Users\Marian\AppData\Local\Temp\service.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-01-01 14:41

==================== End Of Log ============================

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Virus

#2 Příspěvek od motji »

Zdravím :)
Tak to máte docela problém, v součastné době tyto soubory nejdou rozšifrovat. Ale pokud máte zapnuté body obnovy, možná to půjde obnovit ze stínové kopie. Ale ted nesmíte dělat žádné hokusy pokusy, jinak se mohou smazat body obnovy.
Tohle již nelze řešit přes forum, odkáži Vás na naši službu www.Neslape.cz.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Odpovědět