Zdravím,
omylom som tento príspevok postol do zlej rubriky, takže tu je to asi správne.
Ahoj, poprosím o preventívku, dík.
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 24-01-2015 01
Ran by Vilo (administrator) on VILONOTAS on 26-01-2015 10:17:36
Running from C:\Users\Vilo\Desktop
Loaded Profiles: Vilo (Available profiles: Vilo)
Platform: Windows 8.1 (X64) OS Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe
(ASUS) C:\Program Files\ASUS\P4G\BatteryLife.exe
(ASUSTek Computer Inc.) C:\Program Files\ASUS\ASUS Console\ASUS Console Starter.exe
(Acronis) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Acronis) C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe
(Acronis) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe
(Hanwang Technology Co.,Ltd. ) C:\Program Files\ASUS\ASUS FaceID\HWFaceKeyService.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(ASUS) C:\Program Files\ASUS\P4G\InsOnSrv.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(ASUS) C:\Program Files\ASUS\P4G\InsOnWMI.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Firebird Project) C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbguard.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Nalpeiron Ltd.) C:\Windows\SysWOW64\nlssrv32.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Disc Soft Ltd) C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe
(Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Sony Corporation) C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
(Firebird Project) C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbserver.exe
(Microsoft Corporation) C:\Windows\System32\alg.exe
(Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17477_none_fa2b7d3b9b36c7b4\TiWorker.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(OrdinarySoft) C:\Program Files\Start Menu X\StartMenuX.exe
(Acresso Corporation) C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe
(ZONER software) C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTray.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\APRP\aprp.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PDF Viewer Plus\pdfPro5Hook.exe
(Intel® Corporation) C:\Program Files\Intel\TurboBoost\SignalIslandUi.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\BrYNSvc.exe
(Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe
(Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Intel(R) Corporation) C:\Program Files\Intel\TurboBoost\TurboBoost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(forum.viry.cz) C:\Users\Vilo\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [518424 2013-07-18] (Acronis)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2352072 2014-05-30] (NVIDIA Corporation)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [558496 2014-02-27] (Adobe Systems Incorporated)
HKLM\...\Run: [IntelTBRunOnce] => wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs"
HKLM-x32\...\Run: [ASUSPRP] => C:\Program Files (x86)\ASUS\APRP\APRP.EXE [3216032 2013-12-12] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [95192 2013-03-08] (CyberLink Corp.)
HKLM-x32\...\Run: [ASUS InstantKey] => C:\Program Files (x86)\ASUS\ASUS Instant Key\Ikey_start.exe [13936 2013-12-19] (ASUS)
HKLM-x32\...\Run: [TrueImageMonitor.exe] => C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [7780696 2013-08-22] (Acronis)
HKLM-x32\...\Run: [AcronisTibMounterMonitor] => C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe [1103424 2013-01-10] (Acronis)
HKLM-x32\...\Run: [IndexSearch] => C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe [46368 2010-03-08] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PaperPort PTD] => C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe [29984 2010-03-08] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PPort12reminder] => C:\Program Files (x86)\Nuance\PaperPort\Ereg\Ereg.exe [328992 2010-02-09] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PDFHook] => C:\Program Files (x86)\Nuance\PDF Viewer Plus\pdfpro5hook.exe [636192 2010-03-05] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PDF5 Registry Controller] => C:\Program Files (x86)\Nuance\PDF Viewer Plus\RegistryController.exe [62752 2010-03-05] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [143360 2012-09-06] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [3076096 2012-06-06] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [PMBVolumeWatcher] => C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [2548248 2014-04-23] (Sony Corporation)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1075296 2013-04-25] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe [3499920 2014-09-12] (Adobe Systems Inc.)
HKLM-x32\...\Run: [KiesTrayAgent] => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [311616 2014-12-17] (Samsung Electronics Co., Ltd.)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [157480 2014-10-15] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [508800 2014-12-17] (Oracle Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer: [NoFolderOptions] 0
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKU\S-1-5-21-905816621-1185614501-4027299453-1002\...\Run: [StartMenuX] => C:\Program Files\Start Menu X\StartMenuX.exe [7682368 2014-04-28] (OrdinarySoft)
HKU\S-1-5-21-905816621-1185614501-4027299453-1002\...\Run: [Zoner Photo Studio Service 16] => C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSService.exe [27672 2013-10-18] ()
HKU\S-1-5-21-905816621-1185614501-4027299453-1002\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [222496 2009-05-05] (Acresso Corporation)
HKU\S-1-5-21-905816621-1185614501-4027299453-1002\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-905816621-1185614501-4027299453-1002\...\Run: [DAEMON Tools Pro Agent] => C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe [3129560 2014-02-24] (Disc Soft Ltd)
HKU\S-1-5-21-905816621-1185614501-4027299453-1002\...\Run: [PC Suite Tray] => C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [1516632 2012-06-26] (Nokia)
HKU\S-1-5-21-905816621-1185614501-4027299453-1002\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7063832 2014-11-21] (Piriform Ltd)
HKU\S-1-5-21-905816621-1185614501-4027299453-1002\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [43816 2014-11-21] (Apple Inc.)
HKU\S-1-5-21-905816621-1185614501-4027299453-1002\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [43816 2014-11-21] (Apple Inc.)
HKU\S-1-5-21-905816621-1185614501-4027299453-1002\...\Run: [iCloudDrive] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe [43816 2014-11-21] (Apple Inc.)
HKU\S-1-5-21-905816621-1185614501-4027299453-1002\...\Run: [Zoner Photo Studio Autoupdate] => C:\PROGRAM FILES\ZONER\PHOTO STUDIO 16\Program32\ZPSTRAY.EXE [801816 2013-10-18] (ZONER software)
HKU\S-1-5-21-905816621-1185614501-4027299453-1002\...\MountPoints2: {727a896e-e111-11e3-825d-ac7ba18a6abe} - "H:\LaunchU3.exe"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Install LastPass FF RunOnce.lnk
ShortcutTarget: Install LastPass FF RunOnce.lnk -> C:\Program Files (x86)\Common Files\lpuninstall.exe (LastPass)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Install LastPass IE RunOnce.lnk
ShortcutTarget: Install LastPass IE RunOnce.lnk -> C:\Program Files (x86)\Common Files\lpuninstall.exe (LastPass)
Startup: C:\Users\Vilo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Intel(R) Turbo Boost Technology Monitor 2.6.lnk
ShortcutTarget: Intel(R) Turbo Boost Technology Monitor 2.6.lnk -> C:\Program Files\Intel\TurboBoost\SignalIslandUi.exe (Intel® Corporation)
ShellIconOverlayIdentifiers: [AcronisSyncError] -> {934BC6C0-FEC2-4df5-A100-961DE2C8A0ED} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll (Acronis)
ShellIconOverlayIdentifiers: [AcronisSyncInProgress] -> {00F848DC-B1D4-4892-9C25-CAADC86A215D} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll (Acronis)
ShellIconOverlayIdentifiers: [AcronisSyncOk] -> {71573297-552E-46fc-BE3D-3DFAF88D47B7} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll (Acronis)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-905816621-1185614501-4027299453-1002\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.sk/?gws_rd=ssl
HKU\S-1-5-21-905816621-1185614501-4027299453-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus13.msn.com/?pc=ASJB
SearchScopes: HKU\S-1-5-21-905816621-1185614501-4027299453-1002 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-905816621-1185614501-4027299453-1002 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll (Oracle Corporation)
BHO: LastPass Vault -> {95D9ECF5-2A4D-4550-BE49-70D42F71296E} -> C:\Program Files (x86)\LastPass\LPToolbar_x64.dll (LastPass)
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll (Oracle Corporation)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO-x32: PlusIEEventHelper Class -> {551A852F-39A6-44A7-9C13-AFBEC9185A9D} -> C:\Program Files (x86)\Nuance\PDF Viewer Plus\Bin\PlusIEContextMenu.dll (Zeon Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll (Oracle Corporation)
BHO-x32: LastPass Vault -> {95D9ECF5-2A4D-4550-BE49-70D42F71296E} -> C:\Program Files (x86)\LastPass\LPToolbar.dll (LastPass)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKLM - LastPass Toolbar - {9f6b5cc3-5c7b-4b5c-97af-19dec1e380e5} - C:\Program Files (x86)\LastPass\LPToolbar_x64.dll (LastPass)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKLM-x32 - LastPass Toolbar - {9f6b5cc3-5c7b-4b5c-97af-19dec1e380e5} - C:\Program Files (x86)\LastPass\LPToolbar.dll (LastPass)
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKU\S-1-5-21-905816621-1185614501-4027299453-1002 -> Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll (Adobe Systems Incorporated)
DPF: HKLM-x32 {62789780-B744-11D0-986B-00609731A21D} http://195.28.70.134/kapor2/lib/mgaxctrl.cab
DPF: HKLM-x32 {FD3BEB0C-AB43-4253-9146-C371D48FBE0D} http://peamsro.ddns.net/web.cab
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.102.1 192.168.102.253
FireFox:
========
FF ProfilePath: C:\Users\Vilo\AppData\Roaming\Mozilla\Firefox\Profiles\ankdgt9h.default
FF Homepage: https://www.google.sk/
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_296.dll ()
FF Plugin: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @lastpass.com/NPLastPass -> C:\Program Files (x86)\LastPass\nplastpass64.dll (LastPass)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll No File
FF Plugin: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\Win64Plugin\npAdobeExManDetectX64.dll (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_296.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @lastpass.com/NPLastPass -> C:\Program Files (x86)\LastPass\nplastpass.dll (LastPass)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll (Adobe Systems)
FF Plugin HKU\.DEFAULT: ditec.sk/DSigXadesFb -> C:\Program Files (x86)\Ditec\DSigXades\npDitec.Zep.DSigXadesFb.dll (Ditec,a.s.)
FF Plugin HKU\S-1-5-21-905816621-1185614501-4027299453-1002: ditec.sk/DSigXadesFb -> C:\Program Files (x86)\Ditec\DSigXades\npDitec.Zep.DSigXadesFb.dll (Ditec,a.s.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Extension: iCloud Bookmarks - C:\Users\Vilo\AppData\Roaming\Mozilla\Firefox\Profiles\ankdgt9h.default\Extensions\firefoxdav@icloud.com [2014-12-26]
FF Extension: LastPass - C:\Users\Vilo\AppData\Roaming\Mozilla\Firefox\Profiles\ankdgt9h.default\Extensions\support@lastpass.com [2015-01-02]
FF Extension: Adblock Plus - C:\Users\Vilo\AppData\Roaming\Mozilla\Firefox\Profiles\ankdgt9h.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-12-04]
FF HKLM-x32\...\Firefox\Extensions: [{00ADD29A-66F4-4f22-BCC0-4C1D29DA647B}] - C:\Program Files (x86)\LG Electronics\LG PC Suite IV\LinkAir\{00ADD29A-66F4-4f22-BCC0-4C1D29DA647B}
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: Adobe Acrobat - Create PDF - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn [2014-09-26]
Chrome:
=======
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx [2014-09-12]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 ASUS FaceID Service; C:\Program Files\ASUS\ASUS FaceID\HWFaceKeyService.exe [261648 2013-10-24] (Hanwang Technology Co.,Ltd. )
R2 ASUS InstantOn; C:\Program Files\ASUS\P4G\InsOnSrv.exe [277120 2013-08-29] (ASUS)
R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [266240 2012-06-05] (Brother Industries, Ltd.) [File not signed]
R2 FirebirdGuardianDefaultInstance; C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbguard.exe [98304 2013-03-19] (Firebird Project) [File not signed]
R3 FirebirdServerDefaultInstance; C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbserver.exe [3784704 2013-03-19] (Firebird Project) [File not signed]
R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [227936 2013-11-09] (WildTangent)
R2 gvydovxyqyofpv; c:\windows\SysWOW64\IUCMAQ~1.EXE [76800 2013-01-31] (LIMITED) [File not signed]
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-09-03] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-03] (Intel Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [284912 2013-11-20] ()
R2 nlsX86cc; C:\Windows\SysWOW64\nlssrv32.exe [66560 2012-09-05] (Nalpeiron Ltd.) [File not signed]
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1631008 2014-05-30] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21055432 2014-05-30] (NVIDIA Corporation)
R2 PDFProFiltSrvPP; C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe [144672 2010-03-08] (Nuance Communications, Inc.)
R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [481816 2014-04-23] (Sony Corporation)
R2 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe [743688 2014-10-13] (DEVGURU Co., LTD.)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3674864 2013-11-20] (Intel® Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S3 Andbus; C:\Windows\System32\drivers\lgandbus64.sys [19456 2012-03-02] (LG Electronics Inc.)
S3 AndDiag; C:\Windows\system32\DRIVERS\lganddiag64.sys [27648 2012-03-02] (LG Electronics Inc.)
S3 AndGps; C:\Windows\system32\DRIVERS\lgandgps64.sys [27136 2012-03-02] (LG Electronics Inc.)
S3 ANDModem; C:\Windows\system32\DRIVERS\lgandmodem64.sys [34304 2012-03-02] (LG Electronics Inc.)
R3 ATP; C:\Windows\System32\drivers\AsusTP.sys [70928 2013-11-08] (ASUS Corporation)
R3 BthLEEnum; C:\Windows\System32\drivers\BthLEEnum.sys [226304 2013-12-04] (Microsoft Corporation)
R3 btmaux; C:\Windows\system32\DRIVERS\btmaux.sys [140600 2013-07-22] (Motorola Solutions, Inc.)
R3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1408824 2013-10-18] (Motorola Solutions, Inc.)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2014-08-07] (Disc Soft Ltd)
S3 GemCCID; C:\Windows\System32\Drivers\GemCCID.sys [130944 2014-11-10] (Gemalto)
R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [142280 2013-10-18] (Intel Corporation)
R3 kbfiltr; C:\Windows\System32\drivers\kbfiltr.sys [17280 2012-08-06] ( )
R3 LgBttPort; C:\Windows\system32\DRIVERS\lgbtpt64.sys [16384 2009-09-29] (LG Electronics Inc.)
R3 lgbusenum; C:\Windows\System32\drivers\lgbtbs64.sys [14848 2009-09-29] (LG Electronics Inc.)
R3 LGVMODEM; C:\Windows\system32\DRIVERS\lgvmdm64.sys [17408 2009-09-29] (LG Electronics Inc.)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-03] (Intel Corporation)
R3 NETwNb64; C:\Windows\system32\DRIVERS\NETwbw02.sys [3609568 2013-12-25] (Intel Corporation)
S3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew02.sys [4649440 2013-06-18] (Intel Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-05-30] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
R2 plctrl; C:\Program Files\ASUS\P4G\plctrl.sys [14136 2013-08-29] (Windows (R) Win 7 DDK provider)
R0 PxHlpa64; C:\Windows\System32\Drivers\PxHlpa64.sys [56336 2012-06-22] (Corel Corporation)
R0 tib; C:\Windows\System32\DRIVERS\tib.sys [1120032 2014-05-22] (Acronis International GmbH)
R0 tib_mounter; C:\Windows\System32\DRIVERS\tib_mounter.sys [183224 2014-05-22] (Acronis)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation)
U0 msahci; system32\drivers\msahci.sys
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-26 10:17 - 2015-01-26 10:17 - 00029793 _____ () C:\Users\Vilo\Desktop\FRST.txt
2015-01-26 10:17 - 2015-01-26 10:17 - 00000000 ____D () C:\FRST
2015-01-26 10:10 - 2015-01-26 10:15 - 00000696 _____ () C:\Windows\setupact.log
2015-01-26 10:10 - 2015-01-26 10:10 - 00000000 _____ () C:\Windows\setuperr.log
2015-01-26 10:08 - 2015-01-26 10:08 - 00002484 _____ () C:\Users\Vilo\Documents\cc_20150126_100854.reg
2015-01-26 10:05 - 2015-01-26 10:05 - 00112640 _____ (forum.viry.cz) C:\Users\Vilo\Downloads\FRSTLauncher.exe
2015-01-26 10:05 - 2015-01-26 10:05 - 00112640 _____ (forum.viry.cz) C:\Users\Vilo\Desktop\FRSTLauncher.exe
2015-01-26 10:04 - 2015-01-26 10:04 - 02129920 _____ (Farbar) C:\Users\Vilo\Downloads\FRST64.exe
2015-01-26 10:04 - 2015-01-26 10:04 - 02129920 _____ (Farbar) C:\Users\Vilo\Desktop\FRST64.exe
2015-01-26 09:55 - 2015-01-26 09:55 - 00006765 _____ () C:\Users\Vilo\Downloads\[TreZzoR]Malwarebytes.Anti-Malware.Premium.v2.0.4.1028.MULTILINGUAL-CRD.torrent
2015-01-25 17:12 - 2015-01-25 17:13 - 00000022 _____ () C:\Users\Vilo\Downloads\MEGA-MASTERKEY.txt
2015-01-25 15:04 - 2015-01-25 15:04 - 00000923 _____ () C:\Users\Vilo\Desktop\MediaInfo.lnk
2015-01-25 15:04 - 2015-01-25 15:04 - 00000000 ____D () C:\Users\Vilo\AppData\Roaming\MediaInfo
2015-01-25 14:59 - 2015-01-25 14:59 - 00000923 _____ () C:\Users\Vilo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MediaInfo.lnk
2015-01-25 14:59 - 2015-01-25 14:59 - 00000000 ____D () C:\Program Files\MediaInfo
2015-01-25 14:56 - 2015-01-25 14:58 - 04760024 _____ (MediaArea.net) C:\Users\Vilo\Downloads\MediaInfo_GUI_0.7.72_Windows.exe
2015-01-25 14:02 - 2015-01-25 14:02 - 00035755 _____ () C:\Users\Vilo\Downloads\[TreZzoR]Drakula_ Neznama legenda _ Dracula.Untold.2014.720p.DTS.x264.CZ-TreZzoR.torrent
2015-01-25 14:00 - 2015-01-25 14:00 - 00035676 _____ () C:\Users\Vilo\Downloads\[TreZzoR]Let’s Dance All In _ Step.Up.All.In.2014.720p.BluRay.DTS.x264.CZ-TreZzoR.torrent
2015-01-25 13:59 - 2015-01-25 13:59 - 00019537 _____ () C:\Users\Vilo\Downloads\[TreZzoR]The Gambler 2014 DVDScr.XVID.AC3.HQ.Hive-CM8.torrent
2015-01-25 13:59 - 2015-01-25 13:59 - 00019537 _____ () C:\Users\Vilo\Downloads\[TreZzoR]The Gambler 2014 DVDScr.XVID.AC3.HQ.Hive-CM8(1).torrent
2015-01-25 13:59 - 2015-01-25 13:59 - 00016088 _____ () C:\Users\Vilo\Downloads\[TreZzoR]Co s laskou - The Best of Me 2014.BRRip.XviD.AC3-EVO.torrent
2015-01-25 13:58 - 2015-01-25 13:58 - 00014352 _____ () C:\Users\Vilo\Downloads\[TreZzoR]Miss.Meadows.2014.HDRip.torrent
2015-01-25 13:57 - 2015-01-25 13:57 - 00015183 _____ () C:\Users\Vilo\Downloads\[TreZzoR]Cake.2014.DVDScr.XVID.AC3.HQ.Hive-CM8.torrent
2015-01-25 13:57 - 2015-01-25 13:57 - 00013167 _____ () C:\Users\Vilo\Downloads\[TreZzoR]Exodus Gods And Kings 2014 720p HDCAM ENG FIRST x264 Pimp4003.torrent
2015-01-25 13:56 - 2015-01-25 13:56 - 00015931 _____ () C:\Users\Vilo\Downloads\[TreZzoR]The.Interview.2014.1080P.5.1.DD.Custom.UnlimitedMovieS.torrent
2015-01-25 13:55 - 2015-01-25 13:55 - 00045860 _____ () C:\Users\Vilo\Downloads\[TreZzoR]Paserak - The Mule 2014 1080p.BluRay.X264-CADAVER.torrent
2015-01-25 12:42 - 2015-01-25 12:42 - 00099168 _____ () C:\Users\Vilo\Downloads\[TreZzoR]V oku tornada _ Into.The.Storm.2014.1080p.BluRay.x264.DTS-HDAccess.CZ-FTU.torrent
2015-01-25 12:39 - 2015-01-25 12:39 - 00050812 _____ () C:\Users\Vilo\Downloads\[TreZzoR]Fury 2014.1080p.BluRay.x264-SPARKS.torrent
2015-01-23 15:24 - 2015-01-23 15:24 - 00072271 _____ () C:\Users\Vilo\Downloads\[TreZzoR]A.Walk.Among.the.Tombstones.2014.Bluray.1080p.DTS-HD.x264-Grym.torrent
2015-01-23 15:23 - 2015-01-23 15:23 - 00033209 _____ () C:\Users\Vilo\Downloads\[TreZzoR]Moje segra ma prima brachu _ The.Skeleton.Twins.2014.PROPER.720p.BluRay.DTS.x264.CZ-TreZzoR.torrent
2015-01-23 15:22 - 2015-01-23 15:22 - 00042510 _____ () C:\Users\Vilo\Downloads\[TreZzoR]Snezny.drak.2013.720p.HDTV.x264-DON.torrent
2015-01-22 14:48 - 2015-01-22 14:48 - 00034019 _____ () C:\Users\Vilo\Downloads\[TreZzoR]Dracula.Untold.2014.1080p.BluRay.x264-VeDeTT.torrent
2015-01-22 11:55 - 2015-01-22 11:55 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-01-22 11:52 - 2015-01-22 11:52 - 00639912 _____ (Oracle Corporation) C:\Users\Vilo\Downloads\jxpiinstall.exe
2015-01-22 11:39 - 2015-01-22 11:39 - 00000000 ____D () C:\ProgramData\Sun
2015-01-21 15:08 - 2015-01-21 15:08 - 00016769 _____ () C:\Users\Vilo\Downloads\[TreZzoR]Vice 2015 720p WEB-Rip x264 AAC - KiNGDOM.torrent
2015-01-21 15:07 - 2015-01-21 15:07 - 00012317 _____ () C:\Users\Vilo\Downloads\[TreZzoR]Interstellar 2014 DVDScr.XVID.AC3.HQ.Hive-CM8.torrent
2015-01-20 11:27 - 2015-01-20 11:27 - 00085209 _____ () C:\Users\Vilo\Downloads\[TreZzoR]Laska na kari _ The.Hundred.Foot.Journey.2014.1080p.BluRay.DTS.x264-EbP.CZ-FTU.torrent
2015-01-20 11:27 - 2015-01-20 11:27 - 00085209 _____ () C:\Users\Vilo\Downloads\[TreZzoR]Laska na kari _ The.Hundred.Foot.Journey.2014.1080p.BluRay.DTS.x264-EbP.CZ-FTU(1).torrent
2015-01-20 11:25 - 2015-01-20 11:25 - 00026031 _____ () C:\Users\Vilo\Downloads\[TreZzoR](Ne)zadani _ That.Awkward.Moment.2014.720p.BluRay.DTS.x264.CZ-TreZzoR.torrent
2015-01-14 06:50 - 2014-12-19 07:26 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2015-01-14 06:50 - 2014-12-12 03:04 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2015-01-14 06:50 - 2014-12-12 01:51 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys
2015-01-14 06:50 - 2014-12-09 02:50 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2015-01-14 06:50 - 2014-12-08 20:42 - 00535640 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2015-01-14 06:50 - 2014-12-08 20:42 - 00531616 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2015-01-14 06:50 - 2014-12-08 20:42 - 00448792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2015-01-14 06:50 - 2014-12-08 20:42 - 00413248 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2015-01-14 06:50 - 2014-12-08 20:42 - 00372408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll
2015-01-14 06:50 - 2014-12-08 20:42 - 00108944 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2015-01-14 06:50 - 2014-12-08 20:42 - 00038264 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe
2015-01-14 06:50 - 2014-12-08 20:42 - 00033584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe
2015-01-14 06:50 - 2014-12-06 04:17 - 00360448 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2015-01-14 06:50 - 2014-12-06 02:41 - 00391680 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2015-01-14 06:50 - 2014-12-06 02:35 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2015-01-14 06:50 - 2014-10-29 05:00 - 00465320 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe
2015-01-14 06:50 - 2014-10-29 05:00 - 00139984 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe
2015-01-14 06:50 - 2014-10-29 04:52 - 00500016 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2015-01-14 06:50 - 2014-10-29 04:52 - 00482872 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2015-01-14 06:50 - 2014-10-29 04:52 - 00394120 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2015-01-14 06:50 - 2014-10-29 04:52 - 00272248 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2015-01-14 06:50 - 2014-10-29 04:12 - 00413136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe
2015-01-14 06:50 - 2014-10-29 04:12 - 00136296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe
2015-01-14 06:50 - 2014-10-29 04:07 - 00424544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2015-01-14 06:50 - 2014-10-29 04:07 - 00370424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2015-01-14 06:50 - 2014-10-29 04:07 - 00344536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2015-01-14 06:50 - 2014-10-29 03:44 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll
2015-01-14 06:50 - 2014-10-29 02:59 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werdiagcontroller.dll
2015-01-14 06:50 - 2014-10-29 02:24 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2015-01-14 06:50 - 2014-10-29 02:02 - 00911360 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-01-14 06:50 - 2014-10-29 02:01 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
2015-01-13 15:30 - 2015-01-13 15:30 - 00012670 _____ () C:\Users\Vilo\Downloads\[TreZzoR]Haejuk - The Pirates 2014 BDRip.x264-ROVERS CZ titulky.torrent
2015-01-13 15:29 - 2015-01-13 15:29 - 00016477 _____ () C:\Users\Vilo\Downloads\[TreZzoR]John Wick 2014 720p.WEB-DL.x264 [ETRG] CZ titulky.torrent
2015-01-13 10:00 - 2015-01-13 10:00 - 00002438 _____ () C:\Users\Vilo\Documents\cc_20150113_100024.reg
2015-01-10 10:00 - 2015-01-10 10:00 - 00034114 _____ () C:\Users\Vilo\Downloads\[TreZzoR]Co delame v temnotach - What We Do in the Shadows 2014 LIMITED.1080p.BluRay.X264-AMIABLE CZ titulky.torrent
2015-01-10 09:57 - 2015-01-10 09:57 - 00017360 _____ () C:\Users\Vilo\Downloads\[TreZzoR]Driv nez pujdu spat - Before I Go To Sleep 2014 LIMITED.720p.BluRay.X264-GECKOS CZ titulky.torrent
2015-01-10 09:55 - 2015-01-10 09:55 - 00014534 _____ () C:\Users\Vilo\Downloads\[TreZzoR]iNumber Number - Avenged 2013 BRRip XViD-ViCKY CZ titulky.torrent
2015-01-10 09:53 - 2015-01-10 09:53 - 00017966 _____ () C:\Users\Vilo\Downloads\[TreZzoR]New World - Sinsegye 2013 LIMITED.BDRip.x264-KEBAP CZ titulky.torrent
2015-01-10 09:51 - 2015-01-10 09:51 - 00016258 _____ () C:\Users\Vilo\Downloads\[TreZzoR]Whiplash 2014 720p.WEB-DL.AAC2.0.H264-SneaKyTPB CZ titulky.torrent
2015-01-10 09:49 - 2015-01-10 09:49 - 00022781 _____ () C:\Users\Vilo\Downloads\[TreZzoR]Pride.2014.720p.BluRay.x264-BRMP.torrent
2015-01-09 23:45 - 2015-01-10 12:01 - 01276374 _____ () C:\Users\Vilo\Downloads\video-1420842010.mp4.mp4
2015-01-07 15:20 - 2015-01-07 15:20 - 00053095 _____ () C:\Users\Vilo\Downloads\[CzT]Adobe_Illustrator_CC_v18_0_0_2014_CZ_x64_.torrent
2015-01-07 15:02 - 2015-01-07 15:02 - 00016290 _____ () C:\Users\Vilo\Downloads\[TreZzoR]Adobe Illustrator CS5 Oficialni vyukovy kurz.torrent
2015-01-07 14:38 - 2015-01-07 14:38 - 00622998 _____ () C:\Users\Vilo\Downloads\abstract_blue_wave_lines_vector_background_267670.zip
2015-01-07 13:59 - 2015-01-07 13:59 - 00000132 _____ () C:\Users\Vilo\AppData\Roaming\Filtr IIIExport Adobe CS5 – předvolby
2015-01-03 08:43 - 2015-01-03 08:43 - 00002879 _____ () C:\Users\Vilo\Downloads\config.bin
2015-01-03 08:42 - 2015-01-03 08:42 - 03720571 _____ () C:\Users\Vilo\Downloads\DIR-600_fw_revBx_2-17b02_all_en_20140317.zip
2014-12-31 12:40 - 2014-12-31 12:40 - 00024129 _____ () C:\Users\Vilo\Downloads\[TreZzoR]Reasonable.Doubt.2014.720p.BluRay.x264.AC3.SK.DTS.EN-GRiNGO.torrent
2014-12-31 12:38 - 2014-12-31 12:38 - 00066826 _____ () C:\Users\Vilo\Downloads\[TreZzoR]Princezna a pisar 2014 720p HDTV DD5.1 x264-DON.torrent
2014-12-31 12:34 - 2014-12-31 12:34 - 00016974 _____ () C:\Users\Vilo\Downloads\[TreZzoR]Penthouse.North.2013.BDRip.XViD.MP3.SK-GRiNGO.avi.torrent
2014-12-29 13:51 - 2014-12-29 13:51 - 00036019 _____ () C:\Users\Vilo\Downloads\[TreZzoR]Borgman.2013.BDRip.XviD.CZ-TreZzoR.torrent
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-26 10:19 - 2014-03-25 17:44 - 00000000 ____D () C:\ProgramData\Temp
2015-01-26 10:16 - 2014-05-21 18:17 - 00000074 _____ () C:\Users\Vilo\AppData\Roaming\sp_data.sys
2015-01-26 10:15 - 2014-12-26 19:47 - 00000000 ___RD () C:\Users\Vilo\iCloudDrive
2015-01-26 10:15 - 2014-06-29 12:47 - 00000374 _____ () C:\Windows\system32\Drivers\etc\hosts.ics
2015-01-26 10:15 - 2014-05-28 08:43 - 00000000 ____D () C:\Users\Vilo\AppData\Local\CrashDumps
2015-01-26 10:15 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-01-26 10:14 - 2014-11-13 10:45 - 01809274 _____ () C:\Windows\WindowsUpdate.log
2015-01-26 10:06 - 2014-06-04 12:36 - 00000000 ____D () C:\Users\Vilo\AppData\Roaming\uTorrent
2015-01-26 10:06 - 2014-05-22 19:30 - 00000000 ____D () C:\ProgramData\firebird
2015-01-26 10:00 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sru
2015-01-26 09:53 - 2014-05-28 10:39 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-01-26 05:56 - 2014-05-21 18:22 - 00003970 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{64803130-6137-4C05-8AFB-818165CEC259}
2015-01-26 02:00 - 2014-05-22 17:41 - 00000000 ____D () C:\Users\Vilo\AppData\Local\Adobe
2015-01-26 00:33 - 2014-09-10 07:06 - 00000000 ____D () C:\Users\Vilo\AppData\Local\PokerStars.NET
2015-01-25 17:04 - 2014-05-21 18:21 - 00003598 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-905816621-1185614501-4027299453-1002
2015-01-25 15:09 - 2013-12-12 22:01 - 00863592 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-01-25 15:01 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\BBI
2015-01-25 14:53 - 2014-05-21 18:16 - 00000000 ____D () C:\Users\Vilo\AppData\Local\Packages
2015-01-24 23:53 - 2014-05-28 10:39 - 00003718 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-01-23 14:24 - 2013-08-22 16:20 - 00000000 ____D () C:\Windows\CbsTemp
2015-01-22 11:55 - 2014-06-16 13:00 - 00002449 _____ () C:\Users\Vilo\Desktop\eDANE-Java – aplikácia sekcie daňovej FR SR pre podávanie daňových dokumentov.lnk
2015-01-22 11:55 - 2014-05-21 18:56 - 00000000 ____D () C:\ProgramData\Oracle
2015-01-22 11:55 - 2014-05-21 18:52 - 00000000 ____D () C:\Program Files (x86)\Java
2015-01-22 11:38 - 2014-05-21 18:57 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-01-22 11:37 - 2014-07-25 09:33 - 00111016 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2015-01-22 11:37 - 2014-05-21 18:53 - 00319912 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2015-01-22 11:37 - 2014-05-21 18:53 - 00191400 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2015-01-22 11:37 - 2014-05-21 18:53 - 00190888 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2015-01-22 11:37 - 2014-05-21 18:53 - 00000000 ____D () C:\Program Files\Java
2015-01-22 11:31 - 2014-09-10 07:05 - 00000000 ____D () C:\Program Files (x86)\PokerStars.NET
2015-01-22 11:21 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness
2015-01-20 09:38 - 2014-12-11 08:45 - 00001143 _____ () C:\Users\Vilo\Desktop\MRP-KS, účtovný systém.lnk
2015-01-19 22:32 - 2014-05-22 18:53 - 00714720 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-01-19 22:32 - 2014-05-22 18:53 - 00106976 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-01-18 19:26 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\NDF
2015-01-18 19:16 - 2014-05-21 18:39 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2015-01-18 19:15 - 2014-05-21 18:15 - 00000000 ____D () C:\Users\Vilo
2015-01-14 21:09 - 2014-05-23 09:36 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird
2015-01-14 07:19 - 2014-05-21 19:35 - 00000000 ____D () C:\Windows\system32\MRT
2015-01-14 07:08 - 2014-05-21 19:35 - 113365784 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-01-13 10:00 - 2014-12-07 17:50 - 00007168 ___SH () C:\Users\Vilo\Desktop\Thumbs.db
2015-01-12 08:23 - 2014-11-22 19:08 - 00001480 _____ () C:\Users\Vilo\AppData\Local\Adobe Uložit pro web 12.0 Prefs
2015-01-07 18:16 - 2014-05-21 18:16 - 00000000 ____D () C:\Users\Vilo\AppData\Roaming\Adobe
2015-01-07 11:45 - 2014-09-23 10:56 - 00000000 ____D () C:\Users\Vilo\Documents\Moje dokumenty programu PaperPort
2015-01-03 08:58 - 2014-08-04 18:59 - 00007616 _____ () C:\Users\Vilo\AppData\Local\Resmon.ResmonCfg
2014-12-31 12:14 - 2014-06-23 09:25 - 00298120 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-12-28 15:45 - 2014-05-22 07:39 - 00000000 ____D () C:\Users\Vilo\AppData\Local\Thunderbird
==================== Files in the root of some directories =======
2014-05-28 09:12 - 2014-05-28 09:12 - 14936064 _____ (LastPass) C:\Program Files (x86)\Common Files\lpuninstall.exe
2015-01-07 13:59 - 2015-01-07 13:59 - 0000132 _____ () C:\Users\Vilo\AppData\Roaming\Filtr IIIExport Adobe CS5 – předvolby
2014-11-22 14:02 - 2014-11-22 14:02 - 0099384 _____ () C:\Users\Vilo\AppData\Roaming\inst.exe
2014-11-22 14:02 - 2014-11-22 14:02 - 0007859 _____ () C:\Users\Vilo\AppData\Roaming\pcouffin.cat
2014-11-22 14:02 - 2014-11-22 14:02 - 0001167 _____ () C:\Users\Vilo\AppData\Roaming\pcouffin.inf
2014-11-22 14:02 - 2014-11-22 14:02 - 0000055 _____ () C:\Users\Vilo\AppData\Roaming\pcouffin.log
2014-11-22 14:02 - 2014-11-22 14:02 - 0082816 _____ (VSO Software) C:\Users\Vilo\AppData\Roaming\pcouffin.sys
2014-05-21 18:17 - 2015-01-26 10:16 - 0000074 _____ () C:\Users\Vilo\AppData\Roaming\sp_data.sys
2014-05-27 18:24 - 2014-08-04 18:00 - 0000800 _____ () C:\Users\Vilo\AppData\Roaming\VILONOTAS.MTBF.txt
2014-05-27 18:29 - 2014-08-04 19:24 - 0000951 _____ () C:\Users\Vilo\AppData\Roaming\__AvidCloudManager.log
2014-05-27 18:29 - 2014-06-25 18:43 - 0001087 _____ () C:\Users\Vilo\AppData\Roaming\__AvidCloudManagerPrevious.log
2014-11-22 19:08 - 2015-01-12 08:23 - 0001480 _____ () C:\Users\Vilo\AppData\Local\Adobe Uložit pro web 12.0 Prefs
2014-05-27 18:32 - 2014-05-27 18:32 - 0003584 _____ () C:\Users\Vilo\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-08-04 18:59 - 2015-01-03 08:58 - 0007616 _____ () C:\Users\Vilo\AppData\Local\Resmon.ResmonCfg
2014-03-25 17:37 - 2014-03-25 17:37 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2013-12-12 22:00 - 2012-09-07 12:40 - 0000256 _____ () C:\ProgramData\SetStretch.cmd
2013-12-12 22:00 - 2009-07-22 11:04 - 0024576 _____ () C:\ProgramData\SetStretch.exe
2013-12-12 22:00 - 2012-09-07 12:37 - 0000103 _____ () C:\ProgramData\SetStretch.VBS
Files to move or delete:
====================
C:\ProgramData\SetStretch.exe
C:\ProgramData\SetStretch.VBS
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-01-23 10:56
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: (OS) (Fixed) (Total:372.6 GB) (Free:261.61 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (Data) (Fixed) (Total:537.8 GB) (Free:198.13 GB) NTFS
Drive e: (HTL5120_12) (CDROM) (Total:0.04 GB) (Free:0 GB) CDFS
Available physical RAM: 6028.86 MB
Total physical RAM: 8075.06 MB
Percentage of memory in use: 25%
==================== MBR and Partition Table ==================
Disk: 0 (Size: 931.5 GB) (Disk ID: 1EC2CD13)
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
==================== Alternate Data Streams (whitelisted) ==================
AlternateDataStreams: C:\Windows:nlsPreferences
AlternateDataStreams: C:\ProgramData\Temp:8927A071
AlternateDataStreams: C:\ProgramData\Temp:F0D7EE30
==================== Security Center ==================
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Vilo\Desktop" je 5 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
preventívka
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
preventívka
- Přílohy
-
- Addition.rar
- (12.2 KiB) Staženo 64 x
Re: preventívka
Zdravim 
Podezrela se mi zda sluzba: R2 gvydovxyqyofpv; c:\windows\SysWOW64\IUCMAQ~1.EXE [76800 2013-01-31] (LIMITED) [File not signed]
rika Vam to neco? Otestujte ten soubor na virustotal.com a link (odkaz) s vysledky analyzy dejte do pristi odpovedi.
V ramci cisteni Vam budou vyprazdneny docasne adresare (vcetne Kose).
Ulozte na plochu AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/


rika Vam to neco? Otestujte ten soubor na virustotal.com a link (odkaz) s vysledky analyzy dejte do pristi odpovedi.


- ukoncete vsechny programy
- kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
- kliknete na Scan, pote na Clean
- po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\AdwCleaner [Sx].txt), jehoz obsah mi zkopirujte do pristi odpovedi
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: preventívka
Zdravim.
Nenašiel som presne ten súbor, tak neviem či to je ono :
https://www.virustotal.com/sk/file/490a ... /analysis/
A tu je log :
# AdwCleaner v4.109 - Report created 26/01/2015 at 14:48:31
# Updated 24/01/2015 by Xplode
# Database : 2015-01-25.1 [Live]
# Operating System : Windows 8.1 (64 bits)
# Username : Vilo - VILONOTAS
# Running from : C:\Users\Vilo\Desktop\adwcleaner_4.109.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\Uniblue
Folder Deleted : C:\Users\Vilo\AppData\Local\PackageAware
Folder Deleted : C:\Users\Vilo\AppData\Roaming\Uniblue
***** [ Scheduled Tasks ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Key Deleted : HKLM\SOFTWARE\Classes\driverscanner
Key Deleted : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager
Key Deleted : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Deleted : HKCU\Software\Myfree Codec
Key Deleted : HKLM\SOFTWARE\Myfree Codec
Key Deleted : HKLM\SOFTWARE\Uniblue
Data Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - *.local
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17416
-\\ Mozilla Firefox v35.0 (x86 sk)
*************************
AdwCleaner[R0].txt - [2218 octets] - [26/01/2015 14:47:41]
AdwCleaner[S0].txt - [1953 octets] - [26/01/2015 14:48:31]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2013 octets] ##########
Nenašiel som presne ten súbor, tak neviem či to je ono :
https://www.virustotal.com/sk/file/490a ... /analysis/
A tu je log :
# AdwCleaner v4.109 - Report created 26/01/2015 at 14:48:31
# Updated 24/01/2015 by Xplode
# Database : 2015-01-25.1 [Live]
# Operating System : Windows 8.1 (64 bits)
# Username : Vilo - VILONOTAS
# Running from : C:\Users\Vilo\Desktop\adwcleaner_4.109.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\Uniblue
Folder Deleted : C:\Users\Vilo\AppData\Local\PackageAware
Folder Deleted : C:\Users\Vilo\AppData\Roaming\Uniblue
***** [ Scheduled Tasks ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Key Deleted : HKLM\SOFTWARE\Classes\driverscanner
Key Deleted : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager
Key Deleted : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Deleted : HKCU\Software\Myfree Codec
Key Deleted : HKLM\SOFTWARE\Myfree Codec
Key Deleted : HKLM\SOFTWARE\Uniblue
Data Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - *.local
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17416
-\\ Mozilla Firefox v35.0 (x86 sk)
*************************
AdwCleaner[R0].txt - [2218 octets] - [26/01/2015 14:47:41]
AdwCleaner[S0].txt - [1953 octets] - [26/01/2015 14:48:31]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2013 octets] ##########
Re: preventívka
Dejte novy log z FRST uplne stejnym zpusobem jako jste dal ten prvni.. tzn do prilohy zabalit addition.txt
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.