Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Vyskakující reklamy, zpomalený PC.

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Honza999
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 11 bře 2015 14:58

Vyskakující reklamy, zpomalený PC.

#1 Příspěvek od Honza999 »

Zdravím,
všiml jsem si že práce s internetem i PC je celkově o dost pomalejší a i to,že adblock,blokuje až moc reklam.
Když jsem otevřel okno bez adblocku,začaly vyskakovat reklamy na por*o weby,reklamy na svaly :D atd.
Zkoušel jsem test po restartu,mi to zaalo házet infikovaný windows32 atd. tak jsem od toho raději odpustil,dale jsem zkoušel Superantimalwareprofessional,ale problemy nepřestaly.
Vypis z logu FRST:

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015
Ran by Honza (administrator) on HANZIK on 11-03-2015 15:07:01
Running from C:\Users\Honza\Desktop
Loaded Profiles: Honza (Available profiles: Honza)
Platform: Windows 8.1 Connected (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Opera)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore64.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe
(Intel(R) Corporation) C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMLockHandler.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QASvc.exe
(Qualcomm®Atheros®) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAEvent.exe
() C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMTray.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\RMSvc.exe
(Pokki) C:\Users\Honza\AppData\Local\Pokki\Engine\HostAppServiceUpdater.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAMsg.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(BitTorrent Inc.) C:\Users\Honza\AppData\Roaming\uTorrent\uTorrent.exe
(SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
() C:\Users\Honza\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
() C:\Users\Honza\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
(Acer Cloud Technology) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(WildTangent) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
(acer) C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Opera Software) C:\Program Files (x86)\Opera\28.0.1750.40\opera.exe
() C:\Program Files (x86)\Opera\28.0.1750.40\opera_crashreporter.exe
(Opera Software) C:\Program Files (x86)\Opera\28.0.1750.40\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\28.0.1750.40\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\28.0.1750.40\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\28.0.1750.40\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\28.0.1750.40\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\28.0.1750.40\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\28.0.1750.40\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\28.0.1750.40\opera.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17477_none_fa2b7d3b9b36c7b4\TiWorker.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe\livecomm.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13672664 2014-06-30] (Realtek Semiconductor)
HKLM-x32\...\Run: [Adobe ARM] => c:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-09-05] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [BacKGround Agent] => C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [62208 2014-12-19] (Acer Incorporated)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227112 2015-01-27] (AVAST Software)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.)
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [134784 2014-04-29] ( (Qualcomm®Atheros®))
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [Pokki] => "%LOCALAPPDATA%\Pokki\Engine\HostAppServiceUpdater.exe" /LOGON
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [AcerCloud] => C:\Program Files (x86)\Acer\Acer Portal\acpanel_win.exe [2480384 2014-12-19] (Acer)
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [30873192 2014-12-11] (Skype Technologies S.A.)
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [uTorrent] => C:\Users\Honza\AppData\Roaming\uTorrent\uTorrent.exe [1374032 2015-01-21] (BitTorrent Inc.)
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Honza\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Honza\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [7780120 2015-01-22] (SUPERAntiSpyware)
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\RunOnce: [Application Restart #1] => C:\Users\Honza\AppData\Local\Pokki\Engine\HostAppService.exe [7852872 2015-02-25] (Pokki)
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\MountPoints2: {47c8b63c-c0cf-11e4-8267-206a8ae03f0c} - "D:\autorun.exe"
Startup: C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\NHL® 09 Registration.lnk
ShortcutTarget: NHL® 09 Registration.lnk -> C:\Program Files (x86)\EA Sports\NHL 09\Support\EAregister.exe (No File)
Startup: C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Registration Assassin.LNK
ShortcutTarget: Registration Assassin.LNK -> C:\Program Files (x86)\Ubisoft\Assassin's Creed\Register\RegistrationReminder.exe (No File)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: [ACloudSyncedRF] -> {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} => C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll (Acer Incorporated)
ShellIconOverlayIdentifiers: [ACloudSyncedSF] -> {5D5F18B7-D59B-4B18-A3E9-0A4BDCCCB699} => C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll (Acer Incorporated)
ShellIconOverlayIdentifiers: [ACloudSyncing] -> {C1E1456F-C2D8-4C96-870D-35F1E13941EE} => C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll (Acer Incorporated)
ShellIconOverlayIdentifiers: [ACloudToBeSynced] -> {307523FA-DDC0-4068-983F-2A6B34627744} => C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll (Acer Incorporated)
BootExecute: autocheck autochk * sdnclean64.exe
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-3125435620-391947284-2330968494-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=13415
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer13.msn.com/?pc=ACJB
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?PC=WCUG&FORM ... earchTerms}
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?PC=WCUG&FORM ... earchTerms}
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {494A6CF8-C5D1-46C4-BBE7-6D6D9B1CA207} URL = http://encyklopedie.seznam.cz/search?q= ... arch_13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {5D602557-6ED3-4F96-A00A-5DEB66CA62C3} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {63FB1F7D-889C-4EB3-A53D-AB46BD1B805D} URL = http://search.seznam.cz/?q={searchTerms ... arch_13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {67C683B3-28F0-4591-A398-BD86109A84C1} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {6D2C490E-2056-44DE-BB89-30B2901A3A44} URL = http://www.mapy.cz/?query={searchTerms} ... arch_13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {7823C17E-ECD6-4E6C-AC91-CEC1C4F3DE4D} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {8EC198AD-8D9E-4DC0-8C8C-87493CA42C5D} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {A388744D-D9EE-4DC8-9FB3-7462E3FDD5C4} URL = http://www.novinky.cz/hledej?w={searchT ... arch_13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {F502DA66-86F2-4467-BFC7-A9BA59EF0FFA} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_13415
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-12-24] (AVAST Software)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
BHO: McAfee SiteAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\siteadvisor\x64\McIEPlg.dll [2015-01-28] (McAfee, Inc.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-12-24] (AVAST Software)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
BHO-x32: McAfee SiteAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\siteadvisor\McIEPlg.dll [2015-01-28] (McAfee, Inc.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation)
Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\siteadvisor\x64\McIEPlg.dll [2015-01-28] (McAfee, Inc.)
Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\siteadvisor\McIEPlg.dll [2015-01-28] (McAfee, Inc.)
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\x64\McIEPlg.dll [2015-01-28] (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\McIEPlg.dll [2015-01-28] (McAfee, Inc.)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2012-10-01] (Microsoft Corporation)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\x64\McIEPlg.dll [2015-01-28] (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\McIEPlg.dll [2015-01-28] (McAfee, Inc.)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\3\NP_wtapp.dll [2014-12-25] ()
FF Plugin-x32: Adobe Reader -> c:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2013-09-05] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3125435620-391947284-2330968494-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Honza\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-01-26] (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2012-10-01] (Microsoft Corporation)
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor
FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor [2014-07-18]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-12-24]

Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Profile: C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-07]
CHR Extension: (Docs) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-12-24]
CHR Extension: (Google Drive) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-12-24]
CHR Extension: (Seznam Lištička - Email) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2015-03-07]
CHR Extension: (Seznam Lištička - Slovník) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2015-03-07]
CHR Extension: (YouTube) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-12-24]
CHR Extension: (Google Search) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-12-24]
CHR Extension: (Avast SafePrice) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2015-01-23]
CHR Extension: (SiteAdvisor) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2015-02-28]
CHR Extension: (Avast Online Security) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-02-28]
CHR Extension: (SourceApp) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmlkgogckfdbgcbmhgialcpbgphofeop [2015-03-07]
CHR Extension: (Skype Click to Call) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-02-28]
CHR Extension: (Google Wallet) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-12-24]
CHR Extension: (Seznam Lištička - Rychlá volba) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2015-03-07]
CHR Extension: (Gmail) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-12-24]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2015-03-08]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx [2014-12-24]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2015-03-08]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-12-24]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14]

Opera:
=======
OPR Extension: (AdBlock) - C:\Users\Honza\AppData\Roaming\Opera Software\Opera Stable\Extensions\aobdicepooefnbaeokijohmhjlleamfj [2015-01-03]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [172344 2014-07-23] (SUPERAntiSpyware.com)
R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [319104 2014-04-29] (Windows (R) Win 7 DDK provider) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-12-24] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4012248 2014-12-24] (Avast Software)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
R2 CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2713856 2014-12-19] (Acer Incorporated)
R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2573032 2014-06-12] (Acer Incorporated)
R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [347200 2015-02-24] (WildTangent)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [315376 2014-06-09] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [733696 2013-07-02] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [822232 2013-07-02] (Intel(R) Corporation)
R2 LMSvc; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [466664 2014-06-10] (Acer Incorporate)
R2 McAfee SiteAdvisor Service; c:\Program Files (x86)\McAfee\siteadvisor\mcsacore.exe [155368 2015-02-19] (McAfee, Inc.)
R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [458984 2014-06-26] (Acer Incorporate)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [254512 2012-04-24] ()
R3 RMSvc; C:\Program Files\Acer\Acer Quick Access\RMSvc.exe [449768 2014-06-26] (Acer Incorporate)
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
R3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [233216 2014-06-24] (acer)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-12-24] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2014-12-24] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-12-24] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-12-24] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2014-12-24] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2014-12-24] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2014-12-24] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2014-12-24] ()
R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3893248 2014-04-03] (Qualcomm Atheros Communications, Inc.)
S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2014-04-29] (Qualcomm Atheros)
S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2015-03-07] (Disc Soft Ltd)
R3 GPIO; C:\Windows\System32\drivers\iaiogpioe.sys [31232 2014-06-09] (Intel Corporation)
R3 iaioi2c; C:\Windows\System32\drivers\iaioi2ce.sys [69632 2014-06-09] (Intel Corporation)
R3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-07-18] (Acer Incorporated)
R3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [14680 2013-07-18] (Acer Incorporated)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R3 TXEIx64; C:\Windows\System32\drivers\TXEIx64.sys [88592 2014-01-15] (Intel Corporation)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [271752 2014-12-24] (Avast Software)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation)
R1 {88dab020-0802-4f33-9294-5fccbb774bac}Gw64; C:\Windows\System32\drivers\{88dab020-0802-4f33-9294-5fccbb774bac}Gw64.sys [48784 2015-03-07] (StdLib)
R1 {d9a4216a-aae1-4d14-ba35-ff234b3b627f}Gw64; C:\Windows\System32\drivers\{d9a4216a-aae1-4d14-ba35-ff234b3b627f}Gw64.sys [48784 2015-03-07] (StdLib)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-11 15:07 - 2015-03-11 15:07 - 00027184 _____ () C:\Users\Honza\Desktop\FRST.txt
2015-03-11 15:05 - 2015-03-11 15:05 - 00029696 _____ () C:\Users\Honza\AppData\Local\MSGBOX.EXE
2015-03-11 15:05 - 2015-03-11 15:05 - 00015327 _____ () C:\Users\Honza\Desktop\LM.bat
2015-03-11 15:03 - 2015-03-11 15:07 - 00000000 ____D () C:\FRST
2015-03-11 15:02 - 2015-03-11 15:02 - 02095616 _____ (Farbar) C:\Users\Honza\Desktop\FRST64.exe
2015-03-10 21:55 - 2015-03-10 21:56 - 00000000 ____D () C:\Hry
2015-03-10 21:39 - 2015-03-10 21:39 - 02171392 _____ () C:\Users\Honza\Downloads\adwcleaner_4.112.exe
2015-03-10 20:55 - 2015-03-10 20:55 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-03-10 20:55 - 2015-03-10 20:55 - 00001118 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-03-10 20:55 - 2015-03-10 20:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-03-10 20:55 - 2015-03-10 20:55 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-03-10 20:55 - 2015-03-10 20:55 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-03-10 20:55 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-03-10 20:55 - 2014-11-21 06:14 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-03-10 20:55 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-03-10 20:51 - 2015-03-10 20:53 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Honza\Downloads\mbam-setup-2.0.4.1028.exe
2015-03-09 20:36 - 2015-03-10 20:05 - 4017199428 _____ () C:\Users\Honza\Downloads\Jak-jsem-poznal-vaši-matku-2.série-CZ!.rar
2015-03-09 19:17 - 2015-03-09 19:17 - 00000197 _____ () C:\Windows\system32\2015-03-09-18-17-12.034-AvastVBoxSVC.exe-3520.log
2015-03-09 16:41 - 2015-03-10 16:41 - 00000524 _____ () C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 2a11bb15-496f-49f1-8c18-5796091bbc23.job
2015-03-09 16:41 - 2015-03-09 19:14 - 00000524 _____ () C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 0ea3be7f-3f32-4257-90d9-1591c7c9cf12.job
2015-03-09 16:41 - 2015-03-09 16:41 - 00003574 _____ () C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task 0ea3be7f-3f32-4257-90d9-1591c7c9cf12
2015-03-09 16:41 - 2015-03-09 16:41 - 00003492 _____ () C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task 2a11bb15-496f-49f1-8c18-5796091bbc23
2015-03-09 16:41 - 2015-03-09 16:41 - 00001824 _____ () C:\Users\Honza\Desktop\SUPERAntiSpyware Professional.lnk
2015-03-09 16:41 - 2015-03-09 16:41 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\SUPERAntiSpyware.com
2015-03-09 16:41 - 2015-03-09 16:41 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
2015-03-09 16:40 - 2015-03-10 16:41 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware
2015-03-09 16:40 - 2015-03-09 16:40 - 00000000 ____D () C:\ProgramData\SUPERAntiSpyware.com
2015-03-09 16:39 - 2015-03-09 16:40 - 21386376 _____ (SUPERAntiSpyware) C:\Users\Honza\Downloads\SUPERAntiSpyware.exe
2015-03-08 19:02 - 2015-03-08 19:02 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\InstallShield
2015-03-08 15:14 - 2015-03-08 15:14 - 00000247 _____ () C:\Windows\system32\2015-03-08-14-14-45.030-aswFe.exe-2300.log
2015-03-08 15:03 - 2015-03-08 15:14 - 00000247 _____ () C:\Windows\system32\2015-03-08-14-03-16.094-aswFe.exe-2248.log
2015-03-08 15:03 - 2015-03-08 15:03 - 00000197 _____ () C:\Windows\system32\2015-03-08-14-03-12.098-AvastVBoxSVC.exe-3308.log
2015-03-08 15:01 - 2015-03-08 14:58 - 00450771 ____R () C:\Windows\system32\Drivers\etc\hosts.20150308-150145.backup
2015-03-08 14:58 - 2013-08-22 14:25 - 00000824 _____ () C:\Windows\system32\Drivers\etc\hosts.20150308-145831.backup
2015-03-08 14:49 - 2015-03-08 14:56 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2015-03-08 14:49 - 2015-03-08 14:52 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2
2015-03-08 14:49 - 2015-03-08 14:49 - 00001407 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2015-03-08 14:49 - 2015-03-08 14:49 - 00001395 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2015-03-08 14:49 - 2015-03-08 14:49 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking
2015-03-08 14:49 - 2015-03-08 14:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2015-03-08 14:49 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe
2015-03-08 14:45 - 2015-03-08 14:46 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\Honza\Downloads\spybot-2.4.exe
2015-03-08 14:42 - 2015-03-08 14:42 - 00000270 __RSH () C:\ProgramData\ntuser.pol
2015-03-08 12:13 - 2014-04-16 00:34 - 00029888 _____ (Microsoft Corporation) C:\Windows\system32\aspnet_counters.dll
2015-03-08 12:12 - 2014-04-16 00:35 - 00028352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aspnet_counters.dll
2015-03-08 12:10 - 2014-12-13 22:28 - 00513488 _____ () C:\Windows\SysWOW64\locale.nls
2015-03-08 12:10 - 2014-12-13 22:28 - 00513488 _____ () C:\Windows\system32\locale.nls
2015-03-08 12:10 - 2014-10-29 02:27 - 01200128 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll
2015-03-08 12:10 - 2014-10-29 02:27 - 00323072 _____ (Microsoft Corporation) C:\Windows\system32\GlobCollationHost.dll
2015-03-08 12:10 - 2014-10-29 02:04 - 00868352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll
2015-03-08 12:10 - 2014-10-29 02:04 - 00200704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GlobCollationHost.dll
2015-03-08 10:58 - 2015-03-07 22:14 - 00048784 _____ (StdLib) C:\Windows\system32\Drivers\{d9a4216a-aae1-4d14-ba35-ff234b3b627f}Gw64.sys
2015-03-07 21:01 - 2015-03-08 19:16 - 00000000 ____D () C:\ProgramData\Ubisoft
2015-03-07 21:01 - 2015-03-07 21:01 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\Ubisoft
2015-03-07 20:58 - 2015-03-07 20:58 - 00001797 _____ () C:\Users\Honza\Desktop\AssassinsCreedII – zástupce.lnk
2015-03-07 20:41 - 2015-03-08 19:19 - 00000000 ____D () C:\Program Files (x86)\Ubisoft
2015-03-07 19:47 - 2015-03-07 09:12 - 00048784 _____ (StdLib) C:\Windows\system32\Drivers\{88dab020-0802-4f33-9294-5fccbb774bac}Gw64.sys
2015-03-07 19:46 - 2015-03-08 13:13 - 00000000 ____D () C:\Program Files (x86)\SourceApp
2015-03-07 19:44 - 2015-03-07 19:44 - 00000000 ____D () C:\Program Files (x86)\Seznam.cz
2015-03-07 19:43 - 2015-03-09 19:21 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\Seznam.cz
2015-03-07 19:42 - 2015-03-10 22:24 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\DAEMON Tools Lite
2015-03-07 19:42 - 2015-03-07 19:42 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys
2015-03-07 19:42 - 2015-03-07 19:42 - 00001966 _____ () C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2015-03-07 19:42 - 2015-03-07 19:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2015-03-07 19:42 - 2015-03-07 19:42 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite
2015-03-07 19:40 - 2015-03-07 20:22 - 00000000 ____D () C:\ProgramData\DAEMON Tools Lite
2015-03-07 19:39 - 2015-03-07 19:39 - 13429504 _____ (Disc Soft Ltd) C:\Users\Honza\Downloads\DTLite4491-0356.exe
2015-03-06 21:20 - 2015-03-06 21:20 - 816725473 _____ () C:\Users\Honza\Desktop\Patch-F.mpq
2015-03-03 08:37 - 2015-03-03 08:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-03-03 08:36 - 2015-03-03 08:36 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2015-03-03 08:35 - 2015-03-03 08:35 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server
2015-03-03 08:34 - 2015-03-03 08:34 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-03-03 08:33 - 2015-03-03 08:35 - 00000000 ____D () C:\Program Files\Microsoft SQL Server
2015-03-03 08:33 - 2015-03-03 08:33 - 00000000 ____D () C:\Windows\PCHEALTH
2015-03-03 08:30 - 2015-03-03 08:38 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-03-03 08:30 - 2015-03-03 08:33 - 00000000 ____D () C:\Program Files\Microsoft Office
2015-03-03 08:30 - 2015-03-03 08:30 - 00000000 ____D () C:\Users\Honza\AppData\Local\Microsoft Help
2015-03-03 08:30 - 2015-03-03 08:30 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services
2015-03-03 08:30 - 2015-03-03 08:30 - 00000000 ____D () C:\Program Files (x86)\Microsoft Analysis Services
2015-03-03 08:29 - 2015-03-03 08:29 - 00000000 __RHD () C:\MSOCache
2015-03-03 05:50 - 2015-03-03 07:20 - 00000000 ____D () C:\Users\Honza\Desktop\koktiny
2015-03-03 05:47 - 2014-12-09 16:56 - 00000000 ____D () C:\Users\Honza\Desktop\1. serie
2015-03-02 06:50 - 2015-03-11 14:58 - 00606724 _____ () C:\Windows\WindowsUpdate.log
2015-02-26 19:55 - 2015-03-07 15:56 - 00000000 ____D () C:\Users\Honza\Documents\FIFA 12
2015-02-24 22:39 - 2015-02-24 22:39 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\Leadertech
2015-02-24 11:30 - 2015-02-24 11:30 - 00000586 _____ () C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\wotlk.lnk
2015-02-24 11:29 - 2015-02-24 11:29 - 00001762 _____ () C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Counter-Strike 1.6.lnk
2015-02-24 11:29 - 2015-02-24 11:29 - 00000693 _____ () C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The Binding of Isaac.lnk
2015-02-13 15:46 - 2015-03-04 21:54 - 00000000 ____D () C:\Users\Honza\Documents\Max Payne 2 Savegames
2015-02-11 09:26 - 2015-01-15 23:43 - 00563504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-02-11 09:26 - 2015-01-15 23:43 - 00177984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-02-11 09:26 - 2015-01-14 05:22 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-02-11 09:26 - 2015-01-14 04:53 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2015-02-11 09:26 - 2015-01-13 23:11 - 01762840 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-02-11 09:26 - 2015-01-13 23:04 - 01489072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-02-11 09:26 - 2015-01-10 10:10 - 07472960 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-02-11 09:26 - 2015-01-10 10:10 - 01733440 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-02-11 09:26 - 2015-01-10 09:28 - 01498360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-02-11 09:26 - 2015-01-10 08:00 - 00430080 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-02-11 09:26 - 2015-01-10 07:38 - 00359424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-02-11 09:26 - 2014-12-09 04:45 - 00393728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2015-02-11 09:26 - 2014-12-09 02:56 - 00538624 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2015-02-11 09:26 - 2014-10-29 03:51 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-02-11 09:26 - 2014-10-29 03:50 - 00736768 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-02-11 09:26 - 2014-10-29 03:06 - 00736768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-02-11 09:26 - 2014-10-29 03:06 - 00154112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-02-11 09:26 - 2014-10-29 03:02 - 00285184 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2015-02-11 09:26 - 2014-10-29 03:02 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2015-02-11 09:26 - 2014-10-29 02:57 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2015-02-11 09:26 - 2014-10-29 02:31 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-02-11 09:26 - 2014-10-29 02:15 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2015-02-11 09:26 - 2014-10-29 02:15 - 00005632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2015-02-11 09:26 - 2014-10-29 02:14 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2015-02-11 09:26 - 2014-10-29 02:13 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2015-02-11 09:26 - 2014-10-29 02:13 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2015-02-11 09:25 - 2015-01-12 04:09 - 25056256 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-02-11 09:25 - 2015-01-12 03:48 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-02-11 09:25 - 2015-01-12 03:48 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-02-11 09:25 - 2015-01-12 03:47 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-02-11 09:25 - 2015-01-12 03:34 - 00816128 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-02-11 09:25 - 2015-01-12 03:32 - 06041088 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-02-11 09:25 - 2015-01-12 03:25 - 19740160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-02-11 09:25 - 2015-01-12 03:21 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-02-11 09:25 - 2015-01-12 03:08 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-02-11 09:25 - 2015-01-12 03:07 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-02-11 09:25 - 2015-01-12 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-02-11 09:25 - 2015-01-12 03:02 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-02-11 09:25 - 2015-01-12 02:58 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2015-02-11 09:25 - 2015-01-12 02:55 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-02-11 09:25 - 2015-01-12 02:51 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-02-11 09:25 - 2015-01-12 02:48 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-02-11 09:25 - 2015-01-12 02:48 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-02-11 09:25 - 2015-01-12 02:48 - 00374272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-02-11 09:25 - 2015-01-12 02:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-02-11 09:25 - 2015-01-12 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-02-11 09:25 - 2015-01-12 02:43 - 14401024 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-02-11 09:25 - 2015-01-12 02:34 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-02-11 09:25 - 2015-01-12 02:30 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2015-02-11 09:25 - 2015-01-12 02:29 - 04300800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-02-11 09:25 - 2015-01-12 02:27 - 02865152 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2015-02-11 09:25 - 2015-01-12 02:27 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-02-11 09:25 - 2015-01-12 02:25 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-02-11 09:25 - 2015-01-12 02:23 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-02-11 09:25 - 2015-01-12 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-02-11 09:25 - 2015-01-12 02:23 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-02-11 09:25 - 2015-01-12 02:14 - 12829184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-02-11 09:25 - 2015-01-12 02:14 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-02-11 09:25 - 2015-01-12 02:02 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-02-11 09:25 - 2015-01-12 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-02-11 09:25 - 2015-01-12 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-02-11 09:25 - 2015-01-12 01:55 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-02-11 09:25 - 2014-12-19 09:57 - 00788680 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-02-11 09:25 - 2014-12-19 09:25 - 00602776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2015-02-11 09:25 - 2014-12-09 00:12 - 00391526 _____ () C:\Windows\system32\ApnDatabase.xml
2015-02-11 09:24 - 2015-02-04 00:38 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-02-11 09:24 - 2015-02-04 00:08 - 00761856 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-02-11 09:24 - 2015-02-04 00:08 - 00414208 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-02-11 09:24 - 2015-02-03 00:11 - 01098752 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-02-11 09:24 - 2015-02-03 00:11 - 00894464 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-02-11 09:24 - 2015-02-03 00:11 - 00609280 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-02-11 09:24 - 2015-01-19 19:42 - 01487976 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2015-02-11 09:24 - 2015-01-10 09:22 - 04175872 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-02-10 18:05 - 2015-02-10 18:37 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Counter-Strike 1.6
2015-02-10 18:02 - 2015-03-04 21:40 - 00000000 ____D () C:\Counter-Strike 1.6
2015-02-10 16:11 - 2015-02-10 16:12 - 00000197 _____ () C:\Windows\system32\2015-02-10-15-11-07.037-AvastVBoxSVC.exe-2868.log

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-11 15:07 - 2014-12-25 11:43 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\uTorrent
2015-03-11 15:00 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sru
2015-03-11 14:58 - 2014-12-24 21:30 - 00003962 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{A3888134-4681-46CD-8F5C-AA5C4D59029E}
2015-03-11 14:56 - 2014-08-21 10:25 - 00739924 _____ () C:\Windows\system32\perfh005.dat
2015-03-11 14:56 - 2014-08-21 10:25 - 00151610 _____ () C:\Windows\system32\perfc005.dat
2015-03-11 14:56 - 2014-03-18 10:47 - 01745984 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-03-11 14:53 - 2014-12-25 09:06 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\Skype
2015-03-11 06:56 - 2014-12-09 08:57 - 00000000 ____D () C:\Users\Honza\AppData\Local\Pokki
2015-03-10 22:51 - 2014-12-24 21:36 - 00000974 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-03-10 22:24 - 2014-12-09 09:06 - 00000000 ____D () C:\Users\Honza\AppData\Local\CrashDumps
2015-03-10 22:16 - 2014-12-24 22:39 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-03-10 21:45 - 2014-12-09 09:06 - 00003596 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3125435620-391947284-2330968494-1001
2015-03-10 21:40 - 2014-12-24 21:32 - 00003826 _____ () C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1419453153
2015-03-10 21:40 - 2014-12-24 21:32 - 00001061 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2015-03-10 21:40 - 2014-12-24 21:31 - 00000000 ____D () C:\Program Files (x86)\Opera
2015-03-10 16:51 - 2014-12-24 21:36 - 00000970 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-03-10 15:29 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\rescache
2015-03-09 19:16 - 2014-12-24 21:54 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2015-03-09 19:16 - 2014-12-09 09:04 - 00000000 ___DO () C:\Users\Honza\OneDrive
2015-03-09 19:14 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-03-09 19:12 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\BBI
2015-03-09 15:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness
2015-03-08 19:20 - 2015-01-23 20:33 - 00000000 ____D () C:\Users\Honza\Desktop\Rary
2015-03-08 19:02 - 2014-08-21 10:24 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-03-08 14:41 - 2013-08-22 15:44 - 00492424 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-03-08 12:30 - 2013-08-22 16:20 - 00000000 ____D () C:\Windows\CbsTemp
2015-03-08 12:10 - 2014-12-25 21:30 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-03-08 12:10 - 2014-12-25 21:30 - 00000000 ____D () C:\Windows\system32\appraiser
2015-03-08 11:58 - 2013-08-22 14:25 - 00000301 _____ () C:\Windows\win.ini
2015-03-08 11:20 - 2014-12-09 09:00 - 00000000 ____D () C:\Users\Honza\AppData\Local\Packages
2015-03-08 01:56 - 2014-12-24 21:35 - 00000892 _____ () C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job
2015-03-07 20:47 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\GroupPolicy
2015-03-06 15:47 - 2015-01-04 11:05 - 00000000 ____D () C:\Users\Honza\Desktop\Pozadí
2015-03-03 11:00 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\NDF
2015-03-03 08:36 - 2014-03-18 10:33 - 00000000 ____D () C:\Windows\ShellNew
2015-03-03 08:36 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2015-03-03 08:32 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\System
2015-03-03 07:29 - 2014-12-25 11:54 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\vlc
2015-03-03 07:00 - 2015-01-19 22:13 - 00000000 ____D () C:\Users\Honza\Desktop\Fotky
2015-02-24 11:31 - 2014-07-18 04:27 - 00000000 ____D () C:\Program Files (x86)\WildTangent Games
2015-02-24 11:07 - 2015-01-05 15:28 - 00000000 ____D () C:\Users\Honza\Desktop\filmy
2015-02-22 17:53 - 2014-12-24 21:37 - 00002207 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2015-02-13 22:09 - 2014-12-24 21:34 - 00000000 ____D () C:\Users\Honza\AppData\Local\Adobe
2015-02-13 07:19 - 2014-07-18 04:35 - 00000000 ____D () C:\Program Files (x86)\McAfee
2015-02-10 16:10 - 2014-12-09 09:04 - 00002294 _____ () C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk

==================== Files in the root of some directories =======

2015-03-11 15:05 - 2015-03-11 15:05 - 0029696 _____ () C:\Users\Honza\AppData\Local\MSGBOX.EXE
2015-01-04 00:37 - 2015-01-04 00:37 - 0000017 _____ () C:\Users\Honza\AppData\Local\resmon.resmoncfg
2014-08-21 10:35 - 2014-08-21 10:35 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-03-10 15:15

==================== End Of Log ============================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Vyskakující reklamy, zpomalený PC.

#2 Příspěvek od vyosek »

Zdravim :)

:arrow: Odinstalujte Spybot - Search & Destroy - zastraly a neucinny

:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Po spusteni probehne stazeni databaze
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
:arrow: Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do okna vlozte skript nize
  • Kód: Vybrat vše

    autoclean;
    resethosts;
    emptyclsid;
    IEdefaults;
    FFdefaults;
    CHRdefaults;
    emptyIEcache;
    emptyFFcache;
    emptyCHRcache;
    emptyalltemp;
    emptyflash;
    emptyjava;
    emptyrecycle.bin;
    
  • Nasledne kliknete na Run Script
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Honza999
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 11 bře 2015 14:58

Re: Vyskakující reklamy, zpomalený PC.

#3 Příspěvek od Honza999 »

zoek :



Zoek.exe v5.0.0.0 Updated 05-March-2015
Tool run by Honza on st 11. 03. 2015 at 19:02:05,79.
Microsoft Windows 8.1 s aplikací Bing 6.3.9600 x64
Running in: Normal Mode No Internet Access Detected
Launched: C:\Users\Honza\Desktop\zoek.com [Scan all users] [Script inserted]

==== System Restore Info ======================

11. 3. 2015 19:05:22 Zoek.exe System Restore Point Created Succesfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

127.0.0.1 localhost

==== Empty Folders Check ======================

C:\Users\Honza\AppData\Roaming\DAEMON Tools Lite deleted successfully

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== Deleting Files \ Folders ======================

C:\Users\Public\Pokki deleted
C:\PROGRA~3\Pokki deleted
C:\Users\Default\AppData\Local\Pokki deleted
C:\Users\Honza\AppData\Local\Pokki deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted
C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk deleted
C:\windows\SysNative\Tasks\avast! Emergency Update deleted
C:\windows\SysNative\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat deleted
C:\Windows\SysNative\config\systemprofile\Searches deleted
C:\windows\SysNative\GroupPolicy\machine deleted
C:\windows\SysNative\GroupPolicy\gpt.ini deleted
C:\Users\Honza\AppData\Local\MSGBOX.EXE deleted
"C:\Windows\Installer\194bc.msi" deleted
"C:\Windows\Installer\33322.msi" deleted
"C:\PROGRA~2\Windows Multimedia Platform" deleted

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [01. 02. 2015 20:17]

==== Chromium Look ======================

Google Chrome Version: 40.0.2214.115 (Could not determine latest Stable Version)

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
fheoggkfdfchfphceeifdbepaooicaho - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx[28. 01. 2015 15:25]
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[24. 12. 2014 21:53]
lifbcibllhkdhoafpjfnlhfpfgnpldfl - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx[14. 07. 2014 18:22]

Seznam Lištička - Email - Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig
Seznam Lištička - Slovník - Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd
SiteAdvisor - Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho
Avast Online Security - Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
SourceApp - Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmlkgogckfdbgcbmhgialcpbgphofeop
Skype Click to Call - Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl
Seznam Lištička - Rychlá volba - Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak
AdBlock - Honza\AppData\Roaming\Opera Software\Opera Stable\Extensions\aobdicepooefnbaeokijohmhjlleamfj

==== Chromium Startpages ======================

C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Preferences
"homepage": "http://www.seznam.cz/?clid=13415",


==== Chromium Fix ======================

C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmlkgogckfdbgcbmhgialcpbgphofeop deleted successfully
C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_kmlkgogckfdbgcbmhgialcpbgphofeop_0.localstorage deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.seznam.cz/?clid=13415"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.seznam.cz/?clid=13415"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE8SRC"
{494A6CF8-C5D1-46C4-BBE7-6D6D9B1CA207} Encyklopedie Seznam Url="http://encyklopedie.seznam.cz/search?q= ... arch_13415"
{5D602557-6ED3-4F96-A00A-5DEB66CA62C3} Slovnˇk EN/CZ Url="http://slovnik.seznam.cz/?q={searchTerm ... arch_13415"
{63FB1F7D-889C-4EB3-A53D-AB46BD1B805D} Seznam Url="http://search.seznam.cz/?q={searchTerms ... arch_13415"
{67C683B3-28F0-4591-A398-BD86109A84C1} Firmy.cz Url="http://www.firmy.cz/?q={searchTerms}&so ... arch_13415"
{6D2C490E-2056-44DE-BB89-30B2901A3A44} Mapy.cz Url="http://www.mapy.cz/?query={searchTerms} ... arch_13415"
{7823C17E-ECD6-4E6C-AC91-CEC1C4F3DE4D} Seznam TV Program Url="http://tv.seznam.cz/hledej?w={searchTer ... arch_13415"
{8EC198AD-8D9E-4DC0-8C8C-87493CA42C5D} Slovnˇk CZ/EN Url="http://slovnik.seznam.cz/?q={searchTerm ... arch_13415"
{A388744D-D9EE-4DC8-9FB3-7462E3FDD5C4} Novinky.cz Url="http://www.novinky.cz/hledej?w={searchT ... arch_13415"
{F502DA66-86F2-4467-BFC7-A9BA59EF0FFA} Zbo§ˇ.cz Url="http://www.zbozi.cz/?q={searchTerms}&r= ... arch_13415"

==== Reset Google Chrome ======================

C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Honza\AppData\Roaming\Opera Software\Opera Stable\Preferences was reset successfully
C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\Honza\AppData\Roaming\Opera Software\Opera Stable\Web Data was reset successfully

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\203E62EEA6789D84098513925E9B9999 deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\02F6486B12843E11F869800002C0A966 deleted successfully
HKEY_LOCAL_MACHINE\Software\wow6432node\Policies\Google deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{EE26E302-876A-48D9-9058-3129E5B99999} deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{B6846F20-4821-11E3-8F96-0800200C9A66} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\203E62EEA6789D84098513925E9B9999 deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\02F6486B12843E11F869800002C0A966 deleted successfully

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Honza\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\Honza\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\Honza\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\Honza\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully

==== Empty FireFox Cache ======================

No FireFox Profiles found

==== Empty Chrome Cache ======================

C:\Users\Honza\AppData\Local\Opera Software\Opera Stable\Cache emptied successfully
C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

No Java Cache Found

==== C:\zoek_backup content ======================

C:\zoek_backup (files=9285 folders=195 526822987 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Honza\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\Honza\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp\Low" not deleted

==== EOF on st 11. 03. 2015 at 20:41:00,28 ======================

Honza999
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 11 bře 2015 14:58

Re: Vyskakující reklamy, zpomalený PC.

#4 Příspěvek od Honza999 »

Adwcleaner
tady bylo vice logu,vybral sem snad správně podle navodu.

# AdwCleaner v4.112 - Logfile created 11/03/2015 at 18:56:28
# Updated 09/03/2015 by Xplode
# Database : 2015-03-05.1 [Server]
# Operating system : Windows 8.1 Connected (x64)
# Username : Honza - HANZIK
# Running from : C:\Users\Honza\Desktop\adwcleaner_4.112.exe
# Option : Cleaning

***** [ Services ] *****

Service Deleted : {88dab020-0802-4f33-9294-5fccbb774bac}Gw64
Service Deleted : {d9a4216a-aae1-4d14-ba35-ff234b3b627f}Gw64

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\Trymedia
Folder Deleted : C:\Program Files (x86)\SourceApp
Folder Deleted : C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
File Deleted : C:\Windows\System32\drivers\{88dab020-0802-4f33-9294-5fccbb774bac}Gw64.sys
File Deleted : C:\Windows\System32\drivers\{d9a4216a-aae1-4d14-ba35-ff234b3b627f}Gw64.sys

***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Key Deleted : HKCU\Software\Classes\pokki
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Pokki]
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : HKCU\Software\Pokki
Key Deleted : HKCU\Software\SourceApp
Key Deleted : HKLM\SOFTWARE\Trymedia Systems
Key Deleted : HKLM\SOFTWARE\SourceApp
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pokki

***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Google Chrome v40.0.2214.115


-\\ Opera v28.0.1750.40


*************************

AdwCleaner[R0].txt - [2291 bytes] - [11/03/2015 18:42:18]
AdwCleaner[R1].txt - [2350 bytes] - [11/03/2015 18:52:56]
AdwCleaner[S0].txt - [2229 bytes] - [11/03/2015 18:56:28]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2288 bytes] ##########

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Vyskakující reklamy, zpomalený PC.

#5 Příspěvek od vyosek »

Poprosim o novy log z FRST
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Honza999
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 11 bře 2015 14:58

Re: Vyskakující reklamy, zpomalený PC.

#6 Příspěvek od Honza999 »

Zde nový FRST:


Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015
Ran by Honza (administrator) on HANZIK on 12-03-2015 14:27:57
Running from C:\Users\Honza\Desktop
Loaded Profiles: Honza (Available profiles: Honza)
Platform: Windows 8.1 Connected (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Opera)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore64.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe
(Intel(R) Corporation) C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QASvc.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMLockHandler.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAEvent.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMTray.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAMsg.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerWinMonitor.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Qualcomm®Atheros®) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
() C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
() C:\Users\Honza\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
() C:\Users\Honza\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\RMSvc.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
(WildTangent) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
(Acer Cloud Technology) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(acer) C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe\livecomm.exe
(Opera Software) C:\Program Files (x86)\Opera\28.0.1750.40\opera.exe
() C:\Program Files (x86)\Opera\28.0.1750.40\opera_crashreporter.exe
(Opera Software) C:\Program Files (x86)\Opera\28.0.1750.40\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\28.0.1750.40\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\28.0.1750.40\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\28.0.1750.40\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\28.0.1750.40\opera.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13672664 2014-06-30] (Realtek Semiconductor)
HKLM-x32\...\Run: [Adobe ARM] => c:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-09-05] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [BacKGround Agent] => C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [62208 2014-12-19] (Acer Incorporated)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227112 2015-01-27] (AVAST Software)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.)
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [134784 2014-04-29] ( (Qualcomm®Atheros®))
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [AcerCloud] => C:\Program Files (x86)\Acer\Acer Portal\acpanel_win.exe [2480384 2014-12-19] (Acer)
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [30873192 2014-12-11] (Skype Technologies S.A.)
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [uTorrent] => C:\Users\Honza\AppData\Roaming\uTorrent\uTorrent.exe [1374032 2015-01-21] (BitTorrent Inc.)
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Honza\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Honza\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [7780120 2015-01-22] (SUPERAntiSpyware)
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\RunOnce: [Application Restart #1] => C:\Users\Honza\AppData\Local\Pokki\Engine\HostAppService.exe --disable-internal-flash --noerrdialogs --no-message-box --disable-extensions --disable-web-security --disable-web-resources --disable-cli (the data entry has 549 more characters).
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\MountPoints2: {47c8b63c-c0cf-11e4-8267-206a8ae03f0c} - "D:\autorun.exe"
Startup: C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\NHL® 09 Registration.lnk
ShortcutTarget: NHL® 09 Registration.lnk -> C:\Program Files (x86)\EA Sports\NHL 09\Support\EAregister.exe (No File)
Startup: C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Registration Assassin.LNK
ShortcutTarget: Registration Assassin.LNK -> C:\Program Files (x86)\Ubisoft\Assassin's Creed\Register\RegistrationReminder.exe (No File)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: [ACloudSyncedRF] -> {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} => C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll (Acer Incorporated)
ShellIconOverlayIdentifiers: [ACloudSyncedSF] -> {5D5F18B7-D59B-4B18-A3E9-0A4BDCCCB699} => C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll (Acer Incorporated)
ShellIconOverlayIdentifiers: [ACloudSyncing] -> {C1E1456F-C2D8-4C96-870D-35F1E13941EE} => C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll (Acer Incorporated)
ShellIconOverlayIdentifiers: [ACloudToBeSynced] -> {307523FA-DDC0-4068-983F-2A6B34627744} => C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll (Acer Incorporated)
BootExecute: autocheck autochk * sdnclean64.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-3125435620-391947284-2330968494-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=13415
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer13.msn.com/?pc=ACJB
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {494A6CF8-C5D1-46C4-BBE7-6D6D9B1CA207} URL = http://encyklopedie.seznam.cz/search?q= ... arch_13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {5D602557-6ED3-4F96-A00A-5DEB66CA62C3} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {63FB1F7D-889C-4EB3-A53D-AB46BD1B805D} URL = http://search.seznam.cz/?q={searchTerms ... arch_13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {67C683B3-28F0-4591-A398-BD86109A84C1} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {6D2C490E-2056-44DE-BB89-30B2901A3A44} URL = http://www.mapy.cz/?query={searchTerms} ... arch_13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {7823C17E-ECD6-4E6C-AC91-CEC1C4F3DE4D} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {8EC198AD-8D9E-4DC0-8C8C-87493CA42C5D} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {A388744D-D9EE-4DC8-9FB3-7462E3FDD5C4} URL = http://www.novinky.cz/hledej?w={searchT ... arch_13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {F502DA66-86F2-4467-BFC7-A9BA59EF0FFA} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_13415
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-12-24] (AVAST Software)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
BHO: McAfee SiteAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\siteadvisor\x64\McIEPlg.dll [2015-01-28] (McAfee, Inc.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-12-24] (AVAST Software)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
BHO-x32: McAfee SiteAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\siteadvisor\McIEPlg.dll [2015-01-28] (McAfee, Inc.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation)
Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\siteadvisor\x64\McIEPlg.dll [2015-01-28] (McAfee, Inc.)
Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\siteadvisor\McIEPlg.dll [2015-01-28] (McAfee, Inc.)
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\x64\McIEPlg.dll [2015-01-28] (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\McIEPlg.dll [2015-01-28] (McAfee, Inc.)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2012-10-01] (Microsoft Corporation)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\x64\McIEPlg.dll [2015-01-28] (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\McIEPlg.dll [2015-01-28] (McAfee, Inc.)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\3\NP_wtapp.dll [2014-12-25] ()
FF Plugin-x32: Adobe Reader -> c:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2013-09-05] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3125435620-391947284-2330968494-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Honza\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-01-26] (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2012-10-01] (Microsoft Corporation)
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor
FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor [2014-07-18]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-12-24]

Chrome:
=======
CHR Profile: C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-07]
CHR Extension: (Docs) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-12-24]
CHR Extension: (Google Drive) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-12-24]
CHR Extension: (Seznam Lištička - Email) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2015-03-07]
CHR Extension: (Seznam Lištička - Slovník) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2015-03-07]
CHR Extension: (YouTube) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-12-24]
CHR Extension: (Google Search) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-12-24]
CHR Extension: (SiteAdvisor) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2015-02-28]
CHR Extension: (Avast Online Security) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-02-28]
CHR Extension: (Skype Click to Call) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-02-28]
CHR Extension: (Google Wallet) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-12-24]
CHR Extension: (Seznam Lištička - Rychlá volba) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2015-03-07]
CHR Extension: (Gmail) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-12-24]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2015-03-08]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2015-03-08]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-12-24]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14]

Opera:
=======
OPR Extension: (adblockforopera) - C:\Users\Honza\AppData\Roaming\Opera Software\Opera Stable\Extensions\aobdicepooefnbaeokijohmhjlleamfj [2015-01-03]
OPR Extension: (Adblock Plus) - C:\Users\Honza\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp [2015-03-11]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [172344 2014-07-23] (SUPERAntiSpyware.com)
R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [319104 2014-04-29] (Windows (R) Win 7 DDK provider) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-12-24] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4012248 2014-12-24] (Avast Software)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
R2 CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2713856 2014-12-19] (Acer Incorporated)
R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2573032 2014-06-12] (Acer Incorporated)
R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [347200 2015-02-24] (WildTangent)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [315376 2014-06-09] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [733696 2013-07-02] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [822232 2013-07-02] (Intel(R) Corporation)
R2 LMSvc; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [466664 2014-06-10] (Acer Incorporate)
R2 McAfee SiteAdvisor Service; c:\Program Files (x86)\McAfee\siteadvisor\mcsacore.exe [155368 2015-02-19] (McAfee, Inc.)
R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [458984 2014-06-26] (Acer Incorporate)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [254512 2012-04-24] ()
R3 RMSvc; C:\Program Files\Acer\Acer Quick Access\RMSvc.exe [449768 2014-06-26] (Acer Incorporate)
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
R3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [233216 2014-06-24] (acer)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-12-24] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2014-12-24] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-12-24] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-12-24] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2014-12-24] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2014-12-24] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2014-12-24] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2014-12-24] ()
R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3893248 2014-04-03] (Qualcomm Atheros Communications, Inc.)
S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2014-04-29] (Qualcomm Atheros)
S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2015-03-07] (Disc Soft Ltd)
R3 GPIO; C:\Windows\System32\drivers\iaiogpioe.sys [31232 2014-06-09] (Intel Corporation)
R3 iaioi2c; C:\Windows\System32\drivers\iaioi2ce.sys [69632 2014-06-09] (Intel Corporation)
R3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-07-18] (Acer Incorporated)
R3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [14680 2013-07-18] (Acer Incorporated)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R3 TXEIx64; C:\Windows\System32\drivers\TXEIx64.sys [88592 2014-01-15] (Intel Corporation)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [271752 2014-12-24] (Avast Software)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-12 14:27 - 2015-03-12 14:28 - 00026012 _____ () C:\Users\Honza\Desktop\FRST.txt
2015-03-12 14:27 - 2015-03-12 14:27 - 00029696 _____ () C:\Users\Honza\AppData\Local\MSGBOX.EXE
2015-03-12 14:27 - 2015-03-12 14:27 - 00015327 _____ () C:\Users\Honza\Desktop\LM.bat
2015-03-11 20:51 - 2015-03-11 20:51 - 00010496 _____ () C:\Users\Honza\Desktop\zoek-results.txt
2015-03-11 20:42 - 2015-03-11 20:42 - 00000197 _____ () C:\Windows\system32\2015-03-11-19-42-12.087-AvastVBoxSVC.exe-2784.log
2015-03-11 20:41 - 2015-03-11 20:41 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\DAEMON Tools Lite
2015-03-11 20:40 - 2015-03-11 20:40 - 00000180 _____ () C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2015-03-11 20:38 - 2014-02-13 23:59 - 00024064 _____ () C:\Windows\zoek-delete.exe
2015-03-11 19:04 - 2015-03-11 20:41 - 00010496 _____ () C:\zoek-results.log
2015-03-11 19:01 - 2015-03-11 20:39 - 00000000 ____D () C:\zoek_backup
2015-03-11 19:00 - 2015-03-11 19:00 - 00000197 _____ () C:\Windows\system32\2015-03-11-18-00-36.010-AvastVBoxSVC.exe-3188.log
2015-03-11 18:58 - 2015-03-11 20:39 - 00000232 _____ () C:\Windows\setupact.log
2015-03-11 18:58 - 2015-03-11 18:58 - 00000000 _____ () C:\Windows\setuperr.log
2015-03-11 18:57 - 2015-03-11 20:39 - 00000704 _____ () C:\Windows\PFRO.log
2015-03-11 18:42 - 2015-03-11 18:56 - 00000000 ____D () C:\AdwCleaner
2015-03-11 18:11 - 2003-01-24 14:36 - 01441994 _____ () C:\Users\Honza\Desktop\zoek.scr
2015-03-11 18:11 - 2003-01-24 14:36 - 01441994 _____ () C:\Users\Honza\Desktop\zoek.pif
2015-03-11 18:11 - 2003-01-24 14:36 - 01441994 _____ () C:\Users\Honza\Desktop\zoek.com
2015-03-11 18:10 - 2015-03-11 18:10 - 04317228 _____ () C:\Users\Honza\Desktop\zoek.rar
2015-03-11 15:03 - 2015-03-12 14:28 - 00000000 ____D () C:\FRST
2015-03-11 15:02 - 2015-03-11 15:02 - 02095616 _____ (Farbar) C:\Users\Honza\Desktop\FRST64.exe
2015-03-10 21:55 - 2015-03-10 21:56 - 00000000 ____D () C:\Hry
2015-03-10 21:39 - 2015-03-10 21:39 - 02171392 _____ () C:\Users\Honza\Desktop\adwcleaner_4.112.exe
2015-03-10 20:55 - 2015-03-10 20:55 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-03-10 20:55 - 2015-03-10 20:55 - 00001118 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-03-10 20:55 - 2015-03-10 20:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-03-10 20:55 - 2015-03-10 20:55 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-03-10 20:55 - 2015-03-10 20:55 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-03-10 20:55 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-03-10 20:55 - 2014-11-21 06:14 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-03-10 20:55 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-03-10 20:51 - 2015-03-10 20:53 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Honza\Downloads\mbam-setup-2.0.4.1028.exe
2015-03-09 20:36 - 2015-03-10 20:05 - 4017199428 _____ () C:\Users\Honza\Downloads\Jak-jsem-poznal-vaši-matku-2.série-CZ!.rar
2015-03-09 19:17 - 2015-03-09 19:17 - 00000197 _____ () C:\Windows\system32\2015-03-09-18-17-12.034-AvastVBoxSVC.exe-3520.log
2015-03-09 16:41 - 2015-03-11 16:41 - 00000524 _____ () C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 2a11bb15-496f-49f1-8c18-5796091bbc23.job
2015-03-09 16:41 - 2015-03-11 16:12 - 00001868 _____ () C:\Users\Honza\Desktop\SUPERAntiSpyware Professional.lnk
2015-03-09 16:41 - 2015-03-09 19:14 - 00000524 _____ () C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 0ea3be7f-3f32-4257-90d9-1591c7c9cf12.job
2015-03-09 16:41 - 2015-03-09 16:41 - 00003574 _____ () C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task 0ea3be7f-3f32-4257-90d9-1591c7c9cf12
2015-03-09 16:41 - 2015-03-09 16:41 - 00003492 _____ () C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task 2a11bb15-496f-49f1-8c18-5796091bbc23
2015-03-09 16:41 - 2015-03-09 16:41 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\SUPERAntiSpyware.com
2015-03-09 16:41 - 2015-03-09 16:41 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
2015-03-09 16:40 - 2015-03-10 16:41 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware
2015-03-09 16:40 - 2015-03-09 16:40 - 00000000 ____D () C:\ProgramData\SUPERAntiSpyware.com
2015-03-09 16:39 - 2015-03-09 16:40 - 21386376 _____ (SUPERAntiSpyware) C:\Users\Honza\Downloads\SUPERAntiSpyware.exe
2015-03-08 19:02 - 2015-03-08 19:02 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\InstallShield
2015-03-08 15:14 - 2015-03-08 15:14 - 00000247 _____ () C:\Windows\system32\2015-03-08-14-14-45.030-aswFe.exe-2300.log
2015-03-08 15:03 - 2015-03-08 15:14 - 00000247 _____ () C:\Windows\system32\2015-03-08-14-03-16.094-aswFe.exe-2248.log
2015-03-08 15:03 - 2015-03-08 15:03 - 00000197 _____ () C:\Windows\system32\2015-03-08-14-03-12.098-AvastVBoxSVC.exe-3308.log
2015-03-08 15:01 - 2015-03-08 14:58 - 00450771 ____R () C:\Windows\system32\Drivers\etc\hosts.20150308-150145.backup
2015-03-08 14:58 - 2013-08-22 14:25 - 00000824 _____ () C:\Windows\system32\Drivers\etc\hosts.20150308-145831.backup
2015-03-08 14:49 - 2015-03-08 14:56 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2015-03-08 14:49 - 2015-03-08 14:52 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2
2015-03-08 14:49 - 2015-03-08 14:49 - 00001407 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2015-03-08 14:49 - 2015-03-08 14:49 - 00001395 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2015-03-08 14:49 - 2015-03-08 14:49 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking
2015-03-08 14:49 - 2015-03-08 14:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2015-03-08 14:49 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe
2015-03-08 14:45 - 2015-03-08 14:46 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\Honza\Downloads\spybot-2.4.exe
2015-03-08 14:42 - 2015-03-11 20:40 - 00000008 __RSH () C:\ProgramData\ntuser.pol
2015-03-08 12:13 - 2014-04-16 00:34 - 00029888 _____ (Microsoft Corporation) C:\Windows\system32\aspnet_counters.dll
2015-03-08 12:12 - 2014-04-16 00:35 - 00028352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aspnet_counters.dll
2015-03-08 12:10 - 2014-12-13 22:28 - 00513488 _____ () C:\Windows\SysWOW64\locale.nls
2015-03-08 12:10 - 2014-12-13 22:28 - 00513488 _____ () C:\Windows\system32\locale.nls
2015-03-08 12:10 - 2014-10-29 02:27 - 01200128 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll
2015-03-08 12:10 - 2014-10-29 02:27 - 00323072 _____ (Microsoft Corporation) C:\Windows\system32\GlobCollationHost.dll
2015-03-08 12:10 - 2014-10-29 02:04 - 00868352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll
2015-03-08 12:10 - 2014-10-29 02:04 - 00200704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GlobCollationHost.dll
2015-03-07 21:01 - 2015-03-08 19:16 - 00000000 ____D () C:\ProgramData\Ubisoft
2015-03-07 21:01 - 2015-03-07 21:01 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\Ubisoft
2015-03-07 20:58 - 2015-03-07 20:58 - 00001797 _____ () C:\Users\Honza\Desktop\AssassinsCreedII – zástupce.lnk
2015-03-07 20:41 - 2015-03-08 19:19 - 00000000 ____D () C:\Program Files (x86)\Ubisoft
2015-03-07 19:44 - 2015-03-07 19:44 - 00000000 ____D () C:\Program Files (x86)\Seznam.cz
2015-03-07 19:43 - 2015-03-11 20:46 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\Seznam.cz
2015-03-07 19:42 - 2015-03-07 19:42 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys
2015-03-07 19:42 - 2015-03-07 19:42 - 00001966 _____ () C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2015-03-07 19:42 - 2015-03-07 19:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2015-03-07 19:42 - 2015-03-07 19:42 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite
2015-03-07 19:40 - 2015-03-07 20:22 - 00000000 ____D () C:\ProgramData\DAEMON Tools Lite
2015-03-07 19:39 - 2015-03-07 19:39 - 13429504 _____ (Disc Soft Ltd) C:\Users\Honza\Downloads\DTLite4491-0356.exe
2015-03-06 21:20 - 2015-03-06 21:20 - 816725473 _____ () C:\Users\Honza\Desktop\Patch-F.mpq
2015-03-03 08:37 - 2015-03-03 08:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-03-03 08:36 - 2015-03-03 08:36 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2015-03-03 08:35 - 2015-03-03 08:35 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server
2015-03-03 08:34 - 2015-03-03 08:34 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-03-03 08:33 - 2015-03-03 08:35 - 00000000 ____D () C:\Program Files\Microsoft SQL Server
2015-03-03 08:33 - 2015-03-03 08:33 - 00000000 ____D () C:\Windows\PCHEALTH
2015-03-03 08:30 - 2015-03-03 08:38 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-03-03 08:30 - 2015-03-03 08:33 - 00000000 ____D () C:\Program Files\Microsoft Office
2015-03-03 08:30 - 2015-03-03 08:30 - 00000000 ____D () C:\Users\Honza\AppData\Local\Microsoft Help
2015-03-03 08:30 - 2015-03-03 08:30 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services
2015-03-03 08:30 - 2015-03-03 08:30 - 00000000 ____D () C:\Program Files (x86)\Microsoft Analysis Services
2015-03-03 08:29 - 2015-03-03 08:29 - 00000000 __RHD () C:\MSOCache
2015-03-03 05:50 - 2015-03-03 07:20 - 00000000 ____D () C:\Users\Honza\Desktop\koktiny
2015-03-03 05:47 - 2014-12-09 16:56 - 00000000 ____D () C:\Users\Honza\Desktop\1. serie
2015-03-02 06:50 - 2015-03-11 20:44 - 00753396 _____ () C:\Windows\WindowsUpdate.log
2015-02-26 19:55 - 2015-03-07 15:56 - 00000000 ____D () C:\Users\Honza\Documents\FIFA 12
2015-02-24 22:39 - 2015-02-24 22:39 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\Leadertech
2015-02-24 11:30 - 2015-02-24 11:30 - 00000586 _____ () C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\wotlk.lnk
2015-02-24 11:29 - 2015-02-24 11:29 - 00001762 _____ () C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Counter-Strike 1.6.lnk
2015-02-24 11:29 - 2015-02-24 11:29 - 00000693 _____ () C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The Binding of Isaac.lnk
2015-02-13 15:46 - 2015-03-04 21:54 - 00000000 ____D () C:\Users\Honza\Documents\Max Payne 2 Savegames
2015-02-11 09:26 - 2015-01-15 23:43 - 00563504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-02-11 09:26 - 2015-01-15 23:43 - 00177984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-02-11 09:26 - 2015-01-14 05:22 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-02-11 09:26 - 2015-01-14 04:53 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2015-02-11 09:26 - 2015-01-13 23:11 - 01762840 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-02-11 09:26 - 2015-01-13 23:04 - 01489072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-02-11 09:26 - 2015-01-10 10:10 - 07472960 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-02-11 09:26 - 2015-01-10 10:10 - 01733440 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-02-11 09:26 - 2015-01-10 09:28 - 01498360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-02-11 09:26 - 2015-01-10 08:00 - 00430080 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-02-11 09:26 - 2015-01-10 07:38 - 00359424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-02-11 09:26 - 2014-12-09 04:45 - 00393728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2015-02-11 09:26 - 2014-12-09 02:56 - 00538624 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2015-02-11 09:26 - 2014-10-29 03:51 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-02-11 09:26 - 2014-10-29 03:50 - 00736768 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-02-11 09:26 - 2014-10-29 03:06 - 00736768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-02-11 09:26 - 2014-10-29 03:06 - 00154112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-02-11 09:26 - 2014-10-29 03:02 - 00285184 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2015-02-11 09:26 - 2014-10-29 03:02 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2015-02-11 09:26 - 2014-10-29 02:57 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2015-02-11 09:26 - 2014-10-29 02:31 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-02-11 09:26 - 2014-10-29 02:15 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2015-02-11 09:26 - 2014-10-29 02:15 - 00005632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2015-02-11 09:26 - 2014-10-29 02:14 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2015-02-11 09:26 - 2014-10-29 02:13 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2015-02-11 09:26 - 2014-10-29 02:13 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2015-02-11 09:25 - 2015-01-12 04:09 - 25056256 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-02-11 09:25 - 2015-01-12 03:48 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-02-11 09:25 - 2015-01-12 03:48 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-02-11 09:25 - 2015-01-12 03:47 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-02-11 09:25 - 2015-01-12 03:34 - 00816128 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-02-11 09:25 - 2015-01-12 03:32 - 06041088 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-02-11 09:25 - 2015-01-12 03:25 - 19740160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-02-11 09:25 - 2015-01-12 03:21 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-02-11 09:25 - 2015-01-12 03:08 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-02-11 09:25 - 2015-01-12 03:07 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-02-11 09:25 - 2015-01-12 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-02-11 09:25 - 2015-01-12 03:02 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-02-11 09:25 - 2015-01-12 02:58 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2015-02-11 09:25 - 2015-01-12 02:55 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-02-11 09:25 - 2015-01-12 02:51 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-02-11 09:25 - 2015-01-12 02:48 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-02-11 09:25 - 2015-01-12 02:48 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-02-11 09:25 - 2015-01-12 02:48 - 00374272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-02-11 09:25 - 2015-01-12 02:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-02-11 09:25 - 2015-01-12 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-02-11 09:25 - 2015-01-12 02:43 - 14401024 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-02-11 09:25 - 2015-01-12 02:34 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-02-11 09:25 - 2015-01-12 02:30 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2015-02-11 09:25 - 2015-01-12 02:29 - 04300800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-02-11 09:25 - 2015-01-12 02:27 - 02865152 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2015-02-11 09:25 - 2015-01-12 02:27 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-02-11 09:25 - 2015-01-12 02:25 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-02-11 09:25 - 2015-01-12 02:23 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-02-11 09:25 - 2015-01-12 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-02-11 09:25 - 2015-01-12 02:23 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-02-11 09:25 - 2015-01-12 02:14 - 12829184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-02-11 09:25 - 2015-01-12 02:14 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-02-11 09:25 - 2015-01-12 02:02 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-02-11 09:25 - 2015-01-12 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-02-11 09:25 - 2015-01-12 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-02-11 09:25 - 2015-01-12 01:55 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-02-11 09:25 - 2014-12-19 09:57 - 00788680 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-02-11 09:25 - 2014-12-19 09:25 - 00602776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2015-02-11 09:25 - 2014-12-09 00:12 - 00391526 _____ () C:\Windows\system32\ApnDatabase.xml
2015-02-11 09:24 - 2015-02-04 00:38 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-02-11 09:24 - 2015-02-04 00:08 - 00761856 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-02-11 09:24 - 2015-02-04 00:08 - 00414208 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-02-11 09:24 - 2015-02-03 00:11 - 01098752 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-02-11 09:24 - 2015-02-03 00:11 - 00894464 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-02-11 09:24 - 2015-02-03 00:11 - 00609280 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-02-11 09:24 - 2015-01-19 19:42 - 01487976 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2015-02-11 09:24 - 2015-01-10 09:22 - 04175872 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-02-10 18:05 - 2015-02-10 18:37 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Counter-Strike 1.6
2015-02-10 18:02 - 2015-03-04 21:40 - 00000000 ____D () C:\Counter-Strike 1.6
2015-02-10 16:11 - 2015-02-10 16:12 - 00000197 _____ () C:\Windows\system32\2015-02-10-15-11-07.037-AvastVBoxSVC.exe-2868.log

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-12 14:26 - 2014-08-21 10:25 - 00739924 _____ () C:\Windows\system32\perfh005.dat
2015-03-12 14:26 - 2014-08-21 10:25 - 00151610 _____ () C:\Windows\system32\perfc005.dat
2015-03-12 14:26 - 2014-03-18 10:47 - 01745984 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-03-12 14:26 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sru
2015-03-12 14:25 - 2014-12-24 21:30 - 00003962 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{A3888134-4681-46CD-8F5C-AA5C4D59029E}
2015-03-12 14:24 - 2014-12-25 09:06 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\Skype
2015-03-11 21:51 - 2014-12-24 21:36 - 00000974 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-03-11 21:16 - 2014-12-24 22:39 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-03-11 20:46 - 2014-12-09 09:06 - 00003596 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3125435620-391947284-2330968494-1001
2015-03-11 20:45 - 2014-12-09 09:06 - 00000000 ____D () C:\Users\Honza\AppData\Local\CrashDumps
2015-03-11 20:43 - 2014-12-25 11:43 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\uTorrent
2015-03-11 20:42 - 2014-12-24 21:36 - 00000970 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-03-11 20:42 - 2014-12-09 09:04 - 00000000 ___DO () C:\Users\Honza\OneDrive
2015-03-11 20:39 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-03-11 20:38 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\BBI
2015-03-11 20:27 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\GroupPolicy
2015-03-11 18:39 - 2015-01-16 23:39 - 00000839 _____ () C:\Users\Honza\Desktop\meti.txt
2015-03-11 16:41 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness
2015-03-10 21:40 - 2014-12-24 21:32 - 00003826 _____ () C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1419453153
2015-03-10 21:40 - 2014-12-24 21:32 - 00001061 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2015-03-10 21:40 - 2014-12-24 21:31 - 00000000 ____D () C:\Program Files (x86)\Opera
2015-03-10 15:29 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\rescache
2015-03-08 19:20 - 2015-01-23 20:33 - 00000000 ____D () C:\Users\Honza\Desktop\Rary
2015-03-08 19:02 - 2014-08-21 10:24 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-03-08 14:41 - 2013-08-22 15:44 - 00492424 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-03-08 12:30 - 2013-08-22 16:20 - 00000000 ____D () C:\Windows\CbsTemp
2015-03-08 12:10 - 2014-12-25 21:30 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-03-08 12:10 - 2014-12-25 21:30 - 00000000 ____D () C:\Windows\system32\appraiser
2015-03-08 11:58 - 2013-08-22 14:25 - 00000301 _____ () C:\Windows\win.ini
2015-03-08 11:20 - 2014-12-09 09:00 - 00000000 ____D () C:\Users\Honza\AppData\Local\Packages
2015-03-08 01:56 - 2014-12-24 21:35 - 00000892 _____ () C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job
2015-03-06 15:47 - 2015-01-04 11:05 - 00000000 ____D () C:\Users\Honza\Desktop\Pozadí
2015-03-03 11:00 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\NDF
2015-03-03 08:36 - 2014-03-18 10:33 - 00000000 ____D () C:\Windows\ShellNew
2015-03-03 08:36 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2015-03-03 08:32 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\System
2015-03-03 07:29 - 2014-12-25 11:54 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\vlc
2015-03-03 07:00 - 2015-01-19 22:13 - 00000000 ____D () C:\Users\Honza\Desktop\Fotky
2015-02-24 11:31 - 2014-07-18 04:27 - 00000000 ____D () C:\Program Files (x86)\WildTangent Games
2015-02-24 11:07 - 2015-01-05 15:28 - 00000000 ____D () C:\Users\Honza\Desktop\filmy
2015-02-22 17:53 - 2014-12-24 21:37 - 00002207 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2015-02-13 22:09 - 2014-12-24 21:34 - 00000000 ____D () C:\Users\Honza\AppData\Local\Adobe
2015-02-13 07:19 - 2014-07-18 04:35 - 00000000 ____D () C:\Program Files (x86)\McAfee

==================== Files in the root of some directories =======

2015-03-12 14:27 - 2015-03-12 14:27 - 0029696 _____ () C:\Users\Honza\AppData\Local\MSGBOX.EXE
2015-01-04 00:37 - 2015-01-04 00:37 - 0000017 _____ () C:\Users\Honza\AppData\Local\resmon.resmoncfg
2014-08-21 10:35 - 2014-08-21 10:35 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-03-10 15:15

==================== End Of Log ============================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Vyskakující reklamy, zpomalený PC.

#7 Příspěvek od vyosek »

:arrow: Odinstalujte Spybot - Search & Destroy 2. Je zastaraly a neucinny, nejvetsi slavu ma davno za s sebou.

:arrow: Odinstalujte McAfee, jelikoz koliduje s Avastem

:arrow: Tvorba fixlistu pro FRST
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    Start
    CloseProcesses:
    CreateRestorePoint:
    
    HKLM-x32\...\Run: [Adobe ARM] => c:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-09-05] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
    HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.)
    Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
    HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [30873192 2014-12-11] (Skype Technologies S.A.)
    HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [uTorrent] => C:\Users\Honza\AppData\Roaming\uTorrent\uTorrent.exe [1374032 2015-01-21] (BitTorrent Inc.)
    HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
    HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
    HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Honza\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
    HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Honza\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
    HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [7780120 2015-01-22] (SUPERAntiSpyware)
    HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\RunOnce: [Application Restart #1] => C:\Users\Honza\AppData\Local\Pokki\Engine\HostAppService.exe --disable-internal-flash --noerrdialogs --no-message-box --disable-extensions --disable-web-security --disable-web-resources --disable-cli (the data entry has 549 more characters).
    HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\MountPoints2: {47c8b63c-c0cf-11e4-8267-206a8ae03f0c} - "D:\autorun.exe" 
    Startup: C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\NHL® 09 Registration.lnk
    Startup: C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Registration Assassin.LNK
    BootExecute: autocheck autochk * sdnclean64.exe
    
    HKU\S-1-5-21-3125435620-391947284-2330968494-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer13.msn.com/?pc=ACJB
    SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
    SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
    SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
    
    CHR Extension: (Skype Click to Call) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-02-28]
    CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14]
    
    R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
    R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
    R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
    R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.)
    R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
    
    c:\Program Files (x86)\McAfee
    C:\Program Files (x86)\Spybot - Search & Destroy 2
    2015-03-12 14:27 - 2015-03-12 14:28 - 00026012 _____ () C:\Users\Honza\Desktop\FRST.txt
    2015-03-12 14:27 - 2015-03-12 14:27 - 00029696 _____ () C:\Users\Honza\AppData\Local\MSGBOX.EXE
    2015-03-12 14:27 - 2015-03-12 14:27 - 00015327 _____ () C:\Users\Honza\Desktop\LM.bat
    2015-03-11 20:51 - 2015-03-11 20:51 - 00010496 _____ () C:\Users\Honza\Desktop\zoek-results.txt
    2015-03-11 20:42 - 2015-03-11 20:42 - 00000197 _____ () C:\Windows\system32\2015-03-11-19-42-12.087-AvastVBoxSVC.exe-2784.log
    2015-03-11 20:40 - 2015-03-11 20:40 - 00000180 _____ () C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
    2015-03-11 20:38 - 2014-02-13 23:59 - 00024064 _____ () C:\Windows\zoek-delete.exe
    2015-03-11 19:04 - 2015-03-11 20:41 - 00010496 _____ () C:\zoek-results.log
    2015-03-11 19:01 - 2015-03-11 20:39 - 00000000 ____D () C:\zoek_backup
    2015-03-11 19:00 - 2015-03-11 19:00 - 00000197 _____ () C:\Windows\system32\2015-03-11-18-00-36.010-AvastVBoxSVC.exe-3188.log
    2015-03-11 18:58 - 2015-03-11 20:39 - 00000232 _____ () C:\Windows\setupact.log
    2015-03-11 18:58 - 2015-03-11 18:58 - 00000000 _____ () C:\Windows\setuperr.log
    2015-03-11 18:57 - 2015-03-11 20:39 - 00000704 _____ () C:\Windows\PFRO.log
    2015-03-11 18:42 - 2015-03-11 18:56 - 00000000 ____D () C:\AdwCleaner
    2015-03-11 18:11 - 2003-01-24 14:36 - 01441994 _____ () C:\Users\Honza\Desktop\zoek.scr
    2015-03-11 18:11 - 2003-01-24 14:36 - 01441994 _____ () C:\Users\Honza\Desktop\zoek.pif
    2015-03-11 18:11 - 2003-01-24 14:36 - 01441994 _____ () C:\Users\Honza\Desktop\zoek.com
    2015-03-11 18:10 - 2015-03-11 18:10 - 04317228 _____ () C:\Users\Honza\Desktop\zoek.rar
    2015-03-10 21:39 - 2015-03-10 21:39 - 02171392 _____ () C:\Users\Honza\Desktop\adwcleaner_4.112.exe
    2015-03-08 15:14 - 2015-03-08 15:14 - 00000247 _____ () C:\Windows\system32\2015-03-08-14-14-45.030-aswFe.exe-2300.log
    2015-03-08 15:03 - 2015-03-08 15:14 - 00000247 _____ () C:\Windows\system32\2015-03-08-14-03-16.094-aswFe.exe-2248.log
    2015-03-08 15:03 - 2015-03-08 15:03 - 00000197 _____ () C:\Windows\system32\2015-03-08-14-03-12.098-AvastVBoxSVC.exe-3308.log
    2015-03-08 15:01 - 2015-03-08 14:58 - 00450771 ____R () C:\Windows\system32\Drivers\etc\hosts.20150308-150145.backup
    2015-03-08 14:58 - 2013-08-22 14:25 - 00000824 _____ () C:\Windows\system32\Drivers\etc\hosts.20150308-145831.backup
    2015-03-08 14:49 - 2015-03-08 14:56 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
    2015-03-08 14:49 - 2015-03-08 14:52 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2
    2015-03-08 14:49 - 2015-03-08 14:49 - 00001407 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
    2015-03-08 14:49 - 2015-03-08 14:49 - 00001395 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
    2015-03-08 14:49 - 2015-03-08 14:49 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking
    2015-03-08 14:49 - 2015-03-08 14:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
    2015-03-08 14:49 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe
    2015-03-08 14:45 - 2015-03-08 14:46 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\Honza\Downloads\spybot-2.4.exe
    
    Hosts:
    EmptyTemp:
    Reboot:
    End
    
  • Ulozte vytvoreny TXT jako fixlist.txt
  • Presunte vytvoreny fixlist vedle FRST
:arrow: Spustte znovu FRST.exe
  • Kliknete na Fix
  • Probehne oprava a vytvori log Fixlog.txt
:arrow: Restart PC a dejte mi sem fixlog.txt
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Honza999
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 11 bře 2015 14:58

Re: Vyskakující reklamy, zpomalený PC.

#8 Příspěvek od Honza999 »

Zde Fixlog. :)

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 11-03-2015
Ran by Honza at 2015-03-13 14:13:26 Run:1
Running from C:\Users\Honza\Desktop
Loaded Profiles: Honza (Available profiles: Honza)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
CloseProcesses:
CreateRestorePoint:

HKLM-x32\...\Run: [Adobe ARM] => c:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-09-05] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.)
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [30873192 2014-12-11] (Skype Technologies S.A.)
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [uTorrent] => C:\Users\Honza\AppData\Roaming\uTorrent\uTorrent.exe [1374032 2015-01-21] (BitTorrent Inc.)
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Honza\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Honza\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [7780120 2015-01-22] (SUPERAntiSpyware)
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\RunOnce: [Application Restart #1] => C:\Users\Honza\AppData\Local\Pokki\Engine\HostAppService.exe --disable-internal-flash --noerrdialogs --no-message-box --disable-extensions --disable-web-security --disable-web-resources --disable-cli (the data entry has 549 more characters).
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\MountPoints2: {47c8b63c-c0cf-11e4-8267-206a8ae03f0c} - "D:\autorun.exe"
Startup: C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\NHL® 09 Registration.lnk
Startup: C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Registration Assassin.LNK
BootExecute: autocheck autochk * sdnclean64.exe

HKU\S-1-5-21-3125435620-391947284-2330968494-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer13.msn.com/?pc=ACJB
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =

CHR Extension: (Skype Click to Call) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-02-28]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14]

R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)

c:\Program Files (x86)\McAfee
C:\Program Files (x86)\Spybot - Search & Destroy 2
2015-03-12 14:27 - 2015-03-12 14:28 - 00026012 _____ () C:\Users\Honza\Desktop\FRST.txt
2015-03-12 14:27 - 2015-03-12 14:27 - 00029696 _____ () C:\Users\Honza\AppData\Local\MSGBOX.EXE
2015-03-12 14:27 - 2015-03-12 14:27 - 00015327 _____ () C:\Users\Honza\Desktop\LM.bat
2015-03-11 20:51 - 2015-03-11 20:51 - 00010496 _____ () C:\Users\Honza\Desktop\zoek-results.txt
2015-03-11 20:42 - 2015-03-11 20:42 - 00000197 _____ () C:\Windows\system32\2015-03-11-19-42-12.087-AvastVBoxSVC.exe-2784.log
2015-03-11 20:40 - 2015-03-11 20:40 - 00000180 _____ () C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2015-03-11 20:38 - 2014-02-13 23:59 - 00024064 _____ () C:\Windows\zoek-delete.exe
2015-03-11 19:04 - 2015-03-11 20:41 - 00010496 _____ () C:\zoek-results.log
2015-03-11 19:01 - 2015-03-11 20:39 - 00000000 ____D () C:\zoek_backup
2015-03-11 19:00 - 2015-03-11 19:00 - 00000197 _____ () C:\Windows\system32\2015-03-11-18-00-36.010-AvastVBoxSVC.exe-3188.log
2015-03-11 18:58 - 2015-03-11 20:39 - 00000232 _____ () C:\Windows\setupact.log
2015-03-11 18:58 - 2015-03-11 18:58 - 00000000 _____ () C:\Windows\setuperr.log
2015-03-11 18:57 - 2015-03-11 20:39 - 00000704 _____ () C:\Windows\PFRO.log
2015-03-11 18:42 - 2015-03-11 18:56 - 00000000 ____D () C:\AdwCleaner
2015-03-11 18:11 - 2003-01-24 14:36 - 01441994 _____ () C:\Users\Honza\Desktop\zoek.scr
2015-03-11 18:11 - 2003-01-24 14:36 - 01441994 _____ () C:\Users\Honza\Desktop\zoek.pif
2015-03-11 18:11 - 2003-01-24 14:36 - 01441994 _____ () C:\Users\Honza\Desktop\zoek.com
2015-03-11 18:10 - 2015-03-11 18:10 - 04317228 _____ () C:\Users\Honza\Desktop\zoek.rar
2015-03-10 21:39 - 2015-03-10 21:39 - 02171392 _____ () C:\Users\Honza\Desktop\adwcleaner_4.112.exe
2015-03-08 15:14 - 2015-03-08 15:14 - 00000247 _____ () C:\Windows\system32\2015-03-08-14-14-45.030-aswFe.exe-2300.log
2015-03-08 15:03 - 2015-03-08 15:14 - 00000247 _____ () C:\Windows\system32\2015-03-08-14-03-16.094-aswFe.exe-2248.log
2015-03-08 15:03 - 2015-03-08 15:03 - 00000197 _____ () C:\Windows\system32\2015-03-08-14-03-12.098-AvastVBoxSVC.exe-3308.log
2015-03-08 15:01 - 2015-03-08 14:58 - 00450771 ____R () C:\Windows\system32\Drivers\etc\hosts.20150308-150145.backup
2015-03-08 14:58 - 2013-08-22 14:25 - 00000824 _____ () C:\Windows\system32\Drivers\etc\hosts.20150308-145831.backup
2015-03-08 14:49 - 2015-03-08 14:56 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2015-03-08 14:49 - 2015-03-08 14:52 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2
2015-03-08 14:49 - 2015-03-08 14:49 - 00001407 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2015-03-08 14:49 - 2015-03-08 14:49 - 00001395 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2015-03-08 14:49 - 2015-03-08 14:49 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking
2015-03-08 14:49 - 2015-03-08 14:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2015-03-08 14:49 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe
2015-03-08 14:45 - 2015-03-08 14:46 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\Honza\Downloads\spybot-2.4.exe

Hosts:
EmptyTemp:
Reboot:
End
*****************

Processes closed successfully.
Restore point was successfully created.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\seznam-listicka-distribuce => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SDTray => Value not found.
HKLM\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SDWinLogon => Key not found.
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Skype => value deleted successfully.
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\Software\Microsoft\Windows\CurrentVersion\Run\\uTorrent => value deleted successfully.
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\Software\Microsoft\Windows\CurrentVersion\Run\\CCleaner Monitoring => value deleted successfully.
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => value deleted successfully.
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\Software\Microsoft\Windows\CurrentVersion\Run\\cz.seznam.software.autoupdate => value deleted successfully.
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\Software\Microsoft\Windows\CurrentVersion\Run\\cz.seznam.software.szndesktop => value deleted successfully.
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\Software\Microsoft\Windows\CurrentVersion\Run\\SUPERAntiSpyware => value deleted successfully.
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Application Restart #1 => Value not found.
"HKU\S-1-5-21-3125435620-391947284-2330968494-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{47c8b63c-c0cf-11e4-8267-206a8ae03f0c}" => Key deleted successfully.
HKCR\CLSID\{47c8b63c-c0cf-11e4-8267-206a8ae03f0c} => Key not found.
C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\NHL® 09 Registration.lnk => Moved successfully.
C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Registration Assassin.LNK => Moved successfully.
HKLM\System\CurrentControlSet\Control\Session Manager\\BootExecute => Value was restored successfully.
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully.
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl => Moved successfully.
"HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl" => Key deleted successfully.
C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx => Moved successfully.
c2cautoupdatesvc => Service deleted successfully.
c2cpnrsvc => Service deleted successfully.
SDScannerService => Service not found.
SDUpdateService => Service not found.
SDWSCService => Service not found.
c:\Program Files (x86)\McAfee => Moved successfully.
C:\Program Files (x86)\Spybot - Search & Destroy 2 => Moved successfully.
C:\Users\Honza\Desktop\FRST.txt => Moved successfully.
C:\Users\Honza\AppData\Local\MSGBOX.EXE => Moved successfully.
C:\Users\Honza\Desktop\LM.bat => Moved successfully.
C:\Users\Honza\Desktop\zoek-results.txt => Moved successfully.
Could not move "C:\Windows\system32\2015-03-11-19-42-12.087-AvastVBoxSVC.exe-2784.log" => Scheduled to move on reboot.
C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat => Moved successfully.
C:\Windows\zoek-delete.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Windows\system32\2015-03-11-18-00-36.010-AvastVBoxSVC.exe-3188.log => Moved successfully.
"C:\Windows\setupact.log" => File/Directory not found.
"C:\Windows\setuperr.log" => File/Directory not found.
"C:\Windows\PFRO.log" => File/Directory not found.
C:\AdwCleaner => Moved successfully.
C:\Users\Honza\Desktop\zoek.scr => Moved successfully.
C:\Users\Honza\Desktop\zoek.pif => Moved successfully.
C:\Users\Honza\Desktop\zoek.com => Moved successfully.
C:\Users\Honza\Desktop\zoek.rar => Moved successfully.
C:\Users\Honza\Desktop\adwcleaner_4.112.exe => Moved successfully.
C:\Windows\system32\2015-03-08-14-14-45.030-aswFe.exe-2300.log => Moved successfully.
C:\Windows\system32\2015-03-08-14-03-16.094-aswFe.exe-2248.log => Moved successfully.
C:\Windows\system32\2015-03-08-14-03-12.098-AvastVBoxSVC.exe-3308.log => Moved successfully.
C:\Windows\system32\Drivers\etc\hosts.20150308-150145.backup => Moved successfully.
C:\Windows\system32\Drivers\etc\hosts.20150308-145831.backup => Moved successfully.
C:\ProgramData\Spybot - Search & Destroy => Moved successfully.
"C:\Program Files (x86)\Spybot - Search & Destroy 2" => File/Directory not found.
"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk" => File/Directory not found.
"C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk" => File/Directory not found.
C:\Windows\System32\Tasks\Safer-Networking => Moved successfully.
"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2" => File/Directory not found.
"C:\Windows\system32\sdnclean64.exe" => File/Directory not found.
C:\Users\Honza\Downloads\spybot-2.4.exe => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 420.3 MB temporary data.

=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2015-03-13 14:16:49)<=

C:\Windows\system32\2015-03-11-19-42-12.087-AvastVBoxSVC.exe-2784.log => Is moved successfully.

==== End of Fixlog 14:16:49 ====
Naposledy upravil(a) Honza999 dne 13 bře 2015 14:28, celkem upraveno 1 x.

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Vyskakující reklamy, zpomalený PC.

#9 Příspěvek od vyosek »

Jak se chova PC???
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Honza999
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 11 bře 2015 14:58

Re: Vyskakující reklamy, zpomalený PC.

#10 Příspěvek od Honza999 »

Internet značně zrychlil,i procesor a ramky nevykazují žádné zvýšené zatížení.
Myslím,že by to mělo být OK :idea:
Adblock sice blokujé nějaké reklamy,ale v okně bez něj,se nic nezobrazuje.
parádní práce :thumbsup: děkuju moc. :)

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Vyskakující reklamy, zpomalený PC.

#11 Příspěvek od vyosek »

Tak jeste uklidime :James008:

:arrow: DelFix https://toolslib.net/downloads/finish/2/
  • Stahnete a spustte
  • Ponechte zatrzitkou pouze u volby Remote disinfection tools
  • Kliknete na Run
:arrow: Stahnete Ccleaner https://www.piriform.com/ccleaner/download/standard
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: A pokud nejsou problemy ci dotazy, je to z me strany vse :|
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Odpovědět