Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

spomaleny notebook

Patříte mezi Vzorné návštěvníky? Pak je tato sekce pro vás.

Moderátor: Moderátoři

Pravidla fóra
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
Zamčeno
Zpráva
Autor
herodeso
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 53
Registrován: 12 lis 2006 11:35
Bydliště: Slovensko

spomaleny notebook

#1 Příspěvek od herodeso »

prosim...
spomaleny notebook, chcel by som ho ocistit od vsetkeho nepotrebneho, nie je to delo ale mohol by ist lepsie

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 11-03-2015
Ran by NAY (administrator) on NAY-PC on 24-03-2015 19:33:18
Running from C:\Users\NAY\Desktop
Loaded Profiles: NAY (Available profiles: NAY)
Platform: Microsoft Windows 7 Starter Service Pack 1 (X86) OS Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Atheros Communications) C:\Program Files\Bluetooth Suite\AdminService.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Dritek System Inc.) C:\Program Files\Launch Manager\dsiwmis.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
(Acer Incorporated) C:\Program Files\Acer\Registration\GREGsvc.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\VS7DEBUG\mdm.exe
(Acer Incorporated) C:\Program Files\Acer\Acer VCM\RS_Service.exe
(Acer Group) C:\Program Files\Acer\Acer Updater\UpdaterService.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Dritek System Inc.) C:\Program Files\Launch Manager\LManager.exe
(ELAN Microelectronic Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Atheros Communications) C:\Program Files\Bluetooth Suite\BtvStack.exe
(Atheros Communications) C:\Program Files\Bluetooth Suite\AthBtTray.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
(CANON INC.) C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
(Sun Microsystems, Inc.) C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
(Dritek System Inc.) C:\Program Files\Launch Manager\LMworker.exe
(PC Utilities Software Limited) C:\Program Files\Optimizer Pro 3.11\OptProReminder.exe
(Acer Incorporated) C:\Program Files\Acer\Acer VCM\AcerVCM.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(ELAN Microelectronic Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe
(forum.viry.cz) C:\Users\NAY\Desktop\FRST-OlderVersion\FRSTLauncher.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [IAAnotif] => C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2009-06-04] (Intel Corporation)
HKLM\...\Run: [LManager] => C:\Program Files\Launch Manager\LManager.exe [908368 2010-04-08] (Dritek System Inc.)
HKLM\...\Run: [ETDWare] => C:\Program Files\Elantech\ETDCtrl.exe [509896 2010-01-08] (ELAN Microelectronic Corp.)
HKLM\...\Run: [AtherosBtStack] => C:\Program Files\Bluetooth Suite\BtvStack.exe [445528 2010-04-01] (Atheros Communications)
HKLM\...\Run: [AthBtTray] => C:\Program Files\Bluetooth Suite\AthBtTray.exe [285856 2010-04-23] (Atheros Communications)
HKLM\...\Run: [Acer ePower Management] => C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [715296 2010-02-06] (Acer Incorporated)
HKLM\...\Run: [CanonMyPrinter] => C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [1983816 2009-10-19] (CANON INC.)
HKLM\...\Run: [CanonSolutionMenu] => C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [767312 2009-09-04] (CANON INC.)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe [144784 2008-02-22] (Sun Microsystems, Inc.)
HKLM\...\RunOnce: [AvgUninstallURL] => cmd.exe /c start http://www.avg.sk/ww.special-uninstalla ... RDEwRisxLV (the data entry has 70 more characters).
HKU\S-1-5-21-3110072035-4176750333-2029028800-1000\...\Run: [Optimizer Pro] => C:\Program Files\Optimizer Pro 3.11\OptProLauncher.exe [148048 2014-11-20] (PC Utilities Software Limited)
HKU\S-1-5-21-3110072035-4176750333-2029028800-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\Bubbles.scr [878592 2010-11-20] (Microsoft Corporation)
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [280576 2013-05-20] (Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Acer VCM.lnk
ShortcutTarget: Acer VCM.lnk -> C:\Program Files\Acer\Acer VCM\AcerVCM.exe (Acer Incorporated)
ShellIconOverlayIdentifiers: [egisPSDP] -> {30A0A3F6-38AC-4C53-BB8B-0D95238E25BA} => C:\Program Files\EgisTec MyWinLocker\x86\psdprotect.dll (Egis Technology Inc.)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-3110072035-4176750333-2029028800-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.gboxapp.com/?aff=p
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\S-1-5-21-3110072035-4176750333-2029028800-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.gboxapp.com/?aff=p
HKU\S-1-5-21-3110072035-4176750333-2029028800-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
SearchScopes: HKLM -> DefaultScope value is missing.
SearchScopes: HKLM -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = http://www.google.com/search?sourceid=i ... lz=1I7ACAW
SearchScopes: HKU\S-1-5-21-3110072035-4176750333-2029028800-1000 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = http://www.google.com/search?sourceid=i ... SK403SK403
BHO: ExxtrraShooppeR -> {1b082425-5dfd-42f6-9e64-d104a6f69ff4} -> C:\Program Files\ExxtrraShooppeR\MJj8xjVZdUynbj.dll [2015-03-10] ()
BHO: FloashCoupoon -> {1c03e804-a5f1-462c-bd7d-5f7bd1c137c8} -> C:\Program Files\FloashCoupoon\MzoUcWvOZwmFpg.dll [2015-03-11] ()
BHO: FlashCOiuupon -> {3cbb3f1b-bfb6-4bd1-a9b3-0c3edb382d72} -> C:\Program Files\FlashCOiuupon\YW8HyUJ7D0VTOI.dll [2015-03-06] ()
BHO: SSaleSaMagneett -> {4281a326-6c1e-4eb0-af4f-7bb7dfa1d752} -> C:\Program Files\SSaleSaMagneett\wcuhJ5WMLkkB5z.dll [2015-03-11] ()
BHO: KingCoupoN -> {4ab8fe47-ff32-4eaf-a006-d7e937b7d8f3} -> C:\Program Files\KingCoupoN\5nf7YoXE6tDmsH.dll [2015-03-10] ()
BHO: LucckyShopper -> {8c85f020-1461-434a-9c08-574734bbf555} -> C:\Program Files\LucckyShopper\TAsIdxcbnK3RUg.dll [2015-03-10] ()
BHO: ROeyalaCOuipoN -> {c29864d9-aee5-492d-875c-1571dd9b4461} -> C:\Program Files\ROeyalaCOuipoN\5PrYK6VZPlvCHQ.dll [2015-03-11] ()
BHO: SaLesMaGnet -> {eb71a2cf-f91e-43de-8610-bc4bd25952ab} -> C:\Program Files\SaLesMaGnet\lflChOOzFQ6pAH.dll [2015-03-11] ()
BHO: SalesMaGneto -> {f5e0e6ba-8452-4219-a455-d3909a0b8ebe} -> C:\Program Files\SalesMaGneto\fZC3Vl3RORYLah.dll [2015-03-10] ()
Toolbar: HKU\S-1-5-21-3110072035-4176750333-2029028800-1000 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - c:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll [2007-06-08] (Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-05-14] (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 77.236.206.16 81.2.210.36

FireFox:
========
FF ProfilePath: C:\Users\NAY\AppData\Roaming\Mozilla\Firefox\Profiles\0sulg9gb.default
FF Homepage: hxxp://search.gboxapp.com/?aff=p
FF Plugin: @canon.com/EPPEX -> C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL [2010-02-05] (CANON INC.)
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll [2014-11-16] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll [2014-11-16] (Google Inc.)
FF Plugin HKU\S-1-5-21-3110072035-4176750333-2029028800-1000: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\NAY\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll [2014-07-24] (Skype Limited)
FF Plugin HKU\S-1-5-21-3110072035-4176750333-2029028800-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\NAY\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2013-11-25] (Unity Technologies ApS)

Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\39.0.2171.71\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\39.0.2171.71\ppGoogleNaClPluginChrome.dll No File
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\39.0.2171.71\pdf.dll ()
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (CANON iMAGE GATEWAY Album Plugin Utility) - C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.)
CHR Plugin: (Google Earth Plugin) - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.149\npGoogleUpdate3.dll No File
CHR Plugin: (Windows Live™ Photo Gallery) - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (Facebook Video Calling Plugin) - C:\Users\NAY\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll No File
CHR Profile: C:\Users\NAY\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\NAY\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-07-12]
CHR Extension: (Google Drive) - C:\Users\NAY\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-07-12]
CHR Extension: (YouTube) - C:\Users\NAY\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-07-12]
CHR Extension: (Google Search) - C:\Users\NAY\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-07-12]
CHR Extension: (MSN Homepage & Bing Search Engine) - C:\Users\NAY\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcfenmboojpjinhpgggodefccipikbpd [2015-03-14]
CHR Extension: (Groolu the Social Coupon Guru) - C:\Users\NAY\AppData\Local\Google\Chrome\User Data\Default\Extensions\hnecgiinnfijdlbjooeehnjbmdlgihod [2015-03-11]
CHR Extension: (ShortenMe googl URL shortener QR codes) - C:\Users\NAY\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlpcbjmcojciinknchcafgalmphlpjjn [2015-03-10]
CHR Extension: (Absolute Radio Live Scores) - C:\Users\NAY\AppData\Local\Google\Chrome\User Data\Default\Extensions\kgmkadilkeimcolingoooifhoknpkifi [2015-03-11]
CHR Extension: (Skype Click to Call) - C:\Users\NAY\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2013-07-13]
CHR Extension: (Click counter) - C:\Users\NAY\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmchhjebhfcmpjfjlgihgpgfgacoiokk [2015-03-10]
CHR Extension: (Google Wallet) - C:\Users\NAY\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-22]
CHR Extension: (Gmail) - C:\Users\NAY\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-07-12]
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-05-14]
CHR HKU\S-1-5-21-3110072035-4176750333-2029028800-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - https://clients2.google.com/service/update2/crx

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AtherosSvc; C:\Program Files\Bluetooth Suite\adminservice.exe [27224 2010-04-01] (Atheros Communications) [File not signed]
R2 c61b66f6; c:\Program Files\Optimizer Pro 3.11\OptProCrash.dll [3105792 2014-11-30] () [File not signed]
R2 ePowerSvc; C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe [735776 2010-02-06] (Acer Incorporated)
R2 GREGService; C:\Program Files\Acer\Registration\GREGsvc.exe [23584 2010-01-08] (Acer Incorporated)
R2 MDM; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [335872 2006-10-26] (Microsoft Corporation) [File not signed]
S3 MWLService; C:\Program Files\EgisTec MyWinLocker\x86\MWLService.exe [305520 2010-04-17] (Egis Technology Inc.)
R2 RS_Service; C:\Program Files\Acer\Acer VCM\RS_Service.exe [260640 2010-01-30] (Acer Incorporated)
R2 Updater Service; C:\Program Files\Acer\Acer Updater\UpdaterService.exe [243232 2010-01-29] (Acer Group)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)
S2 DatamngrCoordinator2; C:\Program Files\Movies Toolbar\Datamngr\DatamngrCoordinator.exe [X]
S2 SmileyCentralIE_1wService; C:\PROGRA~1\SMILEY~2\bar\1.bin\1wbarsvc.exe [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 AthBTPort; C:\Windows\System32\DRIVERS\btath_flt.sys [38440 2010-03-31] (Atheros)
S3 ATHDFU; C:\Windows\System32\Drivers\AthDfu.sys [47144 2010-03-31] (Windows (R) Win 7 DDK provider)
S3 BTATH_A2DP; C:\Windows\System32\drivers\btath_a2dp.sys [257064 2010-03-31] (Atheros)
R3 BTATH_BUS; C:\Windows\System32\DRIVERS\btath_bus.sys [28200 2010-03-31] (Atheros)
S3 BTATH_HCRP; C:\Windows\System32\DRIVERS\btath_hcrp.sys [177704 2010-03-31] (Atheros)
S3 BTATH_LWFLT; C:\Windows\System32\DRIVERS\btath_lwflt.sys [48168 2010-03-31] (Atheros)
S3 BTATH_RCP; C:\Windows\System32\DRIVERS\btath_rcp.sys [141992 2010-03-31] (Atheros)
S3 BtFilter; C:\Windows\System32\DRIVERS\btfilter.sys [230952 2010-03-31] (Atheros)
R3 ETD; C:\Windows\System32\DRIVERS\ETD.sys [107912 2010-01-14] (ELAN Microelectronic Corp.)
S3 EUCR; C:\Windows\System32\DRIVERS\EUCR6SK.SYS [82384 2010-03-02] (ENE Technology Inc.)
R1 mwlPSDFilter; C:\Windows\System32\DRIVERS\mwlPSDFilter.sys [18992 2009-06-03] (Egis Technology Inc.)
R1 mwlPSDNServ; C:\Windows\System32\DRIVERS\mwlPSDNServ.sys [16432 2009-06-03] (Egis Technology Inc.)
R1 mwlPSDVDisk; C:\Windows\System32\DRIVERS\mwlPSDVDisk.sys [60976 2009-06-03] (Egis Technology Inc.)
S3 netr28u; C:\Windows\System32\DRIVERS\netr28u.sys [657408 2009-07-13] (Ralink Technology Corp.)
U5 AppMgmt; C:\Windows\system32\svchost.exe [20992 2009-07-14] (Microsoft Corporation)
S3 catchme; \??\C:\Users\NAY\AppData\Local\Temp\catchme.sys [X]
S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [X]
S1 F06DEFF2-5B9C-490D-910F-35D3A91196222; \??\C:\Program Files\Movies Toolbar\Datamngr\setmgrc1.cfg [X]
S3 huawei_cdcacm; system32\DRIVERS\ew_jucdcacm.sys [X]
S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X]
S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [X]
S3 hwusbdev; system32\DRIVERS\ewusbdev.sys [X]
S3 massfilter; system32\drivers\massfilter.sys [X]
S3 ZTEusbmdm6k; system32\DRIVERS\ZTEusbmdm6k.sys [X]
S3 ZTEusbnmea; system32\DRIVERS\ZTEusbnmea.sys [X]
S3 ZTEusbser6k; system32\DRIVERS\ZTEusbser6k.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-24 19:33 - 2015-03-24 19:34 - 00018347 _____ () C:\Users\NAY\Desktop\FRST.txt
2015-03-24 19:33 - 2015-03-24 19:33 - 00000000 ____D () C:\Users\NAY\Desktop\FRST-OlderVersion
2015-03-24 18:46 - 2015-03-24 19:33 - 00000000 ____D () C:\FRST
2015-03-24 18:45 - 2015-03-24 18:45 - 00000000 ____D () C:\Program Files\mozilla firefox
2015-03-24 18:43 - 2015-03-24 19:33 - 01135104 _____ (Farbar) C:\Users\NAY\Desktop\FRST.exe
2015-03-24 18:41 - 2015-03-24 18:41 - 00112640 _____ (forum.viry.cz) C:\Users\NAY\Downloads\FRSTLauncher.exe
2015-03-24 18:34 - 2015-03-24 18:34 - 01135104 _____ (Farbar) C:\Users\NAY\Downloads\FRST(1).exe
2015-03-14 20:41 - 2015-02-03 04:12 - 01230848 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-03-14 20:31 - 2015-03-14 20:34 - 00000000 ____D () C:\Users\NAY\AppData\Roaming\Mozilla
2015-03-14 20:31 - 2015-03-14 20:34 - 00000000 ____D () C:\Users\NAY\AppData\Local\Mozilla
2015-03-14 20:27 - 2015-03-24 19:00 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2015-03-14 20:27 - 2015-03-14 20:27 - 00001085 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-03-14 20:27 - 2015-03-14 20:27 - 00001073 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-03-14 20:27 - 2015-03-14 20:27 - 00000000 ____D () C:\ProgramData\Mozilla
2015-03-14 20:21 - 2015-03-14 20:22 - 41524552 _____ () C:\Users\NAY\Downloads\Firefox Setup 36.0.1.exe
2015-03-14 19:56 - 2015-03-14 19:56 - 00000363 _____ () C:\Users\NAY\Desktop\Počítač - odkaz.lnk
2015-03-12 20:23 - 2015-03-12 20:23 - 00002701 _____ () C:\Users\Public\Desktop\Skype.lnk
2015-03-12 20:23 - 2015-03-12 20:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-03-12 20:23 - 2015-03-12 20:23 - 00000000 ____D () C:\Program Files\Common Files\Skype
2015-03-11 14:05 - 2015-03-11 14:05 - 00000000 ____D () C:\Program Files\RoyaalCoeuupon
2015-03-11 14:05 - 2015-03-11 14:05 - 00000000 ____D () C:\Program Files\Groolu the Social Coupon Guru
2015-03-11 14:04 - 2015-03-11 14:04 - 00000000 ____D () C:\Program Files\SaLesMaGnet
2015-03-11 14:04 - 2015-03-11 14:04 - 00000000 ____D () C:\Program Files\ROeyalaCOuipoN
2015-03-11 10:05 - 2015-01-09 00:44 - 00419936 _____ () C:\Windows\system32\locale.nls
2015-03-11 09:56 - 2015-03-11 13:30 - 00000000 ____D () C:\Program Files\FloashCoupoon
2015-03-11 09:55 - 2015-03-11 13:30 - 00000000 ____D () C:\Program Files\SSaleSaMagneett
2015-03-11 09:54 - 2015-03-11 13:53 - 00000000 ____D () C:\Program Files\Absolute Radio Live Scores
2015-03-11 09:50 - 2015-03-11 13:30 - 00000000 ____D () C:\Program Files\RooyalCCOUpon
2015-03-10 22:59 - 2015-03-10 22:59 - 00000000 ____D () C:\Windows\system32\appraiser
2015-03-10 22:43 - 2015-03-11 13:30 - 00000000 ____D () C:\Program Files\LucckyShopper
2015-03-10 22:42 - 2015-03-11 13:53 - 00000000 ____D () C:\Program Files\Click counter
2015-03-10 22:42 - 2015-03-11 13:30 - 00000000 ____D () C:\Program Files\LuckyCouepOun
2015-03-10 22:40 - 2015-03-10 22:40 - 00000000 ____D () C:\Program Files\SalesMaGneto
2015-03-10 21:49 - 2015-02-26 04:11 - 02381312 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-03-10 21:49 - 2015-02-24 03:32 - 00342696 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-03-10 21:49 - 2015-02-21 01:27 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-03-10 21:49 - 2015-02-20 03:22 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-03-10 21:49 - 2015-02-20 03:22 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-03-10 21:49 - 2015-02-20 03:08 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-03-10 21:49 - 2015-02-20 03:08 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-03-10 21:49 - 2015-02-20 03:01 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-03-10 21:49 - 2015-02-20 03:00 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-03-10 21:49 - 2015-02-20 02:56 - 00620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-03-10 21:49 - 2015-02-20 02:56 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-03-10 21:49 - 2015-02-20 02:56 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-03-10 21:49 - 2015-02-20 02:50 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-03-10 21:49 - 2015-02-20 02:41 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-03-10 21:49 - 2015-02-20 02:37 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-03-10 21:49 - 2015-02-20 02:24 - 02052608 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-03-10 21:49 - 2015-02-20 02:24 - 00689152 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-03-10 21:49 - 2015-02-20 02:24 - 00684544 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-03-10 21:49 - 2015-02-20 02:01 - 01888256 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-03-10 21:49 - 2015-02-20 01:57 - 01311232 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-03-10 21:49 - 2015-02-20 01:55 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-03-10 21:49 - 2015-02-13 06:26 - 12875264 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-03-10 21:49 - 2015-01-17 03:30 - 00828928 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2015-03-10 21:48 - 2015-02-21 01:41 - 12827648 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-03-10 21:48 - 2015-02-21 01:27 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-03-10 21:48 - 2015-02-21 01:25 - 19720192 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-03-10 21:48 - 2015-02-21 00:32 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-03-10 21:48 - 2015-02-20 03:09 - 00503296 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-03-10 21:48 - 2015-02-20 03:06 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-03-10 21:48 - 2015-02-20 03:03 - 02278400 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-03-10 21:48 - 2015-02-20 02:58 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-03-10 21:48 - 2015-02-20 02:30 - 04300288 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-03-10 21:48 - 2015-02-20 02:23 - 01155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-03-10 21:46 - 2015-03-06 06:15 - 00137656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-03-10 21:46 - 2015-03-06 06:15 - 00067512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-03-10 21:46 - 2015-03-06 06:10 - 01061376 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-03-10 21:46 - 2015-03-06 06:10 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-03-10 21:46 - 2015-03-06 06:10 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-03-10 21:46 - 2015-03-06 06:10 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-03-10 21:46 - 2015-03-06 06:10 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-03-10 21:46 - 2015-03-06 06:10 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-03-10 21:46 - 2015-03-06 06:10 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-03-10 21:46 - 2015-03-06 06:10 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-03-10 21:46 - 2015-03-06 06:10 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-03-10 21:46 - 2015-03-06 06:10 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-03-10 21:46 - 2015-03-06 06:10 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-03-10 21:46 - 2015-03-06 06:09 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-03-10 21:46 - 2015-03-06 06:09 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-03-10 21:46 - 2015-03-06 06:07 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-03-10 21:46 - 2015-03-06 06:07 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-03-10 21:46 - 2015-03-06 06:06 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-03-10 21:46 - 2015-02-20 05:13 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-03-10 21:46 - 2015-02-20 05:13 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-03-10 21:46 - 2015-02-20 05:13 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2015-03-10 21:46 - 2015-02-20 05:13 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2015-03-10 21:46 - 2015-02-20 04:09 - 00299008 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-03-10 21:46 - 2015-02-04 03:54 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-03-10 21:46 - 2015-02-03 04:12 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2015-03-10 21:45 - 2015-02-03 04:16 - 03973048 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-03-10 21:45 - 2015-02-03 04:16 - 03917760 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-03-10 21:45 - 2015-02-03 04:16 - 00078784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2015-03-10 21:45 - 2015-02-03 04:12 - 11411968 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2015-03-10 21:45 - 2015-02-03 04:12 - 03209728 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2015-03-10 21:45 - 2015-02-03 04:12 - 01329664 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2015-03-10 21:45 - 2015-02-03 04:12 - 01174528 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-03-10 21:45 - 2015-02-03 04:12 - 01005056 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2015-03-10 21:45 - 2015-02-03 04:12 - 00988160 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll
2015-03-10 21:45 - 2015-02-03 04:12 - 00744960 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2015-03-10 21:45 - 2015-02-03 04:12 - 00617984 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2015-03-10 21:45 - 2015-02-03 04:12 - 00519680 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2015-03-10 21:45 - 2015-02-03 04:12 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2015-03-10 21:45 - 2015-02-03 04:12 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2015-03-10 21:45 - 2015-02-03 04:12 - 00475136 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-03-10 21:45 - 2015-02-03 04:12 - 00442880 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2015-03-10 21:45 - 2015-02-03 04:12 - 00406016 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2015-03-10 21:45 - 2015-02-03 04:12 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-03-10 21:45 - 2015-02-03 04:12 - 00374784 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2015-03-10 21:45 - 2015-02-03 04:12 - 00354816 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2015-03-10 21:45 - 2015-02-03 04:12 - 00265216 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2015-03-10 21:45 - 2015-02-03 04:12 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2015-03-10 21:45 - 2015-02-03 04:12 - 00179200 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2015-03-10 21:45 - 2015-02-03 04:12 - 00157184 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2015-03-10 21:45 - 2015-02-03 04:12 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2015-03-10 21:45 - 2015-02-03 04:12 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2015-03-10 21:45 - 2015-02-03 04:12 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2015-03-10 21:45 - 2015-02-03 04:12 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll
2015-03-10 21:45 - 2015-02-03 04:12 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-03-10 21:45 - 2015-02-03 04:12 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2015-03-10 21:45 - 2015-02-03 04:12 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2015-03-10 21:45 - 2015-02-03 04:12 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2015-03-10 21:45 - 2015-02-03 04:11 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-03-10 21:45 - 2015-02-03 04:11 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2015-03-10 21:45 - 2015-02-03 04:11 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2015-03-10 21:45 - 2015-02-03 04:11 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2015-03-10 21:45 - 2015-02-03 04:00 - 00593920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2015-03-10 21:45 - 2015-02-03 03:26 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2015-03-10 21:45 - 2015-01-31 00:56 - 00370488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-03-10 21:45 - 2014-10-31 23:22 - 00521384 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2015-03-10 21:45 - 2014-06-28 01:21 - 00455752 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2015-03-10 21:45 - 2014-06-28 01:21 - 00409272 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2015-03-10 21:44 - 2015-02-03 04:12 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2015-03-10 21:44 - 2015-02-03 04:12 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2015-03-10 21:44 - 2015-02-03 04:12 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-03-10 21:44 - 2015-02-03 04:12 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-03-10 21:44 - 2015-02-03 04:12 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
2015-03-10 21:44 - 2015-02-03 04:12 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2015-03-10 21:44 - 2015-02-03 04:12 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2015-03-10 21:44 - 2015-02-03 04:12 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2015-03-10 21:44 - 2015-02-03 04:11 - 12625408 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2015-03-10 21:44 - 2015-02-03 04:11 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2015-03-10 21:44 - 2015-02-03 04:11 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2015-03-10 21:44 - 2015-02-03 04:11 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\pcawrk.exe
2015-03-10 21:44 - 2015-02-03 04:11 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2015-03-10 21:44 - 2015-02-03 04:10 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2015-03-10 21:44 - 2015-02-03 04:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2015-03-10 21:44 - 2015-02-03 04:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-03-10 18:22 - 2015-03-10 18:22 - 00000000 ____D () C:\Program Files\RRoyalCouPPoNN
2015-03-10 18:22 - 2015-03-10 18:22 - 00000000 ____D () C:\Program Files\ExxtrraShooppeR
2015-03-10 18:21 - 2015-03-11 13:30 - 00000000 ____D () C:\Program Files\KingCoupoN
2015-03-10 18:21 - 2015-03-10 18:21 - 00000000 ____D () C:\Program Files\ShortenMe googl URL shortener QR codes
2015-03-10 17:59 - 2015-03-11 13:53 - 00000000 ____D () C:\Program Files\Facebook for Chrome Plus
2015-03-06 19:09 - 2015-01-09 03:48 - 00635904 _____ (Microsoft Corporation) C:\Windows\system32\perftrack.dll
2015-03-06 19:09 - 2015-01-09 03:48 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\wdi.dll
2015-03-06 19:09 - 2015-01-09 03:48 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\powertracker.dll
2015-03-06 19:03 - 2014-11-11 02:32 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2015-03-06 19:02 - 2014-10-04 02:42 - 03221504 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2015-03-06 19:02 - 2014-10-04 02:42 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
2015-03-06 19:01 - 2014-12-19 03:43 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2015-03-06 19:01 - 2014-12-11 18:47 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2015-03-06 19:01 - 2014-11-08 03:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2015-03-06 19:00 - 2015-02-04 03:54 - 00482304 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-03-06 19:00 - 2015-02-04 03:53 - 00767488 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-03-06 19:00 - 2015-02-04 03:53 - 00621056 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-03-06 19:00 - 2015-02-04 03:53 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-03-06 19:00 - 2015-02-04 03:53 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-03-06 19:00 - 2015-02-04 03:53 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-03-06 19:00 - 2015-02-04 03:49 - 00886784 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-03-06 19:00 - 2015-01-28 00:36 - 01167520 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2015-03-06 19:00 - 2014-11-26 04:32 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-03-06 19:00 - 2014-10-30 02:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe
2015-03-06 18:58 - 2014-12-19 02:34 - 00116224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2015-03-06 18:58 - 2014-12-08 03:46 - 00308224 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2015-03-06 18:53 - 2015-03-06 21:15 - 00000000 ____D () C:\Program Files\FlashCOiuupon
2015-03-06 18:33 - 2015-03-06 21:15 - 00000000 ____D () C:\Program Files\DeAilssFeinderPreo

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-24 19:00 - 2010-10-30 20:27 - 00000924 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-03-24 18:47 - 2012-10-12 19:51 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-03-24 18:40 - 2015-02-19 19:51 - 00000020 _____ () C:\Users\NAY\AppData\Roaming\appdataFr3.bin
2015-03-24 18:34 - 2009-07-14 05:34 - 00016160 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-03-24 18:34 - 2009-07-14 05:34 - 00016160 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-03-24 18:26 - 2010-06-08 04:46 - 01688487 _____ () C:\Windows\WindowsUpdate.log
2015-03-24 18:23 - 2010-05-03 04:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer GameZone
2015-03-24 18:23 - 2010-05-03 04:26 - 00000000 ____D () C:\Program Files\Acer GameZone
2015-03-24 18:20 - 2010-10-30 20:27 - 00000920 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-03-24 17:53 - 2010-05-03 04:10 - 00788704 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-03-24 17:46 - 2014-04-29 22:17 - 00006503 _____ () C:\Windows\setupact.log
2015-03-24 17:46 - 2009-07-14 05:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-03-14 19:50 - 2011-11-02 19:41 - 00001034 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3110072035-4176750333-2029028800-1000UA.job
2015-03-12 20:39 - 2015-02-21 15:02 - 00000000 ____D () C:\ProgramData\12146225329273837935
2015-03-12 20:39 - 2010-11-01 12:58 - 00000000 ____D () C:\Users\NAY\AppData\Roaming\Skype
2015-03-12 20:28 - 2011-11-02 19:41 - 00001012 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3110072035-4176750333-2029028800-1000Core.job
2015-03-12 20:24 - 2010-11-01 12:58 - 00000000 ____D () C:\ProgramData\Skype
2015-03-12 20:23 - 2010-11-01 12:58 - 00000000 ___RD () C:\Program Files\Skype
2015-03-11 12:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\rescache
2015-03-11 12:04 - 2014-04-29 21:08 - 00418376 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-03-11 11:59 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\sk-SK
2015-03-11 11:41 - 2010-05-03 04:34 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-03-11 11:26 - 2013-07-15 14:39 - 00000000 ____D () C:\Windows\system32\MRT
2015-03-11 10:17 - 2010-12-12 10:51 - 119837696 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-03-11 10:16 - 2010-10-31 20:01 - 00000000 ____D () C:\Tinka
2015-03-10 22:59 - 2014-05-12 12:55 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-03-10 22:59 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\tracing
2015-03-10 22:59 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\AppCompat
2015-03-10 18:03 - 2010-10-30 15:34 - 00000000 ____D () C:\Users\NAY\AppData\Local\CrashDumps
2015-03-10 17:53 - 2012-09-28 15:37 - 00000000 ____D () C:\Users\NAY\Documents\k
2015-03-06 18:53 - 2015-02-21 15:02 - 00000000 ____D () C:\Program Files\tOpbuyerr
2015-03-06 18:53 - 2015-02-21 15:02 - 00000000 ____D () C:\Program Files\DIsccounntLocaator
2015-02-24 03:23 - 2011-03-19 15:10 - 00246920 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe

==================== Files in the root of some directories =======

2015-02-19 19:51 - 2015-03-24 18:40 - 0000020 _____ () C:\Users\NAY\AppData\Roaming\appdataFr3.bin
2013-10-26 11:00 - 2014-07-08 14:20 - 0006144 _____ () C:\Users\NAY\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2010-11-01 21:33 - 2010-11-01 21:33 - 0000056 ____H () C:\ProgramData\ezsidmv.dat
2010-05-03 04:26 - 2010-01-27 15:40 - 0131472 _____ () C:\ProgramData\FullRemove.exe

Some content of TEMP:
====================
C:\Users\NAY\AppData\Local\Temp\FreemakeVideoConverterFull.exe
C:\Users\NAY\AppData\Local\Temp\optprosetup.exe
C:\Users\NAY\AppData\Local\Temp\SkypeSetup.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================



==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3110072035-4176750333-2029028800-1000Core.job => C:\Users\NAY\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3110072035-4176750333-2029028800-1000UA.job => C:\Users\NAY\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\NAY\Desktop" je 2 MB.


***** Startup Programs *****

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher
"C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EgisTecPMMUpdate
"C:\Program Files\EgisTec IPS\PmmUpdate.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EgisUpdate
"C:\Program Files\EgisTec IPS\EgisUpdate.exe" -d [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Facebook Update
"C:\Users\NAY\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\mwlDaemon
C:\Program Files\EgisTec MyWinLocker\x86\mwlDaemon.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SuiteTray
"C:\Program Files\EgisTec MyWinLockerSuite\x86\SuiteTray.exe"


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118278
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: spomaleny notebook

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

herodeso
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 53
Registrován: 12 lis 2006 11:35
Bydliště: Slovensko

Re: spomaleny notebook

#3 Příspěvek od herodeso »

tak tady

# AdwCleaner v4.113 - Logfile created 24/03/2015 at 20:42:24
# Updated 22/03/2015 by Xplode
# Database : 2015-03-23.1 [Server]
# Operating system : Windows 7 Starter Service Pack 1 (x86)
# Username : NAY - NAY-PC
# Running from : C:\Users\NAY\Desktop\adwcleaner_4.113.exe
# Option : Cleaning

***** [ Services ] *****

Service Deleted : F06DEFF2-5B9C-490D-910F-35D3A91196222
[#] Service Deleted : DatamngrCoordinator2

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\RandomDealApp
Folder Deleted : C:\ProgramData\CouponFactory
Folder Deleted : C:\ProgramData\a8900f956138196f
Folder Deleted : C:\Program Files\Optimizer Pro 3.11
Folder Deleted : C:\Program Files\Click counter
Folder Deleted : C:\Program Files\DeAilssFeinderPreo
Folder Deleted : C:\Program Files\DIsccounntLocaator
Folder Deleted : C:\Program Files\ExxtrraShooppeR
Folder Deleted : C:\Program Files\FlashCOiuupon
Folder Deleted : C:\Program Files\FloashCoupoon
Folder Deleted : C:\Program Files\Groolu the Social Coupon Guru
Folder Deleted : C:\Program Files\KingCoupoN
Folder Deleted : C:\Program Files\LucckyShopper
Folder Deleted : C:\Program Files\LuckyCouepOun
Folder Deleted : C:\Program Files\ROeyalaCOuipoN
Folder Deleted : C:\Program Files\RooyalCCOUpon
Folder Deleted : C:\Program Files\RoyaalCoeuupon
Folder Deleted : C:\Program Files\RRoyalCouPPoNN
Folder Deleted : C:\Program Files\SaLesMaGnet
Folder Deleted : C:\Program Files\SalesMaGneto
Folder Deleted : C:\Program Files\SSaleSaMagneett
Folder Deleted : C:\Program Files\tOpbuyerr
Folder Deleted : C:\Users\NAY\AppData\Roaming\RHEng
Folder Deleted : C:\Users\NAY\Documents\Optimizer Pro
Folder Deleted : C:\Users\NAY\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcfenmboojpjinhpgggodefccipikbpd
Folder Deleted : C:\Users\NAY\AppData\Local\Google\Chrome\User Data\Default\Extensions\hnecgiinnfijdlbjooeehnjbmdlgihod
File Deleted : C:\Users\NAY\AppData\Local\Temp\Uninstall.exe

***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKCU\Software\Google\Chrome\Extensions\fcfenmboojpjinhpgggodefccipikbpd
Key Deleted : HKLM\SOFTWARE\Classes\P1b082425_5dfd_42f6_9e64_d104a6f69ff4_.P1b082425_5dfd_42f6_9e64_d104a6f69ff4_
Key Deleted : HKLM\SOFTWARE\Classes\P1b082425_5dfd_42f6_9e64_d104a6f69ff4_.P1b082425_5dfd_42f6_9e64_d104a6f69ff4_.9
Key Deleted : HKLM\SOFTWARE\Classes\P1c03e804_a5f1_462c_bd7d_5f7bd1c137c8_.P1c03e804_a5f1_462c_bd7d_5f7bd1c137c8_
Key Deleted : HKLM\SOFTWARE\Classes\P1c03e804_a5f1_462c_bd7d_5f7bd1c137c8_.P1c03e804_a5f1_462c_bd7d_5f7bd1c137c8_.9
Key Deleted : HKLM\SOFTWARE\Classes\P3cbb3f1b_bfb6_4bd1_a9b3_0c3edb382d72_.P3cbb3f1b_bfb6_4bd1_a9b3_0c3edb382d72_
Key Deleted : HKLM\SOFTWARE\Classes\P3cbb3f1b_bfb6_4bd1_a9b3_0c3edb382d72_.P3cbb3f1b_bfb6_4bd1_a9b3_0c3edb382d72_.9
Key Deleted : HKLM\SOFTWARE\Classes\P4281a326_6c1e_4eb0_af4f_7bb7dfa1d752_.P4281a326_6c1e_4eb0_af4f_7bb7dfa1d752_
Key Deleted : HKLM\SOFTWARE\Classes\P4281a326_6c1e_4eb0_af4f_7bb7dfa1d752_.P4281a326_6c1e_4eb0_af4f_7bb7dfa1d752_.9
Key Deleted : HKLM\SOFTWARE\Classes\P4ab8fe47_ff32_4eaf_a006_d7e937b7d8f3_.P4ab8fe47_ff32_4eaf_a006_d7e937b7d8f3_
Key Deleted : HKLM\SOFTWARE\Classes\P4ab8fe47_ff32_4eaf_a006_d7e937b7d8f3_.P4ab8fe47_ff32_4eaf_a006_d7e937b7d8f3_.9
Key Deleted : HKLM\SOFTWARE\Classes\P64191db8_79ac_4cc0_b4b9_71a2ce32ba77_.P64191db8_79ac_4cc0_b4b9_71a2ce32ba77_
Key Deleted : HKLM\SOFTWARE\Classes\P64191db8_79ac_4cc0_b4b9_71a2ce32ba77_.P64191db8_79ac_4cc0_b4b9_71a2ce32ba77_.9
Key Deleted : HKLM\SOFTWARE\Classes\P8c85f020_1461_434a_9c08_574734bbf555_.P8c85f020_1461_434a_9c08_574734bbf555_
Key Deleted : HKLM\SOFTWARE\Classes\P8c85f020_1461_434a_9c08_574734bbf555_.P8c85f020_1461_434a_9c08_574734bbf555_.9
Key Deleted : HKLM\SOFTWARE\Classes\Pb51dfc1d_8c79_4a8c_ac0d_78f64a83b5f1_.Pb51dfc1d_8c79_4a8c_ac0d_78f64a83b5f1_
Key Deleted : HKLM\SOFTWARE\Classes\Pb51dfc1d_8c79_4a8c_ac0d_78f64a83b5f1_.Pb51dfc1d_8c79_4a8c_ac0d_78f64a83b5f1_.9
Key Deleted : HKLM\SOFTWARE\Classes\Pc29864d9_aee5_492d_875c_1571dd9b4461_.Pc29864d9_aee5_492d_875c_1571dd9b4461_
Key Deleted : HKLM\SOFTWARE\Classes\Pc29864d9_aee5_492d_875c_1571dd9b4461_.Pc29864d9_aee5_492d_875c_1571dd9b4461_.9
Key Deleted : HKLM\SOFTWARE\Classes\Pf5e0e6ba_8452_4219_a455_d3909a0b8ebe_.Pf5e0e6ba_8452_4219_a455_d3909a0b8ebe_
Key Deleted : HKLM\SOFTWARE\Classes\Pf5e0e6ba_8452_4219_a455_d3909a0b8ebe_.Pf5e0e6ba_8452_4219_a455_d3909a0b8ebe_.9
Key Deleted : HKLM\SOFTWARE\d2b33eb9-09ee-27ff-eb69-d43339a75fc2
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}{d404613}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1b082425-5dfd-42f6-9e64-d104a6f69ff4}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1c03e804-a5f1-462c-bd7d-5f7bd1c137c8}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3cbb3f1b-bfb6-4bd1-a9b3-0c3edb382d72}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4281a326-6c1e-4eb0-af4f-7bb7dfa1d752}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4ab8fe47-ff32-4eaf-a006-d7e937b7d8f3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{64191db8-79ac-4cc0-b4b9-71a2ce32ba77}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8c85f020-1461-434a-9c08-574734bbf555}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{b51dfc1d-8c79-4a8c-ac0d-78f64a83b5f1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{c29864d9-aee5-492d-875c-1571dd9b4461}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{f5e0e6ba-8452-4219-a455-d3909a0b8ebe}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{41F978F3-431A-4464-A789-5C0692D562FB}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{DD1CFE82-CC89-497D-9573-B8B1867DDA09}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1b082425-5dfd-42f6-9e64-d104a6f69ff4}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1c03e804-a5f1-462c-bd7d-5f7bd1c137c8}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3cbb3f1b-bfb6-4bd1-a9b3-0c3edb382d72}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4281a326-6c1e-4eb0-af4f-7bb7dfa1d752}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4ab8fe47-ff32-4eaf-a006-d7e937b7d8f3}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8c85f020-1461-434a-9c08-574734bbf555}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{c29864d9-aee5-492d-875c-1571dd9b4461}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{f5e0e6ba-8452-4219-a455-d3909a0b8ebe}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1b082425-5dfd-42f6-9e64-d104a6f69ff4}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1c03e804-a5f1-462c-bd7d-5f7bd1c137c8}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3cbb3f1b-bfb6-4bd1-a9b3-0c3edb382d72}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4281a326-6c1e-4eb0-af4f-7bb7dfa1d752}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4ab8fe47-ff32-4eaf-a006-d7e937b7d8f3}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{64191db8-79ac-4cc0-b4b9-71a2ce32ba77}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{8c85f020-1461-434a-9c08-574734bbf555}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{b51dfc1d-8c79-4a8c-ac0d-78f64a83b5f1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{c29864d9-aee5-492d-875c-1571dd9b4461}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{f5e0e6ba-8452-4219-a455-d3909a0b8ebe}
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{2318C2B1-4965-11D4-9B18-009027A5CD4F}]
Key Deleted : HKCU\Software\Optimizer Pro
Key Deleted : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Deleted : HKCU\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
Key Deleted : HKLM\SOFTWARE\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Deleted : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Key Deleted : HKLM\SOFTWARE\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
Key Deleted : HKLM\SOFTWARE\{12A61307-94CD-4F8E-94BC-918E511FAA81}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{37476589-E48E-439E-A706-56189E2ED4C4}_is1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{194FED75-9C74-BDB7-53F8-8CFFEF1AFEC9}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3119AFD3-545C-0955-573A-494F62E61990}

***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.9600.17689

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]

-\\ Mozilla Firefox v36.0.4 (x86 sk)

[0sulg9gb.default\prefs.js] - Line Deleted : user_pref("browser.startup.homepage", "hxxp://search.gboxapp.com/?aff=p");

-\\ Google Chrome v39.0.2171.71

[C:\Users\NAY\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://search.mywebsearch.com/mywebsearch/GGmain.jhtml?id=ZNzfb003YYsk_ZNzfb015&ptb=5B6D7466-FA6A-49C4-A78A-85C388AD3DF5&psa=&ind=2010123003&ptnrS=ZNzfb003YYsk_ZNzfb015&si=&st=sb&n=77d00afb&searchfor={searchTerms}
[C:\Users\NAY\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://dts.search.ask.com/sr?src=crb&gct=ds&appid=514&systemid=406&v=n11551-276&apn_uid=5355052403304045&apn_dtid=BND406&o=APN10645&apn_ptnrs=AG6&q={searchTerms}
[C:\Users\NAY\AppData\Local\Google\Chrome\User Data\Default\preferences] - Deleted [Extension] : fcfenmboojpjinhpgggodefccipikbpd
[C:\Users\NAY\AppData\Local\Google\Chrome\User Data\Default\preferences] - Deleted [Extension] : hnecgiinnfijdlbjooeehnjbmdlgihod
[C:\Users\NAY\AppData\Local\Google\Chrome\User Data\Default\preferences] - Deleted [Homepage] : hxxp://search.gboxapp.com/?aff=p
[C:\Users\NAY\AppData\Local\Google\Chrome\User Data\Default\preferences] - Deleted [Startup_URLs] : hxxp://search.gboxapp.com/?aff=p

*************************

AdwCleaner[R1].txt - [10777 bytes] - [24/03/2015 20:30:51]
AdwCleaner[R2].txt - [10773 bytes] - [24/03/2015 20:37:02]
AdwCleaner[S1].txt - [10583 bytes] - [24/03/2015 20:42:24]

########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [10643 bytes] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118278
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: spomaleny notebook

#4 Příspěvek od Rudy »

Dejte nový log FRST.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

herodeso
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 53
Registrován: 12 lis 2006 11:35
Bydliště: Slovensko

Re: spomaleny notebook

#5 Příspěvek od herodeso »

Odinstaloval som kopec programov po starom majitelovi notebooku, jedine co nejde a napise unistal log not found, je Cake mania, hra, mozte s tym pomoct prosim?
A trochu som zmateny, pocas priebehu mi vyskocil poznamkovy blok, a ze pristup odmietnuty. som ho zavrel, zavrel sa aj ten launcher ale frst siel dalej a na konci poznamkovy blok otvorilo aj s logom. tu je z neho log, asi som nieco zmagoril

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 11-03-2015
Ran by NAY at 2015-03-24 21:14:11
Running from C:\Users\NAY\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Acer Crystal Eye webcam (HKLM\...\{51F026FA-5146-4232-A8BA-1364740BD053}) (Version: 4.0.0.8 - liteon)
Acer ePower Management (HKLM\...\{3DB0448D-AD82-4923-B305-D001E521A964}) (Version: 5.00.3002 - Acer Incorporated)
Acrobat.com (HKLM\...\{287ECFA4-719A-2143-A09B-D6A12DE54E40}) (Version: 1.6.65 - Adobe Systems Incorporated)
Adobe AIR (HKLM\...\Adobe AIR) (Version: 1.5.0.7220 - Adobe Systems Inc.)
Adobe Flash Player 16 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Adobe Reader 9.1 MUI (HKLM\...\{AC76BA86-7AD7-FFFF-7B44-A91000000001}) (Version: 9.1.0 - Adobe Systems Incorporated)
Aktualizácia Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-041B-0000-0000000FF1CE}_PROPLUS_{9A8C39B0-D27F-4F81-BE74-2FECF164707E}) (Version: - Microsoft)
Aktualizácia Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-041B-0000-0000000FF1CE}_PROPLUS_{CE23B3DC-18CC-46FC-A309-81D6670F8D3D}) (Version: - Microsoft)
Aktualizácia Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-041B-0000-0000000FF1CE}_PROPLUS_{D6DBF512-87C0-4F6A-8FB9-AC3A389D9DE5}) (Version: - Microsoft)
Atheros BT update 32 (HKLM\...\{4AD62673-EBC3-4DAC-961C-73EB35F03A72}_is1) (Version: - Atheros)
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 1.0.0.29 - Atheros Communications Inc.)
Atheros_7.0.2.13_patch2_32 (HKLM\...\{2D13FC7D-42A8-4BF1-AF0C-B3DC68C59448}_is1) (Version: - Atheros)
Bluetooth Win7 Suite (HKLM\...\{101A497C-7EF6-4001-834D-E5FA1C70FEFA}) (Version: 7.00.002.0013 - Atheros Communications)
Cake Mania (HKLM\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111199750}) (Version: - Oberon Media)
CCleaner (HKLM\...\CCleaner) (Version: 2.36 - Piriform)
Compatibility Pack for the 2007 Office system (HKLM\...\{90120000-0020-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden
ENE USB Card Reader Driver (HKLM\...\F3C7F6463C419D1D216961B5B81E2FE534986562) (Version: 5.89.0.66 - ENE)
ETDWare PS/2-x86 7.0.6.3_WHQL (HKLM\...\Elantech) (Version: 7.0.6.3 - ELAN Microelectronics Corp.)
Google Chrome (HKLM\...\Google Chrome) (Version: 39.0.2171.71 - Spoločnosť Google Inc.)
Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden
Intel(R) Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: 8.14.10.2117 - Intel Corporation)
Intel(R) Matrix Storage Manager (HKLM\...\{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}) (Version: - Intel Corporation)
Java(TM) 6 Update 5 (HKLM\...\{3248F0A8-6813-11D6-A77B-00B0D0160050}) (Version: 1.6.0.50 - Sun Microsystems, Inc.)
Junk Mail filter update (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
K-Lite Mega Codec Pack 6.6.0 (HKLM\...\KLiteCodecPack_is1) (Version: 6.6.0 - )
Launch Manager (HKLM\...\LManager) (Version: 4.0.8 - Acer Inc.)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Home and Student 2007 (HKLM\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Professional Plus 2007 (HKLM\...\PROPLUS) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Mozilla Firefox 36.0.4 (x86 sk) (HKLM\...\Mozilla Firefox 36.0.4 (x86 sk)) (Version: 36.0.4 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 36.0.1 - Mozilla)
Skype Click to Call (HKLM\...\{B6CF2967-C81E-40C0-9815-C05774FEF120}) (Version: 6.9.12585 - Skype Technologies S.A.)
Skype™ 7.2 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.2.103 - Skype Technologies S.A.)
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 15.4.3502.0922 - Microsoft Corporation)
WinRAR (HKLM\...\WinRAR archiver) (Version: - )

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-3110072035-4176750333-2029028800-1000_Classes\CLSID\{1FD1FE74-9E3C-4C1C-AEEB-AAB592AD770F}\localserver32 -> C:\Users\NAY\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.)
CustomCLSID: HKU\S-1-5-21-3110072035-4176750333-2029028800-1000_Classes\CLSID\{311C0219-4216-4B12-A918-AC67FD6AD5AD}\InprocServer32 -> C:\Users\NAY\AppData\Local\Microsoft\Internet Explorer\Downloaded Program Files\ImageUploader6.ocx (CeWe Color AG & Co. OHG)
CustomCLSID: HKU\S-1-5-21-3110072035-4176750333-2029028800-1000_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}\InprocServer32 -> C:\Users\NAY\AppData\LocalLow\Unity\WebPlayer\loader\UnityWebPluginAX.ocx No File
CustomCLSID: HKU\S-1-5-21-3110072035-4176750333-2029028800-1000_Classes\CLSID\{5E71E4F3-E8C7-4906-9626-973E418762B6}\InprocServer32 -> C:\Users\NAY\AppData\Local\Facebook\Update\1.2.205.0\goopdate.dll (Facebook Inc.)
CustomCLSID: HKU\S-1-5-21-3110072035-4176750333-2029028800-1000_Classes\CLSID\{AB5D9638-6D52-4C55-8D79-86C5C0D29168}\InprocServer32 -> C:\Users\NAY\AppData\Local\Microsoft\Internet Explorer\Downloaded Program Files\ImageUploader6.ocx (CeWe Color AG & Co. OHG)
CustomCLSID: HKU\S-1-5-21-3110072035-4176750333-2029028800-1000_Classes\CLSID\{BF60E269-D90C-4130-915B-A3CC49A5DDB2}\InprocServer32 -> C:\Users\NAY\AppData\Local\Microsoft\Internet Explorer\Downloaded Program Files\ImageUploader6.ocx (CeWe Color AG & Co. OHG)
CustomCLSID: HKU\S-1-5-21-3110072035-4176750333-2029028800-1000_Classes\CLSID\{C3E3BB4F-269C-41a3-9F5F-A360E933CAD3}\InprocServer32 -> C:\Users\NAY\AppData\Local\Microsoft\Internet Explorer\Downloaded Program Files\ImageUploader6.ocx (CeWe Color AG & Co. OHG)

==================== Restore Points =========================

14-03-2015 20:33:31 Windows Update
14-03-2015 21:47:57 Windows Update
24-03-2015 19:45:09 Odstránené Acer eRecovery Management
24-03-2015 19:46:31 Odstránené Acer Updater
24-03-2015 19:48:21 Odstránené Acer VCM
24-03-2015 19:59:03 Configured eSobi v2
24-03-2015 20:04:41 Windows Defender Checkpoint
24-03-2015 20:09:50 Removed Google Earth Plug-in.
24-03-2015 20:14:19 Odstránené MyWinLocker Suite
24-03-2015 20:21:18 Odstránené Windows Live Sync
24-03-2015 20:23:12 Installed DirectX
24-03-2015 20:23:53 Installed DirectX
24-03-2015 20:29:28 Odstránené Microsoft Works
24-03-2015 20:50:13 Removed Facebook Video Calling 3.1.0.521
24-03-2015 20:57:42 Odstránené Microsoft Works

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:04 - 2014-05-11 23:07 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {22134AFD-6538-4B12-9D83-57D07504D455} - System32\Tasks\{CD3C50BB-B627-44E2-9885-3BC9651376BA} => pcalua.exe -a "C:\Program Files\InstallShield Installation Information\{A9E5EDA7-2E6C-49E7-924B-A32B89C24A04}\setup.exe" -c -runfromtemp -l0x0007 -removeonly
Task: {30666E2A-DC11-4BED-BABC-66DB5CF6F28C} - System32\Tasks\Acer Registration - Reminder Recall task => C:\Program Files\Acer\Registration\GREG.exe
Task: {6D321E5A-3F3C-426D-A91B-7F1116BA4E8F} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3110072035-4176750333-2029028800-1000UA => C:\Users\NAY\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-12] (Facebook Inc.)
Task: {85A901C0-ED49-46A5-A0B8-F6ABEA3D60D3} - System32\Tasks\{47AA42FE-3CD5-469B-996E-8FDF9617E5E6} => pcalua.exe -a "C:\Windows\system32\CanonIJ Uninstaller Information\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP250_series\DelDrv.exe" -c /U:{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP250_series
Task: {9D4AAB8F-E195-4664-B16C-90DAACAAF7E0} - System32\Tasks\{CCF65642-A416-4CEA-9866-B1C82B1E65DE} => pcalua.exe -a "C:\Program Files\Acer GameZone\Cake Mania\Uninstall.exe" -c "C:\Program Files\Acer GameZone\Cake Mania\install.log"
Task: {B121E8B0-7369-40D0-9A98-BAC0C37EE91E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-26] (Google Inc.)
Task: {BE0F376B-4775-4225-B949-696378B8A920} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3110072035-4176750333-2029028800-1000Core => C:\Users\NAY\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-12] (Facebook Inc.)
Task: {CCE49BAA-20C0-400D-BB0A-9E62137B3162} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-26] (Google Inc.)
Task: {D6995FCC-2B39-4667-8C54-79CCF4A2DC6E} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-19] (Adobe Systems Incorporated)
Task: {F522333A-3841-42EE-95BA-A67825BAB6E9} - System32\Tasks\{1A562610-FBC6-4B0D-9450-E4D6F49D5F84} => Iexplore.exe http://www.skype.com/go/downloading?sou ... rror=12002
Task: {FF90D029-3F25-4720-8220-1C1AB59CB4CF} - System32\Tasks\{C5E4B003-266D-4465-8EAC-82D0ED24D6B7} => C:\Program Files\Skype\\Phone\Skype.exe [2015-02-26] (Skype Technologies S.A.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3110072035-4176750333-2029028800-1000Core.job => C:\Users\NAY\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3110072035-4176750333-2029028800-1000UA.job => C:\Users\NAY\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) ==============

2010-12-12 15:12 - 2010-03-15 11:28 - 00141824 _____ () C:\Program Files\WinRAR\rarext.dll
2010-04-15 03:55 - 2009-05-20 07:02 - 00072200 _____ () C:\Program Files\Launch Manager\CdDirIo.dll
2014-11-30 22:52 - 2014-11-25 07:39 - 09009480 _____ () C:\Program Files\Google\Chrome\Application\39.0.2171.71\pdf.dll
2014-11-30 22:52 - 2014-11-25 07:39 - 01677128 _____ () C:\Program Files\Google\Chrome\Application\39.0.2171.71\ffmpegsumo.dll
2014-04-10 20:23 - 2014-02-10 12:44 - 04592128 _____ () C:\Users\NAY\AppData\Local\Google\Chrome\User Data\SwiftShader\3.2.6.45159\libglesv2.dll
2014-04-10 20:23 - 2014-02-10 12:44 - 00112128 _____ () C:\Users\NAY\AppData\Local\Google\Chrome\User Data\SwiftShader\3.2.6.45159\libegl.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\ProgramData\TEMP:0B9176C0
AlternateDataStreams: C:\ProgramData\TEMP:4D066AD2
AlternateDataStreams: C:\ProgramData\TEMP:5D7E5A8F
AlternateDataStreams: C:\ProgramData\TEMP:798A3728
AlternateDataStreams: C:\ProgramData\TEMP:93DE1838
AlternateDataStreams: C:\ProgramData\TEMP:93EB7685
AlternateDataStreams: C:\ProgramData\TEMP:AB689DEA
AlternateDataStreams: C:\ProgramData\TEMP:ABE89FFE
AlternateDataStreams: C:\ProgramData\TEMP:CDCDE97C
AlternateDataStreams: C:\ProgramData\TEMP:E1F04E8D
AlternateDataStreams: C:\ProgramData\TEMP:E36F5B57

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3110072035-4176750333-2029028800-1000\Control Panel\Desktop\\Wallpaper -> %windir%\web\wallpaper\windows\img0.jpg
DNS Servers: 77.236.206.16 - 81.2.210.36

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
MSCONFIG\startupreg: EgisTecPMMUpdate => "C:\Program Files\EgisTec IPS\PmmUpdate.exe"
MSCONFIG\startupreg: EgisUpdate => "C:\Program Files\EgisTec IPS\EgisUpdate.exe" -d
MSCONFIG\startupreg: Facebook Update => "C:\Users\NAY\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
MSCONFIG\startupreg: mwlDaemon => C:\Program Files\EgisTec MyWinLocker\x86\mwlDaemon.exe
MSCONFIG\startupreg: SuiteTray => "C:\Program Files\EgisTec MyWinLockerSuite\x86\SuiteTray.exe"

==================== Accounts: =============================

Administrator (S-1-5-21-3110072035-4176750333-2029028800-500 - Administrator - Disabled)
Guest (S-1-5-21-3110072035-4176750333-2029028800-501 - Limited - Disabled)
NAY (S-1-5-21-3110072035-4176750333-2029028800-1000 - Administrator - Enabled) => C:\Users\NAY

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (03/24/2015 08:52:07 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: NT AUTHORITY)
Description: Unable to read the performance counter strings defined for the 01B language ID. The first DWORD in the Data section contains the Win32 error code.

Error: (03/24/2015 08:51:59 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: NT AUTHORITY)
Description: Unable to read the performance counter strings defined for the 01B language ID. The first DWORD in the Data section contains the Win32 error code.

Error: (03/24/2015 08:29:43 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Služba Cryptographic Services zlyhala pri spracovávaní volania OnIdentity() v objekte System Writer.


Details:
AddLegacyDriverFiles: Unable to back up image of binary mwlPSDVDisk.

System Error:
Systém nemôže nájsť zadaný súbor.
.

Error: (03/24/2015 08:29:43 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Služba Cryptographic Services zlyhala pri spracovávaní volania OnIdentity() v objekte System Writer.


Details:
AddLegacyDriverFiles: Unable to back up image of binary mwlPSDNServ.

System Error:
Systém nemôže nájsť zadaný súbor.
.

Error: (03/24/2015 08:29:43 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Služba Cryptographic Services zlyhala pri spracovávaní volania OnIdentity() v objekte System Writer.


Details:
AddLegacyDriverFiles: Unable to back up image of binary mwlPSDFilter.

System Error:
Systém nemôže nájsť zadaný súbor.
.

Error: (03/24/2015 08:23:54 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Služba Cryptographic Services zlyhala pri spracovávaní volania OnIdentity() v objekte System Writer.


Details:
AddLegacyDriverFiles: Unable to back up image of binary mwlPSDVDisk.

System Error:
Systém nemôže nájsť zadaný súbor.
.

Error: (03/24/2015 08:23:54 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Služba Cryptographic Services zlyhala pri spracovávaní volania OnIdentity() v objekte System Writer.


Details:
AddLegacyDriverFiles: Unable to back up image of binary mwlPSDNServ.

System Error:
Systém nemôže nájsť zadaný súbor.
.

Error: (03/24/2015 08:23:54 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Služba Cryptographic Services zlyhala pri spracovávaní volania OnIdentity() v objekte System Writer.


Details:
AddLegacyDriverFiles: Unable to back up image of binary mwlPSDFilter.

System Error:
Systém nemôže nájsť zadaný súbor.
.

Error: (03/24/2015 08:23:13 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Služba Cryptographic Services zlyhala pri spracovávaní volania OnIdentity() v objekte System Writer.


Details:
AddLegacyDriverFiles: Unable to back up image of binary mwlPSDVDisk.

System Error:
Systém nemôže nájsť zadaný súbor.
.

Error: (03/24/2015 08:23:13 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Služba Cryptographic Services zlyhala pri spracovávaní volania OnIdentity() v objekte System Writer.


Details:
AddLegacyDriverFiles: Unable to back up image of binary mwlPSDNServ.

System Error:
Systém nemôže nájsť zadaný súbor.
.


System errors:
=============
Error: (03/24/2015 08:44:44 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Nasledujúce ovládače pre spustenie zavedenia alebo spustenie systému zlyhali pri načítaní:
cdrom

Error: (03/24/2015 08:44:42 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby SmileyCentral Service zlyhalo kvôli nasledujúcej chybe:
%%2

Error: (03/24/2015 08:44:17 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: NT AUTHORITY)
Description: Modul WLAN Extensibility Module sa nepodarilo spustiť.

Cesta k modulu: C:\Windows\system32\athExt.dll
Kód chyby: 126

Error: (03/24/2015 08:43:02 PM) (Source: Service Control Manager) (EventID: 7032) (User: )
Description: Správca riadenia služieb sa po neočakávanom ukončení služby Windows Search pokúsil vykonať opravnú akciu (Reštartovať službu), ale táto činnosť zlyhala s nasledujúcou chybou:
%%1056

Error: (03/24/2015 08:42:33 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Print Spooler sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1 krát. O 60000 ms bude vykonaná nasledujúca opravná akcia: Reštartovať službu.

Error: (03/24/2015 08:42:33 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Machine Debug Manager sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.

Error: (03/24/2015 08:42:33 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Intel(R) Matrix Storage Event Monitor sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.

Error: (03/24/2015 08:42:33 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Acer ePower Service sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.

Error: (03/24/2015 08:42:32 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Windows Search sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1 krát. O 30000 ms bude vykonaná nasledujúca opravná akcia: Reštartovať službu.

Error: (03/24/2015 08:42:31 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba AtherosSvc sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.


Microsoft Office Sessions:
=========================
Error: (02/19/2012 05:20:22 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6612.1000, Microsoft Office Version: 12.0.6612.1000. This session lasted 3389 seconds with 2220 seconds of active time. This session ended with a crash.


CodeIntegrity Errors:
===================================
Date: 2015-03-24 21:18:58.565
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\RtkAPO.dll because the set of per-page image hashes could not be found on the system.

Date: 2015-03-24 21:18:57.816
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\RtkAPO.dll because the set of per-page image hashes could not be found on the system.

Date: 2015-03-24 21:15:36.604
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\RtkAPO.dll because the set of per-page image hashes could not be found on the system.

Date: 2015-03-24 21:15:35.871
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\RtkAPO.dll because the set of per-page image hashes could not be found on the system.

Date: 2015-03-24 21:11:17.750
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\RtkAPO.dll because the set of per-page image hashes could not be found on the system.

Date: 2015-03-24 21:11:17.235
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\RtkAPO.dll because the set of per-page image hashes could not be found on the system.

Date: 2015-03-24 21:11:07.315
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\RtkAPO.dll because the set of per-page image hashes could not be found on the system.

Date: 2015-03-24 21:11:06.644
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\RtkAPO.dll because the set of per-page image hashes could not be found on the system.

Date: 2015-03-24 21:11:05.810
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\RtkAPO.dll because the set of per-page image hashes could not be found on the system.

Date: 2015-03-24 21:11:05.264
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\RtkAPO.dll because the set of per-page image hashes could not be found on the system.


==================== Memory info ===========================

Processor: Intel(R) Atom(TM) CPU N450 @ 1.66GHz
Percentage of memory in use: 69%
Total physical RAM: 1013.1 MB
Available physical RAM: 313.3 MB
Total Pagefile: 2037.1 MB
Available Pagefile: 1160.4 MB
Total Virtual: 2047.88 MB
Available Virtual: 1918.29 MB

==================== Drives ================================

Drive c: (Acer) (Fixed) (Total:219.78 GB) (Free:173.27 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: DB3CF17E)
Partition 1: (Not Active) - (Size=13 GB) - (Type=27)
Partition 2: (Active) - (Size=102 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=219.8 GB) - (Type=07 NTFS)

==================== End Of Log ============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118278
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: spomaleny notebook

#6 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start
CustomCLSID: HKU\S-1-5-21-3110072035-4176750333-2029028800-1000_Classes\CLSID\{1FD1FE74-9E3C-4C1C-AEEB-AAB592AD770F}\localserver32 -> C:\Users\NAY\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.)
C:\Users\NAY\AppData\Local\Facebook\Update
CustomCLSID: HKU\S-1-5-21-3110072035-4176750333-2029028800-1000_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}\InprocServer32 -> C:\Users\NAY\AppData\LocalLow\Unity\WebPlayer\loader\UnityWebPluginAX.ocx No File
CustomCLSID: HKU\S-1-5-21-3110072035-4176750333-2029028800-1000_Classes\CLSID\{5E71E4F3-E8C7-4906-9626-973E418762B6}\InprocServer32 -> C:\Users\NAY\AppData\Local\Facebook\Update\1.2.205.0\goopdate.dll (Facebook Inc.)
Task: {6D321E5A-3F3C-426D-A91B-7F1116BA4E8F} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3110072035-4176750333-2029028800-1000UA => C:\Users\NAY\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-12] (Facebook Inc.)
Task: {B121E8B0-7369-40D0-9A98-BAC0C37EE91E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-26] (Google Inc.)
Task: {BE0F376B-4775-4225-B949-696378B8A920} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3110072035-4176750333-2029028800-1000Core => C:\Users\NAY\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-12] (Facebook Inc.)
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3110072035-4176750333-2029028800-1000Core.job => C:\Users\NAY\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3110072035-4176750333-2029028800-1000UA.job => C:\Users\NAY\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
AlternateDataStreams: C:\ProgramData\TEMP:0B9176C0
AlternateDataStreams: C:\ProgramData\TEMP:4D066AD2
AlternateDataStreams: C:\ProgramData\TEMP:5D7E5A8F
AlternateDataStreams: C:\ProgramData\TEMP:798A3728
AlternateDataStreams: C:\ProgramData\TEMP:93DE1838
AlternateDataStreams: C:\ProgramData\TEMP:93EB7685
AlternateDataStreams: C:\ProgramData\TEMP:AB689DEA
AlternateDataStreams: C:\ProgramData\TEMP:ABE89FFE
AlternateDataStreams: C:\ProgramData\TEMP:CDCDE97C
AlternateDataStreams: C:\ProgramData\TEMP:E1F04E8D
AlternateDataStreams: C:\ProgramData\TEMP:E36F5B57
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

herodeso
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 53
Registrován: 12 lis 2006 11:35
Bydliště: Slovensko

Re: spomaleny notebook

#7 Příspěvek od herodeso »

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 11-03-2015
Ran by NAY at 2015-03-24 22:48:28 Run:1
Running from C:\Users\NAY\Desktop
Loaded Profiles: NAY (Available profiles: NAY)
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
Start
CustomCLSID: HKU\S-1-5-21-3110072035-4176750333-2029028800-1000_Classes\CLSID\{1FD1FE74-9E3C-4C1C-AEEB-AAB592AD770F}\localserver32 -> C:\Users\NAY\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.)
C:\Users\NAY\AppData\Local\Facebook\Update
CustomCLSID: HKU\S-1-5-21-3110072035-4176750333-2029028800-1000_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}\InprocServer32 -> C:\Users\NAY\AppData\LocalLow\Unity\WebPlayer\loader\UnityWebPluginAX.ocx No File
CustomCLSID: HKU\S-1-5-21-3110072035-4176750333-2029028800-1000_Classes\CLSID\{5E71E4F3-E8C7-4906-9626-973E418762B6}\InprocServer32 -> C:\Users\NAY\AppData\Local\Facebook\Update\1.2.205.0\goopdate.dll (Facebook Inc.)
Task: {6D321E5A-3F3C-426D-A91B-7F1116BA4E8F} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3110072035-4176750333-2029028800-1000UA => C:\Users\NAY\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-12] (Facebook Inc.)
Task: {B121E8B0-7369-40D0-9A98-BAC0C37EE91E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-26] (Google Inc.)
Task: {BE0F376B-4775-4225-B949-696378B8A920} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3110072035-4176750333-2029028800-1000Core => C:\Users\NAY\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-12] (Facebook Inc.)
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3110072035-4176750333-2029028800-1000Core.job => C:\Users\NAY\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3110072035-4176750333-2029028800-1000UA.job => C:\Users\NAY\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
AlternateDataStreams: C:\ProgramData\TEMP:0B9176C0
AlternateDataStreams: C:\ProgramData\TEMP:4D066AD2
AlternateDataStreams: C:\ProgramData\TEMP:5D7E5A8F
AlternateDataStreams: C:\ProgramData\TEMP:798A3728
AlternateDataStreams: C:\ProgramData\TEMP:93DE1838
AlternateDataStreams: C:\ProgramData\TEMP:93EB7685
AlternateDataStreams: C:\ProgramData\TEMP:AB689DEA
AlternateDataStreams: C:\ProgramData\TEMP:ABE89FFE
AlternateDataStreams: C:\ProgramData\TEMP:CDCDE97C
AlternateDataStreams: C:\ProgramData\TEMP:E1F04E8D
AlternateDataStreams: C:\ProgramData\TEMP:E36F5B57
End
*****************

"HKU\S-1-5-21-3110072035-4176750333-2029028800-1000_Classes\CLSID\{1FD1FE74-9E3C-4C1C-AEEB-AAB592AD770F}" => Key deleted successfully.
C:\Users\NAY\AppData\Local\Facebook\Update => Moved successfully.
HKU\S-1-5-21-3110072035-4176750333-2029028800-1000_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394} => Key not found.
"HKU\S-1-5-21-3110072035-4176750333-2029028800-1000_Classes\CLSID\{5E71E4F3-E8C7-4906-9626-973E418762B6}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6D321E5A-3F3C-426D-A91B-7F1116BA4E8F}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6D321E5A-3F3C-426D-A91B-7F1116BA4E8F}" => Key deleted successfully.
C:\Windows\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3110072035-4176750333-2029028800-1000UA => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\FacebookUpdateTaskUserS-1-5-21-3110072035-4176750333-2029028800-1000UA" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B121E8B0-7369-40D0-9A98-BAC0C37EE91E}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B121E8B0-7369-40D0-9A98-BAC0C37EE91E}" => Key deleted successfully.
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BE0F376B-4775-4225-B949-696378B8A920}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BE0F376B-4775-4225-B949-696378B8A920}" => Key deleted successfully.
C:\Windows\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3110072035-4176750333-2029028800-1000Core => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\FacebookUpdateTaskUserS-1-5-21-3110072035-4176750333-2029028800-1000Core" => Key deleted successfully.
C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3110072035-4176750333-2029028800-1000Core.job => Moved successfully.
C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3110072035-4176750333-2029028800-1000UA.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
"C:\ProgramData\TEMP" => ":0B9176C0" ADS not found.
"C:\ProgramData\TEMP" => ":4D066AD2" ADS not found.
"C:\ProgramData\TEMP" => ":5D7E5A8F" ADS not found.
"C:\ProgramData\TEMP" => ":798A3728" ADS not found.
"C:\ProgramData\TEMP" => ":93DE1838" ADS not found.
"C:\ProgramData\TEMP" => ":93EB7685" ADS not found.
"C:\ProgramData\TEMP" => ":AB689DEA" ADS not found.
"C:\ProgramData\TEMP" => ":ABE89FFE" ADS not found.
"C:\ProgramData\TEMP" => ":CDCDE97C" ADS not found.
"C:\ProgramData\TEMP" => ":E1F04E8D" ADS not found.
"C:\ProgramData\TEMP" => ":E36F5B57" ADS not found.

==== End of Fixlog 22:48:31 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118278
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: spomaleny notebook

#8 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

herodeso
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 53
Registrován: 12 lis 2006 11:35
Bydliště: Slovensko

Re: spomaleny notebook

#9 Příspěvek od herodeso »

Urcite ano, bezi o dost lepsie. Dakujem...
Mohli by ste esste prosim pozriet na:
-cake mania, hra. Pri odinstalovani napise len instalation log not found
-win zvuky, napriklad pri vyskoceni nejakeho upozornovacieho okna su opozdene mozno aj o 5sekund. nebol by to mozno velky problem ale pri vypinani win vyskoci ze nejaky program pracuje, myslim explorer.exe a caka sa na prehratie zvuku, slo by s tym nieco urobit?

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118278
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: spomaleny notebook

#10 Příspěvek od Rudy »

Na ty zvuky zkuste defragmentovat disk. S hrou neporadím, sám nepařím a my nejsme herní fórum. Na herním fóru tomu budou rozumět lépe.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

herodeso
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 53
Registrován: 12 lis 2006 11:35
Bydliště: Slovensko

Re: spomaleny notebook

#11 Příspěvek od herodeso »

ani ja nezvyknem parit, je to hra kotra bola nainstalovana s windowsami. Uz som to poriesil. Defragmentaciu som urobil ale nepomohlo, to uz strpim nejak. Notas bezi lepsie a to je hlavne, dakujem za pomoc

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118278
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: spomaleny notebook

#12 Příspěvek od Rudy »

Nemáte zač! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno