
Předem děkuji Jitka
Moderátor: Moderátoři
Kód: Vybrat vše
autoclean;
resethosts;
emptyclsid;
IEdefaults;
FFdefaults;
CHRdefaults;
emptyIEcache;
emptyFFcache;
emptyCHRcache;
emptyalltemp;
emptyflash;
emptyjava;
emptyrecycle.bin;
Kód: Vybrat vše
Start
CloseProcesses:
CreateRestorePoint:
HKLM\...\Policies\Explorer: [TaskbarNoNotification] 0
HKLM\...\Policies\Explorer: [HideSCAHealth] 0
HKU\S-1-5-21-1482476501-573735546-1606980848-1004\...\Run: [MSMSGS] => C:\Program Files\Messenger\msmsgs.exe [1695232 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-1482476501-573735546-1606980848-1004\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3671872 2012-04-17] (DT Soft Ltd)
HKU\S-1-5-21-1482476501-573735546-1606980848-1004\...\Run: [Xvid] => C:\Program Files\Xvid\CheckUpdate.exe [8192 2011-01-17] ()
HKU\S-1-5-21-1482476501-573735546-1606980848-1004\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [31344744 2015-02-26] (Skype Technologies S.A.)
HKU\S-1-5-21-1482476501-573735546-1606980848-1004\...\Policies\Explorer: [TaskbarNoNotification] 0
HKU\S-1-5-21-1482476501-573735546-1606980848-1004\...\Policies\Explorer: [HideSCAHealth] 0
HKU\S-1-5-21-1482476501-573735546-1606980848-1004\...\MountPoints2: {40c76a40-f69b-11e1-afb8-806d6172696f} - F:\setup.exe
HKU\S-1-5-21-1482476501-573735546-1606980848-1004\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\ssmyst.scr [18944 2008-04-14] (Microsoft Corporation)
Startup: C:\Documents and Settings\Doma\Nabídka Start\Programy\Po spuštění\Harry Potter and the Goblet of Fire (2005) 1080p BluRay x264 Dual Audio [English 5.1 + Hindi 2.0] - TBI.lnk
Startup: C:\Documents and Settings\Doma\Nabídka Start\Programy\Po spuštění\Jane Eyre avi.lnk
ShortcutTarget: Jane Eyre avi.lnk -> C:\Documents and Settings\All Users\Data aplikací\{dfc539a9-f529-6651-dfc5-539a9f52e6a7}\Jane Eyre avi.exe (No File)
HKU\S-1-5-21-1482476501-573735546-1606980848-1004\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
URLSearchHook: [S-1-5-21-1482476501-573735546-1606980848-1004] ATTENTION ==> Default URLSearchHook is missing.
URLSearchHook: HKU\S-1-5-21-1482476501-573735546-1606980848-1004 - Default Value = {855F3B16-6D32-4fe6-8A56-BBB695989046}
HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs: "about:newtab" <======= ATTENTION
SearchScopes: HKLM -> {BE28C22E-F666-424d-B5FD-125C4AFEE34E} URL = http://search.myheritage.com?orig=ds&q={searchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1482476501-573735546-1606980848-1004 -> {BE28C22E-F666-424d-B5FD-125C4AFEE34E} URL = http://search.myheritage.com?orig=ds&q={searchTerms}
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll [2009-12-04] (AVG Technologies CZ, s.r.o.)
Handler: mhtb - {669A2A3A-F19C-452D-800D-1240299756C1} - C:\Program Files\Family Toolbar\mhxpcomi.dll No File []
CHR HomePage: Default -> hxxp://mysearch.avg.com?cid={7FFB462D-BA90-4DE3-89C8-D93B2B8C2CA9}&mid=0d4864af7171456186708d0c4f098bf9-d3f5169404cc9dc32862080b6340c5b0c2ed2114&lang=en&ds=AVG&coid=avgtbavg&cmpid=&pr=fr&d=2014-04-20 18:15:17&v=18.0.5.292&pid=safeguard&sg=&sap=hp
CHR StartupUrls: Default -> "hxxp://mysearch.avg.com?cid={7FFB462D-BA90-4DE3-89C8-D93B2B8C2CA9}&mid=0d4864af7171456186708d0c4f098bf9-d3f5169404cc9dc32862080b6340c5b0c2ed2114&lang=en&ds=AVG&coid=avgtbavg&cmpid=&pr=fr&d=2014-04-20 18:15:17&v=18.0.5.292&pid=safeguard&sg=&sap=hp"
S2 SafetyNutManager2; C:\Program Files\Movies Toolbar\SafetyNut\SafetyNutManager.exe [X]
U3 aroc3dvf; C:\WINDOWS\system32\Drivers\aroc3dvf.sys [0 ] (Microsoft Corporation) <==== ATTENTION (zero size file/folder)
S4 IntelIde; No ImagePath
U1 WS2IFSL; No ImagePath
C:\Program Files\Movies Toolbar
C:\Documents and Settings\All Users\Data aplikací\{dfc539a9-f529-6651-dfc5-539a9f52e6a7}
2015-04-05 12:00 - 2015-04-05 12:00 - 00012076 _____ () C:\Documents and Settings\Doma\Plocha\zoek-results.txt
2015-04-05 12:00 - 2015-04-05 12:00 - 00003340 _____ () C:\Documents and Settings\Doma\Plocha\zoek-results.rar
2015-04-05 11:57 - 2015-04-05 11:43 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
2015-04-05 11:46 - 2015-04-05 11:58 - 00012076 _____ () C:\zoek-results.log
2015-04-05 11:42 - 2015-04-05 11:54 - 00000000 ____D () C:\zoek_backup
2015-04-05 11:40 - 2015-04-05 11:40 - 01305600 _____ () C:\Documents and Settings\Doma\Plocha\zoek.exe
2015-04-05 11:39 - 2015-04-05 11:39 - 00007564 _____ () C:\Documents and Settings\Doma\Plocha\AdwCleaner[R1].rar
2015-04-05 11:39 - 2015-04-05 11:39 - 00002887 _____ () C:\Documents and Settings\Doma\Plocha\AdwCleaner[S1].rar
2015-04-05 11:23 - 2015-04-05 11:23 - 02208768 _____ () C:\Documents and Settings\Doma\Plocha\adwcleaner_4.200.exe
2015-04-05 10:52 - 2015-04-05 10:52 - 00009061 _____ () C:\Documents and Settings\Doma\Plocha\Addition.rar
2015-04-05 10:52 - 2015-04-05 10:52 - 00007927 _____ () C:\Documents and Settings\Doma\Plocha\FRST.rar
2015-04-05 10:35 - 2015-04-05 10:36 - 00049179 _____ () C:\Documents and Settings\Doma\Plocha\Addition.txt
2015-04-05 10:34 - 2015-04-05 12:15 - 00016286 _____ () C:\Documents and Settings\Doma\Plocha\FRST.txt
2015-03-08 16:00 - 2014-03-10 10:35 - 00000214 _____ () C:\WINDOWS\Tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job
2015-04-05 11:58 - 2014-03-10 10:35 - 00000220 _____ () C:\WINDOWS\Tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job
2015-04-05 12:04 - 2014-04-05 22:45 - 00000936 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-04-05 12:08 - 2014-04-05 22:45 - 00000940 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
Hosts:
EmptyTemp:
Reboot:
End
Rkill EXE:
http://download.bleepingcomputer.com/grinler/rkill.exe
Rkill iExplore.exe:
http://download.bleepingcomputer.com/gr ... xplore.exe
Rkill uSeRiNiT.exe:
http://download.bleepingcomputer.com/gr ... eRiNiT.exe
Rkill WiNlOgOn.exe:
http://download.bleepingcomputer.com/gr ... NlOgOn.exe