Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

kontrola logu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
demien
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 03 bře 2014 17:18

kontrola logu

#1 Příspěvek od demien »

Ahoj,
poprosil bych o kontrolu logu...s kodeky jsem stahnul nejakou havet a totalne mi blazni prohlizece.
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 09-05-2015
Ran by Stanislav (administrator) on STANISLAV-PC on 12-05-2015 21:09:21
Running from C:\Users\Stanislav\Desktop
Loaded Profiles: Stanislav (Available profiles: Stanislav)
Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\AsLdrSrv.exe
() C:\Program Files\ATKGFNEX\GFNEXSrv.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
() C:\Program Files\ASUS\ASUS Live Update\ALU.exe
() C:\Program Files\ASUS\Wireless Console 3\wcourier.exe
(ASUS) C:\Program Files\ASUS\SmartLogon\sensorsrv.exe
() C:\Program Files\ASUS\ControlDeck\ControlDeckStartUp.exe
(ASUS) C:\Program Files\ASUS\Net4Switch\Net4Switch.exe
(ATK) C:\Program Files\P4G\BatteryLife.exe
(ATK) C:\Program Files\ASUS\Splendid\ACMON.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\HControl.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\ATKOSD.exe
(ASUS) C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe
(ASUSTeK) C:\Windows\System32\ACEngSvr.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\KBFiltr.exe
(ASUS) C:\Program Files\ASUS\ATK Media\DMedia.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\WDC.exe
(AlcorMicro Co., Ltd.) C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe
(InstallShield Software Corporation) C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
() C:\Program Files\CyberLink\Shared Files\RichVideo.exe
(ASUS) C:\Windows\AsScrPro.exe
(CyberLink) C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe
(Cyberlink Corp.) C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
() C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugincontainer.exe
() C:\Program Files\Common Files\87737dd0-ad90-4193-bd48-336966b8d777\updater.exe
() C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\2\Plugin.exe
() C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\3\Plugin.exe
() C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\5\Plugin.exe
() C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\3\Plugin.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Stanislav\Desktop\FRSTLauncher.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [UpdateLBPShortCut] => C:\Program Files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [222504 2008-02-21] (CyberLink Corp.)
HKLM\...\Run: [UpdatePSTShortCut] => C:\Program Files\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe [210216 2008-10-22] (CyberLink Corp.)
HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [HControlUser] => C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM\...\Run: [ATKOSD2] => C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe [6859392 2009-08-17] (ASUS)
HKLM\...\Run: [ATKMEDIA] => C:\Program Files\ASUS\ATK Media\DMedia.exe [170624 2009-08-19] (ASUS)
HKLM\...\Run: [AmIcoSinglun] => C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe [233472 2009-09-01] (AlcorMicro Co., Ltd.)
HKLM\...\Run: [ISUSScheduler] => C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [81920 2004-06-16] (InstallShield Software Corporation)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1021128 2014-11-20] (Adobe Systems Incorporated)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5515496 2015-05-03] (Avast Software s.r.o.)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [334896 2015-04-30] (Oracle Corporation)
Winlogon\Notify\ScCertProp: wlnotify.dll [X]
HKU\S-1-5-21-1082156279-3060072278-1613615570-1000\...\Run: [ISUSPM Startup] => C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [221184 2004-06-16] (InstallShield Software Corporation)
HKU\S-1-5-21-1082156279-3060072278-1613615570-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3673728 2012-11-06] (DT Soft Ltd)
HKU\S-1-5-21-1082156279-3060072278-1613615570-1000\Control Panel\Desktop\\SCRNSAVE.EXE ->
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\FancyStart daemon.lnk [2011-06-09]
ShortcutTarget: FancyStart daemon.lnk -> C:\Windows\Installer\{F0DF4513-3C4C-4EB8-8012-2C5F70AF3988}\_A1DDD39913A1970387B7B3.exe ()
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2015-05-03] (Avast Software s.r.o.)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-1082156279-3060072278-1613615570-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKU\S-1-5-21-1082156279-3060072278-1613615570-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\S-1-5-21-1082156279-3060072278-1613615570-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.search.ask.com/?l=dis&o=151870
SearchScopes: HKLM -> DefaultScope value is missing.
SearchScopes: HKU\S-1-5-21-1082156279-3060072278-1613615570-1000 -> {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} URL = http://tbsearch.ask.com/redirect?client ... s}&locale=
BHO: No Name -> {2335267c-dbba-4dd5-a9d0-c4db8e6a75a4} -> No File
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_45\bin\ssv.dll [2015-05-10] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-04-11] (Avast Software s.r.o.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-05-10] (Oracle Corporation)
Toolbar: HKLM - No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
Hosts: 127.0.0.1 localhost
Tcpip\Parameters: [DhcpNameServer] 213.46.172.36 213.46.172.37

FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-05-10] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-05-10] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.31211.0\npctrl.dll [2014-12-11] ( Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-07] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-07] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1082156279-3060072278-1613615570-1000: ubisoft.com/uplaypc -> C:\Program Files\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll No File
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-12-05]
FF HKLM\...\Firefox\Extensions: [ext@MediaViewV1alpha2925.net] - C:\Program Files\MediaViewV1\MediaViewV1alpha2925\ff

Chrome:
=======
CHR HomePage: Default -> https://www.seznam.cz/?clid=22668
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Profile: C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Avast SafePrice) - C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2014-08-12]
CHR Extension: (Bookmark Manager) - C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-04-17]
CHR Extension: (Avast Online Security) - C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-01-25]
CHR Extension: (Record Page) - C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Extensions\lnpehhonenmejjcoifomkebfhebhbbik [2015-05-12]
CHR Extension: (Google Wallet) - C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-03-08]
CHR HKLM\...\Chrome\Extension: [aaaahnibljmklpljnbpgfobmfpfhplch] - C:\ProgramData\AskPartnerNetwork\Toolbar\PTV-RG\CRX\ToolbarCR.crx [2015-04-27]
CHR HKLM\...\Chrome\Extension: [ddihbpnhlokjlhkccejfmdjamjinokpo] - C:\Program Files\MediaViewV1\MediaViewV1alpha2925\ch\MediaViewV1alpha2925.crx [Not Found]
CHR HKLM\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswwebrepchrome-sp.crx [2014-08-04]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-04-11]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AFBAgent; C:\Windows\system32\FBAgent.exe [283264 2009-09-17] (ASUSTeK Computer Inc.)
R2 ASLDRService; C:\Program Files\ASUS\ATK Hotkey\ASLDRSrv.exe [84536 2009-06-15] (ASUS)
R2 ATKGFNEXSrv; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [94208 2007-08-08] () [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-05-03] (Avast Software s.r.o.)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [3207800 2015-05-03] (Avast Software)
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R3 RichVideo; C:\Program Files\CyberLink\Shared Files\RichVideo.exe [272024 2007-01-09] ()
R2 Service Mgr RecordPage; C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugincontainer.exe [556296 2015-05-12] ()
R2 Update Mgr RecordPage; C:\Program Files\Common Files\87737dd0-ad90-4193-bd48-336966b8d777\updater.exe [478984 2015-05-12] ()
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 AmUStor; C:\Windows\System32\drivers\AmUStor.SYS [27136 2009-08-21] (Alcor Micro, Corp.)
R2 ASMMAP; C:\Program Files\ATKGFNEX\ASMMAP.sys [13880 2007-07-24] ()
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24144 2015-05-03] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [74976 2015-05-03] (Avast Software s.r.o.)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [81728 2015-05-03] (Avast Software s.r.o.)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49904 2015-05-03] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [787760 2015-05-03] (Avast Software s.r.o.)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427992 2015-05-03] (Avast Software s.r.o.)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [106912 2015-05-03] (Avast Software s.r.o.)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [209048 2015-05-03] ()
S2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [271360 2013-09-28] () [File not signed]
S3 AVerAF15DMBTH; C:\Windows\System32\Drivers\AVerAF15DMBTH.sys [554368 2009-07-27] (AVerMedia TECHNOLOGIES, Inc.)
R1 avgtp; C:\Windows\system32\drivers\avgtpx86.sys [33112 2013-02-18] (AVG Technologies)
R3 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [242240 2012-11-18] (DT Soft Ltd)
S3 ETD; C:\Windows\System32\DRIVERS\ETD.sys [87040 2009-07-29] (ELAN Microelectronic Corp.)
S3 HPKBCCID; C:\Windows\System32\DRIVERS\HPKBCCID.sys [48000 2012-03-05] (Hewlett-Packard Company)
S3 ivusb; C:\Windows\System32\DRIVERS\ivusb.sys [25112 2010-07-29] (Initio Corporation)
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [13880 2009-07-20] ( )
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [18048 2013-09-28] () [File not signed]
R3 MTsensor; C:\Windows\System32\DRIVERS\ATKACPI.sys [14392 2009-05-13] (ASUS)
S3 PcaSp60; C:\Windows\System32\DRIVERS\PcaSp60.sys [28672 2010-09-07] (Printing Communications Assoc., Inc. (PCAUSA))
R1 SCDEmu; C:\Windows\system32\Drivers\SCDEmu.sys [113104 2012-05-31] (Power Software Ltd)
R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1759872 2009-08-12] ()
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [466008 2012-11-17] (Duplex Secure Ltd.)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [220752 2015-05-03] (Avast Software)
U5 AppMgmt; C:\Windows\system32\svchost.exe [20992 2009-07-14] (Microsoft Corporation)
S3 ipswuio; System32\DRIVERS\ipswuio.sys [X]
U3 tmlwf; No ImagePath
U3 tmwfp; No ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-05-12 21:09 - 2015-05-12 21:09 - 00015708 _____ () C:\Users\Stanislav\Desktop\FRST.txt
2015-05-12 21:08 - 2015-05-12 21:09 - 00000000 ____D () C:\FRST
2015-05-12 21:07 - 2015-05-12 21:07 - 00112640 _____ (forum.viry.cz) C:\Users\Stanislav\Desktop\FRSTLauncher.exe
2015-05-12 21:06 - 2015-05-12 21:06 - 00112640 _____ (forum.viry.cz) C:\Users\Stanislav\Downloads\Nepotvrzeno 747467.crdownload
2015-05-12 21:06 - 2015-05-12 21:06 - 00112640 _____ (forum.viry.cz) C:\Users\Stanislav\Downloads\Nepotvrzeno 724622.crdownload
2015-05-12 21:06 - 2015-05-12 21:06 - 00112640 _____ (forum.viry.cz) C:\Users\Stanislav\Downloads\Nepotvrzeno 254083.crdownload
2015-05-12 21:04 - 2015-05-12 21:04 - 01141248 _____ (Farbar) C:\Users\Stanislav\Desktop\FRST.exe
2015-05-12 20:49 - 2015-05-12 20:49 - 00388608 _____ (Trend Micro Inc.) C:\Users\Stanislav\Downloads\hijackthis.exe
2015-05-11 21:31 - 2015-05-11 21:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
2015-05-11 21:31 - 2015-05-11 21:31 - 00000000 ____D () C:\Program Files\K-Lite Codec Pack
2015-05-11 21:27 - 2015-05-12 20:23 - 00000000 ____D () C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777
2015-05-11 21:27 - 2015-05-12 20:23 - 00000000 ____D () C:\Program Files\Common Files\87737dd0-ad90-4193-bd48-336966b8d777
2015-05-11 21:27 - 2015-05-11 21:27 - 00000000 ____D () C:\Program Files\Record Page
2015-05-11 21:25 - 2015-05-11 21:26 - 00000651 _____ () C:\Users\Stanislav\Downloads\K-Lite_Codec_Pack_1110_Full_dlm (1).website
2015-05-11 21:22 - 2015-05-11 21:22 - 00000651 _____ () C:\Users\Stanislav\Downloads\K-Lite_Codec_Pack_1110_Full_dlm.website
2015-05-11 20:25 - 2015-05-11 20:26 - 03711050 _____ () C:\Users\Stanislav\Downloads\30145-14-44351.zip
2015-05-10 15:09 - 2015-05-10 15:33 - 307301251 _____ () C:\Users\Stanislav\Downloads\Turisas---Discography-5CD-mp3.rar
2015-05-10 14:44 - 2015-05-10 14:44 - 00000000 ____D () C:\Program Files\Common Files\Java
2015-05-10 12:08 - 2015-05-10 12:08 - 00000000 ____D () C:\Users\Stanislav\AppData\Local\AskPartnerNetwork
2015-05-10 12:08 - 2015-05-10 12:08 - 00000000 ____D () C:\ProgramData\AskPartnerNetwork
2015-05-10 12:08 - 2015-05-10 12:08 - 00000000 ____D () C:\ProgramData\APN
2015-05-10 12:08 - 2015-05-10 12:08 - 00000000 ____D () C:\Program Files\AskPartnerNetwork
2015-05-10 12:07 - 2015-05-11 21:35 - 00000000 ____D () C:\The KMPlayer
2015-05-10 12:07 - 2015-05-10 12:16 - 00000634 _____ () C:\Users\Stanislav\Desktop\KMPlayer.lnk
2015-05-10 12:07 - 2015-05-10 12:07 - 00000000 ____D () C:\Users\Stanislav\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The KMPlayer
2015-05-09 08:22 - 2015-05-09 08:23 - 00000000 ____D () C:\Users\Stanislav\Downloads\japonsko amater
2015-05-08 22:56 - 2015-05-08 22:56 - 00000000 ____D () C:\Users\Stanislav\Downloads\hudba
2015-05-03 09:36 - 2015-05-03 09:35 - 00291312 _____ (Avast Software s.r.o.) C:\Windows\system32\aswBoot.exe
2015-05-03 09:35 - 2015-05-03 09:35 - 00043112 _____ (Avast Software s.r.o.) C:\Windows\avastSS.scr
2015-04-30 20:55 - 2015-04-30 20:56 - 00305325 _____ () C:\Users\Stanislav\Downloads\Durr, Josef - Experimentalni demonologie.zip
2015-04-27 21:06 - 2015-04-27 21:06 - 02493595 _____ () C:\Users\Stanislav\Downloads\Neill, Chloe - Holky nekdy kousou.zip
2015-04-23 20:14 - 2015-04-23 20:14 - 00000000 ____D () C:\Users\Stanislav\AppData\Local\Adobe
2015-04-23 19:03 - 2015-04-23 19:14 - 00000000 ____D () C:\Users\Stanislav\AppData\Roaming\cache
2015-04-23 19:01 - 2015-04-23 19:01 - 00000000 _____ () C:\autoexec.bat
2015-04-23 18:55 - 2015-04-23 19:10 - 00000000 ____D () C:\Program Files\Common Files\Symantec Shared
2015-04-23 18:42 - 2015-04-23 19:11 - 00000000 ____D () C:\ProgramData\Norton
2015-04-23 18:42 - 2015-04-23 18:42 - 00000000 ____D () C:\Users\Stanislav\AppData\Local\IsolatedStorage
2015-04-23 18:41 - 2015-04-23 18:41 - 00000000 ____D () C:\Users\Stanislav\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Imperia Online
2015-04-23 18:41 - 2015-04-23 18:41 - 00000000 ____D () C:\Users\Stanislav\AppData\Roaming\Media Freeware
2015-04-23 18:41 - 2015-04-23 18:41 - 00000000 ____D () C:\Users\Stanislav\AppData\Roaming\ImperiaOnline
2015-04-23 18:40 - 2015-04-23 18:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\(Default)
2015-04-23 17:31 - 2015-04-23 17:31 - 01259851 _____ () C:\Users\Stanislav\Downloads\Wecker, Helene - Golema a dzin v New Yorku.zip
2015-04-20 20:03 - 2015-04-20 20:04 - 01130273 _____ () C:\Users\Stanislav\Downloads\Tauer, Felix - Tisic a jedna noc 1_5.zip
2015-04-16 21:44 - 2015-04-16 21:44 - 00359998 _____ () C:\Users\Stanislav\Downloads\Nemcova, Bozena - Narodni bachorky a povesti I..zip
2015-04-16 21:40 - 2015-04-16 21:41 - 00235716 _____ () C:\Users\Stanislav\Downloads\Waltari, Mika Toimi - Cinska kocka a jine pohadky.zip
2015-04-16 20:36 - 2015-04-16 20:38 - 52748737 _____ () C:\Users\Stanislav\Downloads\Latham-Koenig C.; Oxenden C. - New English file Elementary StudentT+s book.zip
2015-04-14 21:47 - 2015-04-02 01:49 - 00342704 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-04-14 21:47 - 2015-03-23 05:06 - 00860160 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-04-14 21:47 - 2015-03-23 05:06 - 00630784 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-04-14 21:47 - 2015-03-23 05:06 - 00576000 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-04-14 21:47 - 2015-03-23 05:06 - 00331264 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-04-14 21:47 - 2015-03-23 05:06 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-04-14 21:47 - 2015-03-23 05:06 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-04-14 21:47 - 2015-03-23 05:06 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-04-14 21:47 - 2015-03-23 04:59 - 00896000 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-04-14 21:47 - 2015-03-13 05:42 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-04-14 21:47 - 2015-03-13 05:28 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-04-14 21:47 - 2015-03-13 05:27 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-04-14 21:47 - 2015-03-13 05:20 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-04-14 21:47 - 2015-03-13 05:20 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-04-14 21:47 - 2015-03-13 05:16 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-04-14 21:47 - 2015-03-13 05:16 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-04-14 21:47 - 2015-03-13 05:15 - 00620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-04-14 21:47 - 2015-03-13 05:09 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-04-14 21:47 - 2015-03-13 05:06 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-04-14 21:47 - 2015-03-13 05:01 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-04-14 21:47 - 2015-03-13 04:57 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-04-14 21:47 - 2015-03-13 04:44 - 00689152 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-04-14 21:47 - 2015-03-13 04:43 - 02052608 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-04-14 21:47 - 2015-03-13 04:43 - 00685568 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-04-14 21:47 - 2015-03-13 04:16 - 01311232 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-04-14 21:47 - 2015-03-13 04:14 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-04-14 21:47 - 2015-03-04 06:16 - 00249784 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys
2015-04-14 21:47 - 2015-03-04 06:10 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll
2015-04-14 21:46 - 2015-03-17 07:01 - 03976632 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-04-14 21:46 - 2015-03-17 07:01 - 03920824 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-04-14 21:46 - 2015-03-17 07:01 - 00137656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-04-14 21:46 - 2015-03-17 07:01 - 00067512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-04-14 21:46 - 2015-03-17 06:59 - 01306112 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-04-14 21:46 - 2015-03-17 06:57 - 01061376 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-04-14 21:46 - 2015-03-17 06:57 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-04-14 21:46 - 2015-03-17 06:57 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-04-14 21:46 - 2015-03-17 06:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-04-14 21:46 - 2015-03-17 06:57 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-04-14 21:46 - 2015-03-17 06:57 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-04-14 21:46 - 2015-03-17 06:57 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-04-14 21:46 - 2015-03-17 06:57 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-04-14 21:46 - 2015-03-17 06:57 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-04-14 21:46 - 2015-03-17 06:57 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-04-14 21:46 - 2015-03-17 06:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-04-14 21:46 - 2015-03-17 06:57 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-04-14 21:46 - 2015-03-17 06:56 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-04-14 21:46 - 2015-03-17 06:56 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-04-14 21:46 - 2015-03-17 06:56 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-04-14 21:46 - 2015-03-17 06:56 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-04-14 21:46 - 2015-03-17 06:56 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-04-14 21:46 - 2015-03-17 06:56 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-04-14 21:46 - 2015-03-17 06:53 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-04-14 21:46 - 2015-03-17 06:53 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-04-14 21:46 - 2015-03-17 06:50 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-04-14 21:46 - 2015-03-17 06:50 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-04-14 21:46 - 2015-03-13 05:42 - 19695616 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-04-14 21:46 - 2015-03-13 05:42 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-04-14 21:46 - 2015-03-13 05:28 - 00503296 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-04-14 21:46 - 2015-03-13 05:27 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-04-14 21:46 - 2015-03-13 05:26 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-04-14 21:46 - 2015-03-13 05:22 - 02278400 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-04-14 21:46 - 2015-03-13 05:17 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-04-14 21:46 - 2015-03-13 04:56 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-04-14 21:46 - 2015-03-13 04:54 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-04-14 21:46 - 2015-03-13 04:49 - 04305408 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-04-14 21:46 - 2015-03-13 04:42 - 01155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-04-14 21:46 - 2015-03-13 04:34 - 12825600 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-04-14 21:46 - 2015-03-13 04:20 - 01888256 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-04-14 21:45 - 2015-03-25 05:00 - 03088384 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-04-14 21:45 - 2015-03-25 05:00 - 02020864 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-04-14 21:45 - 2015-03-25 05:00 - 00566784 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-04-14 21:45 - 2015-03-25 05:00 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-04-14 21:45 - 2015-03-25 05:00 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-04-14 21:45 - 2015-03-25 05:00 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-04-14 21:45 - 2015-03-25 05:00 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-04-14 21:45 - 2015-03-25 05:00 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-04-14 21:45 - 2015-03-25 05:00 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-04-14 21:45 - 2015-03-25 05:00 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-04-14 21:45 - 2015-03-25 05:00 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-04-14 21:45 - 2015-03-10 05:08 - 01237504 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-04-14 21:45 - 2015-03-10 05:05 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2015-04-14 21:45 - 2015-03-05 06:06 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-04-14 21:45 - 2015-02-25 05:03 - 00514560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2015-04-12 21:26 - 2015-04-12 21:26 - 00000000 ____D () C:\Windows\system32\vbox

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-05-12 21:07 - 2009-07-14 06:34 - 00022656 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-05-12 21:07 - 2009-07-14 06:34 - 00022656 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-05-12 21:00 - 2011-06-09 23:40 - 01635595 _____ () C:\Windows\WindowsUpdate.log
2015-05-12 20:59 - 2014-09-24 22:10 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-05-12 20:25 - 2014-03-09 20:05 - 00000000 ____D () C:\Users\Stanislav\Desktop\zazalohovat
2015-05-12 20:24 - 2014-03-31 16:08 - 00000940 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-05-12 06:30 - 2014-03-31 16:08 - 00000936 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-05-12 06:25 - 2011-06-11 19:54 - 00000000 ____D () C:\Users\Stanislav\AppData\Roaming\uTorrent
2015-05-11 22:25 - 2014-09-30 19:12 - 00016772 _____ () C:\Users\Stanislav\Desktop\readme.txt
2015-05-10 21:27 - 2011-06-09 00:32 - 00000000 ____D () C:\Users\Stanislav\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink DVD Suite
2015-05-10 21:26 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-05-10 16:55 - 2011-06-09 00:28 - 01584626 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-05-10 14:45 - 2014-05-27 18:22 - 00000000 ____D () C:\Program Files\Java
2015-05-10 14:44 - 2014-07-19 14:47 - 00096352 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2015-05-10 14:43 - 2013-11-05 19:20 - 00000000 ____D () C:\ProgramData\Oracle
2015-05-10 14:03 - 2014-03-09 15:11 - 00000000 ____D () C:\Users\Stanislav\Desktop\zalohovano
2015-05-03 09:36 - 2014-04-26 15:46 - 00024144 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2015-05-03 09:36 - 2013-12-25 14:30 - 00106912 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswStm.sys
2015-05-03 09:36 - 2013-12-05 20:04 - 00209048 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2015-05-03 09:36 - 2013-12-05 20:03 - 00427992 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswSP.sys
2015-05-03 09:36 - 2013-12-05 20:03 - 00049904 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2015-05-03 09:36 - 2013-12-05 20:01 - 00074976 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswMonFlt.sys
2015-05-03 09:36 - 2013-12-05 19:59 - 00081728 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswRdr2.sys
2015-05-03 09:35 - 2013-12-05 20:02 - 00787760 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswSnx.sys
2015-04-30 17:25 - 2012-08-04 21:12 - 00002089 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2015-04-30 16:31 - 2014-03-08 12:49 - 00045056 _____ () C:\Windows\system32\acovcnt.exe
2015-04-23 20:27 - 2013-05-31 21:37 - 00000000 ____D () C:\Program Files\Electronic Arts
2015-04-23 20:27 - 2011-06-09 00:32 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2015-04-23 20:26 - 2009-07-14 06:52 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-04-23 20:12 - 2014-04-27 18:27 - 00000000 ____D () C:\Users\Stanislav\AppData\Local\CrashDumps
2015-04-23 20:12 - 2012-04-07 22:32 - 00000000 ____D () C:\Windows\Minidump
2015-04-23 19:27 - 2014-11-17 15:17 - 00000000 ____D () C:\Users\Stanislav\AppData\Local\Battle.net
2015-04-23 19:17 - 2011-06-09 01:03 - 00002268 _____ () C:\Windows\system32\AutoRunFilter.ini
2015-04-23 19:00 - 2011-06-09 00:22 - 00000000 ____D () C:\Users\Stanislav
2015-04-18 11:27 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache
2015-04-18 11:21 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\AppCompat
2015-04-18 10:53 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2015-04-16 22:05 - 2014-12-11 18:10 - 00000000 ____D () C:\Windows\system32\appraiser
2015-04-16 22:05 - 2014-05-07 17:01 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-04-16 19:47 - 2013-07-31 08:46 - 00000000 ____D () C:\Windows\system32\MRT
2015-04-16 19:27 - 2011-07-06 22:24 - 125832184 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-04-16 19:15 - 2014-09-24 22:10 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2015-04-16 19:15 - 2014-09-24 22:10 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2015-04-12 21:32 - 2011-06-09 01:03 - 00002023 _____ () C:\Windows\system32\ServiceFilter.ini

==================== Files in the root of some directories =======

2013-11-01 14:24 - 2013-11-01 14:24 - 0002317 _____ () C:\Users\Stanislav\AppData\Roaming\ASSDraw3.cfg
2014-01-29 22:05 - 2014-01-29 22:05 - 0000218 _____ () C:\Users\Stanislav\AppData\Local\recently-used.xbel
2012-07-15 15:58 - 2012-07-15 15:58 - 0000017 _____ () C:\Users\Stanislav\AppData\Local\resmon.resmoncfg
2014-02-02 00:05 - 2014-02-02 00:05 - 0000056 ____H () C:\ProgramData\ezsidmv.dat

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================



==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Stanislav\Desktop" je 68253 MB.


***** Startup Programs *****

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ADSMTray
C:\Program Files\ASUS\ASUS Data Security Manager\ADSMTray.exe [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector
C:\Windows\AsScrPro.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer
"C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LanguageShortcut
"C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl
"C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdateP2GoShortCut
"C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0" [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdatePPShortCut
"C:\Program Files\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\PowerProducer" update "Software\CyberLink\PowerProducer\4.0" [x]


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: kontrola logu

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

demien
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 03 bře 2014 17:18

Re: kontrola logu

#3 Příspěvek od demien »

# AdwCleaner v4.204 - Log vytvořen 12/05/2015 v 21:53:48
# Aktualizováno 12/05/2015 by Xplode
# Databáze : 2015-05-12.2 [Server]
# Operační system : Windows 7 Home Premium Service Pack 1 (x86)
# Uživatelské jméno : Stanislav - STANISLAV-PC
# Spuštěno z : C:\Users\Stanislav\Desktop\adwcleaner_4.204.exe
# Nastavení : Sken

***** [ Služby ] *****


***** [ Soubory / Složky ] *****

Složka Nalezeno : C:\Program Files\Ask.com
Složka Nalezeno : C:\Program Files\AskPartnerNetwork
Složka Nalezeno : C:\Program Files\Record Page
Složka Nalezeno : C:\ProgramData\apn
Složka Nalezeno : C:\ProgramData\AskPartnerNetwork
Složka Nalezeno : C:\Users\Stanislav\AppData\Local\AskPartnerNetwork
Složka Nalezeno : C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Složka Nalezeno : C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Složka Nalezeno : C:\Windows\installer\{86d4b82a-abed-442a-be86-96357b70f4fe}
Soubor Nalezeno : C:\ProgramData\Microsoft\Windows\Start Menu\FinalMediaPlayer.lnk
Soubor Nalezeno : C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\pkmpcdbgnfjfeelcpebpkflcmbkclfho
Soubor Nalezeno : C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bkomkajifikmkfnjgphkjcfeepbnojok_0.localstorage
Soubor Nalezeno : C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_mpfapcdfbbledbojijcbcclmlieaoogk_0.localstorage
Soubor Nalezeno : C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ndibdjnfmopecpmkdieinmbadjfpblof_0.localstorage
Soubor Nalezeno : C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pacgpkgadgmibnhpdidcnfafllnmeomc_0.localstorage
Soubor Nalezeno : C:\Users\Stanislav\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\FinalMediaPlayer.lnk
Soubor Nalezeno : C:\Users\Stanislav\daemonprocess.txt

***** [ Naplánované úlohy ] *****

Úloha Nalezeno : BackgroundContainer Startup Task
Úloha Nalezeno : Go for FilesUpdate
Úloha Nalezeno : ProgramUpdateCheck
Úloha Nalezeno : RunAsStdUser Task
Úloha Nalezeno : Scheduled Update for Ask Toolbar

***** [ Zástupci ] *****


***** [ Registry ] *****

Hodnota Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Klíč Nalezeno : HKCU\Software\AppDataLow\AskBarDis
Klíč Nalezeno : HKCU\Software\AppDataLow\AskToolbarInfo
Klíč Nalezeno : HKCU\Software\AppDataLow\Software\AskToolbar
Klíč Nalezeno : HKCU\Software\Ask.com
Klíč Nalezeno : HKCU\Software\AskPartnerNetwork
Klíč Nalezeno : HKCU\Software\Bitberry
Klíč Nalezeno : HKCU\Software\Conduit
Klíč Nalezeno : HKCU\Software\FileTypeAssistant
Klíč Nalezeno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}
Klíč Nalezeno : HKCU\Software\Softonic
Klíč Nalezeno : HKCU\Software\Surftastic
Klíč Nalezeno : HKLM\SOFTWARE\AskPartnerNetwork
Klíč Nalezeno : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{459DD0F7-0D55-D3DC-67BC-E6BE37E9D762}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{B853E835-9F24-4F4B-B55C-E554D15CCCD2}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{F83D1872-D9FF-47F8-B5A0-49CC51E24EE8}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd
Klíč Nalezeno : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd.1
Klíč Nalezeno : HKLM\SOFTWARE\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF
Klíč Nalezeno : HKLM\SOFTWARE\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF
Klíč Nalezeno : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\Interface\{80703783-E415-4EE3-AB60-D36981C5A6F1}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\TypeLib\{9945959C-AAD8-4312-8B57-2DE11927E770}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\TypeLib\{EEA63863-87BC-4DCA-A5B5-EB97E3B04806}
Klíč Nalezeno : HKLM\SOFTWARE\Google\Chrome\Extensions\aaaahnibljmklpljnbpgfobmfpfhplch
Klíč Nalezeno : HKLM\SOFTWARE\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Klíč Nalezeno : HKLM\SOFTWARE\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6978F29A-3493-40B2-8CDC-9C13A02F85A4}
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D7949A66-D936-4028-9552-14F7DC50F38D}
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\7AB5857A57A0687786597A857BFFFFFF
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Record Page
Klíč Nalezeno : HKLM\SOFTWARE\Surftastic
Klíč Nalezeno : HKU\.DEFAULT\Software\AskPartnerNetwork
Klíč Nalezeno : HKU\.DEFAULT\Software\AVG Secure Search

***** [ Prohlížeče ] *****

-\\ Internet Explorer v11.0.9600.17728

Nastavení Nalezeno : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxp://www.search.ask.com/?l=dis&o=151870

-\\ Google Chrome v42.0.2311.135

[C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Web data] - Nalezeno [Search Provider] : hxxp://isearch.avg.com/search?cid={02779B1D-D989-471F-A325-CB2D311C6974}&mid=eb923590ed1447d09a05f18676d834cc-2a591343648a7e90c444256003a484047b817870&lang=cs&ds=st011&pr=sa&d=2012-06-20 21:26:29&v=14.2.0.1&pid=avg&sg=&sap=dsp&q={searchTerms}
[C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Web data] - Nalezeno [Search Provider] : hxxp://isearch.babylon.com/?q={searchTerms}&affID=116216&tt=4312_7&babsrc=SP_ss&mntrId=307c8c6f00000000000072f06d299328
[C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Web data] - Nalezeno [Search Provider] : hxxp://websearch.simplespeedy.info/?l=1&q={searchTerms}
[C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Web data] - Nalezeno [Search Provider] : hxxp://search.gboxapp.com/?q={searchTerms}&pid=388&src=ch2&r=2013/03/09&hid=419980822&lg=EN&cc=CZ
[C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Web data] - Nalezeno [Search Provider] : hxxp://websearch.ask.com/redirect?client=cr&src=kw&tb=ORJ&o=&locale=&apn_uid=AF0D2058-44D1-4793-A13F-5B21FE15CB6A&apn_ptnrs=U3&apn_sauid=FE12E2E2-89E8-45D6-A868-AD5CBB5B116E&apn_dtid=OSJ000YYCZ&q={searchTerms}
[C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Web data] - Nalezeno [Search Provider] : hxxp://websearch.ask.com/redirect?client=cr&src=kw&tb=ORJ&o=&locale=&apn_uid=AF0D2058-44D1-4793-A13F-5B21FE15CB6A&apn_ptnrs=U3&apn_sauid=FE12E2E2-89E8-45D6-A868-AD5CBB5B116E&apn_dtid=OSJ000YYCZ&q={searchTerms}
[C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Nalezeno [Extension] : eofcbnmajmjmplflapaojjnihcjkigck
[C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Nalezeno [Extension] : eofcbnmajmjmplflapaojjnihcjkigck

*************************

AdwCleaner[R2].txt - [10457 bytů] - [12/05/2015 21:53:48]

########## EOF - C:\AdwCleaner\AdwCleaner[R2].txt - [10516 bytů] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: kontrola logu

#4 Příspěvek od Rudy »

Neklikl jste na >cleaning<. Zkuste znovu.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

demien
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 03 bře 2014 17:18

Re: kontrola logu

#5 Příspěvek od demien »

moje chyba. Vkladam log. Problem stale pretrvava.
# AdwCleaner v4.204 - Log vytvořen 13/05/2015 v 22:01:26
# Aktualizováno 12/05/2015 by Xplode
# Databáze : 2015-05-12.2 [Server]
# Operační system : Windows 7 Home Premium Service Pack 1 (x86)
# Uživatelské jméno : Stanislav - STANISLAV-PC
# Spuštěno z : C:\Users\Stanislav\Desktop\adwcleaner_4.204.exe
# Nastavení : Čištění

***** [ Služby ] *****


***** [ Soubory / Složky ] *****

Složka Smazáno : C:\ProgramData\apn
Složka Smazáno : C:\ProgramData\AskPartnerNetwork
Složka Smazáno : C:\Program Files\Ask.com
Složka Smazáno : C:\Program Files\AskPartnerNetwork
Složka Smazáno : C:\Program Files\Record Page
Složka Smazáno : C:\Windows\installer\{86d4b82a-abed-442a-be86-96357b70f4fe}
Složka Smazáno : C:\Users\Stanislav\AppData\Local\AskPartnerNetwork
Složka Smazáno : C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
[/!\] Ne Smazáno ( Junction ) : C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Soubor Smazáno : C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bkomkajifikmkfnjgphkjcfeepbnojok_0.localstorage
Soubor Smazáno : C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_mpfapcdfbbledbojijcbcclmlieaoogk_0.localstorage
Soubor Smazáno : C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ndibdjnfmopecpmkdieinmbadjfpblof_0.localstorage
Soubor Smazáno : C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\pkmpcdbgnfjfeelcpebpkflcmbkclfho
Soubor Smazáno : C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pacgpkgadgmibnhpdidcnfafllnmeomc_0.localstorage
Soubor Smazáno : C:\ProgramData\Microsoft\Windows\Start Menu\FinalMediaPlayer.lnk
Soubor Smazáno : C:\Users\Stanislav\daemonprocess.txt
Soubor Smazáno : C:\Users\Stanislav\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\FinalMediaPlayer.lnk

***** [ Naplánované úlohy ] *****

Úloha Smazáno : BackgroundContainer Startup Task
Úloha Smazáno : Go for FilesUpdate
Úloha Smazáno : ProgramUpdateCheck
Úloha Smazáno : RunAsStdUser Task
Úloha Smazáno : Scheduled Update for Ask Toolbar

***** [ Zástupci ] *****


***** [ Registry ] *****

Klíč Smazáno : HKLM\SOFTWARE\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Klíč Smazáno : HKLM\SOFTWARE\Google\Chrome\Extensions\aaaahnibljmklpljnbpgfobmfpfhplch
Klíč Smazáno : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
Klíč Smazáno : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd
Klíč Smazáno : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd.1
Klíč Smazáno : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{459DD0F7-0D55-D3DC-67BC-E6BE37E9D762}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{B853E835-9F24-4F4B-B55C-E554D15CCCD2}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{F83D1872-D9FF-47F8-B5A0-49CC51E24EE8}
Klíč Smazáno : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Klíč Smazáno : HKLM\SOFTWARE\Classes\Interface\{80703783-E415-4EE3-AB60-D36981C5A6F1}
Klíč Smazáno : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Klíč Smazáno : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Klíč Smazáno : HKLM\SOFTWARE\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}
Klíč Smazáno : HKLM\SOFTWARE\Classes\TypeLib\{9945959C-AAD8-4312-8B57-2DE11927E770}
Klíč Smazáno : HKLM\SOFTWARE\Classes\TypeLib\{EEA63863-87BC-4DCA-A5B5-EB97E3B04806}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6978F29A-3493-40B2-8CDC-9C13A02F85A4}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D7949A66-D936-4028-9552-14F7DC50F38D}
Hodnota Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Klíč Smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}
Klíč Smazáno : HKCU\Software\Ask.com
Klíč Smazáno : HKCU\Software\AskPartnerNetwork
Klíč Smazáno : HKCU\Software\Bitberry
Klíč Smazáno : HKCU\Software\Conduit
Klíč Smazáno : HKCU\Software\FileTypeAssistant
Klíč Smazáno : HKCU\Software\Softonic
Klíč Smazáno : HKCU\Software\Surftastic
Klíč Smazáno : HKCU\Software\AppDataLow\AskBarDis
Klíč Smazáno : HKCU\Software\AppDataLow\AskToolbarInfo
Klíč Smazáno : HKCU\Software\AppDataLow\Software\AskToolbar
Klíč Smazáno : HKLM\SOFTWARE\AskPartnerNetwork
Klíč Smazáno : HKLM\SOFTWARE\Surftastic
Klíč Smazáno : HKU\.DEFAULT\Software\AskPartnerNetwork
Klíč Smazáno : HKU\.DEFAULT\Software\AVG Secure Search
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Record Page
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
Klíč Smazáno : HKLM\SOFTWARE\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF
Klíč Smazáno : HKLM\SOFTWARE\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\7AB5857A57A0687786597A857BFFFFFF

***** [ Prohlížeče ] *****

-\\ Internet Explorer v11.0.9600.17728

Nastavení Obnoveno : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]

-\\ Google Chrome v42.0.2311.135

[C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Extension] : eofcbnmajmjmplflapaojjnihcjkigck
[C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Extension] : eofcbnmajmjmplflapaojjnihcjkigck

*************************

AdwCleaner[R2].txt - [10595 bytů] - [12/05/2015 21:53:48]
AdwCleaner[R3].txt - [9067 bytů] - [13/05/2015 21:57:40]
AdwCleaner[S1].txt - [8790 bytů] - [13/05/2015 22:01:26]

########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [8848 bytů] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: kontrola logu

#6 Příspěvek od Rudy »

Dejte nový log FRST.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

demien
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 03 bře 2014 17:18

Re: kontrola logu

#7 Příspěvek od demien »

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 14-05-2015 01
Ran by Stanislav (administrator) on STANISLAV-PC on 14-05-2015 18:08:12
Running from C:\Users\Stanislav\Desktop
Loaded Profiles: Stanislav (Available profiles: Stanislav)
Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\AsLdrSrv.exe
() C:\Program Files\ATKGFNEX\GFNEXSrv.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\HControl.exe
() C:\Program Files\ASUS\ASUS Live Update\ALU.exe
(ASUS) C:\Program Files\ASUS\SmartLogon\sensorsrv.exe
() C:\Program Files\ASUS\ControlDeck\ControlDeckStartUp.exe
(ATK) C:\Program Files\P4G\BatteryLife.exe
(ATK) C:\Program Files\ASUS\Splendid\ACMON.exe
(ASUSTeK) C:\Windows\System32\ACEngSvr.exe
(ASUS) C:\Program Files\ASUS\Net4Switch\Net4Switch.exe
() C:\Program Files\ASUS\Wireless Console 3\wcourier.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\ATKOSD.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\KBFiltr.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\WDC.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(ASUS) C:\Windows\AsScrPro.exe
() C:\Program Files\CyberLink\Shared Files\RichVideo.exe
(ASUS) C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe
(ASUS) C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe
(CyberLink) C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe
(ASUS) C:\Program Files\ASUS\ATK Media\DMedia.exe
(AlcorMicro Co., Ltd.) C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe
(InstallShield Software Corporation) C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
(Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\avastui.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Cyberlink Corp.) C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
(InstallShield Software Corporation) C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
() C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugincontainer.exe
() C:\Program Files\Common Files\87737dd0-ad90-4193-bd48-336966b8d777\updater.exe
(Microsoft Corporation) C:\Windows\System32\msiexec.exe
(InstallShield Software Corporation) C:\Program Files\Common Files\InstallShield\UpdateService\agent.exe
() C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\2\Plugin.exe
() C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\3\Plugin.exe
() C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\5\Plugin.exe
() C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\3\Plugin.exe
() C:\Program Files\Google\Update\Install\{579EEDA7-E2B6-47D6-90E7-1738E129A0BE}\42.0.2311.152_42.0.2311.135_chrome_updater.exe
(Google Inc.) C:\Windows\temp\CR_57204.tmp\setup.exe
(Microsoft Corporation) C:\Windows\System32\wuauclt.exe
(Microsoft Corporation) C:\Windows\SoftwareDistribution\Download\Install\Windows-KB890830-V5.24-delta.exe
(Microsoft Corporation) C:\4f82e3649d9bbc8b83871cd607b94402\mrtstub.exe
(Microsoft Corporation) C:\Windows\System32\MRT.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [UpdateLBPShortCut] => C:\Program Files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [222504 2008-02-21] (CyberLink Corp.)
HKLM\...\Run: [UpdatePSTShortCut] => C:\Program Files\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe [210216 2008-10-22] (CyberLink Corp.)
HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [HControlUser] => C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM\...\Run: [ATKOSD2] => C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe [6859392 2009-08-17] (ASUS)
HKLM\...\Run: [ATKMEDIA] => C:\Program Files\ASUS\ATK Media\DMedia.exe [170624 2009-08-19] (ASUS)
HKLM\...\Run: [AmIcoSinglun] => C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe [233472 2009-09-01] (AlcorMicro Co., Ltd.)
HKLM\...\Run: [ISUSScheduler] => C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [81920 2004-06-16] (InstallShield Software Corporation)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1021128 2014-11-20] (Adobe Systems Incorporated)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5515496 2015-05-11] (Avast Software s.r.o.)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [334896 2015-04-30] (Oracle Corporation)
Winlogon\Notify\ScCertProp: wlnotify.dll [X]
HKU\S-1-5-21-1082156279-3060072278-1613615570-1000\...\Run: [ISUSPM Startup] => C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [221184 2004-06-16] (InstallShield Software Corporation)
HKU\S-1-5-21-1082156279-3060072278-1613615570-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3673728 2012-11-06] (DT Soft Ltd)
HKU\S-1-5-21-1082156279-3060072278-1613615570-1000\Control Panel\Desktop\\SCRNSAVE.EXE ->
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\FancyStart daemon.lnk [2011-06-09]
ShortcutTarget: FancyStart daemon.lnk -> C:\Windows\Installer\{F0DF4513-3C4C-4EB8-8012-2C5F70AF3988}\_A1DDD39913A1970387B7B3.exe ()
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2015-05-03] (Avast Software s.r.o.)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-1082156279-3060072278-1613615570-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKU\S-1-5-21-1082156279-3060072278-1613615570-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: No Name -> {2335267c-dbba-4dd5-a9d0-c4db8e6a75a4} -> No File
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_45\bin\ssv.dll [2015-05-10] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-04-11] (Avast Software s.r.o.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-05-10] (Oracle Corporation)
Hosts: 127.0.0.1 localhost
Tcpip\Parameters: [DhcpNameServer] 213.46.172.36 213.46.172.37

FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-05-10] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-05-10] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.31211.0\npctrl.dll [2014-12-11] ( Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-07] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-07] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1082156279-3060072278-1613615570-1000: ubisoft.com/uplaypc -> C:\Program Files\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll No File
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-12-05]
FF HKLM\...\Firefox\Extensions: [ext@MediaViewV1alpha2925.net] - C:\Program Files\MediaViewV1\MediaViewV1alpha2925\ff

Chrome:
=======
CHR HomePage: Default -> https://www.seznam.cz/?clid=22668
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Profile: C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Bookmark Manager) - C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-04-17]
CHR Extension: (Avast Online Security) - C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-01-25]
CHR Extension: (Google Wallet) - C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-03-08]
CHR Extension: (Record Page) - C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Extensions\ofahpakdcmmkcppbfmdhklioekdhjigi [2015-05-13]
CHR HKLM\...\Chrome\Extension: [ddihbpnhlokjlhkccejfmdjamjinokpo] - C:\Program Files\MediaViewV1\MediaViewV1alpha2925\ch\MediaViewV1alpha2925.crx [Not Found]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-04-11]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AFBAgent; C:\Windows\system32\FBAgent.exe [283264 2009-09-17] (ASUSTeK Computer Inc.)
R2 ASLDRService; C:\Program Files\ASUS\ATK Hotkey\ASLDRSrv.exe [84536 2009-06-15] (ASUS)
R2 ATKGFNEXSrv; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [94208 2007-08-08] () [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-05-03] (Avast Software s.r.o.)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [3207800 2015-05-03] (Avast Software)
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R3 RichVideo; C:\Program Files\CyberLink\Shared Files\RichVideo.exe [272024 2007-01-09] ()
R2 Service Mgr RecordPage; C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugincontainer.exe [556296 2015-05-14] ()
R2 Update Mgr RecordPage; C:\Program Files\Common Files\87737dd0-ad90-4193-bd48-336966b8d777\updater.exe [478984 2015-05-14] ()
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 AmUStor; C:\Windows\System32\drivers\AmUStor.SYS [27136 2009-08-21] (Alcor Micro, Corp.)
R2 ASMMAP; C:\Program Files\ATKGFNEX\ASMMAP.sys [13880 2007-07-24] ()
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24144 2015-05-03] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [74976 2015-05-03] (Avast Software s.r.o.)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [81728 2015-05-03] (Avast Software s.r.o.)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49904 2015-05-03] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [787760 2015-05-03] (Avast Software s.r.o.)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427992 2015-05-03] (Avast Software s.r.o.)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [106912 2015-05-03] (Avast Software s.r.o.)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [209048 2015-05-03] ()
S2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [271360 2013-09-28] () [File not signed]
S3 AVerAF15DMBTH; C:\Windows\System32\Drivers\AVerAF15DMBTH.sys [554368 2009-07-27] (AVerMedia TECHNOLOGIES, Inc.)
R1 avgtp; C:\Windows\system32\drivers\avgtpx86.sys [33112 2013-02-18] (AVG Technologies)
R3 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [242240 2012-11-18] (DT Soft Ltd)
S3 ETD; C:\Windows\System32\DRIVERS\ETD.sys [87040 2009-07-29] (ELAN Microelectronic Corp.)
S3 HPKBCCID; C:\Windows\System32\DRIVERS\HPKBCCID.sys [48000 2012-03-05] (Hewlett-Packard Company)
S3 ivusb; C:\Windows\System32\DRIVERS\ivusb.sys [25112 2010-07-29] (Initio Corporation)
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [13880 2009-07-20] ( )
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [18048 2013-09-28] () [File not signed]
R3 MTsensor; C:\Windows\System32\DRIVERS\ATKACPI.sys [14392 2009-05-13] (ASUS)
S3 PcaSp60; C:\Windows\System32\DRIVERS\PcaSp60.sys [28672 2010-09-07] (Printing Communications Assoc., Inc. (PCAUSA))
R1 SCDEmu; C:\Windows\system32\Drivers\SCDEmu.sys [113104 2012-05-31] (Power Software Ltd)
R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1759872 2009-08-12] ()
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [466008 2012-11-17] (Duplex Secure Ltd.)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [220752 2015-05-03] (Avast Software)
U5 AppMgmt; C:\Windows\system32\svchost.exe [20992 2009-07-14] (Microsoft Corporation)
S3 ipswuio; System32\DRIVERS\ipswuio.sys [X]
U3 tmlwf; No ImagePath
U3 tmwfp; No ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-05-14 18:08 - 2015-05-14 18:09 - 00015582 _____ () C:\Users\Stanislav\Desktop\FRST.txt.txt
2015-05-14 18:05 - 2015-05-14 18:05 - 00000000 ____D () C:\4f82e3649d9bbc8b83871cd607b94402
2015-05-13 22:08 - 2015-05-13 22:08 - 00000000 ____D () C:\Program Files\Record Page
2015-05-13 22:06 - 2015-05-13 22:06 - 00003304 _____ () C:\Windows\PFRO.log
2015-05-13 22:06 - 2015-05-13 22:06 - 00000056 _____ () C:\Windows\setupact.log
2015-05-13 22:06 - 2015-05-13 22:06 - 00000000 _____ () C:\Windows\setuperr.log
2015-05-13 22:00 - 2015-05-13 22:01 - 00000000 ____D () C:\b49833727fb0d22ddb44484ab1
2015-05-12 21:53 - 2015-05-12 21:53 - 02209792 _____ () C:\Users\Stanislav\Desktop\adwcleaner_4.204.exe
2015-05-12 21:33 - 2015-05-13 21:59 - 00000000 ____D () C:\Users\Stanislav\AppData\Roaming\vlc
2015-05-12 21:32 - 2015-05-12 21:32 - 00000988 _____ () C:\Users\Public\Desktop\VLC media player.lnk
2015-05-12 21:32 - 2015-05-12 21:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2015-05-12 21:32 - 2015-05-12 21:32 - 00000000 ____D () C:\Program Files\VideoLAN
2015-05-12 21:31 - 2015-05-12 21:31 - 28849904 _____ () C:\Users\Stanislav\Downloads\vlc-2.2.1-win32.exe
2015-05-12 21:27 - 2015-05-12 21:27 - 00000000 ____D () C:\Program Files\Intel
2015-05-12 21:27 - 1998-11-18 16:33 - 00144384 _____ (Intel Corporation) C:\Windows\system32\Iacenc.dll
2015-05-12 21:27 - 1997-06-13 08:56 - 00056832 _____ () C:\Windows\system32\Iyvu9_32.dll
2015-05-12 21:08 - 2015-05-14 18:08 - 00000000 ____D () C:\FRST
2015-05-12 21:04 - 2015-05-14 18:07 - 01144832 _____ (Farbar) C:\Users\Stanislav\Desktop\FRST.exe
2015-05-11 21:27 - 2015-05-14 18:03 - 00000000 ____D () C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777
2015-05-11 21:27 - 2015-05-14 18:03 - 00000000 ____D () C:\Program Files\Common Files\87737dd0-ad90-4193-bd48-336966b8d777
2015-05-11 20:25 - 2015-05-11 20:26 - 03711050 _____ () C:\Users\Stanislav\Downloads\30145-14-44351.zip
2015-05-10 15:09 - 2015-05-10 15:33 - 307301251 _____ () C:\Users\Stanislav\Downloads\Turisas---Discography-5CD-mp3.rar
2015-05-10 14:44 - 2015-05-10 14:44 - 00000000 ____D () C:\Program Files\Common Files\Java
2015-05-09 08:22 - 2015-05-09 08:23 - 00000000 ____D () C:\Users\Stanislav\Downloads\japonsko amater
2015-05-08 22:56 - 2015-05-08 22:56 - 00000000 ____D () C:\Users\Stanislav\Downloads\hudba
2015-05-03 09:36 - 2015-05-03 09:35 - 00291312 _____ (Avast Software s.r.o.) C:\Windows\system32\aswBoot.exe
2015-05-03 09:35 - 2015-05-03 09:35 - 00043112 _____ (Avast Software s.r.o.) C:\Windows\avastSS.scr
2015-04-30 20:55 - 2015-04-30 20:56 - 00305325 _____ () C:\Users\Stanislav\Downloads\Durr, Josef - Experimentalni demonologie.zip
2015-04-27 21:06 - 2015-04-27 21:06 - 02493595 _____ () C:\Users\Stanislav\Downloads\Neill, Chloe - Holky nekdy kousou.zip
2015-04-23 20:14 - 2015-04-23 20:14 - 00000000 ____D () C:\Users\Stanislav\AppData\Local\Adobe
2015-04-23 19:03 - 2015-04-23 19:14 - 00000000 ____D () C:\Users\Stanislav\AppData\Roaming\cache
2015-04-23 19:01 - 2015-04-23 19:01 - 00000000 _____ () C:\autoexec.bat
2015-04-23 18:55 - 2015-04-23 19:10 - 00000000 ____D () C:\Program Files\Common Files\Symantec Shared
2015-04-23 18:42 - 2015-04-23 19:11 - 00000000 ____D () C:\ProgramData\Norton
2015-04-23 18:42 - 2015-04-23 18:42 - 00000000 ____D () C:\Users\Stanislav\AppData\Local\IsolatedStorage
2015-04-23 18:41 - 2015-04-23 18:41 - 00000000 ____D () C:\Users\Stanislav\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Imperia Online
2015-04-23 18:41 - 2015-04-23 18:41 - 00000000 ____D () C:\Users\Stanislav\AppData\Roaming\Media Freeware
2015-04-23 18:41 - 2015-04-23 18:41 - 00000000 ____D () C:\Users\Stanislav\AppData\Roaming\ImperiaOnline
2015-04-23 18:40 - 2015-04-23 18:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\(Default)
2015-04-23 17:31 - 2015-04-23 17:31 - 01259851 _____ () C:\Users\Stanislav\Downloads\Wecker, Helene - Golema a dzin v New Yorku.zip
2015-04-20 20:03 - 2015-04-20 20:04 - 01130273 _____ () C:\Users\Stanislav\Downloads\Tauer, Felix - Tisic a jedna noc 1_5.zip
2015-04-16 21:44 - 2015-04-16 21:44 - 00359998 _____ () C:\Users\Stanislav\Downloads\Nemcova, Bozena - Narodni bachorky a povesti I..zip
2015-04-16 21:40 - 2015-04-16 21:41 - 00235716 _____ () C:\Users\Stanislav\Downloads\Waltari, Mika Toimi - Cinska kocka a jine pohadky.zip
2015-04-16 20:36 - 2015-04-16 20:38 - 52748737 _____ () C:\Users\Stanislav\Downloads\Latham-Koenig C.; Oxenden C. - New English file Elementary StudentT+s book.zip
2015-04-14 21:47 - 2015-04-02 01:49 - 00342704 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-04-14 21:47 - 2015-03-23 05:06 - 00860160 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-04-14 21:47 - 2015-03-23 05:06 - 00630784 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-04-14 21:47 - 2015-03-23 05:06 - 00576000 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-04-14 21:47 - 2015-03-23 05:06 - 00331264 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-04-14 21:47 - 2015-03-23 05:06 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-04-14 21:47 - 2015-03-23 05:06 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-04-14 21:47 - 2015-03-23 05:06 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-04-14 21:47 - 2015-03-23 04:59 - 00896000 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-04-14 21:47 - 2015-03-13 05:42 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-04-14 21:47 - 2015-03-13 05:28 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-04-14 21:47 - 2015-03-13 05:27 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-04-14 21:47 - 2015-03-13 05:20 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-04-14 21:47 - 2015-03-13 05:20 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-04-14 21:47 - 2015-03-13 05:16 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-04-14 21:47 - 2015-03-13 05:16 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-04-14 21:47 - 2015-03-13 05:15 - 00620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-04-14 21:47 - 2015-03-13 05:09 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-04-14 21:47 - 2015-03-13 05:06 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-04-14 21:47 - 2015-03-13 05:01 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-04-14 21:47 - 2015-03-13 04:57 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-04-14 21:47 - 2015-03-13 04:44 - 00689152 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-04-14 21:47 - 2015-03-13 04:43 - 02052608 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-04-14 21:47 - 2015-03-13 04:43 - 00685568 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-04-14 21:47 - 2015-03-13 04:16 - 01311232 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-04-14 21:47 - 2015-03-13 04:14 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-04-14 21:47 - 2015-03-04 06:16 - 00249784 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys
2015-04-14 21:47 - 2015-03-04 06:10 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll
2015-04-14 21:46 - 2015-03-17 07:01 - 03976632 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-04-14 21:46 - 2015-03-17 07:01 - 03920824 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-04-14 21:46 - 2015-03-17 07:01 - 00137656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-04-14 21:46 - 2015-03-17 07:01 - 00067512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-04-14 21:46 - 2015-03-17 06:59 - 01306112 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-04-14 21:46 - 2015-03-17 06:57 - 01061376 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-04-14 21:46 - 2015-03-17 06:57 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-04-14 21:46 - 2015-03-17 06:57 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-04-14 21:46 - 2015-03-17 06:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-04-14 21:46 - 2015-03-17 06:57 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-04-14 21:46 - 2015-03-17 06:57 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-04-14 21:46 - 2015-03-17 06:57 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-04-14 21:46 - 2015-03-17 06:57 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-04-14 21:46 - 2015-03-17 06:57 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-04-14 21:46 - 2015-03-17 06:57 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-04-14 21:46 - 2015-03-17 06:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-04-14 21:46 - 2015-03-17 06:57 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-04-14 21:46 - 2015-03-17 06:56 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-04-14 21:46 - 2015-03-17 06:56 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-04-14 21:46 - 2015-03-17 06:56 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-04-14 21:46 - 2015-03-17 06:56 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-04-14 21:46 - 2015-03-17 06:56 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-04-14 21:46 - 2015-03-17 06:56 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-04-14 21:46 - 2015-03-17 06:53 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-04-14 21:46 - 2015-03-17 06:53 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-04-14 21:46 - 2015-03-17 06:50 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-04-14 21:46 - 2015-03-17 06:50 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-04-14 21:46 - 2015-03-13 05:42 - 19695616 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-04-14 21:46 - 2015-03-13 05:42 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-04-14 21:46 - 2015-03-13 05:28 - 00503296 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-04-14 21:46 - 2015-03-13 05:27 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-04-14 21:46 - 2015-03-13 05:26 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-04-14 21:46 - 2015-03-13 05:22 - 02278400 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-04-14 21:46 - 2015-03-13 05:17 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-04-14 21:46 - 2015-03-13 04:56 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-04-14 21:46 - 2015-03-13 04:54 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-04-14 21:46 - 2015-03-13 04:49 - 04305408 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-04-14 21:46 - 2015-03-13 04:42 - 01155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-04-14 21:46 - 2015-03-13 04:34 - 12825600 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-04-14 21:46 - 2015-03-13 04:20 - 01888256 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-04-14 21:45 - 2015-03-25 05:00 - 03088384 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-04-14 21:45 - 2015-03-25 05:00 - 02020864 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-04-14 21:45 - 2015-03-25 05:00 - 00566784 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-04-14 21:45 - 2015-03-25 05:00 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-04-14 21:45 - 2015-03-25 05:00 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-04-14 21:45 - 2015-03-25 05:00 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-04-14 21:45 - 2015-03-25 05:00 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-04-14 21:45 - 2015-03-25 05:00 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-04-14 21:45 - 2015-03-25 05:00 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-04-14 21:45 - 2015-03-25 05:00 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-04-14 21:45 - 2015-03-25 05:00 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-04-14 21:45 - 2015-03-10 05:08 - 01237504 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-04-14 21:45 - 2015-03-10 05:05 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2015-04-14 21:45 - 2015-03-05 06:06 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-04-14 21:45 - 2015-02-25 05:03 - 00514560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-05-14 18:06 - 2013-07-31 08:46 - 00000000 ____D () C:\Windows\system32\MRT
2015-05-14 18:05 - 2011-07-06 22:24 - 137310008 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-05-14 18:05 - 2011-06-09 23:40 - 01721395 _____ () C:\Windows\WindowsUpdate.log
2015-05-14 18:04 - 2014-03-09 20:05 - 00000000 ____D () C:\Users\Stanislav\Desktop\zazalohovat
2015-05-14 18:04 - 2009-07-14 06:34 - 00022656 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-05-14 18:04 - 2009-07-14 06:34 - 00022656 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-05-14 18:03 - 2014-09-24 22:10 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-05-14 18:03 - 2014-03-31 16:08 - 00000940 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-05-14 18:03 - 2014-03-31 16:08 - 00000936 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-05-14 18:03 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2015-05-13 22:07 - 2011-06-09 00:32 - 00000000 ____D () C:\Users\Stanislav\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink DVD Suite
2015-05-13 22:06 - 2014-02-27 17:29 - 00000008 __RSH () C:\ProgramData\ntuser.pol
2015-05-13 22:06 - 2011-06-09 01:03 - 00002113 _____ () C:\Windows\system32\ServiceFilter.ini
2015-05-13 22:06 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-05-13 22:03 - 2014-03-03 18:19 - 00000000 ____D () C:\AdwCleaner
2015-05-13 22:01 - 2011-06-09 00:22 - 00000000 ____D () C:\Users\Stanislav
2015-05-12 06:25 - 2011-06-11 19:54 - 00000000 ____D () C:\Users\Stanislav\AppData\Roaming\uTorrent
2015-05-10 16:55 - 2011-06-09 00:28 - 01584626 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-05-10 14:45 - 2014-05-27 18:22 - 00000000 ____D () C:\Program Files\Java
2015-05-10 14:44 - 2014-07-19 14:47 - 00096352 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2015-05-10 14:43 - 2013-11-05 19:20 - 00000000 ____D () C:\ProgramData\Oracle
2015-05-10 14:03 - 2014-03-09 15:11 - 00000000 ____D () C:\Users\Stanislav\Desktop\zalohovano
2015-05-03 09:36 - 2014-04-26 15:46 - 00024144 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2015-05-03 09:36 - 2013-12-25 14:30 - 00106912 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswStm.sys
2015-05-03 09:36 - 2013-12-05 20:04 - 00209048 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2015-05-03 09:36 - 2013-12-05 20:03 - 00427992 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswSP.sys
2015-05-03 09:36 - 2013-12-05 20:03 - 00049904 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2015-05-03 09:36 - 2013-12-05 20:01 - 00074976 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswMonFlt.sys
2015-05-03 09:36 - 2013-12-05 19:59 - 00081728 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswRdr2.sys
2015-05-03 09:35 - 2013-12-05 20:02 - 00787760 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswSnx.sys
2015-04-30 17:25 - 2012-08-04 21:12 - 00002089 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2015-04-30 16:31 - 2014-03-08 12:49 - 00045056 _____ () C:\Windows\system32\acovcnt.exe
2015-04-23 20:27 - 2013-05-31 21:37 - 00000000 ____D () C:\Program Files\Electronic Arts
2015-04-23 20:27 - 2011-06-09 00:32 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2015-04-23 20:26 - 2009-07-14 06:52 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-04-23 20:12 - 2014-04-27 18:27 - 00000000 ____D () C:\Users\Stanislav\AppData\Local\CrashDumps
2015-04-23 20:12 - 2012-04-07 22:32 - 00000000 ____D () C:\Windows\Minidump
2015-04-23 19:27 - 2014-11-17 15:17 - 00000000 ____D () C:\Users\Stanislav\AppData\Local\Battle.net
2015-04-23 19:17 - 2011-06-09 01:03 - 00002268 _____ () C:\Windows\system32\AutoRunFilter.ini
2015-04-18 11:27 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache
2015-04-18 11:21 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\AppCompat
2015-04-16 22:05 - 2014-12-11 18:10 - 00000000 ____D () C:\Windows\system32\appraiser
2015-04-16 22:05 - 2014-05-07 17:01 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-04-16 19:15 - 2014-09-24 22:10 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2015-04-16 19:15 - 2014-09-24 22:10 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl

==================== Files in the root of some directories =======

2013-11-01 14:24 - 2013-11-01 14:24 - 0002317 _____ () C:\Users\Stanislav\AppData\Roaming\ASSDraw3.cfg
2014-01-29 22:05 - 2014-01-29 22:05 - 0000218 _____ () C:\Users\Stanislav\AppData\Local\recently-used.xbel
2012-07-15 15:58 - 2012-07-15 15:58 - 0000017 _____ () C:\Users\Stanislav\AppData\Local\resmon.resmoncfg
2014-02-02 00:05 - 2014-02-02 00:05 - 0000056 ____H () C:\ProgramData\ezsidmv.dat

Some content of TEMP:
====================
C:\Users\Stanislav\AppData\Local\temp\Quarantine.exe
C:\Users\Stanislav\AppData\Local\temp\sqlite3.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-05-08 11:32

==================== End Of Log ============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: kontrola logu

#8 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start
C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\2\Plugin.exe
C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\3\Plugin.exe
C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\5\Plugin.exe
C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\3\Plugin.exe
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [334896 2015-04-30] (Oracle Corporation)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-1082156279-3060072278-1613615570-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: No Name -> {2335267c-dbba-4dd5-a9d0-c4db8e6a75a4} -> No File
FF Plugin: @microsoft.com/GENUINE -> disabled No File
CHR Extension: (Record Page) - C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Extensions\ofahpakdcmmkcppbfmdhklioekdhjigi [2015-05-13]
CHR HKLM\...\Chrome\Extension: [ddihbpnhlokjlhkccejfmdjamjinokpo] - C:\Program Files\MediaViewV1\MediaViewV1alpha2925\ch\MediaViewV1alpha2925.crx [Not Found]
U3 tmlwf; No ImagePath
U3 tmwfp; No ImagePath
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
C:\Users\Stanislav\AppData\Local\temp
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

demien
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 03 bře 2014 17:18

Re: kontrola logu

#9 Příspěvek od demien »

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 14-05-2015 01
Ran by Stanislav at 2015-05-14 21:18:30 Run:1
Running from C:\Users\Stanislav\Desktop
Loaded Profiles: Stanislav (Available profiles: Stanislav)
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
Start
C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\2\Plugin.exe
C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\3\Plugin.exe
C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\5\Plugin.exe
C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\3\Plugin.exe
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [334896 2015-04-30] (Oracle Corporation)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-1082156279-3060072278-1613615570-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: No Name -> {2335267c-dbba-4dd5-a9d0-c4db8e6a75a4} -> No File
FF Plugin: @microsoft.com/GENUINE -> disabled No File
CHR Extension: (Record Page) - C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Extensions\ofahpakdcmmkcppbfmdhklioekdhjigi [2015-05-13]
CHR HKLM\...\Chrome\Extension: [ddihbpnhlokjlhkccejfmdjamjinokpo] - C:\Program Files\MediaViewV1\MediaViewV1alpha2925\ch\MediaViewV1alpha2925.crx [Not Found]
U3 tmlwf; No ImagePath
U3 tmwfp; No ImagePath
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
C:\Users\Stanislav\AppData\Local\temp
End
*****************

C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\2\Plugin.exe => Moved successfully.
C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\3\Plugin.exe => Moved successfully.
C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\5\Plugin.exe => Moved successfully.
"C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\3\Plugin.exe" => File/Directory not found.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value deleted successfully.
C:\Windows\system32\GroupPolicy\Machine => Moved successfully.
C:\Windows\system32\GroupPolicy\GPT.ini => Moved successfully.
"HKLM\SOFTWARE\Policies\Google" => Key deleted successfully.
"HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.
"HKU\S-1-5-21-1082156279-3060072278-1613615570-1000\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2335267c-dbba-4dd5-a9d0-c4db8e6a75a4}" => Key deleted successfully.
HKCR\CLSID\{2335267c-dbba-4dd5-a9d0-c4db8e6a75a4} => Key not found.
"HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Extensions\ofahpakdcmmkcppbfmdhklioekdhjigi => Moved successfully.
"HKLM\SOFTWARE\Google\Chrome\Extensions\ddihbpnhlokjlhkccejfmdjamjinokpo" => Key deleted successfully.
tmlwf => Service deleted successfully.
tmwfp => Service deleted successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.

"C:\Users\Stanislav\AppData\Local\temp" directory move:

Could not move "C:\Users\Stanislav\AppData\Local\temp" directory. => Scheduled to move on reboot.


Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 2015-05-14 21:20:11)<=

C:\Users\Stanislav\AppData\Local\temp => Moved successfully.

==== End of Fixlog 21:20:11 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: kontrola logu

#10 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

demien
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 03 bře 2014 17:18

Re: kontrola logu

#11 Příspěvek od demien »

Bohuzel beze zmeny, problem stale pretrvava.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: kontrola logu

#12 Příspěvek od Rudy »

Udělejte kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

demien
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 03 bře 2014 17:18

Re: kontrola logu

#13 Příspěvek od demien »

Malwarebytes Anti-Malware
www.malwarebytes.org

Datum skenování: 15.5.2015
Čas skenování: 18:34:26
Protokol: TEXT.txt
Správce: Ano

Verze: 2.01.6.1022
Databáze malwaru: v2015.05.15.03
Databáze rootkitů: v2015.05.14.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Ochrana programu: Vypnuto

OS: Windows 7 Service Pack 1
CPU: x86
Souborový systém: NTFS
Uživatel: Stanislav

Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 317906
Uplynulý čas: 17 min, 12 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 6
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugincontainer.exe, 708, , [6f80741f4f3ba393f75ab8a1df2719e7]
PUP.Optional.RecordPage.A, C:\Program Files\Common Files\87737dd0-ad90-4193-bd48-336966b8d777\updater.exe, 1712, , [0ee14e45b7d33df9034e61f874925da3]
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\2\Plugin.exe, 3516, , [7b740c87d1b9999db1a0c099f0160cf4]
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\5\Plugin.exe, 7024, , [7a75f59e96f41224015063f6877fc23e]
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\3\Plugin.exe, 1896, , [db142a69c3c782b4df72ee6bed19738d]
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\3\Plugin.exe, 3644, , [db142a69c3c782b4df72ee6bed19738d]

Moduly: 0
(Nenalezeny žádné škodlivé položky)

Klíče registru: 3
PUP.Optional.RecordPage.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\Service Mgr RecordPage, , [6f80741f4f3ba393f75ab8a1df2719e7],
PUP.Optional.RecordPage.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\Update Mgr RecordPage, , [0ee14e45b7d33df9034e61f874925da3],
PUP.Optional.MediaView.A, HKLM\SOFTWARE\MediaViewV1alpha2925, , [7976a9eaafdb3df9729c72aaea1a837d],

Hodnoty registru: 1
PUP.Optional.MediaView.A, HKLM\SOFTWARE\MOZILLA\FIREFOX\EXTENSIONS|ext@MediaViewV1alpha2925.net, C:\Program Files\MediaViewV1\MediaViewV1alpha2925\ff, , [5b9401929befd561d639f22a867ed927]

Data registru: 0
(Nenalezeny žádné škodlivé položky)

Složky: 14
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777, , [5897f99a9cee96a0125f4b8810f39070],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugincontainer, , [5897f99a9cee96a0125f4b8810f39070],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins, , [5897f99a9cee96a0125f4b8810f39070],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\2, , [5897f99a9cee96a0125f4b8810f39070],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\3, , [5897f99a9cee96a0125f4b8810f39070],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\3bak, , [5897f99a9cee96a0125f4b8810f39070],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\5, , [5897f99a9cee96a0125f4b8810f39070],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\5bak, , [5897f99a9cee96a0125f4b8810f39070],
PUP.Optional.RecordPage.A, C:\Program Files\Common Files\87737dd0-ad90-4193-bd48-336966b8d777, , [7976bcd7ee9cfa3c5b17dff453b0a759],
PUP.Optional.RecordPage.A, C:\Program Files\Common Files\87737dd0-ad90-4193-bd48-336966b8d777\updater, , [7976bcd7ee9cfa3c5b17dff453b0a759],
PUP.Optional.RecordPage.A, C:\Program Files\Record Page, , [0ee160338a0011253b383c978b787d83],
PUP.Optional.RecordPage.A, C:\Program Files\Record Page\Extensions, , [0ee160338a0011253b383c978b787d83],
PUP.Optional.RecordPage.A, C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Extensions\ofahpakdcmmkcppbfmdhklioekdhjigi\1.0.5609.28196_0, , [ae41395ae5a5c86e31a35ffbbe48bd43],
PUP.Optional.RecordPage.A, C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Extensions\ofahpakdcmmkcppbfmdhklioekdhjigi, , [ae41395ae5a5c86e31a35ffbbe48bd43],

Soubory: 20
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugincontainer.exe, , [6f80741f4f3ba393f75ab8a1df2719e7],
PUP.Optional.RecordPage.A, C:\Program Files\Common Files\87737dd0-ad90-4193-bd48-336966b8d777\updater.exe, , [0ee14e45b7d33df9034e61f874925da3],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\2\Plugin.exe, , [7b740c87d1b9999db1a0c099f0160cf4],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\5\Plugin.exe, , [7a75f59e96f41224015063f6877fc23e],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\3\Plugin.exe, , [db142a69c3c782b4df72ee6bed19738d],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugincontainer.bak, , [f6f9672c1773280e69e887d2689e50b0],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\3bak\Plugin.exe, , [f7f8444ff595ae889fb2f26737cf758b],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\plugins\5bak\Plugin.exe, , [25ca662de8a2023464ed78e1da2c8e72],
PUP.Optional.SweetIM, C:\Windows\Installer\19a9b767.msi, , [2ac55b380b7f16207595d2721beb12ee],
PUP.Optional.SweetIM, C:\Windows\Installer\19a9b76c.msi, , [3eb1b7dc375326103fcb430160a6d927],
PUP.Optional.RecordPage.A, C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_recordpage-a.akamaihd.net_0.localstorage, , [af4097fcbad0eb4bd38f1555d92cb050],
PUP.Optional.RecordPage.A, C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_recordpage-a.akamaihd.net_0.localstorage-journal, , [f6f9dfb40d7d5adc4a18ce9c73927a86],
PUP.Optional.RecordPage.A, C:\ProgramData\87737dd0-ad90-4193-bd48-336966b8d777\temp, , [5897f99a9cee96a0125f4b8810f39070],
PUP.Optional.RecordPage.A, C:\Program Files\Common Files\87737dd0-ad90-4193-bd48-336966b8d777\updater.bak, , [7976bcd7ee9cfa3c5b17dff453b0a759],
PUP.Optional.RecordPage.A, C:\Program Files\Record Page\Extensions\ofahpakdcmmkcppbfmdhklioekdhjigi.crx, , [0ee160338a0011253b383c978b787d83],
PUP.Optional.RecordPage.A, C:\Program Files\Record Page\Extensions\{fd46204d-c01d-4990-b083-2c2451326b35}.xpi, , [0ee160338a0011253b383c978b787d83],
PUP.Optional.RecordPage.A, C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Extensions\ofahpakdcmmkcppbfmdhklioekdhjigi\1.0.5609.28196_0\manifest.json, , [ae41395ae5a5c86e31a35ffbbe48bd43],
PUP.Optional.RecordPage.A, C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Extensions\ofahpakdcmmkcppbfmdhklioekdhjigi\1.0.5609.28196_0\background.js, , [ae41395ae5a5c86e31a35ffbbe48bd43],
PUP.Optional.RecordPage.A, C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Extensions\ofahpakdcmmkcppbfmdhklioekdhjigi\1.0.5609.28196_0\content.js, , [ae41395ae5a5c86e31a35ffbbe48bd43],
PUP.Optional.RecordPage.A, C:\Users\Stanislav\AppData\Local\Google\Chrome\User Data\Default\Extensions\ofahpakdcmmkcppbfmdhklioekdhjigi\1.0.5609.28196_0\icon.png, , [ae41395ae5a5c86e31a35ffbbe48bd43],

Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)


(end)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119677
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: kontrola logu

#14 Příspěvek od Rudy »

Všechny nálezy smažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

demien
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 03 bře 2014 17:18

Re: kontrola logu

#15 Příspěvek od demien »

vypada to ze je vse v poradku. Dekuji

Odpovědět