Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Zpomalení počítače, stažení havěti

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
matesak
Návštěvník
Návštěvník
Příspěvky: 43
Registrován: 19 srp 2012 23:54

Zpomalení počítače, stažení havěti

#1 Příspěvek od matesak »

Zdravím, minulý týden jsem si stáhnul do počítače nějakou havěˇ%t - uvědomil jsem si to až později a snažil jsem se to vlastnoručně odstranit, ale jsem na to kátký, tak prosím o radu :)

RSIT

Logfile of random's system information tool 1.10 (written by random/random)
Run by Matyáš at 2015-06-30 15:12:16
Microsoft Windows 8.1 Pro
System drive C: has 53 GB (35%) free of 153 GB
Total RAM: 2047 MB (52% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:12:43, on 30. 6. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Normal

Running processes:
C:\WINDOWS\system32\taskhostex.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20905_x86__8wekyb3d8bbwe\LiveComm.exe
C:\WINDOWS\system32\GWX\GWX.exe
C:\Windows\System32\RuntimeBroker.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Windows\System32\skydrive.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\WINDOWS\system32\taskeng.exe
C:\Program Files\Microsoft Office\Office15\MsoSync.exe
C:\WINDOWS\system32\wbem\unsecapp.exe
C:\Windows\System32\SettingSyncHost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\SearchProtocolHost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\WindowsApps\Microsoft.Reader_6.3.9654.17499_x86__8wekyb3d8bbwe\glcnd.exe
C:\Users\Matyáš\Downloads\RSIT.exe
C:\Program Files\trend micro\Matyáš.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=s ... earchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=s ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: (no name) - {51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} - (no file)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_40\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~1\MIF5BA~1\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_40\bin\jp2ssv.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files\AMD AVT\bin\kdbsync.exe" aml
O4 - HKLM\..\Run: [USBToolTip] C:\PROGRA~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [BitTorrent] "C:\Users\Matyáš\AppData\Roaming\BitTorrent\BitTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\Matyáš\AppData\Roaming\Spotify\SpotifyWebHelper.exe"
O4 - HKCU\..\Run: [Sony PC Companion] "C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe" /Background
O4 - HKCU\..\Run: [Viber] "C:\Users\Matyáš\AppData\Local\Viber\Viber.exe" StartMinimized
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Spotify] "C:\Users\Matyáš\AppData\Roaming\Spotify\spotify.exe" -autostart -minimized
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\PROGRA~1\MIF5BA~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: En&queue current page with BID - file://C:\Program Files\Bulk Image Downloader\iemenu\iebidqueue.htm
O8 - Extra context menu item: Enqueue link target with BID - file://C:\Program Files\Bulk Image Downloader\iemenu\iebidlinkqueue.htm
O8 - Extra context menu item: Od&eslat do OneNotu - res://C:\PROGRA~1\MIF5BA~1\Office15\ONBttnIE.dll/105
O8 - Extra context menu item: Open &link target with BID - file://C:\Program Files\Bulk Image Downloader\iemenu\iebidlink.htm
O8 - Extra context menu item: Open current page with BID - file://C:\Program Files\Bulk Image Downloader\iemenu\iebid.htm
O8 - Extra context menu item: Open current page with BID Link Explorer - file://C:\Program Files\Bulk Image Downloader\iemenu\iebidlinkexplorer.htm
O9 - Extra button: Odeslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - Avast Software s.r.o. - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Avast Firewall (avast! Firewall) - Avast Software s.r.o. - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: FlexNet Licensing Service - Flexera Software LLC - C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Service KMSELDI - Unknown owner - C:\Program Files\KMSpico\Service_KMS.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files\Sony\Sony PC Companion\PCCService.exe

--
End of file - 7885 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\APSnotifierPP1.job - C:\Program Files\AnyProtectEx\AnyProtect.exe --notifier 3A
C:\WINDOWS\tasks\APSnotifierPP2.job - C:\Program Files\AnyProtectEx\AnyProtect.exe --notifier 4
C:\WINDOWS\tasks\APSnotifierPP3.job - C:\Program Files\AnyProtectEx\AnyProtect.exe --notifier 6
C:\WINDOWS\tasks\BYAIAMUF.job - C:\Users\Maty�\AppData\Roaming\BYAIAMUF.exe /infocmdline=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
C:\WINDOWS\tasks\dcTl874qo6.job - C:\Users\Maty�\AppData\Roaming\dcTl874qo6.exe --c=IuLrxCdO7GXPLxG3Rplu9X/cbkLc0ZtzwNAdp/GPpW9JKV7J09FGJuh1IVm7oHVqKkLjjAj54SlxSwq1irOnjc/U9WrEnuekzc71EOAirZQhshoWKLrQFeW8R1KjKhjk93ls9kdhcbysAJPs54PeBhcloZxHm77ACp1Z9t1K9cASIzMQs0FTPQBVwrAhsVaaISjhHMBOg1gILv+McymLIK/8T+zkOvtbjjAQRjN8CX22AafSgGWHqq1rPcG9jI2B8Er9e9BltQwJKPOUcbSM2GJfTlSgOeYG5ZC0nSqEaZqNmzUS94Zhuksjl+8gvQL0gO5/1JOi9iPxJWni8i3F8g==
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\KrMbPZVnVux1h.job - C:\Users\Maty�\AppData\Roaming\KrMbPZVnVux1h.exe --c=Fq27MxVCBgSRGh4zh4pqfDhOBNbiO1UbBI6sJ6/OybiSXfSLdzWfi5pgGuSKNMDEuZA/8G2WwQ55xjTbEadD0wJFxlgV6Lcof2Rknu787JVOWd3R1E14VTN3pDRaVsseWdUIdV0YlG3mOqIDNpQjctt9S6WCDffACZXNqUeedJa+brnLtPrzEt6NPkgt+I9GD8soD2Jg5S60iF4oS9iDaXfcek5C3J2M5bJYtl3t8DCM2zDmHlY1GxolIqH3UIGu3GmpXdwpoJVC8umBSrBuAp+dO1MxYUOhguQBildgEfuXK2jU0nvegNnu+z3g+t0jAU+s3vtBaerKujIfRUmGpA==

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-05-19 153768]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_40\bin\ssv.dll [2015-03-18 460712]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-06-24 565304]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MIF5BA~1\Office15\GROOVEEX.DLL [2015-05-13 1729752]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-18 172968]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2012-11-16 641704]
"AMD AVT"=Cmd.exe /c start AMD Accelerated Video Transcoding device initialization /min C:\Program Files\AMD AVT\bin\kdbsync.exe aml []
"USBToolTip"=C:\PROGRA~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe [2007-02-20 199752]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2015-03-07 335232]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-06-24 5515496]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BitTorrent"=C:\Users\Matyáš\AppData\Roaming\BitTorrent\BitTorrent.exe [2015-06-29 1999976]
"Spotify Web Helper"=C:\Users\Matyáš\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2015-03-13 1959992]
"Sony PC Companion"=C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [2014-11-27 466144]
"Viber"=C:\Users\Matyáš\AppData\Local\Viber\Viber.exe [2015-02-25 776400]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2015-03-31 4557552]
"Spotify"=C:\Users\Matyáš\AppData\Roaming\Spotify\spotify.exe [2015-03-13 6611512]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iaioi2c.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.yuy2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"vidc.cvid"=iccvid.dll
"vidc.yvyu"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"vidc.uyvy"=msyuv.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-06-30 15:12:16 ----D---- C:\rsit
2015-06-30 15:12:16 ----D---- C:\Program Files\trend micro
2015-06-30 15:05:55 ----HD---- C:\$WINDOWS.~BT
2015-06-24 21:48:02 ----D---- C:\WINDOWS\system32\vbox
2015-06-24 21:40:15 ----D---- C:\Users\Matyáš\AppData\Roaming\AVAST Software
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswVmm.sys
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswStm.sys
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswsp.sys
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswSnx.sys
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswRvrt.sys
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswRdr2.sys
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswMonFlt.sys
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswKbd.sys
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswHwid.sys
2015-06-24 21:35:40 ----A---- C:\WINDOWS\system32\aswBoot.exe
2015-06-24 21:35:24 ----A---- C:\WINDOWS\avastSS.scr
2015-06-24 21:34:14 ----A---- C:\WINDOWS\system32\drivers\aswNdisFlt.sys
2015-06-24 21:30:39 ----D---- C:\Program Files\AVAST Software
2015-06-24 21:29:12 ----D---- C:\ProgramData\AVAST Software
2015-06-16 23:00:25 ----D---- C:\Program Files\Racing Turtle
2015-06-16 22:54:13 ----D---- C:\ProgramData\regid.2006-08.com.smartftp
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-utility-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-time-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-string-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-stdio-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-runtime-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-process-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-locale-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-heap-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-environment-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-convert-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-conio-l1-1-0.dll
2015-06-16 22:51:45 ----A---- C:\WINDOWS\system32\ucrtbase.dll
2015-06-16 22:51:45 ----A---- C:\WINDOWS\system32\api-ms-win-crt-private-l1-1-0.dll
2015-06-16 22:51:45 ----A---- C:\WINDOWS\system32\api-ms-win-crt-math-l1-1-0.dll
2015-06-16 22:46:20 ----D---- C:\Users\Matyáš\AppData\Roaming\FileZilla
2015-06-16 22:45:44 ----D---- C:\Program Files\FileZilla FTP Client
2015-06-16 22:16:23 ----SHD---- C:\Users\Matyáš\AppData\Roaming\AnyProtectEx
2015-06-16 22:12:50 ----D---- C:\Program Files\62f75cf4-2258-44a0-87f2-611dd4d51e17
2015-06-16 22:11:19 ----A---- C:\WINDOWS\system32\roboot.exe
2015-06-16 22:11:03 ----D---- C:\Users\Matyáš\AppData\Roaming\systweak
2015-06-16 20:51:26 ----D---- C:\Users\Matyáš\AppData\Roaming\03000200-1434480686-0500-0006-000700080009
2015-06-16 20:51:14 ----D---- C:\Program Files\predm
2015-06-16 20:44:30 ----D---- C:\ProgramData\IHProtectUpDate
2015-06-16 20:44:12 ----D---- C:\ProgramData\WindowsMangerProtect
2015-06-16 20:44:10 ----A---- C:\WINDOWS\prleth.sys
2015-06-16 20:44:10 ----A---- C:\WINDOWS\hgfs.sys
2015-06-16 20:38:38 ----D---- C:\Program Files\globalUpdate
2015-06-16 20:11:39 ----D---- C:\Program Files\Seznam.cz
2015-06-16 20:08:52 ----D---- C:\Program Files\GUPlayer
2015-06-16 20:08:51 ----D---- C:\Users\Matyáš\AppData\Roaming\Seznam.cz
2015-06-16 16:17:14 ----D---- C:\Output
2015-06-13 18:54:49 ----D---- C:\Users\Matyáš\AppData\Roaming\Sublime Text 2
2015-06-09 20:45:46 ----A---- C:\WINDOWS\system32\authz.dll
2015-06-09 20:45:45 ----A---- C:\WINDOWS\system32\rgb9rast.dll
2015-06-09 20:42:52 ----A---- C:\WINDOWS\system32\tquery.dll
2015-06-09 20:42:52 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2015-06-09 20:42:52 ----A---- C:\WINDOWS\system32\mssrch.dll
2015-06-09 20:42:51 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2015-06-09 20:42:51 ----A---- C:\WINDOWS\system32\mssvp.dll
2015-06-09 20:42:51 ----A---- C:\WINDOWS\system32\mssph.dll
2015-06-09 20:42:17 ----AC---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2015-06-09 20:37:25 ----A---- C:\WINDOWS\system32\win32k.sys
2015-06-09 20:37:22 ----A---- C:\WINDOWS\system32\rastapi.dll
2015-06-09 20:37:20 ----A---- C:\WINDOWS\system32\invagent.dll
2015-06-09 20:37:20 ----A---- C:\WINDOWS\system32\generaltel.dll
2015-06-09 20:37:20 ----A---- C:\WINDOWS\system32\devinv.dll
2015-06-09 20:37:20 ----A---- C:\WINDOWS\system32\appraiser.dll
2015-06-09 20:37:20 ----A---- C:\WINDOWS\system32\aepic.dll
2015-06-09 20:37:20 ----A---- C:\WINDOWS\system32\aeinv.dll
2015-06-09 20:37:20 ----A---- C:\WINDOWS\system32\acmigration.dll
2015-06-09 20:37:19 ----A---- C:\WINDOWS\system32\aepdu.dll
2015-06-09 20:35:28 ----A---- C:\WINDOWS\system32\msftedit.dll
2015-06-09 20:35:25 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-06-09 20:35:19 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-06-09 20:35:18 ----A---- C:\WINDOWS\system32\wininet.dll
2015-06-09 20:35:18 ----A---- C:\WINDOWS\system32\jscript9.dll
2015-06-09 20:35:17 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-06-09 20:35:17 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2015-06-09 20:35:17 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-06-09 20:35:16 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-06-09 20:35:16 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-06-09 20:35:15 ----A---- C:\WINDOWS\system32\jscript.dll
2015-06-09 20:35:15 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2015-06-09 20:35:14 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2015-06-09 20:35:14 ----A---- C:\WINDOWS\system32\dxtrans.dll
2015-06-09 20:35:14 ----A---- C:\WINDOWS\system32\actxprxy.dll
2015-06-09 20:35:13 ----A---- C:\WINDOWS\system32\mshtmled.dll
2015-06-09 20:35:13 ----A---- C:\WINDOWS\system32\iepeers.dll
2015-06-09 20:35:12 ----A---- C:\WINDOWS\system32\inetcomm.dll
2015-06-09 20:34:12 ----A---- C:\WINDOWS\system32\UtcResources.dll
2015-06-09 20:34:12 ----A---- C:\WINDOWS\system32\diagtrack.dll
2015-06-09 20:32:25 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2015-06-09 20:28:25 ----A---- C:\WINDOWS\system32\comctl32.dll
2015-06-09 20:28:21 ----A---- C:\WINDOWS\system32\puiobj.dll
2015-06-09 20:28:10 ----A---- C:\WINDOWS\system32\localspl.dll
2015-06-05 22:31:23 ----D---- C:\Program Files\xampp
2015-06-03 12:49:10 ----D---- C:\Program Files\Telerik
2015-06-03 12:42:33 ----D---- C:\ProgramData\Telerik
2015-06-03 12:41:05 ----D---- C:\Users\Matyáš\AppData\Roaming\Telerik

======List of files/folders modified in the last 1 month======

2015-06-30 15:12:16 ----D---- C:\Program Files
2015-06-30 15:11:49 ----D---- C:\WINDOWS\Prefetch
2015-06-30 15:00:52 ----D---- C:\WINDOWS\Temp
2015-06-30 14:59:08 ----D---- C:\WINDOWS\system32\Drivers
2015-06-30 14:13:10 ----D---- C:\WINDOWS\AppReadiness
2015-06-30 14:02:02 ----D---- C:\WINDOWS\system32\sru
2015-06-29 22:22:47 ----D---- C:\Users\Matyáš\AppData\Roaming\BitTorrent
2015-06-29 21:05:46 ----RD---- C:\WINDOWS\System32
2015-06-29 21:05:46 ----D---- C:\WINDOWS\inf
2015-06-29 21:05:46 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-06-29 20:12:21 ----D---- C:\Users\Matyáš\AppData\Roaming\DAEMON Tools Lite
2015-06-28 21:38:50 ----D---- C:\Users\Matyáš\AppData\Roaming\Spotify
2015-06-28 21:01:43 ----HD---- C:\Program Files\WindowsApps
2015-06-28 20:55:50 ----D---- C:\WINDOWS\system32\NDF
2015-06-28 20:15:34 ----D---- C:\WINDOWS\Microsoft.NET
2015-06-26 02:25:45 ----D---- C:\Users\Matyáš\AppData\Roaming\TS3Client
2015-06-25 23:07:01 ----SHD---- C:\WINDOWS\Installer
2015-06-25 23:06:58 ----SHD---- C:\Config.Msi
2015-06-25 23:06:58 ----D---- C:\Program Files\LogMeIn Hamachi
2015-06-25 23:05:04 ----SHD---- C:\System Volume Information
2015-06-25 18:28:11 ----D---- C:\WINDOWS\system32\Tasks
2015-06-25 18:28:10 ----D---- C:\WINDOWS\Tasks
2015-06-25 13:10:39 ----D---- C:\WINDOWS
2015-06-25 12:33:08 ----D---- C:\Program Files\AdDuplex
2015-06-24 21:36:40 ----D---- C:\WINDOWS\system32\DriverStore
2015-06-24 21:35:43 ----D---- C:\WINDOWS\WinSxS
2015-06-24 21:29:12 ----HD---- C:\ProgramData
2015-06-24 14:35:49 ----D---- C:\Users\Matyáš\AppData\Roaming\Ukolnicek
2015-06-24 12:04:28 ----D---- C:\WINDOWS\system32\config
2015-06-24 11:57:47 ----D---- C:\WINDOWS\CbsTemp
2015-06-23 10:33:48 ----D---- C:\Users\Matyáš\AppData\Roaming\Audacity
2015-06-20 05:02:45 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2015-06-19 17:46:10 ----D---- C:\WINDOWS\debug
2015-06-19 17:40:05 ----D---- C:\Users\Matyáš\AppData\Roaming\ViberPC
2015-06-16 22:54:29 ----D---- C:\Program Files\SmartFTP Client
2015-06-16 22:51:32 ----D---- C:\WINDOWS\SoftwareDistribution
2015-06-16 22:51:18 ----D---- C:\ProgramData\Package Cache
2015-06-16 22:21:23 ----D---- C:\Program Files\AMD APP
2015-06-16 20:51:52 ----D---- C:\WINDOWS\system32\drivers\etc
2015-06-16 20:21:49 ----D---- C:\Program Files\Mozilla Firefox
2015-06-14 00:46:28 ----RD---- C:\Users
2015-06-11 17:09:50 ----RSD---- C:\WINDOWS\assembly
2015-06-11 17:06:45 ----D---- C:\ProgramData\Microsoft Help
2015-06-10 19:45:58 ----D---- C:\WINDOWS\rescache
2015-06-10 00:07:57 ----RD---- C:\WINDOWS\ToastData
2015-06-10 00:07:55 ----D---- C:\WINDOWS\system32\CompatTel
2015-06-10 00:07:55 ----D---- C:\WINDOWS\system32\appraiser
2015-06-10 00:07:55 ----D---- C:\WINDOWS\PolicyDefinitions
2015-06-10 00:07:55 ----D---- C:\WINDOWS\apppatch
2015-06-10 00:07:54 ----D---- C:\WINDOWS\system32\cs-CZ
2015-06-10 00:07:54 ----D---- C:\Program Files\Internet Explorer
2015-06-10 00:06:04 ----A---- C:\WINDOWS\win.ini
2015-06-09 23:01:40 ----D---- C:\WINDOWS\system32\MRT
2015-06-09 21:26:02 ----A---- C:\WINDOWS\system32\MRT.exe
2015-06-09 20:07:08 ----D---- C:\WINDOWS\system32\catroot2
2015-06-08 11:07:06 ----SD---- C:\Users\Matyáš\AppData\Roaming\Microsoft
2015-06-03 12:56:45 ----D---- C:\Program Files\Microsoft SQL Server

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswNdisFlt;@oem68.inf,%AfwDescriptionFree%;Avast! Firewall Driver; C:\WINDOWS\system32\DRIVERS\aswNdisFlt.sys [2015-06-24 271248]
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2015-06-24 49904]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2015-06-24 209048]
R1 aswKbd;aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [2015-06-24 26096]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2015-06-24 81728]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2015-06-24 787760]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2015-06-26 428120]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2014-04-30 57344]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2015-06-24 24144]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2015-06-24 74976]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2015-06-24 106912]
R2 giveio;giveio; \??\C:\WINDOWS\system32\giveio.sys [1996-04-03 5248]
R2 speedfan;speedfan; \??\C:\WINDOWS\system32\speedfan.sys [2012-12-29 24184]
R2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [2015-06-24 220752]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2012-06-19 10071040]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2012-06-19 290304]
R3 dtlitescsibus;@oem64.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2015-04-13 25104]
R3 MarvinBus;@oem12.inf,%MarvinBus.SVCDESC%;Pinnacle Marvin Bus; C:\WINDOWS\System32\drivers\MarvinBus.sys [2005-09-23 171520]
R3 netr73;@netr73.inf,%General.Service.DispName%;RT73 USB - ovladač rozšiřitelné karty pro bezdrátovou síť LAN; C:\WINDOWS\system32\DRIVERS\netr73.sys [2013-06-18 564800]
R3 SensorsSimulatorDriver;@oem6.inf,%WudfSensorsSimulatorDriverDisplayName%;UMDF Reflector service for SensorsSimulatorDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2014-10-29 190976]
R3 tap0901;@oem63.inf,%DeviceDescription%;TAP-Windows Adapter V9; C:\WINDOWS\system32\DRIVERS\tap0901.sys [2013-08-22 35288]
R3 ULI526X;@oem2.inf,%ULIPCI.Service.DispName%;ULi M526X 10/100 Ethernet Controller Driver; C:\WINDOWS\system32\DRIVERS\ULILAN32.SYS [2006-06-30 30720]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2014-04-30 30720]
S3 ggflt;@oem62.inf,%SvcFltDesc%;SOMC USB Flash Driver Filter; C:\WINDOWS\System32\drivers\ggflt.sys [2015-02-24 13528]
S3 ggsomc;@oem62.inf,%SvcDesc%;SOMC USB Flash Driver; C:\WINDOWS\System32\drivers\ggsomc.sys [2015-02-24 26328]
S3 GPIO;@iaiogpio.inf,%GPIO.SVCDESC%;Intel SoC GPIO Controller Driver; C:\WINDOWS\System32\drivers\iaiogpio.sys [2013-07-23 22016]
S3 Hamachi;LogMeIn Hamachi Virtual Miniport); C:\WINDOWS\system32\DRIVERS\Hamdrv.sys [2015-03-30 37128]
S3 iaioi2c;@iaioi2c.inf,%Driver_Service.Desc%;Intel(R) Atom(TM) Processor I2C Controller Service; C:\WINDOWS\System32\drivers\iaioi2c.sys [2013-07-23 61936]
S3 WinUsb;@oem66.inf,%ServiceDesc%;WinUSB Driver; C:\WINDOWS\System32\drivers\WinUsb.sys [2013-08-22 64000]
S4 WinDivert1.1;WinDivert1.1; \??\C:\Program Files\KMSpico\WinDivert.sys [2015-01-20 30256]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-06-24 343336]
R2 avast! Firewall;Avast Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [2015-06-24 107448]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\WINDOWS\System32\svchost.exe [2014-10-29 33088]
R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2014-02-21 114368]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-07 116648]
S2 IpOverUsbSvc;Windows Phone IP over USB Transport (IpOverUsbSvc); C:\Program Files\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [2014-04-17 22768]
S2 Service KMSELDI;Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [2013-12-11 1050904]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2014-12-11 315496]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-06-23 268464]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2013-08-10 45664]
S3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [2015-06-24 3207800]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-10-29 33088]
S3 c2wts;@%ProgramFiles%\Windows Identity Foundation\v3.5\c2wtsres.dll,-1000; C:\Program Files\Windows Identity Foundation\v3.5\c2wtshost.exe [2015-01-21 5632]
S3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [2015-03-31 1023728]
S3 FlexNet Licensing Service;FlexNet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe [2015-02-15 1074480]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 fussvc;Windows App Certification Kit Fast User Switching Utility Service; C:\Program Files\Windows Kits\8.1\App Certification Kit\fussvc.exe [2014-02-19 140800]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-07 116648]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2014-08-13 136120]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 150600]
S3 Sony PC Companion;Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [2013-02-04 155824]
S3 Te.Service;Te.Service; C:\Program Files\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe [2013-08-21 91136]
S3 VsEtwService120;Visual Studio ETW Event Collection Service; C:\Program Files\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe [2014-07-23 73360]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119357
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zpomalení počítače, stažení havěti

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

matesak
Návštěvník
Návštěvník
Příspěvky: 43
Registrován: 19 srp 2012 23:54

Re: Zpomalení počítače, stažení havěti

#3 Příspěvek od matesak »

# AdwCleaner v4.207 - Log vytvořen 30/06/2015 v 21:32:53
# Aktualizováno 21/06/2015 by Xplode
# Databáze : 2015-06-29.1 [Server]
# Operační system : Windows 8.1 Pro (x86)
# Uživatelské jméno : Matyáš - MATES
# Spuštěno z : C:\Users\Matyáš\Desktop\adwcleaner_4.207.exe
# Nastavení : Čištění

***** [ Služby ] *****


***** [ Soubory / Složky ] *****

Složka Smazáno : C:\ProgramData\WindowsMangerProtect
Složka Smazáno : C:\ProgramData\IHProtectUpDate
Složka Smazáno : C:\ProgramData\EmailNotifier
Složka Smazáno : C:\Program Files\globalUpdate
Složka Smazáno : C:\Program Files\mystarttb
Složka Smazáno : C:\Program Files\predm
Složka Smazáno : C:\Program Files\GUPlayer
Složka Smazáno : C:\Users\Guest\AppData\Local\Crossbrowse
Složka Smazáno : C:\Users\Matyáš\SupTab
Složka Smazáno : C:\Users\Matyáš\AppData\Local\globalUpdate
Složka Smazáno : C:\Users\Matyáš\AppData\Local\Windesk_Winsearch
Složka Smazáno : C:\Users\Matyáš\AppData\Local\03000200-1434488082-0500-0006-000700080009
Složka Smazáno : C:\Users\Matyáš\AppData\LocalLow\mystarttb
Složka Smazáno : C:\Users\Matyáš\AppData\Roaming\AnyProtectEx
Složka Smazáno : C:\Users\Matyáš\AppData\Roaming\Systweak
Složka Smazáno : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\dghncoeocefmhkhiphdgikkamjeglbfh
Složka Smazáno : C:\Users\Matyáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\dghncoeocefmhkhiphdgikkamjeglbfh
Soubor Smazáno : C:\WINDOWS\system32\roboot.exe
Soubor Smazáno : C:\Users\Matyáš\AppData\Roaming\BYAIAMUF
Soubor Smazáno : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_wlogin.icq.com_0.localstorage
Soubor Smazáno : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_wlogin.icq.com_0.localstorage-journal
Soubor Smazáno : C:\Users\Matyáš\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.yourtango.com_0.localstorage
Soubor Smazáno : C:\Users\Matyáš\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.yourtango.com_0.localstorage-journal

***** [ Naplánované úlohy ] *****

Úloha Smazáno : APSnotifierPP1
Úloha Smazáno : APSnotifierPP2
Úloha Smazáno : APSnotifierPP3
Úloha Smazáno : ASP
Úloha Smazáno : BYAIAMUF

***** [ Zástupci ] *****


***** [ Registry ] *****

Klíč Smazáno : HKLM\SOFTWARE\Google\Chrome\Extensions\dghncoeocefmhkhiphdgikkamjeglbfh
Klíč Smazáno : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WindowsMangerProtect
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{459DD0F7-0D55-D3DC-67BC-E6BE37E9D762}
Klíč Smazáno : HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{62155D33-3CE2-401E-8967-5A270628A3D5}
Data Obnoveno : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command
Klíč Smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{03BB038E-4159-4046-8B8D-1E2B1BE8E1B1}
Klíč Smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Klíč Smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}
Klíč Smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}
Klíč Smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C}
Klíč Smazáno : HKCU\Software\AnyProtect
Klíč Smazáno : HKCU\Software\APN PIP
Klíč Smazáno : HKCU\Software\AskPartnerNetwork
Klíč Smazáno : HKCU\Software\GlobalUpdate
Klíč Smazáno : HKCU\Software\simplytech
Klíč Smazáno : HKCU\Software\systweak
Klíč Smazáno : HKCU\Software\GAMESDESKTOP
Klíč Smazáno : HKCU\Software\TNT2
Klíč Smazáno : HKCU\Software\Crossbrowse
Klíč Smazáno : HKCU\Software\YorkNewCin
Klíč Smazáno : HKCU\Software\HighDefAction
Klíč Smazáno : HKCU\Software\ArenaHD
Klíč Smazáno : HKCU\Software\AppDataLow\Software\Crossrider
Klíč Smazáno : HKLM\SOFTWARE\AskPartnerNetwork
Klíč Smazáno : HKLM\SOFTWARE\Email Notifier
Klíč Smazáno : HKLM\SOFTWARE\GlobalUpdate
Klíč Smazáno : HKLM\SOFTWARE\mystarttb
Klíč Smazáno : HKLM\SOFTWARE\SupDp
Klíč Smazáno : HKLM\SOFTWARE\SupTab
Klíč Smazáno : HKLM\SOFTWARE\supWindowsMangerProtect
Klíč Smazáno : HKLM\SOFTWARE\systweak
Klíč Smazáno : HKLM\SOFTWARE\Tutorials
Klíč Smazáno : HKLM\SOFTWARE\mystartsearchSoftware
Klíč Smazáno : HKLM\SOFTWARE\IHProtect
Klíč Smazáno : HKLM\SOFTWARE\Crossbrowse
Klíč Smazáno : HKLM\SOFTWARE\YorkNewCin
Klíč Smazáno : HKLM\SOFTWARE\HighDefAction
Klíč Smazáno : HKLM\SOFTWARE\oursurfingSoftware
Klíč Smazáno : HKLM\SOFTWARE\ArenaHD
Klíč Smazáno : HKLM\SOFTWARE\searchult
Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP
Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\IminentToolbar
Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\WajIntEnhance
Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Vosteran.com
Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Linkey
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IminentToolbar
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VOPackage
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WajIntEnhance
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Vosteran.com
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Linkey
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7ADF667E-E14D-4D2C-827C-B0108F0D93BC}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\globalupdate.exe
Klíč Smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\mystartsearch.com
Klíč Smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\oursurfing.com
Klíč Smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.mystartsearch.com
Klíč Smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.oursurfing.com

***** [ Prohlížeče ] *****

-\\ Internet Explorer v11.0.9600.17840


-\\ Google Chrome v43.0.2357.130

[C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://registrdluzniku.registryofdebtors.com/cz/search/?isearch={searchTerms}&tp=
[C:\Users\Matyáš\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://en.softonic.com/s/{searchTerms}
[C:\Users\Matyáš\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://www.mystart.com/results.php?gen=ms&pr=v ... earchTerms}
[C:\Users\Matyáš\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://www.mystartsearch.com/web/?type=ds&ts=1 ... earchTerms}
[C:\Users\Matyáš\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://www.oursurfing.com/web/?type=dspp&ts=14 ... earchTerms}
[C:\Users\Matyáš\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://search.aol.com/aol/search?q={searchTerms}
[C:\Users\Matyáš\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://www.ask.com/web?q={searchTerms}
[C:\Users\Matyáš\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Homepage] : hxxp://www.oursurfing.com/?type=hppp&ts=143448 ... XX9RA4KNEZ
[C:\Users\Matyáš\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Startup_URLs] : 978954AE786C6958BCD3D0745A08BDB4BC513C774A9241D9561F5781E6DF0678"},"software_reporter":{"prompt_reason":"AA20FF08FC56CA2D1EF7A3930BBC834B60B0CE7DB31EB6A2D9E51A8F90C2028D","prompt_seed":"2EBAF8EDC9CC48FDFD9608E8B61B90F1A13EB35F6462146CE755A22FDD37F9F1","prompt_version":"C60D1DF4761F74CAC65DBA7F11B7EECA5E426FD5C0D5520381186FBF515F09FF"},"sync":{"remaining_rollback_tries":"3D5144CBDECDB4E4E19A62262C65638421C89A5E1DAF5FD6D73FC24E8C38F31A"}},"super_mac":"08709628B9A5E5F19FE53C491F666B7D46F2FE2EE6E7B0095DB66EA9FD3E8B2D"},"session":{"startup_urls":["hxxp://www.oursurfing.com/?type=hppp&ts=143448 ... XX9RA4KNEZ

*************************

AdwCleaner[R0].txt - [9921 bytů] - [30/06/2015 21:22:15]
AdwCleaner[R1].txt - [9866 bytů] - [30/06/2015 21:29:15]
AdwCleaner[S0].txt - [9440 bytů] - [30/06/2015 21:32:53]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [9498 bytů] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119357
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zpomalení počítače, stažení havěti

#4 Příspěvek od Rudy »

Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

matesak
Návštěvník
Návštěvník
Příspěvky: 43
Registrován: 19 srp 2012 23:54

Re: Zpomalení počítače, stažení havěti

#5 Příspěvek od matesak »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Matyáš at 2015-06-30 22:16:52
Microsoft Windows 8.1 Pro
System drive C: has 53 GB (35%) free of 153 GB
Total RAM: 2047 MB (36% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:17:08, on 30. 6. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Normal

Running processes:
C:\WINDOWS\system32\taskhostex.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20905_x86__8wekyb3d8bbwe\LiveComm.exe
C:\WINDOWS\system32\GWX\GWX.exe
C:\Windows\System32\skydrive.exe
C:\Windows\System32\RuntimeBroker.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\wbem\unsecapp.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\System32\SettingSyncHost.exe
C:\WINDOWS\System32\Macromed\Flash\FlashUtil_ActiveX.exe
C:\Program Files\WindowsApps\Microsoft.Reader_6.3.9654.17499_x86__8wekyb3d8bbwe\glcnd.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\taskeng.exe
C:\Users\Matyáš\Downloads\RSIT.exe
C:\Program Files\trend micro\Matyáš.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=s ... earchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=s ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_40\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~1\MIF5BA~1\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_40\bin\jp2ssv.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files\AMD AVT\bin\kdbsync.exe" aml
O4 - HKLM\..\Run: [USBToolTip] C:\PROGRA~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [BitTorrent] "C:\Users\Matyáš\AppData\Roaming\BitTorrent\BitTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\Matyáš\AppData\Roaming\Spotify\SpotifyWebHelper.exe"
O4 - HKCU\..\Run: [Sony PC Companion] "C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe" /Background
O4 - HKCU\..\Run: [Viber] "C:\Users\Matyáš\AppData\Local\Viber\Viber.exe" StartMinimized
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Spotify] "C:\Users\Matyáš\AppData\Roaming\Spotify\spotify.exe" -autostart -minimized
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\PROGRA~1\MIF5BA~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: En&queue current page with BID - file://C:\Program Files\Bulk Image Downloader\iemenu\iebidqueue.htm
O8 - Extra context menu item: Enqueue link target with BID - file://C:\Program Files\Bulk Image Downloader\iemenu\iebidlinkqueue.htm
O8 - Extra context menu item: Od&eslat do OneNotu - res://C:\PROGRA~1\MIF5BA~1\Office15\ONBttnIE.dll/105
O8 - Extra context menu item: Open &link target with BID - file://C:\Program Files\Bulk Image Downloader\iemenu\iebidlink.htm
O8 - Extra context menu item: Open current page with BID - file://C:\Program Files\Bulk Image Downloader\iemenu\iebid.htm
O8 - Extra context menu item: Open current page with BID Link Explorer - file://C:\Program Files\Bulk Image Downloader\iemenu\iebidlinkexplorer.htm
O9 - Extra button: Odeslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - Avast Software s.r.o. - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Avast Firewall (avast! Firewall) - Avast Software s.r.o. - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: FlexNet Licensing Service - Flexera Software LLC - C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Service KMSELDI - Unknown owner - C:\Program Files\KMSpico\Service_KMS.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files\Sony\Sony PC Companion\PCCService.exe

--
End of file - 7769 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\dcTl874qo6.job - C:\Users\Maty�\AppData\Roaming\dcTl874qo6.exe --c=IuLrxCdO7GXPLxG3Rplu9X/cbkLc0ZtzwNAdp/GPpW9JKV7J09FGJuh1IVm7oHVqKkLjjAj54SlxSwq1irOnjc/U9WrEnuekzc71EOAirZQhshoWKLrQFeW8R1KjKhjk93ls9kdhcbysAJPs54PeBhcloZxHm77ACp1Z9t1K9cASIzMQs0FTPQBVwrAhsVaaISjhHMBOg1gILv+McymLIK/8T+zkOvtbjjAQRjN8CX22AafSgGWHqq1rPcG9jI2B8Er9e9BltQwJKPOUcbSM2GJfTlSgOeYG5ZC0nSqEaZqNmzUS94Zhuksjl+8gvQL0gO5/1JOi9iPxJWni8i3F8g==
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\KrMbPZVnVux1h.job - C:\Users\Maty�\AppData\Roaming\KrMbPZVnVux1h.exe --c=Fq27MxVCBgSRGh4zh4pqfDhOBNbiO1UbBI6sJ6/OybiSXfSLdzWfi5pgGuSKNMDEuZA/8G2WwQ55xjTbEadD0wJFxlgV6Lcof2Rknu787JVOWd3R1E14VTN3pDRaVsseWdUIdV0YlG3mOqIDNpQjctt9S6WCDffACZXNqUeedJa+brnLtPrzEt6NPkgt+I9GD8soD2Jg5S60iF4oS9iDaXfcek5C3J2M5bJYtl3t8DCM2zDmHlY1GxolIqH3UIGu3GmpXdwpoJVC8umBSrBuAp+dO1MxYUOhguQBildgEfuXK2jU0nvegNnu+z3g+t0jAU+s3vtBaerKujIfRUmGpA==

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-05-19 153768]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_40\bin\ssv.dll [2015-03-18 460712]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-06-24 565304]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MIF5BA~1\Office15\GROOVEEX.DLL [2015-05-13 1729752]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-18 172968]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2012-11-16 641704]
"AMD AVT"=Cmd.exe /c start AMD Accelerated Video Transcoding device initialization /min C:\Program Files\AMD AVT\bin\kdbsync.exe aml []
"USBToolTip"=C:\PROGRA~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe [2007-02-20 199752]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2015-03-07 335232]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-06-24 5515496]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BitTorrent"=C:\Users\Matyáš\AppData\Roaming\BitTorrent\BitTorrent.exe [2015-06-29 1999976]
"Spotify Web Helper"=C:\Users\Matyáš\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2015-03-13 1959992]
"Sony PC Companion"=C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [2014-11-27 466144]
"Viber"=C:\Users\Matyáš\AppData\Local\Viber\Viber.exe [2015-02-25 776400]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2015-03-31 4557552]
"Spotify"=C:\Users\Matyáš\AppData\Roaming\Spotify\spotify.exe [2015-03-13 6611512]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iaioi2c.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.yuy2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"vidc.cvid"=iccvid.dll
"vidc.yvyu"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"vidc.uyvy"=msyuv.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-06-30 21:19:32 ----D---- C:\AdwCleaner
2015-06-30 15:12:16 ----D---- C:\rsit
2015-06-30 15:12:16 ----D---- C:\Program Files\trend micro
2015-06-30 15:05:55 ----HD---- C:\$WINDOWS.~BT
2015-06-24 21:48:02 ----D---- C:\WINDOWS\system32\vbox
2015-06-24 21:40:15 ----D---- C:\Users\Matyáš\AppData\Roaming\AVAST Software
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswVmm.sys
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswStm.sys
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswsp.sys
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswSnx.sys
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswRvrt.sys
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswRdr2.sys
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswMonFlt.sys
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswKbd.sys
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswHwid.sys
2015-06-24 21:35:40 ----A---- C:\WINDOWS\system32\aswBoot.exe
2015-06-24 21:35:24 ----A---- C:\WINDOWS\avastSS.scr
2015-06-24 21:34:14 ----A---- C:\WINDOWS\system32\drivers\aswNdisFlt.sys
2015-06-24 21:30:39 ----D---- C:\Program Files\AVAST Software
2015-06-24 21:29:12 ----D---- C:\ProgramData\AVAST Software
2015-06-16 23:00:25 ----D---- C:\Program Files\Racing Turtle
2015-06-16 22:54:13 ----D---- C:\ProgramData\regid.2006-08.com.smartftp
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-utility-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-time-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-string-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-stdio-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-runtime-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-process-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-locale-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-heap-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-environment-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-convert-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-conio-l1-1-0.dll
2015-06-16 22:51:45 ----A---- C:\WINDOWS\system32\ucrtbase.dll
2015-06-16 22:51:45 ----A---- C:\WINDOWS\system32\api-ms-win-crt-private-l1-1-0.dll
2015-06-16 22:51:45 ----A---- C:\WINDOWS\system32\api-ms-win-crt-math-l1-1-0.dll
2015-06-16 22:46:20 ----D---- C:\Users\Matyáš\AppData\Roaming\FileZilla
2015-06-16 22:45:44 ----D---- C:\Program Files\FileZilla FTP Client
2015-06-16 22:12:50 ----D---- C:\Program Files\62f75cf4-2258-44a0-87f2-611dd4d51e17
2015-06-16 20:51:26 ----D---- C:\Users\Matyáš\AppData\Roaming\03000200-1434480686-0500-0006-000700080009
2015-06-16 20:44:10 ----A---- C:\WINDOWS\prleth.sys
2015-06-16 20:44:10 ----A---- C:\WINDOWS\hgfs.sys
2015-06-16 20:11:39 ----D---- C:\Program Files\Seznam.cz
2015-06-16 20:08:51 ----D---- C:\Users\Matyáš\AppData\Roaming\Seznam.cz
2015-06-16 16:17:14 ----D---- C:\Output
2015-06-13 18:54:49 ----D---- C:\Users\Matyáš\AppData\Roaming\Sublime Text 2
2015-06-09 20:45:46 ----A---- C:\WINDOWS\system32\authz.dll
2015-06-09 20:45:45 ----A---- C:\WINDOWS\system32\rgb9rast.dll
2015-06-09 20:42:52 ----A---- C:\WINDOWS\system32\tquery.dll
2015-06-09 20:42:52 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2015-06-09 20:42:52 ----A---- C:\WINDOWS\system32\mssrch.dll
2015-06-09 20:42:51 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2015-06-09 20:42:51 ----A---- C:\WINDOWS\system32\mssvp.dll
2015-06-09 20:42:51 ----A---- C:\WINDOWS\system32\mssph.dll
2015-06-09 20:42:17 ----AC---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2015-06-09 20:37:25 ----A---- C:\WINDOWS\system32\win32k.sys
2015-06-09 20:37:22 ----A---- C:\WINDOWS\system32\rastapi.dll
2015-06-09 20:37:20 ----A---- C:\WINDOWS\system32\invagent.dll
2015-06-09 20:37:20 ----A---- C:\WINDOWS\system32\generaltel.dll
2015-06-09 20:37:20 ----A---- C:\WINDOWS\system32\devinv.dll
2015-06-09 20:37:20 ----A---- C:\WINDOWS\system32\appraiser.dll
2015-06-09 20:37:20 ----A---- C:\WINDOWS\system32\aepic.dll
2015-06-09 20:37:20 ----A---- C:\WINDOWS\system32\aeinv.dll
2015-06-09 20:37:20 ----A---- C:\WINDOWS\system32\acmigration.dll
2015-06-09 20:37:19 ----A---- C:\WINDOWS\system32\aepdu.dll
2015-06-09 20:35:28 ----A---- C:\WINDOWS\system32\msftedit.dll
2015-06-09 20:35:25 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-06-09 20:35:19 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-06-09 20:35:18 ----A---- C:\WINDOWS\system32\wininet.dll
2015-06-09 20:35:18 ----A---- C:\WINDOWS\system32\jscript9.dll
2015-06-09 20:35:17 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-06-09 20:35:17 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2015-06-09 20:35:17 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-06-09 20:35:16 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-06-09 20:35:16 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-06-09 20:35:15 ----A---- C:\WINDOWS\system32\jscript.dll
2015-06-09 20:35:15 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2015-06-09 20:35:14 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2015-06-09 20:35:14 ----A---- C:\WINDOWS\system32\dxtrans.dll
2015-06-09 20:35:14 ----A---- C:\WINDOWS\system32\actxprxy.dll
2015-06-09 20:35:13 ----A---- C:\WINDOWS\system32\mshtmled.dll
2015-06-09 20:35:13 ----A---- C:\WINDOWS\system32\iepeers.dll
2015-06-09 20:35:12 ----A---- C:\WINDOWS\system32\inetcomm.dll
2015-06-09 20:34:12 ----A---- C:\WINDOWS\system32\UtcResources.dll
2015-06-09 20:34:12 ----A---- C:\WINDOWS\system32\diagtrack.dll
2015-06-09 20:32:25 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2015-06-09 20:28:25 ----A---- C:\WINDOWS\system32\comctl32.dll
2015-06-09 20:28:21 ----A---- C:\WINDOWS\system32\puiobj.dll
2015-06-09 20:28:10 ----A---- C:\WINDOWS\system32\localspl.dll
2015-06-05 22:31:23 ----D---- C:\Program Files\xampp
2015-06-03 12:49:10 ----D---- C:\Program Files\Telerik
2015-06-03 12:42:33 ----D---- C:\ProgramData\Telerik
2015-06-03 12:41:05 ----D---- C:\Users\Matyáš\AppData\Roaming\Telerik

======List of files/folders modified in the last 1 month======

2015-06-30 22:12:47 ----D---- C:\WINDOWS\Prefetch
2015-06-30 22:04:45 ----D---- C:\WINDOWS\system32\NDF
2015-06-30 22:00:04 ----D---- C:\WINDOWS\system32\sru
2015-06-30 21:50:45 ----D---- C:\WINDOWS\Temp
2015-06-30 21:50:45 ----D---- C:\WINDOWS\AppReadiness
2015-06-30 21:33:01 ----D---- C:\WINDOWS\Tasks
2015-06-30 21:33:01 ----D---- C:\WINDOWS\system32\Tasks
2015-06-30 21:32:58 ----RD---- C:\WINDOWS\System32
2015-06-30 21:32:55 ----HD---- C:\ProgramData
2015-06-30 21:32:55 ----D---- C:\Program Files
2015-06-30 21:29:09 ----D---- C:\WINDOWS\system32\config
2015-06-30 21:06:49 ----D---- C:\Users\Matyáš\AppData\Roaming\Spotify
2015-06-30 19:45:31 ----D---- C:\WINDOWS\inf
2015-06-30 15:28:35 ----D---- C:\WINDOWS\Microsoft.NET
2015-06-30 14:59:08 ----D---- C:\WINDOWS\system32\Drivers
2015-06-29 22:22:47 ----D---- C:\Users\Matyáš\AppData\Roaming\BitTorrent
2015-06-29 21:05:46 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-06-29 20:12:21 ----D---- C:\Users\Matyáš\AppData\Roaming\DAEMON Tools Lite
2015-06-28 21:01:43 ----HD---- C:\Program Files\WindowsApps
2015-06-26 02:25:45 ----D---- C:\Users\Matyáš\AppData\Roaming\TS3Client
2015-06-25 23:07:01 ----SHD---- C:\WINDOWS\Installer
2015-06-25 23:06:58 ----SHD---- C:\Config.Msi
2015-06-25 23:06:58 ----D---- C:\Program Files\LogMeIn Hamachi
2015-06-25 23:05:04 ----SHD---- C:\System Volume Information
2015-06-25 13:10:39 ----D---- C:\WINDOWS
2015-06-25 12:33:08 ----D---- C:\Program Files\AdDuplex
2015-06-24 21:36:40 ----D---- C:\WINDOWS\system32\DriverStore
2015-06-24 21:35:43 ----D---- C:\WINDOWS\WinSxS
2015-06-24 14:35:49 ----D---- C:\Users\Matyáš\AppData\Roaming\Ukolnicek
2015-06-24 11:57:47 ----D---- C:\WINDOWS\CbsTemp
2015-06-23 10:33:48 ----D---- C:\Users\Matyáš\AppData\Roaming\Audacity
2015-06-20 05:02:45 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2015-06-19 17:46:10 ----D---- C:\WINDOWS\debug
2015-06-19 17:40:05 ----D---- C:\Users\Matyáš\AppData\Roaming\ViberPC
2015-06-16 22:54:29 ----D---- C:\Program Files\SmartFTP Client
2015-06-16 22:51:32 ----D---- C:\WINDOWS\SoftwareDistribution
2015-06-16 22:51:18 ----D---- C:\ProgramData\Package Cache
2015-06-16 22:21:23 ----D---- C:\Program Files\AMD APP
2015-06-16 20:51:52 ----D---- C:\WINDOWS\system32\drivers\etc
2015-06-16 20:21:49 ----D---- C:\Program Files\Mozilla Firefox
2015-06-14 00:46:28 ----RD---- C:\Users
2015-06-11 17:09:50 ----RSD---- C:\WINDOWS\assembly
2015-06-11 17:06:45 ----D---- C:\ProgramData\Microsoft Help
2015-06-10 19:45:58 ----D---- C:\WINDOWS\rescache
2015-06-10 00:07:57 ----RD---- C:\WINDOWS\ToastData
2015-06-10 00:07:55 ----D---- C:\WINDOWS\system32\CompatTel
2015-06-10 00:07:55 ----D---- C:\WINDOWS\system32\appraiser
2015-06-10 00:07:55 ----D---- C:\WINDOWS\PolicyDefinitions
2015-06-10 00:07:55 ----D---- C:\WINDOWS\apppatch
2015-06-10 00:07:54 ----D---- C:\WINDOWS\system32\cs-CZ
2015-06-10 00:07:54 ----D---- C:\Program Files\Internet Explorer
2015-06-10 00:06:04 ----A---- C:\WINDOWS\win.ini
2015-06-09 23:01:40 ----D---- C:\WINDOWS\system32\MRT
2015-06-09 21:26:02 ----A---- C:\WINDOWS\system32\MRT.exe
2015-06-09 20:07:08 ----D---- C:\WINDOWS\system32\catroot2
2015-06-08 11:07:06 ----SD---- C:\Users\Matyáš\AppData\Roaming\Microsoft
2015-06-03 12:56:45 ----D---- C:\Program Files\Microsoft SQL Server

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswNdisFlt;@oem68.inf,%AfwDescriptionFree%;Avast! Firewall Driver; C:\WINDOWS\system32\DRIVERS\aswNdisFlt.sys [2015-06-24 271248]
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2015-06-24 49904]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2015-06-24 209048]
R1 aswKbd;aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [2015-06-24 26096]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2015-06-24 81728]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2015-06-24 787760]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2015-06-26 428120]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2014-04-30 57344]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2015-06-24 24144]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2015-06-24 74976]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2015-06-24 106912]
R2 giveio;giveio; \??\C:\WINDOWS\system32\giveio.sys [1996-04-03 5248]
R2 speedfan;speedfan; \??\C:\WINDOWS\system32\speedfan.sys [2012-12-29 24184]
R2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [2015-06-24 220752]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2012-06-19 10071040]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2012-06-19 290304]
R3 dtlitescsibus;@oem64.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2015-04-13 25104]
R3 MarvinBus;@oem12.inf,%MarvinBus.SVCDESC%;Pinnacle Marvin Bus; C:\WINDOWS\System32\drivers\MarvinBus.sys [2005-09-23 171520]
R3 netr73;@netr73.inf,%General.Service.DispName%;RT73 USB - ovladač rozšiřitelné karty pro bezdrátovou síť LAN; C:\WINDOWS\system32\DRIVERS\netr73.sys [2013-06-18 564800]
R3 SensorsSimulatorDriver;@oem6.inf,%WudfSensorsSimulatorDriverDisplayName%;UMDF Reflector service for SensorsSimulatorDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2014-10-29 190976]
R3 tap0901;@oem63.inf,%DeviceDescription%;TAP-Windows Adapter V9; C:\WINDOWS\system32\DRIVERS\tap0901.sys [2013-08-22 35288]
R3 ULI526X;@oem2.inf,%ULIPCI.Service.DispName%;ULi M526X 10/100 Ethernet Controller Driver; C:\WINDOWS\system32\DRIVERS\ULILAN32.SYS [2006-06-30 30720]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2014-04-30 30720]
S3 ggflt;@oem62.inf,%SvcFltDesc%;SOMC USB Flash Driver Filter; C:\WINDOWS\System32\drivers\ggflt.sys [2015-02-24 13528]
S3 ggsomc;@oem62.inf,%SvcDesc%;SOMC USB Flash Driver; C:\WINDOWS\System32\drivers\ggsomc.sys [2015-02-24 26328]
S3 GPIO;@iaiogpio.inf,%GPIO.SVCDESC%;Intel SoC GPIO Controller Driver; C:\WINDOWS\System32\drivers\iaiogpio.sys [2013-07-23 22016]
S3 Hamachi;LogMeIn Hamachi Virtual Miniport); C:\WINDOWS\system32\DRIVERS\Hamdrv.sys [2015-03-30 37128]
S3 iaioi2c;@iaioi2c.inf,%Driver_Service.Desc%;Intel(R) Atom(TM) Processor I2C Controller Service; C:\WINDOWS\System32\drivers\iaioi2c.sys [2013-07-23 61936]
S3 WinUsb;@oem66.inf,%ServiceDesc%;WinUSB Driver; C:\WINDOWS\System32\drivers\WinUsb.sys [2013-08-22 64000]
S4 WinDivert1.1;WinDivert1.1; \??\C:\Program Files\KMSpico\WinDivert.sys [2015-01-20 30256]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-06-24 343336]
R2 avast! Firewall;Avast Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [2015-06-24 107448]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\WINDOWS\System32\svchost.exe [2014-10-29 33088]
R2 IpOverUsbSvc;Windows Phone IP over USB Transport (IpOverUsbSvc); C:\Program Files\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [2014-04-17 22768]
R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2014-02-21 114368]
R3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [2015-06-24 3207800]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-07 116648]
S2 Service KMSELDI;Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [2013-12-11 1050904]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2014-12-11 315496]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-06-23 268464]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2013-08-10 45664]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-10-29 33088]
S3 c2wts;@%ProgramFiles%\Windows Identity Foundation\v3.5\c2wtsres.dll,-1000; C:\Program Files\Windows Identity Foundation\v3.5\c2wtshost.exe [2015-01-21 5632]
S3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [2015-03-31 1023728]
S3 FlexNet Licensing Service;FlexNet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe [2015-02-15 1074480]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 fussvc;Windows App Certification Kit Fast User Switching Utility Service; C:\Program Files\Windows Kits\8.1\App Certification Kit\fussvc.exe [2014-02-19 140800]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-07 116648]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2014-08-13 136120]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 150600]
S3 Sony PC Companion;Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [2013-02-04 155824]
S3 Te.Service;Te.Service; C:\Program Files\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe [2013-08-21 91136]
S3 VsEtwService120;Visual Studio ETW Event Collection Service; C:\Program Files\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe [2014-07-23 73360]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119357
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zpomalení počítače, stažení havěti

#6 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\WINDOWS\tasksdcTl874qo6.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\KrMbPZVnVux1h.job
C:\Users\Maty�\AppData\Roaming\dcTl874qo6.exe
C:\Users\Maty�\AppData\Roaming\KrMbPZVnVux1h.exe

:reg
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=-

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Před skenem vypněte antivir a po něm restartujte PC. Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

matesak
Návštěvník
Návštěvník
Příspěvky: 43
Registrován: 19 srp 2012 23:54

Re: Zpomalení počítače, stažení havěti

#7 Příspěvek od matesak »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Matyáš at 2015-07-01 14:17:25
Microsoft Windows 8.1 Pro
System drive C: has 54 GB (35%) free of 153 GB
Total RAM: 2047 MB (66% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:17:47, on 1. 7. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Normal

Running processes:
C:\WINDOWS\system32\taskhostex.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20905_x86__8wekyb3d8bbwe\LiveComm.exe
C:\WINDOWS\system32\backgroundTaskHost.exe
C:\WINDOWS\system32\GWX\GWX.exe
C:\Windows\System32\RuntimeBroker.exe
C:\WINDOWS\system32\SearchFilterHost.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Windows\System32\skydrive.exe
C:\WINDOWS\system32\wbem\unsecapp.exe
C:\WINDOWS\system32\taskeng.exe
C:\Program Files\Microsoft Office\Office15\MsoSync.exe
C:\Users\Matyáš\Downloads\RSIT.exe
C:\Program Files\trend micro\Matyáš.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\System32\SettingSyncHost.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=s ... earchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=s ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_40\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~1\MIF5BA~1\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_40\bin\jp2ssv.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files\AMD AVT\bin\kdbsync.exe" aml
O4 - HKLM\..\Run: [USBToolTip] C:\PROGRA~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [BitTorrent] "C:\Users\Matyáš\AppData\Roaming\BitTorrent\BitTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\Matyáš\AppData\Roaming\Spotify\SpotifyWebHelper.exe"
O4 - HKCU\..\Run: [Sony PC Companion] "C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe" /Background
O4 - HKCU\..\Run: [Viber] "C:\Users\Matyáš\AppData\Local\Viber\Viber.exe" StartMinimized
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Spotify] "C:\Users\Matyáš\AppData\Roaming\Spotify\spotify.exe" -autostart -minimized
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\PROGRA~1\MIF5BA~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: En&queue current page with BID - file://C:\Program Files\Bulk Image Downloader\iemenu\iebidqueue.htm
O8 - Extra context menu item: Enqueue link target with BID - file://C:\Program Files\Bulk Image Downloader\iemenu\iebidlinkqueue.htm
O8 - Extra context menu item: Od&eslat do OneNotu - res://C:\PROGRA~1\MIF5BA~1\Office15\ONBttnIE.dll/105
O8 - Extra context menu item: Open &link target with BID - file://C:\Program Files\Bulk Image Downloader\iemenu\iebidlink.htm
O8 - Extra context menu item: Open current page with BID - file://C:\Program Files\Bulk Image Downloader\iemenu\iebid.htm
O8 - Extra context menu item: Open current page with BID Link Explorer - file://C:\Program Files\Bulk Image Downloader\iemenu\iebidlinkexplorer.htm
O9 - Extra button: Odeslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - Avast Software s.r.o. - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Avast Firewall (avast! Firewall) - Avast Software s.r.o. - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: FlexNet Licensing Service - Flexera Software LLC - C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Service KMSELDI - Unknown owner - C:\Program Files\KMSpico\Service_KMS.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files\Sony\Sony PC Companion\PCCService.exe

--
End of file - 7551 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\dcTl874qo6.job - C:\Users\Maty�\AppData\Roaming\dcTl874qo6.exe --c=IuLrxCdO7GXPLxG3Rplu9X/cbkLc0ZtzwNAdp/GPpW9JKV7J09FGJuh1IVm7oHVqKkLjjAj54SlxSwq1irOnjc/U9WrEnuekzc71EOAirZQhshoWKLrQFeW8R1KjKhjk93ls9kdhcbysAJPs54PeBhcloZxHm77ACp1Z9t1K9cASIzMQs0FTPQBVwrAhsVaaISjhHMBOg1gILv+McymLIK/8T+zkOvtbjjAQRjN8CX22AafSgGWHqq1rPcG9jI2B8Er9e9BltQwJKPOUcbSM2GJfTlSgOeYG5ZC0nSqEaZqNmzUS94Zhuksjl+8gvQL0gO5/1JOi9iPxJWni8i3F8g==

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-05-19 153768]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_40\bin\ssv.dll [2015-03-18 460712]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-06-24 565304]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MIF5BA~1\Office15\GROOVEEX.DLL [2015-05-13 1729752]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-18 172968]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2012-11-16 641704]
"AMD AVT"=Cmd.exe /c start AMD Accelerated Video Transcoding device initialization /min C:\Program Files\AMD AVT\bin\kdbsync.exe aml []
"USBToolTip"=C:\PROGRA~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe [2007-02-20 199752]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-06-24 5515496]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BitTorrent"=C:\Users\Matyáš\AppData\Roaming\BitTorrent\BitTorrent.exe [2015-06-29 1999976]
"Spotify Web Helper"=C:\Users\Matyáš\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2015-03-13 1959992]
"Sony PC Companion"=C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [2014-11-27 466144]
"Viber"=C:\Users\Matyáš\AppData\Local\Viber\Viber.exe [2015-02-25 776400]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2015-03-31 4557552]
"Spotify"=C:\Users\Matyáš\AppData\Roaming\Spotify\spotify.exe [2015-03-13 6611512]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iaioi2c.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.yuy2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"vidc.cvid"=iccvid.dll
"vidc.yvyu"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"vidc.uyvy"=msyuv.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-07-01 14:07:55 ----D---- C:\_OTM
2015-06-30 21:19:32 ----D---- C:\AdwCleaner
2015-06-30 15:12:16 ----D---- C:\rsit
2015-06-30 15:12:16 ----D---- C:\Program Files\trend micro
2015-06-30 15:05:55 ----HD---- C:\$WINDOWS.~BT
2015-06-24 21:48:02 ----D---- C:\WINDOWS\system32\vbox
2015-06-24 21:40:15 ----D---- C:\Users\Matyáš\AppData\Roaming\AVAST Software
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswVmm.sys
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswStm.sys
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswsp.sys
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswSnx.sys
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswRvrt.sys
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswRdr2.sys
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswMonFlt.sys
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswKbd.sys
2015-06-24 21:35:50 ----A---- C:\WINDOWS\system32\drivers\aswHwid.sys
2015-06-24 21:35:40 ----A---- C:\WINDOWS\system32\aswBoot.exe
2015-06-24 21:35:24 ----A---- C:\WINDOWS\avastSS.scr
2015-06-24 21:34:14 ----A---- C:\WINDOWS\system32\drivers\aswNdisFlt.sys
2015-06-24 21:30:39 ----D---- C:\Program Files\AVAST Software
2015-06-24 21:29:12 ----D---- C:\ProgramData\AVAST Software
2015-06-16 23:00:25 ----D---- C:\Program Files\Racing Turtle
2015-06-16 22:54:13 ----D---- C:\ProgramData\regid.2006-08.com.smartftp
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-utility-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-time-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-string-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-stdio-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-runtime-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-process-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-locale-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-heap-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-environment-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-convert-l1-1-0.dll
2015-06-16 22:51:46 ----A---- C:\WINDOWS\system32\api-ms-win-crt-conio-l1-1-0.dll
2015-06-16 22:51:45 ----A---- C:\WINDOWS\system32\ucrtbase.dll
2015-06-16 22:51:45 ----A---- C:\WINDOWS\system32\api-ms-win-crt-private-l1-1-0.dll
2015-06-16 22:51:45 ----A---- C:\WINDOWS\system32\api-ms-win-crt-math-l1-1-0.dll
2015-06-16 22:46:20 ----D---- C:\Users\Matyáš\AppData\Roaming\FileZilla
2015-06-16 22:45:44 ----D---- C:\Program Files\FileZilla FTP Client
2015-06-16 22:12:50 ----D---- C:\Program Files\62f75cf4-2258-44a0-87f2-611dd4d51e17
2015-06-16 20:51:26 ----D---- C:\Users\Matyáš\AppData\Roaming\03000200-1434480686-0500-0006-000700080009
2015-06-16 20:44:10 ----A---- C:\WINDOWS\prleth.sys
2015-06-16 20:44:10 ----A---- C:\WINDOWS\hgfs.sys
2015-06-16 20:11:39 ----D---- C:\Program Files\Seznam.cz
2015-06-16 20:08:51 ----D---- C:\Users\Matyáš\AppData\Roaming\Seznam.cz
2015-06-16 16:17:14 ----D---- C:\Output
2015-06-13 18:54:49 ----D---- C:\Users\Matyáš\AppData\Roaming\Sublime Text 2
2015-06-09 20:45:46 ----A---- C:\WINDOWS\system32\authz.dll
2015-06-09 20:45:45 ----A---- C:\WINDOWS\system32\rgb9rast.dll
2015-06-09 20:42:52 ----A---- C:\WINDOWS\system32\tquery.dll
2015-06-09 20:42:52 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2015-06-09 20:42:52 ----A---- C:\WINDOWS\system32\mssrch.dll
2015-06-09 20:42:51 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2015-06-09 20:42:51 ----A---- C:\WINDOWS\system32\mssvp.dll
2015-06-09 20:42:51 ----A---- C:\WINDOWS\system32\mssph.dll
2015-06-09 20:42:17 ----AC---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2015-06-09 20:37:25 ----A---- C:\WINDOWS\system32\win32k.sys
2015-06-09 20:37:22 ----A---- C:\WINDOWS\system32\rastapi.dll
2015-06-09 20:37:20 ----A---- C:\WINDOWS\system32\invagent.dll
2015-06-09 20:37:20 ----A---- C:\WINDOWS\system32\generaltel.dll
2015-06-09 20:37:20 ----A---- C:\WINDOWS\system32\devinv.dll
2015-06-09 20:37:20 ----A---- C:\WINDOWS\system32\appraiser.dll
2015-06-09 20:37:20 ----A---- C:\WINDOWS\system32\aepic.dll
2015-06-09 20:37:20 ----A---- C:\WINDOWS\system32\aeinv.dll
2015-06-09 20:37:20 ----A---- C:\WINDOWS\system32\acmigration.dll
2015-06-09 20:37:19 ----A---- C:\WINDOWS\system32\aepdu.dll
2015-06-09 20:35:28 ----A---- C:\WINDOWS\system32\msftedit.dll
2015-06-09 20:35:25 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-06-09 20:35:19 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-06-09 20:35:18 ----A---- C:\WINDOWS\system32\wininet.dll
2015-06-09 20:35:18 ----A---- C:\WINDOWS\system32\jscript9.dll
2015-06-09 20:35:17 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-06-09 20:35:17 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2015-06-09 20:35:17 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-06-09 20:35:16 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-06-09 20:35:16 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-06-09 20:35:15 ----A---- C:\WINDOWS\system32\jscript.dll
2015-06-09 20:35:15 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2015-06-09 20:35:14 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2015-06-09 20:35:14 ----A---- C:\WINDOWS\system32\dxtrans.dll
2015-06-09 20:35:14 ----A---- C:\WINDOWS\system32\actxprxy.dll
2015-06-09 20:35:13 ----A---- C:\WINDOWS\system32\mshtmled.dll
2015-06-09 20:35:13 ----A---- C:\WINDOWS\system32\iepeers.dll
2015-06-09 20:35:12 ----A---- C:\WINDOWS\system32\inetcomm.dll
2015-06-09 20:34:12 ----A---- C:\WINDOWS\system32\UtcResources.dll
2015-06-09 20:34:12 ----A---- C:\WINDOWS\system32\diagtrack.dll
2015-06-09 20:32:25 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2015-06-09 20:28:25 ----A---- C:\WINDOWS\system32\comctl32.dll
2015-06-09 20:28:21 ----A---- C:\WINDOWS\system32\puiobj.dll
2015-06-09 20:28:10 ----A---- C:\WINDOWS\system32\localspl.dll
2015-06-05 22:31:23 ----D---- C:\Program Files\xampp
2015-06-03 12:49:10 ----D---- C:\Program Files\Telerik
2015-06-03 12:42:33 ----D---- C:\ProgramData\Telerik
2015-06-03 12:41:05 ----D---- C:\Users\Matyáš\AppData\Roaming\Telerik

======List of files/folders modified in the last 1 month======

2015-07-01 14:11:23 ----D---- C:\WINDOWS\Prefetch
2015-07-01 14:07:56 ----D---- C:\WINDOWS\Tasks
2015-07-01 13:00:01 ----D---- C:\WINDOWS\system32\sru
2015-07-01 11:44:09 ----D---- C:\WINDOWS\Temp
2015-07-01 11:36:49 ----D---- C:\WINDOWS\system32\config
2015-07-01 11:29:45 ----D---- C:\WINDOWS\Microsoft.NET
2015-07-01 07:44:30 ----D---- C:\WINDOWS\AppReadiness
2015-06-30 22:04:58 ----D---- C:\WINDOWS\system32\NDF
2015-06-30 21:33:01 ----D---- C:\WINDOWS\system32\Tasks
2015-06-30 21:32:58 ----RD---- C:\WINDOWS\System32
2015-06-30 21:32:55 ----HD---- C:\ProgramData
2015-06-30 21:32:55 ----D---- C:\Program Files
2015-06-30 21:06:49 ----D---- C:\Users\Matyáš\AppData\Roaming\Spotify
2015-06-30 19:45:31 ----D---- C:\WINDOWS\inf
2015-06-30 14:59:08 ----D---- C:\WINDOWS\system32\Drivers
2015-06-29 22:22:47 ----D---- C:\Users\Matyáš\AppData\Roaming\BitTorrent
2015-06-29 21:05:46 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-06-29 20:12:21 ----D---- C:\Users\Matyáš\AppData\Roaming\DAEMON Tools Lite
2015-06-28 21:01:43 ----HD---- C:\Program Files\WindowsApps
2015-06-26 02:25:45 ----D---- C:\Users\Matyáš\AppData\Roaming\TS3Client
2015-06-25 23:07:01 ----SHD---- C:\WINDOWS\Installer
2015-06-25 23:06:58 ----SHD---- C:\Config.Msi
2015-06-25 23:06:58 ----D---- C:\Program Files\LogMeIn Hamachi
2015-06-25 23:05:04 ----SHD---- C:\System Volume Information
2015-06-25 13:10:39 ----D---- C:\WINDOWS
2015-06-25 12:33:08 ----D---- C:\Program Files\AdDuplex
2015-06-24 21:36:40 ----D---- C:\WINDOWS\system32\DriverStore
2015-06-24 21:35:43 ----D---- C:\WINDOWS\WinSxS
2015-06-24 14:35:49 ----D---- C:\Users\Matyáš\AppData\Roaming\Ukolnicek
2015-06-24 11:57:47 ----D---- C:\WINDOWS\CbsTemp
2015-06-23 10:33:48 ----D---- C:\Users\Matyáš\AppData\Roaming\Audacity
2015-06-20 05:02:45 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2015-06-19 17:46:10 ----D---- C:\WINDOWS\debug
2015-06-19 17:40:05 ----D---- C:\Users\Matyáš\AppData\Roaming\ViberPC
2015-06-16 22:54:29 ----D---- C:\Program Files\SmartFTP Client
2015-06-16 22:51:32 ----D---- C:\WINDOWS\SoftwareDistribution
2015-06-16 22:51:18 ----D---- C:\ProgramData\Package Cache
2015-06-16 22:21:23 ----D---- C:\Program Files\AMD APP
2015-06-16 20:51:52 ----D---- C:\WINDOWS\system32\drivers\etc
2015-06-16 20:21:49 ----D---- C:\Program Files\Mozilla Firefox
2015-06-14 00:46:28 ----RD---- C:\Users
2015-06-11 17:09:50 ----RSD---- C:\WINDOWS\assembly
2015-06-11 17:06:45 ----D---- C:\ProgramData\Microsoft Help
2015-06-10 19:45:58 ----D---- C:\WINDOWS\rescache
2015-06-10 00:07:57 ----RD---- C:\WINDOWS\ToastData
2015-06-10 00:07:55 ----D---- C:\WINDOWS\system32\CompatTel
2015-06-10 00:07:55 ----D---- C:\WINDOWS\system32\appraiser
2015-06-10 00:07:55 ----D---- C:\WINDOWS\PolicyDefinitions
2015-06-10 00:07:55 ----D---- C:\WINDOWS\apppatch
2015-06-10 00:07:54 ----D---- C:\WINDOWS\system32\cs-CZ
2015-06-10 00:07:54 ----D---- C:\Program Files\Internet Explorer
2015-06-10 00:06:04 ----A---- C:\WINDOWS\win.ini
2015-06-09 23:01:40 ----D---- C:\WINDOWS\system32\MRT
2015-06-09 21:26:02 ----A---- C:\WINDOWS\system32\MRT.exe
2015-06-09 20:07:08 ----D---- C:\WINDOWS\system32\catroot2
2015-06-08 11:07:06 ----SD---- C:\Users\Matyáš\AppData\Roaming\Microsoft
2015-06-03 12:56:45 ----D---- C:\Program Files\Microsoft SQL Server

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswNdisFlt;@oem68.inf,%AfwDescriptionFree%;Avast! Firewall Driver; C:\WINDOWS\system32\DRIVERS\aswNdisFlt.sys [2015-06-24 271248]
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2015-06-24 49904]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2015-06-24 209048]
R1 aswKbd;aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [2015-06-24 26096]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2015-06-24 81728]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2015-06-24 787760]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2015-06-26 428120]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2014-04-30 57344]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2015-06-24 24144]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2015-06-24 74976]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2015-06-24 106912]
R2 giveio;giveio; \??\C:\WINDOWS\system32\giveio.sys [1996-04-03 5248]
R2 speedfan;speedfan; \??\C:\WINDOWS\system32\speedfan.sys [2012-12-29 24184]
R2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [2015-06-24 220752]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2012-06-19 10071040]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2012-06-19 290304]
R3 dtlitescsibus;@oem64.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2015-04-13 25104]
R3 MarvinBus;@oem12.inf,%MarvinBus.SVCDESC%;Pinnacle Marvin Bus; C:\WINDOWS\System32\drivers\MarvinBus.sys [2005-09-23 171520]
R3 netr73;@netr73.inf,%General.Service.DispName%;RT73 USB - ovladač rozšiřitelné karty pro bezdrátovou síť LAN; C:\WINDOWS\system32\DRIVERS\netr73.sys [2013-06-18 564800]
R3 SensorsSimulatorDriver;@oem6.inf,%WudfSensorsSimulatorDriverDisplayName%;UMDF Reflector service for SensorsSimulatorDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2014-10-29 190976]
R3 tap0901;@oem63.inf,%DeviceDescription%;TAP-Windows Adapter V9; C:\WINDOWS\system32\DRIVERS\tap0901.sys [2013-08-22 35288]
R3 ULI526X;@oem2.inf,%ULIPCI.Service.DispName%;ULi M526X 10/100 Ethernet Controller Driver; C:\WINDOWS\system32\DRIVERS\ULILAN32.SYS [2006-06-30 30720]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2014-04-30 30720]
S3 ggflt;@oem62.inf,%SvcFltDesc%;SOMC USB Flash Driver Filter; C:\WINDOWS\System32\drivers\ggflt.sys [2015-02-24 13528]
S3 ggsomc;@oem62.inf,%SvcDesc%;SOMC USB Flash Driver; C:\WINDOWS\System32\drivers\ggsomc.sys [2015-02-24 26328]
S3 GPIO;@iaiogpio.inf,%GPIO.SVCDESC%;Intel SoC GPIO Controller Driver; C:\WINDOWS\System32\drivers\iaiogpio.sys [2013-07-23 22016]
S3 Hamachi;LogMeIn Hamachi Virtual Miniport); C:\WINDOWS\system32\DRIVERS\Hamdrv.sys [2015-03-30 37128]
S3 iaioi2c;@iaioi2c.inf,%Driver_Service.Desc%;Intel(R) Atom(TM) Processor I2C Controller Service; C:\WINDOWS\System32\drivers\iaioi2c.sys [2013-07-23 61936]
S3 WinUsb;@oem66.inf,%ServiceDesc%;WinUSB Driver; C:\WINDOWS\System32\drivers\WinUsb.sys [2013-08-22 64000]
S4 WinDivert1.1;WinDivert1.1; \??\C:\Program Files\KMSpico\WinDivert.sys [2015-01-20 30256]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-06-24 343336]
R2 avast! Firewall;Avast Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [2015-06-24 107448]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\WINDOWS\System32\svchost.exe [2014-10-29 33088]
R2 IpOverUsbSvc;Windows Phone IP over USB Transport (IpOverUsbSvc); C:\Program Files\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [2014-04-17 22768]
R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2014-02-21 114368]
R3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [2015-06-24 3207800]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-07 116648]
S2 Service KMSELDI;Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [2013-12-11 1050904]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2014-12-11 315496]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-06-23 268464]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2013-08-10 45664]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-10-29 33088]
S3 c2wts;@%ProgramFiles%\Windows Identity Foundation\v3.5\c2wtsres.dll,-1000; C:\Program Files\Windows Identity Foundation\v3.5\c2wtshost.exe [2015-01-21 5632]
S3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [2015-03-31 1023728]
S3 FlexNet Licensing Service;FlexNet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe [2015-02-15 1074480]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 fussvc;Windows App Certification Kit Fast User Switching Utility Service; C:\Program Files\Windows Kits\8.1\App Certification Kit\fussvc.exe [2014-02-19 140800]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-07 116648]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2014-08-13 136120]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 150600]
S3 Sony PC Companion;Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [2013-02-04 155824]
S3 Te.Service;Te.Service; C:\Program Files\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe [2013-08-21 91136]
S3 VsEtwService120;Visual Studio ETW Event Collection Service; C:\Program Files\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe [2014-07-23 73360]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119357
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zpomalení počítače, stažení havěti

#8 Příspěvek od Rudy »

Ještě to zkusíme jednou tímto skriptem:
:files
C:\WINDOWS\tasks\dcTl874qo6.job
C:\Users\Maty�\AppData\Roaming\dcTl874qo6.exe

:commands
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Před skenem vypněte antivir a po něm restartujte PC. Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět