Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Stále se mi nabízejí k instalaci "My Browser" a spol.

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
JanZRokycan
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 27 říj 2015 18:42

Stále se mi nabízejí k instalaci "My Browser" a spol.

#1 Příspěvek od JanZRokycan »

Já pitomec si chtěl stáhnout Downloader pro PirateBay (v Google byl označen jako prověřený a neškodný) a místo toho došlo k zpacifikování Firefoxu a nacpal se mi nějaký My Browser. Snažil jsem se všechny podezřelé programy zlikvidovat pomoví REVO uninstalator, ale po chvilce se zase cpalo do compu :(


Logfile of random's system information tool 1.10 (written by random/random)
Run by uzivatel at 2015-10-31 14:13:57
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 44 GB (38%) free of 114 GB
Total RAM: 3007 MB (81% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:14:01, on 31.10.2015
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\CCF317A0-1446287878-11DC-8063-001BFC862955\jnsfBC.tmp
C:\Program Files\CCF317A0-1446287878-11DC-8063-001BFC862955\hnszBE.tmp
C:\Program Files\SFK\SSFK.exe
C:\WINDOWS\system32\svchost.exe
C:\Documents and Settings\All Users\Data aplikací\lWMiniProl\WMiniPro.exe
C:\Program Files\CCF317A0-1446287878-11DC-8063-001BFC862955\knsaA7.tmpfs
C:\WINDOWS\system32\wbem\unsecapp.exe
C:\Program Files\MyBrowser 1.0.2V31.10\5ca6a3c0-5b98-45e9-a72f-99a94105cdae-10.exe
C:\Program Files\MyBrowser 1.0.2V31.10\5ca6a3c0-5b98-45e9-a72f-99a94105cdae-1-6.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\SFK\SSFK.exe
C:\Documents and Settings\uzivatel\Plocha\RSIT.exe
C:\Program Files\trend micro\uzivatel.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\WINDOWS\JM\JMInsIDE.exe
O4 - HKLM\..\Run: [JMB36X Configure] C:\WINDOWS\system32\JMRaidSetup.exe boot
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [uTorrent] "C:\Documents and Settings\uzivatel\Data aplikací\uTorrent\utorrent.exe"
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/200 ... oader5.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) - globalUpdate - C:\Program Files\globalUpdate\Update\globalupdate.exe
O23 - Service: globalUpdate Update Service (globalUpdatem) (globalUpdatem) - globalUpdate - C:\Program Files\globalUpdate\Update\globalupdate.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Area Communication (pokorugi) - Unknown owner - C:\Program.exe (file missing)
O23 - Service: Table SIM Card (qymylofy) - Unknown owner - C:\Program.exe (file missing)
O23 - Service: SSFK - TODO: <???> - C:\Program Files\SFK\SSFK.exe
O23 - Service: WdsManPro Service (WdsManPro) - DTools LIMITED - C:\Documents and Settings\All Users\Data aplikací\lWMiniProl\WMiniPro.exe
O23 - Service: Web Directory Visit (zumejiwu) - Unknown owner - C:\Program.exe (file missing)

--
End of file - 6147 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\08d47c20-5df0-42b6-a3b0-f77cb968d1a2-1-6.job - C:\Program Files\CinemaPlus-3.2cV25.10\08d47c20-5df0-42b6-a3b0-f77cb968d1a2-1-6.exe /rawdata=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
C:\WINDOWS\tasks\08d47c20-5df0-42b6-a3b0-f77cb968d1a2-1-7.job - C:\Program Files\CinemaPlus-3.2cV25.10\08d47c20-5df0-42b6-a3b0-f77cb968d1a2-1-7.exe /rawdata=Q5oaxX9EzBduXa8xqYMJwEo5B+5cm8BNgrMQBrKwGuW+z5HBPP/bGz8Sa3ecvqgiF8j3LTQItiA4K6Qtw828BFlaWX9Ae/Lj0stsn1zxwgOSreEBore8Wbvtxr60ZtUGIyvdVrIzoDSY3RXuk2SHBZTSb837AMKi6HCkKP9Bx9yZnkt/JiymyaBry0LuO3RVD9nWQFgYKtKTCNUuUSlZFO5sFe16ncF0g7RITcssScDVFkfdHdsi5tMur/o2b4Tg3SkfRGBCfKqv1s0xAU1ufUxRMBoXfNhOVleuhTIFibuqQbsEuzXP4oH7bINfWuuxdXocWz4SiLHzQpx8NuLy10g6mpzNRfHjfvXCe9xlaJR+uogIPf+8wVgBPV30TnfGgxpjTgBsDmydec7+Bgdfhgi2q5f8oZB+FHyh4sMMdhkF6oYsdrShn2kccw54eSJbUCVTutkCO49F+JW3uhDDGkIJ6UevDotdZ7dXK2AANAl8cmtJQDBQyZDpylhYmnvmCdFWcE9yq5omNcl+dNKBFHxzbndrxuzByz1QHPEUw8wfxxu3iPQBQr7EsQXB7YHr8N7BRPE0IgnDVKu64xyPcGC/jtsh219OhofCY1rKG24dvVN4l9pYdtFlqVpXa4fZ9h9UXo+d1XMx7eSr4Tg3nIZro0dq55nEtpJfhMzfLk6PfRz6VW5RK2x74kQNL9i3xZpjBl1fGoY2WkNVu/FEid7rY0ttBjC06W7xpMD2U27BnPehLFonDArzio6ebNUSs9KBD2K+BQQW8ic+AxVWX2befYk5+UzlQOK093v294MGkckcTvIObeqg5ZFvmcv5i0OlZlKEMZyGA3W6PYeQEUGdK9oLSvDdqT2I7JGpG6A0pQqag6HLH7Tv3dE1ILr+K6cDMettmmafyFOdSyjWSEtZho4RDjz1TzSsBVtgphsph5cH3+lMZE/0sxLJhyBiQDI7mkjSje8j3Vc56x34HSpDf5UHVuNuD3SwbZ8MzJOczom/PQzIk2iIWda+MD3Hpu33qRDFScruxYO0wCtWi7YUP5t/LuPDg/IXXIxWvl9rFAGH00gKUyUZONwD5B2pPWuSfKWvqhtnzG0/P5cWxi4OyL9SavcoHoB5ZQfPjEUDhIma1qfZETMy9Y+B+4flJ3D+20hxJWejqPMYdVXA5u/HhwRgLhJKI81yJBPjhLSIjnt9thJqCJDfXG4iV7n1+ykpOYN9Q1ZdoD9OiR7syOQTWVQErvqpis9YAtMa8sFX/Opz3QhwjZgw2XMAnlT4K0xB+NmylbqRqciM8EcSCd0y+R5l4FxuiBY4TGFmV8spmvg/2zyxnt/jDq3tAeFUhbac8wLxaI6+4g+doX2nbg==
C:\WINDOWS\tasks\08d47c20-5df0-42b6-a3b0-f77cb968d1a2-10_user.job - C:\Program Files\CinemaPlus-3.2cV25.10\08d47c20-5df0-42b6-a3b0-f77cb968d1a2-10.exe /rawdata=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
C:\WINDOWS\tasks\08d47c20-5df0-42b6-a3b0-f77cb968d1a2-4.job - C:\Program Files\CinemaPlus-3.2cV25.10\08d47c20-5df0-42b6-a3b0-f77cb968d1a2-4.exe /rawdata=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
C:\WINDOWS\tasks\08d47c20-5df0-42b6-a3b0-f77cb968d1a2-5.job - C:\Program Files\CinemaPlus-3.2cV25.10\08d47c20-5df0-42b6-a3b0-f77cb968d1a2-5.exe /rawdata=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
C:\WINDOWS\tasks\5ca6a3c0-5b98-45e9-a72f-99a94105cdae-1-6.job - C:\Program Files\MyBrowser 1.0.2V31.10\5ca6a3c0-5b98-45e9-a72f-99a94105cdae-1-6.exe /rawdata=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
C:\WINDOWS\tasks\5ca6a3c0-5b98-45e9-a72f-99a94105cdae-1-7.job - C:\Program Files\MyBrowser 1.0.2V31.10\5ca6a3c0-5b98-45e9-a72f-99a94105cdae-1-7.exe /rawdata=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
C:\WINDOWS\tasks\5ca6a3c0-5b98-45e9-a72f-99a94105cdae-10_user.job - C:\Program Files\MyBrowser 1.0.2V31.10\5ca6a3c0-5b98-45e9-a72f-99a94105cdae-10.exe /rawdata=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
C:\WINDOWS\tasks\5ca6a3c0-5b98-45e9-a72f-99a94105cdae-4.job - C:\Program Files\MyBrowser 1.0.2V31.10\5ca6a3c0-5b98-45e9-a72f-99a94105cdae-4.exe /rawdata=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
C:\WINDOWS\tasks\5ca6a3c0-5b98-45e9-a72f-99a94105cdae-5.job - C:\Program Files\MyBrowser 1.0.2V31.10\5ca6a3c0-5b98-45e9-a72f-99a94105cdae-5.exe /rawdata=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
C:\WINDOWS\tasks\9VQQfClJVTvwuwju.job - C:\Documents and Settings\uzivatel\Data aplikac\9VQQfClJVTvwuwju.exe --c=PIoZJ5ForljM9URR8/3pxxGHZW/LzKXMivAl2mSfD5bzj3yU6/RspeQJyuR7B5s5kfSJQspGMNwHq9V4gcGu3A2jvs9tmhcnVA5/xeZWe1lTov7rHsoVTWSQRV6k9DhMMPGT8s7iHdTDXUfqBnt+FY4t8mygFNO5SAqNb7+poAxw7zZkkkLQ16fKoUKD0RPRaczLaSA7rSsvEWzxdriRBYj2JXrzulIE2w7G+t5U4HMRrtxy/VAsiMeNfNCF9xsI6vgE4I9KlzMqTbgHFfrRLQVIIqzFW7DS8I+ZwAJGc0PBTYEv55AIxODBeEINwtYxhWu8pg36VDnJrJFMocMwlQ==
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\avast! Emergency Update.job - C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
C:\WINDOWS\tasks\avB3puERpQhwA.job - C:\Documents and Settings\uzivatel\Data aplikac\avB3puERpQhwA.exe --c=k2TrwLwLgru5vZr4YRLseeOCPS1GvRzcECvZvC0/KrCejMvDU3ErBIP4LEMKLkLCUOphG8anCiyUNhXf8zMnfNBil8xZBYyr9sqhcJfPUPceV1OQ8zpnh1LqoPF5Ft4N7RLhruqrbxCzW4Oh4ZD71r5ZU/19YBAkkdj79gpqpONmH7bMI2W7lt+GdbYBZYgnMHcov8H5F+8OOLDBXsxa68VauoWtHyTlPOS123vhYaJNMlW1MDFMwty+++Rea5XYHttbvoqSkU/I16Da3LYLSx9L1VizlH612EO3J5CrwzpjxYOvXK/td1A/AzNoiWpWI2Dm5uV6Ey4j3FT5WFUsFg==
C:\WINDOWS\tasks\Crossbrowse.job - C:\Program Files\Crossbrowse\Crossbrowse\Application\utility.exe /rawdata='lZqRL59GFt8BW8nOPvt1tDzGxw2orTQz3gkZ4qbR2ZG2VCAAnk2xX1+3o7AoYRT0da4k0bf8nOfRjVcqeKSG4d51eZhKmEcPAwncJviOuKOuU2d6CraT7WWRFyTjDl2MsS8PssMiSVx5yuEmKlfkWuPRp7DSRaacfYU+iadkBHeCmwEk/toleXMZHlbiTnXHF5p7KdNu2uT9TsADnjbrQPLaRRscifs/CJKWsGXpt5a6J2Y9dc+9VpwMhBSuXm6SBgC+5yC2DkTbKGWhguVw+KXf634dYTZbUoypqdX/2K/JuZ8Lg3vQ+p0Jzv9M8cmYe/DvnX6A+nKB5fD8TF20Fw=='
C:\WINDOWS\tasks\efba7dd2-bf83-415d-83c6-4595239075a3-1-6.job - C:\Program Files\CinemaPlus-3.2cV23.10\efba7dd2-bf83-415d-83c6-4595239075a3-1-6.exe /rawdata=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
C:\WINDOWS\tasks\efba7dd2-bf83-415d-83c6-4595239075a3-1-7.job - C:\Program Files\CinemaPlus-3.2cV23.10\efba7dd2-bf83-415d-83c6-4595239075a3-1-7.exe /rawdata=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
C:\WINDOWS\tasks\efba7dd2-bf83-415d-83c6-4595239075a3-10_user.job - C:\Program Files\CinemaPlus-3.2cV23.10\efba7dd2-bf83-415d-83c6-4595239075a3-10.exe /rawdata=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
C:\WINDOWS\tasks\efba7dd2-bf83-415d-83c6-4595239075a3-4.job - C:\Program Files\CinemaPlus-3.2cV23.10\efba7dd2-bf83-415d-83c6-4595239075a3-4.exe /rawdata=pMtZS9hUsm3dN9Vqbt1MG2Vo4PM/NeuKt4A7TClBgpgRxTP8ZwLGistHoyuong5ASNVArmsaGHlX8j3Lep8OXeTpgkuBCVbHozOtp7iE9Qo0mVRGinxmCbrHWcoKbaTQo9xLsdyp1BjTq70PuWmS6ZhbPp6Zblk+97ddDy8OFLFHmm/jCK0/Mg0OmfBpC1Dz45k++kGtVuLdugEr7Upgc6P7aMxyCTWirCKGkvysyJtYjDVyjmPU5iRN3XN2FFRLnLRcPmFtUbMrELvI7g6Ii61qCalGwmBEZgEQpelviXICQwomWmQupe2R7OyUXFyY+sqy/eaBozyKgVtRXpRKtV/PuQWJ6o4Rungsuk8VXjs5Gu8JryNjluHCWL/76fD5esKJhXqSssBHKuVueuvccz5hDvHcHvQbu/RU2yUp7KBONbs9ivEXE5kDR/ev5CcFzrZHDoX8WGgET/JlK9WCXhZjsqjIoZ0sYkoLFFR8hyuI3+ZM2h3WOK5fj6WlCDGVcpcPxpvqKVT97un258saQ4PF7KOTSL79QrsFjqPj1o4ze0x+5NWDfU6i9XLHkrSe5FUzgQJKHZE6bedQb25C3zrzQ4cqHuBNosQfJb7LlOjsZgkEmONRA1fhMITdMLWOvHbSWxcMop3L9cvfLhECwmzmGYfcDahzaRFSU3guyZFhZ9sR4pg9VoiaW8s3aOuaaEbQXgs47HvEOh+l7L5wTgWc6EogSeJXVtScfI/yxAMXIMSqOzoubXBHvkuCsorKbUecdjcfgDLI+FK/8JuUobl97iYNAxCals11r/0yQw61cMejBt18LUt/TottTCzjvPhqkmID4JoXYTL+4S2cG4VqYIWViNECo/ZjnhHBsaEY41B6VqvEDxLYAVHp47987tOy7N+zN1oacFaV0gVKAOww5QpzDbLWu7OZXum4wPF6BHAeq1a1+1VTXc2ux8R59cjxUNro+0sDduf4MdBIPsjQ5UPuR23IR4secJ8eeeGpBH8qBMzclHnwddM7LrqdMohJVmV4nHBF/mA3va00JMjIwCkYhJbf4b3Jh9VlK9ELSSqnp65271HAvSPE5rianu2mmU9pZPk1SqfylbbbpHMXL8eLnp5d7qUpzMduzA+pwIBoYXuBotFv9OU/g7Xtbw76sbyCUgx5DyMWujmLYWlG9owEasywoX46r5SVaKw4cFPhgfTZRC++ioyAwI4s8dafua0R/jFJVClWyDxQejd7D+u6I3CKmAwO/vT8x+OPkRKnUCBqp2vlu4WZaZ23NvO3joZSRzJhnYt/CRoX5YpO7n0Shi3QJnlsgyDuyQ3Jsg6vYvaXcQr8iFhffY1cNzKF70GF0VBp7sb3EWT2nF6J3lEuAiiGK7vPk3e+/eXh1jMki9Kpzv2aMsBlZCAr1QKUX3UuLOvxlukekfk+9yRfWCIOQ+2RGPFcW2j98uJue38Qp4TaT4kmcGqmTUxaYRNzRMYueZXRkTRzEjhkmF6vEDbPLx4PvX2DMqg6Gql1bZWNsCqu81MkqPFuTTCmwUt41TQxtTYGN9Bidu4sr3cZvR1LZmqGfIhm57+/c68S+OtDg1K/ttDsapqiRUIAc9gi+f48B9gyyQfDcZXH6g0E17DqgvuvPRb9d2uf8cT0MSWkp5S1/2N08gBVCefsLX+fr2t7WJKNZhCrfXNwmfbw/FG8bZEBQqkD5Z5h2I6eAeXdUQdozGkw38YJoAOQ7LfAxWiw/vM1KEJj4D0fpHWbhwq0W9CT0/YwZcLC+8KERW3sqYpPPBs0fEM4BaUmN5oQbGCSLoHPQiO6mXp8cFe/qOuWpwXK1IGYzoMgiKduWYvKZXSuxH/rD3ynntNn6TlNrI/6C3G1JVAzSZQGekZFUemhFG3gw6XoqqpPlHj3HxQKsAf2dvIm7e1/U4NB3jf3JJ1IC+pPETmExPA4krNheQ+eEN1fqUIGurCAqyFGODQr87IEb0mavsI4E65QAnd1mV8dcsmhpEh4ntt9whbOai5kHn2JdS4Cxjq8G2iuHAVRxazyYTd9SfqFbBWI
C:\WINDOWS\tasks\efba7dd2-bf83-415d-83c6-4595239075a3-5.job - C:\Program Files\CinemaPlus-3.2cV23.10\efba7dd2-bf83-415d-83c6-4595239075a3-5.exe /rawdata=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
C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineCore.job - C:\Program Files\globalUpdate\Update\globalupdate.exe /c
C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineUA.job - C:\Program Files\globalUpdate\Update\globalupdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\MyBrowser.job - C:\Program Files\MyBrowser\MyBrowser\Application\utility.exe /rawdata='u4XO2UeguMSOGrEu8HBNoGh+rEVM4InHAFG+S1Xn9LWqk1tkzGlq3Vt/RLOOHZbWZf8BNl2yJDF5nUujkEPJWQFvGLG8JQB7v6hDQSWQDRYZOJ/4BtlAgK1ZFkE5a3bffreGoMaYmFpCdeELQqImCl/CblsIC/A8+ayJaEVobct1glN38AQ4670f6zLaUkDWR1WEia2VgW/tIU0Y6o6+jatFJikFfzyf8+HIMlIvAp1+9JzOzxxCCUWOiXttxi2MESBWX+waMYuSBnvsPYw8ZEfeSXhCV2hrujzTpHBEp45hvzTHvOCgS0w7CHpW6lU4US5IwtRU0ETjo28C+0upRQ=='
C:\WINDOWS\tasks\QtRpgbvDMmV36JALjuPi.job - C:\Documents and Settings\uzivatel\Data aplikac\QtRpgbvDMmV36JALjuPi.exe --c=rH2zdzw0prBRMsFTjRwx96Pb8KY232MZGrIMrHnIqJLzUPzFDm+k6T7q1VWvponAvncMNGJSGQzvCBx4LBV7w1uoIK1qM1ocegyd7A4uEAz5618SYxRWC0x+WYsVaoDDGMWBUyh95ITuzD4kjw0RAONueyx6FK8V2Fj3YTWSQVgc1nkUWjmfwJLFSeLRTx2IzNilaR7rg3jdYQGnwG+ZoO4rTfz5ZMMQxodRbw95ra3jQ1DqiKf7d8GpK9IGvSQIcujJCOVOtoZ4IjYjQp899XCwidcQ7U2zU5AH8Vdjl+Xm0mId0EZMFjWBkXvW/KOi5B4MJVkh7tw96G3Gvvo5sA==
C:\WINDOWS\tasks\User_Feed_Synchronization-{79D0B19C-05FC-4F37-8300-D83CFD8BCC1A}.job - C:\WINDOWS\system32\msfeedssync.exe sync

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\2sjc8kxs.default

prefs.js - "browser.startup.homepage" - "about:home"

"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 19.0.0.226 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_19_0_0_226.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.79.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.79.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10]
"Description"=globalUpdate Update
"Path"=C:\Program Files\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4]
"Description"=globalUpdate Update
"Path"=C:\Program Files\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\2sjc8kxs.default\extensions\
6a1a03975fde4c8690f6b883c36bc1@7d88519bfe704d8cae3851239.com
d4db60df25f14dae9dd18@185c395f9e794c9ab86be3eb.com

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2015-07-08 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-10-31 559624]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2015-07-08 171944]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"JMB36X IDE Setup"=C:\WINDOWS\JM\JMInsIDE.exe [2006-10-30 36864]
"JMB36X Configure"=C:\WINDOWS\system32\JMRaidSetup.exe [2006-10-30 1953792]
"SoundMAXPnP"=C:\Program Files\Analog Devices\Core\smax4pnp.exe [2006-12-18 868352]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-10-31 6134544]
"NUSB3MON"=C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [2011-09-16 115048]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"uTorrent"=C:\Documents and Settings\uzivatel\Data aplikací\uTorrent\utorrent.exe [2015-02-22 416168]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=0
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=255
"NoDrives"=0
"HonorAutoRunSetting"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\InterVideo\DVD6\WinDVD.exe"="C:\Program Files\InterVideo\DVD6\WinDVD.exe:*:Enabled:WinDVD"
"C:\Program Files\ICQ6\ICQ.exe"="C:\Program Files\ICQ6\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\totalcmd\TOTALCMD.EXE"="C:\Program Files\totalcmd\TOTALCMD.EXE:*:Enabled:Total Commander 32 bit international version, file manager replacement for Windows"
"C:\WINDOWS\system32\winver.exe"="C:\WINDOWS\system32\winver.exe:*:Enabled:winver"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\Sprite Software\Sprite Backup\spriteservice.exe"="C:\Program Files\Sprite Software\Sprite Backup\spriteservice.exe:*:Enabled:Sprite PC Service"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\ICQ7.5\ICQ.exe"="C:\Program Files\ICQ7.5\ICQ.exe:*:Enabled:ICQ"
"C:\Program Files\Pinnacle\Studio 15\Programs\RM.exe"="C:\Program Files\Pinnacle\Studio 15\Programs\RM.exe:*:Enabled:Render Manager"
"C:\Program Files\Pinnacle\Studio 15\Programs\Studio.exe"="C:\Program Files\Pinnacle\Studio 15\Programs\Studio.exe:*:Enabled:Studio"
"C:\Program Files\Pinnacle\Studio 15\Programs\umi.exe"="C:\Program Files\Pinnacle\Studio 15\Programs\umi.exe:*:Enabled:umi"
"C:\Documents and Settings\uzivatel\Data aplikací\uTorrent\utorrent.exe"="C:\Documents and Settings\uzivatel\Data aplikací\uTorrent\utorrent.exe:*:Enabled:µTorrent"
"C:\Program Files\Mozilla Firefox\firefox.exe"="C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Firefox (C:\Program Files\Mozilla Firefox)"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"vidc.VP60"=vp6vfw.dll
"vidc.VP61"=vp6vfw.dll
"vidc.xvid"=xvidvfw.dll
"vidc.ffds"=ff_vfw.dll
"vidc.vp62"=vp6vfw.dll
"msacm.ac3filter"=ac3filter.acm
"msacm.divxa32"=DivXa32.acm
"msacm.lameacm"=LameACM.acm
"msacm.vorbis"=vorbis.acm

======List of files/folders created in the last 1 month======

2015-10-31 14:13:57 ----D---- C:\rsit
2015-10-31 12:21:00 ----D---- C:\Program Files\CrystalDiskInfo
2015-10-31 12:20:07 ----D---- C:\Program Files\MyBrowser
2015-10-31 11:52:16 ----D---- C:\Program Files\globalUpdate
2015-10-31 11:52:08 ----D---- C:\Program Files\MyBrowser 1.0.2V31.10
2015-10-31 11:50:55 ----D---- C:\Program Files\Crossbrowse
2015-10-31 11:41:03 ----D---- C:\Program Files\SFK
2015-10-31 11:40:58 ----D---- C:\Documents and Settings\All Users\Data aplikací\lWMiniProl
2015-10-31 11:40:58 ----A---- C:\Documents and Settings\All Users\Data aplikací\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat
2015-10-31 11:37:58 ----D---- C:\Program Files\CCF317A0-1446287878-11DC-8063-001BFC862955
2015-10-31 11:36:46 ----D---- C:\Program Files\CinemaPlus-3.2cV25.10
2015-10-31 10:13:25 ----D---- C:\Program Files\Mozilla Firefox
2015-10-31 09:07:14 ----N---- C:\WINDOWS\system32\spmsgXP_2k3.dll
2015-10-31 09:06:59 ----HDC---- C:\WINDOWS\$NtUninstallWdf01009$
2015-10-31 09:06:21 ----A---- C:\WINDOWS\system32\drivers\aswStmXP.sys
2015-10-31 09:06:17 ----A---- C:\WINDOWS\system32\aswBoot.exe
2015-10-31 09:06:10 ----A---- C:\WINDOWS\avastSS.scr

======List of files/folders modified in the last 1 month======

2015-10-31 14:13:58 ----D---- C:\Program Files\trend micro
2015-10-31 14:13:49 ----D---- C:\Documents and Settings\uzivatel\Data aplikací\uTorrent
2015-10-31 13:50:02 ----D---- C:\WINDOWS\Prefetch
2015-10-31 13:47:33 ----D---- C:\WINDOWS\system32
2015-10-31 13:30:01 ----D---- C:\WINDOWS\Microsoft.NET
2015-10-31 13:16:11 ----D---- C:\WINDOWS\Temp
2015-10-31 13:11:18 ----A---- C:\WINDOWS\SchedLgU.Txt
2015-10-31 12:38:12 ----RD---- C:\Program Files
2015-10-31 12:21:48 ----SD---- C:\WINDOWS\Tasks
2015-10-31 12:21:40 ----SHD---- C:\WINDOWS\Installer
2015-10-31 12:21:40 ----D---- C:\Program Files\Common Files
2015-10-31 12:06:07 ----D---- C:\Documents and Settings\uzivatel\Data aplikací\eM Client
2015-10-31 12:04:41 ----RSD---- C:\WINDOWS\assembly
2015-10-31 11:46:34 ----D---- C:\Program Files\Mozilla Maintenance Service
2015-10-31 11:38:25 ----D---- C:\WINDOWS\system32\drivers\etc
2015-10-31 09:37:40 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2015-10-31 09:09:33 ----D---- C:\WINDOWS
2015-10-31 09:08:37 ----D---- C:\WINDOWS\system32\drivers
2015-10-31 09:07:18 ----HD---- C:\WINDOWS\inf
2015-10-31 09:06:28 ----D---- C:\WINDOWS\system32\CatRoot2
2015-10-31 08:51:03 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2015-10-31 49776]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2015-10-31 208664]
R0 giveio;giveio; C:\WINDOWS\system32\giveio.sys [1996-04-03 5248]
R0 JGOGO;JMicron Hot-Plug Driver; C:\WINDOWS\system32\DRIVERS\JGOGO.sys [2006-02-07 6912]
R0 JRAID;JRAID; C:\WINDOWS\system32\DRIVERS\jraid.sys [2006-10-30 43648]
R0 sfdrv01;StarForce Protection Environment Driver (version 1.x); C:\WINDOWS\System32\drivers\sfdrv01.sys [2005-01-14 47616]
R0 sfhlp02;StarForce Protection Helper Driver (version 2.x); C:\WINDOWS\System32\drivers\sfhlp02.sys [2004-10-28 6656]
R0 speedfan;speedfan; C:\WINDOWS\system32\speedfan.sys [2012-12-29 24184]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2010-01-03 691696]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2015-10-31 55200]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2015-10-31 789296]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2015-10-31 434184]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2015-10-31 24016]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2015-10-31 76000]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\ADIHdAud.sys [2007-01-16 293888]
R3 AEAudio;AE Audio Service; C:\WINDOWS\system32\drivers\AEAudio.sys [2006-08-06 93952]
R3 aswStmXP;Avast StreamFilter Driver; C:\WINDOWS\system32\drivers\aswStmXP.sys [2015-10-31 157888]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2009-01-15 23848]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver; C:\WINDOWS\system32\DRIVERS\nusb3hub.sys [2012-05-10 75904]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver; C:\WINDOWS\system32\DRIVERS\nusb3xhc.sys [2012-05-10 168448]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2013-02-08 12648960]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2006-07-27 83712]
R3 SenFiltService;SenFilt Service; C:\WINDOWS\system32\drivers\Senfilt.sys [2006-03-17 392960]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2009-07-14 444136]
S1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.sys []
S1 sensorsview;sensorsview; \??\C:\Program Files\SensorsViewPro41\drv\sensorsview32.sys []
S3 a98d3zcs;a98d3zcs; C:\WINDOWS\system32\drivers\a98d3zcs.sys []
S3 aswTdi;aswTdi; C:\WINDOWS\system32\drivers\aswTdi.sys [2015-10-31 57888]
S3 MarvinBus;Pinnacle Marvin Bus; C:\WINDOWS\system32\DRIVERS\MarvinBus.sys [2005-09-23 171520]
S3 PCTINDIS5;PCTINDIS5 NDIS Protocol Driver; \??\C:\WINDOWS\system32\PCTINDIS5.SYS []
S3 USBAAPL;Apple Mobile USB Driver; C:\WINDOWS\System32\Drivers\usbaapl.sys []
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-07-03 14976]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 w900bus;Sony Ericsson 900i driver (WDM); C:\WINDOWS\system32\DRIVERS\w900bus.sys []
S3 w900mdfl;Sony Ericsson 900i USB WMC Modem Filter; C:\WINDOWS\system32\DRIVERS\w900mdfl.sys []
S3 w900mdm;Sony Ericsson 900i USB WMC Modem Drivers; C:\WINDOWS\system32\DRIVERS\w900mdm.sys []
S3 w900mgmt;Sony Ericsson 900i USB WMC Device Management Drivers; C:\WINDOWS\system32\DRIVERS\w900mgmt.sys []
S3 w900obex;Sony Ericsson 900i USB WMC OBEX Interface Drivers; C:\WINDOWS\system32\DRIVERS\w900obex.sys []
S3 wceusbsh;Windows CE USB Serial Host Driver; C:\WINDOWS\system32\DRIVERS\wceusbsh.sys [2006-11-06 28672]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-10-31 146600]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 pokorugi;Area Communication; C:\Program Files\CCF317A0-1446287878-11DC-8063-001BFC862955\jnsfBC.tmp [2015-10-31 122368]
R2 qymylofy;Table SIM Card; C:\Program Files\CCF317A0-1446287878-11DC-8063-001BFC862955\hnszBE.tmp [2015-10-31 624640]
R2 SSFK;SSFK; C:\Program Files\SFK\SSFK.exe [2015-10-31 173728]
R2 WdsManPro;WdsManPro Service; C:\Documents and Settings\All Users\Data aplikací\lWMiniProl\WMiniPro.exe [2015-10-31 301704]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 zumejiwu;Web Directory Visit; C:\Program Files\CCF317A0-1446287878-11DC-8063-001BFC862955\knsaA7.tmpfs [2015-10-31 294400]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 globalUpdate;globalUpdate Update Service (globalUpdate); C:\Program Files\globalUpdate\Update\globalupdate.exe [2015-10-31 68608]
S2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2008-09-17 163908]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-10-31 269000]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 globalUpdatem;globalUpdate Update Service (globalUpdatem); C:\Program Files\globalUpdate\Update\globalupdate.exe [2015-10-31 68608]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2015-10-31 147624]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-07-20 754856]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Stále se mi nabízejí k instalaci "My Browser" a spol.

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

JanZRokycan
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 27 říj 2015 18:42

Re: Stále se mi nabízejí k instalaci "My Browser" a spol.

#3 Příspěvek od JanZRokycan »

Spuštění FF trvá šíleně dlouho (minutu či více)


# AdwCleaner v5.015 - Logfile created 31/10/2015 at 17:16:34
# Updated 26/10/2015 by Xplode
# Database : 2015-10-29.1 [Server]
# Operating system : Microsoft Windows XP Service Pack 3 (x86)
# Username : uzivatel - PCNEW
# Running from : C:\Documents and Settings\uzivatel\Plocha\adwcleaner_5.015.exe
# Option : Cleaning
# Support : http://toolslib.net/forum

***** [ Services ] *****

[-] Service Deleted : globalUpdate
[-] Service Deleted : globalUpdatem
[-] Service Deleted : SSFK
[-] Service Deleted : WdsManPro
[-] Service Deleted : pofytydi
[-] Service Deleted : pokorugi
[-] Service Deleted : qymylofy
[-] Service Deleted : syhozebu
[-] Service Deleted : zumejiwu

***** [ Folders ] *****

[-] Folder Deleted : C:\Documents and Settings\uzivatel\Local Settings\Data aplikací\globalUpdate
[-] Folder Deleted : C:\Documents and Settings\uzivatel\Local Settings\Data aplikací\Crossbrowse
[!] Folder Not Deleted : C:\Documents and Settings\uzivatel\Local Settings\Data aplikací\Crossbrowse
[-] Folder Deleted : C:\Documents and Settings\uzivatel\Local Settings\Data aplikací\MyBrowser
[-] Folder Deleted : C:\Documents and Settings\uzivatel\Local Settings\Data aplikací\CCF317A0-1446291522-11DC-8063-001BFC862955
[-] Folder Deleted : C:\Program Files\globalUpdate
[-] Folder Deleted : C:\Program Files\Crossbrowse
[-] Folder Deleted : C:\Program Files\SFK
[-] Folder Deleted : C:\Program Files\CCF317A0-1446287878-11DC-8063-001BFC862955
[-] Folder Deleted : C:\Program Files\CinemaPlus-3.2cV25.10
[!] Folder Not Deleted : C:\Program Files\Crossbrowse
[-] Folder Deleted : C:\Program Files\MyBrowser
[-] Folder Deleted : C:\Program Files\MyBrowser 1.0.2V31.10

***** [ Files ] *****


***** [ DLLs ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****

[-] Task Deleted : Crossbrowse
[-] Task Deleted : globalUpdateUpdateTaskMachineCore
[-] Task Deleted : globalUpdateUpdateTaskMachineUA
[-] Task Deleted : MyBrowser
[-] Task Deleted : 08d47c20-5df0-42b6-a3b0-f77cb968d1a2-1-6
[-] Task Deleted : 08d47c20-5df0-42b6-a3b0-f77cb968d1a2-1-7
[-] Task Deleted : 08d47c20-5df0-42b6-a3b0-f77cb968d1a2-10_user
[-] Task Deleted : 08d47c20-5df0-42b6-a3b0-f77cb968d1a2-4
[-] Task Deleted : 08d47c20-5df0-42b6-a3b0-f77cb968d1a2-5
[-] Task Deleted : 5ca6a3c0-5b98-45e9-a72f-99a94105cdae-1-6
[-] Task Deleted : 5ca6a3c0-5b98-45e9-a72f-99a94105cdae-1-7
[-] Task Deleted : 5ca6a3c0-5b98-45e9-a72f-99a94105cdae-10_user
[-] Task Deleted : 5ca6a3c0-5b98-45e9-a72f-99a94105cdae-4
[-] Task Deleted : 5ca6a3c0-5b98-45e9-a72f-99a94105cdae-5
[-] Task Deleted : efba7dd2-bf83-415d-83c6-4595239075a3-1-6
[-] Task Deleted : efba7dd2-bf83-415d-83c6-4595239075a3-1-7
[-] Task Deleted : efba7dd2-bf83-415d-83c6-4595239075a3-10_user
[-] Task Deleted : efba7dd2-bf83-415d-83c6-4595239075a3-4
[-] Task Deleted : efba7dd2-bf83-415d-83c6-4595239075a3-5

***** [ Registry ] *****

[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
[-] Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
[-] Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
[-] Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Mediaplayer\Shiminclusionlist\crossbrowse.exe
[-] Key Deleted : HKLM\SOFTWARE\Clients\StartMenuInternet\crossbrowse.exe
[-] Key Deleted : HKLM\SOFTWARE\Clients\StartMenuInternet\Crossbrowse
[-] Value Deleted : HKLM\SOFTWARE\Classes\.htm\OpenWithProgids [CRSBRWSHTML]
[-] Value Deleted : HKLM\SOFTWARE\Classes\.html\OpenWithProgids [CRSBRWSHTML]
[-] Value Deleted : HKLM\SOFTWARE\RegisteredApplications [Crossbrowse]
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\globalupdate.exe
[-] Value Deleted : HKLM\SOFTWARE\Classes\.xht\OpenWithProgIDs [CRSBRWSHTML]
[-] Value Deleted : HKLM\SOFTWARE\Classes\.webp\OpenWithProgIDs [CRSBRWSHTML]
[-] Value Deleted : HKLM\SOFTWARE\Classes\.shtml\OpenWithProgIDs [CRSBRWSHTML]
[-] Value Deleted : HKLM\SOFTWARE\RegisteredApplications [MyBrowser]
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\MediaPlayer\ShimInclusionList\mybrowser.exe
[-] Key Deleted : HKLM\SOFTWARE\Clients\StartMenuInternet\MyBrowser
[-] Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WdsManPro
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6EDBF8C0-C94C-4A13-956F-E393BCA5BA4B}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A8F7D0A5-7074-40B8-9BDC-1174BDD0A132}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D14D64BC-A0E4-42E3-BB72-FB41EA43C198}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{DD1F043F-ABC8-4643-8B95-D2C5B22BB019}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E3F3E8F9-F747-4DD6-BA6B-82A6CE1E0860}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{ED0B64D4-BF27-4521-AD27-190F49BF5EA7}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{023E9EC8-B147-40EB-B0B3-DF90618FB371}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0522D9A4-4D57-437D-978D-E5B3B6C9005D}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{07F41522-AF7D-4F26-B394-094F059FDB8A}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0C40F472-7407-4467-8914-1DEA7C326972}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{212E6D43-6062-492A-B8CC-144669FF11ED}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{224FE662-1E6D-4BC0-AEBB-9E2FB4057BE9}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3A807417-B46D-4D37-8C9A-19AC6DE204F9}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3CC60715-D6C5-429D-830E-43FA3F86C61D}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4517D94C-19BA-46FA-BE66-2A30CEAC4A85}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{555D7146-94A8-4C94-AE76-C39CDC7F7705}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{59D188FA-757A-424E-8C93-F58FFD896BD7}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{8120D9D6-785C-4413-9C0C-DF2028C56FAD}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{823AE2EB-E62C-4847-B192-C99B91B92416}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9B4F7CFE-987D-410E-A8E4-20182E0B3C24}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9B9A45F4-18FC-484A-BACA-076D78273D8E}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A6D54287-7939-466A-8579-92546D946C8C}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A78EDAFB-926F-4D93-AB13-8232D7378EB1}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
[-] Value Deleted : HKU\.DEFAULT\Software\Microsoft\Internet Explorer\URLSearchHooks [{855F3B16-6D32-4FE6-8A56-BBB695989046}]
[-] Key Deleted : HKCU\Software\Crossrider
[-] Key Deleted : HKCU\Software\GlobalUpdate
[-] Key Deleted : HKCU\Software\InstalledBrowserExtensions
[-] Key Deleted : HKCU\Software\CrossBrowser
[-] Key Deleted : HKCU\Software\Crossbrowse
[-] Key Deleted : HKCU\Software\YorkNewCin
[-] Key Deleted : HKCU\Software\HighDefAction
[-] Key Deleted : HKCU\Software\ArenaHD
[-] Key Deleted : HKCU\Software\_CrossriderRegNamePlaceHolder_
[-] Key Deleted : HKCU\Software\OB
[-] Key Deleted : HKCU\Software\CinemaPlus-3.2cV25.10-nv-ie
[!] Key Not Deleted : HKCU\Software\Crossbrowse
[-] Key Deleted : HKCU\Software\MyBrowser 1.0.2V31.10
[-] Key Deleted : HKCU\Software\MyBrowser 1.0.2V31.10-nv-ie
[-] Key Deleted : HKLM\SOFTWARE\Crossrider
[-] Key Deleted : HKLM\SOFTWARE\GlobalUpdate
[-] Key Deleted : HKLM\SOFTWARE\InstalledBrowserExtensions
[-] Key Deleted : HKLM\SOFTWARE\istartsurfSoftware
[-] Key Deleted : HKLM\SOFTWARE\Crossbrowse
[-] Key Deleted : HKLM\SOFTWARE\YorkNewCin
[-] Key Deleted : HKLM\SOFTWARE\HighDefAction
[-] Key Deleted : HKLM\SOFTWARE\ArenaHD
[-] Key Deleted : HKLM\SOFTWARE\_CrossriderRegNamePlaceHolder_
[-] Key Deleted : HKLM\SOFTWARE\WdsManPro
[-] Key Deleted : HKLM\SOFTWARE\CinemaPlus-3.2cV25.10-nv-ie
[!] Key Not Deleted : HKLM\SOFTWARE\Crossbrowse
[-] Key Deleted : HKLM\SOFTWARE\MyBrowser 1.0.2V31.10
[-] Key Deleted : HKLM\SOFTWARE\MyBrowser 1.0.2V31.10-nv-ie
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{D01A33E2-0A34-4659-82AA-8A90C51C0D21}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VOPackage
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{D01A33E2-0A34-4659-82AA-8A90C51C0D21}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\GLOBALUPDATE.EXE
[-] Data Restored : HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command []

***** [ Web browsers ] *****

[-] [C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\2sjc8kxs.default\prefs.js] [Preference] Deleted : user_pref("extensions.crossrider.bic", "150bd7c58069e6e1b572066bfb19aeac");

*************************

:: Winsock settings cleared

########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [13404 bytes] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Stále se mi nabízejí k instalaci "My Browser" a spol.

#4 Příspěvek od Rudy »

Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

JanZRokycan
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 27 říj 2015 18:42

Re: Stále se mi nabízejí k instalaci "My Browser" a spol.

#5 Příspěvek od JanZRokycan »

Logfile of random's system information tool 1.10 (written by random/random)
Run by uzivatel at 2015-10-31 18:18:25
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 44 GB (38%) free of 114 GB
Total RAM: 3007 MB (70% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:18:30, on 31.10.2015
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\wbem\unsecapp.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Documents and Settings\uzivatel\Plocha\RSIT.exe
C:\Program Files\trend micro\uzivatel.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\WINDOWS\JM\JMInsIDE.exe
O4 - HKLM\..\Run: [JMB36X Configure] C:\WINDOWS\system32\JMRaidSetup.exe boot
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [uTorrent] "C:\Documents and Settings\uzivatel\Data aplikací\uTorrent\utorrent.exe"
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/200 ... oader5.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

--
End of file - 4947 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\9VQQfClJVTvwuwju.job - C:\Documents and Settings\uzivatel\Data aplikac\9VQQfClJVTvwuwju.exe --c=PIoZJ5ForljM9URR8/3pxxGHZW/LzKXMivAl2mSfD5bzj3yU6/RspeQJyuR7B5s5kfSJQspGMNwHq9V4gcGu3A2jvs9tmhcnVA5/xeZWe1lTov7rHsoVTWSQRV6k9DhMMPGT8s7iHdTDXUfqBnt+FY4t8mygFNO5SAqNb7+poAxw7zZkkkLQ16fKoUKD0RPRaczLaSA7rSsvEWzxdriRBYj2JXrzulIE2w7G+t5U4HMRrtxy/VAsiMeNfNCF9xsI6vgE4I9KlzMqTbgHFfrRLQVIIqzFW7DS8I+ZwAJGc0PBTYEv55AIxODBeEINwtYxhWu8pg36VDnJrJFMocMwlQ==
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\avast! Emergency Update.job - C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
C:\WINDOWS\tasks\avB3puERpQhwA.job - C:\Documents and Settings\uzivatel\Data aplikac\avB3puERpQhwA.exe --c=k2TrwLwLgru5vZr4YRLseeOCPS1GvRzcECvZvC0/KrCejMvDU3ErBIP4LEMKLkLCUOphG8anCiyUNhXf8zMnfNBil8xZBYyr9sqhcJfPUPceV1OQ8zpnh1LqoPF5Ft4N7RLhruqrbxCzW4Oh4ZD71r5ZU/19YBAkkdj79gpqpONmH7bMI2W7lt+GdbYBZYgnMHcov8H5F+8OOLDBXsxa68VauoWtHyTlPOS123vhYaJNMlW1MDFMwty+++Rea5XYHttbvoqSkU/I16Da3LYLSx9L1VizlH612EO3J5CrwzpjxYOvXK/td1A/AzNoiWpWI2Dm5uV6Ey4j3FT5WFUsFg==
C:\WINDOWS\tasks\QtRpgbvDMmV36JALjuPi.job - C:\Documents and Settings\uzivatel\Data aplikac\QtRpgbvDMmV36JALjuPi.exe --c=rH2zdzw0prBRMsFTjRwx96Pb8KY232MZGrIMrHnIqJLzUPzFDm+k6T7q1VWvponAvncMNGJSGQzvCBx4LBV7w1uoIK1qM1ocegyd7A4uEAz5618SYxRWC0x+WYsVaoDDGMWBUyh95ITuzD4kjw0RAONueyx6FK8V2Fj3YTWSQVgc1nkUWjmfwJLFSeLRTx2IzNilaR7rg3jdYQGnwG+ZoO4rTfz5ZMMQxodRbw95ra3jQ1DqiKf7d8GpK9IGvSQIcujJCOVOtoZ4IjYjQp899XCwidcQ7U2zU5AH8Vdjl+Xm0mId0EZMFjWBkXvW/KOi5B4MJVkh7tw96G3Gvvo5sA==
C:\WINDOWS\tasks\User_Feed_Synchronization-{79D0B19C-05FC-4F37-8300-D83CFD8BCC1A}.job - C:\WINDOWS\system32\msfeedssync.exe sync

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\2sjc8kxs.default

prefs.js - "browser.startup.homepage" - "about:home"

"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 19.0.0.226 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_19_0_0_226.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.79.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.79.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2015-07-08 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-10-31 559624]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2015-07-08 171944]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"JMB36X IDE Setup"=C:\WINDOWS\JM\JMInsIDE.exe [2006-10-30 36864]
"JMB36X Configure"=C:\WINDOWS\system32\JMRaidSetup.exe [2006-10-30 1953792]
"SoundMAXPnP"=C:\Program Files\Analog Devices\Core\smax4pnp.exe [2006-12-18 868352]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-10-31 6134544]
"NUSB3MON"=C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [2011-09-16 115048]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"uTorrent"=C:\Documents and Settings\uzivatel\Data aplikací\uTorrent\utorrent.exe [2015-02-22 416168]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=0
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=255
"NoDrives"=0
"HonorAutoRunSetting"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\InterVideo\DVD6\WinDVD.exe"="C:\Program Files\InterVideo\DVD6\WinDVD.exe:*:Enabled:WinDVD"
"C:\Program Files\ICQ6\ICQ.exe"="C:\Program Files\ICQ6\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\totalcmd\TOTALCMD.EXE"="C:\Program Files\totalcmd\TOTALCMD.EXE:*:Enabled:Total Commander 32 bit international version, file manager replacement for Windows"
"C:\WINDOWS\system32\winver.exe"="C:\WINDOWS\system32\winver.exe:*:Enabled:winver"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\Sprite Software\Sprite Backup\spriteservice.exe"="C:\Program Files\Sprite Software\Sprite Backup\spriteservice.exe:*:Enabled:Sprite PC Service"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\ICQ7.5\ICQ.exe"="C:\Program Files\ICQ7.5\ICQ.exe:*:Enabled:ICQ"
"C:\Program Files\Pinnacle\Studio 15\Programs\RM.exe"="C:\Program Files\Pinnacle\Studio 15\Programs\RM.exe:*:Enabled:Render Manager"
"C:\Program Files\Pinnacle\Studio 15\Programs\Studio.exe"="C:\Program Files\Pinnacle\Studio 15\Programs\Studio.exe:*:Enabled:Studio"
"C:\Program Files\Pinnacle\Studio 15\Programs\umi.exe"="C:\Program Files\Pinnacle\Studio 15\Programs\umi.exe:*:Enabled:umi"
"C:\Documents and Settings\uzivatel\Data aplikací\uTorrent\utorrent.exe"="C:\Documents and Settings\uzivatel\Data aplikací\uTorrent\utorrent.exe:*:Enabled:µTorrent"
"C:\Program Files\Mozilla Firefox\firefox.exe"="C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Firefox (C:\Program Files\Mozilla Firefox)"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"vidc.VP60"=vp6vfw.dll
"vidc.VP61"=vp6vfw.dll
"vidc.xvid"=xvidvfw.dll
"vidc.ffds"=ff_vfw.dll
"vidc.vp62"=vp6vfw.dll
"msacm.ac3filter"=ac3filter.acm
"msacm.divxa32"=DivXa32.acm
"msacm.lameacm"=LameACM.acm
"msacm.vorbis"=vorbis.acm

======List of files/folders created in the last 1 month======

2015-10-31 18:18:25 ----D---- C:\rsit
2015-10-31 12:21:00 ----D---- C:\Program Files\CrystalDiskInfo
2015-10-31 11:40:58 ----D---- C:\Documents and Settings\All Users\Data aplikací\lWMiniProl
2015-10-31 11:40:58 ----A---- C:\Documents and Settings\All Users\Data aplikací\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat
2015-10-31 10:13:25 ----D---- C:\Program Files\Mozilla Firefox
2015-10-31 09:07:14 ----N---- C:\WINDOWS\system32\spmsgXP_2k3.dll
2015-10-31 09:06:59 ----HDC---- C:\WINDOWS\$NtUninstallWdf01009$
2015-10-31 09:06:21 ----A---- C:\WINDOWS\system32\drivers\aswStmXP.sys
2015-10-31 09:06:17 ----A---- C:\WINDOWS\system32\aswBoot.exe
2015-10-31 09:06:10 ----A---- C:\WINDOWS\avastSS.scr

======List of files/folders modified in the last 1 month======

2015-10-31 18:18:27 ----D---- C:\Program Files\trend micro
2015-10-31 17:38:13 ----D---- C:\WINDOWS\Prefetch
2015-10-31 17:27:48 ----D---- C:\Documents and Settings\uzivatel\Data aplikací\uTorrent
2015-10-31 17:17:17 ----A---- C:\WINDOWS\SchedLgU.Txt
2015-10-31 17:16:40 ----D---- C:\WINDOWS\Temp
2015-10-31 17:16:39 ----SD---- C:\WINDOWS\Tasks
2015-10-31 17:16:36 ----RD---- C:\Program Files
2015-10-31 17:16:35 ----D---- C:\AdwCleaner
2015-10-31 14:49:49 ----D---- C:\WINDOWS\system32\CatRoot2
2015-10-31 13:47:33 ----D---- C:\WINDOWS\system32
2015-10-31 13:30:01 ----D---- C:\WINDOWS\Microsoft.NET
2015-10-31 12:21:40 ----SHD---- C:\WINDOWS\Installer
2015-10-31 12:21:40 ----D---- C:\Program Files\Common Files
2015-10-31 12:06:07 ----D---- C:\Documents and Settings\uzivatel\Data aplikací\eM Client
2015-10-31 12:04:41 ----RSD---- C:\WINDOWS\assembly
2015-10-31 11:46:34 ----D---- C:\Program Files\Mozilla Maintenance Service
2015-10-31 11:38:25 ----D---- C:\WINDOWS\system32\drivers\etc
2015-10-31 09:37:40 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2015-10-31 09:09:33 ----D---- C:\WINDOWS
2015-10-31 09:08:37 ----D---- C:\WINDOWS\system32\drivers
2015-10-31 09:07:18 ----HD---- C:\WINDOWS\inf
2015-10-31 08:51:03 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2015-10-31 49776]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2015-10-31 208664]
R0 giveio;giveio; C:\WINDOWS\system32\giveio.sys [1996-04-03 5248]
R0 JGOGO;JMicron Hot-Plug Driver; C:\WINDOWS\system32\DRIVERS\JGOGO.sys [2006-02-07 6912]
R0 JRAID;JRAID; C:\WINDOWS\system32\DRIVERS\jraid.sys [2006-10-30 43648]
R0 sfdrv01;StarForce Protection Environment Driver (version 1.x); C:\WINDOWS\System32\drivers\sfdrv01.sys [2005-01-14 47616]
R0 sfhlp02;StarForce Protection Helper Driver (version 2.x); C:\WINDOWS\System32\drivers\sfhlp02.sys [2004-10-28 6656]
R0 speedfan;speedfan; C:\WINDOWS\system32\speedfan.sys [2012-12-29 24184]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2010-01-03 691696]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2015-10-31 55200]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2015-10-31 789296]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2015-10-31 434184]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2015-10-31 24016]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2015-10-31 76000]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\ADIHdAud.sys [2007-01-16 293888]
R3 AEAudio;AE Audio Service; C:\WINDOWS\system32\drivers\AEAudio.sys [2006-08-06 93952]
R3 aswStmXP;Avast StreamFilter Driver; C:\WINDOWS\system32\drivers\aswStmXP.sys [2015-10-31 157888]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2009-01-15 23848]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver; C:\WINDOWS\system32\DRIVERS\nusb3hub.sys [2012-05-10 75904]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver; C:\WINDOWS\system32\DRIVERS\nusb3xhc.sys [2012-05-10 168448]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2013-02-08 12648960]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2006-07-27 83712]
R3 SenFiltService;SenFilt Service; C:\WINDOWS\system32\drivers\Senfilt.sys [2006-03-17 392960]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2009-07-14 444136]
S1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.sys []
S1 sensorsview;sensorsview; \??\C:\Program Files\SensorsViewPro41\drv\sensorsview32.sys []
S3 akxo0m7b;akxo0m7b; C:\WINDOWS\system32\drivers\akxo0m7b.sys []
S3 aswTdi;aswTdi; C:\WINDOWS\system32\drivers\aswTdi.sys [2015-10-31 57888]
S3 MarvinBus;Pinnacle Marvin Bus; C:\WINDOWS\system32\DRIVERS\MarvinBus.sys [2005-09-23 171520]
S3 PCTINDIS5;PCTINDIS5 NDIS Protocol Driver; \??\C:\WINDOWS\system32\PCTINDIS5.SYS []
S3 USBAAPL;Apple Mobile USB Driver; C:\WINDOWS\System32\Drivers\usbaapl.sys []
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-07-03 14976]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 w900bus;Sony Ericsson 900i driver (WDM); C:\WINDOWS\system32\DRIVERS\w900bus.sys []
S3 w900mdfl;Sony Ericsson 900i USB WMC Modem Filter; C:\WINDOWS\system32\DRIVERS\w900mdfl.sys []
S3 w900mdm;Sony Ericsson 900i USB WMC Modem Drivers; C:\WINDOWS\system32\DRIVERS\w900mdm.sys []
S3 w900mgmt;Sony Ericsson 900i USB WMC Device Management Drivers; C:\WINDOWS\system32\DRIVERS\w900mgmt.sys []
S3 w900obex;Sony Ericsson 900i USB WMC OBEX Interface Drivers; C:\WINDOWS\system32\DRIVERS\w900obex.sys []
S3 wceusbsh;Windows CE USB Serial Host Driver; C:\WINDOWS\system32\DRIVERS\wceusbsh.sys [2006-11-06 28672]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-10-31 146600]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2008-09-17 163908]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-10-31 269000]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2015-10-31 147624]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-07-20 754856]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Stále se mi nabízejí k instalaci "My Browser" a spol.

#6 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\WINDOWS\tasks\9VQQfClJVTvwuwju.job
C:\Documents and Settings\uzivatel\Data aplikac\9VQQfClJVTvwuwju.exe
C:\WINDOWS\tasks\avB3puERpQhwA.job
C:\Documents and Settings\uzivatel\Data aplikac\avB3puERpQhwA.exe
C:\WINDOWS\tasks\QtRpgbvDMmV36JALjuPi.job
C:\Documents and Settings\uzivatel\Data aplikac\QtRpgbvDMmV36JALjuPi.exe

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Před skenem vypněte antivir a po něm restartujte PC. Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

JanZRokycan
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 27 říj 2015 18:42

Re: Stále se mi nabízejí k instalaci "My Browser" a spol.

#7 Příspěvek od JanZRokycan »

Rychlost načítání FF se nezměnila


Logfile of random's system information tool 1.10 (written by random/random)
Run by uzivatel at 2015-10-31 20:48:04
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 44 GB (39%) free of 114 GB
Total RAM: 3007 MB (73% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:48:08, on 31.10.2015
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\wbem\unsecapp.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Documents and Settings\uzivatel\Plocha\RSIT.exe
C:\Program Files\trend micro\uzivatel.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\WINDOWS\JM\JMInsIDE.exe
O4 - HKLM\..\Run: [JMB36X Configure] C:\WINDOWS\system32\JMRaidSetup.exe boot
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [uTorrent] "C:\Documents and Settings\uzivatel\Data aplikací\uTorrent\utorrent.exe"
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/200 ... oader5.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

--
End of file - 4980 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\avast! Emergency Update.job - C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
C:\WINDOWS\tasks\User_Feed_Synchronization-{79D0B19C-05FC-4F37-8300-D83CFD8BCC1A}.job - C:\WINDOWS\system32\msfeedssync.exe sync

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\2sjc8kxs.default

prefs.js - "browser.startup.homepage" - "about:home"

"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 19.0.0.226 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_19_0_0_226.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.79.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.79.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2015-07-08 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-10-31 559624]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2015-07-08 171944]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"JMB36X IDE Setup"=C:\WINDOWS\JM\JMInsIDE.exe [2006-10-30 36864]
"JMB36X Configure"=C:\WINDOWS\system32\JMRaidSetup.exe [2006-10-30 1953792]
"SoundMAXPnP"=C:\Program Files\Analog Devices\Core\smax4pnp.exe [2006-12-18 868352]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-10-31 6134544]
"NUSB3MON"=C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [2011-09-16 115048]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"uTorrent"=C:\Documents and Settings\uzivatel\Data aplikací\uTorrent\utorrent.exe [2015-02-22 416168]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=0
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=255
"NoDrives"=0
"HonorAutoRunSetting"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\InterVideo\DVD6\WinDVD.exe"="C:\Program Files\InterVideo\DVD6\WinDVD.exe:*:Enabled:WinDVD"
"C:\Program Files\ICQ6\ICQ.exe"="C:\Program Files\ICQ6\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\totalcmd\TOTALCMD.EXE"="C:\Program Files\totalcmd\TOTALCMD.EXE:*:Enabled:Total Commander 32 bit international version, file manager replacement for Windows"
"C:\WINDOWS\system32\winver.exe"="C:\WINDOWS\system32\winver.exe:*:Enabled:winver"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\Sprite Software\Sprite Backup\spriteservice.exe"="C:\Program Files\Sprite Software\Sprite Backup\spriteservice.exe:*:Enabled:Sprite PC Service"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\ICQ7.5\ICQ.exe"="C:\Program Files\ICQ7.5\ICQ.exe:*:Enabled:ICQ"
"C:\Program Files\Pinnacle\Studio 15\Programs\RM.exe"="C:\Program Files\Pinnacle\Studio 15\Programs\RM.exe:*:Enabled:Render Manager"
"C:\Program Files\Pinnacle\Studio 15\Programs\Studio.exe"="C:\Program Files\Pinnacle\Studio 15\Programs\Studio.exe:*:Enabled:Studio"
"C:\Program Files\Pinnacle\Studio 15\Programs\umi.exe"="C:\Program Files\Pinnacle\Studio 15\Programs\umi.exe:*:Enabled:umi"
"C:\Documents and Settings\uzivatel\Data aplikací\uTorrent\utorrent.exe"="C:\Documents and Settings\uzivatel\Data aplikací\uTorrent\utorrent.exe:*:Enabled:µTorrent"
"C:\Program Files\Mozilla Firefox\firefox.exe"="C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Firefox (C:\Program Files\Mozilla Firefox)"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"vidc.VP60"=vp6vfw.dll
"vidc.VP61"=vp6vfw.dll
"vidc.xvid"=xvidvfw.dll
"vidc.ffds"=ff_vfw.dll
"vidc.vp62"=vp6vfw.dll
"msacm.ac3filter"=ac3filter.acm
"msacm.divxa32"=DivXa32.acm
"msacm.lameacm"=LameACM.acm
"msacm.vorbis"=vorbis.acm

======List of files/folders created in the last 1 month======

2015-10-31 20:41:46 ----D---- C:\_OTM
2015-10-31 18:18:25 ----D---- C:\rsit
2015-10-31 12:21:00 ----D---- C:\Program Files\CrystalDiskInfo
2015-10-31 11:40:58 ----D---- C:\Documents and Settings\All Users\Data aplikací\lWMiniProl
2015-10-31 11:40:58 ----A---- C:\Documents and Settings\All Users\Data aplikací\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat
2015-10-31 10:13:25 ----D---- C:\Program Files\Mozilla Firefox
2015-10-31 09:07:14 ----N---- C:\WINDOWS\system32\spmsgXP_2k3.dll
2015-10-31 09:06:59 ----HDC---- C:\WINDOWS\$NtUninstallWdf01009$
2015-10-31 09:06:21 ----A---- C:\WINDOWS\system32\drivers\aswStmXP.sys
2015-10-31 09:06:17 ----A---- C:\WINDOWS\system32\aswBoot.exe
2015-10-31 09:06:10 ----A---- C:\WINDOWS\avastSS.scr

======List of files/folders modified in the last 1 month======

2015-10-31 20:48:06 ----D---- C:\Program Files\trend micro
2015-10-31 20:45:44 ----D---- C:\Documents and Settings\uzivatel\Data aplikací\uTorrent
2015-10-31 20:44:49 ----D---- C:\WINDOWS\Temp
2015-10-31 20:43:10 ----A---- C:\WINDOWS\SchedLgU.Txt
2015-10-31 20:41:46 ----SD---- C:\WINDOWS\Tasks
2015-10-31 20:41:45 ----D---- C:\WINDOWS\Prefetch
2015-10-31 17:16:36 ----RD---- C:\Program Files
2015-10-31 17:16:35 ----D---- C:\AdwCleaner
2015-10-31 14:49:49 ----D---- C:\WINDOWS\system32\CatRoot2
2015-10-31 13:47:33 ----D---- C:\WINDOWS\system32
2015-10-31 13:30:01 ----D---- C:\WINDOWS\Microsoft.NET
2015-10-31 12:21:40 ----SHD---- C:\WINDOWS\Installer
2015-10-31 12:21:40 ----D---- C:\Program Files\Common Files
2015-10-31 12:06:07 ----D---- C:\Documents and Settings\uzivatel\Data aplikací\eM Client
2015-10-31 12:04:41 ----RSD---- C:\WINDOWS\assembly
2015-10-31 11:46:34 ----D---- C:\Program Files\Mozilla Maintenance Service
2015-10-31 11:38:25 ----D---- C:\WINDOWS\system32\drivers\etc
2015-10-31 09:37:40 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2015-10-31 09:09:33 ----D---- C:\WINDOWS
2015-10-31 09:08:37 ----D---- C:\WINDOWS\system32\drivers
2015-10-31 09:07:18 ----HD---- C:\WINDOWS\inf
2015-10-31 08:51:03 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2015-10-31 49776]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2015-10-31 208664]
R0 giveio;giveio; C:\WINDOWS\system32\giveio.sys [1996-04-03 5248]
R0 JGOGO;JMicron Hot-Plug Driver; C:\WINDOWS\system32\DRIVERS\JGOGO.sys [2006-02-07 6912]
R0 JRAID;JRAID; C:\WINDOWS\system32\DRIVERS\jraid.sys [2006-10-30 43648]
R0 sfdrv01;StarForce Protection Environment Driver (version 1.x); C:\WINDOWS\System32\drivers\sfdrv01.sys [2005-01-14 47616]
R0 sfhlp02;StarForce Protection Helper Driver (version 2.x); C:\WINDOWS\System32\drivers\sfhlp02.sys [2004-10-28 6656]
R0 speedfan;speedfan; C:\WINDOWS\system32\speedfan.sys [2012-12-29 24184]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2010-01-03 691696]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2015-10-31 55200]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2015-10-31 789296]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2015-10-31 434184]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2015-10-31 24016]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2015-10-31 76000]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\ADIHdAud.sys [2007-01-16 293888]
R3 AEAudio;AE Audio Service; C:\WINDOWS\system32\drivers\AEAudio.sys [2006-08-06 93952]
R3 aswStmXP;Avast StreamFilter Driver; C:\WINDOWS\system32\drivers\aswStmXP.sys [2015-10-31 157888]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2009-01-15 23848]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver; C:\WINDOWS\system32\DRIVERS\nusb3hub.sys [2012-05-10 75904]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver; C:\WINDOWS\system32\DRIVERS\nusb3xhc.sys [2012-05-10 168448]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2013-02-08 12648960]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2006-07-27 83712]
R3 SenFiltService;SenFilt Service; C:\WINDOWS\system32\drivers\Senfilt.sys [2006-03-17 392960]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2009-07-14 444136]
S1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.sys []
S1 sensorsview;sensorsview; \??\C:\Program Files\SensorsViewPro41\drv\sensorsview32.sys []
S3 a9qz7tzr;a9qz7tzr; C:\WINDOWS\system32\drivers\a9qz7tzr.sys []
S3 aswTdi;aswTdi; C:\WINDOWS\system32\drivers\aswTdi.sys [2015-10-31 57888]
S3 MarvinBus;Pinnacle Marvin Bus; C:\WINDOWS\system32\DRIVERS\MarvinBus.sys [2005-09-23 171520]
S3 PCTINDIS5;PCTINDIS5 NDIS Protocol Driver; \??\C:\WINDOWS\system32\PCTINDIS5.SYS []
S3 USBAAPL;Apple Mobile USB Driver; C:\WINDOWS\System32\Drivers\usbaapl.sys []
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-07-03 14976]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 w900bus;Sony Ericsson 900i driver (WDM); C:\WINDOWS\system32\DRIVERS\w900bus.sys []
S3 w900mdfl;Sony Ericsson 900i USB WMC Modem Filter; C:\WINDOWS\system32\DRIVERS\w900mdfl.sys []
S3 w900mdm;Sony Ericsson 900i USB WMC Modem Drivers; C:\WINDOWS\system32\DRIVERS\w900mdm.sys []
S3 w900mgmt;Sony Ericsson 900i USB WMC Device Management Drivers; C:\WINDOWS\system32\DRIVERS\w900mgmt.sys []
S3 w900obex;Sony Ericsson 900i USB WMC OBEX Interface Drivers; C:\WINDOWS\system32\DRIVERS\w900obex.sys []
S3 wceusbsh;Windows CE USB Serial Host Driver; C:\WINDOWS\system32\DRIVERS\wceusbsh.sys [2006-11-06 28672]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-10-31 146600]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2008-09-17 163908]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-10-31 269000]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2015-10-31 147624]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-07-20 754856]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Stále se mi nabízejí k instalaci "My Browser" a spol.

#8 Příspěvek od Rudy »

Dvouklikem na soubor C:\Program Files\trend micro\uzivatel.exe spusťte HijackThis. Klikněte na "Do a system scan only" a v otevřeném okně vlevo ve čtverečcích zaškrtněte:
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/200 ... oader5.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
Klikněte na >FixChecked<. Pak znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

JanZRokycan
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 27 říj 2015 18:42

Re: Stále se mi nabízejí k instalaci "My Browser" a spol.

#9 Příspěvek od JanZRokycan »

Když dvojkliknu na uzivatel.exe, tak mám provést Scan? "Do a system scan only" se mi nenabízí

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Stále se mi nabízejí k instalaci "My Browser" a spol.

#10 Příspěvek od Rudy »

Ano. Po skenu by se měl objevit log, kde ty čtverečky najdete vpravo.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

JanZRokycan
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 27 říj 2015 18:42

Re: Stále se mi nabízejí k instalaci "My Browser" a spol.

#11 Příspěvek od JanZRokycan »

Provedeno - OTM odstranil i RSIT (je to OK?)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Stále se mi nabízejí k instalaci "My Browser" a spol.

#12 Příspěvek od Rudy »

Ano, je. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

JanZRokycan
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 27 říj 2015 18:42

Re: Stále se mi nabízejí k instalaci "My Browser" a spol.

#13 Příspěvek od JanZRokycan »

Zatím je klid, ale mám strach jít na stránky Kickass Torrents, které jsem léta využíval k stahování filmů, ovšem v poslední době se tam něco děje (což mě prudí, neboť jsem seriálový maniak).....budu dále testovat a zítra podám zprávu.

Zároveň se pokusím udělat to bootovatelné CD pro NB, který stíhají modré smrti, ale musím napřed skočit do krámu pro disky :)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Stále se mi nabízejí k instalaci "My Browser" a spol.

#14 Příspěvek od Rudy »

OK. Je dobře, že máte strach. :D Torrenty obecně považujeme za semeniště virů a nikomu je nedoporučujeme používat. Některá zahraniční bezpečnostní fóra dokonce neřeší problémy uživatelů, kteří torrenty používají, neboť to považují za vědomé zavirovaání. K tomu jsem zatí nesáhli. :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

JanZRokycan
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 27 říj 2015 18:42

Re: Stále se mi nabízejí k instalaci "My Browser" a spol.

#15 Příspěvek od JanZRokycan »

Tak tos mi moc velkou radost neudělal - jsem na seriálech závislý jak feťák na své droze, takže budu muset hledat alternativy :D Tady mi asi neporadíš, což? :shock:

Ještě technický dotaz - neustále mě v systari otravovala ikona aktualizací, tak jsem je vypnul - teď mě tam pro změnu prudí ikona červeného štítu s křížkem - ale chci se zeptat, zda je rozumné mít aktualizace vypnuté (jedná se zde o WinXP). Já bych ty aktualizace za normální situace podstoupil, ale sotva je provedu, tak ikona aktualizací je zpět, zabírá místo a se.. mě :x

Odpovědět