Dlhšiu dobu mám problém vyskakuje mi hláška:

Plus mi defender každý deň hádže do karantený súbory typu:Fuery.B!cl,Cloxer.D!cl
Tu je log z FRST
Moderátor: Moderátoři
Problém je, že som si nie vedomý toho že by som inštaloval nejaký WMware jedine čo som naposledy inštaloval bol Hamachi. Ale skôr by ma zaujímali tie súbory, ktoré defender ukladá do karantény a stále po štarte windowsu sa objavujú.Rudy píše:Zdravím!
Máte nainstalovanou virtuálku a ta má problém se zevedením. Řešení zde: https://translate.google.com/translate? ... rev=search .
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/
ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.Start
CloseProcesses:
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [601424 2018-07-07] (Oracle Corporation)
HKU\S-1-5-21-4254272432-1314880526-15813765-1001\...\MountPoints2: {a95ecd82-726a-11e6-9bd5-93b162a9a192} - "F:\autorun.exe" Launch.hta
HKU\S-1-5-21-4254272432-1314880526-15813765-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com
SearchScopes: HKU\S-1-5-21-4254272432-1314880526-15813765-1001 -> DefaultScope {A9C35B68-45D5-4E74-955D-170D3FEF8EBE} URL =
SearchScopes: HKU\S-1-5-21-4254272432-1314880526-15813765-1001 -> {A9C35B68-45D5-4E74-955D-170D3FEF8EBE} URL =
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
C:\Users\Miroslav Šušovica\AppData\Local\SQ.RemoverDelete.bat
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
Task: {17ACE940-39C5-4899-92A3-F81511652928} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-09-19] (Google Inc.)
Task: {806718BB-2972-4288-9016-EE5F3C301848} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-09-19] (Google Inc.)
Task: {A21266AA-EC01-4F21-AE4C-6C7A5B7819ED} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> No File <==== ATTENTION
Task: {CDE98BF1-F921-4ADC-A5ED-3D427F65E081} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
FirewallRules: [TCP Query User{710CA5B2-1A25-42B5-BF4A-E8FBEF00D5CD}C:\program files (x86)\magicplus\magicplus.exe] => (Allow) C:\program files (x86)\magicplus\magicplus.exe No File
FirewallRules: [UDP Query User{76F4C08A-0B2C-4775-B9EB-E52B6FB2A309}C:\program files (x86)\magicplus\magicplus.exe] => (Allow) C:\program files (x86)\magicplus\magicplus.exe No File
FirewallRules: [{6A32FCFC-0BB7-42C5-95BE-17541BFA75C6}] => (Allow) C:\Users\Miroslav Šušovica\Downloads\bin\BlackDesert32.exe No File
FirewallRules: [{DE7DD4A5-BF62-41EC-9338-A9408825A312}] => (Allow) C:\Users\Miroslav Šušovica\Downloads\bin64\BlackDesert64.exe No File
FirewallRules: [{01051A6A-68BA-406E-A35E-9470207CF1D7}] => (Allow) C:\Users\Miroslav Šušovica\Downloads\BlackDesert_Launcher.exe No File
FirewallRules: [{2B807704-BE9F-4EBF-9924-D53B7A37915E}] => (Allow) C:\Users\Miroslav Šušovica\Downloads\BlackDesert_Downloader.exe No File
FirewallRules: [TCP Query User{CB204E41-2CA0-4B16-831F-DA5926757020}D:\program files (x86)\counter-strike global offensive\steam\steamapps\common\counter-strike global offensive\csgo.exe] => (Allow) D:\program files (x86)\counter-strike global offensive\steam\steamapps\common\counter-strike global offensive\csgo.exe No File
FirewallRules: [UDP Query User{46A3A4F9-73A4-4954-847D-FD6B1195A3E9}D:\program files (x86)\counter-strike global offensive\steam\steamapps\common\counter-strike global offensive\csgo.exe] => (Allow) D:\program files (x86)\counter-strike global offensive\steam\steamapps\common\counter-strike global offensive\csgo.exe No File
FirewallRules: [TCP Query User{683D2F88-EC8D-4717-BA8D-1C235B165051}C:\users\miroslav šušovica\appdata\local\temp\rar$ex46.824\rmp.exe] => (Allow) C:\users\miroslav šušovica\appdata\local\temp\rar$ex46.824\rmp.exe No File
FirewallRules: [UDP Query User{74DDB53D-8E1B-4130-BCBA-AF147562D04D}C:\users\miroslav šušovica\appdata\local\temp\rar$ex46.824\rmp.exe] => (Allow) C:\users\miroslav šušovica\appdata\local\temp\rar$ex46.824\rmp.exe No File
EmptyTemp:
End