Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Zvláštní přesměrování

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Pesekjak
Návštěvník
Návštěvník
Příspěvky: 7
Registrován: 12 bře 2018 20:48

Zvláštní přesměrování

#1 Příspěvek od Pesekjak »

Zdravím,
po návštěvě stránky pastebin.com je můj prohlížeč přesměrován na stránky s falešnými zprávami/viry, na jiných počítačích nebo stránkách se to neděje, mám podezření na virus.
Provedl jsem rychlý scan WD, MB a AdwCleaner, ale nic se nenašlo. Přikládam logy FRST.

Moc děkuji za váš čas a hezký den. :)
Přílohy
logs.zip
(37.93 KiB) Staženo 2 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119400
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zvláštní přesměrování

#2 Příspěvek od Rudy »

Zdravím!
Otevřte poznámkový blok a zkopírujte do něj:

Start

CloseProcesses:
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [752216 2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
Task: {04119c6c-fc55-47b9-9a8e-c02dcafdb83a} - no filepath. <==== ATTENTION
Task: {04d6deb1-359d-4567-a952-6f5c5b9e9caf} - no filepath. <==== ATTENTION
Task: {07de965a-9ffa-4a77-a68e-dd0128d2978f} - no filepath. <==== ATTENTION
Task: {0a2081dc-8dfa-40bf-aee0-97b55969e46b} - no filepath. <==== ATTENTION
Task: {18ea0c13-b60a-47a2-bcb7-892cbb41bad5} - no filepath. <==== ATTENTION
Task: {1fc8813e-afef-438d-a0c8-183d580c7046} - no filepath. <==== ATTENTION
Task: {212a6b45-c440-420d-baa4-4033e23f82fb} - no filepath. <==== ATTENTION
Task: {24ddada5-771a-4cb2-bf1f-ecb6853f5376} - no filepath. <==== ATTENTION
Task: {279df518-4071-403c-9b4f-f0ab2b97434b} - no filepath. <==== ATTENTION
Task: {2a111639-4c6a-42f7-b08e-9f7efdd5f520} - no filepath. <==== ATTENTION
Task: {2f32d0c4-c3bf-4010-b33c-627c741bb6ba} - no filepath. <==== ATTENTION
Task: {3e2256a5-4b5a-4ed1-93b6-c9086d197ed1} - no filepath. <==== ATTENTION
Task: {715e85e6-4f61-447b-af88-9aeed4dc8242} - no filepath. <==== ATTENTION
Task: {75b6225e-9840-4582-90b4-6f2f8fab4824} - no filepath. <==== ATTENTION
Task: {7b6a0e8c-26f9-4098-858b-d9d72be6a43e} - no filepath. <==== ATTENTION
Task: {7b976f87-30ae-4885-a4c0-f3355e7f7cfe} - no filepath. <==== ATTENTION
Task: {8128b360-81ee-4e7d-8e9e-42ecc96ad448} - no filepath. <==== ATTENTION
Task: {864c3d3e-726f-4fce-952e-7d5e4abf40f6} - no filepath. <==== ATTENTION
Task: {88b05338-46a9-4e51-a25d-c622a69ef70c} - no filepath. <==== ATTENTION
Task: {90e4f7e5-dfa5-47ef-80cd-43685beef689} - no filepath. <==== ATTENTION
Task: {a7d182e9-3f63-4e59-86a5-7ae3a9eba57d} - no filepath. <==== ATTENTION
Task: {b800084d-555e-4990-9ccd-3eb070e2f0b9} - no filepath. <==== ATTENTION
Task: {b8b4eb07-d3ee-4f23-99c8-d1dd24e4bbd5} - no filepath. <==== ATTENTION
Task: {bc916853-556e-4e28-981b-6332e6b35a62} - no filepath. <==== ATTENTION
Task: {c11735bf-aee0-499b-b7e4-978a479ba849} - no filepath. <==== ATTENTION
Task: {c28f3de9-f2a4-4e3c-b991-53246e1049fa} - no filepath. <==== ATTENTION
Task: {c97ce331-43c2-4955-8f0e-2fe6467c6949} - no filepath. <==== ATTENTION
Task: {cadab311-28d3-4330-afa8-48e8bfa65f21} - no filepath. <==== ATTENTION
Task: {d1206d47-5d7d-4fd5-891e-94011ddccdb2} - no filepath. <==== ATTENTION
Task: {dc9a2a1f-f4fe-4b36-aba9-e353a0e28a1e} - no filepath. <==== ATTENTION
Task: {e10b88af-6adf-4b9e-bd48-9cd059709353} - no filepath. <==== ATTENTION
Task: {e536e493-09e0-43d6-bf55-577282d531a8} - no filepath. <==== ATTENTION
Task: {fca2b3e4-d820-40fe-a589-7117e9305993} - no filepath. <==== ATTENTION
Task: {fce7c585-f2d3-4f65-9769-055bbd69bc13} - no filepath. <==== ATTENTION
Task: {fdaebcff-aa84-4f19-9019-aea84cdc4567} - no filepath. <==== ATTENTION
Task: {CA01484C-A179-40D2-BE2D-F90EF90FD265} - System32\Tasks\HP\HP Print Scan Doctor\Printer Health Monitor => C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe (No File)
Task: {59D054E9-B4F1-4D21-967E-6D7688F97102} - System32\Tasks\HP\HP Print Scan Doctor\Printer Health Monitor Logon => C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe (No File)
C:\DumpStack.log.tmp
AlternateDataStreams: C:\ProgramData\DisplaySessionContainer1.log:F107EE40EF [3442]
AlternateDataStreams: C:\ProgramData\DisplaySessionContainer1.log_backup1:2DD1EC5C91 [3442]
AlternateDataStreams: C:\ProgramData\DisplaySessionContainer2.log:CCB2353F35 [3442]
AlternateDataStreams: C:\ProgramData\DisplaySessionContainer2.log_backup1:0544EFE2DB [3442]
AlternateDataStreams: C:\ProgramData\DisplaySessionContainer3.log:8A1F56CED6 [3442]
AlternateDataStreams: C:\ProgramData\DisplaySessionContainer3.log_backup1:A473474DD2 [3442]
AlternateDataStreams: C:\ProgramData\DisplaySessionContainer4.log:3B2EC2BDEF [3442]
AlternateDataStreams: C:\ProgramData\DisplaySessionContainer4.log_backup1:DC5D04D24A [3442]
AlternateDataStreams: C:\ProgramData\DisplaySessionContainer5.log:84BD5AAA09 [3442]
AlternateDataStreams: C:\ProgramData\DisplaySessionContainer5.log_backup1:038079845B [3442]
AlternateDataStreams: C:\ProgramData\DisplaySessionContainer6.log:4C1811BCCA [3442]
AlternateDataStreams: C:\ProgramData\DisplaySessionContainer6.log_backup1:AC11A713EE [3442]
AlternateDataStreams: C:\ProgramData\mntemp:8EAD8B3507 [3442]
AlternateDataStreams: C:\ProgramData\NvcDispCorePlugin.log:AAE9D2281E [3442]
AlternateDataStreams: C:\ProgramData\NvcDispCorePlugin.log_backup1:E79F04DA79 [3442]
AlternateDataStreams: C:\ProgramData\NVDisplay.ContainerLocalSystem.log:5ACBC90093 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\desktop.ini:B1DA6C571C [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk:A1B76439FE [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk:BE32D07BC5 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk:B96E9B8455 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk:C5D586BE93 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk:2447EA3E0B [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++.lnk:159ADC9AA1 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk:60EC9648C0 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook (classic).lnk:BE800952D3 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\paint.net.lnk:C629424870 [3442]
FirewallRules: [TCP Query User{A9ADB753-9CDE-4A00-89E0-9667C893A51C}C:\program files\microchip\mplabx\v6.00\mplab_platform\bin\mplab_ide64.exe] => (Allow) C:\program files\microchip\mplabx\v6.00\mplab_platform\bin\mplab_ide64.exe => No File
FirewallRules: [UDP Query User{792D83A0-1241-4B5E-B146-02C51AC17381}C:\program files\microchip\mplabx\v6.00\mplab_platform\bin\mplab_ide64.exe] => (Allow) C:\program files\microchip\mplabx\v6.00\mplab_platform\bin\mplab_ide64.exe => No File
FirewallRules: [{E64B58B2-8B56-47C0-931E-6968472AC807}] => (Block) C:\program files\microchip\mplabx\v6.00\mplab_platform\bin\mplab_ide64.exe => No File
FirewallRules: [{F69650F6-E9F5-4345-9323-1786E05DB145}] => (Block) C:\program files\microchip\mplabx\v6.00\mplab_platform\bin\mplab_ide64.exe => No File
FirewallRules: [{26400DE3-5402-4B23-A425-5A84D596475D}] => (Allow) C:\Program Files (x86)\Overwolf\0.275.0.13\OverwolfBrowser.exe => No File
FirewallRules: [{1770877D-1EA9-4D2E-BEAB-8A9558A6C2A7}] => (Allow) C:\Program Files (x86)\Overwolf\0.275.0.13\OverwolfBrowser.exe => No File
FirewallRules: [{ECF94514-AD89-4A88-93EC-836D72B0F3B7}] => (Block) C:\Program Files (x86)\Overwolf\0.275.0.13\OverwolfBrowser.exe => No File
FirewallRules: [{08420E86-0FAB-438E-BEB9-1979F27EC273}] => (Block) C:\Program Files (x86)\Overwolf\0.275.0.13\OverwolfBrowser.exe => No File


EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Pesekjak
Návštěvník
Návštěvník
Příspěvky: 7
Registrován: 12 bře 2018 20:48

Re: Zvláštní přesměrování

#3 Příspěvek od Pesekjak »

Při mazání Temp složky program zamrzl, posílám nejspíš neúplný fix log

Fix result of Farbar Recovery Scan Tool (x64) Version: 13-07-2025
Ran by jakub (16-07-2025 16:14:58) Run:1
Running from C:\Users\jakub\Desktop
Loaded Profiles: jakub
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [752216 2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
Task: {04119c6c-fc55-47b9-9a8e-c02dcafdb83a} - no filepath. <==== ATTENTION
Task: {04d6deb1-359d-4567-a952-6f5c5b9e9caf} - no filepath. <==== ATTENTION
Task: {07de965a-9ffa-4a77-a68e-dd0128d2978f} - no filepath. <==== ATTENTION
Task: {0a2081dc-8dfa-40bf-aee0-97b55969e46b} - no filepath. <==== ATTENTION
Task: {18ea0c13-b60a-47a2-bcb7-892cbb41bad5} - no filepath. <==== ATTENTION
Task: {1fc8813e-afef-438d-a0c8-183d580c7046} - no filepath. <==== ATTENTION
Task: {212a6b45-c440-420d-baa4-4033e23f82fb} - no filepath. <==== ATTENTION
Task: {24ddada5-771a-4cb2-bf1f-ecb6853f5376} - no filepath. <==== ATTENTION
Task: {279df518-4071-403c-9b4f-f0ab2b97434b} - no filepath. <==== ATTENTION
Task: {2a111639-4c6a-42f7-b08e-9f7efdd5f520} - no filepath. <==== ATTENTION
Task: {2f32d0c4-c3bf-4010-b33c-627c741bb6ba} - no filepath. <==== ATTENTION
Task: {3e2256a5-4b5a-4ed1-93b6-c9086d197ed1} - no filepath. <==== ATTENTION
Task: {715e85e6-4f61-447b-af88-9aeed4dc8242} - no filepath. <==== ATTENTION
Task: {75b6225e-9840-4582-90b4-6f2f8fab4824} - no filepath. <==== ATTENTION
Task: {7b6a0e8c-26f9-4098-858b-d9d72be6a43e} - no filepath. <==== ATTENTION
Task: {7b976f87-30ae-4885-a4c0-f3355e7f7cfe} - no filepath. <==== ATTENTION
Task: {8128b360-81ee-4e7d-8e9e-42ecc96ad448} - no filepath. <==== ATTENTION
Task: {864c3d3e-726f-4fce-952e-7d5e4abf40f6} - no filepath. <==== ATTENTION
Task: {88b05338-46a9-4e51-a25d-c622a69ef70c} - no filepath. <==== ATTENTION
Task: {90e4f7e5-dfa5-47ef-80cd-43685beef689} - no filepath. <==== ATTENTION
Task: {a7d182e9-3f63-4e59-86a5-7ae3a9eba57d} - no filepath. <==== ATTENTION
Task: {b800084d-555e-4990-9ccd-3eb070e2f0b9} - no filepath. <==== ATTENTION
Task: {b8b4eb07-d3ee-4f23-99c8-d1dd24e4bbd5} - no filepath. <==== ATTENTION
Task: {bc916853-556e-4e28-981b-6332e6b35a62} - no filepath. <==== ATTENTION
Task: {c11735bf-aee0-499b-b7e4-978a479ba849} - no filepath. <==== ATTENTION
Task: {c28f3de9-f2a4-4e3c-b991-53246e1049fa} - no filepath. <==== ATTENTION
Task: {c97ce331-43c2-4955-8f0e-2fe6467c6949} - no filepath. <==== ATTENTION
Task: {cadab311-28d3-4330-afa8-48e8bfa65f21} - no filepath. <==== ATTENTION
Task: {d1206d47-5d7d-4fd5-891e-94011ddccdb2} - no filepath. <==== ATTENTION
Task: {dc9a2a1f-f4fe-4b36-aba9-e353a0e28a1e} - no filepath. <==== ATTENTION
Task: {e10b88af-6adf-4b9e-bd48-9cd059709353} - no filepath. <==== ATTENTION
Task: {e536e493-09e0-43d6-bf55-577282d531a8} - no filepath. <==== ATTENTION
Task: {fca2b3e4-d820-40fe-a589-7117e9305993} - no filepath. <==== ATTENTION
Task: {fce7c585-f2d3-4f65-9769-055bbd69bc13} - no filepath. <==== ATTENTION
Task: {fdaebcff-aa84-4f19-9019-aea84cdc4567} - no filepath. <==== ATTENTION
Task: {CA01484C-A179-40D2-BE2D-F90EF90FD265} - System32\Tasks\HP\HP Print Scan Doctor\Printer Health Monitor => C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe (No File)
Task: {59D054E9-B4F1-4D21-967E-6D7688F97102} - System32\Tasks\HP\HP Print Scan Doctor\Printer Health Monitor Logon => C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe (No File)
C:\DumpStack.log.tmp
AlternateDataStreams: C:\ProgramData\DisplaySessionContainer1.log:F107EE40EF [3442]
AlternateDataStreams: C:\ProgramData\DisplaySessionContainer1.log_backup1:2DD1EC5C91 [3442]
AlternateDataStreams: C:\ProgramData\DisplaySessionContainer2.log:CCB2353F35 [3442]
AlternateDataStreams: C:\ProgramData\DisplaySessionContainer2.log_backup1:0544EFE2DB [3442]
AlternateDataStreams: C:\ProgramData\DisplaySessionContainer3.log:8A1F56CED6 [3442]
AlternateDataStreams: C:\ProgramData\DisplaySessionContainer3.log_backup1:A473474DD2 [3442]
AlternateDataStreams: C:\ProgramData\DisplaySessionContainer4.log:3B2EC2BDEF [3442]
AlternateDataStreams: C:\ProgramData\DisplaySessionContainer4.log_backup1:DC5D04D24A [3442]
AlternateDataStreams: C:\ProgramData\DisplaySessionContainer5.log:84BD5AAA09 [3442]
AlternateDataStreams: C:\ProgramData\DisplaySessionContainer5.log_backup1:038079845B [3442]
AlternateDataStreams: C:\ProgramData\DisplaySessionContainer6.log:4C1811BCCA [3442]
AlternateDataStreams: C:\ProgramData\DisplaySessionContainer6.log_backup1:AC11A713EE [3442]
AlternateDataStreams: C:\ProgramData\mntemp:8EAD8B3507 [3442]
AlternateDataStreams: C:\ProgramData\NvcDispCorePlugin.log:AAE9D2281E [3442]
AlternateDataStreams: C:\ProgramData\NvcDispCorePlugin.log_backup1:E79F04DA79 [3442]
AlternateDataStreams: C:\ProgramData\NVDisplay.ContainerLocalSystem.log:5ACBC90093 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\desktop.ini:B1DA6C571C [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk:A1B76439FE [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk:BE32D07BC5 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk:B96E9B8455 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk:C5D586BE93 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk:2447EA3E0B [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++.lnk:159ADC9AA1 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk:60EC9648C0 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook (classic).lnk:BE800952D3 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\paint.net.lnk:C629424870 [3442]
FirewallRules: [TCP Query User{A9ADB753-9CDE-4A00-89E0-9667C893A51C}C:\program files\microchip\mplabx\v6.00\mplab_platform\bin\mplab_ide64.exe] => (Allow) C:\program files\microchip\mplabx\v6.00\mplab_platform\bin\mplab_ide64.exe => No File
FirewallRules: [UDP Query User{792D83A0-1241-4B5E-B146-02C51AC17381}C:\program files\microchip\mplabx\v6.00\mplab_platform\bin\mplab_ide64.exe] => (Allow) C:\program files\microchip\mplabx\v6.00\mplab_platform\bin\mplab_ide64.exe => No File
FirewallRules: [{E64B58B2-8B56-47C0-931E-6968472AC807}] => (Block) C:\program files\microchip\mplabx\v6.00\mplab_platform\bin\mplab_ide64.exe => No File
FirewallRules: [{F69650F6-E9F5-4345-9323-1786E05DB145}] => (Block) C:\program files\microchip\mplabx\v6.00\mplab_platform\bin\mplab_ide64.exe => No File
FirewallRules: [{26400DE3-5402-4B23-A425-5A84D596475D}] => (Allow) C:\Program Files (x86)\Overwolf\0.275.0.13\OverwolfBrowser.exe => No File
FirewallRules: [{1770877D-1EA9-4D2E-BEAB-8A9558A6C2A7}] => (Allow) C:\Program Files (x86)\Overwolf\0.275.0.13\OverwolfBrowser.exe => No File
FirewallRules: [{ECF94514-AD89-4A88-93EC-836D72B0F3B7}] => (Block) C:\Program Files (x86)\Overwolf\0.275.0.13\OverwolfBrowser.exe => No File
FirewallRules: [{08420E86-0FAB-438E-BEB9-1979F27EC273}] => (Block) C:\Program Files (x86)\Overwolf\0.275.0.13\OverwolfBrowser.exe => No File


EmptyTemp:
End
*****************

Processes closed successfully.
"HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{04119c6c-fc55-47b9-9a8e-c02dcafdb83a}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{04d6deb1-359d-4567-a952-6f5c5b9e9caf}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{07de965a-9ffa-4a77-a68e-dd0128d2978f}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0a2081dc-8dfa-40bf-aee0-97b55969e46b}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{18ea0c13-b60a-47a2-bcb7-892cbb41bad5}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1fc8813e-afef-438d-a0c8-183d580c7046}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{212a6b45-c440-420d-baa4-4033e23f82fb}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{24ddada5-771a-4cb2-bf1f-ecb6853f5376}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{279df518-4071-403c-9b4f-f0ab2b97434b}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2a111639-4c6a-42f7-b08e-9f7efdd5f520}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2f32d0c4-c3bf-4010-b33c-627c741bb6ba}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3e2256a5-4b5a-4ed1-93b6-c9086d197ed1}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{715e85e6-4f61-447b-af88-9aeed4dc8242}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{75b6225e-9840-4582-90b4-6f2f8fab4824}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7b6a0e8c-26f9-4098-858b-d9d72be6a43e}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7b976f87-30ae-4885-a4c0-f3355e7f7cfe}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8128b360-81ee-4e7d-8e9e-42ecc96ad448}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{864c3d3e-726f-4fce-952e-7d5e4abf40f6}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{88b05338-46a9-4e51-a25d-c622a69ef70c}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{90e4f7e5-dfa5-47ef-80cd-43685beef689}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{a7d182e9-3f63-4e59-86a5-7ae3a9eba57d}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{b800084d-555e-4990-9ccd-3eb070e2f0b9}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{b8b4eb07-d3ee-4f23-99c8-d1dd24e4bbd5}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{bc916853-556e-4e28-981b-6332e6b35a62}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{c11735bf-aee0-499b-b7e4-978a479ba849}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{c28f3de9-f2a4-4e3c-b991-53246e1049fa}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{c97ce331-43c2-4955-8f0e-2fe6467c6949}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{cadab311-28d3-4330-afa8-48e8bfa65f21}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{d1206d47-5d7d-4fd5-891e-94011ddccdb2}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{dc9a2a1f-f4fe-4b36-aba9-e353a0e28a1e}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{e10b88af-6adf-4b9e-bd48-9cd059709353}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{e536e493-09e0-43d6-bf55-577282d531a8}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{fca2b3e4-d820-40fe-a589-7117e9305993}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{fce7c585-f2d3-4f65-9769-055bbd69bc13}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{fdaebcff-aa84-4f19-9019-aea84cdc4567}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CA01484C-A179-40D2-BE2D-F90EF90FD265}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CA01484C-A179-40D2-BE2D-F90EF90FD265}" => removed successfully
C:\WINDOWS\System32\Tasks\HP\HP Print Scan Doctor\Printer Health Monitor => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\HP\HP Print Scan Doctor\Printer Health Monitor" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{59D054E9-B4F1-4D21-967E-6D7688F97102}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{59D054E9-B4F1-4D21-967E-6D7688F97102}" => removed successfully
C:\WINDOWS\System32\Tasks\HP\HP Print Scan Doctor\Printer Health Monitor Logon => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\HP\HP Print Scan Doctor\Printer Health Monitor Logon" => removed successfully
Could not move "C:\DumpStack.log.tmp" => Scheduled to move on reboot.
C:\ProgramData\DisplaySessionContainer1.log => ":F107EE40EF" ADS removed successfully
C:\ProgramData\DisplaySessionContainer1.log_backup1 => ":2DD1EC5C91" ADS removed successfully
C:\ProgramData\DisplaySessionContainer2.log => ":CCB2353F35" ADS removed successfully
C:\ProgramData\DisplaySessionContainer2.log_backup1 => ":0544EFE2DB" ADS removed successfully
C:\ProgramData\DisplaySessionContainer3.log => ":8A1F56CED6" ADS removed successfully
C:\ProgramData\DisplaySessionContainer3.log_backup1 => ":A473474DD2" ADS removed successfully
C:\ProgramData\DisplaySessionContainer4.log => ":3B2EC2BDEF" ADS removed successfully
C:\ProgramData\DisplaySessionContainer4.log_backup1 => ":DC5D04D24A" ADS removed successfully
C:\ProgramData\DisplaySessionContainer5.log => ":84BD5AAA09" ADS removed successfully
C:\ProgramData\DisplaySessionContainer5.log_backup1 => ":038079845B" ADS removed successfully
C:\ProgramData\DisplaySessionContainer6.log => ":4C1811BCCA" ADS removed successfully
C:\ProgramData\DisplaySessionContainer6.log_backup1 => ":AC11A713EE" ADS removed successfully
C:\ProgramData\mntemp => ":8EAD8B3507" ADS removed successfully
C:\ProgramData\NvcDispCorePlugin.log => ":AAE9D2281E" ADS removed successfully
C:\ProgramData\NvcDispCorePlugin.log_backup1 => ":E79F04DA79" ADS removed successfully
C:\ProgramData\NVDisplay.ContainerLocalSystem.log => ":5ACBC90093" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\desktop.ini => ":B1DA6C571C" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk => ":A1B76439FE" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk => ":BE32D07BC5" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk => ":B96E9B8455" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk => ":C5D586BE93" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk => ":2447EA3E0B" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++.lnk => ":159ADC9AA1" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk => ":60EC9648C0" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook (classic).lnk => ":BE800952D3" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\paint.net.lnk => ":C629424870" ADS removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{A9ADB753-9CDE-4A00-89E0-9667C893A51C}C:\program files\microchip\mplabx\v6.00\mplab_platform\bin\mplab_ide64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{792D83A0-1241-4B5E-B146-02C51AC17381}C:\program files\microchip\mplabx\v6.00\mplab_platform\bin\mplab_ide64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E64B58B2-8B56-47C0-931E-6968472AC807}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F69650F6-E9F5-4345-9323-1786E05DB145}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{26400DE3-5402-4B23-A425-5A84D596475D}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1770877D-1EA9-4D2E-BEAB-8A9558A6C2A7}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{ECF94514-AD89-4A88-93EC-836D72B0F3B7}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{08420E86-0FAB-438E-BEB9-1979F27EC273}" => removed successfully

=========== EmptyTemp: ==========

FlushDNS => completed
BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 2609355236 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 1116699237 B
Windows/system/drivers => 1349410908 B
Edge => 0 B
Chrome => 394524997 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 94847 B
systemprofile32 => 1224829 B
LocalService => 11980303 B
NetworkService => 13744221 B

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119400
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zvláštní přesměrování

#4 Příspěvek od Rudy »

Podle mého je log kompletní. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Pesekjak
Návštěvník
Návštěvník
Příspěvky: 7
Registrován: 12 bře 2018 20:48

Re: Zvláštní přesměrování

#5 Příspěvek od Pesekjak »

Vypadá, že už je vše v pořádku. Kdybych na něco opět narazil, ozvu se.

Moc děkuji a posílám příspěvek na pivo :)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119400
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zvláštní přesměrování

#6 Příspěvek od Rudy »

OK. Za příspěvek děkujeme a vy nemáte zač! :) Ponechám to tu otevřené.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět