Stránka 2 z 2

Re: Pomoc se zavirovanem PC

Napsal: 06 zář 2014 21:35
od vyosek
:arrow: FRST.exe mate na plose, takze fixlist.txt musi byt ulozen tez na plose

Re: Pomoc se zavirovanem PC

Napsal: 12 zář 2014 01:27
od Lord-Diablo

Kód: Vybrat vše

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 10-09-2014
Ran by Denis at 2014-09-12 02:18:45 Run:1
Running from C:\Users\Denis\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [472992 2013-03-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [41336 2014-05-08] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [840568 2014-05-08] (Adobe Systems Inc.)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [54576 2009-11-18] (Hewlett-Packard)
HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101584 2014-04-25] (Safer-Networking Ltd.)
HKLM-x32\...\Run: [AdobeCEPServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CEPServiceManager4\CEPServiceManager.exe [1039248 2013-03-13] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKU\S-1-5-21-901014225-1187277305-3373686348-1000\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-901014225-1187277305-3373686348-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)
HKU\S-1-5-21-901014225-1187277305-3373686348-1000\...\Run: [HDDtoGOLaunch] => C:\Users\Denis\AppData\Roaming\CoSoSys\HDDtoGO\HDDtoGOLaunch.exe [172032 2013-09-16] ()
HKU\S-1-5-21-901014225-1187277305-3373686348-1000\...\Run: [Google Update] => C:\Users\Denis\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2014-07-07] (Google Inc.)
HKU\S-1-5-21-901014225-1187277305-3373686348-1000\...\MountPoints2: {fc804f7a-8fc4-11e3-a7dc-f46d0444b06f} - G:\setup.exe

GroupPolicy: Group Policy on Chrome detected <======= ATTENTION

SearchScopes: HKLM-x32 - DefaultScope value is missing.
BHO: NNEwSaveR -> {B615577B-A6A1-6893-B28E-716D03686BE6} -> C:\ProgramData\NNEwSaveR\FtG85Y.x64.dll No File
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Toolbar: HKCU - No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File

CHR HomePage: Default -> hxxp://www.trovigo.com/?gd=&ctid=CT3314 ... D42C&SSPV=
CHR StartupUrls: Default -> "chrome://apps/", "hxxp://google.com/", "hxxp://websearch.fastosearch.info/?pid=1908&r=2014/06/10&hid=7166647310572169449&lg=EN&cc=CZ&unqvl=55", "hxxp://search.gboxapp.com/"
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

S2 KMSServerService; C:\Users\Denis\AppData\Local\Temp\BA7.tmp\KMSServerService.exe [X]
S2 TunMirror; "C:\Users\Denis\AppData\Local\Temp\BA7.tmp\TunMirror.exe" [X]

2014-09-02 08:50 - 2014-09-02 08:51 - 00036750 _____ () C:\Users\Denis\Desktop\FRST.txt
2014-09-02 08:50 - 2014-09-02 08:50 - 00015327 _____ () C:\Users\Denis\Desktop\LM.bat
2014-09-02 08:49 - 2014-09-02 08:50 - 00029696 _____ () C:\Users\Denis\AppData\Local\MSGBOX.EXE
2014-09-02 08:47 - 2014-09-02 08:48 - 00112640 _____ (forum.viry.cz) C:\Users\Denis\Desktop\FRSTLauncher (1).exe
2014-09-02 08:47 - 2014-09-02 08:47 - 00112640 _____ (forum.viry.cz) C:\Users\Denis\Downloads\FRSTLauncher.exe
2014-08-06 10:50 - 2014-08-06 10:50 - 00000000 ____D () C:\Users\Denis\Downloads\Microsoft Office Windows Activator(KMSpico 9.2.2 RC)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-901014225-1187277305-3373686348-1000Core.job => C:\Users\Denis\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-901014225-1187277305-3373686348-1000UA.job => C:\Users\Denis\AppData\Local\Google\Update\GoogleUpdate.exe

C:\Windows\KMService.exe
C:\Windows\SysWOW64\srvany.exe

Hosts:
Reboot:
End
*****************

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeAAMUpdater-1.0 => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SwitchBoard => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\AdobeCS6ServiceManager => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe Acrobat Speed Launcher => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Acrobat Assistant 8.0 => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\HP Software Update => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SDTray => Value not found.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\AdobeCEPServiceManager => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value deleted successfully.
HKU\S-1-5-21-901014225-1187277305-3373686348-1000\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeBridge => value deleted successfully.
HKU\S-1-5-21-901014225-1187277305-3373686348-1000\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => value deleted successfully.
HKU\S-1-5-21-901014225-1187277305-3373686348-1000\Software\Microsoft\Windows\CurrentVersion\Run\\HDDtoGOLaunch => value deleted successfully.
HKU\S-1-5-21-901014225-1187277305-3373686348-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Google Update => value deleted successfully.
"HKU\S-1-5-21-901014225-1187277305-3373686348-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{fc804f7a-8fc4-11e3-a7dc-f46d0444b06f}" => Key deleted successfully.
"HKCR\CLSID\{fc804f7a-8fc4-11e3-a7dc-f46d0444b06f}" => Key not found.
C:\Windows\system32\GroupPolicy\Machine => Moved successfully.
C:\Windows\system32\GroupPolicy\GPT.ini => Moved successfully.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B615577B-A6A1-6893-B28E-716D03686BE6}" => Key deleted successfully.
"HKCR\CLSID\{B615577B-A6A1-6893-B28E-716D03686BE6}" => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => value deleted successfully.
"HKCR\CLSID\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}" => Key not found.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{47833539-D0C5-4125-9FA8-0819E2EAAC93} => value deleted successfully.
"HKCR\CLSID\{47833539-D0C5-4125-9FA8-0819E2EAAC93}" => Key not found.
Chrome HomePage deleted successfully.
Chrome StartupUrls deleted successfully.
"HKLM\SOFTWARE\Policies\Google" => Key deleted successfully.
KMSServerService => Service deleted successfully.
TunMirror => Service deleted successfully.
"C:\Users\Denis\Desktop\FRST.txt" => File/Directory not found.
C:\Users\Denis\Desktop\LM.bat => Moved successfully.
C:\Users\Denis\AppData\Local\MSGBOX.EXE => Moved successfully.
C:\Users\Denis\Desktop\FRSTLauncher (1).exe => Moved successfully.
C:\Users\Denis\Downloads\FRSTLauncher.exe => Moved successfully.
"C:\Users\Denis\Downloads\Microsoft Office Windows Activator(KMSpico 9.2.2 RC)" => File/Directory not found.
C:\Windows\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-901014225-1187277305-3373686348-1000Core.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-901014225-1187277305-3373686348-1000UA.job => Moved successfully.
C:\Windows\KMService.exe => Moved successfully.
C:\Windows\SysWOW64\srvany.exe => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.


The system needed a reboot. 

==== End of Fixlog ====

Re: Pomoc se zavirovanem PC

Napsal: 12 zář 2014 05:21
od vyosek
Tak jeste uklidime :James008:

:arrow: T-Cleaner http://vyosek.tym.cz/pro_usery/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: OTC http://oldtimer.geekstogo.com/OTC.exe
  • Stahnete a spustte
  • Kliknete na CleanUp a potvrdte YES
  • Program uklidi a restartuje PC

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stahnete a spustte
  • Kliknete na Start a potvrdte OK
  • Program uklidi a restartuje pc
  • Po pouziti utilitu smazte
:arrow: Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: A pokud nejsou problemy ci dotazy, je to z me strany vse :|

Re: Pomoc se zavirovanem PC

Napsal: 15 zář 2014 17:27
od Lord-Diablo
Dekuji moc, ale ten double click stale je :(

Re: Pomoc se zavirovanem PC

Napsal: 15 zář 2014 17:41
od vyosek
Zkuste jinou mys