Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Máte problém s virem? Vložte sem log z FRST nebo RSIT.
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST
[návod zde] nebo RSIT
[návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte
Pravidlo o zamykání témat . Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
vyosek
VIP
Příspěvky: 56373 Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno
#16
Příspěvek
od vyosek » 09 pro 2014 21:36
Tvorba fixlistu pro FRST
Spustte poznamkovy blok (Start-spustit-notepad)
Zkopirujte skript nize
Kód: Vybrat vše
Start
CloseProcesses:
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-26] (Microsoft Corporation)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation)
HKU\S-1-5-21-1363250933-3302703128-408898543-1004\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-1363250933-3302703128-408898543-1004\...\Run: [Akamai NetSession Interface] => "C:\Users\Gambac\AppData\Local\Akamai\netsession_win.exe"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GamePark klient 2.lnk
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
2014-12-09 18:45 - 2014-12-09 18:45 - 00029696 _____ () C:\Users\Gambac\AppData\Local\MSGBOX.EXE
2014-12-09 18:45 - 2014-12-09 18:45 - 00015327 _____ () C:\Users\Gambac\Desktop\LM.bat
2014-12-09 18:45 - 2014-12-09 18:45 - 00015210 _____ () C:\Users\Gambac\Desktop\FRST.txt
2014-12-09 18:44 - 2014-12-09 18:44 - 00112640 _____ (forum.viry.cz) C:\Users\Gambac\Downloads\Nepotvrzeno 309877.crdownload
2014-12-09 18:44 - 2014-12-09 18:44 - 00112640 _____ (forum.viry.cz) C:\Users\Gambac\Desktop\FRSTLauncher (3).exe
2014-12-09 18:43 - 2014-12-09 18:43 - 00112640 _____ (forum.viry.cz) C:\Users\Gambac\Downloads\Nepotvrzeno 990972.crdownload
2014-12-09 18:43 - 2014-12-09 18:43 - 00112640 _____ (forum.viry.cz) C:\Users\Gambac\Downloads\Nepotvrzeno 97840.crdownload
2014-12-08 22:00 - 2014-12-08 21:40 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-12-08 21:41 - 2014-12-08 22:03 - 00024242 _____ () C:\zoek-results.log
2014-12-08 21:40 - 2014-12-08 21:57 - 00000000 ____D () C:\zoek_backup
2014-12-08 21:39 - 2014-12-08 21:39 - 01295360 _____ () C:\Users\Gambac\Desktop\zoek.exe
2014-12-08 21:35 - 2014-12-08 21:36 - 00000000 ____D () C:\AdwCleaner
2014-12-08 21:35 - 2014-12-08 21:35 - 00000055 _____ () C:\AdwCleanerDebug.txt
2014-12-08 21:34 - 2014-12-08 21:34 - 02153472 _____ () C:\Users\Gambac\Desktop\adwcleaner_4.104.exe
2014-12-08 21:06 - 2014-12-08 21:31 - 00000000 ____D () C:\Program Files\trend micro
2014-12-08 21:06 - 2014-12-08 21:09 - 00000000 ____D () C:\rsit
2014-12-08 21:06 - 2014-12-08 21:06 - 01222144 _____ () C:\Users\Gambac\Desktop\RSITx64.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: {B59523F9-A508-4CF0-9F25-53DA02D43A9C} - \WPD\SqmUpload_S-1-5-21-1363250933-3302703128-408898543-1001 No Task File <==== ATTENTION
Task: {58BEF868-88B2-45FD-8C50-D12B5F22D594} - \Optimize Start Menu Cache Files-S-1-5-21-1363250933-3302703128-408898543-1001 No Task File <==== ATTENTION
AlternateDataStreams: C:\ProgramData\TEMP:56E2E879
Hosts:
EmptyTemp:
Reboot:
End
Ulozte vytvoreny TXT jako fixlist.txt
Presunte vytvoreny fixlist vedle FRST
Spustte znovu FRST.exe
Kliknete na Fix
Probehne oprava a vytvori log Fixlog.txt
Restart PC a dejte mi sem fixlog.txt
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen od 1. února 2011.
Gambac
Vzorný návštěvník
Příspěvky: 47 Registrován: 29 bře 2009 10:42
#17
Příspěvek
od Gambac » 09 pro 2014 22:14
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 09-12-2014
Ran by Gambac at 2014-12-09 22:11:19 Run:1
Running from C:\Users\Gambac\Desktop
Loaded Profile: Gambac (Available profiles: oem & Gambac)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
CloseProcesses:
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-26] (Microsoft Corporation)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation)
HKU\S-1-5-21-1363250933-3302703128-408898543-1004\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-1363250933-3302703128-408898543-1004\...\Run: [Akamai NetSession Interface] => "C:\Users\Gambac\AppData\Local\Akamai\netsession_win.exe"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GamePark klient 2.lnk
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
2014-12-09 18:45 - 2014-12-09 18:45 - 00029696 _____ () C:\Users\Gambac\AppData\Local\MSGBOX.EXE
2014-12-09 18:45 - 2014-12-09 18:45 - 00015327 _____ () C:\Users\Gambac\Desktop\LM.bat
2014-12-09 18:45 - 2014-12-09 18:45 - 00015210 _____ () C:\Users\Gambac\Desktop\FRST.txt
2014-12-09 18:44 - 2014-12-09 18:44 - 00112640 _____ (forum.viry.cz) C:\Users\Gambac\Downloads\Nepotvrzeno 309877.crdownload
2014-12-09 18:44 - 2014-12-09 18:44 - 00112640 _____ (forum.viry.cz) C:\Users\Gambac\Desktop\FRSTLauncher (3).exe
2014-12-09 18:43 - 2014-12-09 18:43 - 00112640 _____ (forum.viry.cz) C:\Users\Gambac\Downloads\Nepotvrzeno 990972.crdownload
2014-12-09 18:43 - 2014-12-09 18:43 - 00112640 _____ (forum.viry.cz) C:\Users\Gambac\Downloads\Nepotvrzeno 97840.crdownload
2014-12-08 22:00 - 2014-12-08 21:40 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-12-08 21:41 - 2014-12-08 22:03 - 00024242 _____ () C:\zoek-results.log
2014-12-08 21:40 - 2014-12-08 21:57 - 00000000 ____D () C:\zoek_backup
2014-12-08 21:39 - 2014-12-08 21:39 - 01295360 _____ () C:\Users\Gambac\Desktop\zoek.exe
2014-12-08 21:35 - 2014-12-08 21:36 - 00000000 ____D () C:\AdwCleaner
2014-12-08 21:35 - 2014-12-08 21:35 - 00000055 _____ () C:\AdwCleanerDebug.txt
2014-12-08 21:34 - 2014-12-08 21:34 - 02153472 _____ () C:\Users\Gambac\Desktop\adwcleaner_4.104.exe
2014-12-08 21:06 - 2014-12-08 21:31 - 00000000 ____D () C:\Program Files\trend micro
2014-12-08 21:06 - 2014-12-08 21:09 - 00000000 ____D () C:\rsit
2014-12-08 21:06 - 2014-12-08 21:06 - 01222144 _____ () C:\Users\Gambac\Desktop\RSITx64.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: {B59523F9-A508-4CF0-9F25-53DA02D43A9C} - \WPD\SqmUpload_S-1-5-21-1363250933-3302703128-408898543-1001 No Task File <==== ATTENTION
Task: {58BEF868-88B2-45FD-8C50-D12B5F22D594} - \Optimize Start Menu Cache Files-S-1-5-21-1363250933-3302703128-408898543-1001 No Task File <==== ATTENTION
AlternateDataStreams: C:\ProgramData\TEMP:56E2E879
Hosts:
EmptyTemp:
Reboot:
End
*****************
Processes closed successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\GrooveMonitor => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value deleted successfully.
HKU\S-1-5-21-1363250933-3302703128-408898543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => value deleted successfully.
HKU\S-1-5-21-1363250933-3302703128-408898543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\Akamai NetSession Interface => value deleted successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GamePark klient 2.lnk => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key deleted successfully.
"HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key not found.
"C:\Users\Gambac\AppData\Local\MSGBOX.EXE" => File/Directory not found.
"C:\Users\Gambac\Desktop\LM.bat" => File/Directory not found.
C:\Users\Gambac\Desktop\FRST.txt => Moved successfully.
C:\Users\Gambac\Downloads\Nepotvrzeno 309877.crdownload => Moved successfully.
C:\Users\Gambac\Desktop\FRSTLauncher (3).exe => Moved successfully.
C:\Users\Gambac\Downloads\Nepotvrzeno 990972.crdownload => Moved successfully.
C:\Users\Gambac\Downloads\Nepotvrzeno 97840.crdownload => Moved successfully.
C:\Windows\zoek-delete.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Users\Gambac\Desktop\zoek.exe => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\AdwCleanerDebug.txt => Moved successfully.
C:\Users\Gambac\Desktop\adwcleaner_4.104.exe => Moved successfully.
C:\Program Files\trend micro => Moved successfully.
C:\rsit => Moved successfully.
C:\Users\Gambac\Desktop\RSITx64.exe => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B59523F9-A508-4CF0-9F25-53DA02D43A9C}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B59523F9-A508-4CF0-9F25-53DA02D43A9C}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WPD\SqmUpload_S-1-5-21-1363250933-3302703128-408898543-1001" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{58BEF868-88B2-45FD-8C50-D12B5F22D594}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{58BEF868-88B2-45FD-8C50-D12B5F22D594}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Optimize Start Menu Cache Files-S-1-5-21-1363250933-3302703128-408898543-1001" => Key deleted successfully.
C:\ProgramData\TEMP => ":56E2E879" ADS removed successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 726.8 MB temporary data.
The system needed a reboot.
==== End of Fixlog ====
vyosek
VIP
Příspěvky: 56373 Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno
#18
Příspěvek
od vyosek » 09 pro 2014 22:15
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen od 1. února 2011.