Re: Pc Zpomaleno
Napsal: 10 čer 2015 20:47
Fixlog:
Fix result of Farbar Recovery Scan Tool (x64) Version:08-06-2015
Ran by Drone at 2015-06-10 21:27:24 Run:1
Running from C:\Users\Drone\Desktop
Loaded Profiles: Drone (Available Profiles: Drone)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:
HKLM\...\Run: [VDownloader] => C:\Program Files\VDownloader\VDownloader.exe [882176 2013-12-20] (Vitzo)
HKLM\...\Run: [SpywareTerminatorShield] => C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe
HKLM\...\Run: [SpywareTerminatorUpdater] => C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152 2014-12-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [448520 2015-05-05] (DivX, LLC)
HKLM-x32\...\Run: [DivXUpdate] => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861968 2014-01-10] ()
HKU\S-1-5-21-521595240-1332225932-1822350309-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
S3 esgiguard; C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [14872 2014-01-07] ()
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-19 81088]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-05-27 268464]
S3 gusvc;Google Updater Service; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2014-03-11 136120]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X]
2015-06-09 20:55 - 2015-06-09 20:58 - 21546080 _____ (Malwarebytes Corporation ) C:\Users\Drone\Downloads\mbam-setup-2.1.6.1022(2).exe
2015-06-09 15:13 - 2015-06-09 15:13 - 21546080 _____ (Malwarebytes Corporation ) C:\Users\Drone\Downloads\mbam-setup-2.1.6.1022(1).exe
2015-06-08 21:51 - 2015-06-08 21:52 - 21546080 _____ (Malwarebytes Corporation ) C:\Users\Drone\Downloads\mbam-setup-2.1.6.1022.exe
2013-10-28 23:30 - 2011-09-17 00:12 - 0143240 _____ (Ask.com) C:\Program Files (x86)\Common Files\ApnStub.exe
2013-10-28 23:30 - 2011-09-17 00:12 - 3623592 _____ (Ask) C:\Program Files (x86)\Common Files\ApnToolbarInstaller.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Hosts:
EmptyTemp:
Reboot:
End
*****************
Processes closed successfully.
Error: (0) Failed to create a restore point.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\VDownloader => value removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SpywareTerminatorShield => value removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SpywareTerminatorUpdater => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\seznam-listicka-distribuce => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\DivXMediaServer => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\DivXUpdate => value removed successfully
HKU\S-1-5-21-521595240-1332225932-1822350309-1000\Software\Microsoft\Windows\CurrentVersion\Run\\CCleaner Monitoring => value removed successfully
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Search Page => value removed successfully
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => value removed successfully
HKCR\CLSID\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => key not found.
esgiguard => Service removed successfully
AdobeARMservice => Service removed successfully
AdobeFlashPlayerUpdateSvc => Service removed successfully
gusvc => Service not found.
MBAMSwissArmy => Service not found.
C:\Users\Drone\Downloads\mbam-setup-2.1.6.1022(2).exe => moved successfully.
C:\Users\Drone\Downloads\mbam-setup-2.1.6.1022(1).exe => moved successfully.
C:\Users\Drone\Downloads\mbam-setup-2.1.6.1022.exe => moved successfully.
C:\Program Files (x86)\Common Files\ApnStub.exe => moved successfully.
C:\Program Files (x86)\Common Files\ApnToolbarInstaller.exe => moved successfully.
C:\Windows\Tasks\Adobe Flash Player Updater.job => moved successfully.
C:\Windows\System32\Drivers\etc\hosts => moved successfully.
Hosts restored successfully.
EmptyTemp: => 1 GB temporary data Removed.
The system needed a reboot..
==== End of Fixlog 21:27:53 ====
Fix result of Farbar Recovery Scan Tool (x64) Version:08-06-2015
Ran by Drone at 2015-06-10 21:27:24 Run:1
Running from C:\Users\Drone\Desktop
Loaded Profiles: Drone (Available Profiles: Drone)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:
HKLM\...\Run: [VDownloader] => C:\Program Files\VDownloader\VDownloader.exe [882176 2013-12-20] (Vitzo)
HKLM\...\Run: [SpywareTerminatorShield] => C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe
HKLM\...\Run: [SpywareTerminatorUpdater] => C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152 2014-12-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [448520 2015-05-05] (DivX, LLC)
HKLM-x32\...\Run: [DivXUpdate] => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861968 2014-01-10] ()
HKU\S-1-5-21-521595240-1332225932-1822350309-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
S3 esgiguard; C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [14872 2014-01-07] ()
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-19 81088]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-05-27 268464]
S3 gusvc;Google Updater Service; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2014-03-11 136120]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X]
2015-06-09 20:55 - 2015-06-09 20:58 - 21546080 _____ (Malwarebytes Corporation ) C:\Users\Drone\Downloads\mbam-setup-2.1.6.1022(2).exe
2015-06-09 15:13 - 2015-06-09 15:13 - 21546080 _____ (Malwarebytes Corporation ) C:\Users\Drone\Downloads\mbam-setup-2.1.6.1022(1).exe
2015-06-08 21:51 - 2015-06-08 21:52 - 21546080 _____ (Malwarebytes Corporation ) C:\Users\Drone\Downloads\mbam-setup-2.1.6.1022.exe
2013-10-28 23:30 - 2011-09-17 00:12 - 0143240 _____ (Ask.com) C:\Program Files (x86)\Common Files\ApnStub.exe
2013-10-28 23:30 - 2011-09-17 00:12 - 3623592 _____ (Ask) C:\Program Files (x86)\Common Files\ApnToolbarInstaller.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Hosts:
EmptyTemp:
Reboot:
End
*****************
Processes closed successfully.
Error: (0) Failed to create a restore point.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\VDownloader => value removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SpywareTerminatorShield => value removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SpywareTerminatorUpdater => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\seznam-listicka-distribuce => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\DivXMediaServer => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\DivXUpdate => value removed successfully
HKU\S-1-5-21-521595240-1332225932-1822350309-1000\Software\Microsoft\Windows\CurrentVersion\Run\\CCleaner Monitoring => value removed successfully
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Search Page => value removed successfully
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => value removed successfully
HKCR\CLSID\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => key not found.
esgiguard => Service removed successfully
AdobeARMservice => Service removed successfully
AdobeFlashPlayerUpdateSvc => Service removed successfully
gusvc => Service not found.
MBAMSwissArmy => Service not found.
C:\Users\Drone\Downloads\mbam-setup-2.1.6.1022(2).exe => moved successfully.
C:\Users\Drone\Downloads\mbam-setup-2.1.6.1022(1).exe => moved successfully.
C:\Users\Drone\Downloads\mbam-setup-2.1.6.1022.exe => moved successfully.
C:\Program Files (x86)\Common Files\ApnStub.exe => moved successfully.
C:\Program Files (x86)\Common Files\ApnToolbarInstaller.exe => moved successfully.
C:\Windows\Tasks\Adobe Flash Player Updater.job => moved successfully.
C:\Windows\System32\Drivers\etc\hosts => moved successfully.
Hosts restored successfully.
EmptyTemp: => 1 GB temporary data Removed.
The system needed a reboot..
==== End of Fixlog 21:27:53 ====