Zdravím. Ano, vždy nečekaně ztuhne tak, že ani to "tlačítko" nepomůže, na nic to nereaguje. Vždycky. Proto to řeším.
combolog je zde:
ComboFix 15-12-12.01 - Petra 13.12.2015 10:24:33.1.2 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.4095.2756 [GMT 1:00]
Spuštěný z: c:\users\Petra\Downloads\ComboFix.exe
AV: avast! Antivirus *Enabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
SP: avast! Antivirus *Enabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2015-11-13 do 2015-12-13 )))))))))))))))))))))))))))))))
.
.
2015-12-13 09:31 . 2015-12-13 09:31 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2015-12-13 09:31 . 2015-12-13 09:31 -------- d-----w- c:\users\Default\AppData\Local\temp
2015-12-11 17:21 . 2015-12-11 17:21 386096 ----a-w- c:\windows\system32\aswBoot.exe
2015-12-11 17:21 . 2015-12-11 17:21 43112 ----a-w- c:\windows\avastSS.scr
2015-12-05 16:51 . 2015-12-05 16:51 -------- d-----w- c:\program files\Common Files\AV
2015-12-05 16:51 . 2015-12-05 16:51 -------- d-----w- c:\program files (x86)\Common Files\AV
2015-11-27 19:19 . 2015-12-05 16:53 512 ----a-w- C:\PhysicalMBR.bin
2015-11-27 18:11 . 2015-11-27 18:11 -------- d-----w- c:\program files\Defraggler
2015-11-26 18:02 . 2014-03-09 21:48 171160 ----a-w- c:\windows\system32\infocardapi.dll
2015-11-26 18:02 . 2014-03-09 21:48 1389208 ----a-w- c:\windows\system32\icardagt.exe
2015-11-26 18:02 . 2014-03-09 21:47 99480 ----a-w- c:\windows\SysWow64\infocardapi.dll
2015-11-26 18:02 . 2014-03-09 21:47 619672 ----a-w- c:\windows\SysWow64\icardagt.exe
2015-11-26 18:01 . 2014-06-30 22:24 8856 ----a-w- c:\windows\system32\icardres.dll
2015-11-26 18:01 . 2014-06-30 22:14 8856 ----a-w- c:\windows\SysWow64\icardres.dll
2015-11-26 18:01 . 2014-06-06 06:16 35480 ----a-w- c:\windows\SysWow64\TsWpfWrp.exe
2015-11-26 18:01 . 2014-06-06 06:12 35480 ----a-w- c:\windows\system32\TsWpfWrp.exe
2015-11-26 17:53 . 2015-02-18 07:06 123904 ----a-w- c:\windows\SysWow64\poqexec.exe
2015-11-26 17:53 . 2015-02-18 07:04 142336 ----a-w- c:\windows\system32\poqexec.exe
2015-11-26 16:39 . 2013-08-28 01:12 461312 ----a-w- c:\windows\system32\scavengeui.dll
2015-11-25 23:23 . 2015-02-04 03:16 465920 ----a-w- c:\windows\system32\WMPhoto.dll
2015-11-25 23:23 . 2015-02-04 02:54 417792 ----a-w- c:\windows\SysWow64\WMPhoto.dll
2015-11-24 19:48 . 2013-10-14 17:00 28368 ----a-w- c:\windows\system32\IEUDINIT.EXE
2015-11-24 19:37 . 2015-11-24 19:37 362496 ----a-w- c:\windows\system32\wow64win.dll
2015-11-24 19:36 . 2015-11-24 19:36 376688 ----a-w- c:\windows\system32\drivers\netio.sys
2015-11-24 19:36 . 2015-11-24 19:36 288088 ----a-w- c:\windows\system32\drivers\FWPKCLNT.SYS
2015-11-24 19:36 . 2015-11-24 19:36 1903552 ----a-w- c:\windows\system32\drivers\tcpip.sys
2015-11-24 19:36 . 2015-11-24 19:36 497152 ----a-w- c:\windows\system32\drivers\afd.sys
2015-11-24 19:36 . 2015-11-24 19:36 327168 ----a-w- c:\windows\system32\mswsock.dll
2015-11-24 19:36 . 2015-11-24 19:36 231424 ----a-w- c:\windows\SysWow64\mswsock.dll
2015-11-24 19:36 . 2015-11-24 19:36 68608 ----a-w- c:\windows\system32\taskhost.exe
2015-11-24 19:29 . 2015-11-24 19:29 1887232 ----a-w- c:\windows\system32\d3d11.dll
2015-11-24 19:29 . 2015-11-24 19:29 1505280 ----a-w- c:\windows\SysWow64\d3d11.dll
2015-11-23 20:07 . 2014-05-14 16:23 44512 ----a-w- c:\windows\system32\wups2.dll
2015-11-23 20:07 . 2014-05-14 16:23 58336 ----a-w- c:\windows\system32\wuauclt.exe
2015-11-23 20:07 . 2014-05-14 16:23 2477536 ----a-w- c:\windows\system32\wuaueng.dll
2015-11-23 20:07 . 2014-05-14 16:21 2620928 ----a-w- c:\windows\system32\wucltux.dll
2015-11-23 20:07 . 2014-05-14 16:23 38880 ----a-w- c:\windows\system32\wups.dll
2015-11-23 20:07 . 2014-05-14 16:23 36320 ----a-w- c:\windows\SysWow64\wups.dll
2015-11-23 20:07 . 2014-05-14 16:23 700384 ----a-w- c:\windows\system32\wuapi.dll
2015-11-23 20:07 . 2014-05-14 16:23 581600 ----a-w- c:\windows\SysWow64\wuapi.dll
2015-11-23 20:07 . 2014-05-14 16:20 97792 ----a-w- c:\windows\system32\wudriver.dll
2015-11-23 20:07 . 2014-05-14 16:17 92672 ----a-w- c:\windows\SysWow64\wudriver.dll
2015-11-23 20:06 . 2014-05-14 08:23 198600 ----a-w- c:\windows\system32\wuwebv.dll
2015-11-23 20:06 . 2014-05-14 08:23 179656 ----a-w- c:\windows\SysWow64\wuwebv.dll
2015-11-23 20:06 . 2014-05-14 08:20 36864 ----a-w- c:\windows\system32\wuapp.exe
2015-11-23 20:06 . 2014-05-14 08:17 33792 ----a-w- c:\windows\SysWow64\wuapp.exe
2015-11-22 21:15 . 2015-11-22 21:15 -------- d-----w- c:\windows\system32\SPReview
2015-11-22 21:15 . 2015-11-22 21:15 -------- d-----w- c:\windows\system32\EventProviders
2015-11-22 20:28 . 2015-11-25 23:02 192216 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys
2015-11-22 20:28 . 2015-10-05 08:50 109272 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys
2015-11-22 20:28 . 2015-11-22 20:28 -------- d-----w- c:\program files (x86)\Malwarebytes Anti-Malware
2015-11-22 20:28 . 2015-11-22 20:28 -------- d-----w- c:\programdata\Malwarebytes
2015-11-22 20:28 . 2015-10-05 08:50 63704 ----a-w- c:\windows\system32\drivers\mwac.sys
2015-11-22 20:28 . 2015-10-05 08:50 25816 ----a-w- c:\windows\system32\drivers\mbam.sys
2015-11-22 20:28 . 2015-11-22 20:28 -------- d-----w- c:\users\Petra\AppData\Local\Programs
2015-11-22 20:20 . 2010-11-05 01:57 48976 ----a-w- c:\windows\system32\netfxperf.dll
2015-11-22 20:20 . 2010-11-05 01:57 1942856 ----a-w- c:\windows\system32\dfshim.dll
2015-11-22 20:20 . 2010-11-05 01:58 1130824 ----a-w- c:\windows\SysWow64\dfshim.dll
2015-11-22 20:20 . 2010-11-20 11:07 59392 ----a-w- c:\windows\system32\drivers\TsUsbFlt.sys
2015-11-22 20:20 . 2010-11-20 13:27 12288 ----a-w- c:\windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2015-11-22 20:20 . 2010-11-20 13:27 3715584 ----a-w- c:\windows\system32\mstscax.dll
2015-11-22 20:20 . 2010-11-20 13:27 14967808 ----a-w- c:\program files\DVD Maker\OmdBase.dll
2015-11-22 20:20 . 2010-11-20 12:19 3215872 ----a-w- c:\windows\SysWow64\mstscax.dll
2015-11-22 20:18 . 2010-11-20 13:34 215936 ----a-w- c:\windows\system32\drivers\vhdmp.sys
2015-11-22 20:17 . 2010-11-20 13:33 171392 ----a-w- c:\windows\system32\drivers\scsiport.sys
2015-11-22 20:16 . 2010-11-20 13:27 228864 ----a-w- c:\windows\system32\wbem\wmiprov.dll
2015-11-22 20:15 . 2010-11-20 13:32 2560 ----a-w- c:\windows\system32\drivers\cs-CZ\rdpwd.sys.mui
2015-11-22 20:15 . 2010-11-20 13:26 3584 ----a-w- c:\windows\system32\drivers\cs-CZ\tsusbflt.sys.mui
2015-11-22 20:15 . 2010-11-20 13:32 4608 ----a-w- c:\windows\system32\drivers\cs-CZ\kbdclass.sys.mui
2015-11-22 20:15 . 2010-11-20 13:31 3072 ----a-w- c:\windows\system32\drivers\cs-CZ\GAGP30KX.SYS.mui
2015-11-22 20:15 . 2010-11-20 13:26 399872 ----a-w- c:\windows\system32\dpx.dll
2015-11-22 20:15 . 2010-11-20 12:21 189952 ----a-w- c:\windows\SysWow64\wdscore.dll
2015-11-22 20:13 . 2010-11-20 12:21 363008 ----a-w- c:\windows\SysWow64\wbemcomn.dll
2015-11-22 20:13 . 2010-11-20 12:19 606208 ----a-w- c:\windows\SysWow64\wbem\fastprox.dll
2015-11-22 20:05 . 2010-11-20 13:27 529408 ----a-w- c:\windows\system32\wbemcomn.dll
2015-11-21 22:18 . 2015-11-21 22:18 -------- d-----w- c:\windows\SysWow64\config\systemprofile\.oracle_jre_usage
2015-11-21 22:18 . 2015-11-21 22:18 -------- d-----w- c:\windows\Migration
2015-11-21 22:18 . 2015-11-21 22:18 -------- d-s---w- c:\windows\system32\CompatTel
2015-11-21 22:18 . 2015-11-21 22:18 -------- d-----w- c:\windows\system32\appraiser
2015-11-21 20:43 . 2015-11-21 20:43 -------- d-----w- c:\users\Petra\AppData\Local\Macromedia
2015-11-21 20:27 . 2015-09-18 16:47 700416 ----a-w- c:\windows\system32\invagent.dll
2015-11-21 20:27 . 2015-09-18 16:47 766464 ----a-w- c:\windows\system32\generaltel.dll
2015-11-21 20:27 . 2015-09-18 16:47 503808 ----a-w- c:\windows\system32\devinv.dll
2015-11-21 20:27 . 2015-09-18 16:47 73216 ----a-w- c:\windows\system32\acmigration.dll
2015-11-21 20:27 . 2015-01-27 23:23 1239720 ----a-w- c:\windows\system32\aitstatic.exe
2015-11-21 20:23 . 2012-09-09 10:21 821736 ----a-w- c:\windows\SysWow64\npDeployJava1.dll
2015-11-21 20:23 . 2012-09-09 10:21 746984 ----a-w- c:\windows\SysWow64\deployJava1.dll
2015-11-21 20:22 . 2015-11-21 20:22 -------- d-----w- c:\program files (x86)\Common Files\Java
2015-11-21 20:22 . 2015-11-21 20:22 -------- d-----w- c:\users\Petra\.oracle_jre_usage
2015-11-21 20:21 . 2015-11-21 20:25 -------- d-----w- c:\programdata\Oracle
2015-11-21 17:48 . 2015-12-05 18:01 -------- d-----w- c:\program files\trend micro
2015-11-21 15:14 . 2015-11-21 15:14 -------- d-----w- c:\program files (x86)\Microsoft Works
2015-11-21 15:14 . 2015-11-22 10:20 -------- d-----w- c:\program files (x86)\Microsoft.NET
2015-11-21 15:12 . 2015-11-21 15:22 -------- d-----w- c:\users\Petra\AppData\Local\Microsoft Help
2015-11-21 15:12 . 2015-11-21 15:15 -------- d-----w- c:\programdata\Microsoft Help
2015-11-21 15:11 . 2015-11-21 15:11 -------- d-----r- C:\MSOCache
2015-11-21 13:05 . 2015-11-21 13:09 -------- d-----w- c:\windows\system32\MRT
2015-11-20 19:50 . 2015-11-20 19:50 -------- d-----w- c:\users\Petra\AppData\Roaming\IrfanView
2015-11-20 19:50 . 2015-11-20 19:50 -------- d-----w- c:\program files (x86)\IrfanView
2015-11-20 18:53 . 2015-11-20 19:00 -------- d-----w- c:\users\Petra\AppData\Local\Mozilla
2015-11-20 17:41 . 2015-11-17 06:43 11138400 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{9FC20729-C90D-437C-8C09-CB61FC2B43CA}\mpengine.dll
2015-11-20 17:41 . 2015-06-23 11:30 300704 ------w- c:\windows\system32\MpSigStub.exe
2015-11-20 17:41 . 2015-11-20 17:41 -------- d-----w- c:\users\Petra\AppData\Roaming\AVAST Software
2015-11-20 17:40 . 2015-12-11 17:21 273784 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2015-11-20 17:40 . 2015-12-11 17:21 155304 ----a-w- c:\windows\system32\drivers\aswStm.sys
2015-11-20 17:40 . 2015-12-11 17:21 65224 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2015-11-20 17:40 . 2015-12-11 17:21 450504 ----a-w- c:\windows\system32\drivers\aswSP.sys
2015-11-20 17:40 . 2015-12-11 17:21 97648 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2015-11-20 17:40 . 2015-12-11 17:21 28656 ----a-w- c:\windows\system32\drivers\aswHwid.sys
2015-11-20 17:40 . 2015-12-11 17:21 93528 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2015-11-20 17:40 . 2015-12-11 17:21 1055560 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2015-11-20 17:39 . 2015-11-20 17:39 -------- d-----w- c:\program files\AVAST Software
2015-11-20 17:39 . 2015-11-20 17:39 -------- d-----w- c:\programdata\AVAST Software
2015-11-20 17:37 . 2015-11-20 17:36 737280 ----a-w- c:\windows\iun6002.exe
2015-11-20 17:37 . 2015-11-20 17:37 -------- d-----w- c:\program files (x86)\Codec Pack - All In 1
2015-11-19 18:08 . 2015-11-19 18:08 -------- d-----w- c:\users\Petra\AppData\Local\Skype
2015-11-19 18:08 . 2015-12-11 17:55 -------- d-----w- c:\users\Petra\AppData\Roaming\Skype
2015-11-19 18:07 . 2015-11-19 18:07 -------- d-----w- c:\program files (x86)\Common Files\Skype
2015-11-19 18:07 . 2015-11-19 18:07 -------- d-----r- c:\program files (x86)\Skype
2015-11-19 18:07 . 2015-11-19 18:07 -------- d-----w- c:\programdata\Skype
2015-11-19 17:52 . 2015-11-19 17:52 -------- d-----w- c:\program files\CCleaner
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-11-24 19:39 . 2015-11-24 19:39 208384 ----a-w- c:\windows\SysWow64\webcheck.dll
2015-11-24 19:39 . 2015-11-24 19:39 243200 ----a-w- c:\windows\system32\webcheck.dll
2015-11-24 19:37 . 2015-11-24 19:37 44032 ----a-w- c:\windows\apppatch\acwow64.dll
2015-11-22 21:23 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2015-11-22 21:23 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2015-11-21 20:42 . 2012-09-08 12:03 780488 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2015-11-21 20:42 . 2012-09-08 12:03 142536 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2015-11-21 20:21 . 2012-09-09 10:21 97888 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"="c:\program files\CCleaner\CCleaner64.exe" [2015-11-16 8591272]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2015-12-11 7021880]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"SoftwareSASGeneration"= 1 (0x1)
.
R2 aswStm;aswStm;c:\windows\system32\drivers\aswStm.sys;c:\windows\SYSNATIVE\drivers\aswStm.sys [x]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes Anti-Malware\mbamservice.exe;c:\program files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [x]
R3 AmUStor;AM USB Stroage Driver;c:\windows\system32\drivers\AmUStor.SYS;c:\windows\SYSNATIVE\drivers\AmUStor.SYS [x]
R3 ASUSProcObsrv;ASUS Process Creation/Termination Observer;c:\esupport\eDriver\I386\AsPrOb64.sys;c:\esupport\eDriver\I386\AsPrOb64.sys [x]
R3 cpuz133;cpuz133;c:\users\ADMINI~1\AppData\Local\Temp\cpuz133\cpuz133_x64.sys;c:\users\ADMINI~1\AppData\Local\Temp\cpuz133\cpuz133_x64.sys [x]
R3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys;c:\windows\SYSNATIVE\DRIVERS\ETD.sys [x]
R3 ggflt;SEMC USB Flash Driver Filter;c:\windows\system32\DRIVERS\ggflt.sys;c:\windows\SYSNATIVE\DRIVERS\ggflt.sys [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 MBAMWebAccessControl;MBAMWebAccessControl;c:\windows\system32\drivers\mwac.sys;c:\windows\SYSNATIVE\drivers\mwac.sys [x]
R3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver;c:\windows\system32\DRIVERS\SiSG664.sys;c:\windows\SYSNATIVE\DRIVERS\SiSG664.sys [x]
R3 SPUVCbv;SPUVCb Driver Service;c:\windows\system32\Drivers\SPUVCbv_x64.sys;c:\windows\SYSNATIVE\Drivers\SPUVCbv_x64.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
S0 aswRvrt;avast! Revert; [x]
S0 aswVmm;avast! VM Monitor; [x]
S0 sptd;sptd;c:\windows\\SystemRoot\System32\Drivers\sptd.sys;c:\windows\\SystemRoot\System32\Drivers\sptd.sys [x]
S1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys;c:\windows\SYSNATIVE\drivers\aswSnx.sys [x]
S1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys;c:\windows\SYSNATIVE\drivers\aswSP.sys [x]
S2 aswHwid;avast! HardwareID;c:\windows\system32\drivers\aswHwid.sys;c:\windows\SYSNATIVE\drivers\aswHwid.sys [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x]
S2 cvhsvc;Client Virtualization Handler;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [x]
S2 sftlist;Application Virtualization Client;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x]
S3 RTL8167;Ovladač Realtek 8167 NT;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
S3 Sftfs;Sftfs;c:\windows\system32\DRIVERS\Sftfslh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftfslh.sys [x]
S3 Sftplay;Sftplay;c:\windows\system32\DRIVERS\Sftplaylh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftplaylh.sys [x]
S3 Sftredir;Sftredir;c:\windows\system32\DRIVERS\Sftredirlh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftredirlh.sys [x]
S3 Sftvol;Sftvol;c:\windows\system32\DRIVERS\Sftvollh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftvollh.sys [x]
S3 sftvsa;Application Virtualization Service Agent;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [x]
.
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2015-12-11 17:21 873304 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page =
https://www.google.com/?trackid=sp-006
mLocal Page =
mSearch Page =
https://www.google.com/search?trackid=s ... earchTerms}
mSearch Bar =
https://www.google.com/?trackid=sp-006
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 213.46.172.36 213.46.172.37
FF - ProfilePath - c:\users\Petra\AppData\Roaming\Mozilla\Firefox\Profiles\c0wojbzk.default\
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Toolbar-Locked - (no file)
AddRemove-ASUS_Screensaver - c:\windows\system32\ASUS_Screensaver.scr
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_19_0_0_245_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_19_0_0_245_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_19_0_0_245_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_19_0_0_245_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_19_0_0_245.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.19"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_19_0_0_245.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_19_0_0_245.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_19_0_0_245.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2015-12-13 10:35:30
ComboFix-quarantined-files.txt 2015-12-13 09:35
.
Před spuštěním: Volných bajtů: 111 101 661 184
Po spuštění: Volných bajtů: 110 813 118 464
.
- - End Of File - - 440D17540A753B13FA0F3388F5345EE9
A36C5E4F47E84449FF07ED3517B43A31