Stránka 2 z 2

Re: zavirovany NTB

Napsal: 31 pro 2015 10:21
od Márty84
***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Daniela\Desktop" je 16350 MB.
:arrow: Velikost plochy by nemela presahovat 200 - 300 MB! Brzdi to chod pc. Cili ji trosku uklidte a na plochu dejte jen zastupce. Jen pozor na obcasnou chybu, ze uzivatele maji na plose slozku, v ni dalsi a v ni dalsi a do te to schovaji. To je sice hezke, ale plochu to nezmensi, jen je to v jinem supliku :)



:arrow: Odinstalujte chrome, vcetne nastaveni a profilu a smazte jeho pripadne zbytky. Pak jej znovu nainstalujte.
Pokud nechcete prijit o zalozky, muzete si je zazalohovat pomoci ChromeBackup http://www.stahuj.centrum.cz/internet_a ... me-backup/



:arrow: Otevrete si poznamkovy blok a zkopirujte do nej tento skript

Kód: Vybrat vše

Start
CloseProcesses:
CreateRestorePoint:

HKU\S-1-5-21-480796221-827829538-3836116632-1001\...\Run: [msnmsgr] => C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe [4272840 2014-03-31] (Microsoft Corporation)
HKU\S-1-5-21-480796221-827829538-3836116632-1001\...\Run: [BingSvc] => C:\Users\Daniela\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-12-09] (© 2015 Microsoft Corporation)
HKU\S-1-5-21-480796221-827829538-3836116632-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [50509440 2015-11-30] (Skype Technologies S.A.)

HKU\S-1-5-21-480796221-827829538-3836116632-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID= ... 82DAC4A1AF
HKU\S-1-5-21-480796221-827829538-3836116632-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo13.msn.com/?pc=LCJB
SearchScopes: HKU\S-1-5-21-480796221-827829538-3836116632-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?PC=WCUG&FORM=WCUGDF&q={searchTerms}
SearchScopes: HKU\S-1-5-21-480796221-827829538-3836116632-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?PC=WCUG&FORM=WCUGDF&q={searchTerms}
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-10-12] (Microsoft Corporation)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-10-12] (Microsoft Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-10-12] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-10-12] (Microsoft Corporation)

CHR HomePage: Default -> msn.com/?pc=__PARAM__&ocid=__PARAM__DHP&osmkt=en-us
CHR DefaultSearchURL: Default -> hxxp://www.bing.com/search?FORM=__PARAM ... PARAM__&q={searchTerms}
CHR DefaultSearchKeyword: Default -> bing.com
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-10-12]

R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2015-10-12] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2015-10-12] (Microsoft Corporation)
S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [80160 2015-04-08] (McAfee, Inc.)
S3 MBAMSwissArmy; \??\C:\windows\system32\drivers\MBAMSwissArmy.sys [X]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-22 107848]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-22 107848]

2015-12-29 18:10 - 2015-12-29 17:42 - 00024064 _____ C:\windows\zoek-delete.exe
2015-12-29 17:42 - 2015-12-29 18:17 - 00000000 ____D C:\zoek_backup
2015-12-29 17:40 - 2015-12-29 17:40 - 00000829 _____ C:\Users\Daniela\Desktop\JRT.txt
2015-12-29 17:37 - 2015-12-29 17:37 - 01309184 _____ C:\Users\Daniela\Desktop\zoek.exe
2015-12-29 17:36 - 2015-12-29 17:36 - 01309184 _____ C:\Users\Daniela\Downloads\zoek.exe
2015-12-27 17:23 - 2015-12-27 17:23 - 00001877 _____ C:\Users\Daniela\Desktop\mbam2.txt
2015-12-27 13:27 - 2015-12-27 13:27 - 00015858 _____ C:\Users\Daniela\Desktop\mbam.txt
2015-12-27 10:19 - 2015-12-27 10:19 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-12-27 10:18 - 2015-12-27 10:18 - 22908888 _____ (Malwarebytes ) C:\Users\Daniela\Downloads\mbam-setup-2.2.0.1024.exe

Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: {FDF2577D-2E65-4FA0-A0C3-5AC6A580387A} - \OFFICE2013ACT -> No File <==== ATTENTION

Hosts:
EmptyTemp:
Reboot:
End
Vlevo nahore kliknete na napis Soubor
Kliknete na napis Ulozit jako...
Napiste spravne ten cerveny nazev fixlist a ulozte na plochu.
Vypnete antivir i dalsi pripadne zabezpeceni.
Spustte FRST jako spravce, kliknete na napis Fix a program vykona prikazy.
Po restartu pc by se mel objevit novy log - s nazvem fixlog, ten mi sem zase zkopirujte.




20.2. pro neaktivitu :lock: http://forum.viry.cz/viewtopic.php?f=12&t=123975