Stránka 1 z 1

prosim o kontrolu

Napsal: 11 lis 2011 10:25
od lebka75
zdravim,projizdel jsem dceri kompa Superantispywarem a našlo mi to nějakých 15 bordelů, prosim radeji o preventivku,dekuji

Logfile of random's system information tool 1.09 (written by random/random)
Run by jojo at 2011-11-11 10:22:58
Microsoft Windows 7 Ultimate
System drive C: has 62 GB (82%) free of 76 GB
Total RAM: 1023 MB (22% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:23:08, on 11.11.2011
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\jojo\Downloads\RSIT.exe
C:\Program Files\trend micro\jojo.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
O4 - HKCU\..\Run: [KiesTrayAgent] C:\Program Files\Samsung\Kies\/\KiesTrayAgent.exe
O4 - HKCU\..\Run: [FileHippo.com] "C:\Program Files\FileHippo.com\UpdateChecker.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Device Error Recovery Service (dgdersvc) - Devguru Co., Ltd. - C:\Windows\system32\dgdersvc.exe
O23 - Service: FsUsbExService - Teruten - C:\Windows\system32\FsUsbExService.Exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe

--
End of file - 3482 bytes

=========Mozilla firefox=========

ProfilePath - C:\Users\jojo\AppData\Roaming\Mozilla\Firefox\Profiles\kcrs1htb.default

prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"

"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32.dll

C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll

C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2011-09-06 806456]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2011-09-06 806456]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2011-09-06 3722416]
"Malwarebytes' Anti-Malware"=C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2011-08-31 449608]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"KiesTrayAgent"=C:\Program Files\Samsung\Kies\/\KiesTrayAgent.exe [2010-01-28 3404600]
"FileHippo.com"=C:\Program Files\FileHippo.com\UpdateChecker.exe [2010-08-09 248832]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.divxa32"=msaud32_divx.acm

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2011-11-11 10:22:59 ----D---- C:\Program Files\trend micro
2011-11-09 09:43:47 ----D---- C:\Users\jojo\AppData\Roaming\Malwarebytes
2011-11-09 09:27:23 ----D---- C:\Program Files\Defraggler
2011-11-09 09:20:44 ----D---- C:\ProgramData\Malwarebytes
2011-11-09 09:20:40 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2011-11-09 09:20:40 ----A---- C:\Windows\system32\drivers\mbam.sys
2011-11-08 11:40:35 ----A---- C:\Windows\ODBC.INI
2011-11-08 11:40:30 ----A---- C:\Windows\system32\mdimon.dll
2011-11-08 11:39:02 ----D---- C:\Program Files\Common Files\DESIGNER
2011-11-08 11:38:17 ----D---- C:\Program Files\Microsoft.NET
2011-11-08 11:26:43 ----D---- C:\Program Files\FileHippo.com
2011-11-08 11:26:30 ----D---- C:\Program Files\CCleaner
2011-11-08 11:25:58 ----D---- C:\Users\jojo\AppData\Roaming\SUPERAntiSpyware.com
2011-11-08 11:25:50 ----D---- C:\ProgramData\!SASCORE
2011-11-08 11:25:47 ----D---- C:\ProgramData\SUPERAntiSpyware.com
2011-11-08 11:25:47 ----D---- C:\Program Files\SUPERAntiSpyware
2011-11-08 11:12:55 ----A---- C:\Windows\system32\drivers\sptd.sys
2011-11-08 11:12:35 ----D---- C:\Program Files\DAEMON Tools Lite
2011-11-08 11:12:18 ----D---- C:\Users\jojo\AppData\Roaming\DAEMON Tools Lite
2011-11-08 11:12:15 ----D---- C:\ProgramData\DAEMON Tools Lite
2011-10-31 18:33:13 ----D---- C:\Users\jojo\AppData\Roaming\WinRAR
2011-10-31 18:33:10 ----D---- C:\Program Files\WinRAR
2011-10-31 17:30:33 ----D---- C:\Windows\PCHEALTH
2011-10-31 17:30:33 ----D---- C:\Program Files\Microsoft Office
2011-10-16 10:42:43 ----D---- C:\Users\jojo\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
2011-10-16 10:42:41 ----D---- C:\ProgramData\Adobe
2011-10-16 10:42:37 ----D---- C:\Program Files\Adobe
2011-10-16 10:42:36 ----D---- C:\Program Files\Common Files\Adobe AIR
2011-10-16 10:26:26 ----D---- C:\ProgramData\PC Suite
2011-10-16 10:26:25 ----D---- C:\Users\jojo\AppData\Roaming\PC Suite
2011-10-16 10:25:52 ----D---- C:\Program Files\InstallShield Installation Information
2011-10-16 10:17:03 ----A---- C:\Windows\system32\drivers\ss_bwhnt.sys
2011-10-16 10:17:03 ----A---- C:\Windows\system32\drivers\ss_bwh.sys
2011-10-16 10:17:03 ----A---- C:\Windows\system32\drivers\ss_bserd.sys
2011-10-16 10:17:03 ----A---- C:\Windows\system32\drivers\ss_bmdm.sys
2011-10-16 10:17:03 ----A---- C:\Windows\system32\drivers\ss_bmdfl.sys
2011-10-16 10:17:03 ----A---- C:\Windows\system32\drivers\ss_bcmnt.sys
2011-10-16 10:17:03 ----A---- C:\Windows\system32\drivers\ss_bcm.sys
2011-10-16 10:17:03 ----A---- C:\Windows\system32\drivers\ss_bbus.sys
2011-10-16 10:16:26 ----D---- C:\Program Files\DIFX
2011-10-16 10:16:25 ----A---- C:\Windows\system32\drivers\pccsmcfd.sys
2011-10-16 10:16:22 ----DC---- C:\Windows\system32\DRVSTORE
2011-10-16 10:15:58 ----A---- C:\Windows\system32\FsUsbExService.Exe
2011-10-16 10:15:58 ----A---- C:\Windows\system32\FsUsbExDisk.Sys
2011-10-16 10:15:58 ----A---- C:\Windows\system32\FsUsbExDevice.Dll
2011-10-16 10:14:33 ----D---- C:\Program Files\PC Connectivity Solution
2011-10-16 10:13:33 ----D---- C:\Users\jojo\AppData\Roaming\Samsung
2011-10-16 10:13:05 ----D---- C:\Program Files\MarkAny
2011-10-16 10:13:03 ----D---- C:\ProgramData\Samsung
2011-10-16 10:13:01 ----D---- C:\Program Files\Samsung
2011-10-16 10:12:32 ----D---- C:\Program Files\Common Files\Samsung

======List of files/folders modified in the last 1 month======

2011-11-11 10:23:08 ----D---- C:\Windows\Prefetch
2011-11-11 10:23:02 ----D---- C:\Windows\Temp
2011-11-11 10:22:59 ----RD---- C:\Program Files
2011-11-11 10:17:08 ----D---- C:\Windows\inf
2011-11-11 10:17:07 ----D---- C:\Windows
2011-11-11 09:50:06 ----D---- C:\Windows\System32
2011-11-11 09:50:06 ----A---- C:\Windows\system32\PerfStringBackup.INI
2011-11-09 19:43:04 ----D---- C:\Windows\system32\config
2011-11-09 19:31:55 ----SHD---- C:\System Volume Information
2011-11-09 11:30:20 ----D---- C:\Windows\system32\drivers
2011-11-09 09:20:44 ----HD---- C:\ProgramData
2011-11-08 11:40:36 ----SHD---- C:\Windows\Installer
2011-11-08 11:40:36 ----SHD---- C:\Config.Msi
2011-11-08 11:40:21 ----RSD---- C:\Windows\assembly
2011-11-08 11:40:09 ----A---- C:\Windows\win.ini
2011-11-08 11:39:46 ----D---- C:\Program Files\Common Files\microsoft shared
2011-11-08 11:39:45 ----RSD---- C:\Windows\Fonts
2011-11-08 11:39:38 ----D---- C:\Windows\ShellNew
2011-11-08 11:39:02 ----D---- C:\Program Files\Common Files
2011-11-08 11:38:36 ----D---- C:\Program Files\Common Files\System
2011-11-08 11:36:28 ----D---- C:\Windows\system
2011-11-08 11:29:20 ----D---- C:\Windows\Panther
2011-11-08 11:29:19 ----D---- C:\Windows\debug
2011-11-08 11:10:50 ----RD---- C:\Program Files (x86)
2011-11-08 11:05:06 ----D---- C:\Windows\system32\wbem
2011-11-08 10:58:16 ----D---- C:\Windows\Tasks
2011-11-08 10:58:16 ----D---- C:\Windows\system32\wfp
2011-11-08 10:57:37 ----D---- C:\Windows\system32\DriverStore
2011-11-08 10:57:37 ----D---- C:\Windows\system32\catroot2
2011-11-08 10:57:36 ----D---- C:\Windows\AppCompat
2011-11-08 10:57:35 ----D---- C:\ProgramData\AVAST Software
2011-11-08 10:57:29 ----D---- C:\Program Files\AVAST Software
2011-11-08 10:57:00 ----SD---- C:\Users\jojo\AppData\Roaming\Microsoft
2011-11-08 10:56:44 ----SD---- C:\ProgramData\Microsoft
2011-10-21 20:47:32 ----D---- C:\Users\jojo\AppData\Roaming\Opera
2011-10-16 10:42:18 ----D---- C:\Users\jojo\AppData\Roaming\Adobe
2011-10-16 10:28:19 ----D---- C:\Windows\system32\drivers\UMDF
2011-10-16 10:17:32 ----D---- C:\Windows\system32\catroot

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 173648]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2011-11-08 691696]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2011-09-06 34392]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2011-09-06 442200]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2011-09-06 320856]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2011-09-06 52568]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 387584]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [2011-07-22 12880]
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [2011-07-12 67664]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2011-09-06 20568]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2011-09-06 54616]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-07-13 4194816]
R3 dgderdrv;dgderdrv; C:\Windows\System32\drivers\dgderdrv.sys [2009-12-22 18136]
R3 FsUsbExDisk;FsUsbExDisk; \??\C:\Windows\system32\FsUsbExDisk.SYS [2009-12-22 36640]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2011-08-31 22216]
R3 RTL8167;Ovladač Realtek 8167 NT; C:\Windows\system32\DRIVERS\Rt86win7.sys [2009-07-13 139776]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 ag9sn1f8;ag9sn1f8; C:\Windows\system32\drivers\ag9sn1f8.sys []
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\DRIVERS\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2009-07-14 133120]
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 5632]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\DRIVERS\sisagp.sys [2009-07-14 52304]
S3 ss_bbus;SAMSUNG USB Mobile Device (WDM); C:\Windows\system32\DRIVERS\ss_bbus.sys [2009-09-19 98432]
S3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter); C:\Windows\system32\DRIVERS\ss_bmdfl.sys [2009-09-19 14848]
S3 ss_bmdm;SAMSUNG USB Mobile Modem; C:\Windows\system32\DRIVERS\ss_bmdm.sys [2009-09-19 123648]
S3 ss_bserd;SAMSUNG USB Mobile Logging Driver; C:\Windows\system32\DRIVERS\ss_bserd.sys [2009-09-19 100224]
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 28224]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\DRIVERS\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 175824]
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 17920]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 34944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [2011-11-09 116608]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2011-09-06 44768]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 dgdersvc;Device Error Recovery Service; C:\Windows\system32\dgdersvc.exe [2009-12-22 95568]
R2 FsUsbExService;FsUsbExService; C:\Windows\system32\FsUsbExService.Exe [2009-12-22 217088]
R2 MBAMService;MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [2011-08-31 366152]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2008-11-11 620544]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]

Re: prosim o kontrolu

Napsal: 11 lis 2011 22:34
od Roli
Zdravím, tyhle zbytečnosti fixni v HJT :

O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
O4 - HKCU\..\Run: [FileHippo.com] "C:\Program Files\FileHippo.com\UpdateChecker.exe" /background


HJT najdeš zde :

C:\Program Files\trend micro\jojo.exe

Fix znamená že spustíš HJT Obrázek jako admin

v okně které se ti otevře klikneš na Do a system scan only

v dalším okně najdeš řádky které jsem ti vypsal,

vedle nich je čtvereček do kterého uděláš zatržítko,

pak klikneš na Fix checked které je vlevo dole,

program se ti zeptá zda opravdu ANO s tím samozřejmě souhlasíš a je hotovo.


Jinak v pořádku.

Re: prosim o kontrolu

Napsal: 22 lis 2011 16:41
od lebka75
díky moc, provedeno

Re: prosim o kontrolu

Napsal: 22 lis 2011 21:47
od Roli
Není zač.