Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Kompletní vyčištění zasekaného netbooku

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
cocinella
Návštěvník
Návštěvník
Příspěvky: 133
Registrován: 29 kvě 2012 19:21

Kompletní vyčištění zasekaného netbooku

#1 Příspěvek od cocinella »

Ahoj, poprosila bych o kompletní vyčištění bratrova netbooku, který je hodně zasekaný a zpomalený. Přeinstalaci OS dělat nechci, protože se v tom nevyznám. :?:

Přikládám log rsit a prosím o rady, co všechno vymazat, aby mohl ntb bezproblémově přejít na babičku. :D

Děkuju mockrát.

Logfile of random's system information tool 1.09 (written by random/random)
Run by emachines at 2013-08-27 10:29:05
Microsoft Windows 7 Starter
System drive C: has 189 GB (84%) free of 224 GB
Total RAM: 1013 MB (11% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:29:42, on 27.8.2013
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Launch Manager\LManager.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\eMachines\eMachines Power Management\ePowerTray.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Ask.com\Updater\Updater.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Users\emachines\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files\Norton Internet Security\Engine\18.7.2.3\ccSvcHst.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\System32\jmdp\stij.exe
C:\Program Files\Launch Manager\LMworker.exe
C:\Windows\system32\igfxext.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\emachines\Downloads\RSIT.exe
C:\Program Files\trend micro\emachines.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www1.delta-search.com/?babsrc=HP ... 1&tsp=4964
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Speed - {48A789BF-F6D6-4930-9C8B-77855A63EDE1} - C:\PROGRA~1\SECURE~1\IE\SPEEDD~1.DLL
O2 - BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\coIEPlg.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\IPS\IPSBHO.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows 7 Starter Helper - {D381FF29-7CFB-4D4E-B92A-C4EDDC696614} - C:\Program Files\Oceanis\SystemSetting\StarterHelper.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\coIEPlg.dll
O4 - HKLM\..\Run: [Norton Online Backup] C:\Program Files\Symantec\Norton Online Backup\NOBuClient.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [OOTag] C:\Program Files\eMachines\OOBEOffer\OOTag.exe
O4 - HKLM\..\Run: [LManager] C:\Program Files\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [Acer ePower Management] C:\Program Files\eMachines\eMachines Power Management\ePowerTray.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [ApnUpdater] "C:\Program Files\Ask.com\Updater\Updater.exe"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\emachines\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\emachines\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [DAEMON Tools Ultra Agent] "C:\Program Files\DAEMON Tools Ultra\DTAgent.exe" -autorun
O4 - HKCU\..\Run: [DAEMON Tools Pro Agent] "C:\Program Files\DAEMON Tools Pro\DTAgent.exe" -autorun
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
O23 - Service: Disc Soft Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Ultra\DiscSoftBusService.exe
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files\Launch Manager\dsiwmis.exe
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\eMachines\eMachines Power Management\ePowerSvc.exe
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files\eMachines Games\eMachines Game Console\GameConsoleService.exe
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files\WildTangent Games\App\GamesAppService.exe
O23 - Service: GREGService - Acer Incorporated - C:\Program Files\eMachines\Registration\GREGsvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Úložná technologie Intel(R) Rapid (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: IBUpdaterService - Unknown owner - C:\Windows\system32\dmwu.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\ccSvcHst.exe
O23 - Service: Norton Online Backup (NOBU) - Symantec Corporation - C:\Program Files\Symantec\Norton Online Backup\NOBuAgent.exe
O23 - Service: SecureUpdate (SecureUpdateSvc) - Unknown owner - C:\Program Files\Secure Speed Dial\IE\SecureUpdate.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Updater Service - Acer Group - C:\Program Files\eMachines\eMachines Updater\UpdaterService.exe
O23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Unknown owner - C:\Windows\system32\UAService7.exe

--
End of file - 9293 bytes

======Scheduled tasks folder======

C:\Windows\tasks\DLL-Files.Com Fixer_MONTHLY.job
C:\Windows\tasks\DLL-Files.Com Fixer_Updates.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\SUPERAntiSpyware Scheduled Task 71e8bcc9-2ec7-4b1f-81dc-29c811dfce0c.job
C:\Windows\tasks\SUPERAntiSpyware Scheduled Task d7b86ca4-85fe-403d-81f1-1a85e61ed1f7.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{48A789BF-F6D6-4930-9C8B-77855A63EDE1}]
AccelerateTab - C:\PROGRA~1\SECURE~1\IE\SPEEDD~1.DLL [2013-08-16 991056]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Symantec NCO BHO - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\coIEPlg.dll [2012-06-07 436192]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Symantec Intrusion Prevention - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\IPS\IPSBHO.DLL [2011-03-31 210872]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-04-09 461216]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D381FF29-7CFB-4D4E-B92A-C4EDDC696614}]
Windows 7 Starter Helper - C:\Program Files\Oceanis\SystemSetting\StarterHelper.dll [2009-12-09 137904]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2013-03-31 1520776]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-04-09 170912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{D4027C7F-154A-4066-A1AD-4243D8127440} - Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2013-03-31 1520776]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\coIEPlg.dll [2012-06-07 436192]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Norton Online Backup"=C:\Program Files\Symantec\Norton Online Backup\NOBuClient.exe [2010-06-02 966488]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-02-28 35696]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2010-04-23 141848]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2010-04-23 173592]
"Persistence"=C:\Windows\system32\igfxpers.exe [2010-04-23 150552]
"OOTag"=C:\Program Files\eMachines\OOBEOffer\OOTag.exe [2010-02-23 13856]
"LManager"=C:\Program Files\Launch Manager\LManager.exe [2010-08-10 975952]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-02-05 1692968]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-06-08 284696]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2010-08-03 9398888]
"Acer ePower Management"=C:\Program Files\eMachines\eMachines Power Management\ePowerTray.exe [2010-06-11 715296]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
""= []
"ApnUpdater"=C:\Program Files\Ask.com\Updater\Updater.exe [2013-03-31 1646216]
"seznam-listicka-distribuce"=C:\Program Files\Seznam.cz\distribution\szninstall.exe [2013-03-21 1061960]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2013-04-19 18678376]
"cz.seznam.software.autoupdate"=C:\Users\emachines\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\emachines\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"DAEMON Tools Ultra Agent"=C:\Program Files\DAEMON Tools Ultra\DTAgent.exe [2013-06-25 3128352]
"DAEMON Tools Pro Agent"=C:\Program Files\DAEMON Tools Pro\DTAgent.exe [2013-05-13 3111456]
"SUPERAntiSpyware"=C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2012-11-01 4763008]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2010-04-19 218112]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2011-07-19 113024]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.siren"=sirenacm.dll
"VIDC.FPS1"=frapsvid.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2013-08-27 10:29:07 ----D---- C:\Program Files\trend micro
2013-08-27 10:29:05 ----D---- C:\rsit
2013-08-27 06:40:23 ----D---- C:\Users\emachines\AppData\Roaming\dll-files.com
2013-08-26 14:02:02 ----D---- C:\Users\emachines\AppData\Roaming\DAEMON Tools Pro
2013-08-26 14:01:59 ----D---- C:\Users\emachines\AppData\Roaming\DAEMON Tools Ultra
2013-08-26 13:32:01 ----A---- C:\Windows\ntbtlog.txt
2013-08-26 13:25:47 ----D---- C:\Users\emachines\AppData\Roaming\SUPERAntiSpyware.com
2013-08-26 13:25:32 ----D---- C:\ProgramData\SUPERAntiSpyware.com
2013-08-26 13:25:32 ----D---- C:\Program Files\SUPERAntiSpyware
2013-08-26 13:15:00 ----D---- C:\Program Files\CCleaner
2013-08-25 15:48:01 ----RASH---- C:\MSDOS.SYS
2013-08-25 15:48:01 ----RASH---- C:\IO.SYS
2013-08-21 09:59:09 ----D---- C:\Program Files\Common Files\lightning group shared files
2013-08-13 22:22:27 ----D---- C:\Fraps
2013-08-07 23:15:30 ----D---- C:\Windows\Bugdom
2013-08-07 23:14:20 ----D---- C:\Program Files\ODI Software
2013-08-07 20:43:48 ----A---- C:\Windows\system32\xinput1_2.dll
2013-08-07 20:43:48 ----A---- C:\Windows\system32\xactengine2_3.dll
2013-08-07 20:43:47 ----A---- C:\Windows\system32\xinput1_1.dll
2013-08-07 20:43:47 ----A---- C:\Windows\system32\xactengine2_2.dll
2013-08-07 20:43:47 ----A---- C:\Windows\system32\xactengine2_1.dll
2013-08-07 20:43:32 ----A---- C:\Windows\system32\d3dx9_30.dll
2013-08-07 20:43:31 ----A---- C:\Windows\system32\xactengine2_0.dll
2013-08-07 20:43:31 ----A---- C:\Windows\system32\x3daudio1_0.dll
2013-08-07 20:43:31 ----A---- C:\Windows\system32\d3dx9_29.dll
2013-08-07 20:43:30 ----A---- C:\Windows\system32\d3dx9_28.dll
2013-08-07 20:43:29 ----A---- C:\Windows\system32\d3dx9_27.dll
2013-08-07 20:43:28 ----A---- C:\Windows\system32\d3dx9_26.dll
2013-08-07 20:43:27 ----A---- C:\Windows\system32\d3dx9_25.dll
2013-08-07 20:43:26 ----A---- C:\Windows\system32\d3dx9_24.dll
2013-08-07 20:38:25 ----D---- C:\Program Files\LucasArts
2013-08-07 16:50:31 ----D---- C:\ProgramData\SystemRequirementsLab
2013-08-07 16:50:31 ----D---- C:\Program Files\SystemRequirementsLab
2013-08-07 16:35:20 ----A---- C:\Windows\system32\binkw32.dll
2013-08-07 16:33:56 ----D---- C:\ProgramData\Logs
2013-08-07 16:33:48 ----D---- C:\ProgramData\TEMP
2013-08-07 16:33:24 ----D---- C:\Program Files\Dll-Files.com Fixer
2013-08-07 16:22:38 ----A---- C:\Windows\system32\UAService7.exe
2013-08-07 16:22:38 ----A---- C:\Windows\system32\CmdLineExt.dll
2013-08-07 16:20:27 ----A---- C:\gputest.txt
2013-08-07 16:16:55 ----D---- C:\Program Files\Giant
2013-08-07 16:05:43 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2013-08-07 16:05:04 ----D---- C:\Program Files\DAEMON Tools Pro
2013-08-07 16:03:31 ----D---- C:\ProgramData\DAEMON Tools Pro
2013-08-05 15:14:14 ----D---- C:\ProgramData\SiaoSoft
2013-08-04 19:41:16 ----A---- C:\Windows\system32\roboot.exe
2013-08-04 19:38:23 ----D---- C:\Users\emachines\AppData\Roaming\Babylon
2013-08-04 19:38:23 ----D---- C:\ProgramData\Babylon
2013-08-04 19:38:20 ----A---- C:\Windows\system32\sqlite3.dll
2013-08-04 19:38:15 ----D---- C:\Program Files\Secure Speed Dial
2013-08-04 14:11:02 ----D---- C:\Program Files\WildTangent Games
2013-07-30 12:46:21 ----D---- C:\Program Files\Counter-Strike 1.6 Non-Steam

======List of files/folders modified in the last 1 month======

2013-08-27 10:29:18 ----D---- C:\Windows\Temp
2013-08-27 10:29:07 ----RD---- C:\Program Files
2013-08-27 10:24:44 ----D---- C:\Users\emachines\AppData\Roaming\Skype
2013-08-27 10:04:33 ----D---- C:\Users\emachines\AppData\Roaming\Seznam.cz
2013-08-27 09:10:13 ----D---- C:\Windows\system32\catroot2
2013-08-27 06:41:59 ----D---- C:\Windows\system32\Tasks
2013-08-27 06:39:29 ----D---- C:\Windows\inf
2013-08-26 14:01:40 ----D---- C:\Windows
2013-08-26 13:27:10 ----D---- C:\Windows\Tasks
2013-08-26 13:25:47 ----HD---- C:\ProgramData
2013-08-26 13:22:05 ----D---- C:\Windows\Panther
2013-08-26 13:22:02 ----D---- C:\Windows\Minidump
2013-08-26 13:22:02 ----D---- C:\Windows\debug
2013-08-26 12:44:14 ----D---- C:\Windows\System32
2013-08-26 12:44:14 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-08-23 20:37:15 ----D---- C:\Windows\Prefetch
2013-08-23 15:04:17 ----D---- C:\Users\emachines\AppData\Roaming\Adobe
2013-08-23 11:23:05 ----D---- C:\Windows\system32\config
2013-08-21 09:59:09 ----D---- C:\Program Files\Common Files
2013-08-21 09:52:24 ----SHD---- C:\System Volume Information
2013-08-20 18:24:11 ----D---- C:\Program Files\Common Files\InstallShield
2013-08-20 16:30:07 ----D---- C:\Program Files\TES III - Morrowind GOTY
2013-08-20 10:57:48 ----D---- C:\Minecraft_Backup
2013-08-07 20:43:53 ----HD---- C:\Program Files\InstallShield Installation Information
2013-08-07 20:43:47 ----RSD---- C:\Windows\assembly
2013-08-07 20:43:38 ----D---- C:\Windows\Microsoft.NET
2013-08-07 20:39:43 ----SHD---- C:\Windows\Installer
2013-08-07 16:08:11 ----D---- C:\Windows\system32\drivers
2013-08-07 16:08:00 ----D---- C:\Windows\system32\catroot
2013-08-07 16:07:55 ----D---- C:\Windows\system32\DriverStore
2013-08-04 14:19:14 ----D---- C:\ProgramData\WildTangent
2013-08-04 14:14:01 ----D---- C:\Windows\system32\WNLT

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-06-08 435736]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-06-19 173440]
R0 SymDS;Symantec Data Store; C:\Windows\system32\drivers\NIS\1207020.003\SYMDS.SYS [2011-01-27 340088]
R0 SymEFA;Symantec Extended File Attributes; C:\Windows\system32\drivers\NIS\1207020.003\SYMEFA.SYS [2011-03-15 744568]
R1 BHDrvx86;BHDrvx86; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.0.0.128\Definitions\BASHDefs\20130531.001\BHDrvx86.sys [2013-05-31 1002072]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-08-07 242240]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [2013-04-20 376480]
R1 IDSVix86;IDSVix86; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.0.0.128\Definitions\IPSDefs\20130615.001\IDSvix86.sys [2013-04-19 386720]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [2011-07-22 12880]
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [2011-07-12 67664]
R1 SRTSPX;Symantec Real Time Storage Protection (PEL); C:\Windows\system32\drivers\NIS\1207020.003\SRTSPX.SYS [2011-03-31 50168]
R1 SymIRON;Symantec Iron Driver; C:\Windows\system32\drivers\NIS\1207020.003\Ironx86.SYS [2011-01-27 136312]
R1 SymNetS;Symantec Network Security WFP Driver; C:\Windows\System32\Drivers\NIS\1207020.003\SYMNETS.SYS [2011-04-21 299640]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2010-07-15 1906024]
R3 dtscsibus;DAEMON Tools Virtual SCSI Bus; C:\Windows\system32\DRIVERS\dtscsibus.sys [2013-07-11 24704]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2013-04-20 106656]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2010-04-19 4806144]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2010-08-03 3158120]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1C62x86.sys [2010-05-20 68208]
R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT.SYS [2013-05-01 126584]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2010-02-05 242992]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\DRIVERS\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 E1G60;Intel(R) PRO/1000 NDIS 6 Adapter Driver; C:\Windows\system32\DRIVERS\E1G60I32.sys [2009-07-14 118784]
S3 EUCR;EUCR; C:\Windows\system32\DRIVERS\EUCR6SK.SYS [2010-06-17 82768]
S3 NAVENG;NAVENG; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.0.0.128\Definitions\VirusDefs\20130617.021\NAVENG.SYS [2013-05-22 93272]
S3 NAVEX15;NAVEX15; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.0.0.128\Definitions\VirusDefs\20130617.021\NAVEX15.SYS [2013-05-22 1611992]
S3 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12368]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\DRIVERS\sisagp.sys [2009-07-14 52304]
S3 SRTSP;Symantec Real Time Storage Protection; C:\Windows\System32\Drivers\NIS\1207020.003\SRTSP.SYS [2011-03-31 516216]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\DRIVERS\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 34944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [2012-07-11 116608]
R2 DsiWMIService;Dritek WMI Service; C:\Program Files\Launch Manager\dsiwmis.exe [2010-08-10 321104]
R2 ePowerSvc;Acer ePower Service; C:\Program Files\eMachines\eMachines Power Management\ePowerSvc.exe [2010-06-11 735776]
R2 GREGService;GREGService; C:\Program Files\eMachines\Registration\GREGsvc.exe [2010-01-08 23584]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-06-08 13336]
R2 IBUpdaterService;IBUpdaterService; C:\Windows\system32\dmwu.exe [2013-06-30 1341744]
R2 NIS;Norton Internet Security; C:\Program Files\Norton Internet Security\Engine\18.7.2.3\ccSvcHst.exe [2011-04-17 130008]
R2 NOBU;Norton Online Backup; C:\Program Files\Symantec\Norton Online Backup\NOBuAgent.exe [2010-06-02 2057560]
R2 Updater Service;Updater Service; C:\Program Files\eMachines\eMachines Updater\UpdaterService.exe [2010-01-29 243232]
R2 UserAccess7;SecuROM User Access Service (V7); C:\Windows\system32\UAService7.exe [2013-08-07 126976]
R3 Disc Soft Bus Service;Disc Soft Bus Service; C:\Program Files\DAEMON Tools Ultra\DiscSoftBusService.exe [2013-06-25 632352]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-04-09 116648]
S2 SecureUpdateSvc;SecureUpdate; C:\Program Files\Secure Speed Dial\IE\SecureUpdate.exe [2013-08-21 2460496]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-02-28 161384]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 GameConsoleService;GameConsoleService; C:\Program Files\eMachines Games\eMachines Game Console\GameConsoleService.exe [2010-04-04 246520]
S3 GamesAppService;GamesAppService; C:\Program Files\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-04-09 116648]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Kompletní vyčištění zasekaného netbooku

#2 Příspěvek od vyosek »

Zdravim :)

:arrow: Doporucuji odinstalovat (pokud nepouzivate) toolbary (listy prohlizecu) v Přidat nebo odebrat programy

:arrow: Odinstalujte Advanced SystemCare a nasledne i vse od IOBit - jsou to cinske smejdy a spise jen skodi nez jsou uzitkem. Hledaji nesmyslne a neexistujici problemy, databazi haveti ukradli jine renomovane spolecnosti

:arrow: Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
  • Ulozte nejlepe na plochu
  • Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
  • Probehne vytvoreni zalohy a nasledne prohledavani
  • Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte
:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

cocinella
Návštěvník
Návštěvník
Příspěvky: 133
Registrován: 29 kvě 2012 19:21

Re: Kompletní vyčištění zasekaného netbooku

#3 Příspěvek od cocinella »

JRT:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 5.5.4 (08.22.2013:1)
OS: Windows 7 Starter x86
Ran by emachines on Łt 27.08.2013 at 11:18:50,68
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values

Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\AboutURLs\\Tabs
Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{D4027C7F-154A-4066-A1AD-4243D8127440}



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\bi
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\im
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\iminstaller
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\installcore
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\sweetim
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\systweak
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\sweetim
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\prod.cap
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\bundlesweetimsetup_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\bundlesweetimsetup_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\TaskScheduler_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\TaskScheduler_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\UpdateTask_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\UpdateTask_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_for_fate_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_for_fate_RASMANCS
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{70BB2589-CFE3-4B3B-BF35-25577008CD37}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{C95A7E9B-B086-4294-AEE8-CDCEC52E167F}
Successfully deleted: [Registry Key] "hkey_local_machine\software\microsoft\windows\currentversion\installer\userdata\s-1-5-18\components\0e12f736682067fde4d1158d5940a82e"
Successfully deleted: [Registry Key] "hkey_local_machine\software\microsoft\windows\currentversion\installer\userdata\s-1-5-18\components\1a24b5bb8521b03e0c8d908f5abc0ae6"
Successfully deleted: [Registry Key] "hkey_local_machine\software\microsoft\windows\currentversion\installer\userdata\s-1-5-18\components\2b0d56c4f4c46d844a57ffed6f0d2852"
Successfully deleted: [Registry Key] "hkey_local_machine\software\microsoft\windows\currentversion\installer\userdata\s-1-5-18\components\49d4375fe41653242aea4c969e4e65e0"
Successfully deleted: [Registry Key] "hkey_local_machine\software\microsoft\windows\currentversion\installer\userdata\s-1-5-18\components\6aa0923513360135b272e8289c5f13fa"
Successfully deleted: [Registry Key] "hkey_local_machine\software\microsoft\windows\currentversion\installer\userdata\s-1-5-18\components\6f7467af8f29c134cbbab394eccfde96"
Successfully deleted: [Registry Key] "hkey_local_machine\software\microsoft\windows\currentversion\installer\userdata\s-1-5-18\components\922525dcc5199162f8935747ca3d8e59"
Successfully deleted: [Registry Key] "hkey_local_machine\software\microsoft\windows\currentversion\installer\userdata\s-1-5-18\components\bcda179d619b91648538e3394cac94cc"
Successfully deleted: [Registry Key] "hkey_local_machine\software\microsoft\windows\currentversion\installer\userdata\s-1-5-18\components\d677b1a9671d4d4004f6f2a4469e86ea"
Successfully deleted: [Registry Key] "hkey_local_machine\software\microsoft\windows\currentversion\installer\userdata\s-1-5-18\components\dd1402a9dd4215a43abde169a41afa0e"
Successfully deleted: [Registry Key] "hkey_local_machine\software\microsoft\windows\currentversion\installer\userdata\s-1-5-18\components\e36e114a0ead2ad46b381d23ad69cddf"
Successfully deleted: [Registry Key] "hkey_local_machine\software\microsoft\windows\currentversion\installer\userdata\s-1-5-18\components\ef8e618db3aedfbb384561b5c548f65e"



~~~ Files

Successfully deleted: [File] "C:\Windows\system32\roboot.exe"



~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\babylon"
Successfully deleted: [Folder] "C:\Users\emachines\AppData\Roaming\babylon"
Successfully deleted: [Folder] "C:\Windows\system32\wnlt"
Successfully deleted: [Folder] "C:\ProgramData\ask"



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Łt 27.08.2013 at 11:28:36,94
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


ADW:
# AdwCleaner v3.001 - Report created 27/08/2013 at 11:41:24
# Updated 24/08/2013 by Xplode
# Operating System : Windows 7 Starter (32 bits)
# Username : emachines - EMACHINES-PC
# Running from : C:\Users\emachines\Downloads\adwcleaner (1).exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\Users\emachines\AppData\Local\PackageAware
File Deleted : C:\Users\EMACHI~1\AppData\Local\Temp\Uninstall.exe

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\14919ea49a8f3b4aa3cf1058d9a64cec
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key Deleted : HKCU\Software\UpdateStar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\bi_uninstaller

***** [ Browsers ] *****

-\\ Internet Explorer v8.0.7600.16385


-\\ Google Chrome v29.0.1547.57

[ File : C:\Users\emachines\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [1293 octets] - [27/08/2013 11:29:32]
AdwCleaner[S0].txt - [1230 octets] - [27/08/2013 11:41:24]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1290 octets] ##########

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Kompletní vyčištění zasekaného netbooku

#4 Příspěvek od vyosek »

Poprosim o spusteni nasledujiciho

:arrow: Aplikace ke stažení:
:arrow: Po stažení FRSTLauncher spustte, objevi se mozna varovani od antiviru, ignorujte a nechte FRSTL spustit

:arrow: Následně dojde ke stažení FRST a inicializaci
  • Po spuštění FRST odsouhlasíme licenční podmínky kliknutím na Ano.
  • Dooznačíme položku Addition.txt - viz obrázek.
    Obrázek
  • Klikneme na tlačítko Scan čímž spustíme skenování.
  • Počkáme na dokončení skenování FRST a vytvoření doplňkových informací naší nástavbou.
  • Otevře se nám textový soubor FRST.txt, což je požadovaný log a jehož obsah vložíme do svého tématu na fóru.
  • Po uzavření logu se FRSTLauncher.exe ukončí a na ploše nám zbyde utilta FRST a dva logy FRST.txt a Addition.txt - nic z toho zatím nemažeme.
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

cocinella
Návštěvník
Návštěvník
Příspěvky: 133
Registrován: 29 kvě 2012 19:21

Re: Kompletní vyčištění zasekaného netbooku

#5 Příspěvek od cocinella »

FRST:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 27-08-2013 01
Ran by emachines (administrator) on 27-08-2013 11:50:07
Running from C:\Users\emachines\Desktop
Microsoft Windows 7 Starter (X86) OS Language: Czech
Internet Explorer Version 8
Boot Mode: Normal

==================== Processes (Whitelisted) ===================

(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Dritek System Inc.) C:\Program Files\Launch Manager\LManager.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(Acer Incorporated) C:\Program Files\eMachines\eMachines Power Management\ePowerTray.exe
(Sun Microsystems, Inc.) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
(Intel Corporation) C:\Windows\system32\igfxsrvc.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
() C:\Users\emachines\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
(Dritek System Inc.) C:\Program Files\Launch Manager\dsiwmis.exe
(Acer Incorporated) C:\Program Files\eMachines\eMachines Power Management\ePowerSvc.exe
(Acer Incorporated) C:\Program Files\eMachines\Registration\GREGsvc.exe
(Symantec Corporation) C:\Program Files\Norton Internet Security\Engine\18.7.2.3\ccSvcHst.exe
(Symantec Corporation) C:\Program Files\Symantec\Norton Online Backup\NOBuAgent.exe
(Acer Group) C:\Program Files\eMachines\eMachines Updater\UpdaterService.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Symantec Corporation) C:\Program Files\Norton Internet Security\Engine\18.7.2.3\ccSvcHst.exe
() C:\Windows\system32\UAService7.exe
(Microsoft Corporation) C:\Windows\system32\wbem\unsecapp.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Dritek System Inc.) C:\Program Files\Launch Manager\LMworker.exe
(Intel Corporation) C:\Windows\system32\igfxext.exe
(Acer Incorporated) C:\Program Files\eMachines\eMachines Power Management\ePowerEvent.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [Norton Online Backup] - C:\Program Files\Symantec\Norton Online Backup\NOBuClient.exe [966488 2010-06-02] (Symantec Corporation)
HKLM\...\Run: [Adobe Reader Speed Launcher] - C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [35696 2009-02-28] (Adobe Systems Incorporated)
HKLM\...\Run: [OOTag] - C:\Program Files\eMachines\OOBEOffer\OOTag.exe [13856 2010-02-23] (Microsoft)
HKLM\...\Run: [LManager] - C:\Program Files\Launch Manager\LManager.exe [975952 2010-08-10] (Dritek System Inc.)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1692968 2010-02-05] (Synaptics Incorporated)
HKLM\...\Run: [IAStorIcon] - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284696 2010-06-08] (Intel Corporation)
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [9398888 2010-08-03] (Realtek Semiconductor)
HKLM\...\Run: [Acer ePower Management] - C:\Program Files\eMachines\eMachines Power Management\ePowerTray.exe [715296 2010-06-11] (Acer Incorporated)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [252848 2012-07-03] (Sun Microsystems, Inc.)
HKLM\...\Run: [seznam-listicka-distribuce] - C:\Program Files\Seznam.cz\distribution\szninstall.exe [1061960 2013-03-21] ()
HKCU\...\Run: [Skype] - C:\Program Files\Skype\Phone\Skype.exe [18678376 2013-04-19] (Skype Technologies S.A.)
HKCU\...\Run: [cz.seznam.software.autoupdate] - C:\Users\emachines\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKCU\...\Run: [cz.seznam.software.szndesktop] - C:\Users\emachines\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKCU\...\Run: [SUPERAntiSpyware] - C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [4763008 2012-11-01] (SUPERAntiSpyware.com)
HKCU\...\Winlogon: [Shell] EXPLORER.EXE <==== ATTENTION
MountPoints2: {a2a0694c-e996-11e2-8d81-88ae1d96be3c} - D:\.autorun\autorun.exe
MountPoints2: {dfb86e5d-fd46-11e2-a05a-88ae1d96be3c} - D:\AutoRunMorrowind.exe
HKU\Default\...\RunOnce: [ScrSav] - C:\Program Files\eMachines\Screensaver\run_eMachines.exe [ 2010-01-15] ()
HKU\Default User\...\RunOnce: [ScrSav] - C:\Program Files\eMachines\Screensaver\run_eMachines.exe [ 2010-01-15] ()

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=12454
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKCU - {33B01F78-D487-4A25-93D8-F2079C2B6897} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_12454
SearchScopes: HKCU - {49A0EBEA-025C-4411-824E-6F20B76C71EC} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_12454
SearchScopes: HKCU - {5E015D28-F1FD-4239-BC0C-D636AA2324F8} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_12454
SearchScopes: HKCU - {8462FEC4-459F-4BD3-A9EF-BB8EB3F2211B} URL = http://encyklopedie.seznam.cz/search?q= ... arch_12454
SearchScopes: HKCU - {8836647A-4781-42D2-BA5F-0DF071E8FF74} URL = http://www.mapy.cz/?query={searchTerms} ... arch_12454
SearchScopes: HKCU - {A88D1A20-F93C-4507-B67B-26B1056563B5} URL = http://www.novinky.cz/hledej?w={searchT ... arch_12454
SearchScopes: HKCU - {C06B731D-2902-4B53-B162-8890CE417178} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_12454
SearchScopes: HKCU - {C3A27498-A14A-4DE6-A09E-73EB509DD449} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_12454
BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\coIEPlg.dll (Symantec Corporation)
BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\IPS\IPSBHO.DLL (Symantec Corporation)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO: Windows 7 Starter Helper - {D381FF29-7CFB-4D4E-B92A-C4EDDC696614} - C:\Program Files\Oceanis\SystemSetting\StarterHelper.dll (Oceanis)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\coIEPlg.dll (Symantec Corporation)
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation)
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [113024 2011-07-19] (SuperAdBlocker.com)
Tcpip\Parameters: [DhcpNameServer] 109.105.46.3 192.168.1.10

Chrome:
=======
CHR RestoreOnStartup: ""
CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter}
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\29.0.1547.57\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\29.0.1547.57\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\29.0.1547.57\pdf.dll ()
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
CHR Plugin: (Java(TM) Platform SE 7 U17) - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
CHR Plugin: (WildTangent Games App V2 Presence Detector) - C:\Program Files\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll No File
CHR Plugin: (Windows Live\u00AE Photo Gallery) - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (SOE Web Installer) - C:\Users\emachines\AppData\LocalLow\Sony Online Entertainment\npsoe.dll ()
CHR Plugin: (Unity Player) - C:\Users\emachines\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll No File
CHR Plugin: (Java Deployment Toolkit 7.0.170.2) - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\4.0.50401.0\npctrl.dll ( Microsoft Corporation)
CHR Extension: (Chrome In-App Payments service) - C:\Users\EMACHI~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0

========================== Services (Whitelisted) =================

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [116608 2012-07-11] (SUPERAntiSpyware.com)
R2 ePowerSvc; C:\Program Files\eMachines\eMachines Power Management\ePowerSvc.exe [735776 2010-06-11] (Acer Incorporated)
S3 GameConsoleService; C:\Program Files\eMachines Games\eMachines Game Console\GameConsoleService.exe [246520 2010-04-04] (WildTangent, Inc.)
R2 GREGService; C:\Program Files\eMachines\Registration\GREGsvc.exe [23584 2010-01-08] (Acer Incorporated)
R2 NIS; C:\Program Files\Norton Internet Security\Engine\18.7.2.3\diMaster.dll [262584 2011-04-01] (Symantec Corporation)
R2 NOBU; C:\Program Files\Symantec\Norton Online Backup\NOBuAgent.exe [2057560 2010-06-02] (Symantec Corporation)
S2 SecureUpdateSvc; C:\Program Files\Secure Speed Dial\IE\SecureUpdate.exe [2460496 2013-08-21] ()
R2 Updater Service; C:\Program Files\eMachines\eMachines Updater\UpdaterService.exe [243232 2010-01-29] (Acer Group)
R2 UserAccess7; C:\Windows\system32\UAService7.exe [126976 2013-08-07] ()

==================== Drivers (Whitelisted) ====================

R1 BHDrvx86; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.0.0.128\Definitions\BASHDefs\20130531.001\BHDrvx86.sys [1002072 2013-05-31] (Symantec Corporation)
R0 CLFS; C:\Windows\System32\CLFS.sys [249408 2009-07-14] (Microsoft Corporation)
R1 eeCtrl; C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [376480 2013-04-20] (Symantec Corporation)
R3 EraserUtilRebootDrv; C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [106656 2013-04-20] (Symantec Corporation)
S3 EUCR; C:\Windows\System32\DRIVERS\EUCR6SK.SYS [82768 2010-06-17] (ENE Technology Inc.)
R1 IDSVix86; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.0.0.128\Definitions\IPSDefs\20130615.001\IDSvix86.sys [386720 2013-04-19] (Symantec Corporation)
S3 NAVENG; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.0.0.128\Definitions\VirusDefs\20130617.021\NAVENG.SYS [93272 2013-05-22] (Symantec Corporation)
S3 NAVEX15; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.0.0.128\Definitions\VirusDefs\20130617.021\NAVEX15.SYS [1611992 2013-05-22] (Symantec Corporation)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
S3 SRTSP; C:\Windows\System32\Drivers\NIS\1207020.003\SRTSP.SYS [516216 2011-03-31] (Symantec Corporation)
R1 SRTSPX; C:\Windows\system32\drivers\NIS\1207020.003\SRTSPX.SYS [50168 2011-03-31] (Symantec Corporation)
R0 SymDS; C:\Windows\System32\drivers\NIS\1207020.003\SYMDS.SYS [340088 2011-01-27] (Symantec Corporation)
R0 SymEFA; C:\Windows\System32\drivers\NIS\1207020.003\SYMEFA.SYS [744568 2011-03-15] (Symantec Corporation)
R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT.SYS [126584 2013-05-01] (Symantec Corporation)
R1 SymIRON; C:\Windows\system32\drivers\NIS\1207020.003\Ironx86.SYS [136312 2011-01-27] (Symantec Corporation)
R1 SymNetS; C:\Windows\System32\Drivers\NIS\1207020.003\SYMNETS.SYS [299640 2011-04-21] (Symantec Corporation)

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-08-27 11:49 - 2013-08-27 11:49 - 00000000 ____D C:\Users\EMACHI~1\AppData\Local\qb069980.5C
2013-08-27 11:49 - 2013-08-27 11:49 - 00000000 ____D C:\FRST
2013-08-27 11:49 - 2013-08-26 23:44 - 01072785 _____ (Farbar) C:\Users\emachines\Desktop\FRST.exe
2013-08-27 11:29 - 2013-08-27 11:41 - 00000000 ____D C:\AdwCleaner
2013-08-27 11:28 - 2013-08-27 11:28 - 00005208 _____ C:\Users\emachines\Desktop\JRT.txt
2013-08-27 11:20 - 2013-08-27 11:22 - 00994642 _____ C:\Users\emachines\Downloads\adwcleaner (1).exe
2013-08-27 11:18 - 2013-08-27 11:18 - 01021434 _____ (Thisisu) C:\Users\emachines\Desktop\JRT.exe
2013-08-27 11:18 - 2013-08-27 11:18 - 00994642 _____ C:\Users\emachines\Downloads\adwcleaner.exe
2013-08-27 11:18 - 2013-08-27 11:18 - 00000000 ____D C:\Windows\ERUNT
2013-08-27 11:17 - 2013-08-27 11:18 - 01021434 _____ (Thisisu) C:\Users\emachines\Downloads\JRT.exe
2013-08-27 10:29 - 2013-08-27 10:29 - 00000000 ____D C:\rsit
2013-08-27 10:29 - 2013-08-27 10:29 - 00000000 ____D C:\Program Files\trend micro
2013-08-27 10:28 - 2013-08-27 10:28 - 00781383 _____ C:\Users\emachines\Downloads\RSIT.exe
2013-08-26 14:02 - 2013-08-26 14:02 - 00000000 ____D C:\Users\emachines\AppData\Roaming\DAEMON Tools Pro
2013-08-26 14:01 - 2013-08-27 11:42 - 00000314 _____ C:\Windows\setupact.log
2013-08-26 14:01 - 2013-08-26 14:01 - 00000000 ____D C:\Users\emachines\AppData\Roaming\DAEMON Tools Ultra
2013-08-26 14:01 - 2013-08-26 14:01 - 00000000 _____ C:\Windows\setuperr.log
2013-08-26 13:32 - 2013-08-27 11:42 - 00013688 _____ C:\Windows\PFRO.log
2013-08-26 13:26 - 2013-08-26 14:01 - 00000518 _____ C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task d7b86ca4-85fe-403d-81f1-1a85e61ed1f7.job
2013-08-26 13:26 - 2013-08-26 14:01 - 00000518 _____ C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 71e8bcc9-2ec7-4b1f-81dc-29c811dfce0c.job
2013-08-26 13:25 - 2013-08-26 13:25 - 00001970 _____ C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
2013-08-26 13:25 - 2013-08-26 13:25 - 00000000 ____D C:\Users\emachines\AppData\Roaming\SUPERAntiSpyware.com
2013-08-26 13:25 - 2013-08-26 13:25 - 00000000 ____D C:\ProgramData\SUPERAntiSpyware.com
2013-08-26 13:25 - 2013-08-26 13:25 - 00000000 ____D C:\Program Files\SUPERAntiSpyware
2013-08-26 13:15 - 2013-08-26 13:15 - 00000974 _____ C:\Users\Public\Desktop\CCleaner.lnk
2013-08-26 13:15 - 2013-08-26 13:15 - 00000000 ____D C:\Program Files\CCleaner
2013-08-25 15:48 - 2013-08-25 15:48 - 00000000 __RSH C:\MSDOS.SYS
2013-08-25 15:48 - 2013-08-25 15:48 - 00000000 __RSH C:\IO.SYS
2013-08-23 15:36 - 2013-08-23 15:39 - 96079971 _____ C:\Users\emachines\AppData\Roaming\.minecraft.rar
2013-08-21 09:59 - 2013-08-21 09:59 - 00000000 ____D C:\Program Files\Common Files\lightning group shared files
2013-08-20 18:23 - 2013-08-20 18:23 - 00000000 ____D C:\Users\Public\Documents\DAEMON Tools Images
2013-08-13 22:22 - 2013-08-27 11:00 - 00000000 ____D C:\Fraps
2013-08-08 20:06 - 2013-08-08 20:06 - 00000000 ____D C:\Users\EMACHI~1\AppData\Local\SCE
2013-08-08 19:51 - 2013-08-08 19:51 - 00000000 ____D C:\Users\Public\Sony Online Entertainment
2013-08-07 23:15 - 2013-08-07 23:38 - 00000000 ____D C:\Windows\Bugdom
2013-08-07 23:14 - 2013-08-07 23:14 - 00000000 ____D C:\Users\emachines\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ODI Software
2013-08-07 23:14 - 2013-08-07 23:14 - 00000000 ____D C:\Program Files\ODI Software
2013-08-07 20:43 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll
2013-08-07 20:43 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll
2013-08-07 20:43 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll
2013-08-07 20:43 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll
2013-08-07 20:43 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll
2013-08-07 20:43 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll
2013-08-07 20:43 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll
2013-08-07 20:43 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll
2013-08-07 20:43 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll
2013-08-07 20:43 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll
2013-08-07 20:43 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll
2013-08-07 20:43 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll
2013-08-07 20:43 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll
2013-08-07 20:43 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll
2013-08-07 20:38 - 2013-08-27 10:47 - 00000000 ____D C:\Program Files\LucasArts
2013-08-07 16:35 - 2013-08-07 16:35 - 00226304 _____ (RAD Game Tools, Inc.) C:\Windows\system32\binkw32.dll
2013-08-07 16:22 - 2013-08-07 20:43 - 00098304 _____ (Sony DADC Austria AG.) C:\Windows\system32\CmdLineExt.dll
2013-08-07 16:22 - 2013-08-07 16:22 - 00126976 _____ C:\Windows\system32\UAService7.exe
2013-08-07 16:20 - 2013-08-07 16:30 - 00000017 _____ C:\gputest.txt
2013-08-07 16:16 - 2013-08-07 16:16 - 00000000 ____D C:\Program Files\Giant
2013-08-07 16:03 - 2013-08-07 16:11 - 00000000 ____D C:\ProgramData\DAEMON Tools Pro
2013-08-07 15:50 - 2013-08-07 15:50 - 00000000 ____D C:\Users\EMACHI~1\AppData\Local\DTClient
2013-08-05 15:14 - 2013-08-05 15:14 - 00000000 ____D C:\ProgramData\SiaoSoft
2013-08-04 19:38 - 2013-08-27 10:43 - 00000000 ____D C:\Program Files\Secure Speed Dial
2013-08-04 19:38 - 2013-08-21 10:03 - 00268968 _____ C:\Windows\system32\sqlite3.dll
2013-08-04 14:11 - 2013-08-27 11:00 - 00000000 ____D C:\Program Files\WildTangent Games
2013-07-30 12:46 - 2013-08-27 10:58 - 00000000 ____D C:\Program Files\Counter-Strike 1.6 Non-Steam

==================== One Month Modified Files and Folders =======

2013-08-27 11:50 - 2009-07-14 06:34 - 00009696 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-08-27 11:50 - 2009-07-14 06:34 - 00009696 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-08-27 11:49 - 2013-08-27 11:49 - 00000000 ____D C:\Users\EMACHI~1\AppData\Local\qb069980.5C
2013-08-27 11:49 - 2013-08-27 11:49 - 00000000 ____D C:\FRST
2013-08-27 11:48 - 2013-04-10 19:03 - 00000000 ____D C:\Users\emachines\AppData\Roaming\Seznam.cz
2013-08-27 11:46 - 2013-04-05 11:46 - 00609916 _____ C:\Windows\WindowsUpdate.log
2013-08-27 11:44 - 2013-04-09 15:32 - 00000000 ____D C:\Users\emachines\AppData\Roaming\Skype
2013-08-27 11:43 - 2013-04-09 15:01 - 00000942 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-08-27 11:43 - 2009-07-14 06:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-08-27 11:42 - 2013-08-26 14:01 - 00000314 _____ C:\Windows\setupact.log
2013-08-27 11:42 - 2013-08-26 13:32 - 00013688 _____ C:\Windows\PFRO.log
2013-08-27 11:41 - 2013-08-27 11:29 - 00000000 ____D C:\AdwCleaner
2013-08-27 11:33 - 2013-04-09 15:01 - 00000946 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-08-27 11:28 - 2013-08-27 11:28 - 00005208 _____ C:\Users\emachines\Desktop\JRT.txt
2013-08-27 11:22 - 2013-08-27 11:20 - 00994642 _____ C:\Users\emachines\Downloads\adwcleaner (1).exe
2013-08-27 11:18 - 2013-08-27 11:18 - 01021434 _____ (Thisisu) C:\Users\emachines\Desktop\JRT.exe
2013-08-27 11:18 - 2013-08-27 11:18 - 00994642 _____ C:\Users\emachines\Downloads\adwcleaner.exe
2013-08-27 11:18 - 2013-08-27 11:18 - 00000000 ____D C:\Windows\ERUNT
2013-08-27 11:18 - 2013-08-27 11:17 - 01021434 _____ (Thisisu) C:\Users\emachines\Downloads\JRT.exe
2013-08-27 11:00 - 2013-08-13 22:22 - 00000000 ____D C:\Fraps
2013-08-27 11:00 - 2013-08-04 14:11 - 00000000 ____D C:\Program Files\WildTangent Games
2013-08-27 11:00 - 2012-02-24 14:17 - 00000000 ____D C:\ProgramData\WildTangent
2013-08-27 10:58 - 2013-07-30 12:46 - 00000000 ____D C:\Program Files\Counter-Strike 1.6 Non-Steam
2013-08-27 10:55 - 2013-07-11 20:17 - 00000000 ____D C:\Users\emachines\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2013-08-27 10:47 - 2013-08-07 20:38 - 00000000 ____D C:\Program Files\LucasArts
2013-08-27 10:45 - 2013-06-21 17:17 - 00000000 ____D C:\Users\EMACHI~1\AppData\Local\Unity
2013-08-27 10:43 - 2013-08-04 19:38 - 00000000 ____D C:\Program Files\Secure Speed Dial
2013-08-27 10:43 - 2013-07-11 20:12 - 00000000 ____D C:\Program Files\TES III - Morrowind GOTY
2013-08-27 10:42 - 2013-04-09 18:22 - 00000000 ____D C:\Firefox
2013-08-27 10:29 - 2013-08-27 10:29 - 00000000 ____D C:\rsit
2013-08-27 10:29 - 2013-08-27 10:29 - 00000000 ____D C:\Program Files\trend micro
2013-08-27 10:28 - 2013-08-27 10:28 - 00781383 _____ C:\Users\emachines\Downloads\RSIT.exe
2013-08-26 23:44 - 2013-08-27 11:49 - 01072785 _____ (Farbar) C:\Users\emachines\Desktop\FRST.exe
2013-08-26 14:02 - 2013-08-26 14:02 - 00000000 ____D C:\Users\emachines\AppData\Roaming\DAEMON Tools Pro
2013-08-26 14:01 - 2013-08-26 14:01 - 00000000 ____D C:\Users\emachines\AppData\Roaming\DAEMON Tools Ultra
2013-08-26 14:01 - 2013-08-26 14:01 - 00000000 _____ C:\Windows\setuperr.log
2013-08-26 14:01 - 2013-08-26 13:26 - 00000518 _____ C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task d7b86ca4-85fe-403d-81f1-1a85e61ed1f7.job
2013-08-26 14:01 - 2013-08-26 13:26 - 00000518 _____ C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 71e8bcc9-2ec7-4b1f-81dc-29c811dfce0c.job
2013-08-26 13:25 - 2013-08-26 13:25 - 00001970 _____ C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
2013-08-26 13:25 - 2013-08-26 13:25 - 00000000 ____D C:\Users\emachines\AppData\Roaming\SUPERAntiSpyware.com
2013-08-26 13:25 - 2013-08-26 13:25 - 00000000 ____D C:\ProgramData\SUPERAntiSpyware.com
2013-08-26 13:25 - 2013-08-26 13:25 - 00000000 ____D C:\Program Files\SUPERAntiSpyware
2013-08-26 13:22 - 2013-05-27 17:31 - 00000000 ____D C:\Windows\Minidump
2013-08-26 13:22 - 2013-04-20 17:45 - 00000000 ____D C:\Users\EMACHI~1\AppData\Local\CrashDumps
2013-08-26 13:22 - 2007-07-12 03:49 - 00000000 ____D C:\Windows\Panther
2013-08-26 13:15 - 2013-08-26 13:15 - 00000974 _____ C:\Users\Public\Desktop\CCleaner.lnk
2013-08-26 13:15 - 2013-08-26 13:15 - 00000000 ____D C:\Program Files\CCleaner
2013-08-26 13:03 - 2013-04-05 12:48 - 00000000 ____D C:\Users\emachines
2013-08-26 12:44 - 2012-02-24 14:22 - 01575230 _____ C:\Windows\system32\PerfStringBackup.INI
2013-08-25 20:42 - 2013-04-19 15:11 - 00000000 ____D C:\Users\EMACHI~1\AppData\Local\Adobe
2013-08-25 15:48 - 2013-08-25 15:48 - 00000000 __RSH C:\MSDOS.SYS
2013-08-25 15:48 - 2013-08-25 15:48 - 00000000 __RSH C:\IO.SYS
2013-08-23 15:39 - 2013-08-23 15:36 - 96079971 _____ C:\Users\emachines\AppData\Roaming\.minecraft.rar
2013-08-23 15:04 - 2013-04-09 14:59 - 00000000 ____D C:\Users\emachines\AppData\Roaming\Adobe
2013-08-22 07:29 - 2013-04-09 15:01 - 00002138 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2013-08-21 10:03 - 2013-08-04 19:38 - 00268968 _____ C:\Windows\system32\sqlite3.dll
2013-08-21 09:59 - 2013-08-21 09:59 - 00000000 ____D C:\Program Files\Common Files\lightning group shared files
2013-08-20 18:24 - 2013-04-05 12:07 - 00000000 ____D C:\Program Files\Common Files\InstallShield
2013-08-20 18:23 - 2013-08-20 18:23 - 00000000 ____D C:\Users\Public\Documents\DAEMON Tools Images
2013-08-20 10:57 - 2013-04-10 19:08 - 00000000 ____D C:\Minecraft_Backup
2013-08-08 20:06 - 2013-08-08 20:06 - 00000000 ____D C:\Users\EMACHI~1\AppData\Local\SCE
2013-08-08 19:51 - 2013-08-08 19:51 - 00000000 ____D C:\Users\Public\Sony Online Entertainment
2013-08-08 19:51 - 2009-07-14 04:37 - 00000000 ___RD C:\Users\Public
2013-08-07 23:38 - 2013-08-07 23:15 - 00000000 ____D C:\Windows\Bugdom
2013-08-07 23:14 - 2013-08-07 23:14 - 00000000 ____D C:\Users\emachines\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ODI Software
2013-08-07 23:14 - 2013-08-07 23:14 - 00000000 ____D C:\Program Files\ODI Software
2013-08-07 20:43 - 2013-08-07 16:22 - 00098304 _____ (Sony DADC Austria AG.) C:\Windows\system32\CmdLineExt.dll
2013-08-07 20:43 - 2012-02-24 14:23 - 00000000 ___HD C:\Program Files\InstallShield Installation Information
2013-08-07 20:43 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\Microsoft.NET
2013-08-07 16:35 - 2013-08-07 16:35 - 00226304 _____ (RAD Game Tools, Inc.) C:\Windows\system32\binkw32.dll
2013-08-07 16:30 - 2013-08-07 16:20 - 00000017 _____ C:\gputest.txt
2013-08-07 16:22 - 2013-08-07 16:22 - 00126976 _____ C:\Windows\system32\UAService7.exe
2013-08-07 16:16 - 2013-08-07 16:16 - 00000000 ____D C:\Program Files\Giant
2013-08-07 16:11 - 2013-08-07 16:03 - 00000000 ____D C:\ProgramData\DAEMON Tools Pro
2013-08-07 15:50 - 2013-08-07 15:50 - 00000000 ____D C:\Users\EMACHI~1\AppData\Local\DTClient
2013-08-05 15:14 - 2013-08-05 15:14 - 00000000 ____D C:\ProgramData\SiaoSoft

Files to move or delete:
====================
C:\Users\EMACHI~1\AppData\Local\Temp\bi_cleaner.exe
C:\Users\EMACHI~1\AppData\Local\Temp\Uninstaller-3848.exe
C:\Users\EMACHI~1\AppData\Local\Temp\{9941D8ED-E7BC-4CE9-96ED-0EBF2713CB52}\setup.exe
C:\Users\EMACHI~1\AppData\Local\Temp\SUPERSetup\setup.dll
C:\Users\EMACHI~1\AppData\Local\Temp\nsiE6D4.tmp\ccsetup.exe
C:\Users\EMACHI~1\AppData\Local\Temp\jrt\erunt\ERUNT.EXE

==================== Bamital & volsnap Check =================

C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit



==================== Scheduled Tasks (whitelisted) ===========

Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 71e8bcc9-2ec7-4b1f-81dc-29c811dfce0c.job => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task d7b86ca4-85fe-403d-81f1-1a85e61ed1f7.job => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

==================== Supplementary Scan (All) ================


HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\!SASCORE

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=dword:00000000
"ConsentPromptBehaviorUser"=dword:00000003
"EnableInstallerDetection"=dword:00000001
"EnableLUA"=dword:00000000
"EnableSecureUIAPaths"=dword:00000001
"EnableUIADesktopToggle"=dword:00000000
"EnableVirtualization"=dword:00000001
"PromptOnSecureDesktop"=dword:00000000
"ValidateAdminCodeSignatures"=dword:00000000
"dontdisplaylastusername"=dword:00000000
"legalnoticecaption"=""
"legalnoticetext"=""
"scforceoption"=dword:00000000
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001
"FilterAdministratorToken"=dword:00000000
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval"=dword:00000001
"AntiVirusOverride"=dword:00000000
"AntiSpywareOverride"=dword:00000000
"FirewallOverride"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"="msrle32.dll"
"vidc.msvc"="msvidc32.dll"
"msacm.imaadpcm"="imaadp32.acm"
"msacm.msg711"="msg711.acm"
"msacm.msgsm610"="msgsm32.acm"
"msacm.msadpcm"="msadp32.acm"
"midimapper"="midimap.dll"
"wavemapper"="msacm32.drv"
"VIDC.UYVY"="msyuv.dll"
"VIDC.YUY2"="msyuv.dll"
"VIDC.YVYU"="msyuv.dll"
"VIDC.IYUV"="iyuv_32.dll"
"vidc.i420"="iyuv_32.dll"
"VIDC.YVU9"="tsbyuv.dll"
"msacm.l3acm"="C:\\Windows\\System32\\l3codeca.acm"
"vidc.cvid"="iccvid.dll"
"MSVideo8"="VfWWDM32.dll"
"wave"="wdmaud.drv"
"midi"="wdmaud.drv"
"mixer"="wdmaud.drv"
"aux"="wdmaud.drv"
"msacm.siren"="sirenacm.dll"
"VIDC.FPS1"="frapsvid.dll"


==================== Drive and Memory info ===================

Drive c: (eMachines) (Fixed) (Total:219.11 GB) (Free:190.86 GB) NTFS

Available physical RAM: 141.84 MB
Total physical RAM: 1013.1 MB
Percentage of memory in use: 85%

LastRegBack: 2013-08-23 10:59

==================== End Of Log ==============================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Kompletní vyčištění zasekaného netbooku

#6 Příspěvek od vyosek »

:arrow: Tvorba fixlistu pro FRST
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    Start
    HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=12454
    SearchScopes: HKLM - DefaultScope value is missing.
    HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [252848 2012-07-03] (Sun Microsystems, Inc.)
    HKLM\...\Run: [seznam-listicka-distribuce] - C:\Program Files\Seznam.cz\distribution\szninstall.exe [1061960 2013-03-21] ()
    HKCU\...\Run: [Skype] - C:\Program Files\Skype\Phone\Skype.exe [18678376 2013-04-19] (Skype Technologies S.A.)
    HKCU\...\Run: [cz.seznam.software.autoupdate] - C:\Users\emachines\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
    HKCU\...\Run: [cz.seznam.software.szndesktop] - C:\Users\emachines\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
    HKCU\...\Run: [SUPERAntiSpyware] - C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [4763008 2012-11-01] (SUPERAntiSpyware.com)
    HKCU\...\Winlogon: [Shell] EXPLORER.EXE <==== ATTENTION
    MountPoints2: {a2a0694c-e996-11e2-8d81-88ae1d96be3c} - D:\.autorun\autorun.exe
    MountPoints2: {dfb86e5d-fd46-11e2-a05a-88ae1d96be3c} - D:\AutoRunMorrowind.exe
    C:\Users\EMACHI~1\AppData\Local\Temp\bi_cleaner.exe
    C:\Users\EMACHI~1\AppData\Local\Temp\Uninstaller-3848.exe
    C:\Users\EMACHI~1\AppData\Local\Temp\{9941D8ED-E7BC-4CE9-96ED-0EBF2713CB52}\setup.exe
    C:\Users\EMACHI~1\AppData\Local\Temp\SUPERSetup\setup.dll
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 71e8bcc9-2ec7-4b1f-81dc-29c811dfce0c.job => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
    Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task d7b86ca4-85fe-403d-81f1-1a85e61ed1f7.job => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
    REG: reg delete "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run" /v "DAEMON Tools Ultra Agent" /f
    REG: reg delete "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run" /v "DAEMON Tools Pro Agent" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run" /v "Adobe Reader Speed Launcher" /f
    REG: reg delete "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run" /v "" /f
    Hosts:
    CMD: shutdown /r /f /t 2
    End
  • Ulozte vytvoreny TXT jako fixlist.txt
  • Presunte vytvoreny fixlist vedle FRST
:arrow: Spustte znovu FRST.exe
  • Kliknete na Fix
  • Probehne oprava a vytvori log Fixlog.txt
:arrow: Restart PC a dejte mi sem fixlog.txt
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

cocinella
Návštěvník
Návštěvník
Příspěvky: 133
Registrován: 29 kvě 2012 19:21

Re: Kompletní vyčištění zasekaného netbooku

#7 Příspěvek od cocinella »

Fixlog.txt:
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 27-08-2013 01
Ran by emachines at 2013-08-27 12:14:13 Run:1
Running from C:\Users\emachines\Desktop
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
Start
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=12454
SearchScopes: HKLM - DefaultScope value is missing.
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [252848 2012-07-03] (Sun Microsystems, Inc.)
HKLM\...\Run: [seznam-listicka-distribuce] - C:\Program Files\Seznam.cz\distribution\szninstall.exe [1061960 2013-03-21] ()
HKCU\...\Run: [Skype] - C:\Program Files\Skype\Phone\Skype.exe [18678376 2013-04-19] (Skype Technologies S.A.)
HKCU\...\Run: [cz.seznam.software.autoupdate] - C:\Users\emachines\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKCU\...\Run: [cz.seznam.software.szndesktop] - C:\Users\emachines\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKCU\...\Run: [SUPERAntiSpyware] - C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [4763008 2012-11-01] (SUPERAntiSpyware.com)
HKCU\...\Winlogon: [Shell] EXPLORER.EXE <==== ATTENTION
MountPoints2: {a2a0694c-e996-11e2-8d81-88ae1d96be3c} - D:\.autorun\autorun.exe
MountPoints2: {dfb86e5d-fd46-11e2-a05a-88ae1d96be3c} - D:\AutoRunMorrowind.exe
C:\Users\EMACHI~1\AppData\Local\Temp\bi_cleaner.exe
C:\Users\EMACHI~1\AppData\Local\Temp\Uninstaller-3848.exe
C:\Users\EMACHI~1\AppData\Local\Temp\{9941D8ED-E7BC-4CE9-96ED-0EBF2713CB52}\setup.exe
C:\Users\EMACHI~1\AppData\Local\Temp\SUPERSetup\setup.dll
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 71e8bcc9-2ec7-4b1f-81dc-29c811dfce0c.job => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task d7b86ca4-85fe-403d-81f1-1a85e61ed1f7.job => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
REG: reg delete "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run" /v "DAEMON Tools Ultra Agent" /f
REG: reg delete "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run" /v "DAEMON Tools Pro Agent" /f
REG: reg delete "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run" /v "Adobe Reader Speed Launcher" /f
REG: reg delete "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run" /v "" /f
Hosts:
CMD: shutdown /r /f /t 2
End
*****************

HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page => Value deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\seznam-listicka-distribuce => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\Skype => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\cz.seznam.software.autoupdate => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\cz.seznam.software.szndesktop => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\SUPERAntiSpyware => Value deleted successfully.
HKCU\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell => Value deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{a2a0694c-e996-11e2-8d81-88ae1d96be3c} => Key deleted successfully.
HKCR\CLSID\{a2a0694c-e996-11e2-8d81-88ae1d96be3c} => Key not found.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{dfb86e5d-fd46-11e2-a05a-88ae1d96be3c} => Key deleted successfully.
HKCR\CLSID\{dfb86e5d-fd46-11e2-a05a-88ae1d96be3c} => Key not found.
C:\Users\EMACHI~1\AppData\Local\Temp\bi_cleaner.exe => Moved successfully.
C:\Users\EMACHI~1\AppData\Local\Temp\Uninstaller-3848.exe => Moved successfully.
C:\Users\EMACHI~1\AppData\Local\Temp\{9941D8ED-E7BC-4CE9-96ED-0EBF2713CB52}\setup.exe => Moved successfully.
C:\Users\EMACHI~1\AppData\Local\Temp\SUPERSetup\setup.dll => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 71e8bcc9-2ec7-4b1f-81dc-29c811dfce0c.job => Moved successfully.
C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task d7b86ca4-85fe-403d-81f1-1a85e61ed1f7.job => Moved successfully.

========= reg delete "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run" /v "DAEMON Tools Ultra Agent" /f =========

Chyba: Syst‚m nenalezl zadaně klˇź registru nebo po§adovanou hodnotu.


========= End of Reg: =========


========= reg delete "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run" /v "DAEMON Tools Pro Agent" /f =========

Chyba: Syst‚m nenalezl zadaně klˇź registru nebo po§adovanou hodnotu.


========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run" /v "Adobe Reader Speed Launcher" /f =========

Operace byla dokonźena ŁspŘçnŘ.



========= End of Reg: =========


========= reg delete "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run" /v "" /f =========

Chyba: Syst‚m nenalezl zadaně klˇź registru nebo po§adovanou hodnotu.


========= End of Reg: =========

C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.

========= shutdown /r /f /t 2 =========


========= End of CMD: =========


==== End of Fixlog ====

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Kompletní vyčištění zasekaného netbooku

#8 Příspěvek od vyosek »

Poprosim o novy log z RSIT
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

cocinella
Návštěvník
Návštěvník
Příspěvky: 133
Registrován: 29 kvě 2012 19:21

Re: Kompletní vyčištění zasekaného netbooku

#9 Příspěvek od cocinella »

RSIT:
Logfile of random's system information tool 1.09 (written by random/random)
Run by emachines at 2013-08-27 12:35:05
Microsoft Windows 7 Starter
System drive C: has 195 GB (87%) free of 224 GB
Total RAM: 1013 MB (28% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:35:18, on 27.8.2013
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Launch Manager\LManager.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\eMachines\eMachines Power Management\ePowerTray.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Windows\system32\igfxsrvc.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Norton Internet Security\Engine\18.7.2.3\ccSvcHst.exe
C:\Windows\system32\igfxext.exe
C:\Program Files\Launch Manager\LMworker.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\NOTEPAD.EXE
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\emachines\Downloads\RSIT.exe
C:\Program Files\trend micro\emachines.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\coIEPlg.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\IPS\IPSBHO.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows 7 Starter Helper - {D381FF29-7CFB-4D4E-B92A-C4EDDC696614} - C:\Program Files\Oceanis\SystemSetting\StarterHelper.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\coIEPlg.dll
O4 - HKLM\..\Run: [Norton Online Backup] C:\Program Files\Symantec\Norton Online Backup\NOBuClient.exe
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [OOTag] C:\Program Files\eMachines\OOBEOffer\OOTag.exe
O4 - HKLM\..\Run: [LManager] C:\Program Files\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [Acer ePower Management] C:\Program Files\eMachines\eMachines Power Management\ePowerTray.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files\Launch Manager\dsiwmis.exe
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\eMachines\eMachines Power Management\ePowerSvc.exe
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files\eMachines Games\eMachines Game Console\GameConsoleService.exe
O23 - Service: GREGService - Acer Incorporated - C:\Program Files\eMachines\Registration\GREGsvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Úložná technologie Intel(R) Rapid (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\ccSvcHst.exe
O23 - Service: Norton Online Backup (NOBU) - Symantec Corporation - C:\Program Files\Symantec\Norton Online Backup\NOBuAgent.exe
O23 - Service: SecureUpdate (SecureUpdateSvc) - Unknown owner - C:\Program Files\Secure Speed Dial\IE\SecureUpdate.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Updater Service - Acer Group - C:\Program Files\eMachines\eMachines Updater\UpdaterService.exe
O23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Unknown owner - C:\Windows\system32\UAService7.exe

--
End of file - 7067 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Symantec NCO BHO - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\coIEPlg.dll [2012-06-07 436192]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Symantec Intrusion Prevention - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\IPS\IPSBHO.DLL [2011-03-31 210872]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-04-09 461216]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D381FF29-7CFB-4D4E-B92A-C4EDDC696614}]
Windows 7 Starter Helper - C:\Program Files\Oceanis\SystemSetting\StarterHelper.dll [2009-12-09 137904]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-04-09 170912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\coIEPlg.dll [2012-06-07 436192]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Norton Online Backup"=C:\Program Files\Symantec\Norton Online Backup\NOBuClient.exe [2010-06-02 966488]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2010-04-23 141848]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2010-04-23 173592]
"Persistence"=C:\Windows\system32\igfxpers.exe [2010-04-23 150552]
"OOTag"=C:\Program Files\eMachines\OOBEOffer\OOTag.exe [2010-02-23 13856]
"LManager"=C:\Program Files\Launch Manager\LManager.exe [2010-08-10 975952]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-02-05 1692968]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-06-08 284696]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2010-08-03 9398888]
"Acer ePower Management"=C:\Program Files\eMachines\eMachines Power Management\ePowerTray.exe [2010-06-11 715296]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2010-04-19 218112]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2011-07-19 113024]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.siren"=sirenacm.dll
"VIDC.FPS1"=frapsvid.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2013-08-27 11:49:58 ----D---- C:\FRST
2013-08-27 11:29:28 ----D---- C:\AdwCleaner
2013-08-27 11:18:43 ----D---- C:\Windows\ERUNT
2013-08-27 10:29:07 ----D---- C:\Program Files\trend micro
2013-08-27 10:29:05 ----D---- C:\rsit
2013-08-26 14:02:02 ----D---- C:\Users\emachines\AppData\Roaming\DAEMON Tools Pro
2013-08-26 14:01:59 ----D---- C:\Users\emachines\AppData\Roaming\DAEMON Tools Ultra
2013-08-26 13:32:01 ----A---- C:\Windows\ntbtlog.txt
2013-08-26 13:25:47 ----D---- C:\Users\emachines\AppData\Roaming\SUPERAntiSpyware.com
2013-08-26 13:25:32 ----D---- C:\ProgramData\SUPERAntiSpyware.com
2013-08-26 13:25:32 ----D---- C:\Program Files\SUPERAntiSpyware
2013-08-26 13:15:00 ----D---- C:\Program Files\CCleaner
2013-08-25 15:48:01 ----RASH---- C:\MSDOS.SYS
2013-08-25 15:48:01 ----RASH---- C:\IO.SYS
2013-08-21 09:59:09 ----D---- C:\Program Files\Common Files\lightning group shared files
2013-08-13 22:22:27 ----D---- C:\Fraps
2013-08-07 23:15:30 ----D---- C:\Windows\Bugdom
2013-08-07 23:14:20 ----D---- C:\Program Files\ODI Software
2013-08-07 20:43:48 ----A---- C:\Windows\system32\xinput1_2.dll
2013-08-07 20:43:48 ----A---- C:\Windows\system32\xactengine2_3.dll
2013-08-07 20:43:47 ----A---- C:\Windows\system32\xinput1_1.dll
2013-08-07 20:43:47 ----A---- C:\Windows\system32\xactengine2_2.dll
2013-08-07 20:43:47 ----A---- C:\Windows\system32\xactengine2_1.dll
2013-08-07 20:43:32 ----A---- C:\Windows\system32\d3dx9_30.dll
2013-08-07 20:43:31 ----A---- C:\Windows\system32\xactengine2_0.dll
2013-08-07 20:43:31 ----A---- C:\Windows\system32\x3daudio1_0.dll
2013-08-07 20:43:31 ----A---- C:\Windows\system32\d3dx9_29.dll
2013-08-07 20:43:30 ----A---- C:\Windows\system32\d3dx9_28.dll
2013-08-07 20:43:29 ----A---- C:\Windows\system32\d3dx9_27.dll
2013-08-07 20:43:28 ----A---- C:\Windows\system32\d3dx9_26.dll
2013-08-07 20:43:27 ----A---- C:\Windows\system32\d3dx9_25.dll
2013-08-07 20:43:26 ----A---- C:\Windows\system32\d3dx9_24.dll
2013-08-07 20:38:25 ----D---- C:\Program Files\LucasArts
2013-08-07 16:35:20 ----A---- C:\Windows\system32\binkw32.dll
2013-08-07 16:33:56 ----D---- C:\ProgramData\Logs
2013-08-07 16:33:48 ----D---- C:\ProgramData\TEMP
2013-08-07 16:22:38 ----A---- C:\Windows\system32\UAService7.exe
2013-08-07 16:22:38 ----A---- C:\Windows\system32\CmdLineExt.dll
2013-08-07 16:20:27 ----A---- C:\gputest.txt
2013-08-07 16:16:55 ----D---- C:\Program Files\Giant
2013-08-07 16:03:31 ----D---- C:\ProgramData\DAEMON Tools Pro
2013-08-05 15:14:14 ----D---- C:\ProgramData\SiaoSoft
2013-08-04 19:38:20 ----A---- C:\Windows\system32\sqlite3.dll
2013-08-04 19:38:15 ----D---- C:\Program Files\Secure Speed Dial
2013-08-04 14:11:02 ----D---- C:\Program Files\WildTangent Games
2013-07-30 12:46:21 ----D---- C:\Program Files\Counter-Strike 1.6 Non-Steam

======List of files/folders modified in the last 1 month======

2013-08-27 12:35:03 ----D---- C:\Windows\Temp
2013-08-27 12:14:19 ----D---- C:\Windows\system32\drivers\etc
2013-08-27 12:14:17 ----D---- C:\Windows\Tasks
2013-08-27 11:50:04 ----D---- C:\Windows
2013-08-27 11:48:14 ----D---- C:\Users\emachines\AppData\Roaming\Seznam.cz
2013-08-27 11:44:13 ----D---- C:\Users\emachines\AppData\Roaming\Skype
2013-08-27 11:27:44 ----HD---- C:\ProgramData
2013-08-27 11:22:24 ----D---- C:\Windows\System32
2013-08-27 11:02:42 ----RD---- C:\Program Files
2013-08-27 11:00:08 ----D---- C:\ProgramData\WildTangent
2013-08-27 10:59:38 ----D---- C:\Windows\system32\config
2013-08-27 10:51:50 ----D---- C:\Windows\system32\Tasks
2013-08-27 10:51:07 ----D---- C:\Windows\system32\drivers
2013-08-27 10:49:07 ----D---- C:\Windows\system32\DriverStore
2013-08-27 10:49:07 ----D---- C:\Windows\system32\catroot
2013-08-27 10:49:06 ----D---- C:\Windows\inf
2013-08-27 10:47:11 ----SHD---- C:\Windows\Installer
2013-08-27 10:46:33 ----SHD---- C:\System Volume Information
2013-08-27 10:43:58 ----D---- C:\Program Files\TES III - Morrowind GOTY
2013-08-27 10:42:57 ----D---- C:\Firefox
2013-08-27 09:10:13 ----D---- C:\Windows\system32\catroot2
2013-08-26 13:22:05 ----D---- C:\Windows\Panther
2013-08-26 13:22:02 ----D---- C:\Windows\Minidump
2013-08-26 13:22:02 ----D---- C:\Windows\debug
2013-08-26 12:44:14 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-08-23 20:37:15 ----D---- C:\Windows\Prefetch
2013-08-23 15:04:17 ----D---- C:\Users\emachines\AppData\Roaming\Adobe
2013-08-21 09:59:09 ----D---- C:\Program Files\Common Files
2013-08-20 18:24:11 ----D---- C:\Program Files\Common Files\InstallShield
2013-08-20 10:57:48 ----D---- C:\Minecraft_Backup
2013-08-07 20:43:53 ----HD---- C:\Program Files\InstallShield Installation Information
2013-08-07 20:43:47 ----RSD---- C:\Windows\assembly
2013-08-07 20:43:38 ----D---- C:\Windows\Microsoft.NET

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-06-08 435736]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-06-19 173440]
R0 SymDS;Symantec Data Store; C:\Windows\system32\drivers\NIS\1207020.003\SYMDS.SYS [2011-01-27 340088]
R0 SymEFA;Symantec Extended File Attributes; C:\Windows\system32\drivers\NIS\1207020.003\SYMEFA.SYS [2011-03-15 744568]
R1 BHDrvx86;BHDrvx86; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.0.0.128\Definitions\BASHDefs\20130531.001\BHDrvx86.sys [2013-05-31 1002072]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [2013-04-20 376480]
R1 IDSVix86;IDSVix86; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.0.0.128\Definitions\IPSDefs\20130615.001\IDSvix86.sys [2013-04-19 386720]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [2011-07-22 12880]
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [2011-07-12 67664]
R1 SRTSPX;Symantec Real Time Storage Protection (PEL); C:\Windows\system32\drivers\NIS\1207020.003\SRTSPX.SYS [2011-03-31 50168]
R1 SymIRON;Symantec Iron Driver; C:\Windows\system32\drivers\NIS\1207020.003\Ironx86.SYS [2011-01-27 136312]
R1 SymNetS;Symantec Network Security WFP Driver; C:\Windows\System32\Drivers\NIS\1207020.003\SYMNETS.SYS [2011-04-21 299640]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2010-07-15 1906024]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2013-04-20 106656]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2010-04-19 4806144]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2010-08-03 3158120]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1C62x86.sys [2010-05-20 68208]
R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT.SYS [2013-05-01 126584]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2010-02-05 242992]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\DRIVERS\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 E1G60;Intel(R) PRO/1000 NDIS 6 Adapter Driver; C:\Windows\system32\DRIVERS\E1G60I32.sys [2009-07-14 118784]
S3 EUCR;EUCR; C:\Windows\system32\DRIVERS\EUCR6SK.SYS [2010-06-17 82768]
S3 NAVENG;NAVENG; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.0.0.128\Definitions\VirusDefs\20130617.021\NAVENG.SYS [2013-05-22 93272]
S3 NAVEX15;NAVEX15; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.0.0.128\Definitions\VirusDefs\20130617.021\NAVEX15.SYS [2013-05-22 1611992]
S3 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12368]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\DRIVERS\sisagp.sys [2009-07-14 52304]
S3 SRTSP;Symantec Real Time Storage Protection; C:\Windows\System32\Drivers\NIS\1207020.003\SRTSP.SYS [2011-03-31 516216]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\DRIVERS\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 34944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [2012-07-11 116608]
R2 DsiWMIService;Dritek WMI Service; C:\Program Files\Launch Manager\dsiwmis.exe [2010-08-10 321104]
R2 ePowerSvc;Acer ePower Service; C:\Program Files\eMachines\eMachines Power Management\ePowerSvc.exe [2010-06-11 735776]
R2 GREGService;GREGService; C:\Program Files\eMachines\Registration\GREGsvc.exe [2010-01-08 23584]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-06-08 13336]
R2 NIS;Norton Internet Security; C:\Program Files\Norton Internet Security\Engine\18.7.2.3\ccSvcHst.exe [2011-04-17 130008]
R2 NOBU;Norton Online Backup; C:\Program Files\Symantec\Norton Online Backup\NOBuAgent.exe [2010-06-02 2057560]
R2 Updater Service;Updater Service; C:\Program Files\eMachines\eMachines Updater\UpdaterService.exe [2010-01-29 243232]
R2 UserAccess7;SecuROM User Access Service (V7); C:\Windows\system32\UAService7.exe [2013-08-07 126976]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-04-09 116648]
S2 SecureUpdateSvc;SecureUpdate; C:\Program Files\Secure Speed Dial\IE\SecureUpdate.exe [2013-08-21 2460496]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-02-28 161384]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 GameConsoleService;GameConsoleService; C:\Program Files\eMachines Games\eMachines Game Console\GameConsoleService.exe [2010-04-04 246520]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-04-09 116648]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Kompletní vyčištění zasekaného netbooku

#10 Příspěvek od vyosek »

:arrow: T-Cleaner http://vyosek.ic.cz/pro_usery/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: OTC http://oldtimer.geekstogo.com/OTC.exe
  • Stahnete a spustte
  • Kliknete na CleanUp a potvrdte YES
  • Program uklidi a restartuje PC

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stahnete a spustte
  • Kliknete na Start a potvrdte OK
  • Program uklidi a restartuje pc
  • Po pouziti utilitu smazte
:arrow: Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: Doporucuji provest defragmentaci disku
  • Nejjednodussi (ale nejmene ucinny) zpusob je pomoci utility ve windowsech
    • Kliknete na Tento pocitac, dale na disk kliknete pravym tlacitkem, vyberte Vlastnosti
    • prepnete se do zalozky Nastroje
    • Nyni vidite pomucky Defragmentace - spustte ji kliknutim na Defragmentovat
    • Toto provedte se vsemi disky
  • Dalsi moznosti (a mnou doporucenou) je pres programek Defraggler http://www.stahuj.centrum.cz/utility_a_ ... efraggler/
    • Program stahnete, nainstalujte (dejte fajfku pryc u yahoo toolbaru) a spustte
    • Kliknete na Analyzovat
    • Pokud je ve sloupci Fragmentováno vice jak 5%, doporucuji provest defragmentaci (klik na Defragmentovat)
    • Postup provedte se vsemi disky
  • Posledni moznost je pres jednoduchy programek JKDefrag http://www.stahuj.centrum.cz/utility_a_ ... /jkdefrag/
    • Vyhodou programku je, ze se neinstaluje
    • Staci tedy jen stahnout dle verze vaseho OS a rozbalit
    • Nasledne spustit pomoci souboru JKDefrag pripadne JKDefrag64
    • Probehne analyza disku a nasledne i defragmentace
:arrow: Napiste co ntb
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

cocinella
Návštěvník
Návštěvník
Příspěvky: 133
Registrován: 29 kvě 2012 19:21

Re: Kompletní vyčištění zasekaného netbooku

#11 Příspěvek od cocinella »

Netbook je v pohodě, děkuji.

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Kompletní vyčištění zasekaného netbooku

#12 Příspěvek od vyosek »

Nemate zac, rad jsem pomohl :worship: Zase nekdy Obrázek

A na zaklade Pravidla o zamykani temat :lock:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Zamčeno