Prosím o preventivku (dds)
Napsal: 09 říj 2013 20:55
Zdravím,
prosím o preventivku. Log jsem musel udělat z dds, protože RSIT házel chybu.
Log:
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 10.0.9200.16686
Run by Mates at 21:48:26 on 2013-10-09
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.2047.289 [GMT 2:00]
.
AV: avast! Antivirus *Enabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Enabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\atiesrxx.exe
C:\Windows\system32\atieclxx.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Windows\system32\inetsrv\inetinfo.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Logitech\SetPointP\SetPoint.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Users\Mates\Local Settings\Apps\F.lux\flux.exe
C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe
C:\Program Files\PANDORA.TV\PanService\KMPService.exe
C:\Program Files\Movies Toolbar\SafetyNut\SafetyNutManager.exe
C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
C:\Program Files\Movies Toolbar\SafetyNut\safetynut.exe
C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe
C:\Program Files\ATI Technologies\HydraVision\HydraDM.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\PANDORA.TV\PanService\KMPProcess.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\conhost.exe
C:\Program Files\AVAST Software\Avast\setup\avast.setup
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k apphost
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k iissvcs
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k SDRSVC
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.com/
uProxyServer = 85.113.38.227:80
TB: Google Toolbar: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
TB: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:\program files\avast software\avast\aswWebRepIE.dll
TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
TB: HyperCam Toolbar: {338B4DFE-2E2C-4338-9E41-E176D497299E} - c:\program files\hypercam toolbar\tbcore3.dll
TB: Movies Toolbar (Dist. by Somoto Ltd.): {3444c3c5-6c56-4a16-a453-832b05bf6ea4} - c:\program files\movies toolbar\safetynut\srtool~1\ie\searchresultsDx.dll
uRun: [F.lux] "c:\users\mates\local settings\apps\f.lux\flux.exe" /noshow
uRun: [Facebook Update] "c:\users\mates\appdata\local\facebook\update\FacebookUpdate.exe" /c /nocrashserver
uRun: [HydraVisionDesktopManager] "c:\program files\ati technologies\hydravision\HydraDM.exe"
mRun: [avast] "c:\program files\avast software\avast\avastUI.exe" /nogui
mRun: [StartCCC] "c:\program files\ati technologies\ati.ace\core-static\CLIStart.exe" MSRun
mRun: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "c:\program files\amd avt\bin\kdbsync.exe" aml
mRun: [EvtMgr6] c:\program files\logitech\setpointp\SetPoint.exe /launchGaming
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
mPolicies-System: PromptOnSecureDesktop = dword:0
mPolicies-System: legalnoticetext = Zdar
mPolicies-System: DisableCAD = dword:1
mPolicies-System: UseOEMBackground = dword:0
mPolicies-System: DisplayLastLogonInfo = dword:0
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_17-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
TCP: NameServer = 10.0.0.138
TCP: Interfaces\{39981278-F766-4850-BBB9-1340A4BA88F3} : DHCPNameServer = 10.0.0.138
TCP: Interfaces\{39981278-F766-4850-BBB9-1340A4BA88F3}\94E6475627E65647 : DHCPNameServer = 10.0.0.138
TCP: Interfaces\{547BC9BC-AA15-456E-BBDE-2F0190A49FFE} : DHCPNameServer = 10.0.0.138
TCP: Interfaces\{6A144056-7065-4735-8B87-6A28E10806F7} : DHCPNameServer = 10.0.0.138
TCP: Interfaces\{8BE56B8C-9830-4BB2-8357-B73B1459D0CF} : DHCPNameServer = 10.0.0.138
TCP: Interfaces\{B2D0A98A-4B4F-4C51-8FD7-25EEFB6E8AF6} : DHCPNameServer = 10.0.0.138
TCP: Interfaces\{BD0A4C18-C29E-42E4-9630-603435421D7F} : DHCPNameServer = 10.0.0.138
TCP: Interfaces\{DAE43906-6992-4EFA-9340-E7687437E787} : DHCPNameServer = 10.0.0.138
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
Notify: LBTWlgn - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
AppInit_DLLs= c:\progra~2\wincert\win32c~1.dll c:\progra~1\movies~1\safety~1\SAFETY~2.DLL
SSODL: WebCheck - <orphaned>
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "c:\program files\google\chrome\application\30.0.1599.69\installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\mates\appdata\roaming\mozilla\firefox\profiles\go9w80g8.default\
FF - prefs.js: network.proxy.type - 0
FF - plugin: c:\program files\adobe\reader 11.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\google\update\1.3.21.153\npGoogleUpdate3.dll
FF - plugin: c:\program files\java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\program files\microsoft silverlight\4.0.50826.0\npctrlui.dll
FF - plugin: c:\users\mates\appdata\local\facebook\messenger\2.1.4814.0\npFbDesktopPlugin.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_8_800_168.dll
FF - plugin: c:\windows\system32\npDeployJava1.dll
FF - plugin: c:\windows\system32\npmproxy.dll
FF - ExtSQL: 2013-08-18 14:28; {75656794-AB59-4712-BFBC-5D816D56F3BC}; c:\users\mates\appdata\roaming\mozilla\firefox\profiles\go9w80g8.default\extensions\{75656794-AB59-4712-BFBC-5D816D56F3BC}
.
============= SERVICES / DRIVERS ===============
.
R0 aswRvrt;aswRvrt;c:\windows\system32\drivers\aswRvrt.sys [2013-3-5 49376]
R0 aswVmm;aswVmm;c:\windows\system32\drivers\aswVmm.sys [2013-3-5 175176]
R0 pe3agqwb;Loki Environment Driver (pe3agqwb);c:\windows\system32\drivers\pe3agqwb.sys [2008-2-25 64616]
R0 ps7agqwb;Loki Synchronization Driver (ps7agqwb);c:\windows\system32\drivers\ps7agqwb.sys [2008-2-25 68208]
R1 aswKbd;aswKbd;c:\windows\system32\drivers\aswKbd.sys [2013-4-4 21576]
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [2013-3-5 770344]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2013-3-5 369584]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\drivers\dtsoftbus01.sys [2013-3-14 242240]
R2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2012-11-16 217088]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2013-3-5 29816]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2013-3-5 66336]
R2 avast! Antivirus;avast! Antivirus;c:\program files\avast software\avast\AvastSvc.exe [2013-5-23 46808]
R2 NIHardwareService;NIHardwareService;c:\program files\common files\native instruments\hardware\NIHardwareService.exe [2010-3-25 3622912]
R2 PanService;PandoraService;c:\program files\pandora.tv\panservice\KMPService.exe [2013-9-28 1922600]
R2 SafetyNutManager;SafetyNut Manager;c:\program files\movies toolbar\safetynut\SafetyNutManager.exe [2013-9-28 3394056]
R2 Skype C2C Service;Skype C2C Service;c:\programdata\skype\toolbars\skype c2c service\c2c_service.exe [2013-9-16 3273088]
R2 TeamViewer8;TeamViewer 8;c:\program files\teamviewer\version8\TeamViewer_Service.exe [2013-6-15 4150112]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW73.sys [2012-2-23 86544]
R3 netr73;RT73 USB - ovladač karty pro bezdrátovou síť LAN pro systém Windows Vista;c:\windows\system32\drivers\netr73.sys [2009-6-10 545792]
R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\drivers\Rt86win7.sys [2009-6-10 139776]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2012-7-9 104912]
S2 MsDepSvc;Služba agenta pro nasazení webu;c:\program files\iis\microsoft web deploy\MsDepSvc.exe [2013-6-10 84624]
S2 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2013-6-21 162408]
S3 avast! Mail Scanner;avast! Mail Scanner;"c:\program files\alwil software\avast4\ashmaisv.exe" /service --> c:\program files\alwil software\avast4\ashMaiSv.exe [?]
S3 avast! Web Scanner;avast! Web Scanner;"c:\program files\alwil software\avast4\ashwebsv.exe" /service --> c:\program files\alwil software\avast4\ashWebSv.exe [?]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-14 229888]
S3 SwitchBoard;SwitchBoard;c:\program files\common files\adobe\switchboard\SwitchBoard.exe [2010-2-19 517096]
S3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\TsUsbFlt.sys [2010-11-20 52224]
S3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264]
S3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\wat\WatAdminSvc.exe [2013-3-6 1343400]
S3 WinRing0_1_2_0;WinRing0_1_2_0;c:\program files\razer\razer game booster\driver\WinRing0.sys [2013-8-14 14416]
S4 MSSQLServerADHelper100;SQL Active Directory Helper Service;c:\program files\microsoft sql server\100\shared\sqladhlp.exe [2009-7-23 47128]
S4 pr2agqwb;Loki Drivers Auto Removal (pr2agqwb);c:\windows\system32\pr2agqwb.exe svc --> c:\windows\system32\pr2agqwb.exe svc [?]
S4 RsFx0103;RsFx0103 Driver;c:\windows\system32\drivers\RsFx0103.sys [2009-3-30 239336]
S4 SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS);c:\program files\microsoft sql server\mssql10.sqlexpress\mssql\binn\SQLAGENT.EXE [2009-3-30 366936]
.
=============== File Associations ===============
.
FileExt: .js: Applications\notepad.exe=c:\windows\system32\NOTEPAD.EXE %1 [UserChoice]
.
=============== Created Last 30 ================
.
2013-10-08 12:40:23 7328304 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{2dca960a-9eb5-4865-929b-3187f3fa8b4f}\mpengine.dll
2013-10-02 14:30:44 -------- d-----w- c:\users\mates\appdata\roaming\NuGet
2013-10-02 14:00:23 -------- d-----w- c:\users\mates\appdata\local\dftmp
2013-10-01 20:26:58 -------- d-----w- c:\programdata\Oracle
2013-09-28 14:17:00 -------- d-----w- c:\program files\PANDORA.TV
2013-09-28 14:06:07 -------- d-----w- c:\users\mates\appdata\local\Bundled software uninstaller
2013-09-28 14:02:53 -------- d-----w- c:\programdata\Wincert
2013-09-28 14:02:46 -------- d-----w- c:\users\mates\appdata\local\somotomoviestoolbar1
2013-09-28 14:01:39 -------- d-----w- c:\program files\Movies Toolbar
2013-09-28 14:01:38 -------- d-----w- c:\programdata\SafetyNut
2013-09-25 12:32:45 -------- d-----w- c:\programdata\Freemake
2013-09-25 12:32:12 -------- d-----w- c:\program files\Freemake
2013-09-25 12:23:38 -------- d-----w- c:\users\mates\appdata\roaming\com.adobe.amp
2013-09-21 19:15:52 -------- d-----w- c:\users\mates\appdata\local\Windows 7 Account Screen Editor
2013-09-18 16:44:02 -------- d-----w- c:\program files\Výukový program deskriptivní geometrie
2013-09-16 10:30:40 4806016 ----a-w- c:\program files\mozilla firefox\extensions\{82af8dca-6de9-405d-bd5e-43525bdad38a}\components\SkypeFfComponent.dll
2013-09-16 10:30:40 4806016 ----a-w- c:\program files\mozilla firefox\browser\extensions\{82af8dca-6de9-405d-bd5e-43525bdad38a}\components\SkypeFfComponent.dll
2013-09-12 21:06:57 817664 ----a-w- c:\program files\common files\microsoft shared\vgx\VGX.dll
2013-09-12 21:06:56 770648 ----a-w- c:\program files\internet explorer\iexplore.exe
2013-09-12 21:06:56 1767936 ----a-w- c:\windows\system32\wininet.dll
2013-09-11 15:13:30 -------- d-----w- c:\users\mates\appdata\local\ElevatedDiagnostics
2013-09-10 20:44:40 -------- dc-h--w- c:\programdata\{0F90C280-4264-421D-B061-171A009C45E3}
2013-09-10 20:42:26 -------- d-----w- c:\program files\common files\Digidesign
2013-09-10 20:42:04 -------- d-----w- c:\programdata\Native Instruments
2013-09-10 20:41:58 -------- dc-h--w- c:\programdata\{FB9DCDD5-FDBE-4EED-A03A-BA8F086DC950}
2013-09-10 20:41:52 -------- d-----w- c:\program files\common files\Native Instruments
2013-09-10 20:41:24 -------- dc-h--w- c:\programdata\{B5F0C192-874D-49A8-88D7-8431E3714756}
2013-09-10 20:41:18 -------- d-----w- c:\program files\Native Instruments
.
==================== Find3M ====================
.
2013-10-09 12:29:40 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-10-09 12:29:40 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-08-10 03:58:09 2876928 ----a-w- c:\windows\system32\jscript9.dll
2013-08-10 03:58:06 61440 ----a-w- c:\windows\system32\iesetup.dll
2013-08-10 03:58:06 109056 ----a-w- c:\windows\system32\iesysprep.dll
2013-08-10 03:07:50 2706432 ----a-w- c:\windows\system32\mshtml.tlb
2013-08-10 02:17:19 71680 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2013-08-08 01:03:07 2348544 ----a-w- c:\windows\system32\win32k.sys
2013-08-07 02:22:04 238872 ------w- c:\windows\system32\MpSigStub.exe
2013-08-05 01:56:47 133056 ----a-w- c:\windows\system32\drivers\ataport.sys
2013-08-02 01:50:36 169984 ----a-w- c:\windows\system32\winsrv.dll
2013-08-02 01:49:19 293376 ----a-w- c:\windows\system32\KernelBase.dll
2013-08-02 00:52:57 271360 ----a-w- c:\windows\system32\conhost.exe
2013-08-02 00:43:05 6144 ---ha-w- c:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-08-02 00:43:05 4608 ---ha-w- c:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-08-02 00:43:05 3584 ---ha-w- c:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-08-02 00:43:05 3072 ---ha-w- c:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-07-25 08:57:27 1620992 ----a-w- c:\windows\system32\WMVDECOD.DLL
2013-07-19 01:41:01 2048 ----a-w- c:\windows\system32\tzres.dll
2013-07-13 16:15:20 16400 ----a-w- c:\windows\system32\drivers\LNonPnP.sys
2013-04-27 21:40:34 112640 ----a-w- c:\program files\Updater.exe
.
============= FINISH: 21:50:42,44 ===============
Děkuji
prosím o preventivku. Log jsem musel udělat z dds, protože RSIT házel chybu.
Log:
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 10.0.9200.16686
Run by Mates at 21:48:26 on 2013-10-09
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.2047.289 [GMT 2:00]
.
AV: avast! Antivirus *Enabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Enabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\atiesrxx.exe
C:\Windows\system32\atieclxx.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Windows\system32\inetsrv\inetinfo.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Logitech\SetPointP\SetPoint.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Users\Mates\Local Settings\Apps\F.lux\flux.exe
C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe
C:\Program Files\PANDORA.TV\PanService\KMPService.exe
C:\Program Files\Movies Toolbar\SafetyNut\SafetyNutManager.exe
C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
C:\Program Files\Movies Toolbar\SafetyNut\safetynut.exe
C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe
C:\Program Files\ATI Technologies\HydraVision\HydraDM.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\PANDORA.TV\PanService\KMPProcess.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\conhost.exe
C:\Program Files\AVAST Software\Avast\setup\avast.setup
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k apphost
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k iissvcs
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k SDRSVC
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.com/
uProxyServer = 85.113.38.227:80
TB: Google Toolbar: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
TB: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:\program files\avast software\avast\aswWebRepIE.dll
TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
TB: HyperCam Toolbar: {338B4DFE-2E2C-4338-9E41-E176D497299E} - c:\program files\hypercam toolbar\tbcore3.dll
TB: Movies Toolbar (Dist. by Somoto Ltd.): {3444c3c5-6c56-4a16-a453-832b05bf6ea4} - c:\program files\movies toolbar\safetynut\srtool~1\ie\searchresultsDx.dll
uRun: [F.lux] "c:\users\mates\local settings\apps\f.lux\flux.exe" /noshow
uRun: [Facebook Update] "c:\users\mates\appdata\local\facebook\update\FacebookUpdate.exe" /c /nocrashserver
uRun: [HydraVisionDesktopManager] "c:\program files\ati technologies\hydravision\HydraDM.exe"
mRun: [avast] "c:\program files\avast software\avast\avastUI.exe" /nogui
mRun: [StartCCC] "c:\program files\ati technologies\ati.ace\core-static\CLIStart.exe" MSRun
mRun: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "c:\program files\amd avt\bin\kdbsync.exe" aml
mRun: [EvtMgr6] c:\program files\logitech\setpointp\SetPoint.exe /launchGaming
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
mPolicies-System: PromptOnSecureDesktop = dword:0
mPolicies-System: legalnoticetext = Zdar
mPolicies-System: DisableCAD = dword:1
mPolicies-System: UseOEMBackground = dword:0
mPolicies-System: DisplayLastLogonInfo = dword:0
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_17-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
TCP: NameServer = 10.0.0.138
TCP: Interfaces\{39981278-F766-4850-BBB9-1340A4BA88F3} : DHCPNameServer = 10.0.0.138
TCP: Interfaces\{39981278-F766-4850-BBB9-1340A4BA88F3}\94E6475627E65647 : DHCPNameServer = 10.0.0.138
TCP: Interfaces\{547BC9BC-AA15-456E-BBDE-2F0190A49FFE} : DHCPNameServer = 10.0.0.138
TCP: Interfaces\{6A144056-7065-4735-8B87-6A28E10806F7} : DHCPNameServer = 10.0.0.138
TCP: Interfaces\{8BE56B8C-9830-4BB2-8357-B73B1459D0CF} : DHCPNameServer = 10.0.0.138
TCP: Interfaces\{B2D0A98A-4B4F-4C51-8FD7-25EEFB6E8AF6} : DHCPNameServer = 10.0.0.138
TCP: Interfaces\{BD0A4C18-C29E-42E4-9630-603435421D7F} : DHCPNameServer = 10.0.0.138
TCP: Interfaces\{DAE43906-6992-4EFA-9340-E7687437E787} : DHCPNameServer = 10.0.0.138
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
Notify: LBTWlgn - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
AppInit_DLLs= c:\progra~2\wincert\win32c~1.dll c:\progra~1\movies~1\safety~1\SAFETY~2.DLL
SSODL: WebCheck - <orphaned>
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "c:\program files\google\chrome\application\30.0.1599.69\installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\mates\appdata\roaming\mozilla\firefox\profiles\go9w80g8.default\
FF - prefs.js: network.proxy.type - 0
FF - plugin: c:\program files\adobe\reader 11.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\google\update\1.3.21.153\npGoogleUpdate3.dll
FF - plugin: c:\program files\java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\program files\microsoft silverlight\4.0.50826.0\npctrlui.dll
FF - plugin: c:\users\mates\appdata\local\facebook\messenger\2.1.4814.0\npFbDesktopPlugin.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_8_800_168.dll
FF - plugin: c:\windows\system32\npDeployJava1.dll
FF - plugin: c:\windows\system32\npmproxy.dll
FF - ExtSQL: 2013-08-18 14:28; {75656794-AB59-4712-BFBC-5D816D56F3BC}; c:\users\mates\appdata\roaming\mozilla\firefox\profiles\go9w80g8.default\extensions\{75656794-AB59-4712-BFBC-5D816D56F3BC}
.
============= SERVICES / DRIVERS ===============
.
R0 aswRvrt;aswRvrt;c:\windows\system32\drivers\aswRvrt.sys [2013-3-5 49376]
R0 aswVmm;aswVmm;c:\windows\system32\drivers\aswVmm.sys [2013-3-5 175176]
R0 pe3agqwb;Loki Environment Driver (pe3agqwb);c:\windows\system32\drivers\pe3agqwb.sys [2008-2-25 64616]
R0 ps7agqwb;Loki Synchronization Driver (ps7agqwb);c:\windows\system32\drivers\ps7agqwb.sys [2008-2-25 68208]
R1 aswKbd;aswKbd;c:\windows\system32\drivers\aswKbd.sys [2013-4-4 21576]
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [2013-3-5 770344]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2013-3-5 369584]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\drivers\dtsoftbus01.sys [2013-3-14 242240]
R2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2012-11-16 217088]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2013-3-5 29816]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2013-3-5 66336]
R2 avast! Antivirus;avast! Antivirus;c:\program files\avast software\avast\AvastSvc.exe [2013-5-23 46808]
R2 NIHardwareService;NIHardwareService;c:\program files\common files\native instruments\hardware\NIHardwareService.exe [2010-3-25 3622912]
R2 PanService;PandoraService;c:\program files\pandora.tv\panservice\KMPService.exe [2013-9-28 1922600]
R2 SafetyNutManager;SafetyNut Manager;c:\program files\movies toolbar\safetynut\SafetyNutManager.exe [2013-9-28 3394056]
R2 Skype C2C Service;Skype C2C Service;c:\programdata\skype\toolbars\skype c2c service\c2c_service.exe [2013-9-16 3273088]
R2 TeamViewer8;TeamViewer 8;c:\program files\teamviewer\version8\TeamViewer_Service.exe [2013-6-15 4150112]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW73.sys [2012-2-23 86544]
R3 netr73;RT73 USB - ovladač karty pro bezdrátovou síť LAN pro systém Windows Vista;c:\windows\system32\drivers\netr73.sys [2009-6-10 545792]
R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\drivers\Rt86win7.sys [2009-6-10 139776]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2012-7-9 104912]
S2 MsDepSvc;Služba agenta pro nasazení webu;c:\program files\iis\microsoft web deploy\MsDepSvc.exe [2013-6-10 84624]
S2 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2013-6-21 162408]
S3 avast! Mail Scanner;avast! Mail Scanner;"c:\program files\alwil software\avast4\ashmaisv.exe" /service --> c:\program files\alwil software\avast4\ashMaiSv.exe [?]
S3 avast! Web Scanner;avast! Web Scanner;"c:\program files\alwil software\avast4\ashwebsv.exe" /service --> c:\program files\alwil software\avast4\ashWebSv.exe [?]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-14 229888]
S3 SwitchBoard;SwitchBoard;c:\program files\common files\adobe\switchboard\SwitchBoard.exe [2010-2-19 517096]
S3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\TsUsbFlt.sys [2010-11-20 52224]
S3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264]
S3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\wat\WatAdminSvc.exe [2013-3-6 1343400]
S3 WinRing0_1_2_0;WinRing0_1_2_0;c:\program files\razer\razer game booster\driver\WinRing0.sys [2013-8-14 14416]
S4 MSSQLServerADHelper100;SQL Active Directory Helper Service;c:\program files\microsoft sql server\100\shared\sqladhlp.exe [2009-7-23 47128]
S4 pr2agqwb;Loki Drivers Auto Removal (pr2agqwb);c:\windows\system32\pr2agqwb.exe svc --> c:\windows\system32\pr2agqwb.exe svc [?]
S4 RsFx0103;RsFx0103 Driver;c:\windows\system32\drivers\RsFx0103.sys [2009-3-30 239336]
S4 SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS);c:\program files\microsoft sql server\mssql10.sqlexpress\mssql\binn\SQLAGENT.EXE [2009-3-30 366936]
.
=============== File Associations ===============
.
FileExt: .js: Applications\notepad.exe=c:\windows\system32\NOTEPAD.EXE %1 [UserChoice]
.
=============== Created Last 30 ================
.
2013-10-08 12:40:23 7328304 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{2dca960a-9eb5-4865-929b-3187f3fa8b4f}\mpengine.dll
2013-10-02 14:30:44 -------- d-----w- c:\users\mates\appdata\roaming\NuGet
2013-10-02 14:00:23 -------- d-----w- c:\users\mates\appdata\local\dftmp
2013-10-01 20:26:58 -------- d-----w- c:\programdata\Oracle
2013-09-28 14:17:00 -------- d-----w- c:\program files\PANDORA.TV
2013-09-28 14:06:07 -------- d-----w- c:\users\mates\appdata\local\Bundled software uninstaller
2013-09-28 14:02:53 -------- d-----w- c:\programdata\Wincert
2013-09-28 14:02:46 -------- d-----w- c:\users\mates\appdata\local\somotomoviestoolbar1
2013-09-28 14:01:39 -------- d-----w- c:\program files\Movies Toolbar
2013-09-28 14:01:38 -------- d-----w- c:\programdata\SafetyNut
2013-09-25 12:32:45 -------- d-----w- c:\programdata\Freemake
2013-09-25 12:32:12 -------- d-----w- c:\program files\Freemake
2013-09-25 12:23:38 -------- d-----w- c:\users\mates\appdata\roaming\com.adobe.amp
2013-09-21 19:15:52 -------- d-----w- c:\users\mates\appdata\local\Windows 7 Account Screen Editor
2013-09-18 16:44:02 -------- d-----w- c:\program files\Výukový program deskriptivní geometrie
2013-09-16 10:30:40 4806016 ----a-w- c:\program files\mozilla firefox\extensions\{82af8dca-6de9-405d-bd5e-43525bdad38a}\components\SkypeFfComponent.dll
2013-09-16 10:30:40 4806016 ----a-w- c:\program files\mozilla firefox\browser\extensions\{82af8dca-6de9-405d-bd5e-43525bdad38a}\components\SkypeFfComponent.dll
2013-09-12 21:06:57 817664 ----a-w- c:\program files\common files\microsoft shared\vgx\VGX.dll
2013-09-12 21:06:56 770648 ----a-w- c:\program files\internet explorer\iexplore.exe
2013-09-12 21:06:56 1767936 ----a-w- c:\windows\system32\wininet.dll
2013-09-11 15:13:30 -------- d-----w- c:\users\mates\appdata\local\ElevatedDiagnostics
2013-09-10 20:44:40 -------- dc-h--w- c:\programdata\{0F90C280-4264-421D-B061-171A009C45E3}
2013-09-10 20:42:26 -------- d-----w- c:\program files\common files\Digidesign
2013-09-10 20:42:04 -------- d-----w- c:\programdata\Native Instruments
2013-09-10 20:41:58 -------- dc-h--w- c:\programdata\{FB9DCDD5-FDBE-4EED-A03A-BA8F086DC950}
2013-09-10 20:41:52 -------- d-----w- c:\program files\common files\Native Instruments
2013-09-10 20:41:24 -------- dc-h--w- c:\programdata\{B5F0C192-874D-49A8-88D7-8431E3714756}
2013-09-10 20:41:18 -------- d-----w- c:\program files\Native Instruments
.
==================== Find3M ====================
.
2013-10-09 12:29:40 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-10-09 12:29:40 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-08-10 03:58:09 2876928 ----a-w- c:\windows\system32\jscript9.dll
2013-08-10 03:58:06 61440 ----a-w- c:\windows\system32\iesetup.dll
2013-08-10 03:58:06 109056 ----a-w- c:\windows\system32\iesysprep.dll
2013-08-10 03:07:50 2706432 ----a-w- c:\windows\system32\mshtml.tlb
2013-08-10 02:17:19 71680 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2013-08-08 01:03:07 2348544 ----a-w- c:\windows\system32\win32k.sys
2013-08-07 02:22:04 238872 ------w- c:\windows\system32\MpSigStub.exe
2013-08-05 01:56:47 133056 ----a-w- c:\windows\system32\drivers\ataport.sys
2013-08-02 01:50:36 169984 ----a-w- c:\windows\system32\winsrv.dll
2013-08-02 01:49:19 293376 ----a-w- c:\windows\system32\KernelBase.dll
2013-08-02 00:52:57 271360 ----a-w- c:\windows\system32\conhost.exe
2013-08-02 00:43:05 6144 ---ha-w- c:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-08-02 00:43:05 4608 ---ha-w- c:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-08-02 00:43:05 3584 ---ha-w- c:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-08-02 00:43:05 3072 ---ha-w- c:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-07-25 08:57:27 1620992 ----a-w- c:\windows\system32\WMVDECOD.DLL
2013-07-19 01:41:01 2048 ----a-w- c:\windows\system32\tzres.dll
2013-07-13 16:15:20 16400 ----a-w- c:\windows\system32\drivers\LNonPnP.sys
2013-04-27 21:40:34 112640 ----a-w- c:\program files\Updater.exe
.
============= FINISH: 21:50:42,44 ===============
Děkuji