Stránka 1 z 1

prosím o pomoc s vyskakováním reklamních oken

Napsal: 10 bře 2014 06:15
od loccoCZ
Dobrý den,
včera mi začaly v náhodných intervalech (ale často) vyskakovat při běžném brouzdání samostatná reklamní okna.
Můžete mi s tím, prosím, poradit ? Přikládám logy z FRST
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 09-03-2014
Ran by HoP (administrator) on GRAYLATITUDE on 10-03-2014 06:17:20
Running from C:\Users\HoP\Desktop
Windows 7 Professional Service Pack 1 (X64) OS Language: Czech
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Microsoft Corporation) c:\Program Files\Microsoft Security Client\MsMpEng.exe
(Broadcom Corporation) C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostControlService.exe
(Broadcom Corporation) C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostStorageService.exe
(Wave Systems Corp.) C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Trusted Drive Manager\TdmService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
() C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\EMBASSY Client Core\EmbassyServer.exe
(EMC Corporation) C:\Program Files (x86)\EMC Captiva\Captiva Cloud Runtime\Emc.Captiva.WebCaptureService.exe
(Freemake) C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
(UPEK Inc.) C:\Program Files\Common Files\SPBA\upeksvr.exe
(IBM Corp) C:\Program Files (x86)\IBM\Lotus\Notes\SUService.exe
(IBM) C:\Program Files (x86)\IBM\Lotus\Notes\nsd.exe
(O2Micro International) C:\Windows\system32\DRIVERS\o2flash.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe
(Wave Systems Corp.) C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Authentication Manager\WaveAMService.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(VMware, Inc.) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe
(Microsoft Corporation) c:\Program Files\Microsoft Security Client\NisSrv.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Wave Systems Corp.) C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Trusted Drive Manager\TdmNotify.exe
(EMC Corporation) C:\Program Files (x86)\EMC Captiva\Captiva Cloud Runtime\Emc.Captiva.WebToolkitHost.exe
() C:\Program Files (x86)\OSCAR Editor X7\OscarEditor.exe
(OLYMPUS IMAGING CORP.) C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OV3Monitor.exe
(Nokia) C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe
(Gemfor s.r.o.) C:\Program Files (x86)\T-Mobile\T-Mobile Internet Manager\Manager.exe
(Nokia) C:\Program Files (x86)\Nokia\PC Internet Access\NPCIA.exe
(PFU LIMITED) C:\Windows\twain_32\fjscan32\ERG\FTErGuid.exe
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\rusb3mon.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Suunto Oy) C:\Program Files (x86)\Suunto\Moveslink for Movestick Mini\Moveslink.exe
(PFU LIMITED) C:\Windows\twain_32\fjscan32\SOP\FtLnSOP.exe
(PFU LIMITED) C:\Windows\PIXTRAN\fujitsu\FiWiaChecker.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Microsoft Corporation) C:\Windows\ehome\ehRecvr.exe
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclUSBSrv64.exe
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
() C:\Program Files (x86)\Pirrit\AutoUpdater.exe
() C:\Users\HoP\AppData\Local\PirritSuggestor\PirritService.exe
() C:\Program Files (x86)\WinRST\WinRST.exe
(Microsoft Corporation) C:\Windows\ehome\mcGlidHost.exe
() C:\Users\HoP\AppData\Local\PirritSuggestor\PirritDesktop.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
(forum.viry.cz) C:\Users\HoP\Desktop\FRSTLauncher.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [NVHotkey] - C:\Windows\system32\nvHotkey.dll [312936 2011-06-05] (NVIDIA Corporation)
HKLM\...\Run: [nwiz] - C:\Program Files\NVIDIA Corporation\nView\nwiz.exe [1692264 2011-05-05] ()
HKLM\...\Run: [MSC] - C:\Program Files\Microsoft Security Client\msseces.exe [1266912 2013-10-23] (Microsoft Corporation)
HKLM\...\Run: [TdmNotify] - C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Trusted Drive Manager\TdmNotify.exe [381296 2011-12-08] (Wave Systems Corp.)
HKLM-x32\...\Run: [RUSB3MON] - C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\rusb3mon.exe [115048 2011-09-20] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [926896 2012-09-23] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [FtLnSOP_setup] - C:\Windows\Twain_32\Fjscan32\SOP\FtLnSOP.exe [233472 2012-04-05] (PFU LIMITED)
HKLM-x32\...\Run: [“FjISIS WIA Service Checker] - C:\Windows\pixtran\fujitsu\FiWiaChecker.exe [86016 2009-10-21] (PFU LIMITED)
HKLM-x32\...\Run: [OV3_Monitor] - C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\FirstStart.exe [55656 2013-01-25] (OLYMPUS IMAGING CORP.)
HKLM-x32\...\Run: [NSU_agent] - C:\Program Files (x86)\Nokia\Nokia Software Updater\nsu3ui_agent.exe [190768 2012-02-28] ()
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\RunOnce: [Malwarebytes Anti-Malware] - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent [532040 2013-04-04] (Malwarebytes Corporation)
Winlogon\Notify\spba: C:\Program Files\Common Files\SPBA\homefus2.dll (UPEK Inc.)
HKU\S-1-5-21-3322501825-3049014203-3362302476-1000\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3673728 2012-11-06] (DT Soft Ltd)
HKU\S-1-5-21-3322501825-3049014203-3362302476-1000\...\Run: [OscarEditor] - C:\Program Files (x86)\OSCAR Editor X7\OscarEditor.exe [3340288 2012-03-20] ()
HKU\S-1-5-21-3322501825-3049014203-3362302476-1000\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20584608 2013-11-14] (Skype Technologies S.A.)
HKU\S-1-5-21-3322501825-3049014203-3362302476-1000\...\Run: [supertintin_skype] - [X]
HKU\S-1-5-21-3322501825-3049014203-3362302476-1000\...\Run: [OV3_Monitor] - C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OV3Monitor.exe [420200 2013-01-25] (OLYMPUS IMAGING CORP.)
HKU\S-1-5-21-3322501825-3049014203-3362302476-1000\...\Run: [PC Suite Tray] - C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [1516632 2012-06-26] (Nokia)
HKU\S-1-5-21-3322501825-3049014203-3362302476-1000\...\Run: [T-Mobile CManager] - C:\Program Files (x86)\T-Mobile\T-Mobile Internet Manager\Manager.exe [2166552 2013-10-31] (Gemfor s.r.o.)
HKU\S-1-5-21-3322501825-3049014203-3362302476-1000\...\Run: [NokiaPCInternetAccess] - C:\Program Files (x86)\Nokia\PC Internet Access\NPCIA.exe [651264 2009-05-26] (Nokia)
HKU\S-1-5-21-3322501825-3049014203-3362302476-1000\...\Run: [Dark] - C:\Program Files (x86)\Microsoft\DarkSetup\Dark.exe [88576 2009-11-25] (Codegeeks)
HKU\S-1-5-21-3322501825-3049014203-3362302476-1000\...\Run: [PicPick Start] - C:\Program Files (x86)\PicPick\picpick.exe [13323608 2014-02-12] (NTeWORKS)
HKU\S-1-5-21-3322501825-3049014203-3362302476-1000\...\MountPoints2: {f59d3bdf-93c0-11e2-947c-60d819f83ef5} - D:\NokiaPCIA_Autorun.exe
Lsa: [Authentication Packages] msv1_0 wvauth

==================== Internet (Whitelisted) ====================

ProxyEnable: Internet Explorer proxy is enabled.
ProxyServer: http=http://127.0.0.1:9880
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dell.com
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.com
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: IEExtension.Extension - {d40c654d-7c51-4eb3-95b2-1e23905c2a2d} - C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Handler: ipp\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - No File
Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: http\oledb - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: https\oledb - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: ipp\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138

FireFox:
========
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @canon.com/EPPEX - C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.)
FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\HoP\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Extension: Pirrit Suggestor - C:\Users\HoP\AppData\Roaming\Mozilla\Firefox\profiles\extensions\suggestor@suggestor.pirrit.com.xpi [2014-03-09]

Chrome:
=======
CHR HomePage: hxxp://www1.euro.dell.com/content/default.aspx?c=cz&l=cs&s=bsd
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\pdf.dll ()
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll No File
CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
CHR Extension: (Disk Google) - C:\Users\HoP\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2012-12-23]
CHR Extension: (YouTube) - C:\Users\HoP\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2012-12-23]
CHR Extension: (Vyhledávání Google) - C:\Users\HoP\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-12-23]
CHR Extension: (Video Viewer) - C:\Users\HoP\AppData\Local\Google\Chrome\User Data\Default\Extensions\dejgnnjohnpljeijfendiiafgpaenbip [2012-12-23]
CHR Extension: (Tenis) - C:\Users\HoP\AppData\Local\Google\Chrome\User Data\Default\Extensions\ekkomjfglgnfeeachhdckcbgjhfiahco [2012-12-23]
CHR Extension: (Hit The Jackpot 2) - C:\Users\HoP\AppData\Local\Google\Chrome\User Data\Default\Extensions\fgjacmakiifbpglpcogkbenamalgaoei [2012-12-23]
CHR Extension: (Apple Shooter) - C:\Users\HoP\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbcjjgkapdombcilbfbjapkbpnocbkcf [2012-12-23]
CHR Extension: (Freemake Video Converter) - C:\Users\HoP\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj [2012-12-25]
CHR Extension: (Peněženka Google) - C:\Users\HoP\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-24]
CHR Extension: (Late Night) - C:\Users\HoP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgbdhkpacgdhfabeceekiafonfkipohm [2012-12-23]
CHR Extension: (Gmail) - C:\Users\HoP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-12-23]
CHR HKLM-x32\...\Chrome\Extension: [jbolfgndggfhhpbnkgnpjkfhinclbigj] - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Chrome\Freemake.Plugin.Chrome.crx [2012-12-25]

==================== Services (Whitelisted) =================

R2 EmbassyService; C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\EMBASSY Client Core\EmbassyServer.exe [218504 2012-01-17] ()
R2 Emc.Captiva.WebCaptureService; C:\Program Files (x86)\EMC Captiva\Captiva Cloud Runtime\Emc.Captiva.WebCaptureService.exe [39936 2012-04-04] (EMC Corporation)
R2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [100864 2012-09-07] (Freemake)
R2 LNSUSvc; C:\Program Files (x86)\IBM\Lotus\Notes\SUService.exe [189832 2011-09-16] (IBM Corp)
R2 Lotus Notes Diagnostics; C:\Program Files (x86)\IBM\Lotus\Notes\nsd.exe [4453768 2011-09-16] (IBM)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 MbnExt; C:\Program Files (x86)\T-Mobile\T-Mobile Internet Manager\MbnExt.dll [417128 2013-12-02] (Gemfor s.r.o.)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2013-10-23] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [348376 2013-10-23] (Microsoft Corporation)
R2 PirritDesktop; C:\Users\HoP\AppData\Local\PirritSuggestor\PirritService.exe [52568 2014-02-20] ()
R2 PirritUpdater; C:\Program Files (x86)\Pirrit\AutoUpdater.exe [59904 2014-02-20] ()
S2 tcsd_win32.exe; C:\Program Files (x86)\NTRU Cryptosystems\NTRU TCG Software Stack\bin\tcsd_win32.exe [1637888 2011-10-08] ()
R2 Wave Authentication Manager Service; C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Authentication Manager\WaveAMService.exe [1679872 2012-01-05] (Wave Systems Corp.)
R2 WinRST; C:\Program Files (x86)\WinRST\WinRST.exe [59904 2014-02-26] ()
S3 WvPCR; C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Common\WvPCR.exe [198144 2012-01-16] (Wave Systems Corp.)

==================== Drivers (Whitelisted) ====================

R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2012-12-24] (DT Soft Ltd)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [248240 2013-09-27] (Microsoft Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [134944 2013-09-27] (Microsoft Corporation)
R3 rusb3hub; C:\Windows\System32\DRIVERS\rusb3hub.sys [101376 2011-11-21] (Renesas Electronics Corporation)
R3 rusb3xhc; C:\Windows\System32\DRIVERS\rusb3xhc.sys [217088 2011-11-21] (Renesas Electronics Corporation)
R2 VMparport; C:\Windows\system32\drivers\VMparport.sys [31384 2012-11-01] (VMware, Inc.)
R0 vsock; C:\Windows\System32\drivers\vsock.sys [70296 2012-10-24] (VMware, Inc.)

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-03-10 06:12 - 2014-03-10 06:17 - 00018260 _____ () C:\Users\HoP\Desktop\FRST.txt
2014-03-10 06:11 - 2014-03-10 06:17 - 00000000 ____D () C:\FRST
2014-03-10 06:09 - 2014-03-10 06:10 - 00112640 _____ (forum.viry.cz) C:\Users\HoP\Desktop\FRSTLauncher.exe
2014-03-10 06:09 - 2014-03-10 06:09 - 02157056 _____ (Farbar) C:\Users\HoP\Desktop\FRST64.exe
2014-03-10 06:08 - 2014-03-10 06:08 - 00000000 ____D () C:\Users\HoP\AppData\Local\Codegeeks
2014-03-10 05:46 - 2014-03-10 05:46 - 00001011 _____ () C:\Users\HoP\Desktop\CCleaner.lnk
2014-03-10 05:46 - 2014-03-10 05:46 - 00000000 ____D () C:\Users\HoP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-03-10 05:46 - 2014-03-10 05:46 - 00000000 ____D () C:\Program Files (x86)\CCleaner
2014-03-10 05:45 - 2014-03-10 05:45 - 01187896 _____ (Piriform Ltd) C:\Users\HoP\Downloads\ccleaner.exe
2014-03-10 05:09 - 2014-03-10 05:09 - 00001113 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-03-10 05:09 - 2014-03-10 05:09 - 00000000 ____D () C:\Users\HoP\AppData\Roaming\Malwarebytes
2014-03-10 05:09 - 2014-03-10 05:09 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-03-10 05:09 - 2014-03-10 05:09 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-03-10 05:09 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-03-09 15:05 - 2014-03-09 15:05 - 00000000 ___HD () C:\Users\HoP\Documents\Freemake_do_not_remove_this_folder635299743350079918
2014-03-09 14:38 - 2014-03-02 12:03 - 00000218 _____ () C:\Users\HoP\AppData\Local\recently-used.xbel
2014-03-09 13:44 - 2014-03-09 13:44 - 00000000 ___HD () C:\Users\HoP\Documents\Freemake_do_not_remove_this_folder635299694568571413
2014-03-09 12:35 - 2014-03-10 00:34 - 00000000 ____D () C:\Users\HoP\Downloads\capture
2014-03-09 12:33 - 2014-03-09 12:33 - 00000000 ____D () C:\Users\HoP\AppData\Roaming\Pirrit
2014-03-09 12:33 - 2014-03-09 12:33 - 00000000 ____D () C:\Users\HoP\AppData\Roaming\PicPick
2014-03-09 12:33 - 2014-03-09 12:33 - 00000000 ____D () C:\Users\HoP\AppData\Roaming\Mozilla
2014-03-09 12:33 - 2014-03-09 12:33 - 00000000 ____D () C:\Users\HoP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PicPick
2014-03-09 12:33 - 2014-03-09 12:33 - 00000000 ____D () C:\Users\HoP\AppData\Local\WinRST
2014-03-09 12:33 - 2014-03-09 12:33 - 00000000 ____D () C:\Users\HoP\AppData\Local\PirritSuggestor
2014-03-09 12:33 - 2014-03-09 12:33 - 00000000 ____D () C:\ProgramData\PicPick
2014-03-09 12:33 - 2014-03-09 12:33 - 00000000 ____D () C:\Program Files (x86)\WinRST
2014-03-09 12:33 - 2014-03-09 12:33 - 00000000 ____D () C:\Program Files (x86)\Pirrit
2014-03-09 12:31 - 2014-03-09 12:33 - 00000000 ____D () C:\Program Files (x86)\PicPick
2014-03-08 10:15 - 2014-03-08 10:21 - 00001300 _____ () C:\Users\HoP\Desktop\SnippingTool.lnk
2014-03-06 02:08 - 2014-03-06 02:09 - 00003037 _____ () C:\Users\HoP\Desktop\Dark.exe.lnk
2014-03-05 17:31 - 2014-03-05 17:31 - 00002399 _____ () C:\Users\HoP\Downloads\patch.diff
2014-03-03 23:50 - 2014-03-03 23:50 - 01247709 _____ () C:\Users\HoP\Desktop\epodatel.zip
2014-03-03 21:09 - 2014-03-03 21:30 - 201681401 _____ () C:\Users\HoP\Downloads\brusinky.zip
2014-03-02 11:59 - 2014-03-09 14:40 - 00000000 ____D () C:\Users\HoP\AppData\Local\gtk-2.0
2014-03-02 11:54 - 2014-03-02 11:54 - 00000000 ____D () C:\Program Files (x86)\GtkSharp
2014-03-02 11:53 - 2014-03-02 11:53 - 00716449 _____ () C:\Windows\unins000.exe
2014-03-02 11:52 - 2014-03-02 11:52 - 00000000 ____D () C:\Users\HoP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Suunto
2014-02-22 22:00 - 2014-02-22 22:00 - 00032768 _____ () C:\Users\HoP\Downloads\rozpis_2013__2014.xls
2014-02-17 22:54 - 2014-02-17 22:54 - 00002942 _____ () C:\Windows\System32\Tasks\{4DADE1AC-3C53-42B8-A946-C8B5D94C6EA1}
2014-02-17 22:53 - 2014-02-17 22:53 - 00002942 _____ () C:\Windows\System32\Tasks\{DA3C0E45-1D7D-47CC-A537-690E40D1C768}
2014-02-17 22:53 - 2014-02-17 22:53 - 00002942 _____ () C:\Windows\System32\Tasks\{9B6A9F4B-6228-4451-8140-77B3596335DC}
2014-02-12 23:39 - 2014-02-12 23:45 - 59084953 _____ () C:\Users\HoP\Downloads\L.B.rar
2014-02-09 12:17 - 2014-02-09 12:17 - 00000000 ___HD () C:\Users\HoP\Documents\Freemake_do_not_remove_this_folder635275450564607192
2014-02-09 11:09 - 2014-02-09 11:09 - 00000000 ___HD () C:\Users\HoP\Documents\Freemake_do_not_remove_this_folder635275409950959105

==================== One Month Modified Files and Folders =======

2014-03-10 06:17 - 2014-03-10 06:12 - 00018260 _____ () C:\Users\HoP\Desktop\FRST.txt
2014-03-10 06:17 - 2014-03-10 06:11 - 00000000 ____D () C:\FRST
2014-03-10 06:16 - 2012-12-23 16:51 - 00000946 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-03-10 06:10 - 2014-03-10 06:09 - 00112640 _____ (forum.viry.cz) C:\Users\HoP\Desktop\FRSTLauncher.exe
2014-03-10 06:09 - 2014-03-10 06:09 - 02157056 _____ (Farbar) C:\Users\HoP\Desktop\FRST64.exe
2014-03-10 06:08 - 2014-03-10 06:08 - 00000000 ____D () C:\Users\HoP\AppData\Local\Codegeeks
2014-03-10 06:08 - 2012-12-24 16:55 - 00000000 ____D () C:\Users\HoP\AppData\Local\VMware
2014-03-10 06:08 - 2012-12-24 15:34 - 00000000 ____D () C:\Users\HoP\AppData\Roaming\Skype
2014-03-10 05:48 - 2012-12-25 10:35 - 00000000 ____D () C:\Windows\Minidump
2014-03-10 05:48 - 2012-12-24 12:58 - 00000000 ____D () C:\Users\HoP\Downloads\install
2014-03-10 05:46 - 2014-03-10 05:46 - 00001011 _____ () C:\Users\HoP\Desktop\CCleaner.lnk
2014-03-10 05:46 - 2014-03-10 05:46 - 00000000 ____D () C:\Users\HoP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-03-10 05:46 - 2014-03-10 05:46 - 00000000 ____D () C:\Program Files (x86)\CCleaner
2014-03-10 05:45 - 2014-03-10 05:45 - 01187896 _____ (Piriform Ltd) C:\Users\HoP\Downloads\ccleaner.exe
2014-03-10 05:16 - 2012-12-24 12:57 - 00000000 ____D () C:\ProgramData\VMware
2014-03-10 05:09 - 2014-03-10 05:09 - 00001113 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-03-10 05:09 - 2014-03-10 05:09 - 00000000 ____D () C:\Users\HoP\AppData\Roaming\Malwarebytes
2014-03-10 05:09 - 2014-03-10 05:09 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-03-10 05:09 - 2014-03-10 05:09 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-03-10 04:33 - 2012-12-24 00:41 - 00669340 _____ () C:\Windows\system32\perfh005.dat
2014-03-10 04:33 - 2012-12-24 00:41 - 00141530 _____ () C:\Windows\system32\perfc005.dat
2014-03-10 04:33 - 2009-07-14 06:13 - 01585528 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-03-10 04:13 - 2012-12-24 16:55 - 00000000 ____D () C:\Users\HoP\AppData\Roaming\VMware
2014-03-10 03:16 - 2012-12-23 15:46 - 01632071 ____N () C:\Windows\WindowsUpdate.log
2014-03-10 00:34 - 2014-03-09 12:35 - 00000000 ____D () C:\Users\HoP\Downloads\capture
2014-03-09 20:16 - 2012-12-23 16:51 - 00000942 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-03-09 15:05 - 2014-03-09 15:05 - 00000000 ___HD () C:\Users\HoP\Documents\Freemake_do_not_remove_this_folder635299743350079918
2014-03-09 14:40 - 2014-03-02 11:59 - 00000000 ____D () C:\Users\HoP\AppData\Local\gtk-2.0
2014-03-09 14:40 - 2012-12-23 15:46 - 00000000 ____D () C:\Users\HoP
2014-03-09 13:44 - 2014-03-09 13:44 - 00000000 ___HD () C:\Users\HoP\Documents\Freemake_do_not_remove_this_folder635299694568571413
2014-03-09 12:33 - 2014-03-09 12:33 - 00000000 ____D () C:\Users\HoP\AppData\Roaming\Pirrit
2014-03-09 12:33 - 2014-03-09 12:33 - 00000000 ____D () C:\Users\HoP\AppData\Roaming\PicPick
2014-03-09 12:33 - 2014-03-09 12:33 - 00000000 ____D () C:\Users\HoP\AppData\Roaming\Mozilla
2014-03-09 12:33 - 2014-03-09 12:33 - 00000000 ____D () C:\Users\HoP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PicPick
2014-03-09 12:33 - 2014-03-09 12:33 - 00000000 ____D () C:\Users\HoP\AppData\Local\WinRST
2014-03-09 12:33 - 2014-03-09 12:33 - 00000000 ____D () C:\Users\HoP\AppData\Local\PirritSuggestor
2014-03-09 12:33 - 2014-03-09 12:33 - 00000000 ____D () C:\ProgramData\PicPick
2014-03-09 12:33 - 2014-03-09 12:33 - 00000000 ____D () C:\Program Files (x86)\WinRST
2014-03-09 12:33 - 2014-03-09 12:33 - 00000000 ____D () C:\Program Files (x86)\Pirrit
2014-03-09 12:33 - 2014-03-09 12:31 - 00000000 ____D () C:\Program Files (x86)\PicPick
2014-03-09 12:25 - 2012-12-24 12:21 - 00000000 ____D () C:\Users\HoP\AppData\Roaming\IrfanView
2014-03-09 12:04 - 2013-03-09 09:06 - 00000000 ____D () C:\Portable
2014-03-08 10:21 - 2014-03-08 10:15 - 00001300 _____ () C:\Users\HoP\Desktop\SnippingTool.lnk
2014-03-07 14:35 - 2012-12-23 16:50 - 00000000 ____D () C:\Users\HoP\AppData\Local\Deployment
2014-03-06 02:09 - 2014-03-06 02:08 - 00003037 _____ () C:\Users\HoP\Desktop\Dark.exe.lnk
2014-03-05 17:31 - 2014-03-05 17:31 - 00002399 _____ () C:\Users\HoP\Downloads\patch.diff
2014-03-05 13:38 - 2009-07-14 05:45 - 00021312 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-03-05 13:38 - 2009-07-14 05:45 - 00021312 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-03-04 08:39 - 2013-10-31 22:54 - 01355926 _____ () C:\Users\HoP\Downloads\AA_v3.3.log
2014-03-03 23:50 - 2014-03-03 23:50 - 01247709 _____ () C:\Users\HoP\Desktop\epodatel.zip
2014-03-03 23:48 - 2012-12-25 13:28 - 00000000 ____D () C:\Users\HoP\Downloads\obr
2014-03-03 21:30 - 2014-03-03 21:09 - 201681401 _____ () C:\Users\HoP\Downloads\brusinky.zip
2014-03-02 21:50 - 2012-12-24 03:17 - 00043380 _____ () C:\SUService.log
2014-03-02 21:50 - 2012-12-23 16:16 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-03-02 21:50 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-03-02 12:03 - 2014-03-09 14:38 - 00000218 _____ () C:\Users\HoP\AppData\Local\recently-used.xbel
2014-03-02 11:54 - 2014-03-02 11:54 - 00000000 ____D () C:\Program Files (x86)\GtkSharp
2014-03-02 11:53 - 2014-03-02 11:53 - 00716449 _____ () C:\Windows\unins000.exe
2014-03-02 11:53 - 2013-05-11 13:46 - 00009572 _____ () C:\Windows\unins000.dat
2014-03-02 11:52 - 2014-03-02 11:52 - 00000000 ____D () C:\Users\HoP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Suunto
2014-03-02 11:52 - 2013-05-11 13:53 - 00000294 _____ () C:\Users\HoP\Desktop\Suunto DM4.appref-ms
2014-02-22 22:00 - 2014-02-22 22:00 - 00032768 _____ () C:\Users\HoP\Downloads\rozpis_2013__2014.xls
2014-02-17 22:54 - 2014-02-17 22:54 - 00002942 _____ () C:\Windows\System32\Tasks\{4DADE1AC-3C53-42B8-A946-C8B5D94C6EA1}
2014-02-17 22:53 - 2014-02-17 22:53 - 00002942 _____ () C:\Windows\System32\Tasks\{DA3C0E45-1D7D-47CC-A537-690E40D1C768}
2014-02-17 22:53 - 2014-02-17 22:53 - 00002942 _____ () C:\Windows\System32\Tasks\{9B6A9F4B-6228-4451-8140-77B3596335DC}
2014-02-17 11:42 - 2013-01-29 00:32 - 00000000 ____D () C:\Users\HoP\Downloads\source
2014-02-12 23:45 - 2014-02-12 23:39 - 59084953 _____ () C:\Users\HoP\Downloads\L.B.rar
2014-02-11 20:11 - 2012-12-23 16:51 - 00003942 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-02-11 20:11 - 2012-12-23 16:51 - 00003690 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-02-09 12:17 - 2014-02-09 12:17 - 00000000 ___HD () C:\Users\HoP\Documents\Freemake_do_not_remove_this_folder635275450564607192
2014-02-09 11:09 - 2014-02-09 11:09 - 00000000 ___HD () C:\Users\HoP\Documents\Freemake_do_not_remove_this_folder635275409950959105

Some content of TEMP:
====================
C:\Users\HoP\AppData\Local\Temp\exe2pin.exe
C:\Users\HoP\AppData\Local\Temp\FreemakeVideoConverter_3.2.1.0.exe
C:\Users\HoP\AppData\Local\Temp\KMP_3.6.0.87.exe
C:\Users\HoP\AppData\Local\Temp\PIPInstaller_PTV_.exe
C:\Users\HoP\AppData\Local\Temp\SkypeSetup.exe
C:\Users\HoP\AppData\Local\Temp\Update.exe
C:\Users\HoP\AppData\Local\Temp\_isBA1F.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2014-03-10 01:14




===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: () (Fixed) (Total:167.58 GB) (Free:49.32 GB) NTFS
Drive e: (Rezervováno systémem) (Fixed) (Total:0.1 GB) (Free:0.03 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive f: () (Fixed) (Total:465.66 GB) (Free:19.15 GB) NTFS

Available physical RAM: 5773.54 MB
Total physical RAM: 8149.02 MB
Percentage of memory in use: 29%

==================== MBR and Partition Table ==================

Disk: 0 (MBR Code: Windows 7 or 8) (Size: 168 GB) (Disk ID: BC4AA3F1)
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 073A33B3)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=466 GB) - (Type=07 NTFS)

==================== Scheduled Tasks (whitelisted) ==================

Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: Microsoft Security Essentials (Enabled - Up to date) {641105E6-77ED-3F35-A304-765193BCB75F}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Microsoft Security Essentials (Enabled - Up to date) {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\HoP\Desktop" je 699 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================

Re: prosím o pomoc s vyskakováním reklamních oken

Napsal: 10 bře 2014 17:19
od vyosek
Zdravim :)

:arrow: Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
  • Ulozte nejlepe na plochu
  • Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
  • Probehne vytvoreni zalohy a nasledne prohledavani
  • Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte
:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte

Re: prosím o pomoc s vyskakováním reklamních oken

Napsal: 10 bře 2014 17:53
od loccoCZ
Bohužel jsem vlastní neopatrností ztratil oba logy a při druhém průchodu je vše již krásně čisté.
Junkware nalezl pouze složku programu Ammyy (který občas používám) a smazal ji
AdvCleaner toho smazal víc, vše spojené s Pirrit - po paměti to byly následující tři + ještě jeden, který v původně zaslaném logu ani nevidím
() C:\Program Files (x86)\Pirrit\AutoUpdater.exe
() C:\Users\HoP\AppData\Local\PirritSuggestor\PirritService.exe
() C:\Users\HoP\AppData\Local\PirritSuggestor\PirritDesktop.exe


zasílám alespoň výsledek druhého běhu a opravdu moc děkuji za pomoc, vše vypadá ok

# AdwCleaner v3.020 - Report created 10/03/2014 at 17:52:21
# Updated 27/02/2014 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (64 bits)
# Username : HoP - GRAYLATITUDE
# Running from : C:\Users\HoP\Desktop\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.16428
-\\ Mozilla Firefox v
-\\ Google Chrome v33.0.1750.146
[ File : C:\Users\HoP\AppData\Local\Google\Chrome\User Data\Default\preferences ]

*************************
AdwCleaner[R0].txt - [1916 octets] - [10/03/2014 15:12:58]
AdwCleaner[R1].txt - [904 octets] - [10/03/2014 17:51:33]
AdwCleaner[S0].txt - [1944 octets] - [10/03/2014 15:13:41]
AdwCleaner[S1].txt - [826 octets] - [10/03/2014 17:52:21]

########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [885 octets] ##########

Re: prosím o pomoc s vyskakováním reklamních oken

Napsal: 10 bře 2014 17:56
od loccoCZ
Po použití hlavy jsem původní log našel :) a přikládám:

# AdwCleaner v3.020 - Report created 10/03/2014 at 15:12:58
# Updated 27/02/2014 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (64 bits)
# Username : HoP - GRAYLATITUDE
# Running from : C:\Users\HoP\Desktop\adwcleaner.exe
# Option : Scan

***** [ Services ] *****
Service Found : PirritDesktop
Service Found : PirritUpdater

***** [ Files / Folders ] *****
Folder Found C:\Program Files (x86)\Pirrit
Folder Found C:\Users\HoP\AppData\Local\PirritSuggestor
Folder Found C:\Users\HoP\AppData\Roaming\pdfforge
Folder Found C:\Users\HoP\AppData\Roaming\Pirrit

***** [ Shortcuts ] *****

***** [ Registry ] *****
Key Found : HKCU\Software\APN PIP
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D40C654D-7C51-4EB3-95B2-1E23905C2A2D}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D40C654D-7C51-4EB3-95B2-1E23905C2A2D}
Key Found : HKCU\Software\Softonic
Key Found : [x64] HKCU\Software\APN PIP
Key Found : [x64] HKCU\Software\Softonic
Key Found : HKLM\SOFTWARE\Classes\CLSID\{D40C654D-7C51-4EB3-95B2-1E23905C2A2D}
Key Found : HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D40C654D-7C51-4EB3-95B2-1E23905C2A2D}
Key Found : HKLM\Software\PIP
Key Found : HKLM\Software\Pirrit
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Key Found : [x64] HKLM\SOFTWARE\Pirrit

***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.16428
-\\ Mozilla Firefox v
-\\ Google Chrome v33.0.1750.146
[ File : C:\Users\HoP\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [1760 octets] - [10/03/2014 15:12:58]
########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [1820 octets] ##########

Re: prosím o pomoc s vyskakováním reklamních oken

Napsal: 10 bře 2014 18:57
od vyosek
:arrow: Vyyyborne :thumbsup:

:arrow: Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do okna vlozte skript nize
  • Kód: Vybrat vše

    autoclean;
    emptyclsid;
    shortcutfix;
    iedefaults;
    FFdefaults;
    CHRdefaults;
    emptyalltemp;
    resethosts;
    
  • Nasledne kliknete na Run Script
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem