Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

virus skelton, pls help...

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
rox
Návštěvník
Návštěvník
Příspěvky: 26
Registrován: 02 dub 2014 07:32

virus skelton, pls help...

#1 Příspěvek od rox »

prosim o kontrolu logu

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-03-2014
Ran by Patrik at 2014-04-02 07:35:56
Running from C:\Users\Patrik\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: IObit Malware Fighter (Enabled - Up to date) {A751AC20-3B48-5237-898A-78C4436BB78D}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}

==================== Installed Programs ======================

3DMark06 (HKLM-x32\...\{7F3AD00A-1819-4B15-BB7D-08B3586336D7}) (Version: 1.2.1 - Futuremark Corporation)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 4.0.0.1390 - Adobe Systems Incorporated)
Adobe AIR (x32 Version: 4.0.0.1390 - Adobe Systems Incorporated) Hidden
Adobe Reader XI - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.00 - Adobe Systems Incorporated)
Advanced SystemCare 7 (HKLM-x32\...\Advanced SystemCare 7_is1) (Version: 7.2.1 - IObit)
avast! Free Antivirus (HKLM-x32\...\Avast) (Version: 9.0.2016 - Avast Software)
BitLord 2.3 (HKLM-x32\...\BitLord) (Version: 2.3.2-254 - House of Life)
BS.Player FREE (HKLM-x32\...\BSPlayerf) (Version: 2.66.1075 - AB Team, d.o.o.)
Driver Booster (HKLM-x32\...\Driver Booster_is1) (Version: 1.3 - IObit)
Futuremark SystemInfo (HKLM-x32\...\{BEE64C14-BEF1-4610-8A68-A16EAA47B882}) (Version: 4.15.0 - Futuremark Corporation)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 33.0.1750.154 - Google Inc.)
Google Update Helper (x32 Version: 1.3.22.5 - Google Inc.) Hidden
Integrated Camera Driver Installer Package Ver.1.0.0.30 (HKLM-x32\...\{F8754583-7893-4CD8-9E51-1A08F3D4C1A9}) (Version: 1.0.0.30 - RICOH)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.22.1760 - Intel Corporation)
Intel(R) Network Connections Drivers (HKLM\...\PROSet) (Version: 18.5 - Intel)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3412 - Intel Corporation)
Intel® Trusted Connect Service Client (Version: 1.31.8.1 - Intel Corporation) Hidden
IObit Malware Fighter (HKLM-x32\...\IObit Malware Fighter_is1) (Version: 2.3 - IObit)
Lenovo Auto Scroll Utility (HKLM\...\LenovoAutoScrollUtility) (Version: 2.10 - )
Lenovo Patch Utility (x32 Version: 1.4.0.4 - Lenovo Group Limited) Hidden
Lenovo Patch Utility 64 bit (Version: 1.4.0.4 - Lenovo Group Limited) Hidden
Lenovo Power Management Driver (HKLM\...\Power Management Driver) (Version: 1.67.04.05 - )
Lenovo Settings - Camera Audio (HKLM\...\{88C6A6D9-324C-46E8-BA87-563D14021442}_is1) (Version: 4.2.2.0 - Lenovo Corporation)
Lenovo Settings - Location Awareness (HKLM-x32\...\{C79D4402-E622-4922-9C02-89F9080BF081}_is1) (Version: 1.3.0.10 - Lenovo Group Limited)
Lenovo Settings Dependency Package (HKLM\...\{3694BA2E-BE31-4B7E-886B-A0B559E69D4D}_is1) (Version: 2.0.0.16 - Lenovo Group Limited)
Lenovo Settings UMDF driver (HKLM\...\{2BDC7413-65EA-4B99-8C4B-02F11075BE6D}_is1) (Version: 1.1.0.5 - Lenovo Group Limited)
Lenovo Solution Center (HKLM\...\{C51863E5-EB09-43A5-9D43-26A32587EEAC}) (Version: 2.4.002.00 - Lenovo Group Limited)
Lenovo System Update (HKLM-x32\...\{25C64847-B900-48AD-A164-1B4F9B774650}) (Version: 5.05.0008 - Lenovo)
LPT System Updater Service (x32 Version: 1.0.0.0 - LPT) Hidden <==== ATTENTION
Malwarebytes Anti-Malware version 2.00.0.1000 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.00.0.1000 - Malwarebytes Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.40820 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (Version: 10.0.40825 - Microsoft Corporation) Hidden
On Screen Display (HKLM\...\OnScreenDisplay) (Version: 8.25.00 - )
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7161 - Realtek Semiconductor Corp.)
Skype™ 6.14 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.14.104 - Skype Technologies S.A.)
SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 5.7.1018 - SUPERAntiSpyware.com)
ThinkPad Bluetooth with Enhanced Data Rate Software (HKLM\...\{C6D9ED03-6FCF-4410-9CB7-45CA285F9E11}) (Version: 12.0.0.9100 - Broadcom Corporation)
ThinkPad UltraNav Driver (HKLM\...\SynTPDeinstKey) (Version: 16.2.19.13 - )
ThinkVantage Fingerprint Software (HKLM\...\{68D50088-CE92-4FF0-A220-D875E2E73151}) (Version: 6.0.0.8102 - Authentec Inc.)
WinRAR 5.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)

==================== Restore Points =========================

23-03-2014 23:36:22 Windows Update
24-03-2014 00:00:19 Driver Booster : High Definition Audio Device
01-04-2014 21:36:02 Installed 3DMark06

==================== Hosts content: ==========================

2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask
Task: {0B147657-4441-4B79-9A36-0FB9E53EC340} - System32\Tasks\Lenovo\LSC\LSCTaskService => C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCTaskService.exe [2014-02-19] ()
Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList
Task: {0E9C0CA4-48B1-49D6-9E18-04528EAFE317} - System32\Tasks\Lenovo\Lenovo Settings Power => Rundll32.exe "C:\Program Files (x86)\ThinkPad\Utilities\PWMTR64V.dll",PwrMgrBkGndMonitor
Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
Task: {265E68B0-01E6-45EA-A549-2CA1FB3B5726} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => C:\Program Files\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2014-02-19] (Lenovo)
Task: {2796A1B8-389A-4A09-919C-6F790171466B} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Management
Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate
Task: {2D25528A-F4C2-41A2-BBFC-38251357419C} - System32\Tasks\Microsoft\Windows\PLA\LSC Memory => Rundll32.exe C:\WINDOWS\system32\pla.dll,PlaHost "LSC Memory" "$(Arg0)"
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation)
Task: {38CF2C0F-3929-47FA-8FD7-59EB195D67D4} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 => C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2014-02-13] (Lenovo)
Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation)
Task: {442BA0D5-1FB0-40E7-8438-6F310EB10DAC} - System32\Tasks\Synaptics TouchPad Enhancements => \Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-11-15] (Synaptics Incorporated)
Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance
Task: {529EA82B-244E-4B79-882F-D90C4F1452E7} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\lenovo\lenovo solution center\App\LSCService.exe [2014-02-19] (Lenovo)
Task: {62D32A69-6D82-479C-8765-B63E054C350D} - System32\Tasks\SUPERAntiSpyware Scheduled Task 7deb8a48-3316-450a-8d13-ba6565153b79 => C:\Program Files\SUPERAntiSpyware\SASTask.exe [2013-11-07] (SUPERAdBlocker.com)
Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup
Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task
Task: {70E1DDF5-5E8E-4124-9D11-BB138D784EA2} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-03-24] (Google Inc.)
Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask
Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
Task: {82A0711F-4C81-4531-8E35-70C14F211783} - System32\Tasks\SUPERAntiSpyware Scheduled Task 05f5111c-2597-40bc-8f87-64190f1f89ed => C:\Program Files\SUPERAntiSpyware\SASTask.exe [2013-11-07] (SUPERAdBlocker.com)
Task: {8417DAED-AA7F-406A-B35E-7D194EEC949F} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Validation
Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task
Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
Task: {9247FA44-4CCD-41B9-9A85-8FF33E83C5B3} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [2014-02-14] ()
Task: {961F57C9-9679-45D6-9E90-3963710520BC} - System32\Tasks\PMTask => C:\Program Files (x86)\ThinkPad\Utilities\PwmIdTsv.exe
Task: {9CF54774-4E05-4276-996A-467234C8342F} - System32\Tasks\Driver Booster Update => C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe [2014-03-13] (IObit)
Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work
Task: {A9D70B93-DE2A-4914-BABF-7DA18053A49C} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2014-02-19] ()
Task: {AFD26299-B3FF-4F1D-BA18-6196332AFA99} - System32\Tasks\Driver Booster SkipUAC (Patrik) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe [2014-03-14] (IObit)
Task: {B37BE922-4116-4761-9347-2AF91923F7FF} - System32\Tasks\ASC7_SkipUac_Patrik => C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASC.exe [2014-03-10] (IObit)
Task: {B7087D38-3395-4B66-B25C-E90F5DF613F7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-03-24] (Google Inc.)
Task: {BD921268-0ED1-472A-A673-D195B6A3EBBA} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics
Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask
Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing
Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization
Task: {E51E92A5-F897-46FE-902B-D6B7F098C7EC} - System32\Tasks\TVT\LenovoWERMonitor => C:\Program Files (x86)\Common Files\lenovo\SUP\sup_wermonitor.exe [2014-01-21] (Microsoft)
Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE
Task: {ED47E361-008B-4A83-81B5-41211FF436C0} - System32\Tasks\Microsoft\Windows\DiskCleanup\SilentCleanup => C:\Windows\system32\cleanmgr.exe [2014-02-22] (Microsoft Corporation)
Task: {F433FD06-7698-4FC0-8BF4-90D171345E72} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-03-24] (AVAST Software)
Task: C:\WINDOWS\Tasks\ASC7_SkipUac_Patrik.job => C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASC.exe
Task: C:\WINDOWS\Tasks\Driver Booster SkipUAC (Patrik).job => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\SUPERAntiSpyware Scheduled Task 05f5111c-2597-40bc-8f87-64190f1f89ed.job => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
Task: C:\WINDOWS\Tasks\SUPERAntiSpyware Scheduled Task 7deb8a48-3316-450a-8d13-ba6565153b79.job => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

==================== Loaded Modules (whitelisted) =============

2014-04-01 23:14 - 2014-03-07 07:44 - 00104960 _____ () C:\Program Files (x86)\ThinkPad\Utilities\US\PWMRT64V.dll
2013-12-16 11:54 - 2013-12-16 11:54 - 00049368 _____ () C:\Program Files\ThinkPad\Bluetooth Software\btwleapi.dll
2014-04-01 23:14 - 2014-03-07 07:44 - 00104960 _____ () C:\Program Files (x86)\ThinkPad\Utilities\US\PWMRT64V.DLL
2014-01-25 03:22 - 2014-01-25 03:22 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2014-03-24 01:19 - 2013-12-11 15:36 - 00468288 _____ () C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe
2014-03-24 01:19 - 2013-12-11 15:36 - 00013120 _____ () C:\Program Files (x86)\Lenovo\LocationAware\lpdagent.exe
2014-04-02 06:02 - 2013-10-25 12:08 - 00517408 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 7\sqlite3.dll
2014-04-02 07:23 - 2014-04-02 07:23 - 02189312 _____ () C:\Program Files\AVAST Software\Avast\defs\14040200\algo.dll
2014-03-24 00:11 - 2014-03-15 01:50 - 00051016 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.154\chrome_elf.dll
2014-03-24 01:11 - 2014-03-24 01:11 - 19336120 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2014-03-24 00:11 - 2014-03-15 01:50 - 00716616 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.154\libglesv2.dll
2014-03-24 00:11 - 2014-03-15 01:50 - 00100168 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.154\libegl.dll
2014-03-24 00:11 - 2014-03-15 01:50 - 04061000 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.154\pdf.dll
2014-03-24 00:11 - 2014-03-15 01:50 - 00394568 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.154\ppGoogleNaClPluginChrome.dll
2014-03-24 00:11 - 2014-03-15 01:50 - 01647432 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.154\ffmpegsumo.dll
2014-04-01 15:20 - 2014-04-01 15:20 - 00181760 _____ () C:\Users\Patrik\AppData\Local\Google\Chrome\User Data\Default\Extensions\nckgahadagoaajjgafhacjanaoiihapd\2014.324.433.1_0\plugin\ace.dll
2014-04-02 06:50 - 2013-01-15 18:48 - 00348992 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\madExcept_.bpl
2014-04-02 06:50 - 2013-01-15 18:48 - 00183616 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\madBasic_.bpl
2014-04-02 06:50 - 2013-01-15 18:48 - 00051008 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\madDisAsm_.bpl
2014-04-02 06:50 - 2013-12-12 18:46 - 08001344 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\WebUI.dll
2014-04-02 06:50 - 2013-10-16 22:17 - 00185168 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\libcurl-4.dll
2014-04-02 06:50 - 2013-05-16 19:26 - 00182080 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\unrar.dll
2014-04-02 06:50 - 2013-05-16 19:26 - 00145216 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\zlibwapi.dll
2014-03-24 01:12 - 2013-12-03 14:36 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2014-04-02 03:03 - 2014-04-02 03:03 - 00797696 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Windows.Networking\66db718389f1cd2503053c09b3de857f\Windows.Networking.ni.dll
2014-04-02 03:03 - 2014-04-02 03:03 - 00228864 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Windows.Foundation\cf021988965369c551bb0987fe019862\Windows.Foundation.ni.dll

==================== Alternate Data Streams (whitelisted) =========

AlternateDataStreams: C:\Users\Patrik\SkyDrive:ms-properties

==================== Safe Mode (whitelisted) ===================

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice => ""="Service"

==================== Disabled items from MSCONFIG ==============


==================== Faulty Device Manager Devices =============

Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: H5321 gw
Description: H5321 gw
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (04/02/2014 06:57:13 AM) (Source: IMFservice) (User: )
Description: The handle is invalid

Error: (04/02/2014 06:30:33 AM) (Source: ASCService.exe) (User: )
Description: Invalid pointer operation

Error: (04/02/2014 06:08:31 AM) (Source: Microsoft-Windows-Immersive-Shell) (User: T430S)
Description: Activation of app winstore_cw5n1h2txyewy!Windows.Store failed with error: -2144927141 See the Microsoft-Windows-TWinUI/Operational log for additional information.

Error: (04/02/2014 06:07:36 AM) (Source: ESENT) (User: )
Description: SettingSyncHost (4308) {E8A6424F-CBEA-4325-B256-2D0564BC4FA8}: Error -1811 (0xfffff8ed) occurred while opening logfile C:\Users\Patrik\AppData\Local\Microsoft\Windows\SettingSync\remotemetastore\v1\edb00001.log.

Error: (04/02/2014 06:07:35 AM) (Source: ESENT) (User: )
Description: SettingSyncHost (4308) {0B7B6B3B-D0B1-49DC-AE15-D166E61BFAD7}: Error -1811 (0xfffff8ed) occurred while opening logfile C:\Users\Patrik\AppData\Local\Microsoft\Windows\SettingSync\metastore\edb00018.log.

Error: (04/02/2014 05:56:40 AM) (Source: Microsoft-Windows-AppModel-State) (User: T430S)
Description: windows_ie_ac_0013

Error: (04/02/2014 05:56:39 AM) (Source: Microsoft-Windows-AppModel-State) (User: T430S)
Description: microsoft.windows.authhost.sso_8wekyb3d8bbwe3

Error: (04/02/2014 05:56:39 AM) (Source: Microsoft-Windows-AppModel-State) (User: T430S)
Description: microsoft.windows.authhost.a_8wekyb3d8bbwe3

Error: (04/02/2014 05:51:34 AM) (Source: Microsoft-Windows-Immersive-Shell) (User: T430S)
Description: Activation of app microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 failed with error: -2144927141 See the Microsoft-Windows-TWinUI/Operational log for additional information.

Error: (04/02/2014 05:51:34 AM) (Source: Microsoft-Windows-Immersive-Shell) (User: T430S)
Description: Activation of app Microsoft.SkypeApp_kzf8qxf38zg5c!App failed with error: -2144927141 See the Microsoft-Windows-TWinUI/Operational log for additional information.


System errors:
=============
Error: (04/02/2014 07:29:10 AM) (Source: Service Control Manager) (User: )
Description: The LiveUpdate service terminated unexpectedly. It has done this 1 time(s).

Error: (04/02/2014 07:23:16 AM) (Source: Service Control Manager) (User: )
Description: The LiveUpdate service terminated unexpectedly. It has done this 1 time(s).

Error: (04/02/2014 07:21:53 AM) (Source: Service Control Manager) (User: )
Description: The Superfetch service terminated with the following error:
%%1062

Error: (04/02/2014 07:21:07 AM) (Source: Service Control Manager) (User: )
Description: The pcicsa.sys service failed to start due to the following error:
%%2

Error: (04/02/2014 07:11:58 AM) (Source: Service Control Manager) (User: )
Description: The LiveUpdate service terminated unexpectedly. It has done this 1 time(s).

Error: (04/02/2014 07:10:32 AM) (Source: Service Control Manager) (User: )
Description: The Superfetch service terminated with the following error:
%%1062

Error: (04/02/2014 07:05:46 AM) (Source: Service Control Manager) (User: )
Description: The LiveUpdate service terminated unexpectedly. It has done this 1 time(s).

Error: (04/02/2014 06:58:37 AM) (Source: Service Control Manager) (User: )
Description: The LiveUpdate service terminated unexpectedly. It has done this 1 time(s).

Error: (04/02/2014 06:55:42 AM) (Source: Service Control Manager) (User: )
Description: The pcicsa.sys service failed to start due to the following error:
%%2

Error: (04/02/2014 06:46:30 AM) (Source: Service Control Manager) (User: )
Description: The LiveUpdate service terminated unexpectedly. It has done this 1 time(s).


Microsoft Office Sessions:
=========================
Error: (04/02/2014 06:57:13 AM) (Source: IMFservice)(User: )
Description: The handle is invalid

Error: (04/02/2014 06:30:33 AM) (Source: ASCService.exe)(User: )
Description: Invalid pointer operation

Error: (04/02/2014 06:08:31 AM) (Source: Microsoft-Windows-Immersive-Shell)(User: T430S)
Description: winstore_cw5n1h2txyewy!Windows.Store-2144927141

Error: (04/02/2014 06:07:36 AM) (Source: ESENT)(User: )
Description: SettingSyncHost4308{E8A6424F-CBEA-4325-B256-2D0564BC4FA8}: C:\Users\Patrik\AppData\Local\Microsoft\Windows\SettingSync\remotemetastore\v1\edb00001.log-1811 (0xfffff8ed)

Error: (04/02/2014 06:07:35 AM) (Source: ESENT)(User: )
Description: SettingSyncHost4308{0B7B6B3B-D0B1-49DC-AE15-D166E61BFAD7}: C:\Users\Patrik\AppData\Local\Microsoft\Windows\SettingSync\metastore\edb00018.log-1811 (0xfffff8ed)

Error: (04/02/2014 05:56:40 AM) (Source: Microsoft-Windows-AppModel-State)(User: T430S)
Description: windows_ie_ac_0013

Error: (04/02/2014 05:56:39 AM) (Source: Microsoft-Windows-AppModel-State)(User: T430S)
Description: microsoft.windows.authhost.sso_8wekyb3d8bbwe3

Error: (04/02/2014 05:56:39 AM) (Source: Microsoft-Windows-AppModel-State)(User: T430S)
Description: microsoft.windows.authhost.a_8wekyb3d8bbwe3

Error: (04/02/2014 05:51:34 AM) (Source: Microsoft-Windows-Immersive-Shell)(User: T430S)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1-2144927141

Error: (04/02/2014 05:51:34 AM) (Source: Microsoft-Windows-Immersive-Shell)(User: T430S)
Description: Microsoft.SkypeApp_kzf8qxf38zg5c!App-2144927141


CodeIntegrity Errors:
===================================
Date: 2014-04-02 01:16:22.778
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

Date: 2014-04-01 23:59:08.155
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

Date: 2014-04-01 23:54:11.661
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

Date: 2014-04-01 23:54:08.049
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

Date: 2014-04-01 23:48:07.395
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

Date: 2014-04-01 23:47:57.712
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

Date: 2014-04-01 21:51:48.282
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.


==================== Memory info ===========================

Percentage of memory in use: 34%
Total physical RAM: 8010.91 MB
Available physical RAM: 5254.5 MB
Total Pagefile: 9930.91 MB
Available Pagefile: 7023.5 MB
Total Virtual: 131072 MB
Available Virtual: 131071.78 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:110.83 GB) (Free:44.32 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 112 GB) (Disk ID: B150F47C)

Partition: GPT Partition Type.

==================== End Of Log ============================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: virus skelton, pls help...

#2 Příspěvek od vyosek »

Zdravim :)

:arrow: Dejte mi sem prosim log FRST.txt

:arrow: Kde a co Vam ten virus skelton hlasi?
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

rox
Návštěvník
Návštěvník
Příspěvky: 26
Registrován: 02 dub 2014 07:32

Re: virus skelton, pls help...

#3 Příspěvek od rox »

diky za reakci hlasi to superantispyware..mam vic indicii malwarebytes...
Přílohy
FRST.zip
(30.04 KiB) Staženo 44 x

rox
Návštěvník
Návštěvník
Příspěvky: 26
Registrován: 02 dub 2014 07:32

Re: virus skelton, pls help...

#4 Příspěvek od rox »

muze prosim nedo pomoct?

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: virus skelton, pls help...

#5 Příspěvek od vyosek »

:arrow: Ano muzeme, ale uvedomte si laskave, ze my jsme tu ve svem VOLNEM case a ZDARMA. Pokud chcete okamzitou pomoc, tak navstivte nasi placenou podporu http://www.neslape.cz/

:arrow: Odinstalujte Advanced SystemCare a IObit Malware Fighter a nasledne i vse od IOBit - jsou to cinske smejdy a spise jen skodi nez jsou uzitkem. Hledaji nesmyslne a neexistujici problemy, databazi haveti ukradli jine renomovane spolecnosti

:arrow: Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
  • Ulozte nejlepe na plochu
  • Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
  • Probehne vytvoreni zalohy a nasledne prohledavani
  • Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte
:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

rox
Návštěvník
Návštěvník
Příspěvky: 26
Registrován: 02 dub 2014 07:32

Re: virus skelton, pls help...

#6 Příspěvek od rox »

omlouvam se dlouho jsem zde nebyl..pc se jiz chova standartne...je log ok? diky
Přílohy
AdwCleaner[S0].zip
(902 bajtů) Staženo 45 x

rox
Návštěvník
Návštěvník
Příspěvky: 26
Registrován: 02 dub 2014 07:32

Re: virus skelton, pls help...

#7 Příspěvek od rox »

dalsi log
Přílohy
JRT1.zip
(701 bajtů) Staženo 51 x

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: virus skelton, pls help...

#8 Příspěvek od vyosek »

:arrow: Logy davejte normalne jako text prispevku

:arrow: Toto mam chapat jak, to zde mate novou registraci?
omlouvam se dlouho jsem zde nebyl
:arrow: Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do okna vlozte skript nize
  • Kód: Vybrat vše

    autoclean;
    emptyclsid;
    iedefaults;
    FFdefaults;
    CHRdefaults;
    emptyalltemp;
    resethosts;
    
  • Nasledne kliknete na Run Script
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

rox
Návštěvník
Návštěvník
Příspěvky: 26
Registrován: 02 dub 2014 07:32

Re: virus skelton, pls help...

#9 Příspěvek od rox »

diky, log v priloze...
Přílohy
zoek-results.zip
(2.67 KiB) Staženo 48 x

rox
Návštěvník
Návštěvník
Příspěvky: 26
Registrován: 02 dub 2014 07:32

Re: virus skelton, pls help...

#10 Příspěvek od rox »

v prohlizeci chrome nemuzu zmenit prvni stranku, pri spusteni chrome se vzdy otevre hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StKZmhdFMQ5NhCfKoItf6Xow1K8E36LI7P80qkWEwcGN7Rs96kMl79eH0neAhGh38NlT773JfhUXiN63jQ-5Q8eIMai5DPyg59AMC1v3Vxou4VXi_uxOg1jit3K_xWrK6bJZWDFXCEKzYZ_QxZsBgJayL5tQqCtu3GH_R49NXnHPWuzTwDg0K4ZIyHYamjDqmLAUmgSzOtw28,

a pak yahoo search...diky
Naposledy upravil(a) vyosek dne 03 dub 2014 07:28, celkem upraveno 1 x.
Důvod: Z bezpecnostnich duvodu zneaktivnen link

Uživatelský avatar
cernohous13
VIP in memoriam
VIP in memoriam
Příspěvky: 8721
Registrován: 09 pro 2006 06:19
Bydliště: Jablonec nad Nisou
Kontaktovat uživatele:

Re: virus skelton, pls help...

#11 Příspěvek od cernohous13 »

Zdravím,
vyosek píše: :arrow: Logy davejte normalne jako text prispevku

:arrow: Toto mam chapat jak, to zde mate novou registraci?
omlouvam se dlouho jsem zde nebyl
a odpovědět na otázku by byla slušnost :wink:
Doporučení:
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím Obrázek

-------------------------------------------------------------------------------------------------
> Podpora fóra <

rox
Návštěvník
Návštěvník
Příspěvky: 26
Registrován: 02 dub 2014 07:32

Re: virus skelton, pls help...

#12 Příspěvek od rox »

otazku jsem prehlidl, sorry byl jsem zde naposledy pred cca 5ti lety...muzete mne pls poradit co delat? dekuji

Uživatelský avatar
cernohous13
VIP in memoriam
VIP in memoriam
Příspěvky: 8721
Registrován: 09 pro 2006 06:19
Bydliště: Jablonec nad Nisou
Kontaktovat uživatele:

Re: virus skelton, pls help...

#13 Příspěvek od cernohous13 »

Zatím jsi neodpověděl na kolegovu otázku :shock:

Pamatuješ si nick při předchozí registraci před pěti lety?
Starý účet je potřeba odstranit - vícenásobná registrace je proti našim pravidlům :x
Doporučení:
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím Obrázek

-------------------------------------------------------------------------------------------------
> Podpora fóra <

rox
Návštěvník
Návštěvník
Příspěvky: 26
Registrován: 02 dub 2014 07:32

Re: virus skelton, pls help...

#14 Příspěvek od rox »

bohuzel stary nick si nepamatuji....mozna roxtedy..tu jsem pouzival drive tento nick

malwarebytes vzdy najde pup.optional.helperbar.a smaze z registru a kdyz dam znova scan je to tam znovu...diky za pomoc

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: virus skelton, pls help...

#15 Příspěvek od vyosek »

:arrow: Nick roxtedy jsme dohledali, registrace 30 lis 2006, posledni navsteva 06 bře 2010 (http://forum.viry.cz/memberlist.php?mod ... le&u=12648)

:arrow: Deaktivujeme jej tedy

:arrow: Logy prosim tedy do prispevku a ne opet do prilohy

:arrow: Dejte nyni FRST http://forum.viry.cz/viewtopic.php?f=13&t=133100
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Odpovědět