Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

prosím o kontrolu logu: reklamy

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Zdenal31
Návštěvník
Návštěvník
Příspěvky: 7
Registrován: 27 říj 2014 21:30

prosím o kontrolu logu: reklamy

#1 Příspěvek od Zdenal31 »

Předem děkuji za kontrolu logu. Reklamy v prohlížeči, a nejde nastavit domovská stránka



Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 03-12-2014
Ran by OEM (administrator) on OEM-PC on 05-12-2014 13:00:04
Running from C:\Users\OEM\Desktop
Loaded Profile: OEM (Available profiles: OEM)
Platform: Microsoft Windows 7 Professional Service Pack 1 (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(Cherished Technololgy LIMITED) C:\ProgramData\IePluginServices\PluginService.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
(Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(SEIKO EPSON CORPORATION) C:\Program Files\Epson Software\Event Manager\EEventManager.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
() C:\Program Files\SupTab\HpUI.exe
() C:\Users\OEM\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
() C:\Program Files\SupTab\Loader32.exe
(Microsoft Corporation) C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Nero AG) C:\Program Files\Nero\Update\NASvc.exe
() C:\Program Files\Klip Pal\bin\utilKlipPal.exe
() C:\Program Files\Klip Pal\bin\KlipPal.expext.exe
() C:\Program Files\Klip Pal\bin\KlipPal.BOASHelper.exe
() C:\Program Files\Klip Pal\updateKlipPal.exe
() C:\Program Files\Klip Pal\bin\KlipPal.PurBrowse.exe
() C:\Program Files\Klip Pal\bin\KlipPal.BrowserAdapter.exe
(Microsoft Corporation) C:\Windows\System32\wuauclt.exe
(Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil32_15_0_0_239_ActiveX.exe
(Google Inc.) C:\Users\OEM\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\OEM\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\OEM\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\OEM\AppData\Local\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [GrooveMonitor] => C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM\...\Run: [EEventManager] => C:\Program Files\Epson Software\Event Manager\EEventManager.exe [665424 2008-12-04] (SEIKO EPSON CORPORATION)
HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [974432 2014-08-22] (Microsoft Corporation)
HKU\S-1-5-21-4186950099-1520379344-1564090801-1000\...\Run: [EPSON SX110 Series] => C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIFBE.EXE [199680 2008-09-27] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-4186950099-1520379344-1564090801-1000\...\Run: [Google Update] => C:\Users\OEM\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2012-04-19] (Google Inc.)
HKU\S-1-5-21-4186950099-1520379344-1564090801-1000\...\Run: [cz.seznam.software.autoupdate] => C:\Users\OEM\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-4186950099-1520379344-1564090801-1000\...\Run: [cz.seznam.software.szndesktop] => C:\Users\OEM\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKU\S-1-5-21-4186950099-1520379344-1564090801-1000\...\Run: [SpeedItupFree] => "C:\Program Files\SpeedItup Free\speeditupfree.exe"
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-4186950099-1520379344-1564090801-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://rts.dsrlte.com?affID=na
HKU\S-1-5-21-4186950099-1520379344-1564090801-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://istart.webssearches.com/?type=hp ... 0JB2AU0JBX
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://istart.webssearches.com/web/?typ ... earchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://istart.webssearches.com/?type=hp ... 0JB2AU0JBX
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://istart.webssearches.com/?type=hp ... 0JB2AU0JBX
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://istart.webssearches.com/web/?typ ... earchTerms}
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://istart.webssearches.com/?type=sc ... 0JB2AU0JBX
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://istart.webssearches.com/web/?typ ... earchTerms}
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://istart.webssearches.com/web/?typ ... earchTerms}
SearchScopes: HKU\S-1-5-21-4186950099-1520379344-1564090801-1000 -> {0DB7211F-4A75-494F-BBA0-12BAC68768FD} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_13014
SearchScopes: HKU\S-1-5-21-4186950099-1520379344-1564090801-1000 -> {1B51EFE6-CDBC-4837-91CC-BAE5E1FD685D} URL = http://encyklopedie.seznam.cz/search?q= ... arch_13014
SearchScopes: HKU\S-1-5-21-4186950099-1520379344-1564090801-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://istart.webssearches.com/web/?typ ... earchTerms}
SearchScopes: HKU\S-1-5-21-4186950099-1520379344-1564090801-1000 -> {37D61EAC-391F-4004-9EE7-045D7332575D} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_13014
SearchScopes: HKU\S-1-5-21-4186950099-1520379344-1564090801-1000 -> {433F28B4-C73C-4F1E-9DDF-56ABD2AEB451} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13014
SearchScopes: HKU\S-1-5-21-4186950099-1520379344-1564090801-1000 -> {4DA35ED2-95F0-4B38-8E0D-3E174CAF5CFB} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13014
SearchScopes: HKU\S-1-5-21-4186950099-1520379344-1564090801-1000 -> {779230FF-7EE1-4C6E-8AF4-74C66AAEFB27} URL = http://search.seznam.cz/?q={searchTerms ... arch_13014
SearchScopes: HKU\S-1-5-21-4186950099-1520379344-1564090801-1000 -> {A635F75B-2E91-4E20-9F61-566ACDF342BC} URL = http://www.novinky.cz/hledej?w={searchT ... arch_13014
SearchScopes: HKU\S-1-5-21-4186950099-1520379344-1564090801-1000 -> {C183297A-CBCD-4A47-9537-E7DF2F7E1B32} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_13014
SearchScopes: HKU\S-1-5-21-4186950099-1520379344-1564090801-1000 -> {F47D14D3-F2C4-4C84-835F-EDD1D9C963D1} URL = http://www.mapy.cz/?query={searchTerms} ... arch_13014
BHO: GoHD -> {11111111-1111-1111-1111-110611211180} -> C:\Program Files\GoHD\GoHD-bho.dll (InstallMoon)
BHO: IETabPage Class -> {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} -> C:\Program Files\SupTab\SupTab.dll (Thinknice Co. Limited)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO: Easy Photo Print -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
BHO: No Name -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> No File
BHO: Klip Pal -> {a13d85a3-d31a-4f34-b4cd-fce576dc079e} -> C:\Program Files\Klip Pal\KlipPalbho.dll (Klip Pal)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION / CyCom Technology Corp.)
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @Nero.com/KM -> C:\PROGRA~1\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL (Nero AG)
FF Plugin: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-4186950099-1520379344-1564090801-1000: @tools.google.com/Google Update;version=3 -> C:\Users\OEM\AppData\Local\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKU\S-1-5-21-4186950099-1520379344-1564090801-1000: @tools.google.com/Google Update;version=9 -> C:\Users\OEM\AppData\Local\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)

Chrome:
=======
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR StartupUrls: Default -> "hxxp://www.seznam.cz/"
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Profile: C:\Users\OEM\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (YouTube) - C:\Users\OEM\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2012-04-19]
CHR Extension: (Vyhledávání Google) - C:\Users\OEM\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-04-19]
CHR Extension: (Skype Click to Call) - C:\Users\OEM\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2014-02-21]
CHR Extension: (Peněženka Google) - C:\Users\OEM\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-23]
CHR Extension: (Quick start) - C:\Users\OEM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma [2014-10-01]
CHR Extension: (Gmail) - C:\Users\OEM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-04-19]
CHR Extension: (Klip Pal) - C:\Users\OEM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkoehejbnbinjafeopgalokcmjdgkkhe [2014-10-14]
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14]
CHR HKLM\...\Chrome\Extension: [pelmeidfhdlhlbjimpabfcbnnojbboma] - C:\Users\OEM\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv3.crx [2014-10-01]
CHR StartMenuInternet: Google Chrome - C:\Users\OEM\AppData\Local\Google\Chrome\Application\chrome.exe

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 c2cautoupdatesvc; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
S2 globalUpdate; C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [68608 2014-10-20] (globalUpdate) [File not signed]
S3 globalUpdatem; C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [68608 2014-10-20] (globalUpdate) [File not signed]
R2 IePluginServices; C:\ProgramData\IePluginServices\PluginService.exe [705416 2014-09-16] (Cherished Technololgy LIMITED)
R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [22192 2014-08-22] (Microsoft Corporation)
R2 NAUpdate; C:\Program Files\Nero\Update\NASvc.exe [762192 2013-07-18] (Nero AG)
R3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [288120 2014-08-22] (Microsoft Corporation)
R2 Update Klip Pal; C:\Program Files\Klip Pal\updateKlipPal.exe [523504 2014-12-05] ()
R2 Util Klip Pal; C:\Program Files\Klip Pal\bin\utilKlipPal.exe [523504 2014-12-05] ()

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [231800 2014-07-17] (Microsoft Corporation)
R1 MpKslcc9b4f89; c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{933AA729-061F-4B16-A95C-8C843B45F58F}\MpKslcc9b4f89.sys [39464 2014-12-05] (Microsoft Corporation)
R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [5810 2004-08-13] ()
R1 {16aeaf7e-8e31-4ae5-a406-23e1011dca16}Gw; C:\Windows\System32\drivers\{16aeaf7e-8e31-4ae5-a406-23e1011dca16}Gw.sys [43152 2014-11-06] (StdLib)
R1 {2169981c-4403-4a8d-a144-e936eff23fce}Gw; C:\Windows\System32\drivers\{2169981c-4403-4a8d-a144-e936eff23fce}Gw.sys [43152 2014-10-30] (StdLib)
R1 {3d0ff4a0-421f-4b33-a4ec-b4f95b34c8de}Gw; C:\Windows\System32\drivers\{3d0ff4a0-421f-4b33-a4ec-b4f95b34c8de}Gw.sys [43152 2014-10-23] (StdLib)
R1 {9794b31c-7078-45aa-8534-9fee5d10dfe6}Gw; C:\Windows\System32\drivers\{9794b31c-7078-45aa-8534-9fee5d10dfe6}Gw.sys [43152 2014-12-04] (StdLib)
R1 {be5bf058-a067-4076-8c2e-22b9345a0260}Gw; C:\Windows\System32\drivers\{be5bf058-a067-4076-8c2e-22b9345a0260}Gw.sys [43152 2014-10-01] (StdLib)
R1 {e0c89f91-0178-4464-8daf-bec566dd2d9a}Gw; C:\Windows\System32\drivers\{e0c89f91-0178-4464-8daf-bec566dd2d9a}Gw.sys [43152 2014-11-02] (StdLib)
R1 {e0f11ce0-b988-4edf-90cb-37fdcbf046be}Gw; C:\Windows\System32\drivers\{e0f11ce0-b988-4edf-90cb-37fdcbf046be}Gw.sys [43152 2014-11-23] (StdLib)

==================== NetSvcs (Whitelisted) ===================


(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-12-05 13:00 - 2014-12-05 13:01 - 00016013 _____ () C:\Users\OEM\Desktop\FRST.txt
2014-12-05 12:59 - 2014-12-05 13:00 - 00000000 ____D () C:\FRST
2014-12-05 12:58 - 2014-12-05 12:58 - 01110016 _____ (Farbar) C:\Users\OEM\Desktop\FRST.exe
2014-12-05 12:58 - 2014-12-05 12:58 - 00029696 _____ () C:\Users\OEM\AppData\Local\MSGBOX.EXE
2014-12-05 12:58 - 2014-12-05 12:58 - 00015327 _____ () C:\Users\OEM\Desktop\LM.bat
2014-12-05 12:56 - 2014-12-05 12:56 - 00112640 _____ (forum.viry.cz) C:\Users\OEM\Downloads\Nepotvrzeno 758640.crdownload
2014-12-05 12:56 - 2014-12-05 12:56 - 00112640 _____ (forum.viry.cz) C:\Users\OEM\Downloads\Nepotvrzeno 380465.crdownload
2014-12-05 12:55 - 2014-12-05 12:55 - 00112640 _____ (forum.viry.cz) C:\Users\OEM\Downloads\Nepotvrzeno 688476.crdownload
2014-12-05 12:21 - 2014-12-05 12:26 - 00001132 _____ () C:\Users\OEM\Desktop\Live PC Help.lnk
2014-12-05 12:21 - 2014-12-05 12:21 - 00000000 ____D () C:\Windows\system32\appmgmt
2014-12-05 12:02 - 2014-12-04 13:59 - 00043152 _____ (StdLib) C:\Windows\system32\Drivers\{9794b31c-7078-45aa-8534-9fee5d10dfe6}Gw.sys
2014-11-24 10:10 - 2014-11-24 10:10 - 00000000 ____D () C:\Users\OEM\AppData\Local\Pay-By-Ads
2014-11-24 10:10 - 2014-11-24 10:10 - 00000000 ____D () C:\5f82ba8132ec8c5070c4baf98d92e304
2014-11-24 10:09 - 2014-11-23 19:32 - 00043152 _____ (StdLib) C:\Windows\system32\Drivers\{e0f11ce0-b988-4edf-90cb-37fdcbf046be}Gw.sys
2014-11-07 16:43 - 2014-11-06 23:34 - 00043152 _____ (StdLib) C:\Windows\system32\Drivers\{16aeaf7e-8e31-4ae5-a406-23e1011dca16}Gw.sys

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-12-05 12:35 - 2012-04-18 13:07 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-12-05 12:35 - 2012-04-18 13:07 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-12-05 12:35 - 2012-04-18 13:07 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-12-05 12:32 - 2014-10-01 12:13 - 00000000 ____D () C:\Program Files\SpeedItup Free
2014-12-05 12:32 - 2012-04-19 09:32 - 00000954 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4186950099-1520379344-1564090801-1000UA.job
2014-12-05 12:31 - 2014-10-01 12:13 - 00000000 ____D () C:\ProgramData\WindowsMangerProtect
2014-12-05 12:31 - 2012-04-18 10:00 - 01334111 _____ () C:\Windows\WindowsUpdate.log
2014-12-05 12:30 - 2012-04-19 09:32 - 00000902 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4186950099-1520379344-1564090801-1000Core.job
2014-12-05 12:26 - 2014-10-20 07:55 - 00000000 ____D () C:\Users\OEM\AppData\Roaming\systweak
2014-12-05 12:25 - 2014-10-19 06:43 - 00000000 ____D () C:\Program Files\Opera
2014-12-05 12:20 - 2014-10-20 10:15 - 00004108 _____ () C:\Windows\Tasks\ec33161a-079b-4ba7-aabf-0e1183d25713-6.job
2014-12-05 12:11 - 2010-11-20 22:01 - 00006248 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-12-05 12:07 - 2009-07-14 05:34 - 00031504 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-12-05 12:07 - 2009-07-14 05:34 - 00031504 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-12-05 12:06 - 2014-09-28 11:27 - 00000000 ____D () C:\Users\OEM\AppData\Roaming\Seznam.cz
2014-12-05 12:06 - 2009-07-14 03:04 - 00000580 _____ () C:\Windows\win.ini
2014-12-05 12:05 - 2014-10-01 12:12 - 00000000 ____D () C:\Program Files\Klip Pal
2014-12-05 12:00 - 2014-10-20 10:16 - 00002396 _____ () C:\Windows\Tasks\ec33161a-079b-4ba7-aabf-0e1183d25713-5_user.job
2014-12-05 12:00 - 2014-10-20 10:16 - 00002396 _____ () C:\Windows\Tasks\ec33161a-079b-4ba7-aabf-0e1183d25713-5.job
2014-12-05 12:00 - 2014-10-20 10:15 - 00004108 _____ () C:\Windows\Tasks\ec33161a-079b-4ba7-aabf-0e1183d25713-4.job
2014-12-05 12:00 - 2014-10-20 10:15 - 00003764 _____ () C:\Windows\Tasks\ec33161a-079b-4ba7-aabf-0e1183d25713-7.job
2014-12-05 12:00 - 2014-10-20 10:15 - 00003382 _____ () C:\Windows\Tasks\ec33161a-079b-4ba7-aabf-0e1183d25713-1.job
2014-12-05 12:00 - 2014-10-20 10:15 - 00002060 _____ () C:\Windows\Tasks\ec33161a-079b-4ba7-aabf-0e1183d25713-2.job
2014-12-05 12:00 - 2014-10-20 10:14 - 00004790 _____ () C:\Windows\Tasks\ec33161a-079b-4ba7-aabf-0e1183d25713-11.job
2014-12-05 12:00 - 2014-10-20 10:14 - 00000918 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2014-12-05 12:00 - 2009-07-14 05:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-12-05 12:00 - 2009-07-14 05:39 - 00234824 _____ () C:\Windows\setupact.log

Some content of TEMP:
====================
C:\Users\OEM\AppData\Local\Temp\aitmp1846745148171.exe
C:\Users\OEM\AppData\Local\Temp\aitmp4145124911.exe
C:\Users\OEM\AppData\Local\Temp\CloudBackup1645.exe
C:\Users\OEM\AppData\Local\Temp\CloudBackup3118.exe
C:\Users\OEM\AppData\Local\Temp\CloudBackup5294.exe
C:\Users\OEM\AppData\Local\Temp\CloudBackup9632.exe
C:\Users\OEM\AppData\Local\Temp\CloudBackup9698.exe
C:\Users\OEM\AppData\Local\Temp\DriverDetective.exe
C:\Users\OEM\AppData\Local\Temp\dsrsetup.exe
C:\Users\OEM\AppData\Local\Temp\InstallMonetizer.exe
C:\Users\OEM\AppData\Local\Temp\listicka.exe
C:\Users\OEM\AppData\Local\Temp\oi_{FE32A88C-82CE-4904-BEF1-5387BCC1FA95}.exe
C:\Users\OEM\AppData\Local\Temp\PCOptimizerProSetup_CMN_1.exe
C:\Users\OEM\AppData\Local\Temp\PCOptimizerProSetup_MIBS64_2.exe
C:\Users\OEM\AppData\Local\Temp\PCOptimizerProSetup_MIBS_2.exe
C:\Users\OEM\AppData\Local\Temp\res.dll
C:\Users\OEM\AppData\Local\Temp\SkypeSetup.exe
C:\Users\OEM\AppData\Local\Temp\spuad0.exe
C:\Users\OEM\AppData\Local\Temp\spuad1.exe
C:\Users\OEM\AppData\Local\Temp\spuad2.exe
C:\Users\OEM\AppData\Local\Temp\spuad3.exe
C:\Users\OEM\AppData\Local\Temp\UNINSTALL.EXE
C:\Users\OEM\AppData\Local\Temp\vcredist_x86.exe
C:\Users\OEM\AppData\Local\Temp\_is1573.exe
C:\Users\OEM\AppData\Local\Temp\_is6CA7.exe
C:\Users\OEM\AppData\Local\Temp\_isA63D.exe
C:\Users\OEM\AppData\Local\Temp\_isA90A.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-10-16 12:27

==================== End Of Log ============================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: prosím o kontrolu logu: reklamy

#2 Příspěvek od vyosek »

Zdravim :)

:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Po spusteni probehne stazeni databaze
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
:arrow: Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do okna vlozte skript nize
  • Kód: Vybrat vše

    autoclean;
    resethosts;
    emptyclsid;
    IEdefaults;
    FFdefaults;
    CHRdefaults;
    emptyIEcache;
    emptyFFcache;
    emptyCHRcache;
    emptyalltemp;
    emptyflash;
    emptyjava;
    emptyrecycle.bin;
    
  • Nasledne kliknete na Run Script
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Odpovědět