Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

avast nasel virus v nekolika souborech

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
morlock
Návštěvník
Návštěvník
Příspěvky: 95
Registrován: 02 zář 2010 23:12

avast nasel virus v nekolika souborech

#1 Příspěvek od morlock »

Dobry den,

Potreboval bych poradit. Skenoval jsem pocitac pomoci AVAST pac se mi zdal nejaky pomaly - kdyz neco udelam trva to podivne dlouho nez se to stane jako otevirani programu, prechod na jinou webovou stranku apod. Avast nasel nekolik viru - presunul do truhly - pak doporucil scan po restartu, kde nasel jeste dalsich par viru - zas presunuti do truhly. Dal bych sem log z Avastu ale za zivyho boha ho nemuzu najit. Pokud si dobre pamatuju tak se jednalo o instalacni soubor na Skype a BSplayer + jeste 3 jine soubory. Kazdopadne tady je vypis z RSITu.

Dik Martin



Logfile of random's system information tool 1.10 (written by random/random)
Run by Lenka at 2015-01-14 23:22:19
Microsoft Windows 8.1
System drive C: has 7 GB (25%) free of 29 GB
Total RAM: 1933 MB (50% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 23:22:27, on 14. 1. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal

Running processes:
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\DllHost.exe
C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe
C:\WINDOWS\system32\taskhostex.exe
C:\Program Files\ASUS\ASUS Reading Mode\ReadingModeWatchDogx86.exe
C:\Program Files\ASUS\ASUS AC Reminder\ACReminderSrv.exe
C:\ProgramData\AsTouchPanel\AsPatchTouchPanel.exe
C:\Windows\system32\igfxext.exe
C:\Program Files\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Windows\System32\DptfPolicyLpmServiceHelper.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\system32\igfxsrvc.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Realtek\Audio\AP\RtkNGUI.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\WINDOWS\system32\wbem\unsecapp.exe
C:\Program Files\ASUS\ASUS Smart Gesture\AsTPCenter\x86\AsusTPLoader.exe
C:\Program Files\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe
C:\Program Files\ASUS\ASUS Smart Gesture\AsTPCenter\x86\AsusTPCenter.exe
C:\Program Files\ASUS\ASUS Smart Gesture\AsTPCenter\x86\AsusTPHelper.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\WINDOWS\system32\SearchFilterHost.exe
C:\Users\Lenka\Downloads\RSIT.exe
C:\Program Files\trend micro\Lenka.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus13.msn.com/?pc=ASJB
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://asus13.msn.com/?pc=ASJB
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O4 - HKLM\..\Run: [ASUSPRP] "C:\Program Files\ASUS\APRP\APRP.EXE"
O4 - HKLM\..\Run: [DptfPolicyLpmServiceHelper] C:\Windows\system32\DptfPolicyLpmServiceHelper.exe
O4 - HKLM\..\Run: [IgfxTray] "C:\Windows\system32\igfxtray.exe"
O4 - HKLM\..\Run: [HotKeysCmds] "C:\Windows\system32\hkcmd.exe"
O4 - HKLM\..\Run: [Persistence] "C:\Windows\system32\igfxpers.exe"
O4 - HKLM\..\Run: [RtkNGUI] "C:\Program Files\Realtek\Audio\AP\RtkNGUI.exe" /s
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: ASUS HID Access Service (AsHidService) - ASUSTek Computer Inc. - C:\Program Files\ASUS\ATK Package\ATK Hotkey\AsHidSrv.exe
O23 - Service: ASLDR Service (ASLDRService) - ASUSTek Computer Inc. - C:\Program Files\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: @oem21.inf,%BcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Broadcom Corporation. - C:\WINDOWS\system32\BtwRSupportService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\system32\IntelCpHeciSvc.exe
O23 - Service: @oem12.inf,%WIN32_DPTF_PARTICIPANT_PROC_SERVICE_DISPLAY_NAME%;Intel(R) Dynamic Platform & Thermal Framework Processor Participant Service Application (DptfParticipantProcessorService) - Intel Corporation - C:\WINDOWS\system32\DptfParticipantProcessorService.exe
O23 - Service: @oem12.inf,%WIN32_DPTF_POLICY_CRITICAL_SERVICE_DISPLAY_NAME%;Intel(R) Dynamic Platform & Thermal Framework Critical Service Application (DptfPolicyCriticalService) - Intel Corporation - C:\WINDOWS\system32\DptfPolicyCriticalService.exe
O23 - Service: @oem12.inf,%WIN32_DPTF_POLICY_LPM_SERVICE_DISPLAY_NAME%;Intel(R) Dynamic Platform & Thermal Framework Low Power Mode Service Application (DptfPolicyLpmService) - Intel Corporation - C:\WINDOWS\system32\DptfPolicyLpmService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe

--
End of file - 7186 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-12-13 586968]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14 1709152]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ASUSPRP"=C:\Program Files\ASUS\APRP\APRP.EXE [2013-09-07 3216032]
"DptfPolicyLpmServiceHelper"=C:\Windows\system32\DptfPolicyLpmServiceHelper.exe [2013-08-24 73216]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2014-02-11 307000]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2014-02-11 317752]
"Persistence"=C:\Windows\system32\igfxpers.exe [2014-02-11 314168]
"RtkNGUI"=C:\Program Files\Realtek\Audio\AP\RtkNGUI.exe [2013-07-16 2653912]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-01-10 5227112]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2014-02-02 493056]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iaioi2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iaioi2ce.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"vidc.cvid"=iccvid.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-01-14 23:22:19 ----D---- C:\rsit
2015-01-14 23:22:19 ----D---- C:\Program Files\trend micro
2015-01-14 21:58:18 ----D---- C:\Program Files\CCleaner
2015-01-14 21:52:55 ----D---- C:\AdwCleaner
2014-12-20 12:29:17 ----D---- C:\WINDOWS\system32\vbox
2014-12-19 20:50:13 ----A---- C:\WINDOWS\system32\poqexec.exe

======List of files/folders modified in the last 1 month======

2015-01-14 23:22:27 ----D---- C:\WINDOWS\Prefetch
2015-01-14 23:22:19 ----D---- C:\Program Files
2015-01-14 23:12:23 ----AD---- C:\WINDOWS\Temp
2015-01-14 23:02:01 ----D---- C:\WINDOWS\system32\sru
2015-01-14 23:01:41 ----D---- C:\WINDOWS\System32
2015-01-14 23:01:41 ----D---- C:\WINDOWS\inf
2015-01-14 23:01:41 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-01-14 22:14:31 ----D---- C:\WINDOWS\system32\config
2015-01-14 22:11:08 ----AD---- C:\Windows
2015-01-14 22:04:02 ----D---- C:\WINDOWS\Minidump
2015-01-14 22:04:02 ----D---- C:\WINDOWS\debug
2015-01-14 14:19:45 ----D---- C:\WINDOWS\CbsTemp
2015-01-14 14:19:44 ----D---- C:\WINDOWS\WinSxS
2015-01-14 04:28:47 ----D---- C:\WINDOWS\Microsoft.NET
2015-01-13 20:45:35 ----D---- C:\WINDOWS\system32\Tasks
2015-01-11 04:49:13 ----SHD---- C:\System Volume Information
2014-12-25 04:11:58 ----RD---- C:\WINDOWS\assembly
2014-12-24 12:28:41 ----SHD---- C:\WINDOWS\Installer
2014-12-24 12:28:09 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2014-12-24 12:26:49 ----D---- C:\Program Files\Microsoft Office 15
2014-12-18 16:05:37 ----D---- C:\WINDOWS\system32\catroot2
2014-12-16 05:11:08 ----D---- C:\WINDOWS\system32\DriverStore

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2014-12-13 49944]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2014-12-13 206248]
R0 MBI;@oem47.inf,%MBI.SVCDESC%;Intel(R) Sideband Fabric Device Service; C:\WINDOWS\System32\drivers\MBI.sys [2013-12-30 21456]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2014-12-13 81768]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2014-12-13 787800]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2014-12-13 423784]
R1 ATKWMIACPIIO;ATKWMIACPI Driver; \??\C:\Program Files\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi.sys [2011-09-07 14464]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2014-04-30 57344]
R2 ASMMAP;ASMMAP; \??\C:\Program Files\ASUS\ATK Package\ATKGFNEX\ASMMAP.sys [2009-07-02 13880]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2014-12-13 24184]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2014-12-13 70384]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2014-12-13 91496]
R2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [2014-12-13 218192]
R3 AsusHID;@oem24.inf,%AsusHID.SvcDesc%;ASUS HID Service; C:\WINDOWS\System32\drivers\AsusHID.sys [2013-09-04 64312]
R3 BCMSDH43XX;@oem26.inf,%BCMSDH43XX_Service_DispName%;Broadcom 802.11 SDIO Network Adapter Driver; C:\WINDOWS\system32\DRIVERS\bcmdhd63.sys [2013-10-16 304344]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2013-08-22 40448]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2013-12-04 186880]
R3 BthMini;@bth.inf,%BTHMINI.SvcDesc%;Bluetooth Radio Driver; C:\WINDOWS\System32\Drivers\BTHMINI.sys [2013-08-22 24064]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2014-07-24 95744]
R3 BtwSerialBus;@oem21.inf,%Bus.SVCDESC%;Broadcom Serial Bus Driver over UART Bus Enumerator; C:\WINDOWS\system32\DRIVERS\BtwSerialBus.sys [2013-12-20 130776]
R3 camera;@oem17.inf,%camera.DeviceDesc%;Intel(R) Imaging Signal Processor 2400; C:\WINDOWS\system32\DRIVERS\camera.sys [2013-08-23 334848]
R3 CM3218x;@oem32.inf,%CM3218xDisplayName%;CM3218x SPB Driver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2014-05-31 188416]
R3 CPLMACPI;@oem32.inf,%CPLMACPI.SvcDesc%;Capella Micro CPLMACPI Sensor Filter; C:\WINDOWS\system32\DRIVERS\CPLMACPI.sys [2014-04-24 16488]
R3 DptfDevDBPT;DptfDevDBPT; C:\WINDOWS\system32\DRIVERS\DptfDevPower.sys [2013-08-24 17408]
R3 DptfDevDisplay;DptfDevDisplay; C:\WINDOWS\system32\DRIVERS\DptfDevDisplay.sys [2013-08-24 20480]
R3 DptfDevGen;DptfDevGen; C:\WINDOWS\system32\DRIVERS\DptfDevGen.sys [2013-08-24 28160]
R3 DptfDevProc;DptfDevProc; C:\WINDOWS\system32\DRIVERS\DptfDevProc.sys [2013-08-24 72192]
R3 DptfManager;DptfManager; C:\WINDOWS\system32\DRIVERS\DptfManager.sys [2013-08-24 176640]
R3 GPIO;@oem43.inf,%GPIO.SVCDESC%;Intel SoC GPIO Controller Driver; C:\WINDOWS\System32\drivers\iaiogpioe.sys [2013-12-30 23552]
R3 GpioVirtual;@oem46.inf,%Driver_Service.Desc%;GPED Virtual GPIO controller driver; C:\WINDOWS\System32\drivers\iaiogpiovirtual.sys [2013-12-30 16896]
R3 HIDSwitch;@oem35.inf,%ASSW.DisplayName%;ASUS Wireless Radio Control; C:\WINDOWS\System32\drivers\AsHIDSwitch.sys [2013-11-04 17720]
R3 iaioi2c;@oem42.inf,%Driver_Service.Desc%;I2C Controller Service; C:\WINDOWS\System32\drivers\iaioi2ce.sys [2013-11-15 58368]
R3 iaiouart;@oem44.inf,%iaiouart.SVCDESC%;UART Controller; C:\WINDOWS\System32\drivers\iaiouart.sys [2013-12-30 87552]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd32.sys [2014-02-02 3381248]
R3 IntelSST;@oem49.inf,%IntelSST_Audio.SvcDesc%;Intel SST Audio Device (WDM); C:\WINDOWS\system32\drivers\isstrtc.sys [2013-12-30 254464]
R3 INVN_MotionApps;@oem25.inf,%INVN_MotionAppsDisplayName%;InvenSense MotionApps Driver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2014-05-31 188416]
R3 iwdbus;@oem15.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2013-08-22 22936]
R3 MT9M114;@oem18.inf,%MT9M114.SVCDESC%;Camera Sensor MT9M114; C:\WINDOWS\System32\drivers\MT9M114.sys [2013-08-23 38400]
R3 PMIC;@oem48.inf,%Driver_Service.Desc%;Intel(R) Power Management IC Device Service; C:\WINDOWS\System32\drivers\PMIC.sys [2013-12-30 48128]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2014-01-27 132096]
R3 rtii2sac;@oem16.inf,%CodecDevice.SVCDESC%;Realtek I2S Audio Codec Device Driver; C:\WINDOWS\system32\DRIVERS\rtii2sac.sys [2013-09-13 129752]
R3 SensorsServiceDriver;@sensorsservicedriver.inf,%WudfSensorsServiceDriverDisplayName%;UMDF Reflector service for SensorsServiceDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2014-05-31 188416]
R3 TXEI;@oem11.inf,%TEE_SvcDesc%;Intel(R) Trusted Execution Engine Interface ; C:\WINDOWS\System32\drivers\TXEI.sys [2013-08-03 76304]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2014-04-30 30720]
S0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2013-08-09 505192]
S3 AgereSoftModem;@mdmagrs.inf,%FullProductName%;Agere Systems Soft Modem; C:\WINDOWS\system32\DRIVERS\AGRSM.sys [2013-06-18 1035776]
S3 AX88772;@netax88772.inf,%AX88772.DeviceDesc%;ASIX AX88772 USB2.0 to Fast Ethernet Adapter; C:\WINDOWS\system32\DRIVERS\ax88772.sys [2013-07-18 97896]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-07-24 1016320]
S3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-01-31 61440]
S3 btwampfl;@oem21.inf,%btwampfl.ServiceName%;btwampfl; C:\WINDOWS\system32\DRIVERS\btwampfl.sys [2013-12-20 144600]
S3 e1iexpress;@net1i32.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver I; C:\WINDOWS\system32\DRIVERS\e1i6332.sys [2013-06-18 379904]
S3 intaud_WaveExtensible;@oem14.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2013-08-22 33176]
S3 NETwNs32;@netwsn00.inf,___ %NIC_Service_DispName_WIN7%;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 32 Bit; C:\WINDOWS\system32\DRIVERS\Netwsn00.sys [2013-06-18 10372096]
S3 usbscan;@sti.inf,%usbscan.SvcDesc%;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-08-22 37888]
S3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2013-08-22 176768]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-19 81088]
R2 AsHidService;ASUS HID Access Service; C:\Program Files\ASUS\ATK Package\ATK Hotkey\AsHidSrv.exe [2013-05-16 103224]
R2 ASLDRService;ASLDR Service; C:\Program Files\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2013-01-15 107320]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2011-11-21 96896]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-12-13 50344]
R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2014-07-14 1390176]
R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2014-07-14 1767520]
R2 ClickToRunSvc;Služba Microsoft Office ClickToRun; C:\Program Files\Microsoft Office 15\ClientX86\OfficeClickToRun.exe [2014-11-11 1679536]
R2 DptfParticipantProcessorService;@oem12.inf,%WIN32_DPTF_PARTICIPANT_PROC_SERVICE_DISPLAY_NAME%;Intel(R) Dynamic Platform & Thermal Framework Processor Participant Service Application; C:\WINDOWS\system32\DptfParticipantProcessorService.exe [2013-08-24 75264]
R2 DptfPolicyCriticalService;@oem12.inf,%WIN32_DPTF_POLICY_CRITICAL_SERVICE_DISPLAY_NAME%;Intel(R) Dynamic Platform & Thermal Framework Critical Service Application; C:\WINDOWS\system32\DptfPolicyCriticalService.exe [2013-08-24 89088]
R2 DptfPolicyLpmService;@oem12.inf,%WIN32_DPTF_POLICY_LPM_SERVICE_DISPLAY_NAME%;Intel(R) Dynamic Platform & Thermal Framework Low Power Mode Service Application; C:\WINDOWS\system32\DptfPolicyLpmService.exe [2013-08-24 82432]
R3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [2014-12-13 3192344]
S2 BcmBtRSupport;@oem21.inf,%BcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service; C:\WINDOWS\system32\BtwRSupportService.exe [2013-12-20 1678040]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-07-30 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2014-04-03 315008]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\system32\IntelCpHeciSvc.exe [2014-02-11 277304]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2013-08-22 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-07-30 116648]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2013-02-01 150600]

-----------------EOF-----------------

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15799
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: avast nasel virus v nekolika souborech

#2 Příspěvek od JaRon »

ahoj,
prescanuj PC s ADWCleanerom - log sem
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

morlock
Návštěvník
Návštěvník
Příspěvky: 95
Registrován: 02 zář 2010 23:12

Re: avast nasel virus v nekolika souborech

#3 Příspěvek od morlock »

Ahoj,

tady je log ale nic tam asi nebude pac jsem pc projel Ccleanerem a ADWcleanerem uz predtim.


# AdwCleaner v4.107 - Report created 15/01/2015 at 12:08:04
# Updated 07/01/2015 by Xplode
# Database : 2015-01-13.2 [Live]
# Operating System : Windows 8.1 (32 bits)
# Username : Lenka - LENIK
# Running from : C:\Users\Lenka\Desktop\udrzba pocitace\adwcleaner_4.107.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Scheduled Tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\Conduit

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Google Chrome v39.0.2171.95


*************************

AdwCleaner[R0].txt - [1135 octets] - [14/01/2015 22:05:49]
AdwCleaner[R1].txt - [695 octets] - [15/01/2015 12:08:04]
AdwCleaner[S0].txt - [1205 octets] - [14/01/2015 22:10:35]

########## EOF - C:\AdwCleaner\AdwCleaner[R1].txt - [814 octets] ##########

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15799
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: avast nasel virus v nekolika souborech

#4 Příspěvek od JaRon »

tak potom to mas ciste - a nemame co riesit :)
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

morlock
Návštěvník
Návštěvník
Příspěvky: 95
Registrován: 02 zář 2010 23:12

Re: avast nasel virus v nekolika souborech

#5 Příspěvek od morlock »

No jo, ale porad je to pomale a taky nevim co s tema souborama v truhle avastu, jestli treba nebyly k necemu potrebne. Kam uklada Avast log? Ze by jsme zkoukli jestli to byl falesny poplach nebo skutecne virus.

Diky Martin

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15799
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: avast nasel virus v nekolika souborech

#6 Příspěvek od JaRon »

FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

morlock
Návštěvník
Návštěvník
Příspěvky: 95
Registrován: 02 zář 2010 23:12

Re: avast nasel virus v nekolika souborech

#7 Příspěvek od morlock »

tak, jeden z tech souboru presunutych do truhly je

youtube-flash-player-update-version-9.exe

nechal jsem to projet virustotalem vysledek je 30 z 50ti. Protoze jsem ten soubor spoustel tak jsem mel obavu aby tam nekde nebyl schovan trojan nebo neco. No ale snad je to ok kdyz si tam nic nenasel.


Diky za pomoc

Martin

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15799
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: avast nasel virus v nekolika souborech

#8 Příspěvek od JaRon »

ono tieto subory typu player maju casto ako bonus nejaky spomalovaci toolbar :)
to si vycistil s ADWCleanerom ,,,
nemas zac
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Zamčeno