Stránka 1 z 1

Vyskakování nevyžádané stránky, zpomalený PC

Napsal: 27 led 2015 20:41
od nereide
Dobrý den,

obracím se na Vás znovu s žádostí o pomoc :)

Není to nic akutního, přesto se mi opakovaně, nepředvídatelně ukazuje tato stránka
http://barisderin.com/?p=2229, a Mozilla mi občas padá. Takže nějaká potvora tu asi je.

mimo to se problém v PC objevuje jen v Excelu (seká se), což se před tímto objevením nedělo a celkovým mírným zpomalením PC. Vlastně mi ještě vůbec nejdou spouštět jakákoliv videa na netu (typicky youtube, i přesto, že ovladače mám stažené a povolené), ale to s tím zřejmě nesouvisí.

Moc díky za pomoc, samozřejmě zase přispěji

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 24-01-2015 01
Ran by uzivatel (administrator) on NTBACER on 27-01-2015 20:38:12
Running from C:\Documents and Settings\uzivatel\Plocha
Loaded Profiles: uzivatel (Available profiles: uzivatel)
Platform: Systém Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: Čeština
Internet Explorer Version 8 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Lavasoft) C:\Documents and Settings\All Users\Data aplikací\Ad-Aware Browsing Protection\adawarebp.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe
(Microsoft Corporation) C:\WINDOWS\system32\wbem\unsecapp.exe
(Ghisler Software GmbH) C:\totalcmd\TOTALCMD.EXE
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jucheck.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5226600 2014-11-24] (AVAST Software)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKLM\...\Run: [Ad-Aware Browsing Protection] => C:\Documents and Settings\All Users\Data aplikací\Ad-Aware Browsing Protection\adawarebp.exe [558672 2013-09-11] (Lavasoft)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-343818398-1547161642-1801674531-1003\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/?pc=AV01
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTer ... DF&PC=AV01
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKU\S-1-5-21-343818398-1547161642-1801674531-1003\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTer ... DF&PC=AV01
HKU\S-1-5-21-343818398-1547161642-1801674531-1003\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/?pc=AV01
HKU\S-1-5-21-343818398-1547161642-1801674531-1003\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.msn.com/?pc=AV01
URLSearchHook: HKLM - Default Value = {855F3B16-6D32-4fe6-8A56-BBB695989046}
URLSearchHook: [S-1-5-21-343818398-1547161642-1801674531-1003] ATTENTION ==> Default URLSearchHook is missing.
URLSearchHook: HKU\S-1-5-21-343818398-1547161642-1801674531-1003 - (No Name) - {6c97a91e-4524-4019-86af-2aa2d567bf5c} - No File
HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs: "about:newtab" <======= ATTENTION
SearchScopes: HKLM -> DefaultScope {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = http://www.bing.com/search?q={searchTer ... DF&PC=AV01
SearchScopes: HKLM -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = http://www.bing.com/search?q={searchTer ... DF&PC=AV01
SearchScopes: HKU\S-1-5-21-343818398-1547161642-1801674531-1003 -> DefaultScope {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = http://www.bing.com/search?q={searchTer ... DF&PC=AV01
SearchScopes: HKU\S-1-5-21-343818398-1547161642-1801674531-1003 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = http://www.bing.com/search?q={searchTer ... DF&PC=AV01
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler: ipp - No CLSID Value -
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 213.46.172.36 213.46.172.37

FireFox:
========
FF ProfilePath: C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\winhhlow.default-1371402308171
FF Homepage: hxxp://www.centrum.cz/
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_16_0_0_235.dll ()
FF Plugin: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @xstandard.com/XStandard -> C:\Program Files\XStandard\Bin\NPXStandard.dll (Belus Technology Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Extension: YouTube™ Flash® Player - C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\winhhlow.default-1371402308171\Extensions\jid1-HAV2inXAnQPIeA@jetpack.xpi [2014-11-10]
FF Extension: Flash Control - C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\winhhlow.default-1371402308171\Extensions\jid1-sNL73VCI4UB0Fw@jetpack.xpi [2014-10-08]
FF Extension: YouTube Flash Video Player - C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\winhhlow.default-1371402308171\Extensions\{f3bd3dd2-2888-44c5-91a2-2caeb33fb898}.xpi [2014-12-19]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2011-05-08]

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-11-24]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-11-24] (AVAST Software)
R2 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182696 2014-10-08] (Oracle Corporation)
S3 CiSvc; %SystemRoot%\system32\cisvc.exe [X]
S4 MDM; "C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE" [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 AR5416; C:\WINDOWS\System32\DRIVERS\athw.sys [1585728 2009-09-30] (Atheros Communications, Inc.)
R2 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [24184 2014-11-24] ()
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [70384 2014-11-24] (AVAST Software)
R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [55240 2014-11-24] (AVAST Software)
R0 aswRvrt; C:\WINDOWS\system32\Drivers\aswRvrt.sys [49944 2014-11-24] ()
R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [787800 2014-11-24] (AVAST Software)
R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [423784 2014-11-24] (AVAST Software)
R1 aswTdi; C:\WINDOWS\system32\drivers\aswTdi.sys [57928 2014-11-24] (AVAST Software)
R0 aswVmm; C:\WINDOWS\system32\Drivers\aswVmm.sys [206248 2014-11-24] ()
R2 Ethpdrv; C:\WINDOWS\System32\DRIVERS\ethpdrv.sys [9728 2005-09-08] (Gemfor s.r.o.) [File not signed]
S3 IntcHdmiAddService; C:\WINDOWS\System32\drivers\IntcHdmi.sys [105984 2007-05-04] (Intel(R) Corporation) [File not signed]
S3 ipw_bus; C:\WINDOWS\System32\DRIVERS\ipw_bus.sys [58320 2005-09-27] (MCCI)
S3 ipw_mdfl; C:\WINDOWS\System32\DRIVERS\ipw_mdfl.sys [8272 2005-09-27] (MCCI)
S3 ipw_mdm; C:\WINDOWS\System32\DRIVERS\ipw_mdm.sys [95440 2005-09-27] (MCCI)
R3 tap0901; C:\WINDOWS\System32\DRIVERS\tap0901.sys [35288 2013-08-22] (The OpenVPN Project)
U3 TrueSight; c:\windows\system32\drivers\TrueSight.sys [111872 2012-01-03] () [File not signed]
S4 IntelIde; No ImagePath
S1 SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [X]
S1 SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [X]
U1 WS2IFSL; No ImagePath

==================== NetSvcs (Whitelisted) ===================


(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-27 20:38 - 2015-01-27 20:38 - 00010534 _____ () C:\Documents and Settings\uzivatel\Plocha\FRST.txt
2015-01-27 20:37 - 2015-01-27 20:37 - 00000000 ____D () C:\Documents and Settings\uzivatel\Plocha\FRST-OlderVersion
2015-01-26 20:28 - 2015-01-26 20:29 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2015-01-19 21:30 - 2015-01-19 21:32 - 00000000 ____D () C:\Documents and Settings\uzivatel\Dokumenty\2015-01-19
2015-01-07 20:47 - 2015-01-07 20:47 - 00073544 _____ () C:\Documents and Settings\uzivatel\Dokumenty\Osmáci degu Běhací talíř.htm
2015-01-07 20:47 - 2015-01-07 20:47 - 00000000 ____D () C:\Documents and Settings\uzivatel\Dokumenty\Osmáci degu Běhací talíř_soubory
2015-01-07 20:44 - 2015-01-07 20:44 - 00011512 _____ () C:\Documents and Settings\uzivatel\Dokumenty\Osmák Degu - JAK VYROBIT OSMAKŮM KOLOTOČ.htm
2015-01-07 20:44 - 2015-01-07 20:44 - 00000000 ____D () C:\Documents and Settings\uzivatel\Dokumenty\Osmák Degu - JAK VYROBIT OSMAKŮM KOLOTOČ_soubory

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-27 20:38 - 2014-09-17 19:49 - 00000000 ____D () C:\Documents and Settings\uzivatel\Local Settings\Temp
2015-01-27 20:38 - 2013-10-02 09:43 - 00000000 ____D () C:\FRST
2015-01-27 20:38 - 2009-12-23 00:59 - 00000000 ____D () C:\Documents and Settings\uzivatel\Plocha
2015-01-27 20:37 - 2014-09-16 20:36 - 01120768 _____ (Farbar) C:\Documents and Settings\uzivatel\Plocha\FRST.exe
2015-01-27 17:11 - 2011-08-06 10:24 - 00000000 ____D () C:\Documents and Settings\uzivatel\Dokumenty\prace
2015-01-27 17:02 - 2014-09-18 20:36 - 00002563 _____ () C:\Documents and Settings\uzivatel\Plocha\Microsoft Office Word 2007.lnk
2015-01-27 17:02 - 2010-03-14 13:26 - 00000000 ____D () C:\Documents and Settings\uzivatel\Dokumenty\Stažené soubory
2015-01-27 16:05 - 2014-09-18 19:33 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2015-01-27 15:12 - 2009-12-23 00:54 - 01701046 _____ () C:\WINDOWS\WindowsUpdate.log
2015-01-27 15:11 - 2014-12-26 18:21 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\Ad-Aware Browsing Protection
2015-01-27 15:11 - 2009-12-23 01:48 - 00000159 _____ () C:\WINDOWS\wiadebug.log
2015-01-27 15:11 - 2009-12-23 01:48 - 00000049 _____ () C:\WINDOWS\wiaservc.log
2015-01-26 23:05 - 2009-12-23 00:59 - 00000272 ___SH () C:\Documents and Settings\uzivatel\ntuser.ini
2015-01-26 23:05 - 2009-12-23 00:59 - 00000000 ____D () C:\Documents and Settings\uzivatel
2015-01-26 20:28 - 2010-05-23 19:11 - 00149670 ____H () C:\treeinfo.wc
2015-01-26 19:38 - 2001-10-25 17:00 - 00002206 _____ () C:\WINDOWS\system32\wpa.dbl
2015-01-21 19:20 - 2014-09-18 20:36 - 00002477 _____ () C:\Documents and Settings\uzivatel\Plocha\Microsoft Office Excel 2007.lnk
2015-01-19 21:33 - 2009-12-23 00:59 - 00000000 ___RD () C:\Documents and Settings\uzivatel\Dokumenty
2015-01-19 21:32 - 2014-05-07 18:38 - 00036363 _____ () C:\WINDOWS\CSTBox.INI
2015-01-19 19:55 - 2009-12-23 00:59 - 00000000 ___RD () C:\Documents and Settings\uzivatel\Dokumenty\Obrázky
2015-01-17 11:57 - 2014-03-05 22:37 - 00000000 ____D () C:\Documents and Settings\uzivatel\Dokumenty\PRIVYDELKY

==================== Files in the root of some directories =======

2010-01-30 16:49 - 2012-03-16 08:31 - 0004397 _____ () C:\Documents and Settings\uzivatel\Data aplikací\HPCOM_48BitScanUpdate.log
2011-09-27 13:43 - 2011-09-27 13:43 - 0000268 ___RH () C:\Documents and Settings\uzivatel\Data aplikací\Sounds
2011-09-27 13:46 - 2012-01-04 22:20 - 0000000 _____ () C:\Documents and Settings\uzivatel\Data aplikací\Space Choir
2010-01-09 17:35 - 2013-09-28 00:21 - 0123392 _____ () C:\Documents and Settings\uzivatel\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2011-10-16 22:03 - 2012-05-28 22:17 - 0002568 _____ () C:\Documents and Settings\uzivatel\Local Settings\Data aplikací\SRDownloader(1).err
2011-10-16 20:28 - 2012-11-03 14:07 - 0001080 _____ () C:\Documents and Settings\uzivatel\Local Settings\Data aplikací\SRDownloader(1).nast
2010-10-01 21:52 - 2012-08-10 17:48 - 0001064 ____C () C:\Documents and Settings\uzivatel\Local Settings\Data aplikací\SRDownloader.err
2010-10-01 21:59 - 2012-08-10 20:39 - 0001120 ____C () C:\Documents and Settings\uzivatel\Local Settings\Data aplikací\SRDownloader.nast

Some content of TEMP:
====================
C:\Documents and Settings\uzivatel\Local Settings\Temp\ochelper.exe
C:\Documents and Settings\uzivatel\Local Settings\Temp\PIPInstaller_PTV_.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

==================== End Of Log ============================

Re: Vyskakování nevyžádané stránky, zpomalený PC

Napsal: 27 led 2015 21:01
od Rudy
Zdravím!
Spusťte nejprve tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.

Re: Vyskakování nevyžádané stránky, zpomalený PC

Napsal: 27 led 2015 22:25
od nereide
Díky za rychlou odpověď!

Zpráva je tu :)

# AdwCleaner v4.109 - Report created 27/01/2015 at 22:18:51
# Updated 24/01/2015 by Xplode
# Database : 2015-01-24.3 [Local]
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : uzivatel - NTBACER
# Running from : C:\Documents and Settings\uzivatel\Plocha\adwcleaner_4.109.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\blekko toolbars
Folder Deleted : C:\Program Files\Toolbar Cleaner
Folder Deleted : C:\DOCUME~1\uzivatel\LOCALS~1\Temp\AskSearch
Folder Deleted : C:\Documents and Settings\uzivatel\Data aplikací\adawaretb
Folder Deleted : C:\Documents and Settings\uzivatel\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\cmaiofennmphjldldcpphcechfnnohja
Folder Deleted : C:\Documents and Settings\uzivatel\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Extensions\aaaalipaokhkccgmgkdglfinfnfhflko
File Deleted : C:\Documents and Settings\uzivatel\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Local Storage\chrome-extension_aaaalipaokhkccgmgkdglfinfnfhflko_0.localstorage

***** [ Scheduled Tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{6C97A91E-4524-4019-86AF-2AA2D567BF5C}]
Key Deleted : HKCU\Software\Ask.com
Key Deleted : HKCU\Software\AskToolbar
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\AppDataLow\AskToolbarInfo
Key Deleted : HKCU\Software\AppDataLow\Software\adawarebp
Key Deleted : HKLM\SOFTWARE\adawaretb
Key Deleted : HKLM\SOFTWARE\Toolbar Cleaner
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Toolbar Cleaner

***** [ Browsers ] *****

-\\ Internet Explorer v0.0.0.0


-\\ Mozilla Firefox v35.0.1 (x86 cs)


-\\ Comodo Dragon v

[C:\Documents and Settings\uzivatel\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://search.ask.com/web?o=APN10257&doi=2014-09-18&apn_dtid=%5ECMD161%5EYY%5EUS&apn_ptnrs=%5EAGO&q={searchTerms}
[C:\Documents and Settings\uzivatel\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\preferences] - Deleted [Extension] : cmaiofennmphjldldcpphcechfnnohja
[C:\Documents and Settings\uzivatel\Local Settings\Data aplikací\Comodo\Dragon\User Data\Default\preferences] - Deleted [Extension] : aaaalipaokhkccgmgkdglfinfnfhflko

*************************

AdwCleaner[R0].txt - [3613 octets] - [02/10/2013 08:31:54]
AdwCleaner[R1].txt - [938 octets] - [02/10/2013 08:46:14]
AdwCleaner[R2].txt - [997 octets] - [02/10/2013 09:15:03]
AdwCleaner[R3].txt - [1413 octets] - [16/09/2014 21:03:34]
AdwCleaner[R4].txt - [3682 octets] - [27/01/2015 22:16:48]
AdwCleaner[S0].txt - [3584 octets] - [02/10/2013 08:41:46]
AdwCleaner[S1].txt - [1057 octets] - [02/10/2013 09:16:03]
AdwCleaner[S2].txt - [1476 octets] - [16/09/2014 21:04:30]
AdwCleaner[S3].txt - [3655 octets] - [27/01/2015 22:18:51]

########## EOF - C:\AdwCleaner\AdwCleaner[S3].txt - [3715 octets] ##########

Re: Vyskakování nevyžádané stránky, zpomalený PC

Napsal: 27 led 2015 22:44
od Rudy
Dejte nový log FRST.

Re: Vyskakování nevyžádané stránky, zpomalený PC

Napsal: 27 led 2015 23:25
od nereide
Nový log je níže, jinak k PC se dostanu až zítra navečer, tak odpovím pak.


Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 24-01-2015 01
Ran by uzivatel (administrator) on NTBACER on 27-01-2015 23:23:41
Running from C:\Documents and Settings\uzivatel\Plocha
Loaded Profiles: uzivatel (Available profiles: uzivatel)
Platform: Systém Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: Čeština
Internet Explorer Version 8 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Lavasoft) C:\Documents and Settings\All Users\Data aplikací\Ad-Aware Browsing Protection\adawarebp.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Ghisler Software GmbH) C:\totalcmd\TOTALCMD.EXE
(Microsoft Corporation) C:\WINDOWS\system32\wbem\unsecapp.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jucheck.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\EXCEL.EXE


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5226600 2014-11-24] (AVAST Software)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKLM\...\Run: [Ad-Aware Browsing Protection] => C:\Documents and Settings\All Users\Data aplikací\Ad-Aware Browsing Protection\adawarebp.exe [558672 2013-09-11] (Lavasoft)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-343818398-1547161642-1801674531-1003\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/?pc=AV01
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTer ... DF&PC=AV01
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKU\S-1-5-21-343818398-1547161642-1801674531-1003\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTer ... DF&PC=AV01
HKU\S-1-5-21-343818398-1547161642-1801674531-1003\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/?pc=AV01
HKU\S-1-5-21-343818398-1547161642-1801674531-1003\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.msn.com/?pc=AV01
URLSearchHook: HKLM - Default Value = {855F3B16-6D32-4fe6-8A56-BBB695989046}
URLSearchHook: [S-1-5-21-343818398-1547161642-1801674531-1003] ATTENTION ==> Default URLSearchHook is missing.
HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs: "about:newtab" <======= ATTENTION
SearchScopes: HKLM -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = http://www.bing.com/search?q={searchTer ... DF&PC=AV01
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-343818398-1547161642-1801674531-1003 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = http://www.bing.com/search?q={searchTer ... DF&PC=AV01
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler: ipp - No CLSID Value -
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 213.46.172.36 213.46.172.37

FireFox:
========
FF ProfilePath: C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\winhhlow.default-1371402308171
FF Homepage: hxxp://www.centrum.cz/
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_16_0_0_235.dll ()
FF Plugin: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @xstandard.com/XStandard -> C:\Program Files\XStandard\Bin\NPXStandard.dll (Belus Technology Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Extension: YouTube™ Flash® Player - C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\winhhlow.default-1371402308171\Extensions\jid1-HAV2inXAnQPIeA@jetpack.xpi [2014-11-10]
FF Extension: Flash Control - C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\winhhlow.default-1371402308171\Extensions\jid1-sNL73VCI4UB0Fw@jetpack.xpi [2014-10-08]
FF Extension: YouTube Flash Video Player - C:\Documents and Settings\uzivatel\Data aplikací\Mozilla\Firefox\Profiles\winhhlow.default-1371402308171\Extensions\{f3bd3dd2-2888-44c5-91a2-2caeb33fb898}.xpi [2014-12-19]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2011-05-08]

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-11-24]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-11-24] (AVAST Software)
R2 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182696 2014-10-08] (Oracle Corporation)
S3 CiSvc; %SystemRoot%\system32\cisvc.exe [X]
S4 MDM; "C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE" [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 AR5416; C:\WINDOWS\System32\DRIVERS\athw.sys [1585728 2009-09-30] (Atheros Communications, Inc.)
R2 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [24184 2014-11-24] ()
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [70384 2014-11-24] (AVAST Software)
R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [55240 2014-11-24] (AVAST Software)
R0 aswRvrt; C:\WINDOWS\system32\Drivers\aswRvrt.sys [49944 2014-11-24] ()
R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [787800 2014-11-24] (AVAST Software)
R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [423784 2014-11-24] (AVAST Software)
R1 aswTdi; C:\WINDOWS\system32\drivers\aswTdi.sys [57928 2014-11-24] (AVAST Software)
R0 aswVmm; C:\WINDOWS\system32\Drivers\aswVmm.sys [206248 2014-11-24] ()
R2 Ethpdrv; C:\WINDOWS\System32\DRIVERS\ethpdrv.sys [9728 2005-09-08] (Gemfor s.r.o.) [File not signed]
S3 IntcHdmiAddService; C:\WINDOWS\System32\drivers\IntcHdmi.sys [105984 2007-05-04] (Intel(R) Corporation) [File not signed]
S3 ipw_bus; C:\WINDOWS\System32\DRIVERS\ipw_bus.sys [58320 2005-09-27] (MCCI)
S3 ipw_mdfl; C:\WINDOWS\System32\DRIVERS\ipw_mdfl.sys [8272 2005-09-27] (MCCI)
S3 ipw_mdm; C:\WINDOWS\System32\DRIVERS\ipw_mdm.sys [95440 2005-09-27] (MCCI)
R3 tap0901; C:\WINDOWS\System32\DRIVERS\tap0901.sys [35288 2013-08-22] (The OpenVPN Project)
U3 TrueSight; c:\windows\system32\drivers\TrueSight.sys [111872 2012-01-03] () [File not signed]
S4 IntelIde; No ImagePath
S1 SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [X]
S1 SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [X]
U1 WS2IFSL; No ImagePath

==================== NetSvcs (Whitelisted) ===================


(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-27 22:15 - 2015-01-27 22:15 - 02194432 _____ () C:\Documents and Settings\uzivatel\Plocha\adwcleaner_4.109.exe
2015-01-27 20:38 - 2015-01-27 23:24 - 00010342 _____ () C:\Documents and Settings\uzivatel\Plocha\FRST.txt
2015-01-27 20:37 - 2015-01-27 20:37 - 00000000 ____D () C:\Documents and Settings\uzivatel\Plocha\FRST-OlderVersion
2015-01-26 20:28 - 2015-01-26 20:29 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2015-01-19 21:30 - 2015-01-19 21:32 - 00000000 ____D () C:\Documents and Settings\uzivatel\Dokumenty\2015-01-19
2015-01-07 20:47 - 2015-01-07 20:47 - 00073544 _____ () C:\Documents and Settings\uzivatel\Dokumenty\Osmáci degu Běhací talíř.htm
2015-01-07 20:47 - 2015-01-07 20:47 - 00000000 ____D () C:\Documents and Settings\uzivatel\Dokumenty\Osmáci degu Běhací talíř_soubory
2015-01-07 20:44 - 2015-01-07 20:44 - 00011512 _____ () C:\Documents and Settings\uzivatel\Dokumenty\Osmák Degu - JAK VYROBIT OSMAKŮM KOLOTOČ.htm
2015-01-07 20:44 - 2015-01-07 20:44 - 00000000 ____D () C:\Documents and Settings\uzivatel\Dokumenty\Osmák Degu - JAK VYROBIT OSMAKŮM KOLOTOČ_soubory

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-27 23:24 - 2014-09-17 19:49 - 00000000 ____D () C:\Documents and Settings\uzivatel\Local Settings\Temp
2015-01-27 23:23 - 2013-10-02 09:43 - 00000000 ____D () C:\FRST
2015-01-27 23:23 - 2009-12-23 00:59 - 00000000 ____D () C:\Documents and Settings\uzivatel\Plocha
2015-01-27 22:22 - 2009-12-23 00:54 - 01704236 _____ () C:\WINDOWS\WindowsUpdate.log
2015-01-27 22:21 - 2014-12-26 18:21 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\Ad-Aware Browsing Protection
2015-01-27 22:20 - 2009-12-23 01:48 - 00000159 _____ () C:\WINDOWS\wiadebug.log
2015-01-27 22:20 - 2009-12-23 01:48 - 00000049 _____ () C:\WINDOWS\wiaservc.log
2015-01-27 22:19 - 2014-09-18 19:33 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2015-01-27 22:19 - 2013-10-02 08:31 - 00000000 ____D () C:\AdwCleaner
2015-01-27 22:19 - 2009-12-23 00:59 - 00000272 ___SH () C:\Documents and Settings\uzivatel\ntuser.ini
2015-01-27 22:19 - 2009-12-23 00:59 - 00000000 ____D () C:\Documents and Settings\uzivatel
2015-01-27 22:18 - 2009-12-23 01:44 - 00000000 __RHD () C:\Documents and Settings\All Users\Data aplikací
2015-01-27 22:16 - 2010-03-14 13:26 - 00000000 ____D () C:\Documents and Settings\uzivatel\Dokumenty\Stažené soubory
2015-01-27 20:37 - 2014-09-16 20:36 - 01120768 _____ (Farbar) C:\Documents and Settings\uzivatel\Plocha\FRST.exe
2015-01-27 17:11 - 2011-08-06 10:24 - 00000000 ____D () C:\Documents and Settings\uzivatel\Dokumenty\prace
2015-01-27 17:02 - 2014-09-18 20:36 - 00002563 _____ () C:\Documents and Settings\uzivatel\Plocha\Microsoft Office Word 2007.lnk
2015-01-26 20:28 - 2010-05-23 19:11 - 00149670 ____H () C:\treeinfo.wc
2015-01-26 19:38 - 2001-10-25 17:00 - 00002206 _____ () C:\WINDOWS\system32\wpa.dbl
2015-01-21 19:20 - 2014-09-18 20:36 - 00002477 _____ () C:\Documents and Settings\uzivatel\Plocha\Microsoft Office Excel 2007.lnk
2015-01-19 21:33 - 2009-12-23 00:59 - 00000000 ___RD () C:\Documents and Settings\uzivatel\Dokumenty
2015-01-19 21:32 - 2014-05-07 18:38 - 00036363 _____ () C:\WINDOWS\CSTBox.INI
2015-01-19 19:55 - 2009-12-23 00:59 - 00000000 ___RD () C:\Documents and Settings\uzivatel\Dokumenty\Obrázky
2015-01-17 11:57 - 2014-03-05 22:37 - 00000000 ____D () C:\Documents and Settings\uzivatel\Dokumenty\PRIVYDELKY

==================== Files in the root of some directories =======

2010-01-30 16:49 - 2012-03-16 08:31 - 0004397 _____ () C:\Documents and Settings\uzivatel\Data aplikací\HPCOM_48BitScanUpdate.log
2011-09-27 13:43 - 2011-09-27 13:43 - 0000268 ___RH () C:\Documents and Settings\uzivatel\Data aplikací\Sounds
2011-09-27 13:46 - 2012-01-04 22:20 - 0000000 _____ () C:\Documents and Settings\uzivatel\Data aplikací\Space Choir
2010-01-09 17:35 - 2013-09-28 00:21 - 0123392 _____ () C:\Documents and Settings\uzivatel\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2011-10-16 22:03 - 2012-05-28 22:17 - 0002568 _____ () C:\Documents and Settings\uzivatel\Local Settings\Data aplikací\SRDownloader(1).err
2011-10-16 20:28 - 2012-11-03 14:07 - 0001080 _____ () C:\Documents and Settings\uzivatel\Local Settings\Data aplikací\SRDownloader(1).nast
2010-10-01 21:52 - 2012-08-10 17:48 - 0001064 ____C () C:\Documents and Settings\uzivatel\Local Settings\Data aplikací\SRDownloader.err
2010-10-01 21:59 - 2012-08-10 20:39 - 0001120 ____C () C:\Documents and Settings\uzivatel\Local Settings\Data aplikací\SRDownloader.nast

Some content of TEMP:
====================
C:\Documents and Settings\uzivatel\Local Settings\Temp\ochelper.exe
C:\Documents and Settings\uzivatel\Local Settings\Temp\PIPInstaller_PTV_.exe
C:\Documents and Settings\uzivatel\Local Settings\Temp\Quarantine.exe
C:\Documents and Settings\uzivatel\Local Settings\Temp\sqlite3.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

==================== End Of Log ============================

Re: Vyskakování nevyžádané stránky, zpomalený PC

Napsal: 28 led 2015 17:31
od Rudy
Otevřte poznámkový blok a zkopírujte do něj:
Start
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-343818398-1547161642-1801674531-1003\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
URLSearchHook: [S-1-5-21-343818398-1547161642-1801674531-1003] ATTENTION ==> Default URLSearchHook is missing.
HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs: "about:newtab" <======= ATTENTION
SearchScopes: HKLM -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = http://www.bing.com/search?q={searchTer ... DF&PC=AV01
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-343818398-1547161642-1801674531-1003 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = http://www.bing.com/search?q={searchTer ... DF&PC=AV01
C:\Documents and Settings\uzivatel\Local Settings\Temp
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Re: Vyskakování nevyžádané stránky, zpomalený PC

Napsal: 28 led 2015 19:39
od nereide
Dobrý den, provedeno :)

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 28-01-2015 01
Ran by uzivatel at 2015-01-28 19:37:25 Run:3
Running from C:\Documents and Settings\uzivatel\Plocha
Loaded Profiles: uzivatel (Available profiles: uzivatel)
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
Start
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-343818398-1547161642-1801674531-1003\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
URLSearchHook: [S-1-5-21-343818398-1547161642-1801674531-1003] ATTENTION ==> Default URLSearchHook is missing.
HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs: "about:newtab" <======= ATTENTION
SearchScopes: HKLM -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = http://www.bing.com/search?q={searchTer ... DF&PC=AV01
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-343818398-1547161642-1801674531-1003 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = http://www.bing.com/search?q={searchTer ... DF&PC=AV01
C:\Documents and Settings\uzivatel\Local Settings\Temp
End
*****************

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value deleted successfully.
"HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.
"HKU\S-1-5-21-343818398-1547161642-1801674531-1003\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.
Error setting Default URLSearchHook.
HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs\\Tabs => Value was restored successfully.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{632F07F3-19A1-4d16-A23F-E6CE9486BAB5}" => Key deleted successfully.
HKCR\CLSID\{632F07F3-19A1-4d16-A23F-E6CE9486BAB5} => Key not found.
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
"HKU\S-1-5-21-343818398-1547161642-1801674531-1003\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{632F07F3-19A1-4d16-A23F-E6CE9486BAB5}" => Key deleted successfully.
HKCR\CLSID\{632F07F3-19A1-4d16-A23F-E6CE9486BAB5} => Key not found.
C:\Documents and Settings\uzivatel\Local Settings\Temp => Moved successfully.

==== End of Fixlog 19:37:26 ====

Re: Vyskakování nevyžádané stránky, zpomalený PC

Napsal: 28 led 2015 19:41
od Rudy
Smazáno. Nastala nějaká změna?

Re: Vyskakování nevyžádané stránky, zpomalený PC

Napsal: 28 led 2015 19:54
od nereide
Ano, už se mi nenabízí stránka a PC je také rychlejší. Ještě vyřešit problém s youtube a budu šťastná, ale to nepatří k tomuto fóru.

Velmi děkuji za Váš čas a ochotu :) Téma se může uzavřít a příspěvek zasílám jako vždy.

Re: Vyskakování nevyžádané stránky, zpomalený PC

Napsal: 28 led 2015 20:24
od Rudy
nereide píše:Ještě vyřešit problém s youtube
Zkuste přeinstalovat FlashPlayer.

Re: Vyskakování nevyžádané stránky, zpomalený PC

Napsal: 28 led 2015 20:30
od nereide
Ano, provedu :)

Re: Vyskakování nevyžádané stránky, zpomalený PC

Napsal: 28 led 2015 20:57
od Rudy
OK.