Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Pomoc

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
KachnaCZ
Návštěvník
Návštěvník
Příspěvky: 33
Registrován: 08 srp 2013 21:01

Pomoc

#1 Příspěvek od KachnaCZ »

Dobrý den,prosím o pomoc mám tyto problémy :( :cry: -->
1) Pomalý pc (občas zamrzne)
2) Klesání FPS
3) Vyskakování tohoto okénka: viz screen --> http://prntscr.com/7x72as
4) Vysoký ping

Za každou radu budu rád,moc děkuji za pomoc :)

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13399
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: Pomoc

#2 Příspěvek od Roli »

Zdravím, jelikož z křišťálové koule zatím věštit neumím potřeboval bych ještě vidět log.txt z Rsit.
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

KachnaCZ
Návštěvník
Návštěvník
Příspěvky: 33
Registrován: 08 srp 2013 21:01

Re: Pomoc

#3 Příspěvek od KachnaCZ »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Jakub at 2015-07-26 22:33:47
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 37 GB (49%) free of 76 GB
Total RAM: 3786 MB (54% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:34:36, on 26.7.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17910)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Jakub\AppData\Local\Akamai\netsession_win.exe
C:\Program Files\SlimCleaner Plus\SlimCleanerPlus.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Skillbrains\lightshot\5.2.1.1\Lightshot.exe
C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\N360.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Jakub\AppData\Local\Akamai\netsession_win.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Windows\SysWOW64\cmd.exe
C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe
C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\coNatHst.exe
C:\Program Files\trend micro\Jakub.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://websearch.searchfix.info/?unqvl= ... 2015/07/05
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://websearch.searchfix.info/?unqvl= ... 2015/07/05
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\coIEPlg.dll
O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\IPS\IPSBHO.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\coIEPlg.dll
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Lightshot] C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_7B684F571039795D9613652596821858] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
O4 - HKCU\..\Run: [Akamai NetSession Interface] "C:\Users\Jakub\AppData\Local\Akamai\netsession_win.exe"
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [SlimCleaner Plus] "C:\Program Files\SlimCleaner Plus\SlimCleanerPlus.exe" /minimize /boot
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_6CE5017F567343CA.dll/cmsidewiki.html
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Norton 360 (N360) - Symantec Corporation - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\N360.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Realtek11nCU - Realtek - C:\Program Files (x86)\Realtek\11n USB Wireless LAN Utility\RtlService.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: SlimWare Utility Service Launcher (SlimService) - SlimWare Utilities, Inc. - C:\Program Files\SlimService\SlimServiceFactory.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: VIA Karaoke digital mixer Service (VIAKaraokeService) - Unknown owner - C:\Windows\system32\viakaraokesrv.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 9318 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs

C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\WLANExt.exe 2875232
\??\C:\Windows\system32\conhost.exe "168324592-327897476-1011132270-283730467-76430665514200959371584358286-1126667840
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\N360.exe" /s "N360" /m "C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\diMaster.dll" /prefetch:1
"C:\Program Files (x86)\Realtek\11n USB Wireless LAN Utility\RtlService.exe"
"C:\Program Files\SlimService\SlimServiceFactory.exe"
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\viakaraokesrv.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
C:\Windows\system32\sppsvc.exe
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\SlimService\SlimService.exe" -Embedding
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\servicing\TrustedInstaller.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
taskeng.exe {CBB3581D-3C7F-40B5-8E63-B09C75A86AAA}
C:\Windows\System32\svchost.exe -k WerSvcGroup
"C:\Windows\system32\SearchFilterHost.exe" 0 508 512 520 65536 516
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe" -r
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
"C:\Users\Jakub\AppData\Local\Akamai\netsession_win.exe"
"C:\Program Files\SlimCleaner Plus\SlimCleanerPlus.exe" /minimize /boot
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --on-initialized-event-handle=312 --parent-handle=316
"C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"taskhost.exe"
"C:\Program Files (x86)\Skillbrains\lightshot\5.2.1.1\Lightshot.exe"
"C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\N360.exe" /c /a /s UserSession
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="4800.0.1092338671\792577523" --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,21,44 --gpu-vendor-id=0x8086 --gpu-device-id=0x0102 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=9.17.10.4101 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Enabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/LoadStaleCacheExperiment/Disabled/*LocalNTPFast/Enabled/*NewProfileManagement/Enabled/*PasswordGeneration/Enabled/PasswordLinkInSettings/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Enabled/*SdchPersistence/Enabled/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_53/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_02/*UMA-Uniformity-Trial-5-Percent/group_07/*UMA-Uniformity-Trial-50-Percent/default/UMAInitialMetricsTiming/Control/*UseDelayAgnosticAEC/Disabled/*VoiceTrigger/Install/*WebRTC-ScreencastTargetBitrateOvershoot/Default/*WebRTC-SupportVP9/Default/WebRTC-UDPSocketNonBlockingIO/Enabled/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --font-cache-shared-mem-suffix=4800 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --use-image-texture-target=3553 --channel="4800.1.791420153\916318479" /prefetch:673131151
"C:/Users/Jakub/AppData/Local/Akamai/netsession_win.exe" --client
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Enabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*LoadStaleCacheExperiment/Disabled/*LocalNTPFast/Enabled/*NewProfileManagement/Enabled/*PasswordGeneration/Enabled/PasswordLinkInSettings/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Enabled/*SdchPersistence/Enabled/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_53/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_02/*UMA-Uniformity-Trial-5-Percent/group_07/*UMA-Uniformity-Trial-50-Percent/default/UMAInitialMetricsTiming/Control/*UseDelayAgnosticAEC/Disabled/*VoiceTrigger/Install/*WebRTC-ScreencastTargetBitrateOvershoot/Default/*WebRTC-SupportVP9/Default/WebRTC-UDPSocketNonBlockingIO/Enabled/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --font-cache-shared-mem-suffix=4800 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --use-image-texture-target=3553 --channel="4800.2.1424592886\729196728" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Enabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*LoadStaleCacheExperiment/Disabled/*LocalNTPFast/Enabled/*NewProfileManagement/Enabled/*PasswordGeneration/Enabled/PasswordLinkInSettings/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Enabled/*SdchPersistence/Enabled/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_53/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_02/*UMA-Uniformity-Trial-5-Percent/group_07/*UMA-Uniformity-Trial-50-Percent/default/UMAInitialMetricsTiming/Control/*UseDelayAgnosticAEC/Disabled/*VoiceTrigger/Install/*WebRTC-ScreencastTargetBitrateOvershoot/Default/*WebRTC-SupportVP9/Default/WebRTC-UDPSocketNonBlockingIO/Enabled/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --font-cache-shared-mem-suffix=4800 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --use-image-texture-target=3553 --channel="4800.3.1553599627\938401680" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="*BrowserBlacklist/Enabled/*CTRequiredForEVTrial/RequirementEnforced/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Enabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group1 dev:pp6 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*LoadStaleCacheExperiment/Disabled/*LocalNTPFast/Enabled/*NewProfileManagement/Enabled/*PasswordGeneration/Enabled/PasswordLinkInSettings/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Enabled/*SdchPersistence/Enabled/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_53/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_02/*UMA-Uniformity-Trial-5-Percent/group_07/*UMA-Uniformity-Trial-50-Percent/default/UMAInitialMetricsTiming/Control/*UseDelayAgnosticAEC/Disabled/*VoiceTrigger/Install/*WebRTC-ScreencastTargetBitrateOvershoot/Default/*WebRTC-SupportVP9/Default/WebRTC-UDPSocketNonBlockingIO/Enabled/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --font-cache-shared-mem-suffix=4800 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --use-image-texture-target=3553 --channel="4800.4.1066639377\734696337" /prefetch:673131151
taskeng.exe {CAEAD57D-6F3E-48F9-87FE-6492C3EDFD32}
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\Realtek\11n USB Wireless LAN Utility\RtWlan.exe" /H
C:\Windows\system32\cmd.exe /c "C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\coNatHst.exe" --parent-window=0 chrome-extension://mkfokfffehpeedafpekjeddnmnjhmcmk/ < \\.\pipe\chrome.nativeMessaging.in.95c79924c1da1357 > \\.\pipe\chrome.nativeMessaging.out.95c79924c1da1357
"C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe" -boot
\??\C:\Windows\system32\conhost.exe "-1707912604-1551382055784749832-2115194144592124752670513607-1441512219-192291359
"C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\coNatHst.exe" --parent-window=0 chrome-extension://mkfokfffehpeedafpekjeddnmnjhmcmk/
"C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.130\nacl64" --type=nacl-broker --channel="4800.6.1809610085\1005840986" /prefetch:-875166825
"C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.130\nacl64.exe" --type=nacl-loader --channel="4800.5.640069577\1080096995" --ignored=" --type=renderer " /prefetch:-1502398898
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Windows\system32\GWX\GWX.exe"
"C:\Users\Jakub\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player PPAPI Notifier.job - C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_18_0_0_209_pepper.exe -check pepperplugin
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\SlimCleaner Plus (Scheduled Scan - Jakub).job - C:\Program Files\SlimCleaner Plus\SlimCleanerPlus.exe /doScheduledScan
C:\Windows\tasks\SlimDrivers Startup.job - C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe -boot
C:\Windows\tasks\update-S-1-5-21-3680414956-1449008003-4083196519-1000.job - C:\Program Files (x86)\Skillbrains\Updater\Updater.exe -runmode=checkupdate
C:\Windows\tasks\update-sys.job - C:\Program Files (x86)\Skillbrains\Updater\Updater.exe -runmode=checkupdate

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Norton Identity Protection - C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\coIEPlg.dll [2015-06-26 932152]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Norton Identity Protection - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\coIEPlg.dll [2015-06-26 664888]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Norton Vulnerability Protection - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\IPS\IPSBHO.DLL [2015-03-05 392344]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-06-28 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-06-28 172640]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\coIEPlg.dll [2015-06-26 932152]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\coIEPlg.dll [2015-06-26 664888]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"HDAudDeck"=C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2000-01-01 5299320]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2015-01-30 174480]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2015-01-30 402320]
"Persistence"=C:\Windows\system32\igfxpers.exe [2015-01-30 445328]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"GoogleChromeAutoLaunch_7B684F571039795D9613652596821858"=C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2015-06-20 813896]
"Akamai NetSession Interface"=C:\Users\Jakub\AppData\Local\Akamai\netsession_win.exe [2014-10-29 4673432]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-04-08 8202008]
"SlimCleaner Plus"=C:\Program Files\SlimCleaner Plus\SlimCleanerPlus.exe [2015-06-19 26168088]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"HDAudDeck"=C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2000-01-01 5299320]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [2015-06-27 40336]
"HP Software Update"=C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [2010-03-12 49208]
""= []
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-04-30 334896]
"Lightshot"=C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe [2014-11-18 226560]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2015-01-30 442880]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll
"MSVideo8"=VfWWDM32.dll
"vidc.mjpg"=bdmjpeg64.dll
"vidc.mpeg"=bdmpegv64.dll
"msacm.bdmpeg"=bdmpega64.acm

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-07-26 22:33:48 ----D---- C:\Program Files\trend micro
2015-07-26 22:33:47 ----D---- C:\rsit
2015-07-26 17:22:37 ----D---- C:\Program Files (x86)\Skillbrains
2015-07-26 17:22:25 ----D---- C:\Program Files (x86)\uTorrent
2015-07-26 17:21:25 ----D---- C:\Users\Jakub\AppData\Roaming\uTorrent
2015-07-26 17:17:36 ----D---- C:\Users\Jakub\AppData\Roaming\BANDISOFT
2015-07-26 17:06:56 ----D---- C:\Program Files (x86)\Bandicam
2015-07-26 17:06:53 ----D---- C:\Program Files (x86)\BandiMPEG1
2015-07-26 15:38:29 ----D---- C:\Program Files (x86)\Farming Simulator 2015
2015-07-26 15:17:00 ----A---- C:\Windows\runSW.exe
2015-07-26 15:16:59 ----D---- C:\Program Files (x86)\REALTEK USB Wireless LAN Driver
2015-07-26 15:16:59 ----A---- C:\Windows\SwUSB.exe
2015-07-26 13:34:58 ----D---- C:\ProgramData\SlimWare Utilities Inc
2015-07-26 13:34:53 ----D---- C:\Program Files\SlimService
2015-07-26 13:34:53 ----D---- C:\Program Files\SlimCleaner Plus
2015-07-25 14:48:00 ----D---- C:\Program Files\Common Files\AV
2015-07-22 14:39:12 ----A---- C:\Windows\SYSWOW64\lpk.dll
2015-07-22 14:39:12 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2015-07-22 14:39:12 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2015-07-22 14:39:12 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2015-07-22 14:39:12 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2015-07-22 14:39:12 ----A---- C:\Windows\system32\lpk.dll
2015-07-22 14:39:12 ----A---- C:\Windows\system32\fontsub.dll
2015-07-22 14:39:12 ----A---- C:\Windows\system32\dciman32.dll
2015-07-22 14:39:12 ----A---- C:\Windows\system32\atmlib.dll
2015-07-22 14:39:12 ----A---- C:\Windows\system32\atmfd.dll
2015-07-17 20:38:36 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-07-17 20:38:36 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-07-17 20:38:36 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-07-17 20:38:36 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-07-17 20:38:36 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-07-17 20:38:36 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-07-17 20:38:36 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-07-17 20:38:36 ----A---- C:\Windows\system32\iernonce.dll
2015-07-17 20:38:36 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-07-17 20:38:36 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-07-17 20:38:36 ----A---- C:\Windows\system32\ie4uinit.exe
2015-07-17 20:38:35 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-07-17 20:38:35 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-07-17 20:38:35 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-07-17 20:38:34 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-07-17 20:38:34 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-07-17 20:38:34 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-07-17 20:38:34 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-07-17 20:38:34 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-07-17 20:38:34 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-07-17 20:38:34 ----A---- C:\Windows\system32\iedkcs32.dll
2015-07-17 20:38:33 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-07-17 20:38:33 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-07-17 20:38:33 ----A---- C:\Windows\system32\msfeeds.dll
2015-07-17 20:38:33 ----A---- C:\Windows\system32\iesetup.dll
2015-07-17 20:38:33 ----A---- C:\Windows\system32\ieapfltr.dll
2015-07-17 20:38:33 ----A---- C:\Windows\system32\dxtrans.dll
2015-07-17 20:38:32 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-07-17 20:38:31 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-07-17 20:38:31 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-07-17 20:38:31 ----A---- C:\Windows\system32\vbscript.dll
2015-07-17 20:38:31 ----A---- C:\Windows\system32\jsproxy.dll
2015-07-17 20:38:31 ----A---- C:\Windows\system32\ieUnatt.exe
2015-07-17 20:38:31 ----A---- C:\Windows\system32\dxtmsft.dll
2015-07-17 20:38:30 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-07-17 20:38:30 ----A---- C:\Windows\system32\mshtmled.dll
2015-07-17 20:38:30 ----A---- C:\Windows\system32\jscript.dll
2015-07-17 20:38:29 ----A---- C:\Windows\system32\wininet.dll
2015-07-17 20:38:28 ----A---- C:\Windows\system32\msrating.dll
2015-07-17 20:38:28 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-07-17 20:12:40 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-07-17 20:12:39 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-07-17 20:12:39 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-07-17 20:12:39 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-07-17 20:12:38 ----A---- C:\Windows\system32\urlmon.dll
2015-07-17 20:12:38 ----A---- C:\Windows\system32\ieui.dll
2015-07-17 20:12:38 ----A---- C:\Windows\system32\ieframe.dll
2015-07-17 20:12:37 ----A---- C:\Windows\system32\mshtml.dll
2015-07-17 20:12:36 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-07-17 20:12:36 ----A---- C:\Windows\system32\iertutil.dll
2015-07-17 12:34:47 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-07-17 12:34:47 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-07-17 12:34:47 ----A---- C:\Windows\system32\jscript9diag.dll
2015-07-17 12:34:47 ----A---- C:\Windows\system32\jscript9.dll
2015-07-17 12:27:44 ----A---- C:\Windows\system32\wksprt.exe
2015-07-17 12:27:44 ----A---- C:\Windows\system32\mstscax.dll
2015-07-17 12:27:43 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2015-07-17 12:27:41 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2015-07-17 12:27:41 ----A---- C:\Windows\SYSWOW64\rdvidcrl.dll
2015-07-17 12:27:41 ----A---- C:\Windows\system32\tsgqec.dll
2015-07-17 12:27:41 ----A---- C:\Windows\system32\rdvidcrl.dll
2015-07-17 12:14:25 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-07-17 12:14:25 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-07-17 12:14:25 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-07-17 12:14:25 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-07-17 12:14:25 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-07-17 12:14:25 ----A---- C:\Windows\system32\wuwebv.dll
2015-07-17 12:14:25 ----A---- C:\Windows\system32\wups2.dll
2015-07-17 12:14:25 ----A---- C:\Windows\system32\wups.dll
2015-07-17 12:14:25 ----A---- C:\Windows\system32\wudriver.dll
2015-07-17 12:14:25 ----A---- C:\Windows\system32\wucltux.dll
2015-07-17 12:14:25 ----A---- C:\Windows\system32\wuaueng.dll
2015-07-17 12:14:25 ----A---- C:\Windows\system32\wuauclt.exe
2015-07-17 12:14:25 ----A---- C:\Windows\system32\wuapp.exe
2015-07-17 12:14:25 ----A---- C:\Windows\system32\wuapi.dll
2015-07-17 12:14:25 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-07-17 12:14:25 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-07-17 11:59:32 ----A---- C:\Windows\SYSWOW64\cewmdm.dll
2015-07-17 11:59:32 ----A---- C:\Windows\system32\cewmdm.dll
2015-07-17 11:54:28 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2015-07-17 11:54:28 ----A---- C:\Windows\system32\rdpcorets.dll
2015-07-17 11:54:22 ----A---- C:\Windows\system32\win32k.sys
2015-07-17 11:54:16 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2015-07-17 11:54:16 ----A---- C:\Windows\system32\gdi32.dll
2015-07-17 11:34:18 ----A---- C:\Windows\SYSWOW64\ole32.dll
2015-07-17 11:34:18 ----A---- C:\Windows\system32\ole32.dll
2015-07-17 11:34:14 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2015-07-17 11:34:14 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2015-07-17 11:34:14 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2015-07-17 11:34:14 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2015-07-17 11:34:14 ----A---- C:\Windows\system32\wintrust.dll
2015-07-17 11:34:14 ----A---- C:\Windows\system32\cryptsvc.dll
2015-07-17 11:34:14 ----A---- C:\Windows\system32\cryptnet.dll
2015-07-17 11:34:14 ----A---- C:\Windows\system32\crypt32.dll
2015-07-17 11:34:06 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2015-07-17 11:34:06 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2015-07-17 11:34:06 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-07-17 11:34:06 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-07-17 11:34:06 ----A---- C:\Windows\SYSWOW64\secur32.dll
2015-07-17 11:34:06 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2015-07-17 11:34:06 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-07-17 11:34:06 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-07-17 11:34:06 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2015-07-17 11:34:06 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-07-17 11:34:06 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-07-17 11:34:06 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2015-07-17 11:34:06 ----A---- C:\Windows\SYSWOW64\credssp.dll
2015-07-17 11:34:06 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2015-07-17 11:34:06 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-07-17 11:34:06 ----A---- C:\Windows\system32\wdigest.dll
2015-07-17 11:34:06 ----A---- C:\Windows\system32\TSpkg.dll
2015-07-17 11:34:06 ----A---- C:\Windows\system32\sspisrv.dll
2015-07-17 11:34:06 ----A---- C:\Windows\system32\sspicli.dll
2015-07-17 11:34:06 ----A---- C:\Windows\system32\schannel.dll
2015-07-17 11:34:06 ----A---- C:\Windows\system32\secur32.dll
2015-07-17 11:34:06 ----A---- C:\Windows\system32\rpcrt4.dll
2015-07-17 11:34:06 ----A---- C:\Windows\system32\ncrypt.dll
2015-07-17 11:34:06 ----A---- C:\Windows\system32\msv1_0.dll
2015-07-17 11:34:06 ----A---- C:\Windows\system32\msobjs.dll
2015-07-17 11:34:06 ----A---- C:\Windows\system32\msaudite.dll
2015-07-17 11:34:06 ----A---- C:\Windows\system32\lsass.exe
2015-07-17 11:34:06 ----A---- C:\Windows\system32\lsasrv.dll
2015-07-17 11:34:06 ----A---- C:\Windows\system32\kerberos.dll
2015-07-17 11:34:06 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2015-07-17 11:34:06 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2015-07-17 11:34:06 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2015-07-17 11:34:06 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-07-17 11:34:06 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-07-17 11:34:06 ----A---- C:\Windows\system32\cryptbase.dll
2015-07-17 11:34:06 ----A---- C:\Windows\system32\credssp.dll
2015-07-17 11:34:06 ----A---- C:\Windows\system32\auditpol.exe
2015-07-17 11:34:06 ----A---- C:\Windows\system32\adtschema.dll
2015-07-17 11:33:27 ----A---- C:\Windows\SYSWOW64\msimsg.dll
2015-07-17 11:33:27 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2015-07-17 11:33:27 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2015-07-17 11:33:27 ----A---- C:\Windows\SYSWOW64\msi.dll
2015-07-17 11:33:27 ----A---- C:\Windows\SYSWOW64\authui.dll
2015-07-17 11:33:27 ----A---- C:\Windows\system32\msimsg.dll
2015-07-17 11:33:27 ----A---- C:\Windows\system32\msihnd.dll
2015-07-17 11:33:27 ----A---- C:\Windows\system32\msiexec.exe
2015-07-17 11:33:27 ----A---- C:\Windows\system32\msi.dll
2015-07-17 11:33:27 ----A---- C:\Windows\system32\consent.exe
2015-07-17 11:33:27 ----A---- C:\Windows\system32\authui.dll
2015-07-17 11:33:27 ----A---- C:\Windows\system32\appinfo.dll
2015-07-17 11:33:13 ----A---- C:\Windows\system32\generaltel.dll
2015-07-17 11:33:13 ----A---- C:\Windows\system32\appraiser.dll
2015-07-17 11:33:13 ----A---- C:\Windows\system32\aeinv.dll
2015-07-17 11:33:12 ----A---- C:\Windows\system32\invagent.dll
2015-07-17 11:33:12 ----A---- C:\Windows\system32\devinv.dll
2015-07-17 11:33:12 ----A---- C:\Windows\system32\CompatTelRunner.exe
2015-07-17 11:33:12 ----A---- C:\Windows\system32\aepdu.dll
2015-07-17 11:33:12 ----A---- C:\Windows\system32\acmigration.dll
2015-07-12 10:47:47 ----D---- C:\Users\Jakub\AppData\Roaming\Macromedia
2015-07-12 10:41:37 ----D---- C:\Users\Jakub\AppData\Roaming\Shortcut
2015-07-12 10:41:08 ----D---- C:\Users\Jakub\AppData\Roaming\Opera Software
2015-07-12 10:34:59 ----D---- C:\Program Files (x86)\Opera
2015-07-11 21:37:13 ----D---- C:\Program Files (x86)\Razer
2015-07-11 21:37:11 ----D---- C:\ProgramData\Razer
2015-07-05 16:28:56 ----D---- C:\ProgramData\13886352525070173215
2015-07-05 16:28:08 ----D---- C:\ProgramData\minigjohbppdjeiikiacmikaajgnfknc
2015-07-05 16:07:40 ----D---- C:\Users\Jakub\AppData\Roaming\IsolatedStorage
2015-07-05 16:07:40 ----D---- C:\ProgramData\IsolatedStorage
2015-07-05 15:52:53 ----D---- C:\Spacekace
2015-06-30 15:30:40 ----D---- C:\Users\Jakub\AppData\Roaming\Autodesk
2015-06-28 21:20:38 ----D---- C:\Users\Jakub\AppData\Roaming\.technic
2015-06-28 20:54:20 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2015-06-28 20:53:46 ----D---- C:\Program Files (x86)\Java
2015-06-28 17:52:32 ----ASH---- C:\pagefile.sys
2015-06-27 20:55:43 ----D---- C:\Users\Jakub\AppData\Roaming\TS3Client
2015-06-27 20:55:30 ----D---- C:\Program Files\TeamSpeak 3 Client

======List of files/folders modified in the last 1 month======

2015-07-26 22:33:48 ----RD---- C:\Program Files
2015-07-26 22:33:35 ----D---- C:\Windows\Temp
2015-07-26 22:33:21 ----D---- C:\Windows\system32\drivers
2015-07-26 22:30:45 ----D---- C:\Windows\system32\config
2015-07-26 22:28:12 ----D---- C:\Windows\inf
2015-07-26 22:27:53 ----D---- C:\Windows
2015-07-26 22:27:38 ----SHD---- C:\System Volume Information
2015-07-26 20:58:55 ----D---- C:\Windows\System32
2015-07-26 20:58:55 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-07-26 20:41:23 ----SD---- C:\Windows\system32\GWX
2015-07-26 20:39:17 ----D---- C:\Windows\Logs
2015-07-26 17:22:42 ----D---- C:\Windows\Tasks
2015-07-26 17:22:42 ----D---- C:\Windows\system32\Tasks
2015-07-26 17:22:37 ----RD---- C:\Program Files (x86)
2015-07-26 17:06:57 ----D---- C:\Windows\SysWOW64
2015-07-26 15:35:49 ----D---- C:\Windows\system32\LogFiles
2015-07-26 15:35:49 ----D---- C:\Windows\Panther
2015-07-26 15:35:49 ----D---- C:\Users\Jakub\AppData\Roaming\dvdcss
2015-07-26 15:24:47 ----D---- C:\Windows\Prefetch
2015-07-26 15:16:58 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-07-26 13:55:09 ----D---- C:\Program Files (x86)\SlimDrivers
2015-07-26 13:34:59 ----SHD---- C:\Windows\Installer
2015-07-26 13:34:58 ----HD---- C:\ProgramData
2015-07-26 13:25:06 ----D---- C:\ProgramData\Skype
2015-07-26 13:25:02 ----D---- C:\Program Files (x86)\Common Files
2015-07-26 13:22:35 ----D---- C:\Users\Jakub\AppData\Roaming\DAEMON Tools Lite
2015-07-26 13:22:08 ----D---- C:\Windows\Minidump
2015-07-26 13:22:08 ----D---- C:\Windows\debug
2015-07-26 13:08:51 ----D---- C:\Windows\system32\catroot
2015-07-26 10:40:46 ----D---- C:\Windows\rescache
2015-07-25 16:12:58 ----D---- C:\ProgramData\Norton
2015-07-25 14:48:00 ----D---- C:\Program Files\Common Files
2015-07-25 14:45:50 ----D---- C:\Windows\winsxs
2015-07-18 08:50:48 ----D---- C:\Windows\SYSWOW64\en-US
2015-07-18 08:50:48 ----D---- C:\Program Files (x86)\Internet Explorer
2015-07-18 08:50:46 ----D---- C:\Windows\system32\en-US
2015-07-18 08:50:45 ----D---- C:\Program Files\Internet Explorer
2015-07-17 22:23:00 ----D---- C:\Windows\system32\MRT
2015-07-17 17:20:48 ----SD---- C:\Windows\SYSWOW64\GWX
2015-07-17 17:20:48 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-07-17 17:20:48 ----D---- C:\Windows\system32\cs-CZ
2015-07-17 17:20:48 ----D---- C:\Windows\PolicyDefinitions
2015-07-17 17:20:41 ----SD---- C:\Windows\system32\CompatTel
2015-07-17 17:20:40 ----D---- C:\Windows\system32\wbem
2015-07-17 17:20:40 ----D---- C:\Windows\system32\appraiser
2015-07-17 17:20:40 ----D---- C:\Windows\AppPatch
2015-07-17 11:39:38 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-07-17 11:39:28 ----A---- C:\Windows\SYSWOW64\FlashPlayerInstaller.exe
2015-07-17 11:24:13 ----D---- C:\Windows\system32\catroot2
2015-07-14 21:00:54 ----D---- C:\Users\Jakub\AppData\Roaming\Skype
2015-07-12 16:51:14 ----RSD---- C:\Windows\assembly
2015-07-10 08:02:45 ----D---- C:\Program Files (x86)\TeamViewer
2015-07-10 08:02:42 ----RSD---- C:\Windows\Fonts
2015-07-09 09:33:29 ----D---- C:\Windows\system32\NDF
2015-07-04 20:38:50 ----D---- C:\Users\Jakub\AppData\Roaming\vlc
2015-07-03 17:06:15 ----D---- C:\Users\Jakub\AppData\Roaming\Notepad++
2015-07-03 08:43:04 ----A---- C:\Windows\system32\MRT.exe
2015-06-28 10:38:48 ----D---- C:\ProgramData\Autodesk
2015-06-27 21:50:36 ----AD---- C:\ProgramData\TEMP

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2015-06-13 381608]
R0 SymDS;Symantec Data Store; C:\Windows\system32\drivers\N360x64\1507000.00B\SYMDS64.SYS [2013-08-01 493656]
R0 SymEFA;Symantec Extended File Attributes; C:\Windows\system32\drivers\N360x64\1507000.00B\SYMEFA64.SYS [2014-08-26 1148120]
R1 BHDrvx64;BHDrvx64; \??\C:\Program Files (x86)\Norton 360\NortonData\21.0.2.1\Definitions\BASHDefs\20150706.001\BHDrvx64.sys [2015-06-17 1648880]
R1 ccSet_N360;N360 Settings Manager; C:\Windows\system32\drivers\N360x64\1507000.00B\ccSetx64.sys [2014-02-21 162392]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2015-07-03 498512]
R1 IDSVia64;IDSVia64; \??\C:\Program Files (x86)\Norton 360\NortonData\21.0.2.1\Definitions\IPSDefs\20150724.001\IDSvia64.sys [2015-06-19 692984]
R1 SRTSP;Symantec Real Time Storage Protection x64; C:\Windows\System32\Drivers\N360x64\1507000.00B\SRTSP64.SYS [2014-08-26 876248]
R1 SRTSPX;Symantec Real Time Storage Protection (PEL) x64; C:\Windows\system32\drivers\N360x64\1507000.00B\SRTSPX64.SYS [2014-08-26 37592]
R1 SymIRON;Symantec Iron Driver; C:\Windows\system32\drivers\N360x64\1507000.00B\Ironx64.SYS [2014-08-06 266968]
R1 SymNetS;Symantec Network Security WFP Driver; C:\Windows\System32\Drivers\N360x64\1507000.00B\SYMNETS.SYS [2014-08-26 593112]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2015-07-03 153936]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2015-01-30 5375448]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2000-01-01 100312]
R3 NAVENG;NAVENG; \??\C:\Program Files (x86)\Norton 360\NortonData\21.0.2.1\Definitions\VirusDefs\20150726.001\ENG64.SYS [2015-07-03 138488]
R3 NAVEX15;NAVEX15; \??\C:\Program Files (x86)\Norton 360\NortonData\21.0.2.1\Definitions\VirusDefs\20150726.001\EX64.SYS [2015-07-03 2146040]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2000-01-01 939224]
R3 RTL8192cu;Realtek RTL8192CU Wireless LAN 802.11n USB 2.0 Network Adapter; C:\Windows\system32\DRIVERS\RTL8192cu.sys [2010-07-13 748648]
R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [2015-06-01 177752]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service; C:\Windows\system32\drivers\viahduaa.sys [2000-01-01 2206864]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 dtlitescsibus;DAEMON Tools Lite Virtual SCSI Bus; C:\Windows\system32\DRIVERS\dtlitescsibus.sys [2015-06-01 30264]
S3 IT9135BDA;IT9135 BDA Devices; C:\Windows\System32\Drivers\IT9135BDA.sys [2010-02-03 113280]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 SWDUMon;SWDUMon; C:\Windows\system32\DRIVERS\SWDUMon.sys [2015-07-26 16056]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 42496]
S3 xhunter1;xhunter1; \??\C:\Windows\xhunter1.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-07-07 82128]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-08-27 747520]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2000-01-01 169432]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2000-01-01 390616]
R2 N360;Norton 360; C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\N360.exe [2015-03-07 265000]
R2 Realtek11nCU;Realtek11nCU; C:\Program Files (x86)\Realtek\11n USB Wireless LAN Utility\RtlService.exe [2010-04-16 36864]
R2 SlimService;SlimWare Utility Service Launcher; C:\Program Files\SlimService\SlimServiceFactory.exe [2015-06-19 244504]
R2 VIAKaraokeService;VIA Karaoke digital mixer Service; C:\Windows\system32\viakaraokesrv.exe [2000-01-01 27768]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-07-17 268976]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2015-01-30 281488]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-06-20 114688]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-08-27 828376]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2015-06-01 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13399
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: Pomoc

#4 Příspěvek od Roli »

Stáhni a ulož na plochu AdwCleaner,

ukonči všechny programy včetně prohlížeče a dvojklikem jej spusť,

objeví se okno kde vlevo nahoře klikni na Scan.

Po dokončení skenu klikni na Clean,

proběhne restart PC kdy dojde ke smazání nepořádku.

Po té mi sem zkopíruj Report.


Stáhni a ulož na plochu ComboFix,

spusť aplikaci jako Administrátor a povol instalaci Konzole pro zotavení - Recovery Console.

Poté se zobrazí okno s licenčními podmínkami které potvrdíš kliknutím na ANO,

pak ještě jednou klik na ANO a už to jede.

Celá akce trvá okolo 10 minut ale může i déle, během skenu se nepokoušej spouštět nic jiného.

Při skenovaní může být PC i restartováno nelekat se.

Upozornění: po dobu skenu vypni rezidentní štít Antiviru a AntiSpy programu,

protože Combofix se pokouší napadené soubory smazat a tyto programy mu můžou bránit.

Po dokončení skenu nebo následném restartu aplikace vytvoří log, uložený na C:/Combofix.txt

(při opakovaném použití jsou logy číslovány Combofix2.txt atd.), jeho obsah zkopíruj sem.


V případě nejasností je ZDE obrázkový návod.
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

KachnaCZ
Návštěvník
Návštěvník
Příspěvky: 33
Registrován: 08 srp 2013 21:01

Re: Pomoc

#5 Příspěvek od KachnaCZ »

Logy:

ADW:
# AdwCleaner v4.208 - Log vytvořen 29/07/2015 v 11:00:37
# Aktualizováno 09/07/2015 by Xplode
# Databáze : 2015-07-26.2 [Server]
# Operační system : Windows 7 Home Premium Service Pack 1 (x64)
# Uživatelské jméno : Jakub - JAKUB-PC
# Spuštěno z : C:\Users\Jakub\Desktop\adwcleaner_4.208.exe
# Nastavení : Čištění

***** [ Služby ] *****

Služba Smazáno : swdumon

***** [ Soubory / Složky ] *****

Složka Smazáno : C:\ProgramData\slimware utilities inc
Složka Smazáno : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\slimcleaner plus
Složka Smazáno : C:\Program Files\slimcleaner plus
Složka Smazáno : C:\Program Files\slimservice
Složka Smazáno : C:\Users\Jakub\AppData\Local\FileViewPro
Složka Smazáno : C:\Users\Jakub\AppData\Local\slimware utilities inc
Složka Smazáno : C:\Users\Jakub\AppData\Local\Google\Chrome\User Data\Default\Extensions\hclgegipaehbigmbhdpfapmjadbaldib
Složka Smazáno : C:\ProgramData\minigjohbppdjeiikiacmikaajgnfknc
Soubor Smazáno : C:\Users\Jakub\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_hclgegipaehbigmbhdpfapmjadbaldib_0.localstorage
Soubor Smazáno : C:\Users\Jakub\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\hclgegipaehbigmbhdpfapmjadbaldib
Soubor Smazáno : C:\Users\Public\Desktop\slimcleaner plus.lnk
Soubor Smazáno : C:\Windows\System32\drivers\swdumon.sys

***** [ Naplánované úlohy ] *****

Úloha Smazáno : update-sys
Úloha Smazáno : update-S-1-5-21-3680414956-1449008003-4083196519-1000

***** [ Zástupci ] *****


***** [ Registry ] *****

Klíč Smazáno : HKCU\Software\c74dd34173ea2d512b6719062d8ac84d
Klíč Smazáno : HKLM\SOFTWARE\Classes\TypeLib\{A993BCA4-1E58-474D-A36E-057CC6AC9CE5}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Klíč Smazáno : HKCU\Software\PRODUCTSETUP
Klíč Smazáno : HKCU\Software\SlimWare Utilities Inc
Klíč Smazáno : HKCU\Software\AppDataLow\{4A0F38A9-FE55-4B89-B73F-E60FDC0F72E9}
Klíč Smazáno : HKLM\SOFTWARE\{4A0F38A9-FE55-4B89-B73F-E60FDC0F72E9}
Klíč Smazáno : HKLM\SOFTWARE\SlimWare Utilities Inc
Data Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - <local>

***** [ Prohlížeče ] *****

-\\ Internet Explorer v11.0.9600.17909

Nastavení Obnoveno : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Nastavení Obnoveno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]

-\\ Google Chrome v43.0.2357.130

[C:\Users\Jakub\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Homepage] :
[C:\Users\Jakub\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Startup_URLs] : EFD89F42FEF41E16C08028A02A3D2C77096EE238D5A5266FCA4D9191CBA4D000"},"software_reporter":{"prompt_reason":"6CA8DB0D7DA595C14E55A2D853C56A4F8B2BD64EDFA2A4DAA0C76B204A95DA94","prompt_seed":"F65E05C2524D644EFC533E96EC79E159DAF969DF9F4C3EF422A8E5B8A4F8851A","prompt_version":"FDFBB2897948AD092D31754995A7F78BB0C4592E70B330B810805E3AFAED3A26"},"sync":{"remaining_rollback_tries":"9C601182D3278587A494E8346DCC70E09C4E06E0EA5B9FD870BD721A9C8BCDA7"}},"super_mac":"716D7A8C6307F7FEA45CC48FED474DB12E02FD641A9F331B18C6A2FCE8EBE362"},"safebrowsing":{"incidents_sent":{"2":{"chrome.dll":"3774509266","chrome_child.dll":"3743713718"},"6":{"script_request_incident":"42"}}},"session":{"restore_on_startup":5,"startup_urls":["hxxp://www.delta-search.com/?affID=119816&tt=1 ... 0B81853119

*************************

AdwCleaner[R0].txt - [9428 bytů] - [29/07/2015 10:56:35]
AdwCleaner[S0].txt - [3635 bytů] - [29/07/2015 11:00:37]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [3693 bytů] ##########


ComboFix:

ComboFix 15-07-23.01 - Jakub 29.07.2015 21:09:28.2.2 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.3786.2691 [GMT 2:00]
Spuštěný z: c:\users\Jakub\Desktop\ComboFix.exe
AV: Norton 360 *Disabled/Updated* {53C7D717-52E2-B95E-FA61-6F32ECC805DB}
FW: Norton 360 *Disabled* {6BFC5632-188D-B806-D13E-C607121B42A0}
SP: Norton 360 *Enabled/Updated* {E8A636F3-74D8-B6D0-C0D1-5440974F4F66}
SP: Spybot - Search and Destroy *Enabled/Updated* {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\13886352525070173215
c:\programdata\13886352525070173215\2892aadc9b7ab85e03399a44163502a9.ini
c:\programdata\13886352525070173215\53a82a06581666a903399a44163502a9.ini
c:\programdata\13886352525070173215\73c6b15cb53cc93b03399a44163502a9.ini
c:\programdata\13886352525070173215\da87b63f2994d9cf03399a44163502a9.ini
c:\windows\security\logs\scecomp.log
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2015-06-28 do 2015-07-29 )))))))))))))))))))))))))))))))
.
.
2015-07-29 19:26 . 2015-07-29 19:26 -------- d-----w- c:\users\Default\AppData\Local\temp
2015-07-29 09:02 . 2015-07-29 09:02 -------- d-----w- c:\users\Jakub\AppData\Local\SlimWare Utilities Inc
2015-07-29 08:56 . 2015-07-29 09:00 -------- d-----w- C:\AdwCleaner
2015-07-27 07:38 . 2013-09-20 08:49 21040 ----a-w- c:\windows\system32\sdnclean64.exe
2015-07-27 07:38 . 2015-07-27 09:18 -------- d-----w- c:\programdata\Spybot - Search & Destroy
2015-07-27 07:38 . 2015-07-27 07:48 -------- d-----w- c:\program files (x86)\Spybot - Search & Destroy 2
2015-07-26 20:33 . 2015-07-26 20:34 -------- d-----w- c:\program files\trend micro
2015-07-26 20:33 . 2015-07-26 20:34 -------- d-----w- C:\rsit
2015-07-26 15:22 . 2015-07-26 15:22 -------- d-----w- c:\program files (x86)\Skillbrains
2015-07-26 15:22 . 2015-07-26 15:22 -------- d-----w- c:\program files (x86)\uTorrent
2015-07-26 15:21 . 2015-07-26 15:29 -------- d-----w- c:\users\Jakub\AppData\Roaming\uTorrent
2015-07-26 15:17 . 2015-07-26 15:17 -------- d-----w- c:\users\Jakub\AppData\Roaming\BANDISOFT
2015-07-26 15:06 . 2015-07-26 15:06 -------- d-----w- c:\program files (x86)\Bandicam
2015-07-26 15:06 . 2015-07-26 15:06 -------- d-----w- c:\program files (x86)\BandiMPEG1
2015-07-26 13:38 . 2015-07-26 13:46 -------- d-----w- c:\program files (x86)\Farming Simulator 2015
2015-07-26 13:17 . 2014-04-15 08:36 36864 ----a-w- c:\windows\runSW.exe
2015-07-26 13:16 . 2015-07-26 13:17 -------- d-----w- c:\program files (x86)\REALTEK USB Wireless LAN Driver
2015-07-26 13:16 . 2014-03-24 10:37 422400 ----a-w- c:\windows\SwUSB.exe
2015-07-26 11:34 . 2015-07-26 11:34 -------- d-----w- c:\users\Jakub\AppData\Local\Downloaded Installers
2015-07-25 12:48 . 2015-07-25 12:48 -------- d-----w- c:\program files\Common Files\AV
2015-07-22 12:39 . 2015-07-15 03:19 41984 ----a-w- c:\windows\system32\lpk.dll
2015-07-22 12:39 . 2015-07-15 03:19 100864 ----a-w- c:\windows\system32\fontsub.dll
2015-07-22 12:39 . 2015-07-15 03:19 14336 ----a-w- c:\windows\system32\dciman32.dll
2015-07-22 12:39 . 2015-07-15 03:19 46080 ----a-w- c:\windows\system32\atmlib.dll
2015-07-22 12:39 . 2015-07-15 02:55 70656 ----a-w- c:\windows\SysWow64\fontsub.dll
2015-07-22 12:39 . 2015-07-15 02:55 10240 ----a-w- c:\windows\SysWow64\dciman32.dll
2015-07-22 12:39 . 2015-07-15 02:55 34304 ----a-w- c:\windows\SysWow64\atmlib.dll
2015-07-22 12:39 . 2015-07-15 02:54 25600 ----a-w- c:\windows\SysWow64\lpk.dll
2015-07-22 12:39 . 2015-07-15 01:59 372224 ----a-w- c:\windows\system32\atmfd.dll
2015-07-22 12:39 . 2015-07-15 01:52 299008 ----a-w- c:\windows\SysWow64\atmfd.dll
2015-07-17 10:34 . 2015-06-27 02:47 814080 ----a-w- c:\windows\system32\jscript9diag.dll
2015-07-17 10:34 . 2015-06-27 02:43 5923840 ----a-w- c:\windows\system32\jscript9.dll
2015-07-17 10:34 . 2015-06-27 01:58 620032 ----a-w- c:\windows\SysWow64\jscript9diag.dll
2015-07-17 10:34 . 2015-06-27 01:39 4520448 ----a-w- c:\windows\SysWow64\jscript9.dll
2015-07-17 10:27 . 2015-06-11 17:56 7077376 ----a-w- c:\windows\system32\mstscax.dll
2015-07-17 10:27 . 2015-06-11 13:15 429568 ----a-w- c:\windows\system32\wksprt.exe
2015-07-17 10:27 . 2015-06-11 17:57 6131200 ----a-w- c:\windows\SysWow64\mstscax.dll
2015-07-17 10:27 . 2015-06-11 17:57 53248 ----a-w- c:\windows\SysWow64\tsgqec.dll
2015-07-17 10:27 . 2015-06-11 17:57 856064 ----a-w- c:\windows\SysWow64\rdvidcrl.dll
2015-07-17 10:27 . 2015-06-11 17:56 62976 ----a-w- c:\windows\system32\tsgqec.dll
2015-07-17 10:27 . 2015-06-11 17:56 1057792 ----a-w- c:\windows\system32\rdvidcrl.dll
2015-07-17 09:59 . 2015-06-02 00:07 254976 ----a-w- c:\windows\system32\cewmdm.dll
2015-07-17 09:59 . 2015-06-01 23:47 210432 ----a-w- c:\windows\SysWow64\cewmdm.dll
2015-07-17 09:54 . 2015-06-09 18:03 3180544 ----a-w- c:\windows\system32\rdpcorets.dll
2015-07-17 09:54 . 2015-06-09 18:03 16384 ----a-w- c:\windows\system32\RdpGroupPolicyExtension.dll
2015-07-17 09:54 . 2015-06-25 08:57 3207168 ----a-w- c:\windows\system32\win32k.sys
2015-07-17 09:54 . 2015-06-17 17:47 404992 ----a-w- c:\windows\system32\gdi32.dll
2015-07-17 09:54 . 2015-06-17 17:37 312320 ----a-w- c:\windows\SysWow64\gdi32.dll
2015-07-17 09:33 . 2015-06-15 21:50 112064 ----a-w- c:\windows\system32\consent.exe
2015-07-12 14:48 . 2015-07-26 16:51 -------- d-----w- c:\users\Jakub\AppData\Local\Akamai
2015-07-12 08:41 . 2015-07-12 08:41 -------- d-----w- c:\users\Jakub\AppData\Roaming\Shortcut
2015-07-12 08:41 . 2015-07-26 13:34 -------- d-----w- c:\users\Jakub\AppData\Roaming\Opera Software
2015-07-12 08:41 . 2015-07-12 08:41 -------- d-----w- c:\users\Jakub\AppData\Local\Opera Software
2015-07-12 08:38 . 2015-07-12 09:05 -------- d-----w- c:\users\Jakub\AppData\Local\JDownloader v2.0
2015-07-12 08:34 . 2015-07-26 13:35 -------- d-----w- c:\program files (x86)\Opera
2015-07-11 19:37 . 2015-07-12 09:04 -------- d-----w- c:\users\Jakub\AppData\Local\Razer
2015-07-11 19:37 . 2015-07-12 09:04 -------- d-----w- c:\program files (x86)\Razer
2015-07-11 19:37 . 2015-07-12 09:04 -------- d-----w- c:\programdata\Razer
2015-07-05 14:07 . 2015-07-05 14:07 -------- d-----w- c:\users\Jakub\AppData\Roaming\IsolatedStorage
2015-07-05 14:07 . 2015-07-05 14:07 -------- d-----w- c:\programdata\IsolatedStorage
2015-07-05 13:52 . 2015-07-05 13:52 -------- d-----w- C:\Spacekace
2015-06-30 13:30 . 2015-06-30 13:30 -------- d-----w- c:\users\Jakub\AppData\Roaming\Autodesk
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-07-17 09:39 . 2015-06-04 19:58 778416 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2015-07-17 09:39 . 2015-06-04 19:58 142512 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2015-07-17 09:39 . 2015-06-24 16:39 18524336 ----a-w- c:\windows\SysWow64\FlashPlayerInstaller.exe
2015-07-03 06:43 . 2015-06-01 17:49 130333168 ----a-w- c:\windows\system32\MRT.exe
2015-07-01 20:49 . 2015-07-17 09:34 342016 ----a-w- c:\windows\system32\schannel.dll
2015-07-01 20:30 . 2015-07-17 09:34 248832 ----a-w- c:\windows\SysWow64\schannel.dll
2015-06-28 18:53 . 2015-06-28 18:54 97888 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2015-06-13 12:16 . 2015-06-13 12:16 381608 ----a-w- c:\windows\system32\drivers\sptd.sys
2015-06-04 19:30 . 2015-06-04 19:30 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\Markup.dll
2015-06-04 19:30 . 2015-06-04 19:30 483952 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2015-06-01 21:01 . 2015-06-01 21:00 30264 ----a-w- c:\windows\system32\drivers\dtlitescsibus.sys
2015-06-01 18:49 . 2015-06-01 18:49 194048 ----a-w- c:\windows\SysWow64\elshyph.dll
2015-06-01 18:49 . 2015-06-01 18:49 942592 ----a-w- c:\windows\system32\jsIntl.dll
2015-06-01 18:49 . 2015-06-01 18:49 90112 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2015-06-01 18:49 . 2015-06-01 18:49 86016 ----a-w- c:\windows\SysWow64\iesysprep.dll
2015-06-01 18:49 . 2015-06-01 18:49 86016 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2015-06-01 18:49 . 2015-06-01 18:49 74240 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
2015-06-01 18:49 . 2015-06-01 18:49 71680 ----a-w- c:\windows\SysWow64\RegisterIEPKEYs.exe
2015-06-01 18:49 . 2015-06-01 18:49 645120 ----a-w- c:\windows\SysWow64\jsIntl.dll
2015-06-01 18:49 . 2015-06-01 18:49 62464 ----a-w- c:\windows\SysWow64\tdc.ocx
2015-06-01 18:49 . 2015-06-01 18:49 52224 ----a-w- c:\windows\system32\msfeedsbs.dll
2015-06-01 18:49 . 2015-06-01 18:49 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
2015-06-01 18:49 . 2015-06-01 18:49 36352 ----a-w- c:\windows\SysWow64\imgutil.dll
2015-06-01 18:49 . 2015-06-01 18:49 247808 ----a-w- c:\windows\system32\msls31.dll
2015-06-01 18:49 . 2015-06-01 18:49 24576 ----a-w- c:\windows\SysWow64\licmgr10.dll
2015-06-01 18:49 . 2015-06-01 18:49 235008 ----a-w- c:\windows\system32\elshyph.dll
2015-06-01 18:49 . 2015-06-01 18:49 182272 ----a-w- c:\windows\SysWow64\msls31.dll
2015-06-01 18:49 . 2015-06-01 18:49 151552 ----a-w- c:\windows\SysWow64\iexpress.exe
2015-06-01 18:49 . 2015-06-01 18:49 139264 ----a-w- c:\windows\SysWow64\wextract.exe
2015-06-01 18:49 . 2015-06-01 18:49 13312 ----a-w- c:\windows\SysWow64\mshta.exe
2015-06-01 18:49 . 2015-06-01 18:49 13312 ----a-w- c:\windows\system32\msfeedssync.exe
2015-06-01 18:49 . 2015-06-01 18:49 131072 ----a-w- c:\windows\system32\IEAdvpack.dll
2015-06-01 18:49 . 2015-06-01 18:49 111616 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
2015-06-01 18:49 . 2015-06-01 18:49 81408 ----a-w- c:\windows\system32\icardie.dll
2015-06-01 18:49 . 2015-06-01 18:49 77312 ----a-w- c:\windows\system32\tdc.ocx
2015-06-01 18:49 . 2015-06-01 18:49 62464 ----a-w- c:\windows\system32\pngfilt.dll
2015-06-01 18:49 . 2015-06-01 18:49 616104 ----a-w- c:\windows\system32\ieapfltr.dat
2015-06-01 18:49 . 2015-06-01 18:49 48640 ----a-w- c:\windows\system32\mshtmler.dll
2015-06-01 18:49 . 2015-06-01 18:49 48128 ----a-w- c:\windows\system32\imgutil.dll
2015-06-01 18:49 . 2015-06-01 18:49 30208 ----a-w- c:\windows\system32\licmgr10.dll
2015-06-01 18:49 . 2015-06-01 18:49 243200 ----a-w- c:\windows\system32\webcheck.dll
2015-06-01 18:49 . 2015-06-01 18:49 235520 ----a-w- c:\windows\system32\url.dll
2015-06-01 18:49 . 2015-06-01 18:49 167424 ----a-w- c:\windows\system32\iexpress.exe
2015-06-01 18:49 . 2015-06-01 18:49 147968 ----a-w- c:\windows\system32\occache.dll
2015-06-01 18:49 . 2015-06-01 18:49 143872 ----a-w- c:\windows\system32\wextract.exe
2015-06-01 18:49 . 2015-06-01 18:49 13824 ----a-w- c:\windows\system32\mshta.exe
2015-06-01 18:49 . 2015-06-01 18:49 135680 ----a-w- c:\windows\system32\iepeers.dll
2015-06-01 18:49 . 2015-06-01 18:49 105984 ----a-w- c:\windows\system32\iesysprep.dll
2015-06-01 18:49 . 2015-06-01 18:49 101376 ----a-w- c:\windows\system32\inseng.dll
2015-06-01 18:41 . 2015-06-01 18:41 9728 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-06-01 18:41 . 2015-06-01 18:41 9728 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-06-01 18:41 . 2015-06-01 18:41 648192 ----a-w- c:\windows\system32\d3d10level9.dll
2015-06-01 18:41 . 2015-06-01 18:41 604160 ----a-w- c:\windows\SysWow64\d3d10level9.dll
2015-06-01 18:41 . 2015-06-01 18:41 5632 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-06-01 18:41 . 2015-06-01 18:41 5632 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-06-01 18:41 . 2015-06-01 18:41 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-06-01 18:41 . 2015-06-01 18:41 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-06-01 18:41 . 2015-06-01 18:41 522752 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2015-06-01 18:41 . 2015-06-01 18:41 4096 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-user32-l1-1-0.dll
2015-06-01 18:41 . 2015-06-01 18:41 4096 ---ha-w- c:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2015-06-01 18:41 . 2015-06-01 18:41 364544 ----a-w- c:\windows\SysWow64\XpsGdiConverter.dll
2015-06-01 18:41 . 2015-06-01 18:41 363008 ----a-w- c:\windows\system32\dxgi.dll
2015-06-01 18:41 . 2015-06-01 18:41 3584 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-06-01 18:41 . 2015-06-01 18:41 3584 ---ha-w- c:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-06-01 18:41 . 2015-06-01 18:41 333312 ----a-w- c:\windows\system32\d3d10_1core.dll
2015-06-01 18:41 . 2015-06-01 18:41 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-version-l1-1-0.dll
2015-06-01 18:41 . 2015-06-01 18:41 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-06-01 18:41 . 2015-06-01 18:41 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2015-06-01 18:41 . 2015-06-01 18:41 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-06-01 18:41 . 2015-06-01 18:41 296960 ----a-w- c:\windows\system32\d3d10core.dll
2015-06-01 18:41 . 2015-06-01 18:41 293376 ----a-w- c:\windows\SysWow64\dxgi.dll
2015-06-01 18:41 . 2015-06-01 18:41 2560 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-06-01 18:41 . 2015-06-01 18:41 2560 ---ha-w- c:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-06-01 18:41 . 2015-06-01 18:41 249856 ----a-w- c:\windows\SysWow64\d3d10_1core.dll
2015-06-01 18:41 . 2015-06-01 18:41 245248 ----a-w- c:\windows\system32\WindowsCodecsExt.dll
2015-06-01 18:41 . 2015-06-01 18:41 220160 ----a-w- c:\windows\SysWow64\d3d10core.dll
2015-06-01 18:41 . 2015-06-01 18:41 207872 ----a-w- c:\windows\SysWow64\WindowsCodecsExt.dll
2015-06-01 18:41 . 2015-06-01 18:41 194560 ----a-w- c:\windows\system32\d3d10_1.dll
2015-06-01 18:41 . 2015-06-01 18:41 187392 ----a-w- c:\windows\SysWow64\UIAnimation.dll
2015-06-01 18:41 . 2015-06-01 18:41 1682432 ----a-w- c:\windows\system32\XpsPrint.dll
2015-06-01 18:41 . 2015-06-01 18:41 161792 ----a-w- c:\windows\SysWow64\d3d10_1.dll
2015-06-01 18:41 . 2015-06-01 18:41 1238528 ----a-w- c:\windows\system32\d3d10.dll
2015-06-01 18:41 . 2015-06-01 18:41 1158144 ----a-w- c:\windows\SysWow64\XpsPrint.dll
2015-06-01 18:41 . 2015-06-01 18:41 1080832 ----a-w- c:\windows\SysWow64\d3d10.dll
2015-06-01 18:41 . 2015-06-01 18:41 10752 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-06-01 18:41 . 2015-06-01 18:41 10752 ---ha-w- c:\windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-06-01 18:41 . 2015-06-01 18:41 221184 ----a-w- c:\windows\system32\UIAnimation.dll
2015-06-01 13:50 . 2015-06-01 13:50 177752 ----a-w- c:\windows\system32\drivers\SYMEVENT64x86.SYS
2015-06-01 13:01 . 2015-06-01 13:01 16896 ----a-w- c:\windows\AsTaskSched.dll
2015-05-25 18:24 . 2015-06-10 12:42 5569984 ----a-w- c:\windows\system32\ntoskrnl.exe
2015-05-25 18:21 . 2015-06-10 12:42 1728960 ----a-w- c:\windows\system32\ntdll.dll
2015-05-25 18:19 . 2015-06-10 12:42 243712 ----a-w- c:\windows\system32\wow64.dll
2015-05-25 18:19 . 2015-06-10 12:42 362496 ----a-w- c:\windows\system32\wow64win.dll
2015-05-25 18:19 . 2015-06-10 12:42 13312 ----a-w- c:\windows\system32\wow64cpu.dll
2015-05-25 18:19 . 2015-06-10 12:42 215040 ----a-w- c:\windows\system32\winsrv.dll
2015-05-25 18:19 . 2015-06-10 12:42 1255424 ----a-w- c:\windows\system32\diagtrack.dll
2015-05-25 18:19 . 2015-06-10 12:42 879104 ----a-w- c:\windows\system32\tdh.dll
2015-05-25 18:19 . 2015-06-10 12:42 503808 ----a-w- c:\windows\system32\srcore.dll
2015-05-25 18:19 . 2015-06-10 12:42 50176 ----a-w- c:\windows\system32\srclient.dll
2015-05-25 18:19 . 2015-06-10 12:42 113664 ----a-w- c:\windows\system32\sechost.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"GoogleChromeAutoLaunch_7B684F571039795D9613652596821858"="c:\program files (x86)\Google\Chrome\Application\chrome.exe" [2015-06-20 813896]
"Akamai NetSession Interface"="c:\users\Jakub\AppData\Local\Akamai\netsession_win.exe" [2014-10-29 4673432]
"CCleaner Monitoring"="c:\program files\CCleaner\CCleaner64.exe" [2015-04-08 8202008]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"HDAudDeck"="c:\program files (x86)\VIA\VIAudioi\VDeck\VDeck.exe" [2000-01-01 5299320]
"Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe" [2015-06-26 40336]
"HP Software Update"="c:\program files (x86)\Hp\HP Software Update\HPWuSchd2.exe" [2010-03-12 49208]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2015-04-30 334896]
"Lightshot"="c:\program files (x86)\Skillbrains\lightshot\Lightshot.exe" [2014-11-18 226560]
"SDTray"="c:\program files (x86)\Spybot - Search & Destroy 2\SDTray.exe" [2014-06-24 4101576]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0\0sdnclean64.exe
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 SlimService;SlimWare Utility Service Launcher;c:\program files\SlimService\SlimServiceFactory.exe;c:\program files\SlimService\SlimServiceFactory.exe [x]
R3 dtlitescsibus;DAEMON Tools Lite Virtual SCSI Bus;c:\windows\system32\DRIVERS\dtlitescsibus.sys;c:\windows\SYSNATIVE\DRIVERS\dtlitescsibus.sys [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface;c:\program files\Intel\iCLS Client\SocketHeciServer.exe;c:\program files\Intel\iCLS Client\SocketHeciServer.exe [x]
R3 IT9135BDA;IT9135 BDA Devices;c:\windows\system32\Drivers\IT9135BDA.sys;c:\windows\SYSNATIVE\Drivers\IT9135BDA.sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
R3 xhunter1;xhunter1;c:\windows\xhunter1.sys;c:\windows\xhunter1.sys [x]
S0 sptd;sptd;c:\windows\\SystemRoot\System32\Drivers\sptd.sys;c:\windows\\SystemRoot\System32\Drivers\sptd.sys [x]
S0 SymDS;Symantec Data Store;c:\windows\system32\drivers\N360x64\1507000.00B\SYMDS64.SYS;c:\windows\SYSNATIVE\drivers\N360x64\1507000.00B\SYMDS64.SYS [x]
S0 SymEFA;Symantec Extended File Attributes;c:\windows\system32\drivers\N360x64\1507000.00B\SYMEFA64.SYS;c:\windows\SYSNATIVE\drivers\N360x64\1507000.00B\SYMEFA64.SYS [x]
S1 BHDrvx64;BHDrvx64;c:\program files (x86)\Norton 360\NortonData\21.0.2.1\Definitions\BASHDefs\20150706.001\BHDrvx64.sys;c:\program files (x86)\Norton 360\NortonData\21.0.2.1\Definitions\BASHDefs\20150706.001\BHDrvx64.sys [x]
S1 ccSet_N360;N360 Settings Manager;c:\windows\system32\drivers\N360x64\1507000.00B\ccSetx64.sys;c:\windows\SYSNATIVE\drivers\N360x64\1507000.00B\ccSetx64.sys [x]
S1 IDSVia64;IDSVia64;c:\program files (x86)\Norton 360\NortonData\21.0.2.1\Definitions\IPSDefs\20150728.001\IDSvia64.sys;c:\program files (x86)\Norton 360\NortonData\21.0.2.1\Definitions\IPSDefs\20150728.001\IDSvia64.sys [x]
S1 SymIRON;Symantec Iron Driver;c:\windows\system32\drivers\N360x64\1507000.00B\Ironx64.SYS;c:\windows\SYSNATIVE\drivers\N360x64\1507000.00B\Ironx64.SYS [x]
S1 SymNetS;Symantec Network Security WFP Driver;c:\windows\System32\Drivers\N360x64\1507000.00B\SYMNETS.SYS;c:\windows\SYSNATIVE\Drivers\N360x64\1507000.00B\SYMNETS.SYS [x]
S2 DiagTrack;Diagnostics Tracking Service;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x]
S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;c:\program files\Intel\iCLS Client\HeciServer.exe;c:\program files\Intel\iCLS Client\HeciServer.exe [x]
S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [x]
S2 N360;Norton 360;c:\program files (x86)\Norton 360\Engine\21.7.0.11\N360.exe;c:\program files (x86)\Norton 360\Engine\21.7.0.11\N360.exe [x]
S2 Realtek11nCU;Realtek11nCU;c:\program files (x86)\Realtek\11n USB Wireless LAN Utility\RtlService.exe;c:\program files (x86)\Realtek\11n USB Wireless LAN Utility\RtlService.exe [x]
S2 SDScannerService;Spybot-S&D 2 Scanner Service;c:\program files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe;c:\program files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [x]
S2 SDUpdateService;Spybot-S&D 2 Updating Service;c:\program files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe;c:\program files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [x]
S2 SDWSCService;Spybot-S&D 2 Security Center Service;c:\program files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe;c:\program files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [x]
S2 VIAKaraokeService;VIA Karaoke digital mixer Service;c:\windows\system32\viakaraokesrv.exe;c:\windows\SYSNATIVE\viakaraokesrv.exe [x]
S3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys;c:\program files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [x]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
S3 RTL8192cu;Realtek RTL8192CU Wireless LAN 802.11n USB 2.0 Network Adapter;c:\windows\system32\DRIVERS\RTL8192cu.sys;c:\windows\SYSNATIVE\DRIVERS\RTL8192cu.sys [x]
S3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys;c:\windows\SYSNATIVE\drivers\viahduaa.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2015-06-22 20:24 990024 ----a-w- c:\program files (x86)\Google\Chrome\Application\43.0.2357.130\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2015-07-25 c:\windows\Tasks\Adobe Flash Player PPAPI Notifier.job
- c:\windows\SysWOW64\Macromed\Flash\FlashUtil32_18_0_0_209_pepper.exe [2015-07-14 14:04]
.
2015-07-29 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-06-04 09:39]
.
2015-07-29 c:\windows\Tasks\SlimDrivers Startup.job
- c:\program files (x86)\SlimDrivers\SlimDrivers.exe [2015-02-27 06:59]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"HDAudDeck"="c:\program files (x86)\VIA\VIAudioi\VDeck\VDeck.exe" [2000-01-01 5299320]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2015-01-30 174480]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2015-01-30 402320]
"Persistence"="c:\windows\system32\igfxpers.exe" [2015-01-30 445328]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.google.com
mStart Page = hxxp://www.google.com
mLocal Page = c:\windows\SysWOW64\blank.htm
uInternet Settings,ProxyOverride = <local>
IE: WikiKomentáře Google... - c:\program files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_6CE5017F567343CA.dll/cmsidewiki.html
TCP: DhcpNameServer = 10.0.0.138
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKCU-Run-SlimCleaner Plus - c:\program files\SlimCleaner Plus\SlimCleanerPlus.exe
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
Notify-SDWinLogon - SDWinLogon.dll
.
.
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\N360]
"ImagePath"="\"c:\program files (x86)\Norton 360\Engine\21.7.0.11\N360.exe\" /s \"N360\" /m \"c:\program files (x86)\Norton 360\Engine\21.7.0.11\diMaster.dll\" /prefetch:1"
"ImagePath"="\SystemRoot\System32\Drivers\N360x64\1507000.00B\SYMNETS.SYS"
"TrustedImagePaths"="c:\program files (x86)\Norton 360\Engine\21.7.0.11;c:\program files (x86)\Norton 360\Engine64\21.7.0.11"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2015-07-29 21:28:39
ComboFix-quarantined-files.txt 2015-07-29 19:28
.
Před spuštěním: Volných bajtů: 38 955 839 488
Po spuštění: Volných bajtů: 38 788 763 648
.
- - End Of File - - DE94277F7174AFE8FFC5C111BB07624F
A36C5E4F47E84449FF07ED3517B43A31

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13399
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: Pomoc

#6 Příspěvek od Roli »

Přes Odebrat programy odinstaluj Spybot - SD.


Přes Start >> Spustit zkopíruj do okna:

ComboFix /Uninstall

a stiskni Enter

To odinstaluje ComboFix a smaže s ním související soubory a složky.


Použij T-Cleaner, který smaže případné zbytky po aplikacích které jsme použili.

Jen před jeho stažením a při použití stopni antivir, protože ho muže detekovat jako vir ale není tomu tak.


Restaruj modem - na minutku dvě jej odpoj z elektřiny a nakonec použij Mbam z mého podpisu a dej mi sem z něj log, předem nic nemazat !
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

Odpovědět