Stránka 1 z 1

pomoc

Napsal: 01 srp 2015 21:09
od Alberr123
Dobrý den,
Mám problem s pc, myslim že tam beží nějakej backdoor. Dřív uplně v pohode 1080p ted se najednou sekají.
Moc krát děkuji za odpovědi.
log zde http://uloz.to/x4nJCcSq/log-1-8-2015-txt

Re: pomoc

Napsal: 01 srp 2015 21:24
od Rudy
Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.

Re: pomoc

Napsal: 01 srp 2015 21:31
od Alberr123
# AdwCleaner v4.208 - Logfile created 01/08/2015 at 22:27:03
# Updated 09/07/2015 by Xplode
# Database : 2015-08-01.1 [Server]
# Operating system : Windows 10 Pro (x64)
# Username : root - DAN
# Running from : C:\Users\root\Desktop\adwcleaner_4.208.exe
# Option : Cleaning

***** [ Services ] *****

[#] Service Deleted : vToolbarUpdater18.8.0

***** [ Files / Folders ] *****

Folder Deleted : C:\Save
Folder Deleted : C:\ProgramData\AVG Secure Search
Folder Deleted : C:\ProgramData\AVG Security Toolbar
Folder Deleted : C:\ProgramData\SecTaskMan
Folder Deleted : C:\Program Files (x86)\Common Files\AVG Secure Search

***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Classes\S
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [vProt]
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKCU\Software\Avg Secure Update
Key Deleted : HKU\.DEFAULT\Software\Avg Secure Update

***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.10240.16384


-\\ Opera v30.0.1835.125


*************************

AdwCleaner[R0].txt - [2614 bytes] - [01/08/2015 22:26:30]
AdwCleaner[S0].txt - [2524 bytes] - [01/08/2015 22:27:03]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2583 bytes] ##########

Re: pomoc

Napsal: 01 srp 2015 21:36
od Alberr123
jo se koukám tak proces Windows Shell Exparience Host mi přijde nejaký divný.
foto: http://uloz.to/xZwu6r87/divn-jpg

Re: pomoc

Napsal: 02 srp 2015 10:27
od Rudy
Windows Shell Exparience Host: http://translate.google.cz/translate?hl ... rev=search . A ty IP patří vnitřní síti, na kterou jste připojen.