Stránka 1 z 1

Zasekaný PC

Napsal: 13 pro 2015 21:48
od hanzzik123
Zdravím, nějakou poslední dobou se mi seká Pc, přikládám log.

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:09-12-2015
Ran by Honza (administrator) on HANZIK (11-12-2015 20:05:58)
Running from C:\Users\Honza\Desktop
Loaded Profiles: Honza (Available Profiles: Honza)
Platform: Windows 8.1 Connected (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Opera)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore64.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe
(Intel(R) Corporation) C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMLockHandler.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QASvc.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMTray.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAEvent.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAMsg.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerWinMonitor.exe
(Qualcomm®Atheros®) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe
() C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\RMSvc.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(WildTangent) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
(Blizzard Entertainment) C:\Moje#\Hry\wotlk\World of Warcraft 3.3.5a\Wow.exe
(acer) C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe
(***) C:\Users\Honza\Desktop\Wowko,picoviny\AutoCast.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(***) C:\Users\Honza\Desktop\Wowko,picoviny\AutoCast.exe
(Opera Software) C:\Program Files (x86)\Opera\34.0.2036.25\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\34.0.2036.25\opera_crashreporter.exe
(Opera Software) C:\Program Files (x86)\Opera\34.0.2036.25\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\34.0.2036.25\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\34.0.2036.25\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\34.0.2036.25\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\34.0.2036.25\opera.exe
(Blizzard Entertainment) C:\Moje#\Hry\wotlk\World of Warcraft 3.3.5a\Wow.exe
(Opera Software) C:\Program Files (x86)\Opera\34.0.2036.25\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\34.0.2036.25\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\34.0.2036.25\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\34.0.2036.25\opera.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13672664 2014-06-30] (Realtek Semiconductor)
HKLM-x32\...\Run: [BacKGround Agent] => C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [62208 2014-12-19] (Acer Incorporated)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [6108752 2015-11-10] (AVAST Software)
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [134784 2014-04-29] (Qualcomm®Atheros®)
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [AcerCloud] => C:\Program Files (x86)\Acer\Acer Portal\acpanel_win.exe [2480384 2014-12-19] (Acer)
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [uTorrent] => C:\Users\Honza\AppData\Roaming\uTorrent\uTorrent.exe [1374032 2015-01-21] (BitTorrent Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-07-25] (AVAST Software)
ShellIconOverlayIdentifiers: [ACloudSyncedRF] -> {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} => C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll [2014-12-19] (Acer Incorporated)
ShellIconOverlayIdentifiers: [ACloudSyncedSF] -> {5D5F18B7-D59B-4B18-A3E9-0A4BDCCCB699} => C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll [2014-12-19] (Acer Incorporated)
ShellIconOverlayIdentifiers: [ACloudSyncing] -> {C1E1456F-C2D8-4C96-870D-35F1E13941EE} => C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll [2014-12-19] (Acer Incorporated)
ShellIconOverlayIdentifiers: [ACloudToBeSynced] -> {307523FA-DDC0-4068-983F-2A6B34627744} => C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll [2014-12-19] (Acer Incorporated)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

ProxyServer: [S-1-5-21-3125435620-391947284-2330968494-1001] => 192.168.1.1:8080
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
Tcpip\..\Interfaces\{73BFEF96-12CB-4CCD-87BE-C4A75FF840D8}: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{9AB34063-885C-4E48-8BB5-A32677981EC8}: [DhcpNameServer] 192.168.1.254

Internet Explorer:
==================
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/?clid=13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {494A6CF8-C5D1-46C4-BBE7-6D6D9B1CA207} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {5D602557-6ED3-4F96-A00A-5DEB66CA62C3} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {63FB1F7D-889C-4EB3-A53D-AB46BD1B805D} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {67C683B3-28F0-4591-A398-BD86109A84C1} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid= ... arch_13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {6D2C490E-2056-44DE-BB89-30B2901A3A44} URL = hxxp://www.mapy.cz/?query={searchTerms}&source ... arch_13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {7823C17E-ECD6-4E6C-AC91-CEC1C4F3DE4D} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {8EC198AD-8D9E-4DC0-8C8C-87493CA42C5D} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {A388744D-D9EE-4DC8-9FB3-7462E3FDD5C4} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&s ... arch_13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {F502DA66-86F2-4467-BFC7-A9BA59EF0FFA} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz ... arch_13415
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-07-25] (AVAST Software)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-07-25] (AVAST Software)

FireFox:
========
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-04] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-04] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\3\NP_wtapp.dll [2014-12-25] ()
FF Plugin-x32: Adobe Reader -> c:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2013-09-05] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3125435620-391947284-2330968494-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Honza\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-07-17] (Unity Technologies ApS)
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-12-10]

Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR NewTab: Default -> "chrome-extension://olfeabkoenfaoljndfecamgilllcpiak/core/chrome/content/speedDial/speedDial.html"
CHR Profile: C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-07]
CHR Extension: (Dokumenty Google) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-07]
CHR Extension: (Disk Google) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-12-24]
CHR Extension: (Seznam Lištička - Email) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2015-03-07]
CHR Extension: (Seznam Lištička - Slovník) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2015-03-07]
CHR Extension: (YouTube) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-03-07]
CHR Extension: (Vyhledávání Google) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-03-07]
CHR Extension: (Avast Online Security) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-03-07]
CHR Extension: (Peněženka Google) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-03-07]
CHR Extension: (Seznam Lištička - Rychlá volba) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2015-03-07]
CHR Extension: (Gmail) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-07]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-07-25]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx <not found>

Opera:
=======
OPR Extension: (Adblock Plus) - C:\Users\Honza\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp [2015-11-25]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [172344 2014-07-23] (SUPERAntiSpyware.com)
R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [319104 2014-04-29] (Windows (R) Win 7 DDK provider) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600 2015-07-25] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4047768 2015-07-25] (Avast Software)
R2 CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2713856 2014-12-19] (Acer Incorporated)
R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2573032 2014-06-12] (Acer Incorporated)
R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [347200 2015-02-24] (WildTangent)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [315376 2014-06-09] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [733696 2013-07-02] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [822232 2013-07-02] (Intel(R) Corporation)
R2 LMSvc; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [466664 2014-06-10] (Acer Incorporate)
R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [458984 2014-06-26] (Acer Incorporate)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [254512 2012-04-24] ()
R3 RMSvc; C:\Program Files\Acer\Acer Quick Access\RMSvc.exe [449768 2014-06-26] (Acer Incorporate)
R3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [233216 2014-06-24] (acer)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [28656 2015-07-25] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [90968 2015-07-25] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-07-25] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65224 2015-07-25] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1059656 2015-11-10] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [449992 2015-11-10] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [150160 2015-07-25] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [274808 2015-07-25] (AVAST Software)
R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3893248 2014-04-03] (Qualcomm Atheros Communications, Inc.)
S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2014-04-29] (Qualcomm Atheros)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2015-03-07] (Disc Soft Ltd)
S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
R3 GPIO; C:\Windows\System32\drivers\iaiogpioe.sys [31232 2014-06-09] (Intel Corporation)
R3 iaioi2c; C:\Windows\System32\drivers\iaioi2ce.sys [69632 2014-06-09] (Intel Corporation)
R3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-07-18] (Acer Incorporated)
R0 ngvss; C:\Windows\System32\Drivers\ngvss.sys [115152 2015-07-25] (AVAST Software)
R3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [14680 2013-07-18] (Acer Incorporated)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R3 TXEIx64; C:\Windows\System32\drivers\TXEIx64.sys [88592 2014-01-15] (Intel Corporation)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [273824 2015-07-25] (Avast Software)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-12-11 20:05 - 2015-12-11 20:08 - 00018201 _____ C:\Users\Honza\Desktop\FRST.txt
2015-12-11 20:03 - 2015-12-11 20:03 - 02369024 _____ (Farbar) C:\Users\Honza\Desktop\FRST64.exe
2015-12-07 07:37 - 2015-12-07 07:37 - 00000000 ____D C:\Users\Honza\AppData\LocalLow\Adobe
2015-12-07 07:35 - 2015-12-07 07:35 - 00000000 ____D C:\Users\Honza\Desktop\LAN
2015-12-04 21:30 - 2015-12-04 21:41 - 185628964 _____ C:\Users\Honza\Downloads\[CNT]_Naruto_Shippuuden_436_[AABC865D].mkv
2015-12-04 19:49 - 2015-12-04 20:00 - 185458244 _____ C:\Users\Honza\Downloads\[CNT]_Naruto_Shippuuden_438_[C61C7E9C].mkv
2015-12-04 19:05 - 2015-12-04 19:15 - 182076253 _____ C:\Users\Honza\Downloads\Naruto--Shippuden-437.mkv
2015-12-04 18:27 - 2015-12-04 18:37 - 181237500 _____ C:\Users\Honza\Downloads\[CNT]_Naruto_Shippuuden_435_[6DB5E98C].mkv
2015-12-04 18:12 - 2015-12-04 18:24 - 210461571 _____ C:\Users\Honza\Downloads\[CNT]_Naruto_Shippuuden_434_[912B74D4].mkv
2015-12-04 18:00 - 2015-12-04 18:11 - 207041027 _____ C:\Users\Honza\Downloads\[CNT]_Naruto_Shippuuden_433_[431880F3].mkv
2015-12-04 17:39 - 2015-12-04 17:51 - 202424767 _____ C:\Users\Honza\Downloads\[CNT]_Naruto_Shippuuden_432_[F21876DA].mkv
2015-12-04 17:08 - 2015-12-04 17:22 - 205137937 _____ C:\Users\Honza\Downloads\[CNT]_Naruto_Shippuuden_431_[C0545C2A]-(1).mkv
2015-12-04 09:06 - 2015-12-11 19:11 - 00000974 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-12-03 21:23 - 2015-12-03 21:23 - 00000000 ____D C:\Windows\System32\Tasks\AVAST Software
2015-12-03 21:23 - 2015-12-03 21:23 - 00000000 ____D C:\Program Files\Common Files\AV
2015-12-02 22:20 - 2015-12-02 22:20 - 00408064 _____ C:\Users\Honza\Downloads\obvod.exe
2015-12-02 20:04 - 2015-12-02 20:06 - 00000000 ____D C:\Program Files (x86)\Borland
2015-12-02 19:44 - 2015-12-02 20:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Borland Delphi 7
2015-12-02 19:10 - 2015-12-02 19:10 - 00000000 ____D C:\ProgramData\{0DE47792-19BD-4AF4-B9CF-6378FBA44825}
2015-12-02 19:08 - 2015-12-02 19:08 - 00000000 ____D C:\Users\Honza\AppData\Local\PackageAware
2015-12-02 18:14 - 2015-12-02 18:14 - 00000000 ____D C:\Users\Honza\AppData\Roaming\GullySoft
2015-12-02 17:33 - 2015-12-02 17:33 - 00000000 ____D C:\Device
2015-12-02 16:56 - 2015-12-02 16:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Umíme to s Delphi
2015-12-02 16:56 - 2015-12-02 16:56 - 00000000 ____D C:\Program Files (x86)\Umíme to s Delphi
2015-12-01 21:33 - 2015-12-02 17:33 - 00000000 ____D C:\Users\Honza\Doctor Web
2015-11-26 10:43 - 2015-11-26 10:43 - 00000752 _____ C:\Users\Honza\Desktop\Hry – zástupce.lnk
2015-11-26 10:06 - 2015-11-26 10:10 - 00039889 _____ C:\Users\Honza\Desktop\Addition.txt
2015-11-23 18:41 - 2015-11-23 18:41 - 00127568 _____ C:\Users\Honza\AppData\Local\GDIPFONTCACHEV1.DAT
2015-11-23 09:22 - 2015-11-23 09:22 - 00001086 _____ C:\Users\Public\Desktop\VLC media player.lnk
2015-11-23 09:22 - 2015-11-23 09:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2015-11-23 09:22 - 2015-11-23 09:22 - 00000000 ____D C:\Program Files (x86)\VideoLAN
2015-11-19 18:57 - 2015-11-19 19:16 - 00000000 ____D C:\Users\Honza\Documents\Mount&Blade Warband Savegames
2015-11-19 18:56 - 2015-11-19 19:10 - 00000000 ____D C:\Users\Honza\Documents\Mount&Blade Warband
2015-11-19 18:56 - 2015-11-19 18:57 - 00000000 ____D C:\Users\Honza\AppData\Roaming\Mount&Blade Warband
2015-11-11 20:38 - 2015-11-11 20:38 - 00000000 ____D C:\ProgramData\HP

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-12-11 20:05 - 2015-03-18 20:31 - 00000000 ____D C:\FRST
2015-12-11 19:55 - 2014-12-25 09:06 - 00000000 ____D C:\Users\Honza\AppData\Roaming\Skype
2015-12-11 19:16 - 2014-12-24 22:39 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-12-11 18:54 - 2014-12-24 21:30 - 00003962 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{A3888134-4681-46CD-8F5C-AA5C4D59029E}
2015-12-11 11:33 - 2013-08-22 14:36 - 00000000 ____D C:\Windows\Inf
2015-12-11 11:23 - 2014-12-09 09:06 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3125435620-391947284-2330968494-1001
2015-12-10 21:23 - 2015-08-07 21:23 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2015-12-10 17:25 - 2014-12-24 21:32 - 00003842 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1419453153
2015-12-10 17:25 - 2014-12-24 21:32 - 00001067 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2015-12-10 17:25 - 2014-12-24 21:31 - 00000000 ____D C:\Program Files (x86)\Opera
2015-12-09 04:16 - 2014-12-24 22:39 - 00003802 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-12-09 04:16 - 2014-12-24 21:35 - 00003852 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier
2015-12-09 04:16 - 2014-12-24 21:35 - 00000892 _____ C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job
2015-12-07 13:50 - 2014-08-21 10:25 - 00739924 _____ C:\Windows\system32\perfh005.dat
2015-12-07 13:50 - 2014-08-21 10:25 - 00151610 _____ C:\Windows\system32\perfc005.dat
2015-12-07 13:50 - 2014-03-18 10:47 - 01745984 _____ C:\Windows\system32\PerfStringBackup.INI
2015-12-07 13:48 - 2014-12-09 09:06 - 00000000 ____D C:\Users\Honza\AppData\Local\CrashDumps
2015-12-07 13:45 - 2014-12-09 09:04 - 00000000 __RDO C:\Users\Honza\OneDrive
2015-12-07 13:43 - 2013-08-22 15:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-12-07 13:43 - 2013-08-22 15:44 - 00494520 _____ C:\Windows\system32\FNTCACHE.DAT
2015-12-07 08:55 - 2014-12-25 11:54 - 00000000 ____D C:\Users\Honza\AppData\Roaming\vlc
2015-12-07 07:39 - 2014-07-18 04:32 - 00000000 ____D C:\ProgramData\Adobe
2015-12-07 07:37 - 2014-12-24 21:34 - 00000000 ____D C:\Users\Honza\AppData\Local\Adobe
2015-12-07 07:37 - 2014-12-09 09:00 - 00000000 ____D C:\Users\Honza\AppData\Roaming\Adobe
2015-12-06 21:01 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\AppReadiness
2015-12-04 09:06 - 2015-09-15 14:05 - 00003946 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-12-04 09:06 - 2015-09-15 14:05 - 00003710 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-12-04 09:06 - 2015-09-15 14:05 - 00000970 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-12-01 21:33 - 2014-12-09 08:57 - 00000000 ____D C:\Users\Honza
2015-11-28 22:26 - 2015-03-10 20:55 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-11-28 21:48 - 2013-08-22 14:36 - 00000000 ____D C:\Windows
2015-11-28 21:47 - 2013-08-22 14:25 - 00262144 ___SH C:\Windows\system32\config\BBI
2015-11-28 21:46 - 2015-03-21 11:37 - 00000000 ____D C:\AdwCleaner
2015-11-27 14:06 - 2015-03-11 20:41 - 00000000 ____D C:\Users\Honza\AppData\Roaming\DAEMON Tools Lite
2015-11-26 10:48 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\system32\NDF
2015-11-26 10:43 - 2015-03-21 10:08 - 00000000 ____D C:\Moje#
2015-11-23 07:10 - 2015-06-12 15:46 - 00000000 ____D C:\Users\Honza\Desktop\Wowko,picoviny
2015-11-19 21:59 - 2015-07-28 12:18 - 00000000 ____D C:\Users\Honza\AppData\Local\Game Dev Tycoon

==================== Files in the root of some directories =======

2015-01-04 00:37 - 2015-01-04 00:37 - 0000017 _____ () C:\Users\Honza\AppData\Local\resmon.resmoncfg

Some files in TEMP:
====================
C:\Users\Honza\AppData\Local\Temp\borlndlm.dll
C:\Users\Honza\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Honza\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-12-11 11:23

==================== End of FRST.txt ============================

Re: Zasekaný PC

Napsal: 13 pro 2015 22:34
od Rudy
Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.

Re: Zasekaný PC

Napsal: 20 pro 2015 10:53
od hanzzik123
zDravím, mám tu ještě jeden malý problém. Jde o wifi-stává se mi, že wifi se zobrazí jako "omezená" a zmizí. Po restaru noteboku, se opět objeví na listu, ale nedá se k ní připojit. A opět zmizí, přitom na všech ostatních zařízeních- mobil,tablet funguje bez problému, nemohli byste mi s tím nějak pomoci?


# AdwCleaner v5.025 - Logfile created 20/12/2015 at 10:48:20
# Updated 13/12/2015 by Xplode
# Database : 2015-12-13.2 [Server]
# Operating system : Windows 8.1 Connected (x64)
# Username : Honza - HANZIK
# Running from : C:\Users\Honza\Downloads\adwcleaner_5.025.exe
# Option : Cleaning
# Support : http://toolslib.net/forum

***** [ Services ] *****


***** [ Folders ] *****

[-] Folder Deleted : C:\Device
[-] Folder Deleted : C:\Users\Honza\AppData\Local\PackageAware

***** [ Files ] *****


***** [ DLLs ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****


***** [ Registry ] *****


***** [ Web browsers ] *****


*************************

:: "Tracing" keys removed
:: Winsock settings cleared

########## EOF - C:\AdwCleaner\AdwCleaner[C5].txt - [761 bytes] ##########

Re: Zasekaný PC

Napsal: 20 pro 2015 11:40
od Rudy
Dejte nový log FRST.

Re: Zasekaný PC

Napsal: 21 pro 2015 14:04
od hanzzik123
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:09-12-2015
Ran by Honza (administrator) on HANZIK (21-12-2015 13:48:00)
Running from C:\Users\Honza\Desktop
Loaded Profiles: Honza (Available Profiles: Honza)
Platform: Windows 8.1 Connected (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Opera)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore64.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe
(Intel(R) Corporation) C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QASvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\RMSvc.exe
(WildTangent) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
(acer) C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAEvent.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAMsg.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMLockHandler.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMTray.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Qualcomm®Atheros®) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
() C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerWinMonitor.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Opera Software) C:\Program Files (x86)\Opera\34.0.2036.25\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\34.0.2036.25\opera_crashreporter.exe
(Opera Software) C:\Program Files (x86)\Opera\34.0.2036.25\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\34.0.2036.25\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\34.0.2036.25\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\34.0.2036.25\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\34.0.2036.25\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\34.0.2036.25\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\34.0.2036.25\opera.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13672664 2014-06-30] (Realtek Semiconductor)
HKLM-x32\...\Run: [BacKGround Agent] => C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [62208 2014-12-19] (Acer Incorporated)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [6108752 2015-11-10] (AVAST Software)
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [134784 2014-04-29] (Qualcomm®Atheros®)
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [AcerCloud] => C:\Program Files (x86)\Acer\Acer Portal\acpanel_win.exe [2480384 2014-12-19] (Acer)
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\Run: [uTorrent] => C:\Users\Honza\AppData\Roaming\uTorrent\uTorrent.exe [1374032 2015-01-21] (BitTorrent Inc.)
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\MountPoints2: {47c8b63c-c0cf-11e4-8267-206a8ae03f0c} - "D:\Autorun.exe"
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-07-25] (AVAST Software)
ShellIconOverlayIdentifiers: [ACloudSyncedRF] -> {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} => C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll [2014-12-19] (Acer Incorporated)
ShellIconOverlayIdentifiers: [ACloudSyncedSF] -> {5D5F18B7-D59B-4B18-A3E9-0A4BDCCCB699} => C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll [2014-12-19] (Acer Incorporated)
ShellIconOverlayIdentifiers: [ACloudSyncing] -> {C1E1456F-C2D8-4C96-870D-35F1E13941EE} => C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll [2014-12-19] (Acer Incorporated)
ShellIconOverlayIdentifiers: [ACloudToBeSynced] -> {307523FA-DDC0-4068-983F-2A6B34627744} => C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll [2014-12-19] (Acer Incorporated)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

ProxyEnable: [S-1-5-21-3125435620-391947284-2330968494-1001] => Proxy is enabled.
ProxyServer: [S-1-5-21-3125435620-391947284-2330968494-1001] => 192.168.1.1:8080
Tcpip\Parameters: [DhcpNameServer] 172.25.125.1
Tcpip\..\Interfaces\{73BFEF96-12CB-4CCD-87BE-C4A75FF840D8}: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{9AB34063-885C-4E48-8BB5-A32677981EC8}: [DhcpNameServer] 172.25.125.1

Internet Explorer:
==================
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/?clid=13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {494A6CF8-C5D1-46C4-BBE7-6D6D9B1CA207} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {5D602557-6ED3-4F96-A00A-5DEB66CA62C3} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {63FB1F7D-889C-4EB3-A53D-AB46BD1B805D} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {67C683B3-28F0-4591-A398-BD86109A84C1} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid= ... arch_13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {6D2C490E-2056-44DE-BB89-30B2901A3A44} URL = hxxp://www.mapy.cz/?query={searchTerms}&source ... arch_13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {7823C17E-ECD6-4E6C-AC91-CEC1C4F3DE4D} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {8EC198AD-8D9E-4DC0-8C8C-87493CA42C5D} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {A388744D-D9EE-4DC8-9FB3-7462E3FDD5C4} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&s ... arch_13415
SearchScopes: HKU\S-1-5-21-3125435620-391947284-2330968494-1001 -> {F502DA66-86F2-4467-BFC7-A9BA59EF0FFA} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz ... arch_13415
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-07-25] (AVAST Software)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-07-25] (AVAST Software)

FireFox:
========
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-04] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-04] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\3\NP_wtapp.dll [2014-12-25] ()
FF Plugin-x32: Adobe Reader -> c:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2013-09-05] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3125435620-391947284-2330968494-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Honza\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-07-17] (Unity Technologies ApS)
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-12-10]

Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR NewTab: Default -> "chrome-extension://olfeabkoenfaoljndfecamgilllcpiak/core/chrome/content/speedDial/speedDial.html"
CHR Profile: C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-07]
CHR Extension: (Dokumenty Google) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-07]
CHR Extension: (Disk Google) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-12-24]
CHR Extension: (Seznam Lištička - Email) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2015-03-07]
CHR Extension: (Seznam Lištička - Slovník) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2015-03-07]
CHR Extension: (YouTube) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-03-07]
CHR Extension: (Vyhledávání Google) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-03-07]
CHR Extension: (Avast Online Security) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-03-07]
CHR Extension: (Peněženka Google) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-03-07]
CHR Extension: (Seznam Lištička - Rychlá volba) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2015-03-07]
CHR Extension: (Gmail) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-07]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-07-25]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx <not found>

Opera:
=======
OPR Extension: (Adblock Plus) - C:\Users\Honza\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp [2015-11-25]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [172344 2014-07-23] (SUPERAntiSpyware.com)
R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [319104 2014-04-29] (Windows (R) Win 7 DDK provider) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600 2015-07-25] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4047768 2015-07-25] (Avast Software)
R2 CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2713856 2014-12-19] (Acer Incorporated)
R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2573032 2014-06-12] (Acer Incorporated)
R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [347200 2015-02-24] (WildTangent)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [315376 2014-06-09] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [733696 2013-07-02] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [822232 2013-07-02] (Intel(R) Corporation)
R2 LMSvc; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [466664 2014-06-10] (Acer Incorporate)
R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [458984 2014-06-26] (Acer Incorporate)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [254512 2012-04-24] ()
R3 RMSvc; C:\Program Files\Acer\Acer Quick Access\RMSvc.exe [449768 2014-06-26] (Acer Incorporate)
R3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [233216 2014-06-24] (acer)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [28656 2015-07-25] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [90968 2015-07-25] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-07-25] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65224 2015-07-25] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1059656 2015-11-10] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [449992 2015-11-10] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [150160 2015-07-25] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [274808 2015-07-25] (AVAST Software)
R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3893248 2014-04-03] (Qualcomm Atheros Communications, Inc.)
S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2014-04-29] (Qualcomm Atheros)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2015-03-07] (Disc Soft Ltd)
S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
R3 GPIO; C:\Windows\System32\drivers\iaiogpioe.sys [31232 2014-06-09] (Intel Corporation)
R3 iaioi2c; C:\Windows\System32\drivers\iaioi2ce.sys [69632 2014-06-09] (Intel Corporation)
R3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-07-18] (Acer Incorporated)
R0 ngvss; C:\Windows\System32\Drivers\ngvss.sys [115152 2015-07-25] (AVAST Software)
R3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [14680 2013-07-18] (Acer Incorporated)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R3 TXEIx64; C:\Windows\System32\drivers\TXEIx64.sys [88592 2014-01-15] (Intel Corporation)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [273824 2015-07-25] (Avast Software)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-12-21 08:57 - 2015-12-21 10:03 - 00011957 _____ C:\Users\Honza\Desktop\Nový List aplikace Microsoft Office Excel.xlsx
2015-12-20 10:45 - 2015-12-20 10:45 - 01740288 _____ C:\Users\Honza\Downloads\adwcleaner_5.025.exe
2015-12-19 11:29 - 2015-12-20 11:57 - 00000000 ____D C:\Users\Honza\Documents\Euro Truck Simulator 2
2015-12-19 11:29 - 2015-12-19 11:29 - 00001356 _____ C:\Users\Public\Desktop\Euro Truck Simulator 2.lnk
2015-12-19 11:29 - 2015-12-19 11:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Euro Truck Simulator 2
2015-12-19 11:27 - 2015-12-19 11:29 - 00000000 ____D C:\Program Files (x86)\Euro Truck Simulator 2
2015-12-19 11:16 - 2012-10-22 20:10 - 00000000 ____D C:\Users\Honza\Desktop\euro truck simulator 2
2015-12-11 20:05 - 2015-12-21 13:48 - 00017926 _____ C:\Users\Honza\Desktop\FRST.txt
2015-12-11 20:03 - 2015-12-11 20:03 - 02369024 _____ (Farbar) C:\Users\Honza\Desktop\FRST64.exe
2015-12-07 07:37 - 2015-12-07 07:37 - 00000000 ____D C:\Users\Honza\AppData\LocalLow\Adobe
2015-12-07 07:35 - 2015-12-07 07:35 - 00000000 ____D C:\Users\Honza\Desktop\LAN
2015-12-04 21:30 - 2015-12-04 21:41 - 185628964 _____ C:\Users\Honza\Downloads\[CNT]_Naruto_Shippuuden_436_[AABC865D].mkv
2015-12-04 19:49 - 2015-12-04 20:00 - 185458244 _____ C:\Users\Honza\Downloads\[CNT]_Naruto_Shippuuden_438_[C61C7E9C].mkv
2015-12-04 19:05 - 2015-12-04 19:15 - 182076253 _____ C:\Users\Honza\Downloads\Naruto--Shippuden-437.mkv
2015-12-04 18:27 - 2015-12-04 18:37 - 181237500 _____ C:\Users\Honza\Downloads\[CNT]_Naruto_Shippuuden_435_[6DB5E98C].mkv
2015-12-04 18:12 - 2015-12-04 18:24 - 210461571 _____ C:\Users\Honza\Downloads\[CNT]_Naruto_Shippuuden_434_[912B74D4].mkv
2015-12-04 18:00 - 2015-12-04 18:11 - 207041027 _____ C:\Users\Honza\Downloads\[CNT]_Naruto_Shippuuden_433_[431880F3].mkv
2015-12-04 17:39 - 2015-12-04 17:51 - 202424767 _____ C:\Users\Honza\Downloads\[CNT]_Naruto_Shippuuden_432_[F21876DA].mkv
2015-12-04 17:08 - 2015-12-04 17:22 - 205137937 _____ C:\Users\Honza\Downloads\[CNT]_Naruto_Shippuuden_431_[C0545C2A]-(1).mkv
2015-12-04 09:06 - 2015-12-21 13:22 - 00000974 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-12-03 21:23 - 2015-12-03 21:23 - 00000000 ____D C:\Windows\System32\Tasks\AVAST Software
2015-12-03 21:23 - 2015-12-03 21:23 - 00000000 ____D C:\Program Files\Common Files\AV
2015-12-02 20:04 - 2015-12-02 20:06 - 00000000 ____D C:\Program Files (x86)\Borland
2015-12-02 19:44 - 2015-12-02 20:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Borland Delphi 7
2015-12-02 19:10 - 2015-12-02 19:10 - 00000000 ____D C:\ProgramData\{0DE47792-19BD-4AF4-B9CF-6378FBA44825}
2015-12-02 18:14 - 2015-12-02 18:14 - 00000000 ____D C:\Users\Honza\AppData\Roaming\GullySoft
2015-12-02 16:56 - 2015-12-02 16:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Umíme to s Delphi
2015-12-02 16:56 - 2015-12-02 16:56 - 00000000 ____D C:\Program Files (x86)\Umíme to s Delphi
2015-12-01 21:33 - 2015-12-02 17:33 - 00000000 ____D C:\Users\Honza\Doctor Web
2015-11-26 10:43 - 2015-11-26 10:43 - 00000752 _____ C:\Users\Honza\Desktop\Hry – zástupce.lnk
2015-11-26 10:06 - 2015-12-11 20:16 - 00041542 _____ C:\Users\Honza\Desktop\Addition.txt
2015-11-23 18:41 - 2015-11-23 18:41 - 00127568 _____ C:\Users\Honza\AppData\Local\GDIPFONTCACHEV1.DAT
2015-11-23 09:22 - 2015-11-23 09:22 - 00001086 _____ C:\Users\Public\Desktop\VLC media player.lnk
2015-11-23 09:22 - 2015-11-23 09:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2015-11-23 09:22 - 2015-11-23 09:22 - 00000000 ____D C:\Program Files (x86)\VideoLAN

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-12-21 13:48 - 2015-03-18 20:31 - 00000000 ____D C:\FRST
2015-12-21 13:16 - 2014-12-24 22:39 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-12-21 12:38 - 2014-12-24 21:30 - 00003962 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{A3888134-4681-46CD-8F5C-AA5C4D59029E}
2015-12-21 07:00 - 2014-08-21 10:25 - 00739924 _____ C:\Windows\system32\perfh005.dat
2015-12-21 07:00 - 2014-08-21 10:25 - 00151610 _____ C:\Windows\system32\perfc005.dat
2015-12-21 07:00 - 2014-03-18 10:47 - 01745984 _____ C:\Windows\system32\PerfStringBackup.INI
2015-12-21 07:00 - 2013-08-22 14:36 - 00000000 ____D C:\Windows\Inf
2015-12-21 06:59 - 2014-12-09 09:04 - 00000000 __RDO C:\Users\Honza\OneDrive
2015-12-21 06:03 - 2014-12-25 09:06 - 00000000 ____D C:\Users\Honza\AppData\Roaming\Skype
2015-12-20 21:03 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\system32\NDF
2015-12-20 14:52 - 2013-08-22 14:36 - 00000000 ____D C:\Windows
2015-12-20 13:40 - 2015-03-11 20:41 - 00000000 ____D C:\Users\Honza\AppData\Roaming\DAEMON Tools Lite
2015-12-20 13:39 - 2014-12-09 09:06 - 00000000 ____D C:\Users\Honza\AppData\Local\CrashDumps
2015-12-20 10:49 - 2013-08-22 15:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-12-20 10:48 - 2015-03-21 11:37 - 00000000 ____D C:\AdwCleaner
2015-12-20 10:48 - 2014-12-09 08:57 - 00000000 ____D C:\Users\Honza
2015-12-20 10:40 - 2013-08-22 14:25 - 00262144 ___SH C:\Windows\system32\config\BBI
2015-12-20 05:27 - 2014-12-09 09:06 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3125435620-391947284-2330968494-1001
2015-12-20 01:56 - 2014-12-24 21:35 - 00000892 _____ C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job
2015-12-16 17:45 - 2015-02-07 10:32 - 00001877 _____ C:\Users\Honza\Desktop\jetosupr.txt
2015-12-10 21:23 - 2015-08-07 21:23 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2015-12-10 17:25 - 2014-12-24 21:32 - 00003842 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1419453153
2015-12-10 17:25 - 2014-12-24 21:32 - 00001067 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2015-12-10 17:25 - 2014-12-24 21:31 - 00000000 ____D C:\Program Files (x86)\Opera
2015-12-09 04:16 - 2014-12-24 22:39 - 00003802 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-12-09 04:16 - 2014-12-24 21:35 - 00003852 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier
2015-12-07 13:43 - 2013-08-22 15:44 - 00494520 _____ C:\Windows\system32\FNTCACHE.DAT
2015-12-07 08:55 - 2014-12-25 11:54 - 00000000 ____D C:\Users\Honza\AppData\Roaming\vlc
2015-12-07 07:39 - 2014-07-18 04:32 - 00000000 ____D C:\ProgramData\Adobe
2015-12-07 07:37 - 2014-12-24 21:34 - 00000000 ____D C:\Users\Honza\AppData\Local\Adobe
2015-12-07 07:37 - 2014-12-09 09:00 - 00000000 ____D C:\Users\Honza\AppData\Roaming\Adobe
2015-12-06 21:01 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\AppReadiness
2015-12-04 09:06 - 2015-09-15 14:05 - 00003946 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-12-04 09:06 - 2015-09-15 14:05 - 00003710 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-12-04 09:06 - 2015-09-15 14:05 - 00000970 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-11-28 22:26 - 2015-03-10 20:55 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-11-26 10:43 - 2015-03-21 10:08 - 00000000 ____D C:\Moje#
2015-11-23 07:10 - 2015-06-12 15:46 - 00000000 ____D C:\Users\Honza\Desktop\Wowko,picoviny

==================== Files in the root of some directories =======

2015-01-04 00:37 - 2015-01-04 00:37 - 0000017 _____ () C:\Users\Honza\AppData\Local\resmon.resmoncfg

==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-12-18 06:41

==================== End of FRST.txt ============================

Re: Zasekaný PC

Napsal: 21 pro 2015 18:12
od Rudy
Otevřte poznámkový blok a zkopírujte do něj:
Start
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\MountPoints2: {47c8b63c-c0cf-11e4-8267-206a8ae03f0c} - "D:\Autorun.exe"
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Re: Zasekaný PC

Napsal: 21 pro 2015 23:26
od hanzzik123
Fix result of Farbar Recovery Scan Tool (x64) Version:09-12-2015
Ran by Honza (2015-12-21 23:25:49) Run:5
Running from C:\Users\Honza\Desktop
Loaded Profiles: Honza (Available Profiles: Honza)
Boot Mode: Normal
==============================================

fixlist content:
*****************

*****************


==== End of Fixlog 23:25:50 ====

Re: Zasekaný PC

Napsal: 22 pro 2015 19:15
od Rudy
Fixlist nebyl načten. Neudělal jste někde chybu?

Re: Zasekaný PC

Napsal: 29 pro 2015 17:14
od hanzzik123
Fix result of Farbar Recovery Scan Tool (x64) Version:29-12-2015
Ran by Honza (2015-12-29 17:14:24) Run:6
Running from C:\Users\Honza\Desktop
Loaded Profiles: Honza (Available Profiles: Honza)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
HKU\S-1-5-21-3125435620-391947284-2330968494-1001\...\MountPoints2: {47c8b63c-c0cf-11e4-8267-206a8ae03f0c} - "D:\Autorun.exe"
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
End
*****************

"HKU\S-1-5-21-3125435620-391947284-2330968494-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{47c8b63c-c0cf-11e4-8267-206a8ae03f0c}" => key removed successfully
HKCR\CLSID\{47c8b63c-c0cf-11e4-8267-206a8ae03f0c} => key not found.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully

==== End of Fixlog 17:14:25 ====

Zde nový fixlog

Re: Zasekaný PC

Napsal: 29 pro 2015 17:41
od Rudy
Smazáno. Nastala nějaká změna?

Re: Zasekaný PC

Napsal: 03 led 2016 13:09
od hanzzik123
PC se zdá být rychlejší, děkuji za pomoc. :thumbsup:

Re: Zasekaný PC

Napsal: 03 led 2016 17:58
od Rudy
Rádo se stalo! :)