Stránka 1 z 1

autochk.exe

Napsal: 14 kvě 2016 11:55
od stepano
Dobrý den, jednou mi avast našel virus Win32:Malware-gen v souboru C:/Windows/System32/autochk.exe poté co avast virus přesunul virus do karantény se mi po startu sytému zobrazuje "autochk not found skipping autocheck"

Předem děkuji za odpověď

Logfile of random's system information tool 1.10 (written by randomrandom)
Run by Stepan at 2016-05-14 122733
Microsoft Windows 7 Starter Service Pack 1
System drive C has 54 GB (53%) free of 102 GB
Total RAM 1012 MB (28% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 122929, on 14.5.2016
Platform Windows 7 SP1 (WinNT 6.00.3505)
MSIE Internet Explorer v11.0 (11.00.9600.18283)
Boot mode Normal

Running processes
Cwindowssystem32taskhost.exe
Cwindowssystem32Dwm.exe
CwindowsExplorer.EXE
CExpressGateUtilVAWinAgent.exe
CWindowsSystem32igfxtray.exe
CWindowsSystem32hkcmd.exe
Cwindowssystem32igfxsrvc.exe
CWindowsSystem32igfxpers.exe
CProgram FilesRealtekAudioHDARtHDVCpl.exe
Cwindowssystem32GWXGWX.exe
CProgram FilesSynapticsSynTPSynAsusAcpi.exe
CProgram FilesCommon FilesJavaJava Updatejusched.exe
CProgram FilesAVAST SoftwareAvastavastui.exe
CProgram FilesZonerPhoto Studio 18Program32ZPSTray.exe
Cwindowssystem32wbemunsecapp.exe
Cwindowsexplorer.exe
CUsersStepanDesktopRSIT.exe
CProgram Filestrend microStepan.exe

R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = httpasus.msn.com
R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = httpwww.google.cz
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = httpgo.microsoft.comfwlinkpLinkId=255141
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = httpgo.microsoft.comfwlinkLinkId=54896
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = httpgo.microsoft.comfwlinkLinkId=54896
R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = httpgo.microsoft.comfwlinkpLinkId=255141
R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant =
R0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,CustomizeSearch =
R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName =
O2 - BHO Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - CProgram FilesJavajre1.8.0_91binssv.dll
O2 - BHO URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - CProgram FilesMicrosoft OfficerootOffice16URLREDIR.DLL
O2 - BHO Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - CProgram FilesJavajre1.8.0_91binjp2ssv.dll
O4 - HKLM..Run [GfxServiceInstall] Cwindowssystem32GfxCUIServiceInstall.vbs
O4 - HKLM..Run [HotkeyMon] AsusSender.exe CProgram FilesASUSHotkeyServiceHotKeyMon.exe
O4 - HKLM..Run [HotkeyService] AsusSender.exe CProgram FilesASUSHotkeyServiceHotkeyService.exe
O4 - HKLM..Run [SuperHybridEngine] AsusSender.exe CProgram FilesASUSSHESuperHybridEngine.exe
O4 - HKLM..Run [CapsHook] AsusSender.exe CProgram FilesASUSCapsHookCapsHook.exe
O4 - HKLM..Run [VAWinAgent] CExpressGateUtilVAWinAgent.exe
O4 - HKLM..Run [IgfxTray] Cwindowssystem32igfxtray.exe
O4 - HKLM..Run [HotKeysCmds] Cwindowssystem32hkcmd.exe
O4 - HKLM..Run [Persistence] Cwindowssystem32igfxpers.exe
O4 - HKLM..Run [RTHDVCPL] CProgram FilesRealtekAudioHDARtHDVCpl.exe -s
O4 - HKLM..Run [SynTPEnh] %ProgramFiles%SynapticsSynTPSynTPEnh.exe
O4 - HKLM..Run [ASUSPRP] CProgram FilesASUSAPRPAPRP.EXE
O4 - HKLM..Run [SynAsusAcpi] %ProgramFiles%SynapticsSynTPSynAsusAcpi.exe
O4 - HKLM..Run [APSDaemon] CProgram FilesCommon FilesAppleApple Application SupportAPSDaemon.exe
O4 - HKLM..Run [SunJavaUpdateSched] CProgram FilesCommon FilesJavaJava Updatejusched.exe
O4 - HKLM..Run [AvastUI.exe] CProgram FilesAVAST SoftwareAvastAvastUI.exe nogui
O4 - HKCU..Run [Google Update] CUsersStepanAppDataLocalGoogleUpdateGoogleUpdate.exe c
O4 - HKCU..Run [Zoner Photo Studio Autoupdate] CProgram FilesZonerPhoto Studio 18Program32ZPSTRAY.EXE
O4 - HKUSS-1-5-19..Run [Sidebar] %ProgramFiles%Windows SidebarSidebar.exe autoRun (User 'LOCAL SERVICE')
O4 - HKUSS-1-5-19..RunOnce [mctadmin] CWindowsSystem32mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUSS-1-5-20..Run [Sidebar] %ProgramFiles%Windows SidebarSidebar.exe autoRun (User 'NETWORK SERVICE')
O4 - HKUSS-1-5-20..RunOnce [mctadmin] CWindowsSystem32mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUSS-1-5-18..Run [KSS] CProgram FilesKaspersky LabKaspersky Security Scankss.exe autorun (User 'SYSTEM')
O4 - HKUS.DEFAULT..Run [KSS] CProgram FilesKaspersky LabKaspersky Security Scankss.exe autorun (User 'Default user')
O8 - Extra context menu item Add to Google Photos Screensa&ver - resCwindowssystem32GPhotos.scr200
O8 - Extra context menu item E&xport to Microsoft Excel - resCProgram FilesMicrosoft Office 15RootOffice15EXCEL.EXE3000
O8 - Extra context menu item E&xportovat do aplikace Microsoft Excel - resCPROGRA~1MIF5BA~1Office12EXCEL.EXE3000
O8 - Extra context menu item Se&nd to OneNote - resCProgram FilesMicrosoft OfficeRootOffice16ONBttnIE.dll105
O9 - Extra button Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - CProgram FilesMicrosoft OfficerootOffice16ONBttnIE.dll
O9 - Extra 'Tools' menuitem Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - CProgram FilesMicrosoft OfficerootOffice16ONBttnIE.dll
O9 - Extra button OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - CProgram FilesMicrosoft OfficerootOffice16ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - CProgram FilesMicrosoft OfficerootOffice16ONBttnIELinkedNotes.dll
O9 - Extra button Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - CPROGRA~1MIF5BA~1Office12REFIEBAR.DLL
O11 - Options group [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF {7530BFB8-7293-4D34-9923-61A11451AFC5} - httpdownload.eset.comspecialeosOnlineScanner.cab
O18 - Protocol mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - CProgram FilesMicrosoft OfficerootOffice16MSOSB.DLL
O18 - Protocol mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - CProgram FilesMicrosoft OfficerootOffice16MSOSB.DLL
O18 - Protocol osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - CProgram FilesMicrosoft OfficerootOffice16MSOSB.DLL
O18 - Protocol osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - CProgram FilesMicrosoft OfficerootOffice16MSOSB.DLL
O23 - Service ArcSoft Connect Daemon (ACDaemon) - Unknown owner - CProgram FilesCommon FilesArcSoftConnection ServiceBinACService.exe (file missing)
O23 - Service Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - CProgram FilesCommon FilesAdobeARM1.0armsvc.exe
O23 - Service Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - Cwindowssystem32MacromedFlashFlashPlayerUpdateService.exe
O23 - Service ASUS InstantOn Service (ASUS InstantOn) - ASUS - CProgram FilesASUSInstantOn for EPCInsOnSrv.exe
O23 - Service Asus Launcher Service (AsusService) - Unknown owner - Cwindowssystem32AsusService.exe
O23 - Service Avast Antivirus (avast! Antivirus) - AVAST Software - CProgram FilesAVAST SoftwareAvastAvastSvc.exe
O23 - Service Služba Vzdálené plochy Chrome (chromoting) - Google Inc. - CProgram FilesGoogleChrome Remote Desktop50.0.2661.22remoting_host.exe
O23 - Service CLHNServiceForPowerDVD12 - CyberLink Corp. - CProgram FilesCyberLinkPowerDVD12KernelDMPCLHNServerCLHNServiceForPowerDVD12.exe
O23 - Service CyberLink PowerDVD 12 Media Server Monitor Service - CyberLink - CProgram FilesCyberLinkPowerDVD12KernelDMSCLMSMonitorServicePDVD12.exe
O23 - Service CyberLink PowerDVD 12 Media Server Service - CyberLink - CProgram FilesCyberLinkPowerDVD12KernelDMSCLMSServerPDVD12.exe
O23 - Service Disc Soft Lite Bus Service - Disc Soft Ltd - CProgram FilesDAEMON Tools LiteDiscSoftBusService.exe
O23 - Service Služba Google Update (gupdate) (gupdate) - Google Inc. - CProgram FilesGoogleUpdateGoogleUpdate.exe
O23 - Service Služba Google Update (gupdatem) (gupdatem) - Google Inc. - CProgram FilesGoogleUpdateGoogleUpdate.exe
O23 - Service Google Software Updater (gusvc) - Google - CProgram FilesGoogleCommonGoogle UpdaterGoogleUpdaterService.exe
O23 - Service InstallDriver Table Manager (IDriverT) - Macrovision Corporation - CProgram FilesCommon FilesInstallShieldDriver11Intel 32IDriverT.exe
O23 - Service Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - CProgram FilesMozilla Maintenance Servicemaintenanceservice.exe
O23 - Service VideAceWindowsService - Unknown owner - CExpressGateUtilVAWinService.exe

--
End of file - 8686 bytes

======Scheduled tasks folder======

CwindowstasksAdobe Flash Player Updater.job - Cwindowssystem32MacromedFlashFlashPlayerUpdateService.exe
CwindowstasksGoogleUpdateTaskMachineCore.job - CProgram FilesGoogleUpdateGoogleUpdate.exe c
CwindowstasksGoogleUpdateTaskMachineUA.job - CProgram FilesGoogleUpdateGoogleUpdate.exe ua installsource scheduler
CwindowstasksGoogleUpdateTaskUserS-1-5-21-1257300328-1761253580-3263402067-1000Core.job - CUsersStepanAppDataLocalGoogleUpdateGoogleUpdate.exe c
CwindowstasksGoogleUpdateTaskUserS-1-5-21-1257300328-1761253580-3263402067-1000UA.job - CUsersStepanAppDataLocalGoogleUpdateGoogleUpdate.exe ua installsource scheduler

=========Mozilla firefox=========

ProfilePath - CUsersStepanAppDataRoamingMozillaFirefoxProfiles97uol6hx.default-1446897182295

[HKEY_LOCAL_MACHINESOFTWAREMozillaPlugins@adobe.comFlashPlayer]
Description=Adobe® Flash® Player 21.0.0.242 Plugin
Path=Cwindowssystem32MacromedFlashNPSWF32_21_0_0_242.dll

[HKEY_LOCAL_MACHINESOFTWAREMozillaPlugins@java.comDTPlugin,version=11.91.2]
Description=Java™ Deployment Toolkit
Path=CProgram FilesJavajre1.8.0_91bindtpluginnpDeployJava1.dll

[HKEY_LOCAL_MACHINESOFTWAREMozillaPlugins@java.comJavaPlugin,version=11.91.2]
Description=Oracle® Next Generation Java™ Plug-In
Path=CProgram FilesJavajre1.8.0_91binplugin2npjp2.dll

[HKEY_LOCAL_MACHINESOFTWAREMozillaPlugins@Microsoft.comNpCtrl,version=1.0]
Description=Ag Player Plugin
Path=CProgram FilesMicrosoft Silverlight5.1.41212.0npctrl.dll

[HKEY_LOCAL_MACHINESOFTWAREMozillaPlugins@microsoft.comSharePoint,version=14.0]
Description=Microsoft SharePoint Plug-in for Firefox
Path=CProgram FilesMicrosoft OfficerootOffice16NPSPWRAP.DLL

[HKEY_LOCAL_MACHINESOFTWAREMozillaPlugins@microsoft.comWLPG,version=15.4.3502.0922]
Description=WLPG Install MIME type
Path=CProgram FilesWindows LivePhoto GalleryNPWLPG.dll

[HKEY_LOCAL_MACHINESOFTWAREMozillaPlugins@tools.google.comGoogle Update;version=3]
Description=Google Update
Path=CProgram FilesGoogleUpdate1.3.30.3npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINESOFTWAREMozillaPlugins@tools.google.comGoogle Update;version=9]
Description=Google Update
Path=CProgram FilesGoogleUpdate1.3.30.3npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINESOFTWAREMozillaPluginsAdobe Reader]
Description=Handles PDFs in-place in Firefox
Path=CProgram FilesAdobeAcrobat Reader DCReaderAIRnppdf32.dll


CUsersStepanAppDataRoamingMozillaFirefoxProfiles97uol6hx.default-1446897182295extensions
https-everywhere-eff@eff.org

======Registry dump======

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - CProgram FilesJavajre1.8.0_91binssv.dll [2016-04-24 462400]

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - CProgram FilesMicrosoft OfficerootOffice16URLREDIR.DLL [2016-04-29 431392]

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - CProgram FilesJavajre1.8.0_91binjp2ssv.dll [2016-04-24 173120]

[HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionRun]
GfxServiceInstall=Cwindowssystem32GfxCUIServiceInstall.vbs [2012-02-27 131]
HotkeyMon=AsusSender.exe CProgram FilesASUSHotkeyServiceHotKeyMon.exe []
HotkeyService=AsusSender.exe CProgram FilesASUSHotkeyServiceHotkeyService.exe []
SuperHybridEngine=AsusSender.exe CProgram FilesASUSSHESuperHybridEngine.exe []
CapsHook=AsusSender.exe CProgram FilesASUSCapsHookCapsHook.exe []
VAWinAgent=CExpressGateUtilVAWinAgent.exe [2011-08-19 45448]
IgfxTray=Cwindowssystem32igfxtray.exe [2012-02-27 135168]
HotKeysCmds=Cwindowssystem32hkcmd.exe [2012-02-27 168960]
Persistence=Cwindowssystem32igfxpers.exe [2012-02-27 161280]
RTHDVCPL=CProgram FilesRealtekAudioHDARtHDVCpl.exe [2011-09-28 11004520]
SynTPEnh=CProgram FilesSynapticsSynTPSynTPEnh.exe [2011-06-30 2274600]
ASUSPRP=CProgram FilesASUSAPRPAPRP.EXE [2012-05-16 3331312]
SynAsusAcpi=CProgram FilesSynapticsSynTPSynAsusAcpi.exe [2011-06-30 83240]
APSDaemon=CProgram FilesCommon FilesAppleApple Application SupportAPSDaemon.exe []
SunJavaUpdateSched=CProgram FilesCommon FilesJavaJava Updatejusched.exe [2016-04-01 596504]
AvastUI.exe=CProgram FilesAVAST SoftwareAvastAvastUI.exe [2016-05-14 7400576]

[HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun]
Google Update=CUsersStepanAppDataLocalGoogleUpdateGoogleUpdate.exe [2015-08-27 144200]
Zoner Photo Studio Autoupdate=CProgram FilesZonerPhoto Studio 18Program32ZPSTRAY.EXE [2016-03-24 680528]

[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregDAEMON Tools Lite Automount]
CProgram FilesDAEMON Tools LiteDTAgent.exe [2016-03-01 3369664]

[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregLiveUpdate]
AsusSender.exe CProgram FilesAsusLiveUpdateLiveUpdate.exe auto []

[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregPowerDVD12Agent]
CProgram FilesCyberLinkPowerDVD12PowerDVD12Agent.exe [2012-07-25 374560]

[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregPowerDVD12DMREngine]
CProgram FilesCyberLinkPowerDVD12KernelDMRPowerDVD12DMREngine.exe [2012-07-25 505872]

[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregSpotify]
CUsersStepanAppDataRoamingSpotifySpotify.exe [2016-05-09 6890608]

[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregSpotify Web Helper]
CUsersStepanAppDataRoamingSpotifySpotifyWebHelper.exe [2016-05-09 1525360]

[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupfolderC^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^AsusVibeLauncher.lnk]
CPROGRA~1AsusAsusVibeASUSVI~2.EXE [2012-01-13 549040]

[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupfolderC^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Kaspersky Software Updater Beta.lnk]
CPROGRA~1KASPER~1KASPER~2ksu.exe [2015-12-14 3529600]

[HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupfolderC^Users^Stepan^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Poslat do aplikace OneNote.lnk]
CPROGRA~1MIF5BA~1rootOffice16ONENOTEM.EXE [2016-04-29 170176]

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionWinlogonNotifyigfxcui]
Cwindowssystem32igfxdev.dll [2012-02-27 224768]

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetcontrolsecurityproviders]
SecurityProviders=credssp.dll

[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootMinimalhitmanpro37]

[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootMinimalhitmanpro37.sys]

[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootMinimalHitmanPro37Crusader]

[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootMinimalHitmanPro37CrusaderBoot]

[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootnetworkAFD]

[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootnetworkhitmanpro37]

[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootnetworkhitmanpro37.sys]

[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootnetworkHitmanPro37Crusader]

[HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootnetworkHitmanPro37CrusaderBoot]

[HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesSystem]
ConsentPromptBehaviorAdmin=5
ConsentPromptBehaviorUser=3
EnableUIADesktopToggle=0
dontdisplaylastusername=0
legalnoticecaption=
legalnoticetext=
shutdownwithoutlogon=1
undockwithoutlogon=1
SoftwareSASGeneration=1

[HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionPoliciesexplorer]
NoDriveTypeAutoRun=145

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicystandardprofileauthorizedapplicationslist]

[HKEY_LOCAL_MACHINEsystemcurrentcontrolsetservicessharedaccessparametersfirewallpolicydomainprofileauthorizedapplicationslist]

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows NTCurrentVersionDrivers32]
vidc.mrle=msrle32.dll
vidc.msvc=msvidc32.dll
msacm.imaadpcm=imaadp32.acm
msacm.msg711=msg711.acm
msacm.msgsm610=msgsm32.acm
msacm.msadpcm=msadp32.acm
midimapper=midimap.dll
wavemapper=msacm32.drv
VIDC.UYVY=msyuv.dll
VIDC.YUY2=msyuv.dll
VIDC.YVYU=msyuv.dll
VIDC.IYUV=iyuv_32.dll
vidc.i420=iyuv_32.dll
VIDC.YVU9=tsbyuv.dll
msacm.l3acm=CWindowsSystem32l3codeca.acm
vidc.cvid=iccvid.dll
MSVideo8=VfWWDM32.dll
wave=wdmaud.drv
midi=wdmaud.drv
mixer=wdmaud.drv
aux=wdmaud.drv
wave1=wdmaud.drv
midi1=wdmaud.drv
mixer1=wdmaud.drv
aux1=wdmaud.drv
msacm.l3codecp=l3codecp.acm
msacm.l3codec=l3codecp.acm

======File associations======

.js - edit - CWindowsSystem32Notepad.exe %1
.js - open - CWindowsSystem32WScript.exe %1 %

======List of filesfolders created in the last 1 month======

2016-05-14 122733 ----D---- Crsit
2016-05-14 122733 ----D---- CProgram Filestrend micro
2016-05-14 121546 ----D---- CAdwCleaner
2016-05-13 154706 ----A---- Cwindowssystem32FlashPlayerInstaller.exe
2016-05-09 182502 ----D---- CUsersStepanAppDataRoamingSpotify
2016-05-09 174523 ----D---- CProgram FilesPolda
2016-05-05 024135 ----SHD---- Cfound.000
2016-05-02 114038 ----D---- CProgram FilesXiph.Org
2016-05-01 132905 ----A---- Cwindowssystem32driversaswKbd.sys
2016-05-01 132724 ----D---- CUsersStepanAppDataRoamingAVAST Software
2016-05-01 132624 ----D---- CProgram FilesCommon FilesAV
2016-05-01 132604 ----A---- Cwindowssystem32driversaswVmm.sys
2016-05-01 132604 ----A---- Cwindowssystem32driversaswStm.sys
2016-05-01 132604 ----A---- Cwindowssystem32driversaswSP.sys
2016-05-01 132604 ----A---- Cwindowssystem32driversaswRvrt.sys
2016-05-01 132603 ----A---- Cwindowssystem32driversaswRdr2.sys
2016-05-01 132603 ----A---- Cwindowssystem32driversaswMonFlt.sys
2016-05-01 132603 ----A---- Cwindowssystem32driversaswHwid.sys
2016-05-01 132602 ----A---- Cwindowssystem32driversaswSnx.sys
2016-05-01 132543 ----A---- Cwindowssystem32aswBoot.exe
2016-05-01 132513 ----A---- CwindowsavastSS.scr
2016-05-01 132354 ----D---- CProgram FilesAVAST Software
2016-05-01 132257 ----D---- CProgramDataAVAST Software
2016-05-01 125133 ----D---- CUsersStepanAppDataRoamingQuickScan
2016-04-25 145949 ----D---- CProgramDataMalwarebytes' Anti-Malware (portable)
2016-04-24 115313 ----A---- Cwindowssystem32webio.dll
2016-04-24 115312 ----A---- Cwindowssystem32winhttp.dll
2016-04-24 115238 ----A---- Cwindowssystem32InkEd.dll
2016-04-24 095218 ----D---- CProgram FilesCommon FilesJava
2016-04-23 124744 ----D---- CProgram FilesMicrosoft Works
2016-04-23 124721 ----D---- CProgram FilesMicrosoft Visual Studio
2016-04-23 124245 ----D---- CwindowsSHELLNEW
2016-04-23 124133 ----RHD---- CMSOCache
2016-04-20 170130 ----D---- CProgramDataregid.1991-06.com.microsoft
2016-04-20 165753 ----D---- CProgram FilesMicrosoft Office 15
2016-04-17 142122 ----D---- CwindowsMinidump
2016-04-17 133202 ----D---- CProgram FilesPolda 5
2016-04-15 173217 ----D---- CUsersStepanAppDataRoamingTubeTycoon
2016-04-15 111355 ----D---- CProgram FilesPolda 4

======List of filesfolders modified in the last 1 month======

2016-05-14 122746 ----D---- CwindowsPrefetch
2016-05-14 122733 ----RD---- CProgram Files
2016-05-14 122636 ----D---- CwindowsTemp
2016-05-14 112608 ----D---- Cwindowssystem32config
2016-05-14 112351 ----D---- Cwindowspss
2016-05-14 111721 ----SHD---- CwindowsInstaller
2016-05-14 111718 ----D---- Cwindowssystem32Tasks
2016-05-14 111509 ----D---- CwindowsSystem32
2016-05-13 154719 ----A---- Cwindowssystem32FlashPlayerApp.exe
2016-05-13 150131 ----D---- Cwindowswinsxs
2016-05-13 145749 ----D---- Cwindowssystem32catroot2
2016-05-13 144012 ----D---- CwindowsTasks
2016-05-10 220313 ----D---- CProgramDataMicrosoft Help
2016-05-10 220015 ----SHD---- CSystem Volume Information
2016-05-09 183715 ----D---- CUsersStepanAppDataRoamingViberPC
2016-05-08 210514 ----SD---- Cwindowssystem32GWX
2016-05-08 181059 ----HD---- CProgramData
2016-05-07 110246 ----D---- CwindowsMicrosoft.NET
2016-05-07 105657 ----SD---- CProgramDataMicrosoft
2016-05-07 105630 ----D---- CWindows
2016-05-07 105454 ----D---- CProgram FilesCommon Filesmicrosoft shared
2016-05-07 105454 ----D---- CProgram FilesCommon FilesDESIGNER
2016-05-07 105241 ----D---- CProgram FilesMicrosoft Office
2016-05-05 222548 ----D---- Cwindowssystem32appraiser
2016-05-05 184351 ----D---- CProgram FilesMozilla Firefox
2016-05-05 023813 ----D---- Cwindowssystem32LogFiles
2016-05-03 104919 ----RSD---- Cwindowsassembly
2016-05-02 100354 ----D---- CProgram FilesAdobe
2016-05-01 132905 ----D---- Cwindowssystem32drivers
2016-05-01 132624 ----D---- CProgram FilesCommon Files
2016-05-01 132454 ----A---- Cwindowssystem32agremove.exe
2016-05-01 125620 ----D---- Cwindowsinf
2016-05-01 125618 ----D---- Cwindowssystem32DriverStore
2016-04-24 095426 ----D---- CProgramDataOracle
2016-04-24 095347 ----D---- CProgram FilesJava
2016-04-24 094930 ----A---- Cwindowssystem32WindowsAccessBridge.dll
2016-04-23 124703 ----RSD---- CwindowsFonts
2016-04-22 153657 ----A---- Cwindowssystem32PerfStringBackup.INI
2016-04-21 150504 ----N---- Cwindowssystem32MpSigStub.exe
2016-04-20 171520 ----D---- CwindowsSoftwareDistribution
2016-04-15 031042 ----D---- Cwindowsrescache

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; Cwindowssystem32driversaswRvrt.sys [2016-05-01 58776]
R0 aswVmm;avast! VM Monitor; Cwindowssystem32driversaswVmm.sys [2016-05-01 221368]
R0 iaStor;Intel AHCI Controller; Cwindowssystem32driversiaStor.sys [2010-11-06 354840]
R0 rdyboost;ReadyBoost; CwindowsSystem32driversrdyboost.sys [2010-11-20 173440]
R1 AsIO;AsIO; Cwindowssystem32driversAsIO.sys [2010-06-28 11456]
R1 AsUpIO;AsUpIO; Cwindowssystem32driversAsUpIO.sys [2010-08-03 11832]
R1 aswKbd;aswKbd; Cwindowssystem32driversaswKbd.sys [2016-05-01 35096]
R1 aswRdr;aswRdr; Cwindowssystem32driversaswRdr2.sys [2016-05-01 91232]
R1 aswSnx;aswSnx; Cwindowssystem32driversaswSnx.sys [2016-05-01 815792]
R1 aswSP;aswSP; Cwindowssystem32driversaswSP.sys [2016-05-01 449640]
R1 vwififlt;Virtual WiFi Filter Driver; Cwindowssystem32DRIVERSvwififlt.sys [2009-07-14 48128]
R2 {73526619-C24F-470B-9BED-53D455FBB5C6};Power Control [20130323 183132]; CProgram FilesCyberLinkPowerDVD12CommonNavFilter000.fcl [2012-08-10 88312]
R2 aswHwid;avast! HardwareID; Cwindowssystem32driversaswHwid.sys [2016-05-01 32792]
R2 aswMonFlt;aswMonFlt; Cwindowssystem32driversaswMonFlt.sys [2016-05-01 91168]
R2 aswStm;aswStm; Cwindowssystem32driversaswStm.sys [2016-05-01 124808]
R2 ntk_PowerDVD12;ntk_PowerDVD12; CProgram FilesCyberLinkPowerDVD12KernelDMPCLHNServerntk_PowerDVD12.sys [2012-06-20 121208]
R3 athr;Atheros Extensible Wireless LAN device driver; Cwindowssystem32DRIVERSathr.sys [2012-01-10 2231808]
R3 dtlitescsibus;DAEMON Tools Lite Virtual SCSI Bus; Cwindowssystem32DRIVERSdtlitescsibus.sys [2016-01-04 26168]
R3 dtliteusbbus;DAEMON Tools Lite Virtual USB Bus; Cwindowssystem32DRIVERSdtliteusbbus.sys [2016-03-12 40504]
R3 igddim32;igddim32; Cwindowssystem32DRIVERSigddim32.sys [2012-02-27 1344512]
R3 igdkmd32;igdkmd32; Cwindowssystem32DRIVERSigdkmd32.sys [2012-02-27 419328]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); Cwindowssystem32driversRTKVHDA.sys [2011-10-04 3681000]
R3 IntcDAud;Intel(R) Display Audio; Cwindowssystem32DRIVERSIntcDAud.sys [2011-06-09 278528]
R3 kbfiltr;Keyboard Filter; Cwindowssystem32DRIVERSkbfiltr.sys [2009-07-20 13880]
R3 L1C;NDIS Miniport Driver for Atheros AR81xx PCI-E Ethernet Controller; Cwindowssystem32DRIVERSL1C62x86.sys [2011-11-01 91760]
R3 SynTP;Synaptics TouchPad Driver; Cwindowssystem32DRIVERSSynTP.sys [2011-06-30 1353008]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; Cwindowssystem32DRIVERSvwifimp.sys [2009-07-14 14336]
S2 Parvdm;Parvdm; Cwindowssystem32driversparvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; Cwindowssystem32driversdjsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; Cwindowssystem32driversamdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; Cwindowssystem32DRIVERSb57nd60x.sys [2009-07-14 229888]
S3 BthEnum;Ovladač pro Bluetooth Request Block; Cwindowssystem32driversBthEnum.sys [2009-07-14 34816]
S3 BthPan;Bluetooth Device (Personal Area Network); Cwindowssystem32DRIVERSbthpan.sys [2009-07-14 93696]
S3 BTHPORT;Ovladač portu Bluetooth; CwindowsSystem32DriversBTHport.sys [2012-07-06 393728]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; CwindowsSystem32DriversBTHUSB.sys [2011-04-28 60416]
S3 DETECT PS2 ;DETECT PS2 ; CProgram FilesASUSLiveUpdateDetectSys.sys [2010-05-26 6144]
S3 GPU-Z;GPU-Z; CUsersStepanAppDataLocalTempGPU-Z.sys [2016-04-17 23936]
S3 Huawei;HUAWEI Mobile Connect - USB Smart Card Reader; Cwindowssystem32DRIVERSewdcsc.sys [2009-12-15 23424]
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; Cwindowssystem32DRIVERSewusbmdm.sys [2009-12-15 102912]
S3 hwusbdev;Huawei DataCard USB PNP Device; Cwindowssystem32DRIVERSewusbdev.sys [2009-12-15 101120]
S3 igfx;igfx; Cwindowssystem32DRIVERSigdkmd32.sys [2012-02-27 419328]
S3 pciide;pciide; Cwindowssystem32driverspciide.sys [2009-07-14 12368]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; CwindowsSystem32driversrdpvideominiport.sys [2012-08-23 14848]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); Cwindowssystem32DRIVERSrfcomm.sys [2009-07-14 129536]
S3 sisagp;SIS AGP Bus Filter; Cwindowssystem32driverssisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%system32driverstsusbflt.sys,-1; CwindowsSystem32driverstsusbflt.sys [2013-10-02 49152]
S3 TsUsbGD;Remote Desktop Generic USB Device; Cwindowssystem32driversTsUsbGD.sys [2012-08-23 27136]
S3 viaagp;VIA AGP Bus Filter; Cwindowssystem32driversviaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; Cwindowssystem32driversviac7.sys [2009-07-14 52736]
S3 WinUsb;WinUsb; Cwindowssystem32DRIVERSWinUsb.sys [2010-11-20 35968]
S3 xusb21;Xbox 360 Wireless Receiver Driver Service 21; Cwindowssystem32DRIVERSxusb21.sys [2009-04-08 56448]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; CProgram FilesCommon FilesAdobeARM1.0armsvc.exe [2016-04-22 82128]
R2 ASUS InstantOn;ASUS InstantOn Service; CProgram FilesASUSInstantOn for EPCInsOnSrv.exe [2011-12-01 92800]
R2 AsusService;Asus Launcher Service; Cwindowssystem32AsusService.exe [2012-01-11 224680]
R2 avast! Antivirus;Avast Antivirus; CProgram FilesAVAST SoftwareAvastAvastSvc.exe [2016-05-01 243296]
R2 CLHNServiceForPowerDVD12;CLHNServiceForPowerDVD12; CProgram FilesCyberLinkPowerDVD12KernelDMPCLHNServerCLHNServiceForPowerDVD12.exe [2012-07-25 90640]
R2 ClickToRunSvc;Služba Microsoft Office Klikni a spusť; CProgram FilesCommon FilesMicrosoft SharedClickToRunOfficeClickToRun.exe [2016-04-29 2013928]
R2 CyberLink PowerDVD 12 Media Server Monitor Service;CyberLink PowerDVD 12 Media Server Monitor Service; CProgram FilesCyberLinkPowerDVD12KernelDMSCLMSMonitorServicePDVD12.exe [2012-07-25 78352]
R2 CyberLink PowerDVD 12 Media Server Service;CyberLink PowerDVD 12 Media Server Service; CProgram FilesCyberLinkPowerDVD12KernelDMSCLMSServerPDVD12.exe [2012-07-25 295440]
R2 DiagTrack;@%SystemRoot%system32UtcResources.dll,-3001; CwindowsSystem32svchost.exe [2009-07-14 20992]
R2 chromoting;Služba Vzdálené plochy Chrome; CProgram FilesGoogleChrome Remote Desktop50.0.2661.22remoting_host.exe [2016-03-08 69016]
R2 VideAceWindowsService;VideAceWindowsService; CExpressGateUtilVAWinService.exe [2011-03-26 91464]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; CwindowsMicrosoft.NETFrameworkv4.0.30319mscorsvw.exe [2015-11-05 105144]
S2 gupdate;Služba Google Update (gupdate); CProgram FilesGoogleUpdateGoogleUpdate.exe [2015-09-02 144200]
S3 ACDaemon;ArcSoft Connect Daemon; CProgram FilesCommon FilesArcSoftConnection ServiceBinACService.exe []
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; Cwindowssystem32MacromedFlashFlashPlayerUpdateService.exe [2016-05-13 269504]
S3 aspnet_state;Stavová služba ASP.NET; CwindowsMicrosoft.NETFrameworkv4.0.30319aspnet_state.exe [2015-11-05 45744]
S3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; CProgram FilesDAEMON Tools LiteDiscSoftBusService.exe [2016-03-01 1126080]
S3 gupdatem;Služba Google Update (gupdatem); CProgram FilesGoogleUpdateGoogleUpdate.exe [2015-09-02 144200]
S3 gusvc;Google Software Updater; CProgram FilesGoogleCommonGoogle UpdaterGoogleUpdaterService.exe [2013-02-21 194032]
S3 IDriverT;InstallDriver Table Manager; CProgram FilesCommon FilesInstallShieldDriver11Intel 32IDriverT.exe [2005-04-04 69632]
S3 IEEtwCollectorService;@%SystemRoot%system32ieetwcollectorres.dll,-1000; Cwindowssystem32IEEtwCollector.exe [2016-03-31 102912]
S3 MozillaMaintenance;Mozilla Maintenance Service; CProgram FilesMozilla Maintenance Servicemaintenanceservice.exe [2016-04-12 146888]
S3 odserv;Microsoft Office Diagnostics Service; CProgram FilesCommon FilesMicrosoft SharedOFFICE12ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; CProgram FilesCommon FilesMicrosoft SharedSource EngineOSE.EXE [2016-04-28 202288]
S3 osppsvc;Office Software Protection Platform; CProgram FilesCommon FilesMicrosoft SharedOfficeSoftwareProtectionPlatformOSPPSVC.EXE [2016-04-02 4846168]
S4 NetMsmqActivator;@CwindowsMicrosoft.NETFrameworkv4.0.30319ServiceModelInstallRC.dll,-8195; CwindowsMicrosoft.NETFrameworkv4.0.30319SMSvcHost.exe [2015-11-05 135848]
S4 NetPipeActivator;@CwindowsMicrosoft.NETFrameworkv4.0.30319ServiceModelInstallRC.dll,-8197; CwindowsMicrosoft.NETFrameworkv4.0.30319SMSvcHost.exe [2015-11-05 135848]
S4 NetTcpActivator;@CwindowsMicrosoft.NETFrameworkv4.0.30319ServiceModelInstallRC.dll,-8199; CwindowsMicrosoft.NETFrameworkv4.0.30319SMSvcHost.exe [2015-11-05 135848]

-----------------EOF-----------------

Re: autochk.exe

Napsal: 14 kvě 2016 11:59
od Rudy
Zdravím!
Avast měl asi v té době chybnou virovou bázi. Máte-li soubor v karanténě, obnovte ho zpět.

Re: autochk.exe

Napsal: 14 kvě 2016 12:29
od stepano
Děkuji za rychlou odpověď

Soubor jsem obnovil, sice mi po startu nevyskakuje hláška autochk not found skipping autocheck ale nefunguje mi příkaz chkdsk. Jinak soubor jsem uploadnul na virustotal: https://virustotal.com/cs/file/554b2c0f ... /analysis/

Re: autochk.exe

Napsal: 14 kvě 2016 15:45
od Rudy
Soubor autochk, nabo záznam v registry bude zřejmě poškozen. Něco o to je zde: http://forum.ddworld.cz/viewtopic.php?t=1795 .

Re: autochk.exe

Napsal: 14 kvě 2016 16:39
od stepano
Asi mi nezbývá nic jiného než reinstalovat systém.

Děkuji za váš čas

Re: autochk.exe

Napsal: 14 kvě 2016 17:09
od Rudy
Pokud můžete provést obnovu systému k datu, kdy korketně fungoval, zkuste to.

Re: autochk.exe

Napsal: 14 kvě 2016 17:22
od stepano
Dlouho jsem používal Microsoft Security Essential ale protože jsem s ním nebyl spokojený tak jsem přešel na avast free. Avast používám jen chvilku a vypadá to že ten virus tam je dlouho takže se nemůžu vrátit k bodu obnovení.

Re: autochk.exe

Napsal: 14 kvě 2016 18:12
od Rudy
OK. I to je možné.