prevencia
Napsal: 13 zář 2019 09:02
dobry den, prosim o prevencnu kontrolu. dakujem
Po skene nechajte oznacene vsetky chlieviky, pripadne najdene hrozieby a pokracujte v dolnom pravom rohu tlacidlom Vycistit Teraz (Clean and Repair).
Po restartovani PC sa spusti nastroj AdwCleaner, kliknite na Zobrazit soubor protokolu.
Spusti sa log, jeho obsah skopirujte sem.
Kód: Vybrat vše
Start
CloseProcesses:
CreateRestorePoint:
PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
Folder: C:\Program Files\Posteriogu fy D-Upic
File: C:\Users\terezka\AppData\Local\Temp\Rar$EXa1317224.25843\playlistfinder.app.exe
File: C:\Program Files\Posteriogu fy D-Upic\Posteriogu fy D-Upic.dll
File: C:\Users\terezka\AppData\Roaming\Mozilla\Firefox\Profiles\lu0q6gtu.default\Extensions\sko-extension@firma.seznam.cz
File: C:\Users\terezka\AppData\Roaming\Mozilla\Firefox\Profiles\lu0q6gtu.default\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
GroupPolicy: Restriction - Chrome <==== ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
Task: {5FBD7F99-8535-46D1-8A41-C17570D43C22} - System32\Tasks\CareCenter\seznam-listicka-distribuce_Reg_HKLMWow6432Run => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe
Task: {81C10F6F-9A61-4E64-8CD9-62BC8018661A} - no filepath
Task: {869E0986-E040-4B70-9618-79E1AA1C3C7B} - System32\Tasks\{8EFDC48B-EF98-441B-9C9A-0C905954C1D5} => C:\Windows\system32\pcalua.exe -a F:\Autorun.exe -d F:\
Task: {9C3A9BFB-BECB-4B94-9D7D-85B12E76D2AC} - no filepath
Task: {AD6F05BF-88BF-4A1D-BD59-F0DAAB02D15F} - no filepath
Task: {BD3976A0-348E-4D80-A9D7-075CD72EDCD2} - System32\Tasks\CareCenter\cz.seznam.software.szndesktop_Reg_HKCURun_S-1-5-21-3057893396-2338278504-2612078178-1001 => C:\Users\terezka\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe
Task: {DA9CB37A-7CC8-457A-806B-DB96ADA0C9D5} - System32\Tasks\Posteriogu fy D-Upic => C:\WINDOWS\system32\rundll32.exe "C:\Program Files\Posteriogu fy D-Upic\Posteriogu fy D-Upic.dll",cUVLqilmxe <==== ATTENTION
Task: {F20F6011-BB88-41A5-AA46-829C3E566475} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {FCF140FD-B5E1-4C58-8BFB-18320C7C912C} - no filepath
C:\Program Files\Easeware
Task: C:\WINDOWS\Tasks\Driver Easy Scheduled Scan.job => C:\Program Files\Easeware\DriverEasy\DriverEasy.exe
HKU\S-1-5-21-3057893396-2338278504-2612078178-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://acer17win10.msn.com/?pc=ACTE
HKU\S-1-5-21-3057893396-2338278504-2612078178-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer17win10.msn.com/?pc=ACTE
SearchScopes: HKU\S-1-5-21-3057893396-2338278504-2612078178-1001 -> DefaultScope {861E9E68-94F6-4BBA-B366-7EFA611B2137} URL =
SearchScopes: HKU\S-1-5-21-3057893396-2338278504-2612078178-1001 -> {861E9E68-94F6-4BBA-B366-7EFA611B2137} URL =
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLL => No File
BHO-x32: KeepVid Pro 4.10.0 -> {F9B65201-3D7F-48DA-AAB3-57A6FAD648FD} -> C:\PROGRA~2\Wondershare\Wondershare AllMyTube\BrowserPlugin\KVBrowserAppMgr.dll => No File
Toolbar: HKU\S-1-5-21-3057893396-2338278504-2612078178-1001 -> No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
Handler: WSKVAllmytubechrome - {91AB862D-07B8-4A85 - No File
FF Extension: (Seznam lištička) - C:\Users\terezka\AppData\Roaming\Mozilla\Firefox\Profiles\lu0q6gtu.default\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [2018-07-16] [Legacy]
FF HKU\S-1-5-21-3057893396-2338278504-2612078178-1001\...\Firefox\Extensions: [acewebextension_unlisted@acestream.org] - C:\Users\terezka\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi => not found
FF HKU\S-1-5-21-3057893396-2338278504-2612078178-1001\...\Firefox\Extensions: [KVAllmytube@KeepVid.com] - C:\Program Files (x86)\Wondershare\Wondershare AllMyTube\BrowserPlugin\kvallmytube@keepvid.com_xpi => not found
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL [No File]
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [No File]
FF Plugin HKU\S-1-5-21-3057893396-2338278504-2612078178-1001: @acestream.net/acestreamplugin,version=3.1.32 -> C:\Users\terezka\AppData\Roaming\ACEStream\player\npace_plugin.dll [No File]
CHR HKU\S-1-5-21-3057893396-2338278504-2612078178-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [blmojkbhnkkphngknkmgccmlenfaelkd] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [pbjikboenpfhbbejgkoklgkhjpfogcam] - hxxps://clients2.google.com/service/update2/crx
S2 GamesAppIntegrationService; "C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe" [X]
S3 GamesAppService; "C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe" [X]
S3 QALSvc; "C:\Program Files\Acer\Acer Quick Access\QALSvc.exe" [X]
S3 QASvc; "C:\Program Files\Acer\Acer Quick Access\QASvc.exe" [X]
S3 UEIPSvc; "C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe" [X]
2019-09-13 10:23 - 2018-06-03 21:50 - 000000000 ____D C:\Users\terezka\AppData\Roaming\IObit
2019-09-13 10:23 - 2017-10-05 10:16 - 000000000 ____D C:\Users\terezka\AppData\LocalLow\IObit
2019-09-13 10:23 - 2017-10-05 10:16 - 000000000 ____D C:\ProgramData\IObit
2019-09-13 10:23 - 2017-10-05 10:16 - 000000000 ____D C:\Program Files (x86)\IObit
2019-06-28 10:25 - 2019-06-28 10:44 - 000000000 _____ () C:\Users\terezka\AppData\Roaming\bitlord_log.txt
ShellIconOverlayIdentifiers: [ ACloudSynced] -> {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} => -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
C:\Program Files\IObit
C:\Program Files (x86)\IObit
C:\Program Files\Common Files\IObit
C:\ProgramData\IObit
C:\ProgramData\ProductData
C:\Users\terezka\AppData\Local\IObit
C:\Users\terezka\AppData\LocalLow\IObit
C:\Users\terezka\AppData\Roaming\IObit
C:\Users\terezka\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\*Driver Booster*
C:\Users\terezka\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\*Advanced SystemCare*
C:\Users\Default\AppData\Local\IObit
C:\Users\Default\AppData\LocalLow\IObit
C:\Users\Default\AppData\Roaming\IObit
C:\Users\Public\Desktop\*Driver Booster*
C:\Users\Public\Desktop\*Advanced SystemCare*
C:\Windows\IObit
C:\Windows\Tasks\ImCleanDisabled
C:\ProgramData\{13CFD044-61E4-4EAC-AD61-02536D961216}
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 5
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare
EmptyTemp:
End