Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Virus ministerstvo vnutra SR

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Tomo11
Návštěvník
Návštěvník
Příspěvky: 28
Registrován: 01 říj 2011 13:43

Re: Virus ministerstvo vnutra SR

#16 Příspěvek od Tomo11 »

ComboFix 13-05-25.02 - Tomo . 05. 2013 23:22:13.2.4 - x86
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.421.1033.18.2984.1873 [GMT 2:00]
Running from: c:\users\Tomo\Desktop\ComboFix.exe
Command switches used :: c:\users\Tomo\Desktop\CFScript.txt.txt
AV: ESET Smart Security 6.0 *Enabled/Updated* {77DEAFED-8149-104B-25A1-21771CA47CD1}
FW: ESET personal firewall *Enabled* {4FE52EC8-CB26-1113-0EFE-8842E2773BAA}
SP: ESET Smart Security 6.0 *Enabled/Updated* {CCBF4E09-A773-1FC5-1F11-1A056723366C}
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Created a new restore point
* Resident AV is active
.
.
FILE ::
"c:\windows\Tasks\Adobe Flash Player Updater.job"
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files\Ad-Aware Antivirus
c:\program files\Ad-Aware Antivirus\FSSC.dat
c:\program files\Ad-Aware Antivirus\kbu.dll
c:\program files\Ad-Aware Antivirus\SBAMConfig.bin
c:\program files\Enigma Software Group
c:\program files\Enigma Software Group\SpyHunter\cos.dat
c:\program files\Enigma Software Group\SpyHunter\Data\dns.dat
c:\program files\Enigma Software Group\SpyHunter\Defs\2013052001.def
c:\program files\Enigma Software Group\SpyHunter\gas.dat
c:\program files\Enigma Software Group\SpyHunter\gil.dat
c:\program files\Enigma Software Group\SpyHunter\INSTALL.LOG
c:\program files\Enigma Software Group\SpyHunter\key.dat
c:\program files\Enigma Software Group\SpyHunter\Log\SpyHunter4_20130520_231744.log
c:\program files\Enigma Software Group\SpyHunter\Log\SpyHunter4_20130521_000820.log
c:\program files\Enigma Software Group\SpyHunter\mon\autoexec.bat.bk
c:\program files\Enigma Software Group\SpyHunter\mon\hosts.bk
c:\program files\Enigma Software Group\SpyHunter\mon\system.ini.bk
c:\program files\Enigma Software Group\SpyHunter\mon\win.ini.bk
c:\program files\Enigma Software Group\SpyHunter\Rollback\000000.xml
c:\program files\Enigma Software Group\SpyHunter\Rollback\arch000000.esg
c:\program files\Enigma Software Group\SpyHunter\Rollback\arch000001.esg
c:\program files\Enigma Software Group\SpyHunter\Rollback\arch000002.esg
c:\program files\Enigma Software Group\SpyHunter\safeol.dat
c:\program files\Enigma Software Group\SpyHunter\scan.log
c:\program files\Enigma Software Group\SpyHunter\scanlog.log
c:\program files\Enigma Software Group\SpyHunter\supportlog.txt
c:\program files\Enigma Software Group\SpyHunter\unkcache.dat
c:\windows\4941BFEB62C047A2801E998FC469CC2C.TMP
c:\windows\4941BFEB62C047A2801E998FC469CC2C.TMP\WiseCustomCall.dll
c:\windows\4941BFEB62C047A2801E998FC469CC2C.TMP\WiseCustomCalla.dll
c:\windows\4941BFEB62C047A2801E998FC469CC2C.TMP\WiseCustomCalla17.dll
c:\windows\4941BFEB62C047A2801E998FC469CC2C.TMP\WiseCustomCalla18.exe
c:\windows\4941BFEB62C047A2801E998FC469CC2C.TMP\WiseCustomCalla19.dll
c:\windows\4941BFEB62C047A2801E998FC469CC2C.TMP\WiseCustomCalla2.dll
c:\windows\4941BFEB62C047A2801E998FC469CC2C.TMP\WiseCustomCalla20.dll
c:\windows\4941BFEB62C047A2801E998FC469CC2C.TMP\WiseCustomCalla21.dll
c:\windows\4941BFEB62C047A2801E998FC469CC2C.TMP\WiseCustomCalla21.exe
c:\windows\4941BFEB62C047A2801E998FC469CC2C.TMP\WiseData.ini
c:\windows\4FC9DA9DF608454E8191D7EFFDCC5726.TMP
c:\windows\4FC9DA9DF608454E8191D7EFFDCC5726.TMP\WiseCustomCall.dll
c:\windows\4FC9DA9DF608454E8191D7EFFDCC5726.TMP\WiseCustomCalla.dll
c:\windows\4FC9DA9DF608454E8191D7EFFDCC5726.TMP\WiseCustomCalla.exe
c:\windows\4FC9DA9DF608454E8191D7EFFDCC5726.TMP\WiseCustomCalla11.dll
c:\windows\4FC9DA9DF608454E8191D7EFFDCC5726.TMP\WiseCustomCalla11.exe
c:\windows\4FC9DA9DF608454E8191D7EFFDCC5726.TMP\WiseCustomCalla2.dll
c:\windows\4FC9DA9DF608454E8191D7EFFDCC5726.TMP\WiseCustomCalla3.dll
c:\windows\4FC9DA9DF608454E8191D7EFFDCC5726.TMP\WiseCustomCalla4.dll
c:\windows\4FC9DA9DF608454E8191D7EFFDCC5726.TMP\WiseData.ini
.
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_esgiguard
-------\Service_esgiguard
.
.
((((((((((((((((((((((((( Files Created from 2013-04-25 to 2013-05-25 )))))))))))))))))))))))))))))))
.
.
2013-05-25 21:32 . 2013-05-25 21:32 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2013-05-25 21:32 . 2013-05-25 21:32 -------- d-----w- c:\users\Mamka\AppData\Local\temp
2013-05-25 21:32 . 2013-05-25 21:32 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-05-25 21:32 . 2013-05-25 21:32 -------- d-----w- c:\users\Administrator\AppData\Local\temp
2013-05-23 13:25 . 2013-05-23 13:25 -------- d-----w- c:\users\Mamka\AppData\Local\adaware
2013-05-21 22:14 . 2013-05-21 22:14 -------- d-----w- c:\users\Tomo\AppData\Roaming\Malwarebytes
2013-05-21 22:13 . 2013-05-21 22:13 -------- d-----w- c:\programdata\Malwarebytes
2013-05-21 22:13 . 2013-05-21 22:13 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2013-05-21 22:13 . 2013-04-04 12:50 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2013-05-21 21:22 . 2013-05-21 21:23 -------- d-----w- c:\program files\trend micro
2013-05-21 21:22 . 2013-05-21 21:23 -------- d-----w- C:\rsit
2013-05-20 23:08 . 2013-05-20 23:08 -------- d-----w- c:\programdata\GFI Software
2013-05-20 21:16 . 2013-05-20 22:03 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2013-05-19 17:14 . 2013-05-20 21:30 -------- d-----w- c:\programdata\70EBAC3EC66C2872000070EB3B582D14
2013-05-08 02:08 . 2013-05-23 11:39 60872 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{33CF9C7B-F094-4882-822D-B91F92B7F183}\offreg.dll
2013-04-29 19:24 . 2013-04-30 12:12 -------- d-----w- c:\users\Tomo\AppData\Roaming\BSplayer
2013-04-29 19:24 . 2013-04-29 19:24 -------- d-----w- c:\users\Tomo\AppData\Roaming\BSplayer Pro
2013-04-29 19:24 . 2013-04-29 19:24 -------- d-----w- c:\program files\Webteh
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-03-14 11:36 . 2013-03-20 19:12 8952608 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys
2013-03-14 11:36 . 2013-03-20 19:12 892704 ----a-w- c:\windows\system32\nvdispgenco3231421.dll
2013-03-14 11:36 . 2013-03-20 19:12 7959000 ----a-w- c:\windows\system32\nvcuda.dll
2013-03-14 11:36 . 2013-03-20 19:12 6271872 ----a-w- c:\windows\system32\nvopencl.dll
2013-03-14 11:36 . 2013-03-20 19:12 2728736 ----a-w- c:\windows\system32\nvcuvid.dll
2013-03-14 11:36 . 2013-03-20 19:12 25376 ----a-w- c:\windows\system32\drivers\nvpciflt.sys
2013-03-14 11:36 . 2013-03-20 19:12 1995552 ----a-w- c:\windows\system32\nvcuvenc.dll
2013-03-14 11:36 . 2013-03-20 19:12 17560352 ----a-w- c:\windows\system32\nvcompiler.dll
2013-03-14 11:36 . 2013-03-20 19:12 13001456 ----a-w- c:\windows\system32\nvwgf2um.dll
2013-03-14 11:36 . 2013-03-20 19:12 1012512 ----a-w- c:\windows\system32\nvdispco3231421.dll
2013-03-14 11:36 . 2013-03-20 19:12 20542752 ----a-w- c:\windows\system32\nvoglv32.dll
2013-03-14 11:36 . 2013-01-03 13:51 968408 ----a-w- c:\windows\system32\nvumdshim.dll
2013-03-14 11:36 . 2013-01-03 13:51 205184 ----a-w- c:\windows\system32\nvinit.dll
2013-03-14 11:36 . 2013-01-03 13:50 2539128 ----a-w- c:\windows\system32\nvapi.dll
2013-03-14 11:36 . 2012-10-08 09:32 15042928 ----a-w- c:\windows\system32\nvd3dum.dll
2013-03-14 08:50 . 2013-01-03 13:51 4119328 ----a-w- c:\windows\system32\nvcpl.dll
2013-03-14 08:50 . 2013-01-03 13:51 3014432 ----a-w- c:\windows\system32\nvsvc.dll
2013-03-14 08:50 . 2013-01-03 13:51 634144 ----a-w- c:\windows\system32\nvvsvc.exe
2013-03-14 08:50 . 2013-01-03 13:51 2555168 ----a-w- c:\windows\system32\nvsvcr.dll
2013-03-14 08:50 . 2013-01-03 13:51 568608 ----a-w- c:\windows\system32\oemdspif.dll
2013-03-14 08:50 . 2013-01-03 13:51 864544 ----a-w- c:\windows\system32\nv3dappshext.dll
2013-03-14 08:50 . 2013-01-03 13:51 75552 ----a-w- c:\windows\system32\nv3dappshextr.dll
2013-03-14 08:50 . 2013-01-03 13:51 62752 ----a-w- c:\windows\system32\nvshext.dll
2013-03-14 08:50 . 2013-01-03 13:51 223008 ----a-w- c:\windows\system32\nvmctray.dll
2013-03-10 18:58 . 2012-10-29 10:08 399848 ----a-w- c:\users\Tomo\_old_update.exe
2013-03-10 18:58 . 2012-10-29 10:08 856576 ----a-w- c:\users\Tomo\QtNetwork4.dll
2013-03-10 18:58 . 2012-10-29 10:08 8040960 ----a-w- c:\users\Tomo\QtGui4.dll
2013-03-10 18:58 . 2012-10-29 10:08 187904 ----a-w- c:\users\Tomo\QtSql4.dll
2013-03-10 18:58 . 2012-10-29 10:08 180712 ----a-w- c:\users\Tomo\error_report.exe
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2012-11-13 23:32 129272 ----a-w- c:\users\Tomo\AppData\Roaming\Dropbox\bin\DropboxExt.17.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2012-11-13 23:32 129272 ----a-w- c:\users\Tomo\AppData\Roaming\Dropbox\bin\DropboxExt.17.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2012-11-13 23:32 129272 ----a-w- c:\users\Tomo\AppData\Roaming\Dropbox\bin\DropboxExt.17.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"="c:\program files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2011-11-29 284440]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2012-03-26 2342160]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2012-10-23 5074384]
"USB3MON"="c:\program files\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" [2012-05-21 291648]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2012-12-14 146032]
.
c:\users\Tomo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dropbox.lnk - c:\users\Tomo\AppData\Roaming\Dropbox\bin\Dropbox.exe [2013-3-12 29106336]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\System32\nvinit.dll
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Notification Packages REG_MULTI_SZ scecli c:\program files\Lenovo\Bluetooth Software\BtwProximityCP.dll
.
[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth.lnk]
path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
backup=c:\windows\pss\Bluetooth.lnk.CommonStartup
backupExtension=.CommonStartup
.
[HKLM\~\startupfolder\C:^Users^Tomo^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk]
path=c:\users\Tomo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
backup=c:\windows\pss\Dropbox.lnk.Startup
backupExtension=.Startup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\332BigDog]
2011-12-09 14:45 548864 ----a-w- c:\program files\USB Camera2\VM332_STI.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Energy Management]
2012-02-21 12:07 7992320 ----a-w- c:\program files\Lenovo\Energy Management\Energy Management.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EnergyUtility]
2012-02-21 11:58 5931008 ----a-w- c:\program files\Lenovo\Energy Management\utility.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nvtmru]
2013-01-19 02:51 1129248 ----a-w- c:\program files\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
.
R1 SBRE;SBRE;c:\windows\system32\drivers\SBREdrv.sys [x]
R3 EverestDriver;Lavalys EVEREST Kernel Driver;c:\program files\Lavalys\EVEREST Ultimate Edition\kerneld.wnt [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [x]
R3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUVStor.sys [x]
R3 SuperIO;Lenovo ASD HWM Driver;c:\windows\system32\DRIVERS\spio.sys [x]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 tsusbhub;tsusbhub; [x]
R4 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [x]
S0 epfwwfp;epfwwfp;c:\windows\system32\DRIVERS\epfwwfp.sys [x]
S0 iusb3hcs;Intel(R) USB 3.0 Host Controller Switch Driver;c:\windows\system32\DRIVERS\iusb3hcs.sys [x]
S0 LHDmgr;LHDmgr;c:\windows\System32\DRIVERS\LhdX86.sys [x]
S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [x]
S1 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys [x]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [x]
S1 EpfwLWF;Epfw NDIS LightWeight Filter;c:\windows\system32\DRIVERS\EpfwLWF.sys [x]
S2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [x]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x]
S2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [x]
S3 ACPIVPC;Lenovo Virtual Power Controller Driver;c:\windows\system32\DRIVERS\AcpiVpc.sys [x]
S3 bcbtums;Bluetooth RAM Firmware Download USB Filter;c:\windows\system32\drivers\bcbtums.sys [x]
S3 btwampfl;btwampfl Bluetooth filter driver;c:\windows\system32\drivers\btwampfl.sys [x]
S3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys [x]
S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys [x]
S3 iusb3hub;Intel(R) USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\iusb3hub.sys [x]
S3 iusb3xhc;Intel(R) USB 3.0 eXtensible Host Controller Driver;c:\windows\system32\DRIVERS\iusb3xhc.sys [x]
S3 L1C;NDIS Miniport Driver for Atheros AR81xx PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x86.sys [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [x]
S3 MEI;Intel(R) Management Engine Interface ;c:\windows\system32\DRIVERS\HECI.sys [x]
S3 SmbDrvIntel;SmbDrvIntel;c:\windows\system32\DRIVERS\Smb_driver_Intel.sys [x]
.
.
Contents of the 'Scheduled Tasks' folder
.
2013-01-26 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-01-03 12:59]
.
.
------- Supplementary Scan -------
.
uStart Page = about:blank
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office14\EXCEL.EXE/3000
IE: Od&eslat do aplikace OneNote - c:\progra~1\MICROS~2\Office14\ONBttnIE.dll/105
TCP: DhcpNameServer = 192.168.2.2
FF - ProfilePath - c:\users\Tomo\AppData\Roaming\Mozilla\Firefox\Profiles\432ugymr.default\
FF - prefs.js: browser.startup.homepage - www.google.sk
FF - user.js: nglayout.initialpaint.delay - 600
FF - user.js: content.notify.interval - 600000
FF - user.js: content.max.tokenizing.time - 1800000
FF - user.js: content.switch.threshold - 600000
FF - user.js: browser.blink_allowed - false
.
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\EverestDriver]
"ImagePath"="\??\c:\program files\Lavalys\EVEREST Ultimate Edition\kerneld.wnt"
.
--------------------- DLLs Loaded Under Running Processes ---------------------
.
- - - - - - - > 'Explorer.exe'(1436)
c:\users\Tomo\AppData\Roaming\Dropbox\bin\DropboxExt.17.dll
.
------------------------ Other Running Processes ------------------------
.
c:\windows\system32\nvvsvc.exe
c:\windows\system32\WLANExt.exe
c:\windows\system32\conhost.exe
c:\program files\NVIDIA Corporation\Display\nvxdsync.exe
c:\windows\system32\nvvsvc.exe
c:\program files\Canon\IJPLM\IJPLMSVC.EXE
c:\program files\Malwarebytes' Anti-Malware\mbamscheduler.exe
c:\program files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe
c:\windows\system32\taskhost.exe
c:\program files\TuneUp Utilities 2012\TuneUpUtilitiesApp32.exe
c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe
c:\windows\system32\conhost.exe
c:\program files\NVIDIA Corporation\Display\nvtray.exe
c:\program files\DAEMON Tools Pro\DTShellHlp.exe
c:\program files\SYNAPTICS\SYNTP\SYNTPHELPER.EXE
c:\windows\system32\sppsvc.exe
c:\\?\c:\windows\system32\wbem\WMIADAP.EXE
.
**************************************************************************
.
Completion time: 2013-05-25 23:38:16 - machine was rebooted
ComboFix-quarantined-files.txt 2013-05-25 21:38
ComboFix2.txt 2013-05-23 11:49
.
Pre-Run: 273 046 679 552 bytes free
Post-Run: 274 561 953 792 bytes free
.
- - End Of File - - FF32632E903A73D71547B23C4BECFE94

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Virus ministerstvo vnutra SR

#17 Příspěvek od vyosek »

Tak jeste uklidime :James008:

:arrow: Odinstalujte Combofix
  • Prejmenujte ComboFix na Uninstall
  • Spustte jej
  • Tohle smaze Combofix a jeho slozky
:arrow: T-Cleaner http://vyosek.ic.cz/pro_usery/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: OTC http://oldtimer.geekstogo.com/OTC.exe
  • Stahnete a spustte
  • Kliknete na CleanUp a potvrdte YES
  • Program uklidi a restartuje PC

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stahnete a spustte
  • Kliknete na Start a potvrdte OK
  • Program uklidi a restartuje pc
  • Po pouziti utilitu smazte
:arrow: Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: A pokud nejsou problemy ci dotazy, je to z me strany vse :|
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Tomo11
Návštěvník
Návštěvník
Příspěvky: 28
Registrován: 01 říj 2011 13:43

Re: Virus ministerstvo vnutra SR

#18 Příspěvek od Tomo11 »

Upratane :) vyzera byt vsetko ok. Dakujem pekne za pomoc a trpezlivost :)
Cital som nieco o podpore fora, ak sa da podporit formou sms zo slovenska tak nieco poslem. :)

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Virus ministerstvo vnutra SR

#19 Příspěvek od vyosek »

Nemate zac, rad jsem pomohl :worship: Zase nekdy Obrázek

A na zaklade Pravidla o zamykani temat :lock:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Zamčeno