Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosim o pomoc, reklama

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Deimos182
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 07 led 2006 19:57

Prosim o pomoc, reklama

#1 Příspěvek od Deimos182 »

Dobry den, po instalaci jakehosi free softwaru na upravu hudby mi tu skace jedna reklama za druhou. Prosim o pomoc

Log:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-03-2014
Ran by Deimos (administrator) on DEIMOS-PC on 19-03-2014 22:57:26
Running from C:\Users\Deimos\Desktop
Windows 7 Professional Service Pack 1 (X64) OS Language: Czech
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(Lenovo.) C:\Windows\system32\ibmpmsvc.exe
(Microsoft Corporation) c:\Program Files\Microsoft Security Client\MsMpEng.exe
(Microsoft Corporation) c:\Program Files\Microsoft Security Client\NisSrv.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Dropbox, Inc.) C:\Users\Deimos\AppData\Roaming\Dropbox\bin\Dropbox.exe
() C:\Program Files\Rainmeter\Rainmeter.exe
() C:\Program Files (x86)\Pirrit\AutoUpdater.exe
() C:\Program Files (x86)\WinRST\WinRST.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe
(forum.viry.cz) C:\Users\Deimos\Desktop\FRSTLauncher.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [MSC] - c:\Program Files\Microsoft Security Client\msseces.exe [1266912 2013-10-23] (Microsoft Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
Startup: C:\Users\Deimos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Deimos\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\Deimos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk
ShortcutTarget: Rainmeter.lnk -> C:\Program Files\Rainmeter\Rainmeter.exe ()

==================== Internet (Whitelisted) ====================

ProxyServer: http=http://127.0.0.1:9880
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
BHO-x32: BitComet Helper - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files (x86)\BitComet\tools\BitCometBHO_1.5.4.11.dll (BitComet)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: IEExtension.Extension - {d40c654d-7c51-4eb3-95b2-1e23905c2a2d} - C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)

Hosts: Hosts file not detected in the default directory
Tcpip\Parameters: [DhcpNameServer] 192.168.88.1

FireFox:
========
FF ProfilePath: C:\Users\Deimos\AppData\Roaming\Mozilla\Firefox\Profiles\ydzzhmzy.default
FF Homepage: http://www.google.com
FF NetworkProxy: "backup.ftp", "192.168.88.1"
FF NetworkProxy: "backup.ftp_port", 3129
FF NetworkProxy: "backup.socks", "192.168.88.1"
FF NetworkProxy: "backup.socks_port", 3129
FF NetworkProxy: "backup.ssl", "192.168.88.1"
FF NetworkProxy: "backup.ssl_port", 3129
FF NetworkProxy: "ftp", "192.168.88.1"
FF NetworkProxy: "ftp_port", 3129
FF NetworkProxy: "http", "192.168.88.1"
FF NetworkProxy: "http_port", 3129
FF NetworkProxy: "share_proxy_settings", true
FF NetworkProxy: "socks", "192.168.88.1"
FF NetworkProxy: "socks_port", 3129
FF NetworkProxy: "ssl", "192.168.88.1"
FF NetworkProxy: "ssl_port", 3129
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_77.dll ()
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @videolan.org/vlc,version=2.1.0 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.2 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Deimos\AppData\Local\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Deimos\AppData\Local\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npBitCometAgent.dll (BitComet)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: BitComet Video Downloader - C:\Users\Deimos\AppData\Roaming\Mozilla\Firefox\Profiles\ydzzhmzy.default\Extensions\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB} [2013-11-03]
FF Extension: Pirrit Suggestor - C:\Users\Deimos\AppData\Roaming\Mozilla\Firefox\Profiles\ydzzhmzy.default\Extensions\suggestor@suggestor.pirrit.com.xpi [2014-03-19]

Chrome:
=======
CHR Extension: (Peněženka Google) - C:\Users\Deimos\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-10-12]

==================== Services (Whitelisted) =================

S3 BITCOMET_HELPER_SERVICE; C:\Program Files (x86)\BitComet\tools\BitCometService.exe [1296728 2010-12-28] (http://www.BitComet.com)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2013-10-23] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [348376 2013-10-23] (Microsoft Corporation)
S3 OpenVPNService; C:\Program Files\OpenVPN\bin\openvpnserv.exe [37176 2013-08-22] (The OpenVPN Project)
S2 PirritDesktop; C:\Users\Deimos\AppData\Local\PirritSuggestor\PirritService.exe [52568 2014-02-20] ()
R2 PirritUpdater; C:\Program Files (x86)\Pirrit\AutoUpdater.exe [59904 2014-02-20] ()
S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [118520 2013-03-01] (Riverbed Technology, Inc.)
R2 WinRST; C:\Program Files (x86)\WinRST\WinRST.exe [59904 2014-02-26] ()

==================== Drivers (Whitelisted) ====================

R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [248240 2013-09-27] (Microsoft Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [134944 2013-09-27] (Microsoft Corporation)
R2 NPF; C:\Windows\System32\drivers\npf.sys [36600 2013-03-01] (Riverbed Technology, Inc.)
S3 tapoas; C:\Windows\System32\DRIVERS\tapoas.sys [30720 2012-07-15] (The OpenVPN Project)
S3 catchme; \??\C:\ComboFix\catchme.sys [X]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-03-19 22:57 - 2014-03-19 22:57 - 00008148 _____ () C:\Users\Deimos\Desktop\FRST.txt
2014-03-19 22:56 - 2014-03-19 22:57 - 00000000 ____D () C:\FRST
2014-03-19 22:55 - 2014-03-19 22:49 - 00112640 _____ (forum.viry.cz) C:\Users\Deimos\Desktop\FRSTLauncher.exe
2014-03-19 22:55 - 2014-03-19 22:43 - 02157056 _____ (Farbar) C:\Users\Deimos\Desktop\FRST64.exe
2014-03-19 22:52 - 2014-03-19 22:52 - 00000034 _____ () C:\Windows\setupact.log
2014-03-19 22:52 - 2014-03-19 22:52 - 00000000 _____ () C:\Windows\setuperr.log
2014-03-19 22:45 - 2014-03-19 22:45 - 00303104 _____ () C:\Users\Deimos\Downloads\lame_enc.dll
2014-03-19 22:28 - 2014-03-19 22:46 - 00000000 ____D () C:\Users\Deimos\AppData\Roaming\Audacity
2014-03-19 22:27 - 2014-03-19 22:27 - 22180353 _____ (Audacity Team ) C:\Users\Deimos\Downloads\audacity-win-2.0.5.exe
2014-03-19 22:27 - 2014-03-19 22:27 - 00001003 _____ () C:\Users\Public\Desktop\Audacity.lnk
2014-03-19 22:27 - 2014-03-19 22:27 - 00000000 ____D () C:\Program Files (x86)\Audacity
2014-03-19 21:51 - 2014-03-19 21:51 - 00000000 ____D () C:\Users\Deimos\AppData\Local\WinRST
2014-03-19 21:51 - 2014-03-19 21:51 - 00000000 ____D () C:\Program Files (x86)\WinRST
2014-03-19 21:50 - 2014-03-19 21:50 - 00000000 ____D () C:\Users\Deimos\AppData\Roaming\Pirrit
2014-03-19 21:50 - 2014-03-19 21:50 - 00000000 ____D () C:\Users\Deimos\AppData\Local\PirritSuggestor
2014-03-19 21:50 - 2014-03-19 21:50 - 00000000 ____D () C:\Program Files (x86)\Pirrit
2014-03-16 11:15 - 2014-03-16 11:15 - 00023706 _____ () C:\Users\Deimos\Downloads\Yip-Man-2(0000156763).zip
2014-03-16 10:18 - 2014-03-16 10:18 - 00000000 ___SD () C:\ComboFix
2014-03-16 10:00 - 2014-03-16 10:00 - 00023424 _____ () C:\ComboFix.txt
2014-03-16 09:46 - 2014-03-16 10:18 - 00000000 ____D () C:\Qoobox
2014-03-16 09:46 - 2011-06-26 07:45 - 00256000 _____ () C:\Windows\PEV.exe
2014-03-16 09:46 - 2010-11-07 18:20 - 00208896 _____ () C:\Windows\MBR.exe
2014-03-16 09:46 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2014-03-16 09:46 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2014-03-16 09:46 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2014-03-16 09:46 - 2000-08-31 01:00 - 00098816 _____ () C:\Windows\sed.exe
2014-03-16 09:46 - 2000-08-31 01:00 - 00080412 _____ () C:\Windows\grep.exe
2014-03-16 09:46 - 2000-08-31 01:00 - 00068096 _____ () C:\Windows\zip.exe
2014-03-16 09:45 - 2014-03-16 09:58 - 00000000 ____D () C:\Windows\erdnt
2014-03-15 19:27 - 2014-03-15 19:27 - 00074808 _____ () C:\Users\Deimos\Downloads\The-Wolf-of-Wall-Street(0000233483).zip
2014-02-19 21:49 - 2014-02-19 21:49 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox

==================== One Month Modified Files and Folders =======

2014-03-19 22:57 - 2014-03-19 22:57 - 00008148 _____ () C:\Users\Deimos\Desktop\FRST.txt
2014-03-19 22:57 - 2014-03-19 22:56 - 00000000 ____D () C:\FRST
2014-03-19 22:55 - 2009-07-14 05:45 - 00014448 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-03-19 22:55 - 2009-07-14 05:45 - 00014448 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-03-19 22:52 - 2014-03-19 22:52 - 00000034 _____ () C:\Windows\setupact.log
2014-03-19 22:52 - 2014-03-19 22:52 - 00000000 _____ () C:\Windows\setuperr.log
2014-03-19 22:52 - 2013-10-19 21:27 - 01958263 _____ () C:\Windows\WindowsUpdate.log
2014-03-19 22:49 - 2014-03-19 22:55 - 00112640 _____ (forum.viry.cz) C:\Users\Deimos\Desktop\FRSTLauncher.exe
2014-03-19 22:46 - 2014-03-19 22:28 - 00000000 ____D () C:\Users\Deimos\AppData\Roaming\Audacity
2014-03-19 22:45 - 2014-03-19 22:45 - 00303104 _____ () C:\Users\Deimos\Downloads\lame_enc.dll
2014-03-19 22:43 - 2014-03-19 22:55 - 02157056 _____ (Farbar) C:\Users\Deimos\Desktop\FRST64.exe
2014-03-19 22:27 - 2014-03-19 22:27 - 22180353 _____ (Audacity Team ) C:\Users\Deimos\Downloads\audacity-win-2.0.5.exe
2014-03-19 22:27 - 2014-03-19 22:27 - 00001003 _____ () C:\Users\Public\Desktop\Audacity.lnk
2014-03-19 22:27 - 2014-03-19 22:27 - 00000000 ____D () C:\Program Files (x86)\Audacity
2014-03-19 22:24 - 2013-10-12 20:59 - 00000912 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-18356201-231100067-3748499661-1000UA.job
2014-03-19 22:19 - 2013-10-12 22:09 - 00000000 ____D () C:\Users\Deimos\AppData\Roaming\Dropbox
2014-03-19 22:17 - 2013-10-12 21:34 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-03-19 21:52 - 2009-07-14 16:18 - 00631292 _____ () C:\Windows\system32\perfh005.dat
2014-03-19 21:52 - 2009-07-14 16:18 - 00121914 _____ () C:\Windows\system32\perfc005.dat
2014-03-19 21:52 - 2009-07-14 06:13 - 01470062 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-03-19 21:51 - 2014-03-19 21:51 - 00000000 ____D () C:\Users\Deimos\AppData\Local\WinRST
2014-03-19 21:51 - 2014-03-19 21:51 - 00000000 ____D () C:\Program Files (x86)\WinRST
2014-03-19 21:50 - 2014-03-19 21:50 - 00000000 ____D () C:\Users\Deimos\AppData\Roaming\Pirrit
2014-03-19 21:50 - 2014-03-19 21:50 - 00000000 ____D () C:\Users\Deimos\AppData\Local\PirritSuggestor
2014-03-19 21:50 - 2014-03-19 21:50 - 00000000 ____D () C:\Program Files (x86)\Pirrit
2014-03-19 21:17 - 2013-10-12 21:33 - 00000000 ____D () C:\Users\Deimos\AppData\Roaming\vlc
2014-03-19 18:24 - 2013-10-12 20:59 - 00000860 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-18356201-231100067-3748499661-1000Core.job
2014-03-18 22:20 - 2013-10-12 21:36 - 00000600 _____ () C:\Users\Deimos\AppData\Local\PUTTY.RND
2014-03-18 22:18 - 2013-10-12 22:10 - 00000000 ___RD () C:\Users\Deimos\Dropbox
2014-03-18 22:18 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-03-16 11:15 - 2014-03-16 11:15 - 00023706 _____ () C:\Users\Deimos\Downloads\Yip-Man-2(0000156763).zip
2014-03-16 11:15 - 2013-11-03 10:58 - 00000000 ____D () C:\Users\Deimos\AppData\Roaming\BitComet
2014-03-16 10:18 - 2014-03-16 10:18 - 00000000 ___SD () C:\ComboFix
2014-03-16 10:18 - 2014-03-16 09:46 - 00000000 ____D () C:\Qoobox
2014-03-16 10:00 - 2014-03-16 10:00 - 00023424 _____ () C:\ComboFix.txt
2014-03-16 09:58 - 2014-03-16 09:45 - 00000000 ____D () C:\Windows\erdnt
2014-03-16 09:53 - 2009-07-14 03:34 - 00000215 _____ () C:\Windows\system.ini
2014-03-15 19:27 - 2014-03-15 19:27 - 00074808 _____ () C:\Users\Deimos\Downloads\The-Wolf-of-Wall-Street(0000233483).zip
2014-03-15 18:41 - 2013-10-12 21:00 - 00002366 _____ () C:\Users\Deimos\Desktop\Google Chrome.lnk
2014-03-11 21:17 - 2013-10-12 21:34 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-03-11 21:17 - 2013-10-12 21:34 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-03-11 21:17 - 2013-10-12 21:34 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-03-06 22:03 - 2013-10-12 23:11 - 00000000 ____D () C:\Users\Deimos\AppData\Roaming\FileZilla
2014-02-20 18:19 - 2013-10-12 20:59 - 00003888 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-18356201-231100067-3748499661-1000UA
2014-02-20 18:19 - 2013-10-12 20:59 - 00003492 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-18356201-231100067-3748499661-1000Core
2014-02-20 17:46 - 2013-10-13 22:22 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-02-19 22:05 - 2013-10-12 18:46 - 00000000 ____D () C:\Windows\Panther
2014-02-19 21:49 - 2014-02-19 21:49 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox

Some content of TEMP:
====================
C:\Users\Deimos\AppData\Local\Temp\ntdll_dump.dll


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2014-03-11 21:50




===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: () (Fixed) (Total:41.14 GB) (Free:13.48 GB) NTFS

Available physical RAM: 2104.84 MB
Total physical RAM: 3992.03 MB
Percentage of memory in use: 47%

==================== MBR and Partition Table ==================

Disk: 0 (MBR Code: Windows 7 or 8) (Size: 56 GB) (Disk ID: 00083E95)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=41 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=15 GB) - (Type=05)

==================== Scheduled Tasks (whitelisted) ==================

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-18356201-231100067-3748499661-1000Core.job => C:\Users\Deimos\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-18356201-231100067-3748499661-1000UA.job => C:\Users\Deimos\AppData\Local\Google\Update\GoogleUpdate.exe

==================== Alternate Data Streams (whitelisted) ==================

AlternateDataStreams: C:\ProgramData\TEMP:4FC01C57

==================== Security Center ==================

AV: Microsoft Security Essentials (Enabled - Up to date) {641105E6-77ED-3F35-A304-765193BCB75F}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Microsoft Security Essentials (Enabled - Up to date) {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Deimos\Desktop" je 6 MB.


***** Startup Programs *****

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FingerPrintSoftware
"C:\Program Files\Lenovo Fingerprint Software\fpapp.exe" \s [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FingerPrintSoftwareSplashScreen
"C:\Program Files\Lenovo Fingerprint Software\SplashScreen.exe" \s [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds
C:\Windows\system32\hkcmd.exe [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray
C:\Windows\system32\igfxtray.exe [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Persistence
C:\Windows\system32\igfxpers.exe [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Seafile
C:\Program Files (x86)\Seafile\bin\seafile-applet.exe

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================
Přílohy
Addition.zip
(5.35 KiB) Staženo 26 x

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosim o pomoc, reklama

#2 Příspěvek od vyosek »

Zdravim :)

:arrow: Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
  • Ulozte nejlepe na plochu
  • Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
  • Probehne vytvoreni zalohy a nasledne prohledavani
  • Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte
:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Odpovědět