prosím o kontrolu HJT Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

TravisX90
Level 1
Level 1
Příspěvky: 54
Registrován: květen 10
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu HJT

Příspěvekod TravisX90 » 20 kvě 2014 04:06

18:59:39.0901 0x0f00 Psched - ok
18:59:40.0057 0x0f00 [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
18:59:40.0104 0x0f00 ql2300 - ok
18:59:40.0119 0x0f00 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
18:59:40.0135 0x0f00 ql40xx - ok
18:59:40.0166 0x0f00 [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE C:\Windows\system32\qwave.dll
18:59:40.0166 0x0f00 QWAVE - ok
18:59:40.0197 0x0f00 [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
18:59:40.0197 0x0f00 QWAVEdrv - ok
18:59:40.0213 0x0f00 [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
18:59:40.0213 0x0f00 RasAcd - ok
18:59:40.0244 0x0f00 [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
18:59:40.0244 0x0f00 RasAgileVpn - ok
18:59:40.0275 0x0f00 [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto C:\Windows\System32\rasauto.dll
18:59:40.0291 0x0f00 RasAuto - ok
18:59:40.0307 0x0f00 [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
18:59:40.0307 0x0f00 Rasl2tp - ok
18:59:40.0338 0x0f00 [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan C:\Windows\System32\rasmans.dll
18:59:40.0353 0x0f00 RasMan - ok
18:59:40.0369 0x0f00 [ 77682DE44B334E6AAFCD0ED61FB7404F, C95DF9113D8B777BC9CFE319A710C9293210377F531F0C38FA38C588B8A3F5B4 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
18:59:40.0369 0x0f00 RasPppoe - ok
18:59:40.0400 0x0f00 [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
18:59:40.0400 0x0f00 RasSstp - ok
18:59:40.0447 0x0f00 [ F7331797F4644F04247EB6A74B9F56A0, 905C7785CC439A2CA74E57CF050AB57348D222C9ADDC9901439EDE48802FF589 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
18:59:40.0447 0x0f00 rdbss - ok
18:59:40.0463 0x0f00 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
18:59:40.0463 0x0f00 rdpbus - ok
18:59:40.0478 0x0f00 [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
18:59:40.0494 0x0f00 RDPCDD - ok
18:59:40.0494 0x0f00 [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
18:59:40.0509 0x0f00 RDPENCDD - ok
18:59:40.0525 0x0f00 [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
18:59:40.0525 0x0f00 RDPREFMP - ok
18:59:40.0541 0x0f00 [ 1FE9863C6C5CC71E8E7E70F9EFBD30E1, 5AA77169D67FB5AB455BB26148C14E8A40F280C452D47E7C8801375F07D5ED92 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
18:59:40.0541 0x0f00 RDPWD - ok
18:59:40.0587 0x0f00 [ A115F49BEA840A5F049BC6310F35F776, 3A4D681959A493ECC24C4B0925F5F4FD336F93C317198C210907E466D3F704CA ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
18:59:40.0603 0x0f00 rdyboost - ok
18:59:40.0634 0x0f00 [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess C:\Windows\System32\mprdim.dll
18:59:40.0650 0x0f00 RemoteAccess - ok
18:59:40.0712 0x0f00 [ E27F4D24D28E52F81A9223826939276B, 15C09E2BEE84C60E2E9A3A51472B33CDBB67E18DFCC2F554BA32DF3255E2CA5E ] RemoteRegistry C:\Windows\system32\regsvc.dll
18:59:40.0712 0x0f00 RemoteRegistry - ok
18:59:40.0775 0x0f00 [ 5CA4ABD888B602551B59BAA26941C167, F6FC0F828153E07EAFFAB6E11556DA23A5F6D9FC063E36947B1AC73E7E7E705E ] rimspci C:\Windows\system32\DRIVERS\rimssne64.sys
18:59:40.0775 0x0f00 rimspci - ok
18:59:40.0821 0x0f00 [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
18:59:40.0837 0x0f00 RpcEptMapper - ok
18:59:40.0868 0x0f00 [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator C:\Windows\system32\locator.exe
18:59:40.0884 0x0f00 RpcLocator - ok
18:59:40.0915 0x0f00 [ 225EFEE8960E554F3AB9A4A91790C039, A203583BECB4FE11300AF6B069D36632306AD0E7024618E5703392631C0A42A9 ] RpcSs C:\Windows\system32\rpcss.dll
18:59:40.0931 0x0f00 RpcSs - ok
18:59:40.0962 0x0f00 [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
18:59:40.0962 0x0f00 rspndr - ok
18:59:40.0993 0x0f00 [ 6598EBC4D209318EBD81F76833ECBEDB, A941E8FD33962F69722A007E946AA36B0A52C3913958C700404D21E09D331D9E ] SamSs C:\Windows\system32\lsass.exe
18:59:40.0993 0x0f00 SamSs - ok
18:59:41.0024 0x0f00 [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
18:59:41.0024 0x0f00 sbp2port - ok
18:59:41.0055 0x0f00 [ 38224FF66A734F973D10E1465AD4CB07, 07E4A77F08987BBF2ACE4DB18060F7A3201D72EC6EBAB6E8630C66F2119791CB ] SCardSvr C:\Windows\System32\SCardSvr.dll
18:59:41.0055 0x0f00 SCardSvr - ok
18:59:41.0102 0x0f00 [ 20AE08C7072DD0263651F7E6D60D0ACD, AF7981F5909B5B928F2D935E40C858E65F32C85433E0C9927557ADB29EFC98CC ] SCDEmu C:\Windows\system32\drivers\SCDEmu.sys
18:59:41.0118 0x0f00 SCDEmu - ok
18:59:41.0133 0x0f00 [ CDF622EFC748F82EA9571138406871EA, 80B4A3C00739D9FA2CBA06210873D919C1A65DC3D8F9849AE8AB4653A1217AC8 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
18:59:41.0133 0x0f00 scfilter - ok
18:59:41.0227 0x0f00 [ 262F6592C3299C005FD6BEC90FC4463A, 54095E37F0B6CC677A3E9BDD40F4647C713273D197DB341063AA7F342A60C4A7 ] Schedule C:\Windows\system32\schedsvc.dll
18:59:41.0258 0x0f00 Schedule - ok
18:59:41.0305 0x0f00 [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc C:\Windows\System32\certprop.dll
18:59:41.0305 0x0f00 SCPolicySvc - ok
18:59:41.0336 0x0f00 [ 5645FE235C9DB08285FAEA85B5191190, C791988C8DFEA7D864A89C80BEAADC8B42B16528B5F3E08F03FC3F4D493E6252 ] sdbus C:\Windows\system32\DRIVERS\sdbus.sys
18:59:41.0336 0x0f00 sdbus - ok
18:59:41.0383 0x0f00 [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC C:\Windows\System32\SDRSVC.dll
18:59:41.0399 0x0f00 SDRSVC - ok
18:59:41.0445 0x0f00 [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv C:\Windows\system32\drivers\secdrv.sys
18:59:41.0461 0x0f00 secdrv - ok
18:59:41.0461 0x0f00 [ BC617A4E1B4FA8DF523A061739A0BD87, 10C4057F6B321EB5237FF619747B74F5401BC17D15A8C7060829E8204A2297F9 ] seclogon C:\Windows\system32\seclogon.dll
18:59:41.0477 0x0f00 seclogon - ok
18:59:41.0492 0x0f00 [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS C:\Windows\System32\sens.dll
18:59:41.0492 0x0f00 SENS - ok
18:59:41.0508 0x0f00 [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc C:\Windows\system32\sensrsvc.dll
18:59:41.0508 0x0f00 SensrSvc - ok
18:59:41.0523 0x0f00 [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
18:59:41.0539 0x0f00 Serenum - ok
18:59:41.0555 0x0f00 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial C:\Windows\system32\drivers\serial.sys
18:59:41.0555 0x0f00 Serial - ok
18:59:41.0570 0x0f00 [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
18:59:41.0570 0x0f00 sermouse - ok
18:59:41.0633 0x0f00 [ 4D7226D0B485C8AE5BCD8E0DCC1066AB, E9C584D31D912FFE49FD06B287D931FEF5BF1AEF860156E2388C0092E71C91ED ] SessionEnv C:\Windows\system32\sessenv.dll
18:59:41.0633 0x0f00 SessionEnv - ok
18:59:41.0664 0x0f00 [ 70F9C476B62DE4F2823E918A6C181ADE, E1A641418A6CB4FA38BB29B86934838B28D8909B8066E5089D85BF72FD61F4C4 ] SFEP C:\Windows\system32\DRIVERS\SFEP.sys
18:59:41.0664 0x0f00 SFEP - ok
18:59:41.0711 0x0f00 [ C3D57658C34C68DB5D8970A1CF96284E, 4227C4AFDA94FB87FDB6642FB345209809EB86EC8F02DB79502AE54EF4A98A4B ] sffdisk C:\Windows\system32\DRIVERS\sffdisk.sys
18:59:41.0711 0x0f00 sffdisk - ok
18:59:41.0773 0x0f00 [ 21EACBEFFFB0FB4999D3D10245CF10A5, 46EFD8D61FE7CB6C9BAA84B869558749CC394D15B425E1657CABA6EAE718D6CF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
18:59:41.0773 0x0f00 sffp_mmc - ok
18:59:41.0835 0x0f00 [ AF660EA3039E8FE3C2051D7224C82F34, F559BF0492DBFFE877D04DF565265195794BEB92CCAC22E4665CD7BE42F8FA2B ] sffp_sd C:\Windows\system32\DRIVERS\sffp_sd.sys
18:59:41.0835 0x0f00 sffp_sd - ok
18:59:41.0867 0x0f00 [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
18:59:41.0867 0x0f00 sfloppy - ok
18:59:41.0913 0x0f00 [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess C:\Windows\System32\ipnathlp.dll
18:59:41.0929 0x0f00 SharedAccess - ok
18:59:41.0976 0x0f00 [ EA9092F3DB26EDC7199AB64C9EF0D2D7, 2FD5AFD91CF50FEEE0E5C59590C471BE61470E1C0BF4DC3745B75739BB0769F3 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
18:59:41.0991 0x0f00 ShellHWDetection - ok
18:59:42.0054 0x0f00 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
18:59:42.0054 0x0f00 SiSRaid2 - ok
18:59:42.0069 0x0f00 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
18:59:42.0069 0x0f00 SiSRaid4 - ok
18:59:42.0147 0x0f00 [ 50D9949020E02B847CD48F1243FCB895, 5BDAD5E44DE5B412645142810C5FCE4B2D9685F928FF4A6B836A9DCE7725BD78 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
18:59:42.0147 0x0f00 SkypeUpdate - ok
18:59:42.0179 0x0f00 [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb C:\Windows\system32\DRIVERS\smb.sys
18:59:42.0179 0x0f00 Smb - ok
18:59:42.0194 0x0f00 [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
18:59:42.0194 0x0f00 SNMPTRAP - ok
18:59:42.0210 0x0f00 [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr C:\Windows\system32\drivers\spldr.sys
18:59:42.0210 0x0f00 spldr - ok
18:59:42.0288 0x0f00 [ B9D7A4858CF32A6A15D2763F1DE47E0E, 428B1B19A4FCD6F6A160202BC1616AECCA98F80853BBF45A47F838E101A91D58 ] Spooler C:\Windows\System32\spoolsv.exe
18:59:42.0319 0x0f00 Spooler - ok
18:59:42.0600 0x0f00 [ E17E0188BB90FAE42D83E98707EFA59C, FC075F7B39E86CC8EF6DA4E339FE946917E319C347AC70FB0C50AAF36F97E27F ] sppsvc C:\Windows\system32\sppsvc.exe
18:59:42.0693 0x0f00 sppsvc - ok
18:59:42.0709 0x0f00 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify C:\Windows\system32\sppuinotify.dll
18:59:42.0709 0x0f00 sppuinotify - ok
18:59:42.0771 0x0f00 [ 441FBA48BFF01FDB9D5969EBC1838F0B, 306128F1AD489F87161A089D1BDC1542A4CB742D91A0C12A7CD1863FDB8932C0 ] srv C:\Windows\system32\DRIVERS\srv.sys
18:59:42.0787 0x0f00 srv - ok
18:59:42.0834 0x0f00 [ 9F50BF7E8BA1D13BB6BB51F932707A84, 30667FA89D180D1B577118B251EECF3389C3453CF4363675BC60F43E57BF1B0B ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
18:59:42.0834 0x0f00 srv2 - ok
18:59:42.0865 0x0f00 [ 27E461F0BE5BFF5FC737328F749538C3, AFA4704ED8FFC1A0BAB40DFB81D3AE3F3D933A3C9BF54DDAF39FF9AF3646D9E6 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
18:59:42.0865 0x0f00 srvnet - ok
18:59:42.0927 0x0f00 [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
18:59:42.0943 0x0f00 SSDPSRV - ok
18:59:42.0959 0x0f00 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc C:\Windows\system32\sstpsvc.dll
18:59:42.0974 0x0f00 SstpSvc - ok
18:59:42.0990 0x0f00 [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor C:\Windows\system32\drivers\stexstor.sys
18:59:42.0990 0x0f00 stexstor - ok
18:59:43.0052 0x0f00 [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc C:\Windows\System32\wiaservc.dll
18:59:43.0083 0x0f00 stisvc - ok
18:59:43.0115 0x0f00 [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
18:59:43.0115 0x0f00 swenum - ok
18:59:43.0193 0x0f00 [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv C:\Windows\System32\swprv.dll
18:59:43.0208 0x0f00 swprv - ok
18:59:43.0349 0x0f00 [ 7BE4CDEA6BC7832BFE3112A350D8B9EA, B51BD5A02D20C1CD8F7B4326114C2FA57ABD8D75133D6CE906CB65E97AAB7F70 ] SysMain C:\Windows\system32\sysmain.dll
18:59:43.0395 0x0f00 SysMain - ok
18:59:43.0411 0x0f00 [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\Windows\System32\TabSvc.dll
18:59:43.0427 0x0f00 TabletInputService - ok
18:59:43.0505 0x0f00 [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv C:\Windows\System32\tapisrv.dll
18:59:43.0520 0x0f00 TapiSrv - ok
18:59:43.0551 0x0f00 [ 1BE03AC720F4D302EA01D40F588162F6, AB644862BF1D2E824FD846180DEC4E2C0FAFCC517451486DE5A92E5E78A952E4 ] TBS C:\Windows\System32\tbssvc.dll
18:59:43.0551 0x0f00 TBS - ok
18:59:43.0707 0x0f00 [ F55B41AA6114568AC558ADBABDA85620, CA41FC097A8661BD14EA599473CD0F5A201D1A4C2C6658668DB9CAA376408149 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
18:59:43.0754 0x0f00 Tcpip - ok
18:59:43.0817 0x0f00 [ F55B41AA6114568AC558ADBABDA85620, CA41FC097A8661BD14EA599473CD0F5A201D1A4C2C6658668DB9CAA376408149 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
18:59:43.0863 0x0f00 TCPIP6 - ok
18:59:43.0926 0x0f00 [ 1B16D0BD9841794A6E0CDE0CEF744ABC, 7EB8BA97339199EEE7F2B09DA2DA6279DA64A510D4598D42CF86415D67CD674C ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
18:59:43.0926 0x0f00 tcpipreg - ok
18:59:43.0957 0x0f00 [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
18:59:43.0957 0x0f00 TDPIPE - ok
18:59:43.0957 0x0f00 [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
18:59:43.0973 0x0f00 TDTCP - ok
18:59:43.0988 0x0f00 [ DDAD5A7AB24D8B65F8D724F5C20FD806, B71F2967A4EE7395E4416C1526CB85368AEA988BDD1F2C9719C48B08FAFA9661 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
18:59:44.0004 0x0f00 tdx - ok
18:59:44.0019 0x0f00 [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
18:59:44.0019 0x0f00 TermDD - ok
18:59:44.0129 0x0f00 [ 5ADFC101F47A366302018371DE4353EA, 72D0A41431DD0169A0BCF3D98736077F8F31A8FD78F66448BC9273E6274BD451 ] TermService C:\Windows\System32\termsrv.dll
18:59:44.0144 0x0f00 TermService - ok
18:59:44.0160 0x0f00 [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes C:\Windows\system32\themeservice.dll
18:59:44.0160 0x0f00 Themes - ok
18:59:44.0175 0x0f00 [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER C:\Windows\system32\mmcss.dll
18:59:44.0191 0x0f00 THREADORDER - ok
18:59:44.0207 0x0f00 [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks C:\Windows\System32\trkwks.dll
18:59:44.0207 0x0f00 TrkWks - ok
18:59:44.0285 0x0f00 [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
18:59:44.0300 0x0f00 TrustedInstaller - ok
18:59:44.0347 0x0f00 [ 4CE278FC9671BA81A138D70823FCAA09, CBE501436696E32A3701B9F377B823AC36647B6626595F76CC63E2396AD7D300 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
18:59:44.0347 0x0f00 tssecsrv - ok
18:59:44.0409 0x0f00 [ D11C783E3EF9A3C52C0EBE83CC5000E9, A136C355D4C8945729163D15801364A614E23217B15F9313C85BA45BB71A74EB ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
18:59:44.0409 0x0f00 TsUsbFlt - ok
18:59:44.0441 0x0f00 [ 9CC2CCAE8A84820EAECB886D477CBCB8, 50D8AA2D7477A6618A0C31BB4D1C4887B457865FB1105E2E7B984EEFA337B804 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
18:59:44.0441 0x0f00 TsUsbGD - ok
18:59:44.0456 0x0f00 [ 5AF0E7D020F6CA55AC57CD89AE089673, 9D01BCC023461162C7146D0164A6068501BC8BACB7FD17851038A8F4BD6A8B9C ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
18:59:44.0472 0x0f00 tunnel - ok
18:59:44.0487 0x0f00 [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
18:59:44.0487 0x0f00 uagp35 - ok
18:59:44.0519 0x0f00 [ 7397C449E1C74AC9F41A9004BCAD6CB0, A3953A568B8D9259CD519A3E3B173A61D600EC9D6EC4FD7A1046D4F0DAC128C5 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
18:59:44.0534 0x0f00 udfs - ok
18:59:44.0565 0x0f00 [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect C:\Windows\system32\UI0Detect.exe
18:59:44.0581 0x0f00 UI0Detect - ok
18:59:44.0597 0x0f00 [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
18:59:44.0612 0x0f00 uliagpkx - ok
18:59:44.0628 0x0f00 [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus C:\Windows\system32\DRIVERS\umbus.sys
18:59:44.0628 0x0f00 umbus - ok
18:59:44.0643 0x0f00 [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
18:59:44.0643 0x0f00 UmPass - ok
18:59:44.0737 0x0f00 [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost C:\Windows\System32\upnphost.dll
18:59:44.0753 0x0f00 upnphost - ok
18:59:44.0784 0x0f00 [ C9E9D59C0099A9FF51697E9306A44240, 78D9A7A5E5742962B6978F475BF06CB32262F1D214699D3D40538476A58012A1 ] USBAAPL64 C:\Windows\system32\Drivers\usbaapl64.sys
18:59:44.0799 0x0f00 USBAAPL64 - ok
18:59:44.0831 0x0f00 [ DCA68B0943D6FA415F0C56C92158A83A, BEE5A5B33B22D1DF50B884D46D89FC3B8286EB16E38AD5A20F0A49E5C6766C57 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
18:59:44.0831 0x0f00 usbccgp - ok
18:59:44.0862 0x0f00 [ 80B0F7D5CCF86CEB5D402EAAF61FEC31, 140C62116A425DEAD25FE8D82DE283BC92C482A9F643658D512F9F67061F28AD ] usbcir C:\Windows\system32\drivers\usbcir.sys
18:59:44.0862 0x0f00 usbcir - ok
18:59:44.0893 0x0f00 [ 18A85013A3E0F7E1755365D287443965, 811C5EDF38C765BCF71BCE25CB6626FF6988C3699F5EF1846240EA0052F34C33 ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
18:59:44.0893 0x0f00 usbehci - ok
18:59:44.0924 0x0f00 [ 8D1196CFBB223621F2C67D45710F25BA, B5D7AFE51833B24FC9576F3AED3D8A2B290E5846060E73F9FFFAC1890A8B6003 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
18:59:44.0940 0x0f00 usbhub - ok
18:59:44.0987 0x0f00 [ 765A92D428A8DB88B960DA5A8D6089DC, 56DE8A2ED58E53B202C399CA7BACB1551136303C2EE0AB426BDBBF880E3C542C ] usbohci C:\Windows\system32\drivers\usbohci.sys
18:59:44.0987 0x0f00 usbohci - ok
18:59:44.0987 0x0f00 [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
18:59:44.0987 0x0f00 usbprint - ok
18:59:45.0049 0x0f00 [ 9661DA76B4531B2DA272ECCE25A8AF24, FEA93254A21E71A7EB8AD35FCCAD2C1E41F7329EC33B1734F5B41307A34D8637 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
18:59:45.0049 0x0f00 usbscan - ok
18:59:45.0096 0x0f00 [ 73B84C8CE467E81A94D4194F8009F2A0, 65CB7C61F4675C2D8EB5C5454577E7AD36F9D390F08E59EAF1765761B97424FB ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
18:59:45.0096 0x0f00 USBSTOR - ok
18:59:45.0127 0x0f00 [ DD253AFC3BC6CBA412342DE60C3647F3, 146F8613F1057AC054DC3593E84BC52899DA27EA33B0E72ACFB78C3699ADCDE7 ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
18:59:45.0127 0x0f00 usbuhci - ok
18:59:45.0174 0x0f00 [ 1F775DA4CF1A3A1834207E975A72E9D7, 6D3DE5BD3EF3A76E997E5BAF900C51D25308F5A9682D1F62017F577A24095B90 ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
18:59:45.0174 0x0f00 usbvideo - ok
18:59:45.0221 0x0f00 [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms C:\Windows\System32\uxsms.dll
18:59:45.0221 0x0f00 UxSms - ok
18:59:45.0267 0x0f00 [ 6598EBC4D209318EBD81F76833ECBEDB, A941E8FD33962F69722A007E946AA36B0A52C3913958C700404D21E09D331D9E ] VaultSvc C:\Windows\system32\lsass.exe
18:59:45.0267 0x0f00 VaultSvc - ok
18:59:45.0299 0x0f00 [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
18:59:45.0314 0x0f00 vdrvroot - ok
18:59:45.0345 0x0f00 [ 44082C4A89ABDAC0C4B08AA8834270B4, C312E144AC4E5475506EBC62CC5D0529B256771C1FA2D709228D3F6BFEB55DED ] vds C:\Windows\System32\vds.exe
18:59:45.0361 0x0f00 vds - ok
18:59:45.0392 0x0f00 [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
18:59:45.0392 0x0f00 vga - ok
18:59:45.0408 0x0f00 [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave C:\Windows\System32\drivers\vga.sys
18:59:45.0408 0x0f00 VgaSave - ok
18:59:45.0439 0x0f00 [ 39B842DE7862033E7A5F2BDDE7DECEB5, 730A75E65BDC911E9FA10217833927227C8429A7935F08FB1D38426AA64D23D1 ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
18:59:45.0439 0x0f00 vhdmp - ok
18:59:45.0470 0x0f00 [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide C:\Windows\system32\drivers\viaide.sys
18:59:45.0470 0x0f00 viaide - ok
18:59:45.0501 0x0f00 [ F6151F63A8E9C92A9AE8181DDDFF3A9A, DBDBA36DFC2A366F3B1DBC07035D5EB18E7B7B7E6CABA907F53462E70BBDB0E8 ] volmgr C:\Windows\system32\drivers\volmgr.sys
18:59:45.0501 0x0f00 volmgr - ok
18:59:45.0517 0x0f00 [ 0904EF550B3D3FEB326638A4BAD9937E, 462FA11F260C420756DBD989CB505EEB9A286B9EEB826EB2935C119C839EDC8E ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
18:59:45.0533 0x0f00 volmgrx - ok
18:59:45.0579 0x0f00 [ ABFECA99D72CE81E5C3612861F03B0CA, 6C4452B29A1E6B1019CDBFF66C6073102FBE387FB266ECAEA5375EB31E7C107B ] volsnap C:\Windows\system32\drivers\volsnap.sys
18:59:45.0579 0x0f00 volsnap - ok
18:59:45.0611 0x0f00 [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
18:59:45.0611 0x0f00 vsmraid - ok
18:59:45.0798 0x0f00 [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS C:\Windows\system32\vssvc.exe
18:59:45.0845 0x0f00 VSS - ok
18:59:45.0876 0x0f00 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
18:59:45.0876 0x0f00 vwifibus - ok
18:59:45.0891 0x0f00 [ 13A0DECD1794DE60A8427862C8669D27, 4024AF9F2F052BC80C85F5B9A671499C20AF38838206CC649E6EFE37C380D3BF ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
18:59:45.0907 0x0f00 vwififlt - ok
18:59:45.0923 0x0f00 [ 49003B357D101CDC474937437ECF5ABC, D3EC570D616DC39FE6BF02DA1CD6C30CD07C27CC5B4B6FD6DACB5D8A4F1596A6 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys
18:59:45.0923 0x0f00 vwifimp - ok
18:59:45.0969 0x0f00 [ C7B83BD98BA3560374569C0C13EA3685, 68C05B99D6035568E2470FE7E73167AF584CC721F76E02CA1470CA5E1E341607 ] W32Time C:\Windows\system32\w32time.dll
18:59:45.0969 0x0f00 W32Time - ok
18:59:46.0032 0x0f00 [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
18:59:46.0032 0x0f00 WacomPen - ok
18:59:46.0047 0x0f00 [ 226028D956C43CE4D8DDFFA89873E890, F1208BAF5041595981CC6E2EB36D7E9487A4BFA4B895337C21135CED6B375936 ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
18:59:46.0047 0x0f00 WANARP - ok
18:59:46.0047 0x0f00 [ 226028D956C43CE4D8DDFFA89873E890, F1208BAF5041595981CC6E2EB36D7E9487A4BFA4B895337C21135CED6B375936 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
18:59:46.0063 0x0f00 Wanarpv6 - ok
18:59:46.0219 0x0f00 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C, 4150DAB33E8D61076F1D4767BCAFC9B4ECCCCBD58FD4FB3CFE5B8D27DCDCAB61 ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
18:59:46.0250 0x0f00 WatAdminSvc - ok
18:59:46.0359 0x0f00 [ E3AED78575601B7106B87A0A1BF93017, CAAD17CF79960D0E5DC2E968F9A9B5F3281889FE338F55F369F8FCF3C4FC16FA ] wbengine C:\Windows\system32\wbengine.exe
18:59:46.0391 0x0f00 wbengine - ok
18:59:46.0422 0x0f00 [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
18:59:46.0422 0x0f00 WbioSrvc - ok
18:59:46.0453 0x0f00 [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc C:\Windows\System32\wcncsvc.dll
18:59:46.0469 0x0f00 wcncsvc - ok
18:59:46.0484 0x0f00 [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
18:59:46.0484 0x0f00 WcsPlugInService - ok
18:59:46.0531 0x0f00 [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd C:\Windows\system32\drivers\wd.sys
18:59:46.0547 0x0f00 Wd - ok
18:59:46.0640 0x0f00 [ E2C933EDBC389386EBE6D2BA953F43D8, AF1DEADD5F1267CCEBD226E8EEB971D1946EA6A5A9645A36F5D111F758AF2F07 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
18:59:46.0656 0x0f00 Wdf01000 - ok
18:59:46.0703 0x0f00 [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiServiceHost C:\Windows\system32\wdi.dll
18:59:46.0718 0x0f00 WdiServiceHost - ok
18:59:46.0718 0x0f00 [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiSystemHost C:\Windows\system32\wdi.dll
18:59:46.0718 0x0f00 WdiSystemHost - ok
18:59:46.0781 0x0f00 [ 1BABAABCB29B03CFA7BC30833963398E, A354415572EEEB6FD7847F0FAF07BB7772E761EA485CFF3FE7837706515E85A0 ] WebClient C:\Windows\System32\webclnt.dll
18:59:46.0796 0x0f00 WebClient - ok
18:59:46.0843 0x0f00 [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc C:\Windows\system32\wecsvc.dll
18:59:46.0843 0x0f00 Wecsvc - ok
18:59:46.0859 0x0f00 [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport C:\Windows\System32\wercplsupport.dll
18:59:46.0859 0x0f00 wercplsupport - ok
18:59:46.0890 0x0f00 [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc C:\Windows\System32\WerSvc.dll
18:59:46.0890 0x0f00 WerSvc - ok
18:59:46.0937 0x0f00 [ 009604986BAE004733728282BD98BB03, CE82EA41E6CC1EF2D11BFB2761105C422EA9A146FF52034C4A2221A4B5FD3940 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
18:59:46.0937 0x0f00 WfpLwf - ok
18:59:46.0952 0x0f00 [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount C:\Windows\system32\drivers\wimmount.sys
18:59:46.0952 0x0f00 WIMMount - ok
18:59:46.0983 0x0f00 WinDefend - ok
18:59:46.0999 0x0f00 WinHttpAutoProxySvc - ok
18:59:47.0093 0x0f00 [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
18:59:47.0108 0x0f00 Winmgmt - ok
18:59:47.0327 0x0f00 [ 1D8576DCC0E32BFEF95B69E0DDF399DA, 588BD4B576FBD22B996A374D893EBB64322F1B989F95525466D2C16CDD4D97C3 ] WinRM C:\Windows\system32\WsmSvc.dll
18:59:47.0373 0x0f00 WinRM - ok
18:59:47.0420 0x0f00 [ FE88B288356E7B47B74B13372ADD906D, A16B166F6BB32EF9D2A142F27B9EC54CBC7B3AC915799783CF4C40E525BC9E03 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
18:59:47.0420 0x0f00 WinUsb - ok
18:59:47.0514 0x0f00 [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc C:\Windows\System32\wlansvc.dll
18:59:47.0545 0x0f00 Wlansvc - ok
18:59:47.0592 0x0f00 [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
18:59:47.0592 0x0f00 WmiAcpi - ok
18:59:47.0654 0x0f00 [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
18:59:47.0654 0x0f00 wmiApSrv - ok
18:59:47.0685 0x0f00 WMPNetworkSvc - ok
18:59:47.0717 0x0f00 [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc C:\Windows\System32\wpcsvc.dll
18:59:47.0717 0x0f00 WPCSvc - ok
18:59:47.0779 0x0f00 [ 93221146D4EBBF314C29B23CD6CC391D, C0750858A65BF51E210CD244C825C121D67E025CD2D2455139991AAC289A90FE ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
18:59:47.0795 0x0f00 WPDBusEnum - ok
18:59:47.0826 0x0f00 [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
18:59:47.0826 0x0f00 ws2ifsl - ok
18:59:47.0904 0x0f00 [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc C:\Windows\System32\wscsvc.dll
18:59:47.0919 0x0f00 wscsvc - ok
18:59:47.0919 0x0f00 WSearch - ok
18:59:48.0091 0x0f00 [ D9EF901DCA379CFE914E9FA13B73B4C4, 3BE9693B7B2AFEE23D72AF5DA211379724D752F0EC18ACB7D3DE3DDFC5AE0004 ] wuauserv C:\Windows\system32\wuaueng.dll
18:59:48.0153 0x0f00 wuauserv - ok
18:59:48.0200 0x0f00 [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
18:59:48.0200 0x0f00 WudfPf - ok
18:59:48.0231 0x0f00 [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
18:59:48.0231 0x0f00 WUDFRd - ok
18:59:48.0278 0x0f00 [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
18:59:48.0294 0x0f00 wudfsvc - ok
18:59:48.0325 0x0f00 [ 04F82965C09CBDF646B487E145060301, 2CD8533EDBE24C3E42EB7550E20F8A2EB9E5E345B165DEF543163A6BC1FDD18B ] WwanSvc C:\Windows\System32\wwansvc.dll
18:59:48.0341 0x0f00 WwanSvc - ok
18:59:48.0387 0x0f00 [ 64F88AF327AA74E03658AE32B48CCB8B, 52C8941D96F2EF89BBC4A4268DC59E5BC89AE2DAB199C13BBFF11C2606BE7FFA ] yukonw7 C:\Windows\system32\DRIVERS\yk62x64.sys
18:59:48.0403 0x0f00 yukonw7 - ok
18:59:48.0403 0x0f00 ================ Scan global ===============================
18:59:48.0450 0x0f00 [ BA0CD8C393E8C9F83354106093832C7B, 18D8A4780A2BAA6CEF7FBBBDA0EF6BF2DADF146E1E578A618DD5859E8ADBF1A8 ] C:\Windows\system32\basesrv.dll
18:59:48.0512 0x0f00 [ BDADDE9AD8DD2BF67426C23A8874D776, CD8EE0EB9370F70340580C271CEA4CF6B4C91D5670999740F628EAE721FF8879 ] C:\Windows\system32\winsrv.dll
18:59:48.0528 0x0f00 [ BDADDE9AD8DD2BF67426C23A8874D776, CD8EE0EB9370F70340580C271CEA4CF6B4C91D5670999740F628EAE721FF8879 ] C:\Windows\system32\winsrv.dll
18:59:48.0559 0x0f00 [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll
18:59:48.0621 0x0f00 [ 24ACB7E5BE595468E3B9AA488B9B4FCB, 63541E3432FCE953F266AE553E7A394978D6EE3DB52388D885F668CF42C5E7E2 ] C:\Windows\system32\services.exe
18:59:48.0621 0x0f00 [ Global ] - ok
18:59:48.0637 0x0f00 ================ Scan MBR ==================================
18:59:48.0653 0x0f00 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
18:59:49.0292 0x0f00 \Device\Harddisk0\DR0 - ok
18:59:49.0292 0x0f00 ================ Scan VBR ==================================
18:59:49.0308 0x0f00 [ 36DDF289ABA6AA054BF1C072295B682B ] \Device\Harddisk0\DR0\Partition1
18:59:49.0308 0x0f00 \Device\Harddisk0\DR0\Partition1 - ok
18:59:49.0323 0x0f00 [ 026480212FC1979FA0AAB355B0DFF7EB ] \Device\Harddisk0\DR0\Partition2
18:59:49.0339 0x0f00 \Device\Harddisk0\DR0\Partition2 - ok
18:59:49.0386 0x0f00 [ EFEF95D3766EE920E3E1DA3A46AD8E6B ] \Device\Harddisk0\DR0\Partition3
18:59:49.0386 0x0f00 \Device\Harddisk0\DR0\Partition3 - ok
18:59:49.0401 0x0f00 AV detected via SS2: avast! Antivirus, C:\Program Files\AVAST Software\Avast\VisthAux.exe ( 9.0.2018.391 ), 0x41000 ( enabled : updated )
18:59:49.0401 0x0f00 Win FW state via NFP2: enabled
19:00:03.0506 0x0f00 ============================================================
19:00:03.0506 0x0f00 Scan finished
19:00:03.0506 0x0f00 ============================================================
19:00:03.0521 0x0b34 Detected object count: 0
19:00:03.0521 0x0b34 Actual detected object count: 0
19:00:29.0419 0x06c4 Deinitialize success

Reklama
Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43287
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu HJT

Příspěvekod jaro3 » 20 kvě 2014 09:33

Vypni rez. ochranu u antiviru a antispywaru,příp. firewall..

Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud budou problémy , spusť ho v nouz. režimu.

Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

TravisX90
Level 1
Level 1
Příspěvky: 54
Registrován: květen 10
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu HJT

Příspěvekod TravisX90 » 21 kvě 2014 06:41

ComboFix 14-05-19.01 - Sony 20.05.2014 21:26:14.1.4 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.3950.2688 [GMT -7:00]
Spuštìný z: c:\users\Sony\Desktop\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Sony\AppData\Local\nsb4256.tmp
c:\users\Sony\AppData\Local\Plus500
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\BigLoading.gif
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\but_AutoYScaleDown.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\but_AutoYScaleUp.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\but_Cancel.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\but_cashier.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\but_CrosshairDown.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\but_CrosshairUp.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\but_DemoMode.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\but_downarrow_red.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\but_Help.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\but_ChartSettings.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\but_MoveDown.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\but_MoveUp.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\but_OK.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\but_RateAlerts.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\but_RealMode.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\but_Search.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\but_SetupIndicators.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\but_SwitchToCandleStick.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\but_SwitchToFun.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\but_SwitchToLine.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\but_SwitchToReal.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\but_ZoomIn.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\but_ZoomOut.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\but_ZoomReset.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\challenge_loading.gif
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_ABNAMRO.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_AboutWallpaper.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_ArrowDown.bmp
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_ArrowUp.bmp
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_Barclays.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_BigBell.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_BigBellSelected.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_BigFavorite.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_BigFavoriteSelected.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_BuySellWallpaper.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_CashierMainWallpaper.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_CashierMainWallpaper1.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_CashierMainWallpaper1s.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_CashierMainWallpaper2.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_CashierMainWallpaper2s.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_CashierMainWallpaper3.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_CashierMainWallpaper3s.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_CommonwealthBank.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_Error.PNG
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_ChallengeStandings_Wallpaper.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_ChartToolbar.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_IBB.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_InstrumentScreenLeftWallpaper.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_InstrumentScreenRightWallpaper.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_LoginWallpaper.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_MainLobbyIconsImageList0.bmp
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_MainLobbyIconsImageList1.bmp
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_MainLobbyIconsImageList2.bmp
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_MainLobbyIconsImageList3.bmp
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_MainLobbyIconsImageList4.bmp
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_MainLobbyIconsImageList5.bmp
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_MainLobbyIconsImageList6.bmp
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_MainLobbyIconsImageList7.bmp
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_MainLobbyIconsImageList8.bmp
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_MainLobbyLeftWallpaper.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_MainLobbyRightWallpaper.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\img_RateUs.png
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\InvestSmallBtns.ssk
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\InvestSoft.ssk
c:\users\Sony\AppData\Local\Plus500\Languages\cs\Images\Loading.gif
c:\users\Sony\AppData\Local\Plus500\Main\configuration.xml
c:\users\Sony\AppData\Local\Plus500\Main\InstrumentsInfo.xml
c:\users\Sony\AppData\Local\Plus500\Main\InvestSoft.log
c:\users\Sony\AppData\Local\Plus500\Main\InvestSoft.log.1
c:\users\Sony\AppData\Local\Plus500\Main\InvestSoft.log.2
c:\users\Sony\AppData\Local\Plus500\Main\InvestSoft.log.3
c:\users\Sony\AppData\Local\Plus500\Main\InvestSoft.log.4
c:\users\Sony\AppData\Local\Plus500\Main\InvestSoftProject.exe
c:\users\Sony\AppData\Local\Plus500\Main\InvestSoftProject.jdbg
c:\users\Sony\AppData\Local\Plus500\Main\log4delphi.log
c:\users\Sony\AppData\Local\Plus500\Main\SIL\AboutGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\AboutGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\AlertsGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\AlertsGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\BuySellGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\BuySellGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CashierAddressVerificationGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CashierAddressVerificationGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CashierBonusAccountGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CashierBonusAccountGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CashierDepositGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CashierDepositGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CashierEmailVerificationGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CashierEmailVerificationGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CashierFullRegistration_ASIC_GUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CashierFullRegistration_ASIC_GUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CashierFullRegistration_FSA_GUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CashierFullRegistration_FSA_GUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CashierFullRegistrationGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CashierFullRegistrationGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CashierGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CashierGUIbrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CashierHistoryGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CashierHistoryGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CashierChangePasswordGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CashierChangePasswordGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CashierMainGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CashierMainGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CashierPhoneVerificationGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CashierPhoneVerificationGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CashierQuestionnaireGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CashierQuestionnaireGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CashierReportsGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CashierReportsGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CashierUploadDocsGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CashierUploadDocsGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CashierWithdrawGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CashierWithdrawGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\ClosePositionGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\ClosePositionGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\Countries.xml
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CreateUserGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\CreateUserGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\DontShowAgainGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\DontShowAgainGUIbrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\FavoritesSetupGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\FavoritesSetupGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\ForgotPasswordGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\ForgotPasswordGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\ChallengeCreateGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\ChallengeCreateGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\ChallengeHelpGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\ChallengeHelpGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\ChallengeInviteGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\ChallengeInviteGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\ChallengeStandingsGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\ChallengeStandingsGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\ChartGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\ChartGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\IndicatorsADXGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\IndicatorsADXGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\IndicatorsAligatorGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\IndicatorsAligatorGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\IndicatorsBollingerGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\IndicatorsBollingerGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\IndicatorsEnvelopesGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\IndicatorsEnvelopesGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\IndicatorsGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\IndicatorsGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\IndicatorsMACDOsMAGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\IndicatorsMACDOsMAGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\IndicatorsMovingAverageGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\IndicatorsMovingAverageGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\IndicatorsParabolicSARGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\IndicatorsParabolicSARGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\IndicatorsPeriodGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\IndicatorsPeriodGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\IndicatorsStochasticGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\IndicatorsStochasticGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\InstrumentScreenGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\InstrumentScreenGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\InvestSoft.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\InvestSoftBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\IsRealGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\IsRealGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\LinkMessageDlgGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\LinkMessageDlgGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\LoginGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\LoginGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\MainLobbyGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\MainLobbyGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\ProcessingGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\ProcessingGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\ProcessingSmallGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\ProcessingSmallGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\RateAlertGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\RateAlertGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\RateAlertSetupGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\RateAlertSetupGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\RateUsGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\RateUsGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\SettingsGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\SettingsGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\UploadFileGUI.sil
c:\users\Sony\AppData\Local\Plus500\Main\SIL\UploadFileGUIBrand.sil
c:\users\Sony\AppData\Local\Plus500\Update\500w.exe
c:\users\Sony\AppData\Local\Plus500\Update\500z.exe
c:\users\Sony\AppData\Local\Plus500\Update\product.ico
c:\users\Sony\AppData\Local\Plus500\Update\ResourceChange.exe
c:\users\Sony\AppData\Local\Plus500\Update\uninstall.ico
.
.
((((((((((((((((((((((((( Soubory vytvoøené od 2014-04-21 do 2014-05-21 )))))))))))))))))))))))))))))))
.
.
2014-05-21 04:32 . 2014-05-21 04:32 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-05-18 18:52 . 2014-05-18 18:53 85328 ----a-w- c:\windows\system32\drivers\aswstm.sys
2014-05-18 18:52 . 2014-05-18 18:52 208416 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2014-05-18 18:52 . 2014-05-18 18:53 1039096 ----a-w- c:\windows\system32\drivers\aswsnx.sys
2014-05-18 18:52 . 2014-05-18 18:53 423240 ----a-w- c:\windows\system32\drivers\aswsp.sys
2014-05-18 18:52 . 2014-05-18 18:52 65776 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2014-05-18 18:52 . 2014-05-18 18:52 79184 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2014-05-18 18:52 . 2014-05-18 18:52 29208 ----a-w- c:\windows\system32\drivers\aswHwid.sys
2014-05-18 18:52 . 2014-05-18 18:52 93568 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2014-05-18 18:52 . 2014-05-18 18:52 43152 ----a-w- c:\windows\avastSS.scr
2014-05-18 18:50 . 2014-05-18 18:50 -------- d-----w- c:\program files\AVAST Software
2014-05-18 18:43 . 2014-05-18 18:43 -------- d-s---w- c:\windows\SysWow64\Microsoft
2014-05-17 19:02 . 2014-05-17 19:02 -------- d-----w- c:\users\Sony\AppData\Local\Adobe
2014-05-17 13:42 . 2014-05-17 13:42 -------- d-----w- c:\windows\ERUNT
2014-05-16 21:37 . 2010-08-30 15:34 536576 ----a-w- c:\windows\SysWow64\sqlite3.dll
2014-05-16 21:37 . 2014-05-17 13:37 -------- d-----w- C:\AdwCleaner
2014-05-16 21:29 . 2014-05-16 21:29 -------- d-----w- c:\users\Sony\AppData\Local\ATI
2014-05-16 16:15 . 2014-05-07 02:27 46704 ----a-w- c:\program files (x86)\Mozilla Firefox\browser\components\browsercomps.dll
2014-05-16 16:15 . 2014-05-07 02:26 965232 ----a-w- c:\program files (x86)\Mozilla Firefox\icuuc52.dll
2014-05-16 16:15 . 2014-05-07 02:26 1266800 ----a-w- c:\program files (x86)\Mozilla Firefox\icuin52.dll
2014-05-16 16:15 . 2014-05-07 02:26 10594416 ----a-w- c:\program files (x86)\Mozilla Firefox\icudt52.dll
2014-05-16 07:01 . 2014-05-06 04:40 23544320 ----a-w- c:\windows\system32\mshtml.dll
2014-05-16 07:01 . 2014-05-06 03:00 84992 ----a-w- c:\windows\system32\mshtmled.dll
2014-05-16 07:01 . 2014-05-06 04:17 2724864 ----a-w- c:\windows\system32\mshtml.tlb
2014-05-16 07:01 . 2014-05-06 03:07 2724864 ----a-w- c:\windows\SysWow64\mshtml.tlb
2014-05-16 06:16 . 2014-04-17 09:31 10651704 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{2ABDED86-4332-4A5F-9DA6-F7804416F43C}\mpengine.dll
2014-05-13 16:39 . 2014-05-13 16:39 -------- d-----w- c:\users\Sony\AppData\Roaming\FastStone
2014-05-13 16:39 . 2014-05-13 16:39 -------- d-----w- c:\program files (x86)\FastStone Image Viewer
2014-05-13 16:16 . 2014-05-16 16:06 -------- d-s---w- c:\windows\system32\CompatTel
2014-05-09 23:10 . 2014-05-07 02:26 305264 ----a-w- c:\program files (x86)\Mozilla Firefox\freebl3.dll
2014-05-09 23:10 . 2014-05-07 02:26 275568 ----a-w- c:\program files (x86)\Mozilla Firefox\firefox.exe
2014-05-09 23:10 . 2014-05-07 02:26 117360 ----a-w- c:\program files (x86)\Mozilla Firefox\crashreporter.exe
2014-05-09 23:10 . 2014-05-07 02:26 75376 ----a-w- c:\program files (x86)\Mozilla Firefox\breakpadinjector.dll
2014-05-09 23:10 . 2014-05-07 02:26 20080 ----a-w- c:\program files (x86)\Mozilla Firefox\AccessibleMarshal.dll
2014-05-09 23:10 . 2010-05-26 18:41 2106216 ----a-w- c:\program files (x86)\Mozilla Firefox\D3DCompiler_43.dll
2014-05-07 16:52 . 2014-05-07 16:52 -------- d-----w- c:\users\Default\AppData\Local\Google
2014-04-25 20:23 . 2014-04-25 20:23 660120 ----a-w- c:\windows\SysWow64\mscomct2.ocx
2014-04-25 20:23 . 2014-04-25 20:23 -------- d-----w- c:\programdata\Firefly Studios
2014-04-25 20:23 . 2014-04-25 20:23 80806080 ----a-w- c:\program files (x86)\Common Files\Microsoft Shared\OFFICE15\MSORES.DLL
2014-04-25 20:23 . 2014-04-25 20:23 548024 ----a-w- c:\program files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOSQM.EXE
2014-04-25 20:23 . 2014-04-25 20:23 26134720 ----a-w- c:\program files (x86)\Common Files\Microsoft Shared\OFFICE15\MSO.DLL
2014-04-25 20:04 . 2014-04-25 20:04 -------- d-----w- c:\programdata\Logs
2014-04-25 19:56 . 2014-04-25 19:56 -------- d--h--w- c:\program files (x86)\InstallShield Installation Information
2014-04-25 19:55 . 2014-04-25 19:55 -------- d-----w- c:\program files (x86)\Common Files\InstallShield
2014-04-25 17:03 . 2014-04-25 17:03 -------- d-----w- c:\users\Sony\AppData\Roaming\PowerISO
2014-04-25 17:02 . 2014-03-11 07:00 129944 ----a-w- c:\windows\system32\drivers\scdemu.sys
2014-04-25 17:02 . 2014-04-25 17:02 -------- d-----w- c:\program files\PowerISO
2014-04-25 16:08 . 2014-04-25 16:54 283064 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2014-04-25 16:08 . 2014-04-25 16:50 -------- d-----w- c:\program files (x86)\DAEMON Tools Lite
2014-04-23 15:10 . 2014-03-06 07:11 2043904 ----a-w- c:\windows\system32\inetcpl.cpl
2014-04-23 15:10 . 2014-03-06 06:53 13551104 ----a-w- c:\windows\system32\ieframe.dll
2014-04-23 15:10 . 2014-03-06 08:11 5784064 ----a-w- c:\windows\system32\jscript9.dll
2014-04-23 15:10 . 2014-03-06 07:46 4254720 ----a-w- c:\windows\SysWow64\jscript9.dll
2014-04-22 15:38 . 2014-05-20 19:33 -------- d-----r- c:\users\Sony\Dropbox
2014-04-22 15:36 . 2014-05-21 04:19 -------- d-----w- c:\users\Sony\AppData\Roaming\Dropbox
2014-04-22 03:18 . 2014-02-04 02:37 191424 ----a-w- c:\windows\system32\drivers\storport.sys
2014-04-22 03:18 . 2014-02-04 02:37 275392 ----a-w- c:\windows\system32\drivers\msiscsi.sys
2014-04-22 03:18 . 2014-02-04 02:35 27584 ----a-w- c:\windows\system32\drivers\Diskdump.sys
2014-04-22 03:18 . 2014-02-04 02:28 2048 ----a-w- c:\windows\system32\iologmsg.dll
2014-04-22 03:18 . 2014-02-04 02:00 2048 ----a-w- c:\windows\SysWow64\iologmsg.dll
2014-04-22 03:18 . 2014-03-04 11:08 421376 ----a-w- c:\windows\system32\KernelBase.dll
2014-04-22 03:18 . 2014-03-04 10:38 275456 ----a-w- c:\windows\SysWow64\KernelBase.dll
2014-04-22 03:18 . 2014-01-24 02:40 1684416 ----a-w- c:\windows\system32\drivers\ntfs.sys
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-05-18 18:52 . 2013-09-03 16:48 334648 ----a-w- c:\windows\system32\aswBoot.exe
2014-05-16 16:23 . 2013-09-03 16:57 70832 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2014-05-16 16:23 . 2013-09-03 16:57 692400 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2014-05-16 06:55 . 2013-09-03 17:28 93223848 ----a-w- c:\windows\system32\MRT.exe
2014-04-12 02:06 . 2014-05-16 06:19 44032 ----a-w- c:\windows\apppatch\acwow64.dll
2014-04-01 05:46 . 2014-04-01 05:46 130712 ----a-w- c:\windows\SysWow64\MSSTDFMT.DLL
2014-04-01 05:46 . 2014-04-01 05:46 1070232 ----a-w- c:\windows\SysWow64\MSCOMCTL.OCX
2014-03-31 13:35 . 2010-11-21 03:27 270496 ------w- c:\windows\system32\MpSigStub.exe
2014-03-04 11:08 . 2014-05-16 06:19 340992 ----a-w- c:\windows\system32\schannel.dll
2014-03-04 10:39 . 2014-05-16 06:19 247808 ----a-w- c:\windows\SysWow64\schannel.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštìcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-10 23:54 131248 ----a-w- c:\users\Sony\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-10 23:54 131248 ----a-w- c:\users\Sony\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-10 23:54 131248 ----a-w- c:\users\Sony\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-10 23:54 131248 ----a-w- c:\users\Sony\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-21 1475584]
"GoogleDriveSync"="c:\program files (x86)\Google\Drive\googledrivesync.exe" [2014-04-25 22415552]
"DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2014-03-04 3696912]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2010-01-14 98304]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-11-21 959904]
"seznam-listicka-distribuce"="c:\program files (x86)\Seznam.cz\distribution\szninstall.exe" [2013-05-16 1062472]
"GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2014-02-21 152392]
"PWRISOVM.EXE"="c:\program files\PowerISO\PWRISOVM.EXE" [2014-03-11 377368]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2014-05-18 3873704]
.
c:\users\Sony\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dropbox.lnk - c:\users\Sony\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup [2014-5-7 32668056]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
.
R2 OutfoxTvService;OutfoxTvService;c:\program files\OutfoxTV\OutfoxTvService.exe;c:\program files\OutfoxTV\OutfoxTvService.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R3 aswEmHWID2;avast! EmHWID;c:\windows\TEMP\aswEmHWID.sys;c:\windows\TEMP\aswEmHWID.sys [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys;c:\windows\SYSNATIVE\Drivers\usbaapl64.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
S0 aswRvrt;avast! Revert; [x]
S0 aswVmm;avast! VM Monitor; [x]
S1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys;c:\windows\SYSNATIVE\drivers\aswSnx.sys [x]
S1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys;c:\windows\SYSNATIVE\drivers\aswSP.sys [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x]
S2 aswHwid;avast! HardwareID;c:\windows\system32\drivers\aswHwid.sys;c:\windows\SYSNATIVE\drivers\aswHwid.sys [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x]
S2 aswStm;aswStm;c:\windows\system32\drivers\aswStm.sys;c:\windows\SYSNATIVE\drivers\aswStm.sys [x]
S2 c2cautoupdatesvc;Skype Click to Call Updater;c:\program files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe;c:\program files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [x]
S2 c2cpnrsvc;Skype Click to Call PNR Service;c:\program files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe;c:\program files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [x]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
S2 rimspci;rimspci;c:\windows\system32\DRIVERS\rimssne64.sys;c:\windows\SYSNATIVE\DRIVERS\rimssne64.sys [x]
S3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys;c:\windows\SYSNATIVE\DRIVERS\HECIx64.sys [x]
S3 SFEP;Sony Firmware Extension Parser;c:\windows\system32\DRIVERS\SFEP.sys;c:\windows\SYSNATIVE\DRIVERS\SFEP.sys [x]
S3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x64.sys;c:\windows\SYSNATIVE\DRIVERS\yk62x64.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-05-16 21:54 1077576 ----a-w- c:\program files (x86)\Google\Chrome\Application\34.0.1847.137\Installer\chrmstp.exe
.
Obsah adresáøe 'Naplánované úlohy'
.
2014-05-21 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-09-03 16:24]
.
2014-05-21 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1393308291-3227257268-338616010-1000Core.job
- c:\users\Sony\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-03-13 21:43]
.
2014-05-21 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1393308291-3227257268-338616010-1000UA.job
- c:\users\Sony\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-03-13 21:43]
.
2014-05-20 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-09-23 14:27]
.
2014-05-21 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-09-23 14:27]
.
2014-05-18 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1393308291-3227257268-338616010-1000Core.job
- c:\users\Sony\AppData\Local\Google\Update\GoogleUpdate.exe [2014-01-31 00:32]
.
2014-05-21 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1393308291-3227257268-338616010-1000UA.job
- c:\users\Sony\AppData\Local\Google\Update\GoogleUpdate.exe [2014-01-31 00:32]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro1 (ErrorConflict)]
@="{8BA85C75-763B-4103-94EB-9470F12FE0F7}"
[HKEY_CLASSES_ROOT\CLSID\{8BA85C75-763B-4103-94EB-9470F12FE0F7}]
2014-04-08 21:22 2333400 ----a-w- c:\progra~1\MICROS~2\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro2 (SyncInProgress)]
@="{CD55129A-B1A1-438E-A425-CEBC7DC684EE}"
[HKEY_CLASSES_ROOT\CLSID\{CD55129A-B1A1-438E-A425-CEBC7DC684EE}]
2014-04-08 21:22 2333400 ----a-w- c:\progra~1\MICROS~2\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro3 (InSync)]
@="{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}"
[HKEY_CLASSES_ROOT\CLSID\{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}]
2014-04-08 21:22 2333400 ----a-w- c:\progra~1\MICROS~2\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2014-05-18 18:52 290888 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-10 23:54 164016 ----a-w- c:\users\Sony\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-10 23:54 164016 ----a-w- c:\users\Sony\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-10 23:54 164016 ----a-w- c:\users\Sony\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-10 23:54 164016 ----a-w- c:\users\Sony\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveBlacklistedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}]
2014-04-25 17:03 777032 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedEditOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}]
2014-04-25 17:03 777032 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedViewOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}]
2014-04-25 17:03 777032 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}]
2014-04-25 17:03 777032 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncingOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}]
2014-04-25 17:03 777032 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
------- Doplòkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.google.com
mLocal Page = c:\windows\SysWOW64\blank.htm
uInternet Settings,ProxyOverride = *.local
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 64.59.144.90 64.59.150.136
Filter: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - c:\program files (x86)\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL
FF - ProfilePath - c:\users\Sony\AppData\Roaming\Mozilla\Firefox\Profiles\0v5lhmgb.default-1395770648431\
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
.
- - - - NEPLATNÉ POLOŽKY ODSTRANÌNÉ Z REGISTRU - - - -
.
HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start
AddRemove-Dll-Files Fixer_is1 - c:\program files (x86)\Dll-Files.com Fixer\unins000.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍÈE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_13_0_0_214_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_13_0_0_214_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_13_0_0_214_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_13_0_0_214_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_13_0_0_214.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.13"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_13_0_0_214.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_13_0_0_214.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_13_0_0_214.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
@Denied: (A) (Everyone)
"Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
@Denied: (A) (Everyone)
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]
"Key"="ActionsPane3"
"Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový èas: 2014-05-20 21:36:06
ComboFix-quarantined-files.txt 2014-05-21 04:36
.
Pøed spuštìním: Volných bajtu: 202 177 843 200
Po spuštìní: Volných bajtu: 202 010 935 296
.
- - End Of File - - DD754ABE8A412A8EBFE659C6AD464326
A36C5E4F47E84449FF07ED3517B43A31

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43287
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu HJT

Příspěvekod jaro3 » 21 kvě 2014 10:25

Combofix smazal Plus500 , chceš to vrátit?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

TravisX90
Level 1
Level 1
Příspěvky: 54
Registrován: květen 10
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu HJT

Příspěvekod TravisX90 » 22 kvě 2014 04:42

Nevadí

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43287
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu HJT

Příspěvekod jaro3 » 22 kvě 2014 09:38

Vypni rez. ochranu u antiviru a antispywaru,příp. firewall..

Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:

Kód: Vybrat vše

ClearJavaCache::

KillAll::
File::
c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1393308291-3227257268-338616010-1000Core.job
c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1393308291-3227257268-338616010-1000UA.job
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1393308291-3227257268-338616010-1000Core.job
c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1393308291-3227257268-338616010-1000UA.job

Folder::
c:\program files (x86)\Skype\Updater
c:\users\Sony\AppData\Local\Facebook\Update
c:\program files (x86)\Google\Update
c:\users\Sony\AppData\Local\Google\Update

Driver::
SkypeUpdate

RegLock::
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_13_0_0_214_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_13_0_0_214_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_13_0_0_214_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_13_0_0_214_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_13_0_0_214.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.13"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_13_0_0_214.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_13_0_0_214.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_13_0_0_214.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
@Denied: (A) (Everyone)
"Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
@Denied: (A) (Everyone)
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]
"Key"="ActionsPane3"
"Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\PCW\Security]
@Denied: (Full) (Everyone)



Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.

Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT

Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.

Stáhni si aswMBR
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

TravisX90
Level 1
Level 1
Příspěvky: 54
Registrován: květen 10
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu HJT

Příspěvekod TravisX90 » 26 kvě 2014 03:11

ComboFix 14-05-19.01 - Sony 25.05.2014 17:54:34.2.4 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.3950.2702 [GMT -7:00]
Spuštìný z: c:\users\Sony\Desktop\ComboFix.exe
Použité ovládací pøepínaèe :: c:\users\Sony\Desktop\CFScript.txt
AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvoøen nový Bod Obnovení
.
FILE ::
"c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1393308291-3227257268-338616010-1000Core.job"
"c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1393308291-3227257268-338616010-1000UA.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineCore.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA.job"
"c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1393308291-3227257268-338616010-1000Core.job"
"c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1393308291-3227257268-338616010-1000UA.job"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files (x86)\Google\Update
c:\program files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler.exe
c:\program files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler64.exe
c:\program files (x86)\Google\Update\1.3.24.7\GoogleUpdate.exe
c:\program files (x86)\Google\Update\1.3.24.7\GoogleUpdateBroker.exe
c:\program files (x86)\Google\Update\1.3.24.7\GoogleUpdateComRegisterShell64.exe
c:\program files (x86)\Google\Update\1.3.24.7\GoogleUpdateHelper.msi
c:\program files (x86)\Google\Update\1.3.24.7\GoogleUpdateOnDemand.exe
c:\program files (x86)\Google\Update\1.3.24.7\GoogleUpdateSetup.exe
c:\program files (x86)\Google\Update\1.3.24.7\goopdate.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_am.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_ar.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_bg.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_bn.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_ca.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_cs.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_da.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_de.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_el.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_en-GB.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_en.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_es-419.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_es.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_et.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_fa.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_fi.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_fil.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_fr.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_gu.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_hi.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_hr.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_hu.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_id.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_is.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_it.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_iw.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_ja.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_kn.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_ko.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_lt.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_lv.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_ml.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_mr.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_ms.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_nl.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_no.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_pl.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_pt-BR.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_pt-PT.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_ro.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_ru.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_sk.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_sl.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_sr.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_sv.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_sw.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_ta.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_te.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_th.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_tr.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_uk.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_ur.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_vi.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_zh-CN.dll
c:\program files (x86)\Google\Update\1.3.24.7\goopdateres_zh-TW.dll
c:\program files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll
c:\program files (x86)\Google\Update\1.3.24.7\psmachine.dll
c:\program files (x86)\Google\Update\1.3.24.7\psmachine_64.dll
c:\program files (x86)\Google\Update\1.3.24.7\psuser.dll
c:\program files (x86)\Google\Update\1.3.24.7\psuser_64.dll
c:\program files (x86)\Google\Update\Download\{3C122445-AECE-4309-90B7-85A6AEF42AC0}\0.0.0.0\gsync.msi
c:\program files (x86)\Google\Update\Download\{3C122445-AECE-4309-90B7-85A6AEF42AC0}\1.15.6556.8063\gsync.msi
c:\program files (x86)\Google\Update\Download\{430FD4D0-B729-4F61-AA34-91526481799D}\1.3.24.7\GoogleUpdateSetup.exe
c:\program files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\35.0.1916.114\35.0.1916.114_34.0.1847.137_chrome_updater.exe
c:\program files (x86)\Google\Update\GoogleUpdate.exe
c:\program files (x86)\Skype\Updater
c:\program files (x86)\Skype\Updater\Updater.dll
c:\program files (x86)\Skype\Updater\Updater.exe
c:\users\Sony\AppData\Local\Facebook\Update
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\FacebookCrashHandler.exe
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\FacebookUpdate.exe
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\FacebookUpdateHelper.msi
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdate.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ar.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_bg.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_bn.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ca.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_cs.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_da.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_de.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_el.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_en-GB.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_en.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_es-419.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_es.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_et.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_fa.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_fi.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_fil.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_fr.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_gu.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_hi.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_hr.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_hu.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_id.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_is.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_it.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_iw.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ja.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_kn.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ko.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_lt.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_lv.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ml.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_mr.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ms.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_nl.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_no.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_or.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_pl.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_pt-BR.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_pt-PT.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ro.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ru.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_sk.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_sl.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_sr.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_sv.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ta.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_te.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_th.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_tr.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_uk.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_ur.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_vi.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_zh-CN.dll
c:\users\Sony\AppData\Local\Facebook\Update\1.2.205.0\goopdateres_zh-TW.dll
c:\users\Sony\AppData\Local\Facebook\Update\FacebookUpdate.exe
c:\users\Sony\AppData\Local\Google\Update
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\GoogleCrashHandler.exe
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\GoogleCrashHandler64.exe
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\GoogleUpdate.exe
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\GoogleUpdateBroker.exe
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\GoogleUpdateComRegisterShell64.exe
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\GoogleUpdateHelper.msi
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\GoogleUpdateOnDemand.exe
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\GoogleUpdateSetup.exe
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdate.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_am.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_ar.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_bg.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_bn.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_ca.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_cs.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_da.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_de.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_el.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_en-GB.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_en.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_es-419.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_es.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_et.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_fa.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_fi.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_fil.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_fr.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_gu.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_hi.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_hr.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_hu.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_id.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_is.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_it.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_iw.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_ja.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_kn.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_ko.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_lt.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_lv.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_ml.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_mr.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_ms.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_nl.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_no.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_pl.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_pt-BR.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_pt-PT.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_ro.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_ru.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_sk.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_sl.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_sr.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_sv.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_sw.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_ta.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_te.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_th.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_tr.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_uk.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_ur.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_vi.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_zh-CN.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\goopdateres_zh-TW.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\npGoogleUpdate3.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\psmachine.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\psmachine_64.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\psuser.dll
c:\users\Sony\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll
c:\users\Sony\AppData\Local\Google\Update\Download\{430FD4D0-B729-4F61-AA34-91526481799D}\1.3.24.7\GoogleUpdateSetup.exe
c:\users\Sony\AppData\Local\Google\Update\Download\{D0AB2EBC-931B-4013-9FEB-C9C4C2225C8C}\5.4.1.18709\googletalkpluginaccel.msi
c:\users\Sony\AppData\Local\Google\Update\GoogleUpdate.exe
c:\users\Sony\AppData\Local\Temp\_MEI25242\_ctypes.pyd
c:\users\Sony\AppData\Local\Temp\_MEI25242\_elementtree.pyd
c:\users\Sony\AppData\Local\Temp\_MEI25242\_hashlib.pyd
c:\users\Sony\AppData\Local\Temp\_MEI25242\_multiprocessing.pyd
c:\users\Sony\AppData\Local\Temp\_MEI25242\_socket.pyd
c:\users\Sony\AppData\Local\Temp\_MEI25242\_ssl.pyd
c:\users\Sony\AppData\Local\Temp\_MEI25242\pyexpat.pyd
c:\users\Sony\AppData\Local\Temp\_MEI25242\pysqlite2._sqlite.pyd
c:\users\Sony\AppData\Local\Temp\_MEI25242\python27.dll
c:\users\Sony\AppData\Local\Temp\_MEI25242\pythoncom27.dll
c:\users\Sony\AppData\Local\Temp\_MEI25242\PyWinTypes27.dll
c:\users\Sony\AppData\Local\Temp\_MEI25242\select.pyd
c:\users\Sony\AppData\Local\Temp\_MEI25242\unicodedata.pyd
c:\users\Sony\AppData\Local\Temp\_MEI25242\win32api.pyd
c:\users\Sony\AppData\Local\Temp\_MEI25242\win32com.shell.shell.pyd
c:\users\Sony\AppData\Local\Temp\_MEI25242\win32crypt.pyd
c:\users\Sony\AppData\Local\Temp\_MEI25242\win32event.pyd
c:\users\Sony\AppData\Local\Temp\_MEI25242\win32file.pyd
c:\users\Sony\AppData\Local\Temp\_MEI25242\win32gui.pyd
c:\users\Sony\AppData\Local\Temp\_MEI25242\win32inet.pyd
c:\users\Sony\AppData\Local\Temp\_MEI25242\win32pdh.pyd
c:\users\Sony\AppData\Local\Temp\_MEI25242\win32pipe.pyd
c:\users\Sony\AppData\Local\Temp\_MEI25242\win32process.pyd
c:\users\Sony\AppData\Local\Temp\_MEI25242\win32profile.pyd
c:\users\Sony\AppData\Local\Temp\_MEI25242\win32security.pyd
c:\users\Sony\AppData\Local\Temp\_MEI25242\win32ts.pyd
c:\users\Sony\AppData\Local\Temp\_MEI25242\windows._lib_cacheinvalidation.pyd
c:\users\Sony\AppData\Local\Temp\_MEI25242\wx._animate.pyd
c:\users\Sony\AppData\Local\Temp\_MEI25242\wx._controls_.pyd
c:\users\Sony\AppData\Local\Temp\_MEI25242\wx._core_.pyd
c:\users\Sony\AppData\Local\Temp\_MEI25242\wx._gdi_.pyd
c:\users\Sony\AppData\Local\Temp\_MEI25242\wx._html2.pyd
c:\users\Sony\AppData\Local\Temp\_MEI25242\wx._misc_.pyd
c:\users\Sony\AppData\Local\Temp\_MEI25242\wx._windows_.pyd
c:\users\Sony\AppData\Local\Temp\_MEI25242\wx._wizard.pyd
c:\users\Sony\AppData\Local\Temp\_MEI25242\wxbase294u_net_vc90.dll
c:\users\Sony\AppData\Local\Temp\_MEI25242\wxbase294u_vc90.dll
c:\users\Sony\AppData\Local\Temp\_MEI25242\wxmsw294u_adv_vc90.dll
c:\users\Sony\AppData\Local\Temp\_MEI25242\wxmsw294u_core_vc90.dll
c:\users\Sony\AppData\Local\Temp\_MEI25242\wxmsw294u_html_vc90.dll
c:\users\Sony\AppData\Local\Temp\_MEI25242\wxmsw294u_webview_vc90.dll
.
.
((((((((((((((((((((((((((((((((((((((( Ovladaèe/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_SkypeUpdate
-------\Service_gupdate
-------\Service_gupdatem
-------\Service_gupdate
-------\Service_gupdatem
.
.
((((((((((((((((((((((((( Soubory vytvoøené od 2014-04-26 do 2014-05-26 )))))))))))))))))))))))))))))))
.
.
2014-05-26 01:01 . 2014-05-26 01:01 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-05-25 19:18 . 2014-05-25 19:18 -------- d-----w- c:\users\Sony\AppData\Roaming\GameRanger
2014-05-23 16:07 . 2014-04-30 23:20 10702536 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{F7048FB1-E45C-45EC-A8CB-FA26AC9FEAF5}\mpengine.dll
2014-05-22 08:26 . 2014-05-22 08:26 -------- d-----w- c:\users\Sony\AppData\Local\Apple
2014-05-22 08:26 . 2014-05-22 08:26 -------- d-----w- c:\users\Sony\AppData\Local\Apple Computer
2014-05-18 18:52 . 2014-05-18 18:53 85328 ----a-w- c:\windows\system32\drivers\aswstm.sys
2014-05-18 18:52 . 2014-05-18 18:52 208416 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2014-05-18 18:52 . 2014-05-18 18:53 1039096 ----a-w- c:\windows\system32\drivers\aswsnx.sys
2014-05-18 18:52 . 2014-05-18 18:53 423240 ----a-w- c:\windows\system32\drivers\aswsp.sys
2014-05-18 18:52 . 2014-05-18 18:52 65776 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2014-05-18 18:52 . 2014-05-18 18:52 79184 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2014-05-18 18:52 . 2014-05-18 18:52 29208 ----a-w- c:\windows\system32\drivers\aswHwid.sys
2014-05-18 18:52 . 2014-05-18 18:52 93568 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2014-05-18 18:52 . 2014-05-18 18:52 43152 ----a-w- c:\windows\avastSS.scr
2014-05-18 18:50 . 2014-05-18 18:50 -------- d-----w- c:\program files\AVAST Software
2014-05-18 18:43 . 2014-05-18 18:43 -------- d-s---w- c:\windows\SysWow64\Microsoft
2014-05-17 19:02 . 2014-05-17 19:02 -------- d-----w- c:\users\Sony\AppData\Local\Adobe
2014-05-17 13:42 . 2014-05-17 13:42 -------- d-----w- c:\windows\ERUNT
2014-05-16 21:37 . 2010-08-30 15:34 536576 ----a-w- c:\windows\SysWow64\sqlite3.dll
2014-05-16 21:37 . 2014-05-17 13:37 -------- d-----w- C:\AdwCleaner
2014-05-16 21:29 . 2014-05-16 21:29 -------- d-----w- c:\users\Sony\AppData\Local\ATI
2014-05-16 16:15 . 2014-05-07 02:27 46704 ----a-w- c:\program files (x86)\Mozilla Firefox\browser\components\browsercomps.dll
2014-05-16 16:15 . 2014-05-07 02:26 965232 ----a-w- c:\program files (x86)\Mozilla Firefox\icuuc52.dll
2014-05-16 16:15 . 2014-05-07 02:26 1266800 ----a-w- c:\program files (x86)\Mozilla Firefox\icuin52.dll
2014-05-16 16:15 . 2014-05-07 02:26 10594416 ----a-w- c:\program files (x86)\Mozilla Firefox\icudt52.dll
2014-05-16 07:01 . 2014-05-06 04:40 23544320 ----a-w- c:\windows\system32\mshtml.dll
2014-05-16 07:01 . 2014-05-06 03:00 84992 ----a-w- c:\windows\system32\mshtmled.dll
2014-05-16 07:01 . 2014-05-06 04:17 2724864 ----a-w- c:\windows\system32\mshtml.tlb
2014-05-16 07:01 . 2014-05-06 03:07 2724864 ----a-w- c:\windows\SysWow64\mshtml.tlb
2014-05-13 16:39 . 2014-05-13 16:39 -------- d-----w- c:\users\Sony\AppData\Roaming\FastStone
2014-05-13 16:39 . 2014-05-13 16:39 -------- d-----w- c:\program files (x86)\FastStone Image Viewer
2014-05-13 16:16 . 2014-05-16 16:06 -------- d-s---w- c:\windows\system32\CompatTel
2014-05-09 23:10 . 2014-05-07 02:26 305264 ----a-w- c:\program files (x86)\Mozilla Firefox\freebl3.dll
2014-05-09 23:10 . 2014-05-07 02:26 275568 ----a-w- c:\program files (x86)\Mozilla Firefox\firefox.exe
2014-05-09 23:10 . 2014-05-07 02:26 117360 ----a-w- c:\program files (x86)\Mozilla Firefox\crashreporter.exe
2014-05-09 23:10 . 2014-05-07 02:26 75376 ----a-w- c:\program files (x86)\Mozilla Firefox\breakpadinjector.dll
2014-05-09 23:10 . 2014-05-07 02:26 20080 ----a-w- c:\program files (x86)\Mozilla Firefox\AccessibleMarshal.dll
2014-05-09 23:10 . 2010-05-26 18:41 2106216 ----a-w- c:\program files (x86)\Mozilla Firefox\D3DCompiler_43.dll
2014-05-07 16:52 . 2014-05-07 16:52 -------- d-----w- c:\users\Default\AppData\Local\Google
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-05-18 18:52 . 2013-09-03 16:48 334648 ----a-w- c:\windows\system32\aswBoot.exe
2014-05-16 16:23 . 2013-09-03 16:57 70832 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2014-05-16 16:23 . 2013-09-03 16:57 692400 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2014-05-16 06:55 . 2013-09-03 17:28 93223848 ----a-w- c:\windows\system32\MRT.exe
2014-04-25 20:23 . 2014-04-25 20:23 660120 ----a-w- c:\windows\SysWow64\mscomct2.ocx
2014-04-25 16:54 . 2014-04-25 16:08 283064 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2014-04-12 02:06 . 2014-05-16 06:19 44032 ----a-w- c:\windows\apppatch\acwow64.dll
2014-04-01 05:46 . 2014-04-01 05:46 130712 ----a-w- c:\windows\SysWow64\MSSTDFMT.DLL
2014-04-01 05:46 . 2014-04-01 05:46 1070232 ----a-w- c:\windows\SysWow64\MSCOMCTL.OCX
2014-03-31 16:35 . 2010-11-21 03:27 270496 ------w- c:\windows\system32\MpSigStub.exe
2014-03-11 07:00 . 2014-04-25 17:02 129944 ----a-w- c:\windows\system32\drivers\scdemu.sys
2014-03-06 09:31 . 2014-04-23 15:11 4096 ----a-w- c:\windows\system32\ieetwcollectorres.dll
2014-03-06 08:59 . 2014-04-23 15:11 66048 ----a-w- c:\windows\system32\iesetup.dll
2014-03-06 08:57 . 2014-04-23 15:11 548352 ----a-w- c:\windows\system32\vbscript.dll
2014-03-06 08:57 . 2014-04-23 15:11 48640 ----a-w- c:\windows\system32\ieetwproxystub.dll
2014-03-06 08:53 . 2014-04-23 15:11 2767360 ----a-w- c:\windows\system32\iertutil.dll
2014-03-06 08:40 . 2014-04-23 15:11 51200 ----a-w- c:\windows\system32\jsproxy.dll
2014-03-06 08:39 . 2014-04-23 15:11 33792 ----a-w- c:\windows\system32\iernonce.dll
2014-03-06 08:32 . 2014-04-23 15:11 574976 ----a-w- c:\windows\system32\ieui.dll
2014-03-06 08:29 . 2014-04-23 15:11 139264 ----a-w- c:\windows\system32\ieUnatt.exe
2014-03-06 08:29 . 2014-04-23 15:11 111616 ----a-w- c:\windows\system32\ieetwcollector.exe
2014-03-06 08:28 . 2014-04-23 15:11 752640 ----a-w- c:\windows\system32\jscript9diag.dll
2014-03-06 08:15 . 2014-04-23 15:11 940032 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2014-03-06 08:11 . 2014-04-23 15:10 5784064 ----a-w- c:\windows\system32\jscript9.dll
2014-03-06 08:09 . 2014-04-23 15:11 453120 ----a-w- c:\windows\system32\dxtmsft.dll
2014-03-06 08:03 . 2014-04-23 15:11 586240 ----a-w- c:\windows\system32\ie4uinit.exe
2014-03-06 08:02 . 2014-04-23 15:11 61952 ----a-w- c:\windows\SysWow64\iesetup.dll
2014-03-06 08:02 . 2014-04-23 15:11 455168 ----a-w- c:\windows\SysWow64\vbscript.dll
2014-03-06 08:01 . 2014-04-23 15:11 51200 ----a-w- c:\windows\SysWow64\ieetwproxystub.dll
2014-03-06 07:56 . 2014-04-23 15:11 38400 ----a-w- c:\windows\system32\JavaScriptCollectionAgent.dll
2014-03-06 07:48 . 2014-04-23 15:11 195584 ----a-w- c:\windows\system32\msrating.dll
2014-03-06 07:46 . 2014-04-23 15:10 4254720 ----a-w- c:\windows\SysWow64\jscript9.dll
2014-03-06 07:42 . 2014-04-23 15:11 296960 ----a-w- c:\windows\system32\dxtrans.dll
2014-03-06 07:38 . 2014-04-23 15:11 112128 ----a-w- c:\windows\SysWow64\ieUnatt.exe
2014-03-06 07:36 . 2014-04-23 15:11 592896 ----a-w- c:\windows\SysWow64\jscript9diag.dll
2014-03-06 07:21 . 2014-04-23 15:11 628736 ----a-w- c:\windows\system32\msfeeds.dll
2014-03-06 07:13 . 2014-04-23 15:11 32256 ----a-w- c:\windows\SysWow64\JavaScriptCollectionAgent.dll
2014-03-06 07:11 . 2014-04-23 15:10 2043904 ----a-w- c:\windows\system32\inetcpl.cpl
2014-03-06 06:53 . 2014-04-23 15:10 13551104 ----a-w- c:\windows\system32\ieframe.dll
2014-03-06 06:40 . 2014-04-23 15:11 1967104 ----a-w- c:\windows\SysWow64\inetcpl.cpl
2014-03-06 06:22 . 2014-04-23 15:11 2260480 ----a-w- c:\windows\system32\wininet.dll
2014-03-06 05:58 . 2014-04-23 15:11 1400832 ----a-w- c:\windows\system32\urlmon.dll
2014-03-06 05:50 . 2014-04-23 15:11 846336 ----a-w- c:\windows\system32\ieapfltr.dll
2014-03-06 05:41 . 2014-04-23 15:11 1789440 ----a-w- c:\windows\SysWow64\wininet.dll
2014-03-04 11:08 . 2014-05-16 06:19 340992 ----a-w- c:\windows\system32\schannel.dll
2014-03-04 11:08 . 2014-04-22 03:18 421376 ----a-w- c:\windows\system32\KernelBase.dll
2014-03-04 10:39 . 2014-05-16 06:19 247808 ----a-w- c:\windows\SysWow64\schannel.dll
2014-03-04 10:38 . 2014-04-22 03:18 275456 ----a-w- c:\windows\SysWow64\KernelBase.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštìcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-10 23:54 131248 ----a-w- c:\users\Sony\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-10 23:54 131248 ----a-w- c:\users\Sony\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-10 23:54 131248 ----a-w- c:\users\Sony\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-10 23:54 131248 ----a-w- c:\users\Sony\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-21 1475584]
"GoogleDriveSync"="c:\program files (x86)\Google\Drive\googledrivesync.exe" [2014-04-25 22415552]
"DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2014-03-04 3696912]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2010-01-14 98304]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-11-21 959904]
"seznam-listicka-distribuce"="c:\program files (x86)\Seznam.cz\distribution\szninstall.exe" [2013-05-16 1062472]
"GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2014-02-21 152392]
"PWRISOVM.EXE"="c:\program files\PowerISO\PWRISOVM.EXE" [2014-03-11 377368]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2014-05-23 3888648]
.
c:\users\Sony\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dropbox.lnk - c:\users\Sony\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup [2014-5-19 33322312]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 OutfoxTvService;OutfoxTvService;c:\program files\OutfoxTV\OutfoxTvService.exe;c:\program files\OutfoxTV\OutfoxTvService.exe [x]
R3 aswEmHWID2;avast! EmHWID;c:\windows\TEMP\aswEmHWID.sys;c:\windows\TEMP\aswEmHWID.sys [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys;c:\windows\SYSNATIVE\Drivers\usbaapl64.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
S0 aswRvrt;avast! Revert; [x]
S0 aswVmm;avast! VM Monitor; [x]
S1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys;c:\windows\SYSNATIVE\drivers\aswSnx.sys [x]
S1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys;c:\windows\SYSNATIVE\drivers\aswSP.sys [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x]
S2 aswHwid;avast! HardwareID;c:\windows\system32\drivers\aswHwid.sys;c:\windows\SYSNATIVE\drivers\aswHwid.sys [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x]
S2 aswStm;aswStm;c:\windows\system32\drivers\aswStm.sys;c:\windows\SYSNATIVE\drivers\aswStm.sys [x]
S2 c2cautoupdatesvc;Skype Click to Call Updater;c:\program files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe;c:\program files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [x]
S2 c2cpnrsvc;Skype Click to Call PNR Service;c:\program files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe;c:\program files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [x]
S2 rimspci;rimspci;c:\windows\system32\DRIVERS\rimssne64.sys;c:\windows\SYSNATIVE\DRIVERS\rimssne64.sys [x]
S3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys;c:\windows\SYSNATIVE\DRIVERS\HECIx64.sys [x]
S3 SFEP;Sony Firmware Extension Parser;c:\windows\system32\DRIVERS\SFEP.sys;c:\windows\SYSNATIVE\DRIVERS\SFEP.sys [x]
S3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x64.sys;c:\windows\SYSNATIVE\DRIVERS\yk62x64.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-05-22 17:08 1091912 ----a-w- c:\program files (x86)\Google\Chrome\Application\35.0.1916.114\Installer\chrmstp.exe
.
Obsah adresáøe 'Naplánované úlohy'
.
2014-05-26 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-09-03 16:24]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro1 (ErrorConflict)]
@="{8BA85C75-763B-4103-94EB-9470F12FE0F7}"
[HKEY_CLASSES_ROOT\CLSID\{8BA85C75-763B-4103-94EB-9470F12FE0F7}]
2014-04-08 21:22 2333400 ----a-w- c:\progra~1\MICROS~2\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro2 (SyncInProgress)]
@="{CD55129A-B1A1-438E-A425-CEBC7DC684EE}"
[HKEY_CLASSES_ROOT\CLSID\{CD55129A-B1A1-438E-A425-CEBC7DC684EE}]
2014-04-08 21:22 2333400 ----a-w- c:\progra~1\MICROS~2\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro3 (InSync)]
@="{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}"
[HKEY_CLASSES_ROOT\CLSID\{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}]
2014-04-08 21:22 2333400 ----a-w- c:\progra~1\MICROS~2\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2014-05-18 18:52 290888 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-10 23:54 164016 ----a-w- c:\users\Sony\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-10 23:54 164016 ----a-w- c:\users\Sony\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-10 23:54 164016 ----a-w- c:\users\Sony\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-10 23:54 164016 ----a-w- c:\users\Sony\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveBlacklistedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}]
2014-04-25 17:03 777032 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedEditOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}]
2014-04-25 17:03 777032 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedViewOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}]
2014-04-25 17:03 777032 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}]
2014-04-25 17:03 777032 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncingOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}]
2014-04-25 17:03 777032 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
------- Doplòkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.google.com
mLocal Page = c:\windows\SysWOW64\blank.htm
uInternet Settings,ProxyOverride = *.local
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 64.59.144.90 64.59.150.136
Filter: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - c:\program files (x86)\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL
FF - ProfilePath - c:\users\Sony\AppData\Roaming\Mozilla\Firefox\Profiles\0v5lhmgb.default-1395770648431\
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
.
- - - - NEPLATNÉ POLOŽKY ODSTRANÌNÉ Z REGISTRU - - - -
.
AddRemove-Dll-Files Fixer_is1 - c:\program files (x86)\Dll-Files.com Fixer\unins000.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍÈE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_13_0_0_214_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_13_0_0_214_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
c:\program files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
.
**************************************************************************
.
Celkový èas: 2014-05-25 18:07:00 - poèítaè byl restartován
ComboFix-quarantined-files.txt 2014-05-26 01:06
ComboFix2.txt 2014-05-21 04:36
.
Pøed spuštìním: Volných bajtu: 200 719 675 392
Po spuštìní: Volných bajtu: 200 391 864 320
.
- - End Of File - - BDC76258E2D4EAC4C01A28FD97E1C23F
A36C5E4F47E84449FF07ED3517B43A31

TravisX90
Level 1
Level 1
Příspěvky: 54
Registrován: květen 10
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu HJT

Příspěvekod TravisX90 » 26 kvě 2014 03:15

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:15:33, on 25.5.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17041)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe
G:\Install\HiJackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE -startup
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - Startup: Dropbox.lnk = C:\Users\Sony\AppData\Roaming\Dropbox\bin\Dropbox.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: OutfoxTvService - Unknown owner - C:\Program Files\OutfoxTV\OutfoxTvService.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 8398 bytes

TravisX90
Level 1
Level 1
Příspěvky: 54
Registrován: květen 10
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu HJT

Příspěvekod TravisX90 » 26 kvě 2014 03:27

aswMBR version 0.9.9.1771 Copyright(c) 2011 AVAST Software
Run date: 2014-05-25 18:16:57
-----------------------------
18:16:57.634 OS Version: Windows x64 6.1.7601 Service Pack 1
18:16:57.634 Number of processors: 4 586 0x2502
18:16:57.635 ComputerName: SONY-PC UserName: Sony
18:16:58.620 Initialize success
18:17:01.800 AVAST engine defs: 14052500
18:17:21.909 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0
18:17:21.909 Disk 0 Vendor: TOSHIBA_MK5061GSY MC102E Size: 476940MB BusType: 11
18:17:21.909 Disk 1 \Device\Harddisk1\DR1 -> \Device\0000006b
18:17:21.924 Disk 1 Vendor: RICOH 02 Size: 476940MB BusType: 0
18:17:22.111 Disk 0 MBR read successfully
18:17:22.111 Disk 0 MBR scan
18:17:22.127 Disk 0 Windows 7 default MBR code
18:17:22.127 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 2048
18:17:22.143 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 240870 MB offset 206848
18:17:22.174 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 235967 MB offset 493508608
18:17:22.299 Disk 0 scanning C:\Windows\system32\drivers
18:17:30.364 Service scanning
18:17:54.996 Modules scanning
18:17:55.511 Disk 0 trace - called modules:
18:17:55.542 ntoskrnl.exe CLASSPNP.SYS disk.sys ataport.SYS PCIIDEX.SYS hal.dll msahci.sys
18:17:55.558 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa80045fd060]
18:17:55.558 3 CLASSPNP.SYS[fffff8800185143f] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-0[0xfffffa800435a060]
18:17:56.197 AVAST engine scan C:\Windows
18:17:58.366 AVAST engine scan C:\Windows\system32
18:20:09.391 AVAST engine scan C:\Windows\system32\drivers
18:20:19.827 AVAST engine scan C:\Users\Sony
18:24:23.624 AVAST engine scan C:\ProgramData
18:24:40.082 Scan finished successfully
18:26:31.591 Disk 0 MBR has been saved successfully to "C:\Users\Sony\Desktop\MBR.dat"
18:26:31.591 The log file has been saved successfully to "C:\Users\Sony\Desktop\aswMBR.txt"

TravisX90
Level 1
Level 1
Příspěvky: 54
Registrován: květen 10
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu HJT

Příspěvekod TravisX90 » 26 kvě 2014 03:32

Pořád mám problém, že pokud si chci třeba spustit film nebo otevřít fotky, tak se mně začne sekat celý počítač. Taky když otevřu průzkumník, tak se mně strašně dlouho načitají vůbec názvy složek atd. někdy se ani nenačtou. Pokud ale složku nebo excel tabulku otevřu přes Total Commander ,tak to většinou funguje bez problémů. Prohlížeče a net fungujou taky převážně v pohodě. Notas už je straší pán, mám ho 4 roky, před cca rokem jsem měnil HDD, tzn. i přeinstaloval Win. Nějaké nápady co by mohlo být špatně?
Každopádně velké díky, že mi pomáháš

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43287
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu HJT

Příspěvekod jaro3 » 26 kvě 2014 09:42

ComboFix se odinstaluje takto:
Start-Spustit a zadej ComboFix /Uninstall

Vyčisti systém CCleanerem

Stáhni si OTC

na plochu. Poklepej na něj. Potom klikni na Clean up!.
Restartuj PC , pokud Ti bude doporučeno.

Zavři ostatní aplikace a prohlížeče, odpoj se od netu a fixni v HJT:
Návod

Kód: Vybrat vše

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE -startup


Stáhni si Memtest:

Do políčka vlož největší velikost Tvé jednotlivé paměti RAM (256,512 nebo 1024,2048) dej Start , nech nejméně 2h běžet , pokud bude po 2h stále 0 errors , jsou v pořádku.


Je třeba zkontrolovat HDD na chyby , zkusit jeho defragmentaci ..

Stáhni si CrystalDiskInfo
Spusť program a klikni na Úpravy-Kopírovat. Poté sem vlož pomocí Ctrl+V obsah logu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

TravisX90
Level 1
Level 1
Příspěvky: 54
Registrován: květen 10
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu HJT

Příspěvekod TravisX90 » 28 kvě 2014 09:18

OTC, CCleaner, HJT - hotovo
Memtest nenašel žádnou chybu.

----------------------------------------------------------------------------
CrystalDiskInfo 5.6.2 (C) 2008-2013 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------

OS : Windows 7 Home Premium SP1 [6.1 Build 7601] (x64)
Date : 2014/05/28 0:14:15

-- Controller Map ----------------------------------------------------------
+ Standardní řadič AHCI 1.0 s rozhraním Serial ATA [ATA]
- ATA Channel 0 (0)
- ATA Channel 1 (1)
- ATA Channel 5 (5)
+ Ricoh PCIe Memory Stick Host Controller [ATA]
- Ricoh Memory Stick Disk Device
+ ATA Channel 0 (0) [ATA]
- TOSHIBA MK5061GSY ATA Device
+ ATA Channel 1 (1) [ATA]
- Optiarc DVD RW AD-7700H ATA Device
- ATA Channel 5 (5) [ATA]

-- Disk List ---------------------------------------------------------------
(1) TOSHIBA MK5061GSY : 500,1 GB [0/0/0, pd1]

----------------------------------------------------------------------------
(1) TOSHIBA MK5061GSY
----------------------------------------------------------------------------
Model : TOSHIBA MK5061GSY
Firmware : MC102E
Serial Number : Z23XC0RMT
Disk Size : 500,1 GB (8,4/137,4/500,1/500,1)
Buffer Size : Neznámy údaj
Queue Depth : 32
# of Sectors : 976773168
Rotation Rate : 7200 RPM
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ----
Transfer Mode : SATA/300
Power On Hours : 2581 hod.
Power On Count : 1226 krát
Temparature : 34 C (93 F)
Health Status : Pozor
Features : S.M.A.R.T., APM, 48bit LBA, NCQ
APM Level : 0080h [ON]
AAM Level : ----

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 100 100 _50 000000000000 Počet chyb čtení
02 100 100 _50 000000000000 Průchodnost disku
03 100 100 __1 000000000914 Čas na roztočení ploten
04 100 100 __0 0000000004EB Počet spuštění/zastavení
05 _92 _92 _10 0000000000AC Počet přemapovaných sektorů
07 100 100 _50 000000000000 Počet chybných hledání
08 100 100 _50 000000000000 Čas potřebný na vyhledání
09 _94 _94 __0 000000000A15 Hodin v činnosti
0A 125 100 _30 000000000000 Počet opakovaných pokusů o roztočení ploten
0C 100 100 __0 0000000004CA Počet cyklů zapnutí zařízení
BF 100 100 __0 000000000006 Počet udalostí zaznamenaných otřesovým senzorem
C0 100 100 __0 000000000029 Počet vypnutí disku
C1 _97 _97 __0 0000000079FA Počet cyklů načítání/vymazání
C2 100 100 __0 0035000C0022 Teplota
C4 100 100 __0 000000000030 Počet udalostí s číslem realokování sektorů
C5 100 100 __0 000000000057 Počet podezřelých sektorů
C6 100 100 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
DC 100 100 __0 000000002049 Posunutí disku vůči ose
DE _96 _96 __0 0000000006EF Počet hodin zalažení budoucího mechanismu magnetických hlav
DF 100 100 __0 000000000000 Zatížení budiče magnetických hlav způsobené opakovanými úkony
E0 100 100 __0 000000000000 Zatížení budiče magnetických hlav způsobené napětím mechanických částí
E2 100 100 __0 000000000104 Celkový čas zatížení budiče magnetických hlav
F0 100 100 __1 000000000000 Čas nastavování hlaviček - v hodinách

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0000 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 2020 2020 2020 2020 2020 205A 3233 5843 3052 4D54
020: 0000 0000 0004 4D43 3130 3245 2020 544F 5348 4942
030: 4120 4D4B 3530 3631 4753 5920 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4000 0200 0000 0006 3FFF 0010 003F FC10 00FB 0110
060: FFFF 0FFF 0007 0407 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 0F06 0004 004C 0040
080: 01F8 0000 346B 7D09 6163 3469 BC09 6163 003F 003F
090: 003F 0080 FFFE 0000 0000 0000 0000 0000 0000 0000
100: 6030 3A38 0000 0000 0000 0000 4000 0000 5000 0394
110: 7430 0668 0000 0000 0000 0000 0000 0000 0000 401C
120: 401C 0000 0000 0000 0000 0000 0000 0000 0029 0000
130: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
140: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0003 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 003F 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 1C20 0000 0000
220: 0000 0000 101F 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 0080 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 E8A5

-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 0B 00 64 64 00 00 00 00 00 00 00 02 05
010: 00 64 64 00 00 00 00 00 00 00 03 27 00 64 64 14
020: 09 00 00 00 00 00 04 32 00 64 64 EB 04 00 00 00
030: 00 00 05 33 00 5C 5C AC 00 00 00 00 00 00 07 0B
040: 00 64 64 00 00 00 00 00 00 00 08 05 00 64 64 00
050: 00 00 00 00 00 00 09 32 00 5E 5E 15 0A 00 00 00
060: 00 00 0A 33 00 7D 64 00 00 00 00 00 00 00 0C 32
070: 00 64 64 CA 04 00 00 00 00 00 BF 32 00 64 64 06
080: 00 00 00 00 00 00 C0 32 00 64 64 29 00 00 00 00
090: 00 00 C1 32 00 61 61 FA 79 00 00 00 00 00 C2 22
0A0: 00 64 64 22 00 0C 00 35 00 00 C4 32 00 64 64 30
0B0: 00 00 00 00 00 00 C5 32 00 64 64 57 00 00 00 00
0C0: 00 00 C6 30 00 64 64 00 00 00 00 00 00 00 C7 32
0D0: 00 C8 C8 00 00 00 00 00 00 00 DC 02 00 64 64 49
0E0: 20 00 00 00 00 00 DE 32 00 60 60 EF 06 00 00 00
0F0: 00 00 DF 32 00 64 64 00 00 00 00 00 00 00 E0 22
100: 00 64 64 00 00 00 00 00 00 00 E2 26 00 64 64 04
110: 01 00 00 00 00 00 F0 01 00 64 64 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 82 00 78 00 00 5B
170: 03 00 01 00 02 84 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 F6

-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 32 00 00 00 00 00 00 00 00 00 00 02 32
010: 00 00 00 00 00 00 00 00 00 00 03 01 00 00 00 00
020: 00 00 00 00 00 00 04 00 00 00 00 00 00 00 00 00
030: 00 00 05 0A 00 00 00 00 00 00 00 00 00 00 07 32
040: 00 00 00 00 00 00 00 00 00 00 08 32 00 00 00 00
050: 00 00 00 00 00 00 09 00 00 00 00 00 00 00 00 00
060: 00 00 0A 1E 00 00 00 00 00 00 00 00 00 00 0C 00
070: 00 00 00 00 00 00 00 00 00 00 BF 00 00 00 00 00
080: 00 00 00 00 00 00 C0 00 00 00 00 00 00 00 00 00
090: 00 00 C1 00 00 00 00 00 00 00 00 00 00 00 C2 00
0A0: 00 00 00 00 00 00 00 00 00 00 C4 00 00 00 00 00
0B0: 00 00 00 00 00 00 C5 00 00 00 00 00 00 00 00 00
0C0: 00 00 C6 00 00 00 00 00 00 00 00 00 00 00 C7 00
0D0: 00 00 00 00 00 00 00 00 00 00 DC 00 00 00 00 00
0E0: 00 00 00 00 00 00 DE 00 00 00 00 00 00 00 00 00
0F0: 00 00 DF 00 00 00 00 00 00 00 00 00 00 00 E0 00
100: 00 00 00 00 00 00 00 00 00 00 E2 00 00 00 00 00
110: 00 00 00 00 00 00 F0 01 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 5E

Vypadá to na problém s počtem přemapovaných sektorů...cca před roke jsem měnil HDD práve kvůli počtu přemapovaných sektorů. A po roce zase toto? :( Jinak při startu počítače mně začala najíždět hláška kontrola konzistence HDD....takže může být ten problém s otevíráním jak videa tak fotek způsobena tímto? Logicky bych samozřejmě řekl že jo, ale ten počet přemapovaných sektorů neklesl pod tu kritickou hranici..Nějaké nápady? Díky


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 92 hostů