Prosím o kontrolu logu Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Sxmanek
nováček
Příspěvky: 20
Registrován: únor 14
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu  Vyřešeno

Příspěvekod Sxmanek » 12 úno 2014 20:10

20:08:06.0405 4452 [ 4380E59A170D88C4F1022EFF6719A8A4 ] nvstor C:\Windows\system32\drivers\nvstor.sys
20:08:06.0405 4452 nvstor - ok
20:08:06.0420 4452 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
20:08:06.0436 4452 nv_agp - ok
20:08:06.0576 4452 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
20:08:06.0592 4452 odserv - ok
20:08:06.0623 4452 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\DRIVERS\ohci1394.sys
20:08:06.0623 4452 ohci1394 - ok
20:08:06.0670 4452 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
20:08:06.0686 4452 ose - ok
20:08:06.0748 4452 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
20:08:06.0764 4452 p2pimsvc - ok
20:08:06.0810 4452 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll
20:08:06.0826 4452 p2psvc - ok
20:08:06.0873 4452 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\DRIVERS\parport.sys
20:08:06.0873 4452 Parport - ok
20:08:06.0904 4452 [ 3F34A1B4C5F6475F320C275E63AFCE9B ] partmgr C:\Windows\system32\drivers\partmgr.sys
20:08:06.0904 4452 partmgr - ok
20:08:06.0935 4452 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys
20:08:06.0935 4452 Parvdm - ok
20:08:06.0966 4452 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll
20:08:06.0982 4452 PcaSvc - ok
20:08:07.0013 4452 [ 673E55C3498EB970088E812EA820AA8F ] pci C:\Windows\system32\drivers\pci.sys
20:08:07.0013 4452 pci - ok
20:08:07.0076 4452 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\drivers\pciide.sys
20:08:07.0076 4452 pciide - ok
20:08:07.0107 4452 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
20:08:07.0122 4452 pcmcia - ok
20:08:07.0138 4452 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys
20:08:07.0138 4452 pcw - ok
20:08:07.0200 4452 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys
20:08:07.0232 4452 PEAUTH - ok
20:08:07.0278 4452 [ AF4D64D2A57B9772CF3801950B8058A6 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll
20:08:07.0341 4452 PeerDistSvc - ok
20:08:07.0450 4452 [ 414BBA67A3DED1D28437EB66AEB8A720 ] pla C:\Windows\system32\pla.dll
20:08:07.0544 4452 pla - ok
20:08:07.0590 4452 [ EC7BC28D207DA09E79B3E9FAF8B232CA ] PlugPlay C:\Windows\system32\umpnpmgr.dll
20:08:07.0606 4452 PlugPlay - ok
20:08:07.0622 4452 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
20:08:07.0637 4452 PNRPAutoReg - ok
20:08:07.0668 4452 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
20:08:07.0668 4452 PNRPsvc - ok
20:08:07.0715 4452 [ 53946B69BA0836BD95B03759530C81EC ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
20:08:07.0731 4452 PolicyAgent - ok
20:08:07.0793 4452 [ F87D30E72E03D579A5199CCB3831D6EA ] Power C:\Windows\system32\umpo.dll
20:08:07.0809 4452 Power - ok
20:08:07.0856 4452 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
20:08:07.0856 4452 PptpMiniport - ok
20:08:07.0902 4452 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\Windows\system32\DRIVERS\processr.sys
20:08:07.0918 4452 Processor - ok
20:08:07.0949 4452 [ CADEFAC453040E370A1BDFF3973BE00D ] ProfSvc C:\Windows\system32\profsvc.dll
20:08:07.0996 4452 ProfSvc - ok
20:08:08.0027 4452 [ 803B370865D907EA21DC0C2B6A8936B5 ] ProtectedStorage C:\Windows\system32\lsass.exe
20:08:08.0043 4452 ProtectedStorage - ok
20:08:08.0074 4452 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\Windows\system32\DRIVERS\pacer.sys
20:08:08.0074 4452 Psched - ok
20:08:08.0199 4452 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
20:08:08.0261 4452 ql2300 - ok
20:08:08.0308 4452 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
20:08:08.0308 4452 ql40xx - ok
20:08:08.0339 4452 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\Windows\system32\qwave.dll
20:08:08.0355 4452 QWAVE - ok
20:08:08.0386 4452 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
20:08:08.0386 4452 QWAVEdrv - ok
20:08:08.0402 4452 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
20:08:08.0402 4452 RasAcd - ok
20:08:08.0448 4452 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
20:08:08.0448 4452 RasAgileVpn - ok
20:08:08.0480 4452 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\Windows\System32\rasauto.dll
20:08:08.0495 4452 RasAuto - ok
20:08:08.0511 4452 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
20:08:08.0511 4452 Rasl2tp - ok
20:08:08.0558 4452 [ CB9E04DC05EACF5B9A36CA276D475006 ] RasMan C:\Windows\System32\rasmans.dll
20:08:08.0604 4452 RasMan - ok
20:08:08.0620 4452 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
20:08:08.0620 4452 RasPppoe - ok
20:08:08.0651 4452 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
20:08:08.0651 4452 RasSstp - ok
20:08:08.0667 4452 [ D528BC58A489409BA40334EBF96A311B ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
20:08:08.0682 4452 rdbss - ok
20:08:08.0698 4452 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
20:08:08.0698 4452 rdpbus - ok
20:08:08.0729 4452 [ 23DAE03F29D253AE74C44F99E515F9A1 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
20:08:08.0729 4452 RDPCDD - ok
20:08:08.0776 4452 [ B973FCFC50DC1434E1970A146F7E3885 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
20:08:08.0792 4452 RDPDR - ok
20:08:08.0807 4452 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
20:08:08.0807 4452 RDPENCDD - ok
20:08:08.0823 4452 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
20:08:08.0823 4452 RDPREFMP - ok
20:08:08.0901 4452 [ 68A0387F58E226DEEE23D9715955572A ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
20:08:08.0901 4452 RdpVideoMiniport - ok
20:08:08.0963 4452 [ F031683E6D1FEA157ABB2FF260B51E61 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
20:08:08.0979 4452 RDPWD - ok
20:08:09.0041 4452 [ 518395321DC96FE2C9F0E96AC743B656 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
20:08:09.0057 4452 rdyboost - ok
20:08:09.0119 4452 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\Windows\System32\mprdim.dll
20:08:09.0150 4452 RemoteAccess - ok
20:08:09.0197 4452 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\Windows\system32\regsvc.dll
20:08:09.0228 4452 RemoteRegistry - ok
20:08:09.0260 4452 [ CB928D9E6DAF51879DD6BA8D02F01321 ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys
20:08:09.0260 4452 RFCOMM - ok
20:08:09.0275 4452 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
20:08:09.0291 4452 RpcEptMapper - ok
20:08:09.0291 4452 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\Windows\system32\locator.exe
20:08:09.0306 4452 RpcLocator - ok
20:08:09.0322 4452 [ 7660F01D3B38ACA1747E397D21D790AF ] RpcSs C:\Windows\system32\rpcss.dll
20:08:09.0353 4452 RpcSs - ok
20:08:09.0400 4452 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
20:08:09.0416 4452 rspndr - ok
20:08:09.0462 4452 [ 3983CEA05BB855351D75F5482B6C42CE ] RTL8167 C:\Windows\system32\DRIVERS\Rt86win7.sys
20:08:09.0478 4452 RTL8167 - ok
20:08:09.0494 4452 [ 7FA7F2E249A5DCBB7970630E15E1F482 ] s3cap C:\Windows\system32\drivers\vms3cap.sys
20:08:09.0494 4452 s3cap - ok
20:08:09.0525 4452 [ 803B370865D907EA21DC0C2B6A8936B5 ] SamSs C:\Windows\system32\lsass.exe
20:08:09.0540 4452 SamSs - ok
20:08:09.0572 4452 [ 05D860DA1040F111503AC416CCEF2BCA ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
20:08:09.0572 4452 sbp2port - ok
20:08:09.0603 4452 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\Windows\System32\SCardSvr.dll
20:08:09.0634 4452 SCardSvr - ok
20:08:09.0681 4452 [ 0693B5EC673E34DC147E195779A4DCF6 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
20:08:09.0681 4452 scfilter - ok
20:08:09.0790 4452 [ A04BB13F8A72F8B6E8B4071723E4E336 ] Schedule C:\Windows\system32\schedsvc.dll
20:08:09.0868 4452 Schedule - ok
20:08:09.0899 4452 [ 319C6B309773D063541D01DF8AC6F55F ] SCPolicySvc C:\Windows\System32\certprop.dll
20:08:09.0899 4452 SCPolicySvc - ok
20:08:09.0930 4452 [ 0328BE1C7F1CBA23848179F8762E391C ] sdbus C:\Windows\system32\DRIVERS\sdbus.sys
20:08:09.0930 4452 sdbus - ok
20:08:09.0962 4452 [ 08236C4BCE5EDD0A0318A438AF28E0F7 ] SDRSVC C:\Windows\System32\SDRSVC.dll
20:08:09.0977 4452 SDRSVC - ok
20:08:10.0024 4452 [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv C:\Windows\system32\drivers\secdrv.sys
20:08:10.0024 4452 secdrv - ok
20:08:10.0055 4452 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\Windows\system32\seclogon.dll
20:08:10.0071 4452 seclogon - ok
20:08:10.0102 4452 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\Windows\System32\sens.dll
20:08:10.0118 4452 SENS - ok
20:08:10.0149 4452 [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc C:\Windows\system32\sensrsvc.dll
20:08:10.0149 4452 SensrSvc - ok
20:08:10.0180 4452 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
20:08:10.0180 4452 Serenum - ok
20:08:10.0211 4452 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\Windows\system32\DRIVERS\serial.sys
20:08:10.0211 4452 Serial - ok
20:08:10.0227 4452 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
20:08:10.0227 4452 sermouse - ok
20:08:10.0289 4452 [ 4AE380F39A0032EAB7DD953030B26D28 ] SessionEnv C:\Windows\system32\sessenv.dll
20:08:10.0305 4452 SessionEnv - ok
20:08:10.0352 4452 [ 4C0D673281178CB496011A2E28571FC8 ] sfdrv01 C:\Windows\system32\drivers\sfdrv01.sys
20:08:10.0352 4452 sfdrv01 - ok
20:08:10.0383 4452 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
20:08:10.0383 4452 sffdisk - ok
20:08:10.0430 4452 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
20:08:10.0430 4452 sffp_mmc - ok
20:08:10.0476 4452 [ 6D4CCAEDC018F1CF52866BBBAA235982 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
20:08:10.0492 4452 sffp_sd - ok
20:08:10.0539 4452 [ 15BE2B5E4DC5B8623CF167720682ABC9 ] sfhlp02 C:\Windows\system32\drivers\sfhlp02.sys
20:08:10.0539 4452 sfhlp02 - ok
20:08:10.0586 4452 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
20:08:10.0586 4452 sfloppy - ok
20:08:10.0617 4452 [ D5A7E09D2C6A702809E49190D52ADC9F ] sfvfs02 C:\Windows\system32\drivers\sfvfs02.sys
20:08:10.0617 4452 sfvfs02 - ok
20:08:10.0679 4452 [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess C:\Windows\System32\ipnathlp.dll
20:08:10.0726 4452 SharedAccess - ok
20:08:10.0773 4452 [ 414DA952A35BF5D50192E28263B40577 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
20:08:10.0804 4452 ShellHWDetection - ok
20:08:10.0820 4452 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\Windows\system32\drivers\sisagp.sys
20:08:10.0820 4452 sisagp - ok
20:08:10.0851 4452 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
20:08:10.0851 4452 SiSRaid2 - ok
20:08:10.0866 4452 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
20:08:10.0882 4452 SiSRaid4 - ok
20:08:10.0898 4452 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\Windows\system32\DRIVERS\smb.sys
20:08:10.0898 4452 Smb - ok
20:08:10.0944 4452 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
20:08:10.0960 4452 SNMPTRAP - ok
20:08:10.0991 4452 [ DC8D2952FB6FFBAEC67BD1B93A34DF11 ] speedfan C:\Windows\system32\speedfan.sys
20:08:11.0022 4452 speedfan - ok
20:08:11.0054 4452 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\Windows\system32\drivers\spldr.sys
20:08:11.0054 4452 spldr - ok
20:08:11.0085 4452 [ 9AEA093B8F9C37CF45538382CABA2475 ] Spooler C:\Windows\System32\spoolsv.exe
20:08:11.0100 4452 Spooler - ok
20:08:11.0303 4452 [ CF87A1DE791347E75B98885214CED2B8 ] sppsvc C:\Windows\system32\sppsvc.exe
20:08:11.0334 4452 sppsvc - ok
20:08:11.0366 4452 [ B0180B20B065D89232A78A40FE56EAA6 ] sppuinotify C:\Windows\system32\sppuinotify.dll
20:08:11.0381 4452 sppuinotify - ok
20:08:11.0444 4452 [ 90A07229992B24FC4C419D56E58CF075 ] SQLWriter C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
20:08:11.0444 4452 SQLWriter - ok
20:08:11.0522 4452 [ E4C2764065D66EA1D2D3EBC28FE99C46 ] srv C:\Windows\system32\DRIVERS\srv.sys
20:08:11.0553 4452 srv - ok
20:08:11.0615 4452 [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
20:08:11.0615 4452 srv2 - ok
20:08:11.0631 4452 [ BE6BD660CAA6F291AE06A718A4FA8ABC ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
20:08:11.0646 4452 srvnet - ok
20:08:11.0678 4452 [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
20:08:11.0693 4452 SSDPSRV - ok
20:08:11.0724 4452 [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc C:\Windows\system32\sstpsvc.dll
20:08:11.0740 4452 SstpSvc - ok
20:08:11.0849 4452 [ FE7F776F2590C8331123BDA3A3A21DE6 ] STacSV C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_9691412ff1876250\STacSV.exe
20:08:11.0849 4452 STacSV - ok
20:08:12.0021 4452 [ 7EE717B9B9F183B236BBE9E25FA497F2 ] Steam Client Service C:\Program Files\Common Files\Steam\SteamService.exe
20:08:12.0083 4452 Steam Client Service - ok
20:08:12.0130 4452 [ DB32D325C192B801DF274BFD12A7E72B ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
20:08:12.0130 4452 stexstor - ok
20:08:12.0208 4452 [ DADB74BF26766757DBBA9C5912969EBF ] STHDA C:\Windows\system32\DRIVERS\stwrt.sys
20:08:12.0224 4452 STHDA - ok
20:08:12.0302 4452 [ E1FB3706030FB4578A0D72C2FC3689E4 ] StiSvc C:\Windows\System32\wiaservc.dll
20:08:12.0348 4452 StiSvc - ok
20:08:12.0395 4452 [ 472AF0311073DCECEAA8FA18BA2BDF89 ] storflt C:\Windows\system32\drivers\vmstorfl.sys
20:08:12.0411 4452 storflt - ok
20:08:12.0426 4452 [ DCAFFD62259E0BDB433DD67B5BB37619 ] storvsc C:\Windows\system32\drivers\storvsc.sys
20:08:12.0426 4452 storvsc - ok
20:08:12.0458 4452 [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum C:\Windows\system32\drivers\swenum.sys
20:08:12.0458 4452 swenum - ok
20:08:12.0489 4452 [ A28BD92DF340E57B024BA433165D34D7 ] swprv C:\Windows\System32\swprv.dll
20:08:12.0520 4452 swprv - ok
20:08:12.0536 4452 Synth3dVsc - ok
20:08:12.0598 4452 [ 6DD49E1A5FA0F01824652F1A0A8866FB ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys
20:08:12.0629 4452 SynTP - ok
20:08:12.0707 4452 [ 36650D618CA34C9D357DFD3D89B2C56F ] SysMain C:\Windows\system32\sysmain.dll
20:08:12.0801 4452 SysMain - ok
20:08:12.0832 4452 [ 763FECDC3D30C815FE72DD57936C6CD1 ] TabletInputService C:\Windows\System32\TabSvc.dll
20:08:12.0848 4452 TabletInputService - ok
20:08:12.0879 4452 [ 613BF4820361543956909043A265C6AC ] TapiSrv C:\Windows\System32\tapisrv.dll
20:08:12.0894 4452 TapiSrv - ok
20:08:12.0926 4452 [ B799D9FDB26111737F58288D8DC172D9 ] TBS C:\Windows\System32\tbssvc.dll
20:08:12.0941 4452 TBS - ok
20:08:13.0004 4452 [ CA59F7C570AF70BC174F477CFE2D9EE3 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
20:08:13.0019 4452 Tcpip - ok
20:08:13.0082 4452 [ CA59F7C570AF70BC174F477CFE2D9EE3 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
20:08:13.0097 4452 TCPIP6 - ok
20:08:13.0128 4452 [ 3EEBD3BD93DA46A26E89893C7AB2FF3B ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
20:08:13.0128 4452 tcpipreg - ok
20:08:13.0160 4452 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
20:08:13.0160 4452 TDPIPE - ok
20:08:13.0175 4452 [ 2C2C5AFE7EE4F620D69C23C0617651A8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
20:08:13.0175 4452 TDTCP - ok
20:08:13.0222 4452 [ B459575348C20E8121D6039DA063C704 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
20:08:13.0238 4452 tdx - ok
20:08:13.0269 4452 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20 ] TermDD C:\Windows\system32\drivers\termdd.sys
20:08:13.0269 4452 TermDD - ok
20:08:13.0316 4452 [ 382C804C92811BE57829D8E550A900E2 ] TermService C:\Windows\System32\termsrv.dll
20:08:13.0347 4452 TermService - ok
20:08:13.0394 4452 [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes C:\Windows\system32\themeservice.dll
20:08:13.0394 4452 Themes - ok
20:08:13.0440 4452 [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER C:\Windows\system32\mmcss.dll
20:08:13.0440 4452 THREADORDER - ok
20:08:13.0456 4452 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks C:\Windows\System32\trkwks.dll
20:08:13.0472 4452 TrkWks - ok
20:08:13.0534 4452 [ 2C49B175AEE1D4364B91B531417FE583 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
20:08:13.0550 4452 TrustedInstaller - ok
20:08:13.0596 4452 [ B37B08F2E5EEB1A37E448E09BACE1101 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
20:08:13.0612 4452 tssecsrv - ok
20:08:13.0659 4452 [ FD1D6C73E6333BE727CBCC6054247654 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
20:08:13.0659 4452 TsUsbFlt - ok
20:08:13.0674 4452 tsusbhub - ok
20:08:13.0721 4452 [ B2FA25D9B17A68BB93D58B0556E8C90D ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
20:08:13.0721 4452 tunnel - ok
20:08:13.0752 4452 [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
20:08:13.0752 4452 uagp35 - ok
20:08:13.0784 4452 [ EE43346C7E4B5E63E54F927BABBB32FF ] udfs C:\Windows\system32\DRIVERS\udfs.sys
20:08:13.0784 4452 udfs - ok
20:08:13.0815 4452 [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect C:\Windows\system32\UI0Detect.exe
20:08:13.0846 4452 UI0Detect - ok
20:08:13.0877 4452 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
20:08:13.0893 4452 uliagpkx - ok
20:08:13.0924 4452 [ D295BED4B898F0FD999FCFA9B32B071B ] umbus C:\Windows\system32\drivers\umbus.sys
20:08:13.0924 4452 umbus - ok
20:08:13.0940 4452 [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
20:08:13.0940 4452 UmPass - ok
20:08:14.0002 4452 [ 409994A8EACEEE4E328749C0353527A0 ] UmRdpService C:\Windows\System32\umrdp.dll
20:08:14.0018 4452 UmRdpService - ok
20:08:14.0049 4452 [ 833FBB672460EFCE8011D262175FAD33 ] upnphost C:\Windows\System32\upnphost.dll
20:08:14.0064 4452 upnphost - ok
20:08:14.0096 4452 [ 0803FBA9FE829D61AE26EC0BCC910C46 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
20:08:14.0096 4452 usbccgp - ok
20:08:14.0142 4452 [ 2352AB5F9F8F097BF9D41D5A4718A041 ] usbcir C:\Windows\system32\drivers\usbcir.sys
20:08:14.0142 4452 usbcir - ok
20:08:14.0174 4452 [ D40855F89B69305140BBD7E9A3BA2DA6 ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
20:08:14.0189 4452 usbehci - ok
20:08:14.0220 4452 [ EDF2DF71C4F1E13A6AC75F5224DE655A ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
20:08:14.0220 4452 usbhub - ok
20:08:14.0252 4452 [ 9828C8D14CC2676421778F0DE638CF97 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
20:08:14.0252 4452 usbohci - ok
20:08:14.0283 4452 [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
20:08:14.0298 4452 usbprint - ok
20:08:14.0345 4452 [ FC6B21DB4B5B398AB93DBE59CBF11036 ] usbscan C:\Windows\system32\drivers\usbscan.sys
20:08:14.0345 4452 usbscan - ok
20:08:14.0361 4452 [ F991AB9CC6B908DB552166768176896A ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
20:08:14.0361 4452 USBSTOR - ok
20:08:14.0392 4452 [ 800AABFD625EEFF899F7E5496BDE37AB ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
20:08:14.0392 4452 usbuhci - ok
20:08:14.0423 4452 [ DE014425522610BEDCA3821BB8C0F1D5 ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
20:08:14.0423 4452 usbvideo - ok
20:08:14.0470 4452 [ AF77716205C97E902E6C5B78DECE2CCA ] usb_rndisx C:\Windows\system32\DRIVERS\usb8023x.sys
20:08:14.0470 4452 usb_rndisx - ok
20:08:14.0501 4452 [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms C:\Windows\System32\uxsms.dll
20:08:14.0517 4452 UxSms - ok
20:08:14.0532 4452 [ 803B370865D907EA21DC0C2B6A8936B5 ] VaultSvc C:\Windows\system32\lsass.exe
20:08:14.0548 4452 VaultSvc - ok
20:08:14.0564 4452 [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
20:08:14.0564 4452 vdrvroot - ok
20:08:14.0610 4452 [ C3CD30495687C2A2F66A65CA6FD89BE9 ] vds C:\Windows\System32\vds.exe
20:08:14.0626 4452 vds - ok
20:08:14.0657 4452 [ 17C408214EA61696CEC9C66E388B14F3 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
20:08:14.0657 4452 vga - ok
20:08:14.0688 4452 [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave C:\Windows\System32\drivers\vga.sys
20:08:14.0704 4452 VgaSave - ok
20:08:14.0720 4452 VGPU - ok
20:08:14.0751 4452 [ 5461686CCA2FDA57B024547733AB42E3 ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
20:08:14.0751 4452 vhdmp - ok
20:08:14.0782 4452 [ C829317A37B4BEA8F39735D4B076E923 ] viaagp C:\Windows\system32\drivers\viaagp.sys
20:08:14.0782 4452 viaagp - ok
20:08:14.0798 4452 [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7 C:\Windows\system32\DRIVERS\viac7.sys
20:08:14.0798 4452 ViaC7 - ok
20:08:14.0829 4452 [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide C:\Windows\system32\drivers\viaide.sys
20:08:14.0829 4452 viaide - ok
20:08:14.0876 4452 [ C2F2911156FDC7817C52829C86DA494E ] vmbus C:\Windows\system32\drivers\vmbus.sys
20:08:14.0876 4452 vmbus - ok
20:08:14.0922 4452 [ D4D77455211E204F370D08F4963063CE ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys
20:08:14.0922 4452 VMBusHID - ok
20:08:14.0938 4452 vmci - ok
20:08:14.0954 4452 VMnetAdapter - ok
20:08:14.0985 4452 [ 4C63E00F2F4B5F86AB48A58CD990F212 ] volmgr C:\Windows\system32\drivers\volmgr.sys
20:08:14.0985 4452 volmgr - ok
20:08:15.0032 4452 [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
20:08:15.0047 4452 volmgrx - ok
20:08:15.0078 4452 [ F497F67932C6FA693D7DE2780631CFE7 ] volsnap C:\Windows\system32\drivers\volsnap.sys
20:08:15.0078 4452 volsnap - ok
20:08:15.0156 4452 [ 86C96C079293E2E06708E146A011F4C4 ] vpnagent C:\Program Files\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe
20:08:15.0172 4452 vpnagent - ok
20:08:15.0219 4452 [ B4A71B5E7F83BE22064891D503BF82F6 ] vpnva C:\Windows\system32\DRIVERS\vpnva-6.sys
20:08:15.0219 4452 vpnva - ok
20:08:15.0281 4452 [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
20:08:15.0297 4452 vsmraid - ok
20:08:15.0437 4452 [ 209A3B1901B83AEB8527ED211CCE9E4C ] VSS C:\Windows\system32\vssvc.exe
20:08:15.0484 4452 VSS - ok
20:08:15.0500 4452 [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
20:08:15.0500 4452 vwifibus - ok
20:08:15.0531 4452 [ 7090D3436EEB4E7DA3373090A23448F7 ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
20:08:15.0531 4452 vwififlt - ok
20:08:15.0562 4452 [ A3F04CBEA6C2A10E6CB01F8B47611882 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys
20:08:15.0562 4452 vwifimp - ok
20:08:15.0593 4452 [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time C:\Windows\system32\w32time.dll
20:08:15.0609 4452 W32Time - ok
20:08:15.0656 4452 [ DE3721E89C653AA281428C8A69745D90 ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
20:08:15.0656 4452 WacomPen - ok
20:08:15.0702 4452 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
20:08:15.0718 4452 WANARP - ok
20:08:15.0734 4452 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
20:08:15.0734 4452 Wanarpv6 - ok
20:08:15.0858 4452 [ 353A04C273EC58475D8633E75CCD5604 ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
20:08:15.0952 4452 WatAdminSvc - ok
20:08:16.0014 4452 [ 691E3285E53DCA558E1A84667F13E15A ] wbengine C:\Windows\system32\wbengine.exe
20:08:16.0124 4452 wbengine - ok
20:08:16.0155 4452 [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
20:08:16.0155 4452 WbioSrvc - ok
20:08:16.0202 4452 [ 34EEE0DFAADB4F691D6D5308A51315DC ] wcncsvc C:\Windows\System32\wcncsvc.dll
20:08:16.0217 4452 wcncsvc - ok
20:08:16.0233 4452 [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
20:08:16.0248 4452 WcsPlugInService - ok
20:08:16.0264 4452 [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd C:\Windows\system32\DRIVERS\wd.sys
20:08:16.0264 4452 Wd - ok
20:08:16.0326 4452 [ 25944D2CC49E0A6C581D02A74B7D6645 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
20:08:16.0358 4452 Wdf01000 - ok
20:08:16.0373 4452 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiServiceHost C:\Windows\system32\wdi.dll
20:08:16.0373 4452 WdiServiceHost - ok
20:08:16.0389 4452 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiSystemHost C:\Windows\system32\wdi.dll
20:08:16.0389 4452 WdiSystemHost - ok
20:08:16.0420 4452 [ 75E8EBD7040CE238684333F97014762A ] WebClient C:\Windows\System32\webclnt.dll
20:08:16.0436 4452 WebClient - ok
20:08:16.0451 4452 [ 760F0AFE937A77CFF27153206534F275 ] Wecsvc C:\Windows\system32\wecsvc.dll
20:08:16.0467 4452 Wecsvc - ok
20:08:16.0482 4452 [ AC804569BB2364FB6017370258A4091B ] wercplsupport C:\Windows\System32\wercplsupport.dll
20:08:16.0482 4452 wercplsupport - ok
20:08:16.0514 4452 [ 08E420D873E4FD85241EE2421B02C4A4 ] WerSvc C:\Windows\System32\WerSvc.dll
20:08:16.0545 4452 WerSvc - ok
20:08:16.0560 4452 [ 8B9A943F3B53861F2BFAF6C186168F79 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
20:08:16.0560 4452 WfpLwf - ok
20:08:16.0576 4452 [ 5CF95B35E59E2A38023836FFF31BE64C ] WIMMount C:\Windows\system32\drivers\wimmount.sys
20:08:16.0592 4452 WIMMount - ok
20:08:16.0841 4452 [ 082CF481F659FAE0DE51AD060881EB47 ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll
20:08:16.0919 4452 WinDefend - ok
20:08:16.0966 4452 WinHttpAutoProxySvc - ok
20:08:17.0044 4452 [ F62E510B6AD4C21EB9FE8668ED251826 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
20:08:17.0091 4452 Winmgmt - ok
20:08:17.0325 4452 [ 1B91CD34EA3A90AB6A4EF0550174F4CC ] WinRM C:\Windows\system32\WsmSvc.dll
20:08:17.0403 4452 WinRM - ok
20:08:17.0528 4452 [ A67E5F9A400F3BD1BE3D80613B45F708 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
20:08:17.0528 4452 WinUsb - ok
20:08:17.0590 4452 [ 16935C98FF639D185086A3529B1F2067 ] Wlansvc C:\Windows\System32\wlansvc.dll
20:08:17.0684 4452 Wlansvc - ok
20:08:18.0214 4452 [ FB01D4AE207B9EFDBABFC55DC95C7E31 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
20:08:18.0308 4452 wlidsvc - ok
20:08:18.0354 4452 [ 0217679B8FCA58714C3BF2726D2CA84E ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
20:08:18.0354 4452 WmiAcpi - ok
20:08:18.0401 4452 [ 6EB6B66517B048D87DC1856DDF1F4C3F ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
20:08:18.0401 4452 wmiApSrv - ok
20:08:18.0495 4452 [ 3B40D3A61AA8C21B88AE57C58AB3122E ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe
20:08:18.0510 4452 WMPNetworkSvc - ok
20:08:18.0542 4452 [ A2F0EC770A92F2B3F9DE6D518E11409C ] WPCSvc C:\Windows\System32\wpcsvc.dll
20:08:18.0557 4452 WPCSvc - ok
20:08:18.0604 4452 [ AA53356D60AF47EACC85BC617A4F3F66 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
20:08:18.0620 4452 WPDBusEnum - ok
20:08:18.0651 4452 [ 6DB3276587B853BF886B69528FDB048C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
20:08:18.0666 4452 ws2ifsl - ok
20:08:18.0698 4452 [ 6F5D49EFE0E7164E03AE773A3FE25340 ] wscsvc C:\Windows\System32\wscsvc.dll
20:08:18.0729 4452 wscsvc - ok
20:08:18.0729 4452 WSearch - ok
20:08:18.0838 4452 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll
20:08:18.0947 4452 wuauserv - ok
20:08:18.0994 4452 [ 06E6F32C8D0A3F66D956F57B43A2E070 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
20:08:18.0994 4452 WudfPf - ok
20:08:19.0041 4452 [ 867C301E8B790040AE9CF6486E8041DF ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
20:08:19.0056 4452 WUDFRd - ok
20:08:19.0119 4452 [ FE47B7BC8EA320C2D9B5E5BF6E303765 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
20:08:19.0150 4452 wudfsvc - ok
20:08:19.0197 4452 [ 3C5E51C05BE9B56EAFF4E388C3AB25E4 ] WwanSvc C:\Windows\System32\wwansvc.dll
20:08:19.0197 4452 WwanSvc - ok
20:08:19.0259 4452 ================ Scan global ===============================
20:08:19.0400 4452 [ DAB748AE0439955ED2FA22357533DDDB ] C:\Windows\system32\basesrv.dll
20:08:19.0446 4452 [ 51BB04243DF6196C06E125898127E397 ] C:\Windows\system32\winsrv.dll
20:08:19.0478 4452 [ 51BB04243DF6196C06E125898127E397 ] C:\Windows\system32\winsrv.dll
20:08:19.0509 4452 [ 364455805E64882844EE9ACB72522830 ] C:\Windows\system32\sxssrv.dll
20:08:19.0540 4452 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6 ] C:\Windows\system32\services.exe
20:08:19.0556 4452 [Global] - ok
20:08:19.0556 4452 ================ Scan MBR ==================================
20:08:19.0556 4452 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
20:08:20.0180 4452 \Device\Harddisk0\DR0 - ok
20:08:20.0180 4452 ================ Scan VBR ==================================
20:08:20.0195 4452 [ 0699C1BE3D3E301326FD4E67D7A77F52 ] \Device\Harddisk0\DR0\Partition1
20:08:20.0211 4452 \Device\Harddisk0\DR0\Partition1 - ok
20:08:20.0242 4452 [ 5520596225E37407C36972ED7B7986D7 ] \Device\Harddisk0\DR0\Partition2
20:08:20.0258 4452 \Device\Harddisk0\DR0\Partition2 - ok
20:08:20.0258 4452 ============================================================
20:08:20.0258 4452 Scan finished
20:08:20.0258 4452 ============================================================
20:08:20.0304 5188 Detected object count: 0
20:08:20.0304 5188 Actual detected object count: 0
20:08:47.0754 4428 Deinitialize success

Reklama
Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43293
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod jaro3 » 13 úno 2014 09:26

Vypni rez. ochranu u antiviru a antispywaru,příp. firewall..

Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud budou problémy , spusť ho v nouz. režimu.

Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Sxmanek
nováček
Příspěvky: 20
Registrován: únor 14
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Sxmanek » 13 úno 2014 10:48

ComboFix 14-02-12.01 - Tomas 13.02.2014 10:30:39.1.2 - x86
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.2046.1099 [GMT 1:00]
Spuštěný z: c:\users\TomßÜ\Desktop\ComboFix.exe
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
ADS - Windows: deleted 24 bytes in 1 streams.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\system32\frapsvid.dll
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_vpnagent
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2014-01-13 do 2014-02-13 )))))))))))))))))))))))))))))))
.
.
2014-02-12 20:01 . 2013-11-19 15:52 31008 ----a-w- c:\windows\system32\SmartDefragBootTime.exe
2014-02-12 20:01 . 2014-02-12 20:01 -------- d-----w- c:\programdata\IObit
2014-02-12 20:01 . 2014-01-08 14:54 103424 ----a-w- c:\windows\system32\IObitSmartDefragExtension.dll
2014-02-12 20:01 . 2013-12-24 09:40 18624 ----a-w- c:\windows\system32\drivers\SmartDefragDriver.sys
2014-02-12 20:01 . 2014-02-12 20:01 -------- d-----w- c:\program files\IObit
2014-02-12 20:01 . 2014-02-12 20:01 -------- d-----w- c:\users\Tomáš\AppData\Roaming\IObit
2014-02-12 18:06 . 2014-02-12 18:06 -------- d-----w- c:\windows\ERUNT
2014-02-12 14:33 . 2014-02-12 14:33 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2014-02-12 14:33 . 2013-04-04 13:50 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2014-02-12 14:30 . 2014-02-12 18:56 -------- d-----w- C:\AdwCleaner
2014-02-12 13:55 . 2014-02-12 13:55 -------- d-----w- c:\program files\Microsoft Visual Studio 9.0
2014-02-12 13:20 . 2014-02-12 13:20 -------- d-----w- C:\Riot Games
2014-02-11 19:58 . 2014-02-12 12:00 -------- d-----w- c:\program files\BlackShot
2014-02-11 18:22 . 2014-02-11 18:22 -------- d-----w- c:\program files\EA Games
2014-02-09 09:39 . 2014-02-09 09:39 -------- d-----w- c:\users\Tomáš\AppData\Roaming\fontconfig
2014-02-08 18:59 . 2014-02-08 18:59 -------- d-----w- c:\program files\Aegisub
2014-01-31 09:46 . 2014-01-31 09:46 -------- d-----w- c:\users\Default\AppData\Local\Microsoft Help
2014-01-31 09:38 . 2014-01-31 09:45 -------- d-----w- c:\program files\Microsoft Visual Studio 8
2014-01-31 09:33 . 2014-01-31 09:33 -------- d-sh--w- c:\windows\system32\%APPDATA%
2014-01-29 16:44 . 2014-02-08 17:57 -------- d-----w- c:\users\Tomáš\AppData\Local\Game Dev Tycoon - Steam
2014-01-29 16:32 . 2014-02-12 18:26 -------- d-----w- c:\program files\Steam
2014-01-28 16:59 . 2014-01-28 17:23 -------- d-----w- c:\program files\Heroes & Generals
2014-01-26 22:26 . 2014-01-26 22:26 -------- d-----r- C:\Windows Activation Technologies
2014-01-26 22:23 . 2014-01-26 22:25 -------- d-----w- c:\windows\KJ
2014-01-17 17:19 . 2014-02-12 13:35 -------- d-----w- c:\program files\Vitware
2014-01-15 16:19 . 2013-11-26 10:10 2349056 ----a-w- c:\windows\system32\win32k.sys
2014-01-15 16:19 . 2013-11-26 11:11 240576 ----a-w- c:\windows\system32\drivers\netio.sys
2014-01-15 16:18 . 2013-11-27 01:13 43520 ----a-w- c:\windows\system32\drivers\usbehci.sys
2014-01-15 16:18 . 2013-11-27 01:14 258560 ----a-w- c:\windows\system32\drivers\usbhub.sys
2014-01-15 16:18 . 2013-11-27 01:13 284672 ----a-w- c:\windows\system32\drivers\usbport.sys
2014-01-15 16:18 . 2013-11-27 01:13 76288 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2014-01-15 16:18 . 2013-11-27 01:13 20480 ----a-w- c:\windows\system32\drivers\usbohci.sys
2014-01-15 16:18 . 2013-11-27 01:13 24064 ----a-w- c:\windows\system32\drivers\usbuhci.sys
2014-01-15 16:18 . 2013-11-27 01:13 6016 ----a-w- c:\windows\system32\drivers\usbd.sys
2014-01-15 15:00 . 2014-01-15 15:00 -------- d-----w- c:\users\Tomáš\AppData\Local\oald8
2014-01-15 15:00 . 2014-01-15 15:00 -------- d-----w- c:\users\Tomáš\AppData\Roaming\oald8
2014-01-15 14:59 . 2014-01-15 14:59 -------- d--h--r- c:\users\Tomáš\AppData\Roaming\SecuROM
2014-01-15 14:59 . 2014-02-12 14:15 -------- d-----w- c:\program files\IDM
2014-01-15 14:55 . 2014-01-15 14:55 -------- d-----w- c:\program files\Oxford
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-02-05 12:36 . 2012-12-17 14:44 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2014-02-05 12:36 . 2012-12-17 13:52 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2014-01-31 09:37 . 2013-10-13 16:21 2543232 ----a-w- c:\programdata\Microsoft\VisualStudio\11.0\1033\ResourceCache.dll
2014-01-06 21:00 . 2011-03-28 17:36 22240 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2014-01-05 10:38 . 2014-01-04 23:20 64168 ----a-w- c:\windows\system32\drivers\aswstm.sys
2014-01-04 23:19 . 2014-01-04 23:14 180248 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2014-01-04 23:19 . 2014-01-04 23:14 49944 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2014-01-04 23:19 . 2013-02-12 19:51 410528 ----a-w- c:\windows\system32\drivers\aswSP.sys
2014-01-04 23:19 . 2013-02-12 19:51 775952 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2014-01-04 23:19 . 2013-02-12 19:51 67824 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2014-01-04 23:19 . 2013-02-12 19:51 79720 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2014-01-04 23:19 . 2013-02-12 19:50 43152 ----a-w- c:\windows\avastSS.scr
2014-01-04 23:19 . 2013-02-12 19:50 270240 ----a-w- c:\windows\system32\aswBoot.exe
2013-12-30 11:17 . 2013-12-30 11:17 1700352 ----a-w- c:\windows\system32\gdiplus.dll
2013-12-19 13:11 . 2013-02-12 19:51 56080 ----a-w- c:\windows\system32\drivers\aswTdi.sys
.
.
------- Sigcheck -------
Note: Unsigned files aren't necessarily malware.
.
[7] 2010-11-20 . 6D13E1406F50C66E2A95D97F22C47560 . 286720 . . [6.1.7601.17514] . . c:\windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_71ca6b0233339500\winlogon.exe
[-] 2010-11-19 . C3EB9EA34EBE459F13F3F890F56CE72A . 285696 . . [6.1.7601.17514] . . c:\windows\System32\winlogon.exe
.
[-] 2011-01-16 . 0B864E15A0BADFF0E7BB8B59009FDDCF . 1008640 . . [6.1.7601.17514] . . c:\windows\KJ\Pirate\T\x64T\user32.dll
[7] 2010-11-20 . F1DD3ACAEE5E6B4BBC69BC6DF75CEF66 . 811520 . . [6.1.7601.17514] . . c:\windows\winsxs\x86_microsoft-windows-user32_31bf3856ad364e35_6.1.7601.17514_none_cf3fd62ccb9e983d\user32.dll
[-] 2010-11-19 . FE70103391A64039A921DBFFF9C7AB1B . 1008128 . . [6.1.7601.17514] . . c:\windows\KJ\Pirate\P\x64P\user32.dll
[7] 2010-11-19 . F1DD3ACAEE5E6B4BBC69BC6DF75CEF66 . 811520 . . [6.1.7601.17514] . . c:\windows\KJ\Pirate\P\x86P\user32.dll
[-] 2010-11-19 . CF97D64D7EC169C53C93B0A192218B29 . 812032 . . [6.1.7601.17514] . . c:\windows\KJ\Pirate\T\x86T\user32.dll
[-] 2010-11-19 . CF97D64D7EC169C53C93B0A192218B29 . 812032 . . [6.1.7601.17514] . . c:\windows\System32\user32.dll
[-] 2010-11-19 . 5E0DB2D8B2750543CD2EBB9EA8E6CDD3 . 833024 . . [6.1.7601.17514] . . c:\windows\KJ\Pirate\P\SysWOW64P\user32.dll
[-] 2010-11-19 . 5E0DB2D8B2750543CD2EBB9EA8E6CDD3 . 833024 . . [6.1.7601.17514] . . c:\windows\KJ\Pirate\T\SysWOW64T\user32.dll
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2014-01-04 23:19 259464 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2012-08-28 3671904]
"BitTorrent"="c:\users\Tomáš\AppData\Roaming\BitTorrent\BitTorrent.exe" [2014-02-10 900696]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AMD AVT"="start AMD Accelerated Video Transcoding device initialization" [X]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2013-04-29 642304]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2014-01-04 3764024]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-11-21 959904]
"mncfwylSrv"="c:\windows\inf\mncfwyl.vbe" [2014-01-13 1338]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
"FirewallOverride"=dword:00000001
.
R1 CFRMD;CFRMD;c:\windows\system32\DRIVERS\CFRMD.sys [x]
R1 CFRPD;CFRPD;c:\windows\system32\DRIVERS\CFRPD.sys [x]
R3 acsock;acsock;c:\windows\system32\DRIVERS\acsock.sys [2013-10-10 92528]
R3 Axtmvflt;Axesstel USB Filter Service;c:\windows\system32\DRIVERS\Axtmvflt.sys [2007-03-22 3456]
R3 Axtmvmdm;Axesstel USB Modem;c:\windows\system32\DRIVERS\Axtmvmdm.sys [2007-03-26 40064]
R3 Axtmvprt;Axesstel Diagnostic Port;c:\windows\system32\Drivers\Axtmvprt.sys [2007-03-26 38784]
R3 EagleXNt;EagleXNt;c:\windows\system32\drivers\EagleXNt.sys [x]
R3 GGSAFERDriver;GGSAFER Driver;c:\program files\Garena Plus\Room\safedrv.sys [x]
R3 JMCR;JMCR;c:\windows\system32\DRIVERS\jmcr.sys [x]
R3 ManyCam;ManyCam Virtual Webcam;c:\windows\system32\DRIVERS\mcvidrv.sys [2012-10-11 34432]
R3 mcaudrv_simple;ManyCam Virtual Microphone;c:\windows\system32\drivers\mcaudrv.sys [2013-01-31 22656]
R3 netr28u;RT2870 USB Wireless LAN Card Driver pro systém Windows Vista;c:\windows\system32\DRIVERS\netr28u.sys [2009-07-13 657408]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2010-11-20 15872]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [x]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys [x]
R3 vmci;VMware VMCI Bus Driver;c:\windows\system32\DRIVERS\vmci.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2012-09-13 1343400]
S0 aswRvrt;avast! Revert; [x]
S0 aswVmm;avast! VM Monitor; [x]
S0 SmartDefragDriver;SmartDefragDriver;c:\windows\System32\Drivers\SmartDefragDriver.sys [2013-12-24 18624]
S1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [2014-01-04 775952]
S1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2014-01-04 410528]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [2012-09-14 242240]
S2 AESTFilters;Andrea ST Filters Service;c:\windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_9691412ff1876250\aestsrv.exe [2009-03-02 81920]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2012-07-04 217088]
S2 AMD FUEL Service;AMD FUEL Service;c:\program files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2013-04-29 291840]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2014-01-04 67824]
S2 hpsrv;HP Service;c:\windows\system32\Hpservice.exe [2011-05-13 26168]
S2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512]
S3 amdiox86;AMD IO Driver;c:\windows\system32\DRIVERS\amdiox86.sys [2010-02-18 37944]
S3 aswStm;aswStm;c:\windows\system32\drivers\aswStm.sys [2014-01-05 64168]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW73.sys [2012-05-14 86656]
S3 johci;JMicron 1394 Filter Driver;c:\windows\system32\DRIVERS\johci.sys [2012-07-16 23136]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2013-04-04 22856]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [2009-03-01 139776]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-02-04 12:13 1211720 ----a-w- c:\program files\Google\Chrome\Application\32.0.1700.107\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2014-02-13 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-12-17 12:36]
.
2014-02-13 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2013-12-18 09:01]
.
2014-02-13 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2013-12-18 09:01]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://uk.search.yahoo.com/?type=714647 ... got-yhp-ie
uInternet Settings,ProxyOverride = <local>
Trusted Zone: mojebanka.cz\etrading
Trusted Zone: mojebanka.cz\www
Trusted Zone: mojebanka.cz\etrading
Trusted Zone: mojebanka.cz\www
TCP: DhcpNameServer = 77.48.254.254 77.48.100.254 192.168.1.1
TCP: Interfaces\{F7B5CE8F-1450-4D7F-9D39-1933636C177A}: NameServer = 213.192.12.1
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
ShellIconOverlayIdentifiers-{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} - (no file)
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-456269259-75136302-1371811220-1000\Software\SecuROM\License information*]
"datasecu"=hex:9c,e5,d4,83,a1,46,a0,8f,17,1f,51,05,35,f1,a5,1d,9a,bf,f7,c2,d7,
3b,ad,41,c8,ea,00,e3,04,96,a5,fa,31,eb,f7,ed,a4,26,3f,86,05,76,a5,56,8b,aa,\
"rkeysecu"=hex:8a,80,10,b7,ac,3e,a7,c5,4c,41,35,92,c0,94,6e,93
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil32_12_0_0_44_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil32_12_0_0_44_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\system\ControlSet002\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet002\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet002\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_9691412ff1876250\STacSV.exe
c:\windows\system32\AUDIODG.EXE
c:\windows\system32\atieclxx.exe
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe
c:\program files\Malwarebytes' Anti-Malware\mbamscheduler.exe
c:\program files\Microsoft SQL Server\90\Shared\sqlwriter.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
c:\windows\system32\taskhost.exe
c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe
c:\windows\system32\conhost.exe
c:\windows\system32\taskhost.exe
c:\program files\IObit\Smart Defrag 3\SmartDefrag.exe
c:\program files\Google\Update\1.3.22.5\GoogleCrashHandler.exe
c:\windows\system32\sppsvc.exe
c:\program files\Windows Media Player\wmpnetwk.exe
.
**************************************************************************
.
Celkový čas: 2014-02-13 10:47:35 - počítač byl restartován
ComboFix-quarantined-files.txt 2014-02-13 09:47
.
Před spuštěním: Volných bajtů: 52 718 923 776
Po spuštění: Volných bajtů: 52 431 507 456
.
- - End Of File - - CC5BDF658C700680449D67BD55AC63A5
A36C5E4F47E84449FF07ED3517B43A31

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43293
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod jaro3 » 13 úno 2014 18:46

ComboFix se odinstaluje takto:
Start-Spustit a zadej ComboFix /Uninstall

Vyčisti systém CCleanerem

Stáhni si OTC

na plochu. Poklepej na něj. Potom klikni na Clean up!.
Restartuj PC , pokud Ti bude doporučeno.

V možnostech složky si povol zobrazování skrytých souborů a složek+ odškrtni zatržítko skrýt chráněné soubory operačního systému

Toto otestuj na Virustotal
c:\windows\System32\winlogon.exe
c:\windows\KJ\Pirate\T\x64T\user32.dll
c:\windows\KJ\Pirate\P\x86P\user32.dll
c:\windows\System32\user32.dll

Klikni vpravo od okénka na Vybrat a v Exploreru najdi požadovaný soubor v Tvém PC. Označ ho myší a klikni na Otevřít , poté klikni na Send File. Pokud už byl soubor testován , objeví se okno ve kterém klikni na Reanalyze. Soubor se začne postupně testovat více antivirovými programy. Až skončí test posledního antiviru , objeví se nahoře result a červeně počet nákaz , např. 0/43 , nebo 1/43. Pak zkopíruj myší odkaz na tuto stránku a vlož ji do svého příspěvku.

Nebo na:
http://www.virscan.org/

Vlož nový log z HJT + info o problémech.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Sxmanek
nováček
Příspěvky: 20
Registrován: únor 14
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Sxmanek » 13 úno 2014 19:24

https://www.virustotal.com/cs/file/4c8b ... 392315404/
https://www.virustotal.com/cs/file/4fd9 ... 392315514/
https://www.virustotal.com/cs/file/bdb5 ... 392315575/
https://www.virustotal.com/cs/file/bdb5 ... 392315681/

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:23:10, on 13.2.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Unable to get Internet Explorer version!
Boot mode: Normal

Running processes:
C:\Windows\Explorer.EXE
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskhost.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\wuauclt.exe
C:\Users\Tomáš\Saved Games\Downloads\hijackthis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://uk.search.yahoo.com/?type=714647 ... got-yhp-ie
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll
O3 - Toolbar: avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files\AMD AVT\bin\kdbsync.exe" aml
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [mncfwylSrv] C:\Windows\inf\mncfwyl.vbe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_9691412ff1876250\aestsrv.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: HP Service (hpsrv) - Hewlett-Packard Company - C:\Windows\system32\Hpservice.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_9691412ff1876250\STacSV.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe

--
End of file - 6054 bytes

Počítač nabíhá rychleji už, konečně nemám spuštěno tři prd*** procesů. Videa běhají v pořádku. Takže děkuji.

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43293
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod jaro3 » 14 úno 2014 19:28

Zavři ostatní aplikace a prohlížeče, odpoj se od netu a fixni v HJT:
Návod

Kód: Vybrat vše

O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [mncfwylSrv] C:\Windows\inf\mncfwyl.vbe


C:\Windows\inf\mncfwyl.vbe ---tento soubor smaž!

Pokud nejsou problémy , je to vše a můžeš dát vyřešeno , zelenou fajfku.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 74 hostů