We're sorry... ... but your computer or network may be send Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Martin95k
nováček
Příspěvky: 18
Registrován: listopad 13
Pohlaví: Nespecifikováno
Stav:
Offline

Re: We're sorry... ... but your computer or network may be

Příspěvekod Martin95k » 22 lis 2013 13:19

Engine\OSE.EXE
13:05:00.0289 16360 ose - ok
13:05:00.0445 16360 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
13:05:00.0554 16360 osppsvc - ok
13:05:00.0601 16360 [ AB76700D764A342D7475FB8F47CAB18C ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
13:05:00.0601 16360 p2pimsvc - ok
13:05:00.0632 16360 [ 4319FD931DCD796435ECB5DB4A04FBA5 ] p2psvc C:\Windows\system32\p2psvc.dll
13:05:00.0632 16360 p2psvc - ok
13:05:00.0679 16360 [ 4563DAF8C6A740AD7F501E219BD10766 ] Parport C:\Windows\System32\drivers\parport.sys
13:05:00.0679 16360 Parport - ok
13:05:00.0710 16360 [ D6ACCF9F2EEEEA711C14EFD976E573F3 ] partmgr C:\Windows\system32\drivers\partmgr.sys
13:05:00.0710 16360 partmgr - ok
13:05:00.0742 16360 [ 4811D9EC53649105A5A8BEA661B0F936 ] PcaSvc C:\Windows\System32\pcasvc.dll
13:05:00.0757 16360 PcaSvc - ok
13:05:00.0789 16360 [ 4A003E8F718C1E6A2050CA98CD53E3E2 ] pci C:\Windows\system32\drivers\pci.sys
13:05:00.0804 16360 pci - ok
13:05:00.0820 16360 [ F9908D274D458220F91E89B54D78D837 ] pciide C:\Windows\system32\drivers\pciide.sys
13:05:00.0820 16360 pciide - ok
13:05:00.0835 16360 [ 84D19CB6102627932DCB5DFDF89FE269 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
13:05:00.0835 16360 pcmcia - ok
13:05:00.0867 16360 [ CEBBAD5391C2644560C55628A40BFD27 ] pcw C:\Windows\system32\drivers\pcw.sys
13:05:00.0882 16360 pcw - ok
13:05:00.0929 16360 [ 0698DEDEAD6A00AD0D468C687D830FBF ] pdc C:\Windows\system32\drivers\pdc.sys
13:05:00.0929 16360 pdc - ok
13:05:00.0961 16360 [ 61FE70659CD43E07F94DA4DC31DEC493 ] PEAUTH C:\Windows\system32\drivers\peauth.sys
13:05:00.0976 16360 PEAUTH - ok
13:05:01.0070 16360 [ EB88FA19F0EA05DD04BE9C5FFEEFFE1A ] PerfHost C:\Windows\SysWow64\perfhost.exe
13:05:01.0085 16360 PerfHost - ok
13:05:01.0148 16360 [ 6E84BFF58F7643499277F29DFA2F8C8D ] pla C:\Windows\system32\pla.dll
13:05:01.0179 16360 pla - ok
13:05:01.0211 16360 [ 799BE46D45D486704CE0F37CA5385262 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
13:05:01.0211 16360 PlugPlay - ok
13:05:01.0226 16360 [ 8E2414E818C26C4A9C70CB2B8567F04F ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
13:05:01.0242 16360 PNRPAutoReg - ok
13:05:01.0257 16360 [ AB76700D764A342D7475FB8F47CAB18C ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
13:05:01.0273 16360 PNRPsvc - ok
13:05:01.0320 16360 [ 0108C8E5176D590F242701EF5A62CC26 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
13:05:01.0320 16360 PolicyAgent - ok
13:05:01.0367 16360 [ F1E067F56373F11EA4B785CAE823740A ] Power C:\Windows\system32\umpo.dll
13:05:01.0367 16360 Power - ok
13:05:01.0398 16360 [ 362D47E5B4D67270DE4B8606036F4ADD ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
13:05:01.0398 16360 PptpMiniport - ok
13:05:01.0523 16360 [ 9D59831262CAD44E709D695FC9D5E7AB ] PrintNotify C:\Windows\system32\spool\DRIVERS\x64\3\PrintConfig.dll
13:05:01.0554 16360 PrintNotify - ok
13:05:01.0586 16360 [ DD979EB6A7212F60E4AFBE96EDC7AE6D ] Processor C:\Windows\System32\drivers\processr.sys
13:05:01.0586 16360 Processor - ok
13:05:01.0632 16360 [ 429E8502AD2227CF88F8840FC5BD590D ] ProfSvc C:\Windows\system32\profsvc.dll
13:05:01.0632 16360 ProfSvc - ok
13:05:01.0664 16360 [ EB8034147D4820CD31BFCB11A2A652DF ] Psched C:\Windows\system32\DRIVERS\pacer.sys
13:05:01.0664 16360 Psched - ok
13:05:01.0711 16360 [ 0AFBF333B6F87A2F598EAB379AF100B8 ] QWAVE C:\Windows\system32\qwave.dll
13:05:01.0711 16360 QWAVE - ok
13:05:01.0742 16360 [ 13D47BB0CCA2FC51BD15F8E85C6A078E ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
13:05:01.0742 16360 QWAVEdrv - ok
13:05:01.0773 16360 [ 873C60F8178100557740A832FCE10B5F ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
13:05:01.0773 16360 RasAcd - ok
13:05:01.0804 16360 [ 69B93F623B130976243ECA3D84CC99CA ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
13:05:01.0804 16360 RasAgileVpn - ok
13:05:01.0836 16360 [ 005F6E54C4A2DA4EBF68FB0392CE8BB0 ] RasAuto C:\Windows\System32\rasauto.dll
13:05:01.0836 16360 RasAuto - ok
13:05:01.0867 16360 [ A14D625C5AEE5FFE0F47D1A1D419FAAE ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
13:05:01.0867 16360 Rasl2tp - ok
13:05:01.0882 16360 [ C923C785A2DE0B396AD6D13ACAFF2DE9 ] RasMan C:\Windows\System32\rasmans.dll
13:05:01.0898 16360 RasMan - ok
13:05:01.0914 16360 [ 00695B9C2DB6111064499C529E90C042 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
13:05:01.0914 16360 RasPppoe - ok
13:05:01.0929 16360 [ A7F24D8CD1956B0A1FDCB86CC5114DE4 ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
13:05:01.0929 16360 RasSstp - ok
13:05:01.0976 16360 [ CA03D642ACE58E1BA54E4B383F91CD69 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
13:05:01.0976 16360 rdbss - ok
13:05:01.0992 16360 [ CA7DF5EC95D8DE0DD24BE7FF97369F68 ] rdpbus C:\Windows\System32\drivers\rdpbus.sys
13:05:01.0992 16360 rdpbus - ok
13:05:02.0023 16360 [ B2A3AD74FF2E2FFA73AF2567108231B3 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys
13:05:02.0023 16360 RDPDR - ok
13:05:02.0054 16360 [ 57F4787E4602A3FCA719C0A33137C6DA ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
13:05:02.0054 16360 RdpVideoMiniport - ok
13:05:02.0086 16360 [ B3CB0721E81E30419CE7D837EF4EA151 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
13:05:02.0086 16360 RDPWD - ok
13:05:02.0101 16360 [ 62C1F8A0685FE07E998AA296C4F697C4 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
13:05:02.0117 16360 rdyboost - ok
13:05:02.0148 16360 [ 3663CCF243EE0C04E9F6F91ED1737273 ] RemoteAccess C:\Windows\System32\mprdim.dll
13:05:02.0148 16360 RemoteAccess - ok
13:05:02.0179 16360 [ E80DD61E52EDFFF9DA1ED7260A68855B ] RemoteRegistry C:\Windows\system32\regsvc.dll
13:05:02.0179 16360 RemoteRegistry - ok
13:05:02.0211 16360 [ CCBFCABDFE2BC22F0645CEAADDB36004 ] RFCOMM C:\Windows\System32\drivers\rfcomm.sys
13:05:02.0211 16360 RFCOMM - ok
13:05:02.0242 16360 [ 73F2E030B5C24E4E41401B5F0D59E6FD ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
13:05:02.0242 16360 RpcEptMapper - ok
13:05:02.0289 16360 [ 10B21284B3D964AB3DC45490E57D422E ] RpcLocator C:\Windows\system32\locator.exe
13:05:02.0289 16360 RpcLocator - ok
13:05:02.0320 16360 [ 1EC6E533C954BDDF2A37E7851A7E58FD ] RpcSs C:\Windows\system32\rpcss.dll
13:05:02.0336 16360 RpcSs - ok
13:05:02.0367 16360 [ 7B386B880EDAD12C5102B448E2A3127C ] RSBASTOR C:\Windows\system32\DRIVERS\RtsBaStor.sys
13:05:02.0367 16360 RSBASTOR - ok
13:05:02.0398 16360 [ E04E770DD198B9399640717145E79EBF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
13:05:02.0398 16360 rspndr - ok
13:05:02.0445 16360 [ 7D9DA8EC6784A9EE213C676709D46BE6 ] RTL8168 C:\Windows\system32\DRIVERS\Rt630x64.sys
13:05:02.0445 16360 RTL8168 - ok
13:05:02.0461 16360 [ 752EC7DCD2F96871A3857EEE6AFE965A ] s3cap C:\Windows\System32\drivers\vms3cap.sys
13:05:02.0476 16360 s3cap - ok
13:05:02.0492 16360 [ F702AB6181513303AB0FC8D59E52708B ] SamSs C:\Windows\system32\lsass.exe
13:05:02.0492 16360 SamSs - ok
13:05:02.0523 16360 [ 9C7B28CE0D136DB226E24DB3BC817F92 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
13:05:02.0523 16360 sbp2port - ok
13:05:02.0554 16360 [ 14316954FCE79C9DE5A0AFF9D42C83AA ] SCardSvr C:\Windows\System32\SCardSvr.dll
13:05:02.0570 16360 SCardSvr - ok
13:05:02.0570 16360 [ 5D7733A12756B267FCA021672B26BC9E ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
13:05:02.0570 16360 scfilter - ok
13:05:02.0632 16360 [ ED40ED9A65F3E79A8C43DD50C5FDADBF ] Schedule C:\Windows\system32\schedsvc.dll
13:05:02.0664 16360 Schedule - ok
13:05:02.0695 16360 [ BAF8F0F55BC300E5F882E521F054E345 ] SCPolicySvc C:\Windows\System32\certprop.dll
13:05:02.0695 16360 SCPolicySvc - ok
13:05:02.0726 16360 [ F58B030A0664385C707B8C1C63682041 ] sdbus C:\Windows\System32\drivers\sdbus.sys
13:05:02.0726 16360 sdbus - ok
13:05:02.0757 16360 [ 92968277ED491E4B3DDA361E3952361E ] SDRSVC C:\Windows\System32\SDRSVC.dll
13:05:02.0757 16360 SDRSVC - ok
13:05:02.0789 16360 [ BB107AA9980B0DA4E19A3A90C3BD4460 ] sdstor C:\Windows\System32\drivers\sdstor.sys
13:05:02.0789 16360 sdstor - ok
13:05:02.0820 16360 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
13:05:02.0820 16360 secdrv - ok
13:05:02.0851 16360 [ CD282626738B6BC92B6E7CD0AAE95B63 ] seclogon C:\Windows\system32\seclogon.dll
13:05:02.0851 16360 seclogon - ok
13:05:02.0867 16360 [ 9C51620998F0763039DFA6BF68E475ED ] SENS C:\Windows\System32\sens.dll
13:05:02.0882 16360 SENS - ok
13:05:02.0898 16360 [ 0D50B4B860DAB65241628D04CD33ACAE ] SensrSvc C:\Windows\system32\sensrsvc.dll
13:05:02.0898 16360 SensrSvc - ok
13:05:02.0914 16360 [ 87C46B239A7EEF30FDFDD5E9BD46130C ] SerCx C:\Windows\system32\drivers\SerCx.sys
13:05:02.0929 16360 SerCx - ok
13:05:02.0945 16360 [ 7A1F9347C85FD55E39B8A76B3A25C5AD ] Serenum C:\Windows\System32\drivers\serenum.sys
13:05:02.0945 16360 Serenum - ok
13:05:02.0961 16360 [ F640A0A218BBF857F1D04A15D7D939F6 ] Serial C:\Windows\System32\drivers\serial.sys
13:05:02.0961 16360 Serial - ok
13:05:02.0976 16360 [ F1A5F56B2620B862CC28FF96A0A6DAAB ] sermouse C:\Windows\System32\drivers\sermouse.sys
13:05:02.0976 16360 sermouse - ok
13:05:03.0023 16360 [ CB60A60340788C8D6DE2A269D28086AB ] SessionEnv C:\Windows\system32\sessenv.dll
13:05:03.0039 16360 SessionEnv - ok
13:05:03.0070 16360 [ 7EE65419B29302C795714FF8073969A1 ] sfloppy C:\Windows\System32\drivers\sfloppy.sys
13:05:03.0070 16360 sfloppy - ok
13:05:03.0117 16360 [ 090AE16F79C8EAD04E6031F863DA85F3 ] SharedAccess C:\Windows\System32\ipnathlp.dll
13:05:03.0132 16360 SharedAccess - ok
13:05:03.0179 16360 [ A77F3ABE13FCC698511E5DEC7ACEBD5F ] ShellHWDetection C:\Windows\System32\shsvcs.dll
13:05:03.0195 16360 ShellHWDetection - ok
13:05:03.0195 16360 [ 2560721D6F16D5B611C36A3A9D28C1B2 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
13:05:03.0195 16360 SiSRaid2 - ok
13:05:03.0226 16360 [ 3AA8FDE1DBF65BB8B88B053529554A0D ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
13:05:03.0242 16360 SiSRaid4 - ok
13:05:03.0273 16360 [ 9CD1BB2DB803B6AC642BD643DDB773BC ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
13:05:03.0273 16360 SkypeUpdate - ok
13:05:03.0320 16360 [ E660156A4588A84305CB772FD2C0DB21 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
13:05:03.0320 16360 SNMPTRAP - ok
13:05:03.0351 16360 [ FD3AF5575B99871BADB94E7699DBCE08 ] spaceport C:\Windows\system32\drivers\spaceport.sys
13:05:03.0351 16360 spaceport - ok
13:05:03.0383 16360 [ 3D8679C8DF52EB26EB7583A4E0A29202 ] SpbCx C:\Windows\system32\drivers\SpbCx.sys
13:05:03.0383 16360 SpbCx - ok
13:05:03.0429 16360 [ 3F215BF2D4D8D6756298B25B579772C2 ] Spooler C:\Windows\System32\spoolsv.exe
13:05:03.0445 16360 Spooler - ok
13:05:03.0554 16360 [ 061A977C920FBE4BF71FF47C966DDDCA ] sppsvc C:\Windows\system32\sppsvc.exe
13:05:03.0601 16360 sppsvc - ok
13:05:03.0617 16360 [ 0F1FCD575A03ABDE13FCA9D0ADE4DDA6 ] srv C:\Windows\system32\DRIVERS\srv.sys
13:05:03.0632 16360 srv - ok
13:05:03.0664 16360 [ 56218A571ECF8D55E0CDFF8DF2546CF1 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
13:05:03.0679 16360 srv2 - ok
13:05:03.0695 16360 [ 14FC338B80CFF7E04215133B568D15C4 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
13:05:03.0695 16360 srvnet - ok
13:05:03.0726 16360 [ 7A20882D76D4A78240A5AC9F2C2EBA21 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
13:05:03.0742 16360 SSDPSRV - ok
13:05:03.0758 16360 [ 0211AB46B73A2623B86C1CFCB30579AB ] SSPORT C:\Windows\system32\Drivers\SSPORT.sys
13:05:03.0758 16360 SSPORT - ok
13:05:03.0789 16360 [ D233B16999A8E626F6004BD7814C57EC ] SstpSvc C:\Windows\system32\sstpsvc.dll
13:05:03.0804 16360 SstpSvc - ok
13:05:03.0836 16360 [ 4E85355B94CFCB67C135F6521A4895A7 ] stexstor C:\Windows\system32\drivers\stexstor.sys
13:05:03.0836 16360 stexstor - ok
13:05:03.0883 16360 [ BAC8A721736AECC55A4F71523AEAB65F ] stisvc C:\Windows\System32\wiaservc.dll
13:05:03.0898 16360 stisvc - ok
13:05:03.0929 16360 [ B240874B2CA0CD02E8CD11E140B14C57 ] storahci C:\Windows\system32\drivers\storahci.sys
13:05:03.0929 16360 storahci - ok
13:05:03.0961 16360 [ F74DBC95A57B1EE866D3732EB5F79BE2 ] storflt C:\Windows\system32\DRIVERS\vmstorfl.sys
13:05:03.0961 16360 storflt - ok
13:05:03.0976 16360 [ 5337E138B49ED1F44CCBA4073BC35C20 ] StorSvc C:\Windows\system32\storsvc.dll
13:05:03.0992 16360 StorSvc - ok
13:05:04.0008 16360 [ 543CD3CC0E05B8D8815E0D4F040B6F59 ] storvsc C:\Windows\system32\drivers\storvsc.sys
13:05:04.0008 16360 storvsc - ok
13:05:04.0023 16360 [ 8BC1C1ED6EF9C985A3FAA6A72F41679A ] svsvc C:\Windows\system32\svsvc.dll
13:05:04.0023 16360 svsvc - ok
13:05:04.0054 16360 [ 4AFD66AAE74FFB5986BC240744DC5FC9 ] swenum C:\Windows\System32\drivers\swenum.sys
13:05:04.0054 16360 swenum - ok
13:05:04.0070 16360 [ 502F9488540051F3E6C39889ECFA76BB ] swprv C:\Windows\System32\swprv.dll
13:05:04.0086 16360 swprv - ok
13:05:04.0133 16360 [ A06CB9269D29EE3D0F3F5630ABB660B8 ] SysMain C:\Windows\system32\sysmain.dll
13:05:04.0148 16360 SysMain - ok
13:05:04.0179 16360 [ 6FB88606C4A71E1BFAF97D63A676C673 ] SystemEventsBroker C:\Windows\System32\SystemEventsBrokerServer.dll
13:05:04.0179 16360 SystemEventsBroker - ok
13:05:04.0211 16360 [ A6C06C45C44AD06C70AF8899AEC15BDC ] TabletInputService C:\Windows\System32\TabSvc.dll
13:05:04.0226 16360 TabletInputService - ok
13:05:04.0242 16360 [ 88B7721AB551C4325036B25A34A2BF7B ] TapiSrv C:\Windows\System32\tapisrv.dll
13:05:04.0258 16360 TapiSrv - ok
13:05:04.0336 16360 [ 37D85E873C9531A2F88DD9C63D3F8A9E ] Tcpip C:\Windows\system32\drivers\tcpip.sys
13:05:04.0351 16360 Tcpip - ok
13:05:04.0414 16360 [ 37D85E873C9531A2F88DD9C63D3F8A9E ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
13:05:04.0445 16360 TCPIP6 - ok
13:05:04.0476 16360 [ 8F2A13A5DF99D72FDDE87F502A66F989 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
13:05:04.0476 16360 tcpipreg - ok
13:05:04.0492 16360 [ 73DC722CE5DF26D7638CE2446F2655C7 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
13:05:04.0492 16360 tdx - ok
13:05:04.0523 16360 [ F7C8AB5D8AFFAA318D6A21093D139BF4 ] terminpt C:\Windows\System32\drivers\terminpt.sys
13:05:04.0523 16360 terminpt - ok
13:05:04.0554 16360 [ 541EE228D0DEF392F7B2DFD885DD021B ] TermService C:\Windows\System32\termsrv.dll
13:05:04.0570 16360 TermService - ok
13:05:04.0586 16360 [ 519A6F672FFF56B7D8EE8C730CEC8ECD ] Themes C:\Windows\system32\themeservice.dll
13:05:04.0601 16360 Themes - ok
13:05:04.0633 16360 [ EEE908BE7143FCA48CF0CB87214E2AB8 ] THREADORDER C:\Windows\system32\mmcss.dll
13:05:04.0633 16360 THREADORDER - ok
13:05:04.0664 16360 [ 4515B9E4140F04FB3907692DF89FCA87 ] TimeBroker C:\Windows\System32\TimeBrokerServer.dll
13:05:04.0679 16360 TimeBroker - ok
13:05:04.0695 16360 [ E94F7A7B48C7638D1F3F8089344C97B7 ] TPM C:\Windows\system32\drivers\tpm.sys
13:05:04.0695 16360 TPM - ok
13:05:04.0742 16360 [ 8C8CF3041B27E7657ADD0EE17F6DBFCA ] TrkWks C:\Windows\System32\trkwks.dll
13:05:04.0742 16360 TrkWks - ok
13:05:04.0789 16360 [ 8ABBB5CE0C62E0A6D28F32F44B7F865C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
13:05:04.0804 16360 TrustedInstaller - ok
13:05:04.0836 16360 [ 4E7C5FB10A50435523DE0CAA37DE2BD3 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
13:05:04.0836 16360 TsUsbFlt - ok
13:05:04.0851 16360 [ 16D684A820872EE54F6370703AC0B513 ] TsUsbGD C:\Windows\System32\drivers\TsUsbGD.sys
13:05:04.0851 16360 TsUsbGD - ok
13:05:04.0867 16360 [ 78C9EE193AC2B4CBDBC48B620314D740 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
13:05:04.0867 16360 tunnel - ok
13:05:04.0898 16360 [ 6D4F67CA56ACA2085DFA2CD89EAFBC1A ] uagp35 C:\Windows\system32\drivers\uagp35.sys
13:05:04.0898 16360 uagp35 - ok
13:05:04.0914 16360 [ 6FD6D03B7752C78712E5CFF29A305026 ] UASPStor C:\Windows\System32\drivers\uaspstor.sys
13:05:04.0914 16360 UASPStor - ok
13:05:04.0945 16360 [ 061BA3EE0D2BE17944990544008CF190 ] UCX01000 C:\Windows\System32\drivers\ucx01000.sys
13:05:04.0945 16360 UCX01000 - ok
13:05:04.0976 16360 [ 25C50F4EDF70D0A831E0566BD181CCF2 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
13:05:04.0976 16360 udfs - ok
13:05:05.0023 16360 [ FB3475FEA1CCB0DAEA1EBE44D0E3BB7D ] UI0Detect C:\Windows\system32\UI0Detect.exe
13:05:05.0023 16360 UI0Detect - ok
13:05:05.0054 16360 [ 07FEBCDF24FABA0D47B635D85A0FFB7A ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
13:05:05.0054 16360 uliagpkx - ok
13:05:05.0086 16360 [ 02CEB3FE6152668A7BA420B93B664860 ] umbus C:\Windows\System32\drivers\umbus.sys
13:05:05.0086 16360 umbus - ok
13:05:05.0101 16360 [ 991EE6B5FC41EAEF99C8AF5B92F2CA09 ] UmPass C:\Windows\System32\drivers\umpass.sys
13:05:05.0101 16360 UmPass - ok
13:05:05.0133 16360 [ 43FEFB040A0CC30F795FBF544169594D ] UmRdpService C:\Windows\System32\umrdp.dll
13:05:05.0133 16360 UmRdpService - ok
13:05:05.0242 16360 [ E1A119AD21F5AFE22EB516C549306D3D ] UNS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
13:05:05.0242 16360 UNS - ok
13:05:05.0289 16360 [ 14D22C411854AA2560AFC94CD2D5E61F ] upnphost C:\Windows\System32\upnphost.dll
13:05:05.0304 16360 upnphost - ok
13:05:05.0320 16360 [ C976C4306F9AE133D6BBD47FDFC3BF92 ] usbccgp C:\Windows\System32\drivers\usbccgp.sys
13:05:05.0336 16360 usbccgp - ok
13:05:05.0336 16360 [ 427B6DB8C05A5A977E8C3525370A2595 ] usbcir C:\Windows\System32\drivers\usbcir.sys
13:05:05.0351 16360 usbcir - ok
13:05:05.0367 16360 [ B24FDEB1B18496F1B463782235AA3AF1 ] usbehci C:\Windows\System32\drivers\usbehci.sys
13:05:05.0367 16360 usbehci - ok
13:05:05.0398 16360 [ F8C2A832DF9403F5EA8080CBDBDA95FB ] usbhub C:\Windows\System32\drivers\usbhub.sys
13:05:05.0414 16360 usbhub - ok
13:05:05.0429 16360 [ B1E910DDC08A8536116214326124903C ] USBHUB3 C:\Windows\System32\drivers\UsbHub3.sys
13:05:05.0445 16360 USBHUB3 - ok
13:05:05.0476 16360 [ 325F6179009B5A7F6118951A5BA422AB ] usbohci C:\Windows\System32\drivers\usbohci.sys
13:05:05.0476 16360 usbohci - ok
13:05:05.0492 16360 [ 9FDBA6982582A6F2354144980F641E7B ] usbprint C:\Windows\System32\drivers\usbprint.sys
13:05:05.0492 16360 usbprint - ok
13:05:05.0508 16360 [ BFC7FE4AAEB61317A921871B4085EF4B ] USBSTOR C:\Windows\System32\drivers\USBSTOR.SYS
13:05:05.0508 16360 USBSTOR - ok
13:05:05.0539 16360 [ 1ABF657259DB57F7E5558E4DF1357C0C ] usbuhci C:\Windows\System32\drivers\usbuhci.sys
13:05:05.0539 16360 usbuhci - ok
13:05:05.0554 16360 [ 9EF7C01D3ACCBC243B5CB1A95865B2FF ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
13:05:05.0554 16360 usbvideo - ok
13:05:05.0570 16360 [ 8DC398D7B8E02C929A2096E74A170970 ] USBXHCI C:\Windows\System32\drivers\USBXHCI.SYS
13:05:05.0586 16360 USBXHCI - ok
13:05:05.0601 16360 [ F702AB6181513303AB0FC8D59E52708B ] VaultSvc C:\Windows\system32\lsass.exe
13:05:05.0601 16360 VaultSvc - ok
13:05:05.0633 16360 [ BACECBFF9C97F7627A60B0E0F1FE7EE8 ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
13:05:05.0633 16360 vdrvroot - ok
13:05:05.0664 16360 [ 1B4488988E5E7512E6C5CD1255E9E973 ] vds C:\Windows\System32\vds.exe
13:05:05.0679 16360 vds - ok
13:05:05.0695 16360 [ 74FA2D4368DE6F6CE14393EDF1F342BE ] VerifierExt C:\Windows\system32\drivers\VerifierExt.sys
13:05:05.0695 16360 VerifierExt - ok
13:05:05.0742 16360 [ 500BE6B2E49883720D0AE8BB859ED7A3 ] vhdmp C:\Windows\System32\drivers\vhdmp.sys
13:05:05.0758 16360 vhdmp - ok
13:05:05.0773 16360 [ F5B4A14B00E89250C50982AC762DDD1D ] viaide C:\Windows\system32\drivers\viaide.sys
13:05:05.0773 16360 viaide - ok
13:05:05.0805 16360 [ 78DB50F7329F6D1311658DABFFFC8BE0 ] vmbus C:\Windows\system32\drivers\vmbus.sys
13:05:05.0805 16360 vmbus - ok
13:05:05.0820 16360 [ ECFEE2F2BA3932C7880D1A8F67D68F91 ] VMBusHID C:\Windows\System32\drivers\VMBusHID.sys
13:05:05.0820 16360 VMBusHID - ok
13:05:05.0851 16360 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicheartbeat C:\Windows\System32\ICSvc.dll
13:05:05.0867 16360 vmicheartbeat - ok
13:05:05.0867 16360 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmickvpexchange C:\Windows\System32\ICSvc.dll
13:05:05.0883 16360 vmickvpexchange - ok
13:05:05.0883 16360 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicrdv C:\Windows\System32\ICSvc.dll
13:05:05.0898 16360 vmicrdv - ok
13:05:05.0898 16360 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicshutdown C:\Windows\System32\ICSvc.dll
13:05:05.0914 16360 vmicshutdown - ok
13:05:05.0914 16360 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmictimesync C:\Windows\System32\ICSvc.dll
13:05:05.0914 16360 vmictimesync - ok
13:05:05.0929 16360 [ B8FF4248103E6EA47B9D85C55673ABA3 ] vmicvss C:\Windows\System32\ICSvc.dll
13:05:05.0929 16360 vmicvss - ok
13:05:05.0945 16360 [ CB60FAAED8B49B812EBBF77EB87D9B18 ] volmgr C:\Windows\system32\drivers\volmgr.sys
13:05:05.0961 16360 volmgr - ok
13:05:05.0992 16360 [ A74101DA9809251BCD0E5A26BAE0F824 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
13:05:05.0992 16360 volmgrx - ok
13:05:06.0023 16360 [ 78A5BBA3819FFFC62FFEC3E2220D102D ] volsnap C:\Windows\system32\drivers\volsnap.sys
13:05:06.0023 16360 volsnap - ok
13:05:06.0055 16360 [ A8DA1C1B52ECEA3726DEBED4FF1B700D ] vpci C:\Windows\System32\drivers\vpci.sys
13:05:06.0055 16360 vpci - ok
13:05:06.0086 16360 [ 38A60CD9C009C55C6D3B5586F8E6A353 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
13:05:06.0086 16360 vsmraid - ok
13:05:06.0148 16360 [ D0C69E44BC1E1D4AD290FD84104623D8 ] VSS C:\Windows\system32\vssvc.exe
13:05:06.0164 16360 VSS - ok
13:05:06.0195 16360 [ A0F6FE0FC2F647C22BBFD6BD4249DBCC ] VSTXRAID C:\Windows\system32\drivers\vstxraid.sys
13:05:06.0195 16360 VSTXRAID - ok
13:05:06.0226 16360 [ 62460A45435A26A334907E3F2EA45611 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
13:05:06.0226 16360 vwifibus - ok
13:05:06.0242 16360 [ 095E943D27025E4D588AF0A72CC2318F ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
13:05:06.0242 16360 vwififlt - ok
13:05:06.0273 16360 [ 73FA1A41A97A5C34ADC03B3577FF1A86 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys
13:05:06.0273 16360 vwifimp - ok
13:05:06.0320 16360 [ F690B6EEAA94576727B24376D7ED3601 ] W32Time C:\Windows\system32\w32time.dll
13:05:06.0320 16360 W32Time - ok
13:05:06.0367 16360 [ 6B806E893714019969E2B50D7EF6A4D9 ] WacomPen C:\Windows\System32\drivers\wacompen.sys
13:05:06.0367 16360 WacomPen - ok
13:05:06.0383 16360 [ 61F6972FF9AC9A8D0B4D62076DC30051 ] Wanarp C:\Windows\system32\DRIVERS\wanarp.sys
13:05:06.0383 16360 Wanarp - ok
13:05:06.0398 16360 [ 61F6972FF9AC9A8D0B4D62076DC30051 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
13:05:06.0398 16360 Wanarpv6 - ok
13:05:06.0461 16360 [ 42DF22F8C448E7CD219F6D63743505E2 ] wbengine C:\Windows\system32\wbengine.exe
13:05:06.0492 16360 wbengine - ok
13:05:06.0508 16360 [ 31D37B2F6069C631EF0557D322924812 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
13:05:06.0523 16360 WbioSrvc - ok
13:05:06.0539 16360 [ AF1349386D4C6786EF4E34FACEF15042 ] Wcmsvc C:\Windows\System32\wcmsvc.dll
13:05:06.0555 16360 Wcmsvc - ok
13:05:06.0586 16360 [ 5B5FEAB51172F5513C2CF7B39CFA6A01 ] wcncsvc C:\Windows\System32\wcncsvc.dll
13:05:06.0601 16360 wcncsvc - ok
13:05:06.0633 16360 [ E19556D414332E2BEBA1F368229006B4 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
13:05:06.0633 16360 WcsPlugInService - ok
13:05:06.0680 16360 [ B3A4D918DAB90505B6BC7B70632913CB ] Wd C:\Windows\system32\drivers\wd.sys
13:05:06.0680 16360 Wd - ok
13:05:06.0695 16360 [ FD47DF026B32969B8A68721A0243E8EE ] WdBoot C:\Windows\system32\drivers\WdBoot.sys
13:05:06.0695 16360 WdBoot - ok
13:05:06.0742 16360 [ E2C933EDBC389386EBE6D2BA953F43D8 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
13:05:06.0742 16360 Wdf01000 - ok
13:05:06.0789 16360 [ 5F425D842DD6ADE9F95A51A0616AFAD7 ] WdFilter C:\Windows\system32\drivers\WdFilter.sys
13:05:06.0789 16360 WdFilter - ok
13:05:06.0820 16360 [ 240FC332484572227CD1DF82407F33E5 ] WdiServiceHost C:\Windows\system32\wdi.dll
13:05:06.0836 16360 WdiServiceHost - ok
13:05:06.0836 16360 [ 240FC332484572227CD1DF82407F33E5 ] WdiSystemHost C:\Windows\system32\wdi.dll
13:05:06.0836 16360 WdiSystemHost - ok
13:05:06.0867 16360 [ F2002DA5E6B78C15B2CD48CFF8F0FBB6 ] WebClient C:\Windows\System32\webclnt.dll
13:05:06.0867 16360 WebClient - ok
13:05:06.0914 16360 [ 35FD720943D4FCD75C3275BF062FF140 ] Wecsvc C:\Windows\system32\wecsvc.dll
13:05:06.0914 16360 Wecsvc - ok
13:05:06.0930 16360 [ 4D2612E3C462B68F499D840B1133263E ] wercplsupport C:\Windows\System32\wercplsupport.dll
13:05:06.0930 16360 wercplsupport - ok
13:05:06.0961 16360 [ 5F70EBFC1F75B487DE79501E3CCBDB54 ] WerSvc C:\Windows\System32\WerSvc.dll
13:05:06.0961 16360 WerSvc - ok
13:05:06.0992 16360 [ 44BB9C31E6242C4BD1CE7C2B440C2533 ] WFPLWFS C:\Windows\system32\DRIVERS\wfplwfs.sys
13:05:06.0992 16360 WFPLWFS - ok
13:05:07.0023 16360 [ 60E0C220593DA4F7C289CB909D2DBAE0 ] WiaRpc C:\Windows\System32\wiarpc.dll
13:05:07.0039 16360 WiaRpc - ok
13:05:07.0070 16360 [ A3C7624A42A3447EF5EDD1ED37FE4E60 ] WIMMount C:\Windows\system32\drivers\wimmount.sys
13:05:07.0070 16360 WIMMount - ok
13:05:07.0086 16360 WinDefend - ok
13:05:07.0133 16360 [ 7911470B6018059A880469A63B65700A ] WinHttpAutoProxySvc C:\Windows\system32\winhttp.dll
13:05:07.0148 16360 WinHttpAutoProxySvc - ok
13:05:07.0211 16360 [ 3D6B518B71C75C8FA4115A33615C107A ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
13:05:07.0211 16360 Winmgmt - ok
13:05:07.0305 16360 [ 8E212A627F33F6FC3B5F3BB47212F66E ] WinRM C:\Windows\system32\WsmSvc.dll
13:05:07.0336 16360 WinRM - ok
13:05:07.0383 16360 [ BB20956C424531003F7FA6CD36F11D5D ] WinUsb C:\Windows\system32\DRIVERS\WinUSB.sys
13:05:07.0383 16360 WinUsb - ok
13:05:07.0445 16360 [ 6351724B8FA0255C2DBD970297F00B93 ] WlanSvc C:\Windows\System32\wlansvc.dll
13:05:07.0476 16360 WlanSvc - ok
13:05:07.0523 16360 [ B330CE47FB74A6BE9A3FFFF4B3F64D9B ] wlidsvc C:\Windows\system32\wlidsvc.dll
13:05:07.0555 16360 wlidsvc - ok
13:05:07.0586 16360 [ E2A596CACFC6504306CDB7B593B90084 ] WmiAcpi C:\Windows\System32\drivers\wmiacpi.sys
13:05:07.0586 16360 WmiAcpi - ok
13:05:07.0617 16360 [ D113499052C5E541906B727779F0F959 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
13:05:07.0617 16360 wmiApSrv - ok
13:05:07.0648 16360 WMPNetworkSvc - ok
13:05:07.0680 16360 [ C6FF953D5D6F2EAE3B8883474D5076B3 ] wpcfltr C:\Windows\system32\DRIVERS\wpcfltr.sys
13:05:07.0695 16360 wpcfltr - ok
13:05:07.0726 16360 [ A6ED163169876BFD2437E872FE2F1509 ] WPCSvc C:\Windows\System32\wpcsvc.dll
13:05:07.0726 16360 WPCSvc - ok
13:05:07.0758 16360 [ 3013658A4D327854BEEC4A08D9655194 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
13:05:07.0773 16360 WPDBusEnum - ok
13:05:07.0773 16360 [ 0346CAFC181C91C6E2330332EB332ED6 ] WpdUpFltr C:\Windows\system32\drivers\WpdUpFltr.sys
13:05:07.0773 16360 WpdUpFltr - ok
13:05:07.0820 16360 [ BC8B5CB336E63BB25EAD1CE8EDD34B81 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
13:05:07.0820 16360 ws2ifsl - ok
13:05:07.0851 16360 [ 012CFE7F0F95266F554EE3B91EE2128A ] wscsvc C:\Windows\System32\wscsvc.dll
13:05:07.0851 16360 wscsvc - ok
13:05:07.0867 16360 WSearch - ok
13:05:07.0930 16360 [ D4D04839F3DFAF09D94BAB1016F7A297 ] WSService C:\Windows\System32\WSService.dll
13:05:07.0976 16360 WSService - ok
13:05:08.0055 16360 [ 5EE919B9C3056B399E488A9B253E258A ] wuauserv C:\Windows\system32\wuaueng.dll
13:05:08.0133 16360 wuauserv - ok
13:05:08.0164 16360 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
13:05:08.0164 16360 WudfPf - ok
13:05:08.0180 16360 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\Windows\System32\drivers\WUDFRd.sys
13:05:08.0180 16360 WUDFRd - ok
13:05:08.0211 16360 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
13:05:08.0211 16360 wudfsvc - ok
13:05:08.0242 16360 [ 6D9E07436B6646EC8F7EFFD39B6BA288 ] WwanSvc C:\Windows\System32\wwansvc.dll
13:05:08.0258 16360 WwanSvc - ok
13:05:08.0289 16360 [ 9176C0822FAA649E45121875BE32F5D2 ] xusb21 C:\Windows\System32\drivers\xusb21.sys
13:05:08.0289 16360 xusb21 - ok
13:05:08.0305 16360 ================ Scan global ===============================
13:05:08.0352 16360 [ DDC1AFBF9DDF880CE9BD3896114D8DED ] C:\Windows\system32\basesrv.dll
13:05:08.0383 16360 [ E9343076AE704D20BB0D01F3AF3EFFEF ] C:\Windows\system32\winsrv.dll
13:05:08.0430 16360 [ BD7C6949984D19AAA609896B675E7357 ] C:\Windows\system32\sxssrv.dll
13:05:08.0477 16360 [ 8F226143046435C75C033B0C52E90FFE ] C:\Windows\system32\services.exe
13:05:08.0477 16360 [Global] - ok
13:05:08.0477 16360 ================ Scan MBR ==================================
13:05:08.0492 16360 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
13:05:08.0508 16360 \Device\Harddisk0\DR0 - ok
13:05:08.0508 16360 ================ Scan VBR ==================================
13:05:08.0508 16360 [ 01A77290E7CFBD5CAF0198FF4FB4020A ] \Device\Harddisk0\DR0\Partition1
13:05:08.0508 16360 \Device\Harddisk0\DR0\Partition1 - ok
13:05:08.0523 16360 [ F344480E5EA24526200E7E1602077340 ] \Device\Harddisk0\DR0\Partition2
13:05:08.0523 16360 \Device\Harddisk0\DR0\Partition2 - ok
13:05:08.0539 16360 [ 66FAA80B9274EE79831AFC0B93D4E7DB ] \Device\Harddisk0\DR0\Partition3
13:05:08.0539 16360 \Device\Harddisk0\DR0\Partition3 - ok
13:05:08.0555 16360 [ 34EE5B8BEDA8544F26D7835E3E4A4820 ] \Device\Harddisk0\DR0\Partition4
13:05:08.0555 16360 \Device\Harddisk0\DR0\Partition4 - ok
13:05:08.0570 16360 [ 054DE4835559F467EA6EC39CFC46AD4B ] \Device\Harddisk0\DR0\Partition5
13:05:08.0570 16360 \Device\Harddisk0\DR0\Partition5 - ok
13:05:08.0602 16360 [ 5CA010DCCD9CCD949D02C292183329F1 ] \Device\Harddisk0\DR0\Partition6
13:05:08.0602 16360 \Device\Harddisk0\DR0\Partition6 - ok
13:05:08.0602 16360 ============================================================
13:05:08.0602 16360 Scan finished
13:05:08.0602 16360 ============================================================
13:05:08.0617 15840 Detected object count: 0
13:05:08.0617 15840 Actual detected object count: 0
13:05:18.0727 14956 Deinitialize success

Reklama
Martin95k
nováček
Příspěvky: 18
Registrován: listopad 13
Pohlaví: Nespecifikováno
Stav:
Offline

Re: We're sorry... ... but your computer or network may be

Příspěvekod Martin95k » 22 lis 2013 18:26

Mohl bych se zeptat, jaký je teď postup?

Uživatelský avatar
Stene
Level 6
Level 6
Příspěvky: 3124
Registrován: únor 09
Bydliště: Jihlava
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: We're sorry... ... but your computer or network may be

Příspěvekod Stene » 22 lis 2013 20:32

TDS vypadá dobře, s ostatním ti poradí kolegové

Pokřačuj combofixem

Vypni rezidentní štít antiviru a antispywaru

Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud bude po kontrole problém spustit aplikace nebo bude vyskakovat hláška o pokusu použít neplatnou operaci na klíč registru, který je oznaèen pro odstranění, stačí restartovat počítač.

Martin95k
nováček
Příspěvky: 18
Registrován: listopad 13
Pohlaví: Nespecifikováno
Stav:
Offline

Re: We're sorry... ... but your computer or network may be

Příspěvekod Martin95k » 22 lis 2013 22:26

Dobrý den,

Mám problém s programem ComboFix. Když ho zapnu a objeví se modrá tabulka, tak to během 10 min několikrát napíše: Program dumphive.3xe přestal pracovat....a že systém windows musí jeho činnost přerušit.

Stává se to někdy?

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: We're sorry... ... but your computer or network may be

Příspěvekod jaro3 » 23 lis 2013 11:30

Stene: nejsi rádce , tak pro Tebe platí pravidla sekce HJT také.

Stáhni si z některého odkazu SystemLook
SystemLook (32-bit)
http://jpshortstuff.247fixes.com/SystemLook.exe

SystemLook (64-bit)
http://jpshortstuff.247fixes.com/SystemLook_x64.exe

a ulož si ho na plochu.

Poklepej na stažený SystemLook , zkopíruj do hlavního text. okna tento následující text:

Kód: Vybrat vše

:filefind
dumphive.3xe.*


Klikni na Look ke startu skenu. Když program skončí objeví se v poznámkovém bloku zpráva skenu. Zkopíruj sem celý jeho obsah. Log se také nachází na ploše pod názvem SystemLook.txt.

Combofix zkus spustit v nouz. režimu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Martin95k
nováček
Příspěvky: 18
Registrován: listopad 13
Pohlaví: Nespecifikováno
Stav:
Offline

Re: We're sorry... ... but your computer or network may be

Příspěvekod Martin95k » 24 lis 2013 11:15

Log z Systemlook:


SystemLook 30.07.11 by jpshortstuff
Log created at 11:07 on 24/11/2013 by Martin
Administrator - Elevation successful

========== filefind ==========

Searching for "dumphive.3xe.*"
C:\ComboFix\dumphive.3XE -ra---- 51200 bytes [00:00 31/08/2000] [00:00 31/08/2000] 21868B2D22C726D94D98F15825D4134B
C:\Users\Martin\AppData\Local\CrashDumps\dumphive.3XE.2124.dmp --a---- 248192 bytes [21:26 22/11/2013] [21:26 22/11/2013] 1CAABE68E2700BD4FD2F088657A2FD77
C:\Users\Martin\AppData\Local\CrashDumps\dumphive.3XE.5312.dmp --a---- 248104 bytes [21:14 22/11/2013] [21:14 22/11/2013] 7102EDC2DF0486800D4681B29391CCB7
C:\Users\Martin\AppData\Local\CrashDumps\dumphive.3XE.6308.dmp --a---- 248192 bytes [21:18 22/11/2013] [21:18 22/11/2013] 0921C59CDD213C19E95D17120E01C14D
C:\Users\Martin\AppData\Local\CrashDumps\dumphive.3XE.7804.dmp --a---- 248192 bytes [21:08 22/11/2013] [21:08 22/11/2013] 3485B6367A90E3890460892DC8DC8E76

-= EOF =-

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: We're sorry... ... but your computer or network may be

Příspěvekod jaro3 » 25 lis 2013 16:45

V možnostech složky si povol zobrazování skrytých souborů a složek+ odškrtni zatržítko skrýt chráněné soubory operačního systému

otestuj ty soubory na Virustotal

Klikni vpravo od okénka na Vybrat a v Exploreru najdi požadovaný soubor v Tvém PC. Označ ho myší a klikni na Otevřít , poté klikni na Send File. Pokud už byl soubor testován , objeví se okno ve kterém klikni na Reanalyze. Soubor se začne postupně testovat více antivirovými programy. Až skončí test posledního antiviru , objeví se nahoře result a červeně počet nákaz , např. 0/43 , nebo 1/43. Pak zkopíruj myší odkaz na tuto stránku a vlož ji do svého příspěvku.

Nebo na:
http://www.virscan.org/

Vypni rez. ochranu u antiviru a antispywaru,příp. firewall..

Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud budou problémy , spusť ho v nouz. režimu.

Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Martin95k
nováček
Příspěvky: 18
Registrován: listopad 13
Pohlaví: Nespecifikováno
Stav:
Offline

Re: We're sorry... ... but your computer or network may be

Příspěvekod Martin95k » 25 lis 2013 19:00

ComboFix 13-11-22.01 - Martin 25/11/2013 18:35:37.5.4 - x64
Microsoft Windows 8 6.2.9200.0.1250.420.1029.18.3981.2337 [GMT 1:00]
Spuštěný z: c:\users\Martin\Desktop\ComboFix.exe
AV: Kaspersky Internet Security *Disabled/Updated* {C3113FBF-4BCB-4461-D78D-6EDFEC9593E5}
AV: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Kaspersky Internet Security *Disabled* {FB2ABE9A-01A4-4539-FCD2-C7EA1246D49E}
SP: Kaspersky Internet Security *Disabled/Updated* {7870DE5B-6DF1-4BEF-ED3D-55AD9712D958}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-10-25 do 2013-11-25 )))))))))))))))))))))))))))))))
.
.
2013-11-25 17:46 . 2013-11-25 17:46 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2013-11-25 17:46 . 2013-11-25 17:46 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-11-25 17:46 . 2013-11-25 17:46 -------- d-----w- c:\users\Administrator\AppData\Local\temp
2013-11-23 22:36 . 2013-11-23 22:36 280752 ----a-w- c:\programdata\Microsoft\Windows\Sqm\Manifest\Sqm10226.bin
2013-11-22 21:08 . 2013-11-25 17:40 -------- d-----w- c:\users\Martin\AppData\Local\CrashDumps
2013-11-21 18:39 . 2013-11-21 18:39 -------- d-----w- c:\windows\ERUNT
2013-11-21 15:03 . 2013-11-21 18:31 -------- d-----w- C:\AdwCleaner
2013-11-21 14:59 . 2013-11-21 14:59 -------- d-----w- c:\users\Martin\AppData\Local\ASUS
2013-11-21 14:32 . 2013-11-21 14:32 -------- d-----w- c:\users\Martin\AppData\Roaming\Malwarebytes
2013-11-21 14:31 . 2013-11-21 14:31 -------- d-----w- c:\programdata\Malwarebytes
2013-11-21 14:31 . 2013-11-21 14:31 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2013-11-21 14:31 . 2013-04-04 13:50 25928 ----a-w- c:\windows\system32\drivers\mbam.sys
2013-11-21 14:31 . 2013-11-21 14:31 -------- d-----w- c:\users\Martin\AppData\Local\Programs
2013-11-13 22:07 . 2013-11-05 22:58 78296 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2013-11-13 19:10 . 2013-08-23 07:22 2062848 ----a-w- c:\windows\system32\d3d11.dll
2013-11-13 19:10 . 2013-08-23 01:44 1711616 ----a-w- c:\windows\SysWow64\d3d11.dll
2013-11-13 19:10 . 2013-10-01 23:37 2035712 ----a-w- c:\windows\SysWow64\authui.dll
2013-11-13 19:10 . 2013-10-01 23:26 2304512 ----a-w- c:\windows\system32\authui.dll
2013-11-13 16:37 . 2013-10-12 08:43 19269632 ----a-w- c:\windows\system32\mshtml.dll
2013-11-09 22:03 . 2013-11-09 22:03 -------- d-----w- c:\users\Martin\AppData\Local\VNT
2013-11-09 21:56 . 2013-11-09 21:56 -------- d-----w- c:\program files (x86)\VNT
2013-11-09 01:05 . 2013-11-09 01:05 -------- d-----w- c:\users\Public\CyberLink
2013-11-09 01:05 . 2013-11-09 01:05 -------- d-----w- c:\programdata\CyberLink
2013-11-09 01:05 . 2013-11-09 01:05 -------- d-----w- c:\users\Martin\AppData\Roaming\CyberLink
2013-11-08 14:31 . 2013-11-08 14:31 -------- d-----w- c:\program files (x86)\The KMPlayer
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-11-25 16:37 . 2013-07-16 16:58 408 ----a-w- c:\users\Martin\AppData\Roaming\sp_data.sys
2013-11-13 22:00 . 2013-07-18 13:19 82896128 ----a-w- c:\windows\system32\MRT.exe
2013-10-11 11:24 . 2012-07-25 13:53 29280 ----a-w- c:\windows\system32\drivers\klmouflt.sys
2013-10-11 11:24 . 2012-05-25 18:38 29280 ----a-w- c:\windows\system32\drivers\klkbdflt.sys
2013-10-11 11:24 . 2013-07-22 09:02 625760 ----a-w- c:\windows\system32\drivers\klif.sys
2013-10-11 11:24 . 2012-06-19 16:28 7717984 ----a-w- c:\windows\system32\drivers\kl1.sys
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{5054562D-5247-006A-76A7-7A786E7484D7}]
c:\program files (x86)\AskPartnerNetwork\Toolbar\PTV-RG\Passport.dll [BU]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
"{5054562D-5247-006A-76A7-7A786E7484D7}"= "c:\program files (x86)\AskPartnerNetwork\Toolbar\PTV-RG\Passport.dll" [BU]
.
[HKEY_CLASSES_ROOT\clsid\{5054562d-5247-006a-76a7-7a786e7484d7}]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe" [2013-05-10 37960]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-04-04 958576]
"RemoteControl10"="c:\program files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe" [2012-03-28 91432]
"ASUSWebStorage"="c:\program files (x86)\ASUS\WebStorage Sync Agent\1.1.9.120\AsusWSPanel.exe" [2012-08-28 3417984]
"AVP"="c:\program files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\runner_avp.exe" [2013-07-22 24504]
"Xerox PanelMgr"="c:\windows\Xerox\PanelMgr\ssmmgr.exe" [2009-12-21 626688]
"VNT"="c:\program files (x86)\VNT\vntldr.exe" [2013-11-08 202192]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\StartUp\
AsusVibeLauncher.lnk - c:\program files (x86)\ASUS\AsusVibe\AsusVibeLauncher.exe /start [2012-10-23 549040]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"EnableUIADesktopToggle"= 0 (0x0)
"EnableCursorSuppression"= 1 (0x1)
"ConsentPromptBehaviorUser"= 3 (0x3)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
"AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring"=dword:00000001
.
R0 klelam;klelam;c:\windows\system32\DRIVERS\klelam.sys;c:\windows\SYSNATIVE\DRIVERS\klelam.sys [x]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R3 AthBTPort;Qualcomm Atheros Virtual Bluetooth Class;c:\windows\system32\DRIVERS\btath_flt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_flt.sys [x]
R3 ATHDFU;Atheros Valkyrie USB BootROM;c:\windows\System32\Drivers\AthDfu.sys;c:\windows\SYSNATIVE\Drivers\AthDfu.sys [x]
R3 BTATH_A2DP;Bluetooth A2DP Audio Driver;c:\windows\system32\drivers\btath_a2dp.sys;c:\windows\SYSNATIVE\drivers\btath_a2dp.sys [x]
R3 btath_avdt;Qualcomm Atheros Bluetooth AVDT Service;c:\windows\system32\drivers\btath_avdt.sys;c:\windows\SYSNATIVE\drivers\btath_avdt.sys [x]
R3 BTATH_BUS;Qualcomm Atheros Bluetooth Bus;c:\windows\System32\drivers\btath_bus.sys;c:\windows\SYSNATIVE\drivers\btath_bus.sys [x]
R3 BTATH_HCRP;Bluetooth HCRP Server driver;c:\windows\System32\drivers\btath_hcrp.sys;c:\windows\SYSNATIVE\drivers\btath_hcrp.sys [x]
R3 BTATH_LWFLT;Bluetooth LWFLT Device;c:\windows\system32\DRIVERS\btath_lwflt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_lwflt.sys [x]
R3 BTATH_RCP;Bluetooth AVRCP Device;c:\windows\System32\drivers\btath_rcp.sys;c:\windows\SYSNATIVE\drivers\btath_rcp.sys [x]
R3 BthLEEnum;Ovladač úspory energie technologie Bluetooth;c:\windows\system32\DRIVERS\BthLEEnum.sys;c:\windows\SYSNATIVE\DRIVERS\BthLEEnum.sys [x]
R3 MotioninJoyXFilter;MotioninJoy Virtual Xinput device Filter Driver;c:\windows\System32\drivers\MijXfilt.sys;c:\windows\SYSNATIVE\drivers\MijXfilt.sys [x]
S0 iaStorA;iaStorA;c:\windows\System32\drivers\iaStorA.sys;c:\windows\SYSNATIVE\drivers\iaStorA.sys [x]
S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys;c:\windows\SYSNATIVE\DRIVERS\nvpciflt.sys [x]
S1 ATKWMIACPIIO;ATKWMIACPI Driver;c:\program files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys;c:\program files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [x]
S1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;c:\windows\system32\DRIVERS\klim6.sys;c:\windows\SYSNATIVE\DRIVERS\klim6.sys [x]
S1 klwfp;klwfp;c:\windows\system32\DRIVERS\klwfp.sys;c:\windows\SYSNATIVE\DRIVERS\klwfp.sys [x]
S1 kneps;kneps;c:\windows\system32\DRIVERS\kneps.sys;c:\windows\SYSNATIVE\DRIVERS\kneps.sys [x]
S2 ASMMAP64;ASMMAP64;c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys;c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [x]
S2 ASUS InstantOn;ASUS InstantOn Service;c:\program files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe;c:\program files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe [x]
S2 AtherosSvc;AtherosSvc;c:\windows\system32\AdminService.exe;c:\windows\SYSNATIVE\AdminService.exe [x]
S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;c:\program files\Intel\iCLS Client\HeciServer.exe;c:\program files\Intel\iCLS Client\HeciServer.exe [x]
S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [x]
S2 MBAMScheduler;MBAMScheduler;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [x]
S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [x]
S2 SSPORT;SSPORT;c:\windows\system32\Drivers\SSPORT.sys;c:\windows\SYSNATIVE\Drivers\SSPORT.sys [x]
S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x]
S3 AiCharger;ASUS Charger Driver;c:\windows\system32\DRIVERS\AiCharger.sys;c:\windows\SYSNATIVE\DRIVERS\AiCharger.sys [x]
S3 ATP;ASUS PS/2 Port Input Device;c:\windows\System32\drivers\AsusTP.sys;c:\windows\SYSNATIVE\drivers\AsusTP.sys [x]
S3 BtFilter;BtFilter;c:\windows\system32\DRIVERS\btfilter.sys;c:\windows\SYSNATIVE\DRIVERS\btfilter.sys [x]
S3 HIDSwitch;ASUS Wireless Radio Control;c:\windows\System32\drivers\AsHIDSwitch64.sys;c:\windows\SYSNATIVE\drivers\AsHIDSwitch64.sys [x]
S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x]
S3 klkbdflt;Kaspersky Lab KLKBDFLT;c:\windows\system32\DRIVERS\klkbdflt.sys;c:\windows\SYSNATIVE\DRIVERS\klkbdflt.sys [x]
S3 klmouflt;Kaspersky Lab KLMOUFLT;c:\windows\system32\DRIVERS\klmouflt.sys;c:\windows\SYSNATIVE\DRIVERS\klmouflt.sys [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x]
S3 RSBASTOR;Realtek PCIE CardReader Driver - BA;c:\windows\system32\DRIVERS\RtsBaStor.sys;c:\windows\SYSNATIVE\DRIVERS\RtsBaStor.sys [x]
S3 RTL8168;Realtek 8168 NT Driver;c:\windows\system32\DRIVERS\Rt630x64.sys;c:\windows\SYSNATIVE\DRIVERS\Rt630x64.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2013-11-17 12:51 1210320 ----a-w- c:\program files (x86)\Google\Chrome\Application\31.0.1650.57\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2013-11-25 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-07-22 08:39]
.
2013-11-25 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-07-22 08:39]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{5054562D-5247-006A-76A7-7A786E7484D7}]
c:\program files (x86)\AskPartnerNetwork\Toolbar\PTV-RG\Passport_x64.dll [BU]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{5054562D-5247-006A-76A7-7A786E7484D7}"= "c:\program files (x86)\AskPartnerNetwork\Toolbar\PTV-RG\Passport_x64.dll" [BU]
.
[HKEY_CLASSES_ROOT\CLSID\{5054562D-5247-006A-76A7-7A786E7484D7}]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\AsusWSShellExt_B]
@="{6D4133E5-0742-4ADC-8A8C-9303440F7190}"
[HKEY_CLASSES_ROOT\CLSID\{6D4133E5-0742-4ADC-8A8C-9303440F7190}]
2012-03-13 09:23 1500672 ----a-w- c:\program files (x86)\ASUS\WebStorage Sync Agent\1.1.9.120\AsusWSShellExt64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\AsusWSShellExt_O]
@="{64174815-8D98-4CE6-8646-4C039977D808}"
[HKEY_CLASSES_ROOT\CLSID\{64174815-8D98-4CE6-8646-4C039977D808}]
2012-03-13 09:23 1500672 ----a-w- c:\program files (x86)\ASUS\WebStorage Sync Agent\1.1.9.120\AsusWSShellExt64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\AsusWSShellExt_U]
@="{1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4D}"
[HKEY_CLASSES_ROOT\CLSID\{1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4D}]
2012-03-13 09:23 1500672 ----a-w- c:\program files (x86)\ASUS\WebStorage Sync Agent\1.1.9.120\AsusWSShellExt64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2012-08-31 170304]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2012-08-31 398656]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2012-08-20 13192848]
"BtPreLoad"="c:\program files (x86)\Bluetooth Suite\BtPreLoad.exe" [BU]
"ACMON"="c:\program files (x86)\ASUS\Splendid\ACMON.exe" [2012-08-24 107192]
"Nvtmru"="c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [2013-07-03 1028896]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=c:\windows\System32\nvinitx.dll
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.seznam.cz/
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: Add to Anti-Banner - c:\program files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ie_banner_deny.htm
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~1\Office14\EXCEL.EXE/3000
IE: Od&eslat do aplikace OneNote - c:\progra~2\MICROS~1\Office14\ONBttnIE.dll/105
TCP: DhcpNameServer = 10.0.0.138
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Toolbar-Locked - (no file)
Toolbar-Locked - (no file)
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
@Denied: (A) (Everyone)
"Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
@Denied: (A) (Everyone)
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]
"Key"="ActionsPane3"
"Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
@SACL=(02 0000)
.
Celkový čas: 2013-11-25 18:52:56
ComboFix-quarantined-files.txt 2013-11-25 17:52
.
Před spuštěním: 238,251,077,632 bytes free
Po spuštění: 238,194,638,848 bytes free
.
- - End Of File - - 015F051C46761C18232CDA08563754A1

Martin95k
nováček
Příspěvky: 18
Registrován: listopad 13
Pohlaví: Nespecifikováno
Stav:
Offline

Re: We're sorry... ... but your computer or network may be

Příspěvekod Martin95k » 25 lis 2013 19:01

U toho Virustotal jsem nepochopil, jaké složky mám skenovat.


Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: We're sorry... ... but your computer or network may be

Příspěvekod jaro3 » 26 lis 2013 10:49

Vypni rez. ochranu u antiviru a antispywaru,příp. firewall..

Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:

Kód: Vybrat vše

ClearJavaCache::

KillAll::
File::
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job

Folder::
c:\program files (x86)\AskPartnerNetwork
c:\program files (x86)\Skype\Updater
c:\program files (x86)\Google\Update

Driver::
SkypeUpdate


Registry::
[-HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{5054562D-5247-006A-76A7-7A786E7484D7}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
"{5054562D-5247-006A-76A7-7A786E7484D7}"=-
[-HKEY_CLASSES_ROOT\clsid\{5054562d-5247-006a-76a7-7a786e7484d7}]
[-HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{5054562D-5247-006A-76A7-7A786E7484D7}]

RegLock::
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
@SACL=(02 0000)


Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.

Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT

Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Martin95k
nováček
Příspěvky: 18
Registrován: listopad 13
Pohlaví: Nespecifikováno
Stav:
Offline

Re: We're sorry... ... but your computer or network may be

Příspěvekod Martin95k » 26 lis 2013 19:11

ComboFix 13-11-23.02 - Martin 26/11/2013 18:48:30.8.4 - x64
Microsoft Windows 8 6.2.9200.0.1250.420.1029.18.3981.2406 [GMT 1:00]
Spuštěný z: c:\users\Martin\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\Martin\Desktop\CFScript.txt
AV: Kaspersky Internet Security *Disabled/Updated* {C3113FBF-4BCB-4461-D78D-6EDFEC9593E5}
AV: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Kaspersky Internet Security *Disabled* {FB2ABE9A-01A4-4539-FCD2-C7EA1246D49E}
SP: Kaspersky Internet Security *Disabled/Updated* {7870DE5B-6DF1-4BEF-ED3D-55AD9712D958}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
FILE ::
"c:\windows\Tasks\GoogleUpdateTaskMachineCore.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA.job"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files (x86)\Google\Update
c:\program files (x86)\Google\Update\1.3.21.165\GoogleCrashHandler.exe
c:\program files (x86)\Google\Update\1.3.21.165\GoogleCrashHandler64.exe
c:\program files (x86)\Google\Update\1.3.21.165\GoogleUpdate.exe
c:\program files (x86)\Google\Update\1.3.21.165\GoogleUpdateBroker.exe
c:\program files (x86)\Google\Update\1.3.21.165\GoogleUpdateHelper.msi
c:\program files (x86)\Google\Update\1.3.21.165\GoogleUpdateOnDemand.exe
c:\program files (x86)\Google\Update\1.3.21.165\GoogleUpdateSetup.exe
c:\program files (x86)\Google\Update\1.3.21.165\goopdate.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_am.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_ar.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_bg.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_bn.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_ca.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_cs.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_da.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_de.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_el.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_en-GB.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_en.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_es-419.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_es.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_et.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_fa.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_fi.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_fil.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_fr.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_gu.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_hi.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_hr.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_hu.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_id.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_is.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_it.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_iw.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_ja.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_kn.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_ko.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_lt.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_lv.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_ml.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_mr.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_ms.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_nl.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_no.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_pl.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_pt-BR.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_pt-PT.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_ro.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_ru.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_sk.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_sl.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_sr.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_sv.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_sw.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_ta.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_te.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_th.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_tr.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_uk.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_ur.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_vi.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_zh-CN.dll
c:\program files (x86)\Google\Update\1.3.21.165\goopdateres_zh-TW.dll
c:\program files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll
c:\program files (x86)\Google\Update\1.3.21.165\psmachine.dll
c:\program files (x86)\Google\Update\1.3.21.165\psuser.dll
c:\program files (x86)\Google\Update\Download\{430FD4D0-B729-4F61-AA34-91526481799D}\1.3.21.165\GoogleUpdateSetup.exe
c:\program files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\31.0.1650.57\31.0.1650.57_30.0.1599.101_chrome_updater.exe
c:\program files (x86)\Google\Update\GoogleUpdate.exe
c:\program files (x86)\Skype\Updater
c:\program files (x86)\Skype\Updater\Updater.dll
c:\program files (x86)\Skype\Updater\Updater.exe
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_SkypeUpdate
-------\Legacy_gupdate
-------\Legacy_gupdatem
-------\Legacy_gupdate
-------\Legacy_gupdatem
-------\Service_gupdate
-------\Service_gupdatem
-------\Service_gupdate
-------\Service_gupdatem
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-10-26 do 2013-11-26 )))))))))))))))))))))))))))))))
.
.
2013-11-26 17:56 . 2013-11-26 17:56 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2013-11-26 17:56 . 2013-11-26 17:56 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-11-26 17:56 . 2013-11-26 17:56 -------- d-----w- c:\users\Administrator\AppData\Local\temp
2013-11-25 20:21 . 2013-11-25 20:21 -------- dc----w- c:\users\Martin\AppData\Local\MigWiz
2013-11-23 22:36 . 2013-11-23 22:36 280752 ----a-w- c:\programdata\Microsoft\Windows\Sqm\Manifest\Sqm10226.bin
2013-11-22 21:08 . 2013-11-26 17:49 -------- d-----w- c:\users\Martin\AppData\Local\CrashDumps
2013-11-21 18:39 . 2013-11-21 18:39 -------- d-----w- c:\windows\ERUNT
2013-11-21 15:03 . 2013-11-21 18:31 -------- d-----w- C:\AdwCleaner
2013-11-21 14:59 . 2013-11-21 14:59 -------- d-----w- c:\users\Martin\AppData\Local\ASUS
2013-11-21 14:32 . 2013-11-21 14:32 -------- d-----w- c:\users\Martin\AppData\Roaming\Malwarebytes
2013-11-21 14:31 . 2013-11-21 14:31 -------- d-----w- c:\programdata\Malwarebytes
2013-11-21 14:31 . 2013-11-21 14:31 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2013-11-21 14:31 . 2013-04-04 13:50 25928 ----a-w- c:\windows\system32\drivers\mbam.sys
2013-11-21 14:31 . 2013-11-21 14:31 -------- d-----w- c:\users\Martin\AppData\Local\Programs
2013-11-13 22:07 . 2013-11-05 22:58 78296 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2013-11-13 19:10 . 2013-08-23 07:22 2062848 ----a-w- c:\windows\system32\d3d11.dll
2013-11-13 19:10 . 2013-08-23 01:44 1711616 ----a-w- c:\windows\SysWow64\d3d11.dll
2013-11-13 19:10 . 2013-10-01 23:37 2035712 ----a-w- c:\windows\SysWow64\authui.dll
2013-11-13 19:10 . 2013-10-01 23:26 2304512 ----a-w- c:\windows\system32\authui.dll
2013-11-13 16:37 . 2013-10-12 08:43 19269632 ----a-w- c:\windows\system32\mshtml.dll
2013-11-09 22:03 . 2013-11-09 22:03 -------- d-----w- c:\users\Martin\AppData\Local\VNT
2013-11-09 21:56 . 2013-11-09 21:56 -------- d-----w- c:\program files (x86)\VNT
2013-11-09 01:05 . 2013-11-09 01:05 -------- d-----w- c:\users\Public\CyberLink
2013-11-09 01:05 . 2013-11-09 01:05 -------- d-----w- c:\programdata\CyberLink
2013-11-09 01:05 . 2013-11-09 01:05 -------- d-----w- c:\users\Martin\AppData\Roaming\CyberLink
2013-11-08 14:31 . 2013-11-25 19:05 -------- d-----w- c:\program files (x86)\The KMPlayer
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-11-26 18:01 . 2013-07-16 16:58 408 ----a-w- c:\users\Martin\AppData\Roaming\sp_data.sys
2013-11-13 22:00 . 2013-07-18 13:19 82896128 ----a-w- c:\windows\system32\MRT.exe
2013-10-11 11:24 . 2012-07-25 13:53 29280 ----a-w- c:\windows\system32\drivers\klmouflt.sys
2013-10-11 11:24 . 2012-05-25 18:38 29280 ----a-w- c:\windows\system32\drivers\klkbdflt.sys
2013-10-11 11:24 . 2013-07-22 09:02 625760 ----a-w- c:\windows\system32\drivers\klif.sys
2013-10-11 11:24 . 2012-06-19 16:28 7717984 ----a-w- c:\windows\system32\drivers\kl1.sys
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{5054562D-5247-006A-76A7-7A786E7484D7}]
c:\program files (x86)\AskPartnerNetwork\Toolbar\PTV-RG\Passport.dll [BU]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe" [2013-05-10 37960]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-04-04 958576]
"RemoteControl10"="c:\program files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe" [2012-03-28 91432]
"ASUSWebStorage"="c:\program files (x86)\ASUS\WebStorage Sync Agent\1.1.9.120\AsusWSPanel.exe" [2012-08-28 3417984]
"AVP"="c:\program files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\runner_avp.exe" [2013-07-22 24504]
"Xerox PanelMgr"="c:\windows\Xerox\PanelMgr\ssmmgr.exe" [2009-12-21 626688]
"VNT"="c:\program files (x86)\VNT\vntldr.exe" [2013-11-08 202192]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\StartUp\
AsusVibeLauncher.lnk - c:\program files (x86)\ASUS\AsusVibe\AsusVibeLauncher.exe /start [2012-10-23 549040]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"EnableUIADesktopToggle"= 0 (0x0)
"EnableCursorSuppression"= 1 (0x1)
"ConsentPromptBehaviorUser"= 3 (0x3)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
"AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring"=dword:00000001
.
R0 klelam;klelam;c:\windows\system32\DRIVERS\klelam.sys;c:\windows\SYSNATIVE\DRIVERS\klelam.sys [x]
R3 AthBTPort;Qualcomm Atheros Virtual Bluetooth Class;c:\windows\system32\DRIVERS\btath_flt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_flt.sys [x]
R3 ATHDFU;Atheros Valkyrie USB BootROM;c:\windows\System32\Drivers\AthDfu.sys;c:\windows\SYSNATIVE\Drivers\AthDfu.sys [x]
R3 BTATH_A2DP;Bluetooth A2DP Audio Driver;c:\windows\system32\drivers\btath_a2dp.sys;c:\windows\SYSNATIVE\drivers\btath_a2dp.sys [x]
R3 btath_avdt;Qualcomm Atheros Bluetooth AVDT Service;c:\windows\system32\drivers\btath_avdt.sys;c:\windows\SYSNATIVE\drivers\btath_avdt.sys [x]
R3 BTATH_BUS;Qualcomm Atheros Bluetooth Bus;c:\windows\System32\drivers\btath_bus.sys;c:\windows\SYSNATIVE\drivers\btath_bus.sys [x]
R3 BTATH_HCRP;Bluetooth HCRP Server driver;c:\windows\System32\drivers\btath_hcrp.sys;c:\windows\SYSNATIVE\drivers\btath_hcrp.sys [x]
R3 BTATH_LWFLT;Bluetooth LWFLT Device;c:\windows\system32\DRIVERS\btath_lwflt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_lwflt.sys [x]
R3 BTATH_RCP;Bluetooth AVRCP Device;c:\windows\System32\drivers\btath_rcp.sys;c:\windows\SYSNATIVE\drivers\btath_rcp.sys [x]
R3 BthLEEnum;Ovladač úspory energie technologie Bluetooth;c:\windows\system32\DRIVERS\BthLEEnum.sys;c:\windows\SYSNATIVE\DRIVERS\BthLEEnum.sys [x]
R3 MotioninJoyXFilter;MotioninJoy Virtual Xinput device Filter Driver;c:\windows\System32\drivers\MijXfilt.sys;c:\windows\SYSNATIVE\drivers\MijXfilt.sys [x]
S0 iaStorA;iaStorA;c:\windows\System32\drivers\iaStorA.sys;c:\windows\SYSNATIVE\drivers\iaStorA.sys [x]
S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys;c:\windows\SYSNATIVE\DRIVERS\nvpciflt.sys [x]
S1 ATKWMIACPIIO;ATKWMIACPI Driver;c:\program files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys;c:\program files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [x]
S1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;c:\windows\system32\DRIVERS\klim6.sys;c:\windows\SYSNATIVE\DRIVERS\klim6.sys [x]
S1 klwfp;klwfp;c:\windows\system32\DRIVERS\klwfp.sys;c:\windows\SYSNATIVE\DRIVERS\klwfp.sys [x]
S1 kneps;kneps;c:\windows\system32\DRIVERS\kneps.sys;c:\windows\SYSNATIVE\DRIVERS\kneps.sys [x]
S2 ASMMAP64;ASMMAP64;c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys;c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [x]
S2 ASUS InstantOn;ASUS InstantOn Service;c:\program files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe;c:\program files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe [x]
S2 AtherosSvc;AtherosSvc;c:\windows\system32\AdminService.exe;c:\windows\SYSNATIVE\AdminService.exe [x]
S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;c:\program files\Intel\iCLS Client\HeciServer.exe;c:\program files\Intel\iCLS Client\HeciServer.exe [x]
S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [x]
S2 MBAMScheduler;MBAMScheduler;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [x]
S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [x]
S2 SSPORT;SSPORT;c:\windows\system32\Drivers\SSPORT.sys;c:\windows\SYSNATIVE\Drivers\SSPORT.sys [x]
S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x]
S3 AiCharger;ASUS Charger Driver;c:\windows\system32\DRIVERS\AiCharger.sys;c:\windows\SYSNATIVE\DRIVERS\AiCharger.sys [x]
S3 ATP;ASUS PS/2 Port Input Device;c:\windows\System32\drivers\AsusTP.sys;c:\windows\SYSNATIVE\drivers\AsusTP.sys [x]
S3 BtFilter;BtFilter;c:\windows\system32\DRIVERS\btfilter.sys;c:\windows\SYSNATIVE\DRIVERS\btfilter.sys [x]
S3 HIDSwitch;ASUS Wireless Radio Control;c:\windows\System32\drivers\AsHIDSwitch64.sys;c:\windows\SYSNATIVE\drivers\AsHIDSwitch64.sys [x]
S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x]
S3 klkbdflt;Kaspersky Lab KLKBDFLT;c:\windows\system32\DRIVERS\klkbdflt.sys;c:\windows\SYSNATIVE\DRIVERS\klkbdflt.sys [x]
S3 klmouflt;Kaspersky Lab KLMOUFLT;c:\windows\system32\DRIVERS\klmouflt.sys;c:\windows\SYSNATIVE\DRIVERS\klmouflt.sys [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x]
S3 RSBASTOR;Realtek PCIE CardReader Driver - BA;c:\windows\system32\DRIVERS\RtsBaStor.sys;c:\windows\SYSNATIVE\DRIVERS\RtsBaStor.sys [x]
S3 RTL8168;Realtek 8168 NT Driver;c:\windows\system32\DRIVERS\Rt630x64.sys;c:\windows\SYSNATIVE\DRIVERS\Rt630x64.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2013-11-17 12:51 1210320 ----a-w- c:\program files (x86)\Google\Chrome\Application\31.0.1650.57\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\AsusWSShellExt_B]
@="{6D4133E5-0742-4ADC-8A8C-9303440F7190}"
[HKEY_CLASSES_ROOT\CLSID\{6D4133E5-0742-4ADC-8A8C-9303440F7190}]
2012-03-13 09:23 1500672 ----a-w- c:\program files (x86)\ASUS\WebStorage Sync Agent\1.1.9.120\AsusWSShellExt64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\AsusWSShellExt_O]
@="{64174815-8D98-4CE6-8646-4C039977D808}"
[HKEY_CLASSES_ROOT\CLSID\{64174815-8D98-4CE6-8646-4C039977D808}]
2012-03-13 09:23 1500672 ----a-w- c:\program files (x86)\ASUS\WebStorage Sync Agent\1.1.9.120\AsusWSShellExt64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\AsusWSShellExt_U]
@="{1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4D}"
[HKEY_CLASSES_ROOT\CLSID\{1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4D}]
2012-03-13 09:23 1500672 ----a-w- c:\program files (x86)\ASUS\WebStorage Sync Agent\1.1.9.120\AsusWSShellExt64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2012-08-31 170304]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2012-08-31 398656]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2012-08-20 13192848]
"BtPreLoad"="c:\program files (x86)\Bluetooth Suite\BtPreLoad.exe" [BU]
"ACMON"="c:\program files (x86)\ASUS\Splendid\ACMON.exe" [2012-08-24 107192]
"Nvtmru"="c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [2013-07-03 1028896]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=c:\windows\System32\nvinitx.dll
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.seznam.cz/
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: Add to Anti-Banner - c:\program files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ie_banner_deny.htm
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~1\Office14\EXCEL.EXE/3000
IE: Od&eslat do aplikace OneNote - c:\progra~2\MICROS~1\Office14\ONBttnIE.dll/105
TCP: DhcpNameServer = 10.0.0.138
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Toolbar-Locked - (no file)
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
@Denied: (A) (Everyone)
"Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
@Denied: (A) (Everyone)
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]
"Key"="ActionsPane3"
"Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd"
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\Classic Shell\ClassicShellService.exe
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
c:\program files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe
c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
c:\program files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
c:\program files (x86)\ASUS\ASUS InstantOn\InsOnWMI.exe
c:\program files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
c:\program files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
c:\program files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
c:\program files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe
c:\windows\SysWOW64\ACEngSvr.exe
c:\program files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe
c:\program files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe
c:\users\Martin\AppData\Local\VNT\vntldr.exe
.
**************************************************************************
.
Celkový čas: 2013-11-26 19:05:55 - počítač byl restartován
ComboFix-quarantined-files.txt 2013-11-26 18:05
ComboFix2.txt 2013-11-25 21:02
ComboFix3.txt 2013-11-25 17:52
.
Před spuštěním: 238,079,705,088 bytes free
Po spuštění: 237,828,169,728 bytes free
.
- - End Of File - - E55568A4BE410FD1B1458620A462EC5D


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 114 hostů