Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o pomoc pro "motji" !!!!!!!!!!!!!!

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Uživatelský avatar
marco37
Návštěvník
Návštěvník
Příspěvky: 150
Registrován: 09 úno 2010 17:09
Bydliště: Česká Republika - středočeský
Kontaktovat uživatele:

Re: Prosím o pomoc pro "motji" !!!!!!!!!!!!!!

#121 Příspěvek od marco37 »

Dobrý den, druhý log jsem musel nahrát na "letecka posta", obsahoval příliš mnoho znaků.... :?:
(:Nevím,jestli to tu už někdy někdo psal,
ale moc děkuji všem,kteří svými schopnostmi umí udělat radost druhým,
bez ohledu na ztrátu svého času
:)

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Prosím o pomoc pro "motji" !!!!!!!!!!!!!!

#122 Příspěvek od motji »

Omlouvám se.

:arrow: Spustte OTL
-do bílého okna dole skopírujte tento skript:

Kód: Vybrat vše

:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
IE - HKU\S-1-5-21-1935655697-57989841-1801674531-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yandex.ru/?clid=133922
IE - HKU\S-1-5-21-1935655697-57989841-1801674531-1004\..\SearchScopes\Yandex: "URL" = 
IE - HKU\S-1-5-21-1935655697-57989841-1801674531-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1935655697-57989841-1801674531-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=;ftp=;https=;
 FF - prefs.js..browser.search.defaultenginename: "Yandex"
FF - prefs.js..browser.search.defaultthis.engineName: "Ashampoo DE Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2481020&SearchSource=3&q={searchTerms}"
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..keyword.URL: "http://yandex.ru/yandsearch?clid=133927&text="
FF - prefs.js..network.proxy.gopher: ""
FF - prefs.js..network.proxy.gopher_port: 0
FF - prefs.js..network.proxy.no_proxies_on: "*.local"
FF - prefs.js..network.proxy.share_proxy_settings: true
@Alternate Data Stream - 88 bytes -> C:\Documents and Settings\User\Plocha\Russia TV.m3u:SummaryInformation

:files
C:\WINDOWS\system32\*.tmp.dll /s
C:\WINDOWS\system32\SET*.tmp /s
C:\WINDOWS\*.tmp /s
C:\Documents and Settings\User\Data aplikací\Yandex
 C:\Documents and Settings\All Users\Data aplikací\Yandex
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex

:commands
[emptytemp]
[EMPTYFLASH]
[Reboot]

-klikněte na tlačítko opravit.
-Následně se pc restartuje.
- Log vložte zde :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Uživatelský avatar
marco37
Návštěvník
Návštěvník
Příspěvky: 150
Registrován: 09 úno 2010 17:09
Bydliště: Česká Republika - středočeský
Kontaktovat uživatele:

Re: Prosím o pomoc pro "motji" !!!!!!!!!!!!!!

#123 Příspěvek od marco37 »

není proč se omlouvat... :wink:

========== OTL ==========
No active process named explorer.exe was found!
HKU\S-1-5-21-1935655697-57989841-1801674531-1004\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
Registry key HKEY_USERS\S-1-5-21-1935655697-57989841-1801674531-1004\Software\Microsoft\Internet Explorer\SearchScopes\ deleted successfully.
HKU\S-1-5-21-1935655697-57989841-1801674531-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable|dword:0 /E : value set successfully!
HKU\S-1-5-21-1935655697-57989841-1801674531-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer| /E : value set successfully!
Prefs.js: "Yandex" removed from browser.search.defaultenginename
Prefs.js: "Ashampoo DE Customized Web Search" removed from browser.search.defaultthis.engineName
Prefs.js: "http://search.conduit.com/ResultsExt.as ... earchTerms}" removed from browser.search.defaulturl
Prefs.js: "Ask.com" removed from browser.search.order.1
Prefs.js: "http://yandex.ru/yandsearch?clid=133927&text=" removed from keyword.URL
Prefs.js: "" removed from network.proxy.gopher
Prefs.js: 0 removed from network.proxy.gopher_port
Prefs.js: "*.local" removed from network.proxy.no_proxies_on
Prefs.js: true removed from network.proxy.share_proxy_settings
ADS C:\Documents and Settings\User\Plocha\Russia TV.m3u:SummaryInformation deleted successfully.
========== FILES ==========
File\Folder C:\WINDOWS\system32\*.tmp.dll not found.
File\Folder C:\WINDOWS\system32\SET*.tmp not found.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP225.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP393.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP56.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAPF.tmp folder moved successfully.
C:\Documents and Settings\User\Data aplikací\Yandex folder moved successfully.
C:\Documents and Settings\All Users\Data aplikací\Yandex folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\vb\fav folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\vb folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\presets folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{768AF365-6649-4AFC-BF09-1FEF216969BD}\wp\js folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{768AF365-6649-4AFC-BF09-1FEF216969BD}\wp\css\l-table folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{768AF365-6649-4AFC-BF09-1FEF216969BD}\wp\css\l-footer folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{768AF365-6649-4AFC-BF09-1FEF216969BD}\wp\css\l-content folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{768AF365-6649-4AFC-BF09-1FEF216969BD}\wp\css\g-clear folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{768AF365-6649-4AFC-BF09-1FEF216969BD}\wp\css\b-video folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{768AF365-6649-4AFC-BF09-1FEF216969BD}\wp\css\b-title folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{768AF365-6649-4AFC-BF09-1FEF216969BD}\wp\css\b-suggest-menu folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{768AF365-6649-4AFC-BF09-1FEF216969BD}\wp\css\b-suggest\_ie folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{768AF365-6649-4AFC-BF09-1FEF216969BD}\wp\css\b-suggest folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{768AF365-6649-4AFC-BF09-1FEF216969BD}\wp\css\b-menu-ico folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{768AF365-6649-4AFC-BF09-1FEF216969BD}\wp\css\b-logo folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{768AF365-6649-4AFC-BF09-1FEF216969BD}\wp\css\b-footer-links folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{768AF365-6649-4AFC-BF09-1FEF216969BD}\wp\css\b-footer folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{768AF365-6649-4AFC-BF09-1FEF216969BD}\wp\css folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{768AF365-6649-4AFC-BF09-1FEF216969BD}\wp folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{768AF365-6649-4AFC-BF09-1FEF216969BD}\locale\ru folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{768AF365-6649-4AFC-BF09-1FEF216969BD}\locale folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{768AF365-6649-4AFC-BF09-1FEF216969BD}\icons folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{768AF365-6649-4AFC-BF09-1FEF216969BD} folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\weather folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\traffic folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\services folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\readability folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\quote folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\locale\uk\services folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\locale\uk\quote folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\locale\uk folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\locale\tr\services folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\locale\tr\quote folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\locale\tr folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\locale\ru\services folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\locale\ru\quote folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\locale\ru folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\locale\kk\services folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\locale\kk\quote folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\locale\kk folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\locale\en\services folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\locale\en\quote folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\locale\en folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\locale\cs\services folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\locale\cs\quote folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\locale\cs folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\locale\be\services folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\locale\be\quote folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\locale\be folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\locale folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\icons\yaru folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\icons\subscription folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\icons\spelling folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\icons\spam folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\icons\search folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\icons\readability folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\icons\quote folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\icons\opinions folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\icons\money folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\icons\moikrug folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\icons\mail folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\icons\logo folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\icons\login folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\icons\ic folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\icons\geolocation folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\icons\fotki folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\icons\bookmark folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887}\icons folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{43F0DB38-3331-4DDA-8FC4-E1DD13887887} folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{4365229A-B9EC-4F4E-AA32-0248A7E53C6F}\locale\uk folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{4365229A-B9EC-4F4E-AA32-0248A7E53C6F}\locale\tr folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{4365229A-B9EC-4F4E-AA32-0248A7E53C6F}\locale\ru folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{4365229A-B9EC-4F4E-AA32-0248A7E53C6F}\locale\kk folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{4365229A-B9EC-4F4E-AA32-0248A7E53C6F}\locale\en folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{4365229A-B9EC-4F4E-AA32-0248A7E53C6F}\locale\cs folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{4365229A-B9EC-4F4E-AA32-0248A7E53C6F}\locale\be folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{4365229A-B9EC-4F4E-AA32-0248A7E53C6F}\locale folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{4365229A-B9EC-4F4E-AA32-0248A7E53C6F} folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{420BC706-A26B-4F0F-9EE2-7D42F9098540}\locale\uk folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{420BC706-A26B-4F0F-9EE2-7D42F9098540}\locale\ru folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{420BC706-A26B-4F0F-9EE2-7D42F9098540}\locale\kk folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{420BC706-A26B-4F0F-9EE2-7D42F9098540}\locale\en folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{420BC706-A26B-4F0F-9EE2-7D42F9098540}\locale\be folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{420BC706-A26B-4F0F-9EE2-7D42F9098540}\locale folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{420BC706-A26B-4F0F-9EE2-7D42F9098540}\icons folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{420BC706-A26B-4F0F-9EE2-7D42F9098540} folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{3E132821-E120-4D10-887F-4A07447EC1DF}\locale\tr folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{3E132821-E120-4D10-887F-4A07447EC1DF}\locale\ru folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{3E132821-E120-4D10-887F-4A07447EC1DF}\locale\cs folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{3E132821-E120-4D10-887F-4A07447EC1DF}\locale folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{3E132821-E120-4D10-887F-4A07447EC1DF} folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{256FEF72-87EE-487B-A067-F484AAB37F9A}\locale\ru folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{256FEF72-87EE-487B-A067-F484AAB37F9A}\locale folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{256FEF72-87EE-487B-A067-F484AAB37F9A} folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{0E9A9536-5458-48E2-B9FA-17F0CE5A1882}\locale\uk folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{0E9A9536-5458-48E2-B9FA-17F0CE5A1882}\locale\tr folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{0E9A9536-5458-48E2-B9FA-17F0CE5A1882}\locale\ru folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{0E9A9536-5458-48E2-B9FA-17F0CE5A1882}\locale\kk folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{0E9A9536-5458-48E2-B9FA-17F0CE5A1882}\locale\en folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{0E9A9536-5458-48E2-B9FA-17F0CE5A1882}\locale\cs folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{0E9A9536-5458-48E2-B9FA-17F0CE5A1882}\locale\be folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{0E9A9536-5458-48E2-B9FA-17F0CE5A1882}\locale folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{0E9A9536-5458-48E2-B9FA-17F0CE5A1882}\icons\badge folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{0E9A9536-5458-48E2-B9FA-17F0CE5A1882}\icons folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{0E9A9536-5458-48E2-B9FA-17F0CE5A1882}\data folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{0E9A9536-5458-48E2-B9FA-17F0CE5A1882}\band\css folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{0E9A9536-5458-48E2-B9FA-17F0CE5A1882}\band folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages\{0E9A9536-5458-48E2-B9FA-17F0CE5A1882} folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\packages folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\welcome\ie folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\welcome folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\toolbar folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\searchfield folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\logobutton folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\uk\welcome\ie folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\uk\welcome folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\uk\logobutton folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\uk\fastdial folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\uk\browser folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\uk\about folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\uk folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\tr\welcome\ie folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\tr\welcome folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\tr\logobutton folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\tr\icons folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\tr\fastdial folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\tr\browser folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\tr\about folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\tr folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\ru\welcome\ie folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\ru\welcome folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\ru\logobutton folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\ru\fastdial folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\ru\browser folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\ru\about folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\ru folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\kk\welcome\ie folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\kk\welcome folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\kk\logobutton folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\kk\fastdial folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\kk\browser folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\kk\about folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\kk folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\en\welcome\ie folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\en\welcome folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\en\logobutton folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\en\icons folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\en\fastdial folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\en\browser folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\en\about folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\en folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\cs\welcome\ie folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\cs\welcome folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\cs\logobutton folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\cs\icons folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\cs\fastdial folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\cs\browser folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\cs\about folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\cs folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\be\welcome\ie folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\be\welcome folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\be\logobutton folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\be\fastdial folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\be\browser folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\be\about folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale\be folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\locale folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\installer folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\ie folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\icons folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\fastdial folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\distribution folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\browser folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB}\about folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding\{03505CBE-4D10-4FD0-AC0F-DDBEDB2293AB} folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar\branding folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Toolbar folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Internet\User Data\Default folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Internet\User Data folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Internet\Application folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex\Internet folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex folder moved successfully.
========== COMMANDS ==========

[EMPTYTEMP]

User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: All Users
->Flash cache emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: LocalService
->Temp folder emptied: 66016 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: NetworkService
->Temp folder emptied: 186620 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 723137 bytes
->Java cache emptied: 319833 bytes
->FireFox cache emptied: 74504024 bytes
->Apple Safari cache emptied: 0 bytes
->Flash cache emptied: 809 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 680318 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 56363513 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 127,00 mb


[EMPTYFLASH]

User: Administrator

User: All Users
->Flash cache emptied: 0 bytes

User: Default User

User: LocalService

User: NetworkService

User: User
->Flash cache emptied: 0 bytes

Total Flash Files Cleaned = 0,00 mb


OTL by OldTimer - Version 3.2.36.2 log created on 03112012_221132

Files\Folders moved on Reboot...
File move failed. C:\WINDOWS\temp\_avast_\Webshlock.txt scheduled to be moved on reboot.
File\Folder C:\WINDOWS\temp\TMP00000003E5F47C6621A50346 not found!

Registry entries deleted on Reboot...
(:Nevím,jestli to tu už někdy někdo psal,
ale moc děkuji všem,kteří svými schopnostmi umí udělat radost druhým,
bez ohledu na ztrátu svého času
:)

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Prosím o pomoc pro "motji" !!!!!!!!!!!!!!

#124 Příspěvek od motji »

Jak je na tom počítač? :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Uživatelský avatar
marco37
Návštěvník
Návštěvník
Příspěvky: 150
Registrován: 09 úno 2010 17:09
Bydliště: Česká Republika - středočeský
Kontaktovat uživatele:

Re: Prosím o pomoc pro "motji" !!!!!!!!!!!!!!

#125 Příspěvek od marco37 »

:!: PC se mi zdá už celkem OK, ale ještě se pořád sekají videa v přehrávačích(VLC) a ve firefoxu. Když něco přehrávám , tak cca každě 2 vteřiny se to přerušuje, nebo trhá a třeba u tv online ,jeto dost nepříjemné. Ještě jsem si všiml, že padají i zásuvné moduly právě v mozille. Explorer jsem před časem odinstaloval, tak snad to nebude nějaký problem...Také jsem koukal při "kopčení" toho posledního LOG-u pro Vás, že se tam dost často objevil Yandex\Toolbar. Ten bude asi někde zalezlý a dělá neplechu...Nedavno jsem stahoval nějaký obyčejný formulář a začalo se mi to samo instalovat do PC. Myslel jsem, že jsem to odstranil Revo Uninstalerem, kde se odeberou jak programy , tak i soubory z registrů a koukám, ani ten si s ním úplně neporadil...
Motji, moc tomu nerozumím, ale pokud by to šlo, budu vděčný za dost velkou a třeba i "drastickou" očistu všeho , co by nějak zpomalovalo tento počítač a nebo bylo zbytečné pro práci s ním atd. Sice je už dost starý, ale pokud by ještě úplně "nelehl", tak na obyčejné věci bych ho rád ještě použil...Předem moc děkuji :)
(:Nevím,jestli to tu už někdy někdo psal,
ale moc děkuji všem,kteří svými schopnostmi umí udělat radost druhým,
bez ohledu na ztrátu svého času
:)

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Prosím o pomoc pro "motji" !!!!!!!!!!!!!!

#126 Příspěvek od motji »

Dobře, prosím o nový log z OTL - scan... jen mě omluvte, že budu odpovídat se zpožděním, teď u počítače moc času netrávím
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Uživatelský avatar
marco37
Návštěvník
Návštěvník
Příspěvky: 150
Registrován: 09 úno 2010 17:09
Bydliště: Česká Republika - středočeský
Kontaktovat uživatele:

Re: Prosím o pomoc pro "motji" !!!!!!!!!!!!!!

#127 Příspěvek od marco37 »

All processes killed
========== OTL ==========
No active process named explorer.exe was found!
HKU\S-1-5-21-1935655697-57989841-1801674531-1004\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
Registry key HKEY_USERS\S-1-5-21-1935655697-57989841-1801674531-1004\Software\Microsoft\Internet Explorer\SearchScopes\ not found.
HKU\S-1-5-21-1935655697-57989841-1801674531-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable|dword:0 /E : value set successfully!
HKU\S-1-5-21-1935655697-57989841-1801674531-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer| /E : value set successfully!
Prefs.js: "Yandex" removed from browser.search.defaultenginename
Prefs.js: "Ashampoo DE Customized Web Search" removed from browser.search.defaultthis.engineName
Prefs.js: "http://search.conduit.com/ResultsExt.as ... earchTerms}" removed from browser.search.defaulturl
Prefs.js: "Ask.com" removed from browser.search.order.1
Prefs.js: "http://yandex.ru/yandsearch?clid=133927&text=" removed from keyword.URL
Prefs.js: "" removed from network.proxy.gopher
Prefs.js: 0 removed from network.proxy.gopher_port
Prefs.js: "*.local" removed from network.proxy.no_proxies_on
Prefs.js: true removed from network.proxy.share_proxy_settings
Unable to delete ADS C:\Documents and Settings\User\Plocha\Russia TV.m3u:SummaryInformation .
========== FILES ==========
File\Folder C:\WINDOWS\system32\*.tmp.dll not found.
File\Folder C:\WINDOWS\system32\SET*.tmp not found.
File\Folder C:\WINDOWS\*.tmp not found.
File\Folder C:\Documents and Settings\User\Data aplikací\Yandex not found.
File\Folder C:\Documents and Settings\All Users\Data aplikací\Yandex not found.
File\Folder C:\Documents and Settings\User\Local Settings\Data aplikací\Yandex not found.
========== COMMANDS ==========

[EMPTYTEMP]

User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: All Users
->Flash cache emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: NetworkService
->Temp folder emptied: 2954 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: User
->Temp folder emptied: 5544 bytes
->Temporary Internet Files folder emptied: 1455743 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 90743225 bytes
->Apple Safari cache emptied: 0 bytes
->Flash cache emptied: 3157 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 2856 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 88,00 mb


[EMPTYFLASH]

User: Administrator

User: All Users
->Flash cache emptied: 0 bytes

User: Default User

User: LocalService

User: NetworkService

User: User
->Flash cache emptied: 0 bytes

Total Flash Files Cleaned = 0,00 mb


OTL by OldTimer - Version 3.2.36.2 log created on 03122012_124503

Files\Folders moved on Reboot...
File move failed. C:\WINDOWS\temp\_avast_\Webshlock.txt scheduled to be moved on reboot.

Registry entries deleted on Reboot...
(:Nevím,jestli to tu už někdy někdo psal,
ale moc děkuji všem,kteří svými schopnostmi umí udělat radost druhým,
bez ohledu na ztrátu svého času
:)

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Prosím o pomoc pro "motji" !!!!!!!!!!!!!!

#128 Příspěvek od motji »

Ne, já potřebuji, aby jste pouze zapnul OTL a dal scan. :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Uživatelský avatar
marco37
Návštěvník
Návštěvník
Příspěvky: 150
Registrován: 09 úno 2010 17:09
Bydliště: Česká Republika - středočeský
Kontaktovat uživatele:

Re: Prosím o pomoc pro "motji" !!!!!!!!!!!!!!

#129 Příspěvek od marco37 »

:!: Aha, tak to jsem opletl ...
Dal jsem sken , ale zase koukám, zda nemělo být zatržené políčko "Pro všechny uživatele". Kdyby ano, tak to opravím v novém skenu, to by jste mi napsala, ano :)
-----------------------------------------------------------------
OTL logfile created on: 12.3.2012 15:57:04 - Run 2
OTL by OldTimer - Version 3.2.36.2 Folder = C:\Documents and Settings\User\Plocha
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = )
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

511,48 Mb Total Physical Memory | 72,97 Mb Available Physical Memory | 14,27% Memory free
1,22 Gb Paging File | 0,62 Gb Available in Paging File | 51,12% Paging File free
Paging file location(s): C:\pagefile.sys 0 0 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 37,26 Gb Total Space | 9,33 Gb Free Space | 25,04% Space Free | Partition Type: NTFS

Computer Name: USER-D291D1D57E | User Name: User | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2012.03.10 12:23:48 | 000,593,920 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\User\Plocha\OTL.exe
PRC - [2012.03.07 01:15:17 | 004,241,512 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2012.03.07 01:15:14 | 000,044,768 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2012.02.17 20:34:16 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2012.02.17 08:16:56 | 000,026,624 | ---- | M] () -- C:\Documents and Settings\All Users\Data aplikací\LangSoft\OETRN.EXE
PRC - [2008.04.14 04:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2007.04.16 14:28:22 | 000,577,536 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\soundman.exe
PRC - [2007.01.15 15:14:54 | 000,147,456 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
PRC - [2007.01.15 15:13:50 | 001,208,320 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
PRC - [2006.11.03 19:19:58 | 000,013,592 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Defender\MsMpEng.exe
PRC - [2006.01.02 15:41:22 | 000,045,056 | ---- | M] (ATI Technologies Inc.) -- C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
PRC - [2004.01.05 17:34:40 | 000,040,960 | ---- | M] () -- C:\WINDOWS\vsnpstd2.exe


========== Modules (No Company Name) ==========

MOD - [2012.03.12 10:04:50 | 001,748,992 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\defs\12031200\algo.dll
MOD - [2012.02.21 12:13:44 | 008,527,008 | ---- | M] () -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
MOD - [2012.02.17 20:34:14 | 001,911,768 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll
MOD - [2012.02.17 08:16:57 | 000,200,704 | ---- | M] () -- C:\Documents and Settings\All Users\Data aplikací\LangSoft\TRNOET.DLL
MOD - [2012.02.17 08:16:56 | 000,045,056 | ---- | M] () -- C:\Documents and Settings\All Users\Data aplikací\LangSoft\TRNOEH.DLL
MOD - [2012.02.17 08:16:56 | 000,026,624 | ---- | M] () -- C:\Documents and Settings\All Users\Data aplikací\LangSoft\OETRN.EXE
MOD - [2012.01.11 23:57:04 | 003,391,488 | ---- | M] () -- c:\windows\assembly\nativeimages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_94651f5b\mscorlib.dll
MOD - [2012.01.11 23:56:59 | 000,835,584 | ---- | M] () -- c:\windows\assembly\nativeimages1_v1.1.4322\system.drawing\1.0.5000.0__b03f5f7f11d50a3a_f8beb62b\system.drawing.dll
MOD - [2012.01.11 23:56:42 | 002,088,960 | ---- | M] () -- c:\windows\assembly\nativeimages1_v1.1.4322\system.xml\1.0.5000.0__b77a5c561934e089_496fb823\system.xml.dll
MOD - [2012.01.11 23:56:35 | 003,035,136 | ---- | M] () -- c:\windows\assembly\nativeimages1_v1.1.4322\system.windows.forms\1.0.5000.0__b77a5c561934e089_78cb5572\system.windows.forms.dll
MOD - [2012.01.11 23:56:16 | 001,966,080 | ---- | M] () -- c:\windows\assembly\nativeimages1_v1.1.4322\system\1.0.5000.0__b77a5c561934e089_085fd719\system.dll
MOD - [2012.01.11 23:55:53 | 001,232,896 | ---- | M] () -- c:\windows\assembly\gac\system\1.0.5000.0__b77a5c561934e089\system.dll
MOD - [2012.01.11 23:55:51 | 001,269,760 | ---- | M] () -- c:\windows\assembly\gac\system.web\1.0.5000.0__b03f5f7f11d50a3a\system.web.dll
MOD - [2012.01.11 23:55:46 | 002,064,384 | ---- | M] () -- c:\windows\assembly\gac\system.windows.forms\1.0.5000.0__b77a5c561934e089\system.windows.forms.dll
MOD - [2010.02.18 00:49:10 | 000,323,584 | ---- | M] () -- C:\Program Files\WinRAR\rarlng.dll
MOD - [2010.02.10 18:10:12 | 000,141,824 | ---- | M] () -- C:\Program Files\WinRAR\RarExt.dll
MOD - [2009.07.23 12:29:21 | 000,372,736 | ---- | M] () -- c:\windows\assembly\gac\system.management\1.0.5000.0__b03f5f7f11d50a3a\system.management.dll
MOD - [2009.07.23 12:29:20 | 001,339,392 | ---- | M] () -- c:\windows\assembly\gac\system.xml\1.0.5000.0__b77a5c561934e089\system.xml.dll
MOD - [2009.07.23 12:29:17 | 000,323,584 | ---- | M] () -- c:\windows\assembly\gac\system.runtime.remoting\1.0.5000.0__b77a5c561934e089\system.runtime.remoting.dll
MOD - [2009.07.23 12:29:15 | 000,466,944 | ---- | M] () -- c:\windows\assembly\gac\system.drawing\1.0.5000.0__b03f5f7f11d50a3a\system.drawing.dll
MOD - [2009.07.22 16:17:56 | 000,229,376 | ---- | M] () -- c:\windows\assembly\gac\mscorlib.resources\1.0.5000.0_cs_b77a5c561934e089\mscorlib.resources.dll
MOD - [2009.07.22 16:17:56 | 000,180,224 | ---- | M] () -- c:\windows\assembly\gac\system.windows.forms.resources\1.0.5000.0_cs_b77a5c561934e089\system.windows.forms.resources.dll
MOD - [2008.04.14 04:21:47 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll
MOD - [2004.01.05 17:34:40 | 000,040,960 | ---- | M] () -- C:\WINDOWS\vsnpstd2.exe
MOD - [2003.10.24 10:21:26 | 000,053,248 | ---- | M] () -- C:\WINDOWS\system32\dsnpstd2.dll


========== Win32 Services (SafeList) ==========

SRV - File not found [Disabled | Stopped] -- -- (HidServ)
SRV - File not found [On_Demand | Stopped] -- -- (AppMgmt)
SRV - [2012.03.07 01:15:14 | 000,044,768 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV - [2010.12.08 13:31:06 | 000,628,736 | ---- | M] (Nokia) [On_Demand | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2006.11.03 19:19:58 | 000,013,592 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MsMpEng.exe -- (WinDefend)


========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (wanatw) WAN Miniport (ATW)
DRV - File not found [Kernel | Boot | Stopped] -- -- (TFSysMon)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (TfNetMon)
DRV - File not found [Kernel | Boot | Stopped] -- -- (TfFsMon)
DRV - File not found [File_System | On_Demand | Stopped] -- -- (StarOpen)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (MRESP50a64)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (MRENDIS5)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (MREMPR5)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (MREMP50a64)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (MBAMSwissArmy)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (catchme)
DRV - File not found [Kernel | On_Demand | Unknown] -- -- (ahh07o8f)
DRV - File not found [Kernel | On_Demand | Unknown] -- -- (a5jdryr3)
DRV - [2012.03.07 01:03:51 | 000,612,184 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\WINDOWS\System32\drivers\aswSnx.sys -- (aswSnx)
DRV - [2012.03.07 01:03:38 | 000,337,880 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP)
DRV - [2012.03.07 01:02:00 | 000,035,672 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswRdr.sys -- (aswRdr)
DRV - [2012.03.07 01:01:53 | 000,053,848 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2012.03.07 01:01:39 | 000,095,704 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswmon2.sys -- (aswMon2)
DRV - [2012.03.07 01:01:30 | 000,020,696 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV - [2012.03.07 00:58:29 | 000,024,920 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aavmker4.sys -- (Aavmker4)
DRV - [2010.08.25 12:33:59 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd)
DRV - [2010.07.30 13:16:46 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt)
DRV - [2010.07.30 13:16:44 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev)
DRV - [2010.07.30 13:16:42 | 000,023,040 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc)
DRV - [2010.07.30 13:16:38 | 000,018,048 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd)
DRV - [2009.12.30 10:20:56 | 000,027,064 | ---- | M] (VS Revo Group) [File_System | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\revoflt.sys -- (Revoflt)
DRV - [2009.05.05 08:58:00 | 000,013,976 | ---- | M] (VIA Technologies, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\videX32.sys -- (videX32)
DRV - [2008.09.24 09:40:22 | 004,122,368 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\alcxwdm.sys -- (ALCXWDM) Service for Realtek AC97 Audio (WDM)
DRV - [2008.08.26 08:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2008.04.13 19:45:29 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum)
DRV - [2008.03.29 10:20:55 | 000,021,248 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\Program Files\Common Files\Motive\MREMP50.sys -- (MREMP50)
DRV - [2008.03.29 10:20:55 | 000,020,096 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\Program Files\Common Files\Motive\MRESP50.sys -- (MRESP50)
DRV - [2007.06.21 16:21:58 | 000,030,720 | ---- | M] (The OpenVPN Project) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\tap0901_2gm.sys -- (tap0901_2gm)
DRV - [2007.02.27 13:31:28 | 000,021,504 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\motmodem.sys -- (motmodem)
DRV - [2006.05.03 17:50:42 | 001,540,608 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2004.03.22 20:31:52 | 000,302,720 | ---- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\snpstd2.sys -- (snpstd2) USB PC Camera (SN9C103)
DRV - [2003.10.10 12:06:40 | 000,004,134 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\FlyPCI.sys -- (FlyPCI)
DRV - [2003.09.19 14:45:48 | 000,021,248 | ---- | M] (Padus, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pfc.sys -- (pfc)
DRV - [2001.08.17 23:00:04 | 000,002,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\msmpu401.sys -- (ms_mpu401)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========


IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.defaultenginename: ""
FF - prefs.js..browser.search.defaultthis.engineName: ""
FF - prefs.js..browser.search.defaulturl: ""
FF - prefs.js..browser.search.order.1: ""
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.seznam.cz/"
FF - prefs.js..network.proxy.gopher: ""
FF - prefs.js..network.proxy.gopher_port: ""
FF - prefs.js..network.proxy.no_proxies_on: ""
FF - prefs.js..network.proxy.type: 0

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.0.61118.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@pages.tvunetworks.com/WebPlayer: C:\WINDOWS\system32\TVUAx\npTVUAx.dll (TVU networks)
FF - HKLM\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=1.0.0.0: C:\Documents and Settings\All Users\Data aplikací\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=1.1.11: C:\Program Files\VideoLAN\VLC\npvlc.dll (the VideoLAN Team)
FF - HKLM\Software\MozillaPlugins\@viewpoint.com/VMP: C:\Program Files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll ()
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/GoogleTalkPlugin: C:\Documents and Settings\User\Data aplikací\Mozilla\plugins\npgoogletalk.dll (Google)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=8: C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Update\1.2.183.13\npGoogleOneClick8.dll (Google Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2012.03.10 15:41:34 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Flock 2.0.3\extensions\\Components: C:\Program Files\Flock\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Flock 2.0.3\extensions\\Plugins: C:\Program Files\Flock\plugins
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 10.0.2\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012.02.17 20:34:17 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 10.0.2\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012.02.16 19:58:45 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Netscape Navigator 9.0.0.6\extensions\\Components: C:\Program Files\Netscape\Navigator 9\components [2011.03.19 20:02:33 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Netscape Navigator 9.0.0.6\extensions\\Plugins: C:\Program Files\Netscape\Navigator 9\plugins [2012.02.16 15:22:17 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\hideip@hide-ip-soft.com: C:\WINDOWS\vf_hip\ [2010.04.28 15:45:02 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\SeaMonkey\Extensions\\mozilla_cc@internetdownloadmanager.com: C:\Documents and Settings\User\Data aplikací\IDM\idmmzcc5

[2010.09.14 17:09:58 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\User\Data aplikací\Mozilla\Extensions
[2010.04.10 11:42:05 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\User\Data aplikací\Mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6}
[2009.09.14 09:26:11 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\User\Data aplikací\Mozilla\Extensions\{a463f10c-3994-11da-9945-000d60ca027b}
[2010.09.14 17:09:58 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\User\Data aplikací\Mozilla\Extensions\home2@tomtom.com
[2012.03.01 16:50:45 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\extensions
[2012.02.17 08:17:35 | 000,000,000 | ---D | M] (WebTran) -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\extensions\{003D3EDC-99B9-4a34-9C20-60CB94F7E829}
[2012.02.17 19:37:48 | 000,000,000 | ---D | M] (WebMail Notifier) -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\extensions\{37fa1426-b82d-11db-8314-0800200c9a66}
[2010.09.17 00:22:50 | 000,000,000 | ---D | M] (ÄŚeskĂ© slovnĂ­ky pro kontrolu pravopisu) -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\extensions\cs@dictionaries.addons.mozilla.org
[2009.09.13 13:42:45 | 000,001,742 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\aol-search.xml
[2010.03.08 11:14:53 | 000,001,819 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\bing.xml
[2009.11.02 19:26:11 | 000,002,059 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\daemon-search.xml
[2012.03.11 23:00:31 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-1.xml
[2009.07.26 19:43:05 | 000,000,961 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-10.xml
[2009.08.13 00:05:56 | 000,000,961 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-11.xml
[2009.09.11 07:29:39 | 000,000,961 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-12.xml
[2009.10.27 12:31:18 | 000,000,961 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-13.xml
[2009.11.02 08:57:33 | 000,000,961 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-14.xml
[2009.12.29 21:59:47 | 000,000,961 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-15.xml
[2010.01.23 15:00:31 | 000,000,961 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-16.xml
[2010.01.26 13:00:22 | 000,000,961 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-17.xml
[2010.03.15 17:18:25 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-18.xml
[2011.06.23 01:06:30 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-19.xml
[2008.11.14 06:37:16 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-2.xml
[2011.08.01 07:14:43 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-20.xml
[2008.12.18 09:14:29 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-3.xml
[2009.02.09 12:56:46 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-4.xml
[2009.03.10 16:30:51 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-5.xml
[2009.03.30 06:48:57 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-6.xml
[2009.04.25 14:02:02 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-7.xml
[2009.05.08 11:30:44 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-8.xml
[2009.06.12 23:38:32 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-9.xml
[2011.03.30 14:14:34 | 000,001,042 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin.xml
[2012.01.24 15:15:13 | 000,002,269 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\isearch.whitesmoke.com.xml
[2012.03.01 16:48:26 | 000,002,167 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\ybqs-yandex.xml
[2012.02.03 14:18:19 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2010.03.08 11:18:27 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
[2011.12.06 20:27:50 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\USER\DATA APLIKACĂ­\MOZILLA\FIREFOX\PROFILES\91Z9V077.DEFAULT\EXTENSIONS\{37FA1426-B82D-11DB-8314-0800200C9A66}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\USER\DATA APLIKACĂ­\MOZILLA\FIREFOX\PROFILES\91Z9V077.DEFAULT\EXTENSIONS\CS@DICTIONARIES.ADDONS.MOZILLA.ORG
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\USER\DATA APLIKACĂ­\MOZILLA\FIREFOX\PROFILES\91Z9V077.DEFAULT\EXTENSIONS\TRANSLATOR@ZOLI.BOD.XPI
[2012.02.17 20:34:16 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2008.02.19 18:16:59 | 000,002,061 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\aol.xml
[2008.02.19 18:16:59 | 000,002,405 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\ask.xml
[2010.03.26 06:33:50 | 000,001,425 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\Cetrumcz_igeared.xml
[2011.12.22 13:31:07 | 000,002,208 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\heureka-cz.xml
[2011.12.22 13:31:07 | 000,000,638 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\jyxo-cz.xml
[2008.02.19 18:16:59 | 000,005,601 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\netscape.xml
[2011.12.22 13:31:07 | 000,001,367 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\seznam-cz.xml
[2011.12.22 13:31:07 | 000,000,654 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\slunecnice-cz.xml
[2011.12.22 13:31:07 | 000,001,179 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-cz.xml

========== Chrome ==========

CHR - Extension: No name found = C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\

O1 HOSTS File: ([2011.11.04 10:39:02 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (WebTransBHO Class) - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll ()
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (no name) - {EA837F48-5AD1-443E-AE34-FFE03CBF3099} - No CLSID value found.
O3 - HKLM\..\Toolbar: (WebTranslator) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll ()
O4 - HKLM..\Run: [ATICCC] C:\Program Files\ATI Technologies\ATI.ACE\cli.exe (ATI Technologies Inc.)
O4 - HKLM..\Run: [ATICustomerCare] C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [LanguageShortcut] C:\Program Files\CyberLink\PowerDVD\Language\Language.exe ()
O4 - HKLM..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe (Nero AG)
O4 - HKLM..\Run: [SNPSTD2] C:\WINDOWS\vsnpstd2.exe ()
O4 - HKLM..\Run: [SoundMan] C:\WINDOWS\soundman.exe (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.)
O4 - HKCU..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe (Nero AG)
O4 - HKCU..\Run: [EPSON Stylus DX7400 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATICDE.EXE (SEIKO EPSON CORPORATION)
O4 - HKCU..\Run: [Nektra OEAPI] File not found
O4 - HKCU..\Run: [OEXPRESS] C:\Documents and Settings\All Users\Data aplikací\LangSoft\OETRN.EXE ()
O4 - HKCU..\Run: [UpdateMes] C:\Documents and Settings\User\Data aplikací\Updatem\updates\upp.exe ()
O4 - HKCU..\Run: [WEBTRAN] File not found
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Low Rights present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\PhishingFilter present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O9 - Extra Button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll ()
O9 - Extra 'Tools' menuitem : &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll ()
O9 - Extra 'Tools' menuitem : &Slovník - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll ()
O9 - Extra 'Tools' menuitem : Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll ()
O9 - Extra 'Tools' menuitem : Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\Documents and Settings\All Users\Data aplikací\LangSoft\WebIE.dll ()
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINDOWS\system32\PrxerNsp.dll (Initex Software)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O15 - HKCU\..Trusted Domains: aol.com ([objects] * is out of zone range - 5)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab (Java Plug-in 1.7.0_03)
O16 - DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_30)
O16 - DPF: {CAFEEFAC-0017-0000-0003-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab (Java Plug-in 1.7.0_03)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab (Java Plug-in 1.7.0_03)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{FF17DAC2-D318-40C9-A919-B026EFAC3BD7}: DhcpNameServer = 192.168.2.1
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O24 - Desktop Components:0 (Aktuální domovská stránka) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\User\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\User\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O28 - HKLM ShellExecuteHooks: {091EB208-39DD-417D-A5DD-7E2C2D8FB9CB} - C:\Program Files\Windows Defender\MpShHook.dll (Microsoft Corporation)
O28 - HKLM ShellExecuteHooks: {93994DE8-8239-4655-B1D1-5F4E91300429} - C:\Program Files\DVD Region+CSS Free\DVDShell.dll (Fengtao Software Inc.)
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2012.03.12 01:08:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\VideoLAN
[2012.03.11 18:42:57 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\User\Recent
[2012.03.11 17:16:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Nabídka Start\Programy\Fausto
[2012.03.11 17:15:42 | 000,000,000 | ---D | C] -- C:\Program Files\Fausto
[2012.03.10 12:25:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\CrystalDiskInfo
[2012.03.10 12:25:01 | 000,000,000 | ---D | C] -- C:\Program Files\CrystalDiskInfo
[2012.03.10 12:23:37 | 000,593,920 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\User\Plocha\OTL.exe
[2012.03.10 12:22:08 | 001,712,272 | ---- | C] (Crystal Dew World ) -- C:\Documents and Settings\User\Plocha\CrystalDiskInfo4_1_3-en.exe
[2012.03.05 23:56:54 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2012.03.05 22:56:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Plocha\Foto + Sky Link - Marco
[2012.03.03 13:18:12 | 000,014,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spmsg2.dll
[2012.03.03 11:54:29 | 004,987,316 | ---- | C] (Powered by asmir.cz) -- C:\Documents and Settings\User\Plocha\CzSK IpTv.exe
[2012.03.03 11:40:53 | 000,000,000 | ---D | C] -- C:\Program Files\VideoLAN
[2012.03.01 16:33:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Local Settings\Data aplikací\Xpom
[2012.03.01 16:33:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Local Settings\Data aplikací\Chromium
[2012.03.01 16:33:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Local Settings\Data aplikací\Bromium
[2012.03.01 16:32:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\IP-TV Player
[2012.02.21 19:47:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Local Settings\Data aplikací\Sun
[2012.02.18 12:15:36 | 000,000,000 | ---D | C] -- C:\Program Files\AviInfo
[2012.02.18 12:15:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Nabídka Start\Programy\AviInfo
[2012.02.18 00:56:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Nabídka Start\Programy\Image Grabber II
[2012.02.18 00:56:11 | 000,000,000 | ---D | C] -- C:\Program Files\Image Grabber II
[2012.02.17 07:50:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Nabídka Start\Programy\PC Translator
[2012.02.17 07:48:41 | 000,000,000 | ---D | C] -- C:\TRANSLAT
[2012.02.16 19:59:28 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
[2012.02.16 19:58:45 | 000,637,848 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\npdeployJava1.dll
[2012.02.16 19:58:45 | 000,224,136 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\javaws.exe
[2012.02.16 19:58:45 | 000,173,960 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\javaw.exe
[2012.02.16 19:58:45 | 000,173,960 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\java.exe
[2012.02.16 16:05:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\Deskshare
[2012.02.16 16:04:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\firebird
[2012.02.16 16:03:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Local Settings\Data aplikací\DeskShare Data
[2012.02.16 16:03:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Local Settings\Data aplikací\Spoon

========== Files - Modified Within 30 Days ==========

[2012.03.12 16:13:23 | 000,000,464 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{4AF350ED-B4FF-4DC4-946A-085D6D6D00BA}.job
[2012.03.12 15:49:01 | 000,000,940 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2012.03.12 13:19:46 | 000,002,265 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Skype.lnk
[2012.03.12 12:51:13 | 000,000,330 | -H-- | M] () -- C:\WINDOWS\tasks\MP Scheduled Scan.job
[2012.03.12 12:48:16 | 000,000,936 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2012.03.12 12:48:04 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2012.03.12 12:48:01 | 536,399,872 | -HS- | M] () -- C:\hiberfil.sys
[2012.03.12 01:08:47 | 000,000,719 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\VLC media player.lnk
[2012.03.11 18:15:04 | 000,130,560 | ---- | M] () -- C:\Documents and Settings\User\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012.03.11 17:16:16 | 000,000,606 | ---- | M] () -- C:\Documents and Settings\User\Plocha\Fausto.lnk
[2012.03.10 15:41:35 | 000,002,552 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2012.03.10 12:36:24 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2012.03.10 12:25:05 | 000,001,643 | ---- | M] () -- C:\Documents and Settings\User\Plocha\CrystalDiskInfo.lnk
[2012.03.10 12:23:48 | 000,593,920 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\User\Plocha\OTL.exe
[2012.03.10 12:22:14 | 001,712,272 | ---- | M] (Crystal Dew World ) -- C:\Documents and Settings\User\Plocha\CrystalDiskInfo4_1_3-en.exe
[2012.03.10 11:19:50 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2012.03.07 01:15:19 | 000,041,184 | ---- | M] (AVAST Software) -- C:\WINDOWS\avastSS.scr
[2012.03.07 01:15:14 | 000,201,352 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\aswBoot.exe
[2012.03.07 01:03:51 | 000,612,184 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSnx.sys
[2012.03.07 01:03:38 | 000,337,880 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
[2012.03.07 01:02:00 | 000,035,672 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys
[2012.03.07 01:01:53 | 000,053,848 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys
[2012.03.07 01:01:39 | 000,095,704 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys
[2012.03.07 01:01:35 | 000,089,048 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon.sys
[2012.03.07 01:01:30 | 000,020,696 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys
[2012.03.07 00:58:29 | 000,024,920 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys
[2012.03.05 20:46:29 | 000,442,946 | ---- | M] () -- C:\WINDOWS\System32\perfh005.dat
[2012.03.05 20:46:29 | 000,440,604 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2012.03.05 20:46:29 | 000,083,704 | ---- | M] () -- C:\WINDOWS\System32\perfc005.dat
[2012.03.05 20:46:29 | 000,071,194 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2012.03.03 10:13:00 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2012.03.02 21:09:04 | 004,987,316 | ---- | M] (Powered by asmir.cz) -- C:\Documents and Settings\User\Plocha\CzSK IpTv.exe
[2012.03.01 17:05:06 | 000,021,532 | ---- | M] () -- C:\Documents and Settings\User\Plocha\Russia TV.m3u
[2012.02.29 21:59:28 | 000,000,925 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Revo Uninstaller Pro.lnk
[2012.02.29 21:45:05 | 000,000,682 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\CCleaner.lnk
[2012.02.25 13:13:00 | 000,000,068 | ---- | M] () -- C:\WINDOWS\DVDRegionFree.INI
[2012.02.23 09:18:36 | 000,237,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\MpSigStub.exe
[2012.02.21 18:20:40 | 000,000,075 | ---- | M] () -- C:\Documents and Settings\User\default.pls
[2012.02.21 12:13:45 | 000,414,368 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2012.02.18 12:15:37 | 000,000,666 | ---- | M] () -- C:\Documents and Settings\User\Plocha\AviInfo.lnk
[2012.02.18 00:56:15 | 000,001,688 | ---- | M] () -- C:\Documents and Settings\User\Plocha\Image Grabber II.lnk
[2012.02.17 08:33:41 | 000,002,719 | ---- | M] () -- C:\WINDOWS\TRNCOM.INI
[2012.02.17 07:50:39 | 000,000,515 | ---- | M] () -- C:\Documents and Settings\User\Plocha\Slovník.lnk
[2012.02.17 07:50:39 | 000,000,515 | ---- | M] () -- C:\Documents and Settings\User\Plocha\PC Translator 2012.lnk
[2012.02.17 07:50:39 | 000,000,515 | ---- | M] () -- C:\Documents and Settings\User\Plocha\DicMan.lnk
[2012.02.17 06:50:44 | 000,380,208 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2012.02.16 19:58:15 | 000,224,136 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javaws.exe
[2012.02.16 19:58:15 | 000,173,960 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javaw.exe
[2012.02.16 19:58:15 | 000,173,960 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\java.exe
[2012.02.16 19:58:15 | 000,141,312 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javacpl.cpl
[2012.02.16 19:58:13 | 000,637,848 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\npdeployJava1.dll
[2012.02.16 19:58:13 | 000,567,696 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\deployJava1.dll
[2012.02.16 08:34:03 | 000,008,194 | ---- | M] () -- C:\Documents and Settings\User\Local Settings\Data aplikací\ace9

========== Files Created - No Company Name ==========

[2012.03.12 01:08:47 | 000,000,719 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\VLC media player.lnk
[2012.03.11 17:16:16 | 000,000,606 | ---- | C] () -- C:\Documents and Settings\User\Plocha\Fausto.lnk
[2012.03.10 12:25:05 | 000,001,643 | ---- | C] () -- C:\Documents and Settings\User\Plocha\CrystalDiskInfo.lnk
[2012.03.03 10:14:54 | 000,004,134 | ---- | C] () -- C:\WINDOWS\System32\drivers\FlyPCI.sys
[2012.03.02 18:35:39 | 000,021,532 | ---- | C] () -- C:\Documents and Settings\User\Plocha\Russia TV.m3u
[2012.02.18 12:15:37 | 000,000,666 | ---- | C] () -- C:\Documents and Settings\User\Plocha\AviInfo.lnk
[2012.02.18 00:58:04 | 000,001,688 | ---- | C] () -- C:\Documents and Settings\User\Plocha\Image Grabber II.lnk
[2012.02.17 08:26:38 | 000,581,632 | ---- | C] () -- C:\Documents and Settings\User\Plocha\MAILTRAN.EXE
[2012.02.17 07:50:39 | 000,000,515 | ---- | C] () -- C:\Documents and Settings\User\Plocha\Slovník.lnk
[2012.02.17 07:50:39 | 000,000,515 | ---- | C] () -- C:\Documents and Settings\User\Plocha\PC Translator 2012.lnk
[2012.02.17 07:50:39 | 000,000,515 | ---- | C] () -- C:\Documents and Settings\User\Plocha\DicMan.lnk
[2012.02.16 08:34:03 | 000,008,194 | ---- | C] () -- C:\Documents and Settings\User\Local Settings\Data aplikací\ace9
[2012.02.16 06:43:19 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll
[2012.02.16 06:43:19 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\dllcache\iacenc.dll
[2012.01.16 17:34:52 | 000,650,752 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2012.01.16 17:34:52 | 000,243,200 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2012.01.16 17:34:51 | 000,079,360 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2011.11.02 22:01:18 | 000,256,000 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2011.11.02 22:01:18 | 000,208,896 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2011.11.02 22:01:18 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2011.11.02 22:01:18 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2011.11.02 22:01:18 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2011.08.11 00:03:49 | 000,037,270 | ---- | C] () -- C:\WINDOWS\System32\OggDSUninst.exe
[2011.08.10 13:38:11 | 000,000,056 | ---- | C] () -- C:\WINDOWS\crywmvtoavi.ini
[2011.08.10 13:37:04 | 000,000,005 | ---- | C] () -- C:\WINDOWS\System32\SySwmvtoavi.dat
[2010.12.27 05:41:21 | 000,027,648 | ---- | C] () -- C:\WINDOWS\System32\AVSredirect.dll
[2010.12.22 23:52:10 | 000,432,992 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Data aplikací\FontCache3.0.0.0.dat
[2010.11.13 22:36:02 | 000,010,353 | ---- | C] () -- C:\Documents and Settings\User\Local Settings\Data aplikací\SRDownloader.err
[2010.10.24 10:40:25 | 000,000,984 | ---- | C] () -- C:\Documents and Settings\User\Local Settings\Data aplikací\SRDownloader.nast
[2010.05.04 08:00:56 | 000,000,072 | ---- | C] () -- C:\WINDOWS\EurekaLog.ini
[2010.04.09 23:27:12 | 000,002,816 | ---- | C] () -- C:\Documents and Settings\All Users\Data aplikací\un.png
[2010.04.09 23:27:01 | 000,000,358 | ---- | C] () -- C:\Documents and Settings\All Users\Data aplikací\Setting.dat
[2010.04.09 23:27:01 | 000,000,022 | ---- | C] () -- C:\Documents and Settings\User\Data aplikací\UserFlag.ini
[2010.03.16 02:32:17 | 000,037,420 | ---- | C] () -- C:\Documents and Settings\User\Data aplikací\TMP.WAV
[2010.03.16 02:32:16 | 000,037,820 | ---- | C] () -- C:\Documents and Settings\User\Data aplikací\SLOVA.WAV
[2010.03.15 23:53:14 | 000,000,034 | ---- | C] () -- C:\WINDOWS\WTRDCTM.INI
[2010.03.14 15:37:18 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat

< End of report >
(:Nevím,jestli to tu už někdy někdo psal,
ale moc děkuji všem,kteří svými schopnostmi umí udělat radost druhým,
bez ohledu na ztrátu svého času
:)

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Prosím o pomoc pro "motji" !!!!!!!!!!!!!!

#130 Příspěvek od motji »

:arrow: Tohle je Vašeho providera?
DhcpNameServer = 192.168.2.1


:arrow: Spustte OTL
-do bílého okna dole skopírujte tento skript:

Kód: Vybrat vše

:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
[2012.03.05 20:46:29 | 000,442,946 | ---- | M] () -- C:\WINDOWS\System32\perfh005.dat
[2012.03.05 20:46:29 | 000,440,604 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2012.03.05 20:46:29 | 000,083,704 | ---- | M] () -- C:\WINDOWS\System32\perfc005.dat
[2012.03.05 20:46:29 | 000,071,194 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (catchme)
DRV - File not found [Kernel | On_Demand | Unknown] -- -- (ahh07o8f)
DRV - File not found [Kernel | On_Demand | Unknown] -- -- (a5jdryr3)
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..network.proxy.gopher: ""
FF - prefs.js..network.proxy.gopher_port: ""
FF - prefs.js..network.proxy.no_proxies_on: ""
FF - HKLM\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=1.0.0.0: C:\Documents and Settings\All Users\Data aplikací\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll (Google Inc.)
2009.09.13 13:42:45 | 000,001,742 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\aol-search.xml
[2010.03.08 11:14:53 | 000,001,819 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\bing.xml
[2009.11.02 19:26:11 | 000,002,059 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\daemon-search.xml
[2012.03.11 23:00:31 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-1.xml
[2009.07.26 19:43:05 | 000,000,961 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-10.xml
[2009.08.13 00:05:56 | 000,000,961 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-11.xml
[2009.09.11 07:29:39 | 000,000,961 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-12.xml
[2009.10.27 12:31:18 | 000,000,961 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-13.xml
[2009.11.02 08:57:33 | 000,000,961 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-14.xml
[2009.12.29 21:59:47 | 000,000,961 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-15.xml
[2010.01.23 15:00:31 | 000,000,961 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-16.xml
[2010.01.26 13:00:22 | 000,000,961 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-17.xml
[2010.03.15 17:18:25 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-18.xml
[2011.06.23 01:06:30 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-19.xml
[2008.11.14 06:37:16 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-2.xml
[2011.08.01 07:14:43 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-20.xml
[2008.12.18 09:14:29 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-3.xml
[2009.02.09 12:56:46 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-4.xml
[2009.03.10 16:30:51 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-5.xml
[2009.03.30 06:48:57 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-6.xml
[2009.04.25 14:02:02 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-7.xml
[2009.05.08 11:30:44 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-8.xml
[2009.06.12 23:38:32 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-9.xml
[2011.03.30 14:14:34 | 000,001,042 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin.xml
[2012.01.24 15:15:13 | 000,002,269 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\isearch.whitesmoke.com.xml
[2012.03.01 16:48:26 | 000,002,167 | ---- | M] () -- C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\ybqs-yandex.xml
[2012.02.03 14:18:19 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2010.03.08 11:18:27 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
[2011.12.06 20:27:50 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\USER\DATA APLIKACĂ­\MOZILLA\FIREFOX\PROFILES\91Z9V077.DEFAULT\EXTENSIONS\{37FA1426-B82D-11DB-8314-0800200C9A66}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\USER\DATA APLIKACĂ­\MOZILLA\FIREFOX\PROFILES\91Z9V077.DEFAULT\EXTENSIONS\CS@DICTIONARIES.ADDONS.MOZILLA.ORG
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\USER\DATA APLIKACĂ­\MOZILLA\FIREFOX\PROFILES\91Z9V077.DEFAULT\EXTENSIONS\TRANSLATOR@ZOLI.BOD.XPI
[2008.02.19 18:16:59 | 000,002,061 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\aol.xml
[2008.02.19 18:16:59 | 000,002,405 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\ask.xml
CHR - Extension: No name found = C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
2 - BHO: (no name) - {EA837F48-5AD1-443E-AE34-FFE03CBF3099} - No CLSID value found.
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Program Files\Bonjour\mdnsNSP.dll File not found
O15 - HKCU\..Trusted Domains: aol.com ([objects] * is out of zone range - 5)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O4 - HKCU..\Run: [Nektra OEAPI] File not found
O4 - HKCU..\Run: [UpdateMes] C:\Documents and Settings\User\Data aplikací\Updatem\updates\upp.exe ()
O4 - HKCU..\Run: [WEBTRAN] File not found

:files
C:\WINDOWS\system32\*.tmp.dll /s
C:\WINDOWS\system32\SET*.tmp /s
C:\WINDOWS\*.tmp /s
C:\Documents and Settings\User\Plocha\Russia TV.m3u

:commands
[resethosts]
[emptytemp]
[EMPTYFLASH]
[clearallrestorepoints]
[Reboot]

-klikněte na tlačítko opravit.
-Následně se pc restartuje.
- Log vložte zde :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Uživatelský avatar
marco37
Návštěvník
Návštěvník
Příspěvky: 150
Registrován: 09 úno 2010 17:09
Bydliště: Česká Republika - středočeský
Kontaktovat uživatele:

Re: Prosím o pomoc pro "motji" !!!!!!!!!!!!!!

#131 Příspěvek od marco37 »

Dobrý den Motji. dnes jsem provedl v OLT ten příkaz s mazacím logem a po restartu sice log byl zveřejněn, ale už se s PC vůbec nepřipojím k internetu, systém naběhne až skoro po dvaceti minutách s hláškami, že firmware nepracuje pro závažnou závadu, stejně tak i avast a žádné připojení není, i když se systém snaží ...Nešel mi ani modem, který jsem musel ručně restartovat a naštěstí začaly pracovat ostatní PC. Můj ale ne. Ani nouzový režim nejde...
Ohledně té otázky ,ano to je moje IP adresa 192.168.2.1.
Snažil jsem to řešit vše s O2zda není chyba v připojení u nich, ale také si nevědí rady.Prý je to u mě. Co mám dělat????
Přidávám sem ten log pomocí druhého PC z flash-disku.Před tím restartem mi PC ještě šel :shock: .PS"přestal jít kompletně i zvuk.
------------------------------------------------------
All processes killed
========== OTL ==========
No active process named explorer.exe was found!
C:\WINDOWS\system32\perfh005.dat moved successfully.
C:\WINDOWS\system32\perfh009.dat moved successfully.
C:\WINDOWS\system32\perfc005.dat moved successfully.
C:\WINDOWS\system32\perfc009.dat moved successfully.
Service catchme stopped successfully!
Service catchme deleted successfully!
Error: No service named ahh07o8f was found to stop!
Service\Driver key ahh07o8f not found.
Error: No service named a5jdryr3 was found to stop!
Service\Driver key a5jdryr3 not found.
Prefs.js: true removed from browser.search.useDBForOrder
Prefs.js: "" removed from network.proxy.gopher
Prefs.js: "" removed from network.proxy.gopher_port
Prefs.js: "" removed from network.proxy.no_proxies_on
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=1.0.0.0\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@tools.google.com/Google Update;version=3\ deleted successfully.
C:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@tools.google.com/Google Update;version=9\ deleted successfully.
File C:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll not found.
C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\bing.xml moved successfully.
C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\daemon-search.xml moved successfully.
C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-1.xml moved successfully.
C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-10.xml moved successfully.
C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-11.xml moved successfully.
C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-12.xml moved successfully.
C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-13.xml moved successfully.
C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-14.xml moved successfully.
C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-15.xml moved successfully.
C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-16.xml moved successfully.
C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-17.xml moved successfully.
C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-18.xml moved successfully.
C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-19.xml moved successfully.
C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-2.xml moved successfully.
C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-20.xml moved successfully.
C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-3.xml moved successfully.
C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-4.xml moved successfully.
C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-5.xml moved successfully.
C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-6.xml moved successfully.
C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-7.xml moved successfully.
C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-8.xml moved successfully.
C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin-9.xml moved successfully.
C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\icqplugin.xml moved successfully.
C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\isearch.whitesmoke.com.xml moved successfully.
C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\91z9v077.default\searchplugins\ybqs-yandex.xml moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}\components folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}\chrome\icons\default folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}\chrome\icons folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}\chrome folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07} folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions folder moved successfully.
Folder C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\ not found.
Folder C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}\ not found.
C:\Program Files\Mozilla Firefox\searchplugins\aol.xml moved successfully.
C:\Program Files\Mozilla Firefox\searchplugins\ask.xml moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\_locales\en folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\_locales folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\visual-bookmarks\images folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\visual-bookmarks\front-end\js folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\visual-bookmarks\front-end\images\thumbnails folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\visual-bookmarks\front-end\images\tab\shaders folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\visual-bookmarks\front-end\images\tab\icons folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\visual-bookmarks\front-end\images\tab folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\visual-bookmarks\front-end\images\scrollbar\vertical folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\visual-bookmarks\front-end\images\scrollbar folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\visual-bookmarks\front-end\images\dialog folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\visual-bookmarks\front-end\images\backgrounds folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\visual-bookmarks\front-end\images\arrow folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\visual-bookmarks\front-end\images folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\visual-bookmarks\front-end\css folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\visual-bookmarks\front-end folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\visual-bookmarks\back-end folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\visual-bookmarks folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\images folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\core\locales\en folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\core\locales folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\core\js\yandex\yaru folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\core\js\yandex\weather folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\core\js\yandex\statistics folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\core\js\yandex\region folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\core\js\yandex\passport folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\core\js\yandex\opinions folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\core\js\yandex\mail folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\core\js\yandex\identification folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\core\js\yandex\counters folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\core\js\yandex folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\core\js\wdgt\platform folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\core\js\wdgt\opera folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\core\js\wdgt\chrome folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\core\js\wdgt\base folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\core\js\wdgt folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\core\js\tools\prototype folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\core\js\tools\duplo\dom\specific folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\core\js\tools\duplo\dom folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\core\js\tools\duplo\core folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\core\js\tools\duplo folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\core\js\tools folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\core\js folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0\core folder moved successfully.
C:\Documents and Settings\User\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nkcpopggjcjkiicpenikeogioednjeac\1.2.118_0 folder moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}\ deleted successfully.
C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll moved successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000005\ deleted successfully.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\aol.com\objects\ deleted successfully.
Starting removal of ActiveX control {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
C:\WINDOWS\Downloaded Program Files\gp.inf not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\Nektra OEAPI deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\UpdateMes deleted successfully.
C:\Documents and Settings\User\Data aplikací\Updatem\updates\upp.exe moved successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\WEBTRAN deleted successfully.
========== FILES ==========
File\Folder C:\WINDOWS\system32\*.tmp.dll not found.
File\Folder C:\WINDOWS\system32\SET*.tmp not found.
File\Folder C:\WINDOWS\*.tmp not found.
C:\Documents and Settings\User\Plocha\Russia TV.m3u moved successfully.
========== COMMANDS ==========
C:\WINDOWS\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: All Users
->Flash cache emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: LocalService
->Temp folder emptied: 66016 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: NetworkService
->Temp folder emptied: 3026 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: User
->Temp folder emptied: 425275 bytes
->Temporary Internet Files folder emptied: 2036754 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 96662078 bytes
->Apple Safari cache emptied: 0 bytes
->Flash cache emptied: 1496 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 527216 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 95,00 mb


[EMPTYFLASH]

User: Administrator

User: All Users
->Flash cache emptied: 0 bytes

User: Default User

User: LocalService

User: NetworkService

User: User
->Flash cache emptied: 0 bytes

Total Flash Files Cleaned = 0,00 mb

Restore points cleared and new OTL Restore Point set!

OTL by OldTimer - Version 3.2.36.2 log created on 03132012_122120

Files\Folders moved on Reboot...
File\Folder C:\Documents and Settings\User\Local Settings\Temp\~DF5B8B.tmp not found!
File\Folder C:\Documents and Settings\User\Local Settings\Temp\~DF5BB5.tmp not found!
File\Folder C:\WINDOWS\temp\_avast_\Webshlock.txt not found!
File\Folder C:\WINDOWS\temp\TMP0000000AC22693651646DEC9 not found!

Registry entries deleted on Reboot...
(:Nevím,jestli to tu už někdy někdo psal,
ale moc děkuji všem,kteří svými schopnostmi umí udělat radost druhým,
bez ohledu na ztrátu svého času
:)

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Prosím o pomoc pro "motji" !!!!!!!!!!!!!!

#132 Příspěvek od motji »

:shock: zas takovou čistku jsem nedělala, aby Vám kvůli tomu nešel pc.
Co přesně Vám hlásí za chybu firmawe?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Prosím o pomoc pro "motji" !!!!!!!!!!!!!!

#133 Příspěvek od motji »

Zkuste pc restartovat, mačkat F8 a dát poslední známou funkční konfiguraci.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Uživatelský avatar
marco37
Návštěvník
Návštěvník
Příspěvky: 150
Registrován: 09 úno 2010 17:09
Bydliště: Česká Republika - středočeský
Kontaktovat uživatele:

Re: Prosím o pomoc pro "motji" !!!!!!!!!!!!!!

#134 Příspěvek od marco37 »

dobrý den Motji, PC je úplně KO, po restartu trvá cca20min,než naskočí ikony, bez zvuku a bez jakékoliv připojení na internet. prosím, nešlo by nějakým způsobem vytvořit skrypt, který bych přenesl flashkou do PC a dal obnovení systemu, nebo něco takového?
připojuji i foto, které mi po 20 minutách před naskočením ikon napíše avast na plochu a to je vše, co se stane. :roll:
Přílohy
Desktop.rar
(216.49 KiB) Staženo 39 x
(:Nevím,jestli to tu už někdy někdo psal,
ale moc děkuji všem,kteří svými schopnostmi umí udělat radost druhým,
bez ohledu na ztrátu svého času
:)

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Prosím o pomoc pro "motji" !!!!!!!!!!!!!!

#135 Příspěvek od motji »

Zkuste ještě na pc v nouzovém režimu obnovu systému, ale mylsím že nepujde :( .
Pravděpodobně jde o nabořený systém. Ve skriptu jsem mazala pozůstatky po jednom souboru a nejspíš to zapříčinilo to naboření systému.
Prosím celou složku OTL zararujte a přidejte zde jako přílohu.
Přečtěte si prosím sz.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Odpovědět