Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu (tentokrát bráchovo pc)

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Pulpan3
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 21 srp 2007 10:19

Prosím o kontrolu (tentokrát bráchovo pc)

#1 Příspěvek od Pulpan3 »

Ahoj,
prosím o kontrolu. Díky moc. :)


Logfile of random's system information tool 1.09 (written by random/random)
Run by pc at 2012-06-09 18:12:52
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 55 GB (36%) free of 153 GB
Total RAM: 511 MB (22% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:13:16, on 9.6.2012
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Ask.com\Updater\Updater.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\OpenOffice.org 3\program\soffice.exe
C:\Program Files\OpenOffice.org 3\program\soffice.bin
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Documents and Settings\pc\Dokumenty\Stažené soubory\RSIT.exe
C:\Program Files\trend micro\pc.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://eu.ask.com/?l=dis&o=14672
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: DealPly - {A6174F27-1FFF-E1D6-A93F-BA48AD5DD448} - C:\Program Files\DealPly\DealPlyIE.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [ApnUpdater] "C:\Program Files\Ask.com\Updater\Updater.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [GarenaMessenger] "C:\Program Files\Garena Plus\GarenaMessenger.exe"
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" -automount
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: NHL® 09 Registration.lnk = C:\Program Files\EA Sports\NHL 09\Support\EAregister.exe
O4 - Startup: OpenOffice.org 3.3.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O20 - AppInit_DLLs: C:\WINDOWS\system32\guard32.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Alcohol Virtual Drive Auto-mount Service (AxAutoMntSrv) - Alcohol Soft Development Team - C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - StarWind Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe

--
End of file - 5911 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\r8w8r6ks.default

prefs.js - "browser.startup.homepage" - "http://eu.ask.com/?l=dis&o=14672"
prefs.js - "keyword.URL" - "http://websearch.ask.com/redirect?clien ... YYYYCZ&&q="

"jqs@sun.com"=C:\Program Files\Java\jre6\lib\deploy\jqs\ff


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.2.202.235 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_2_202_235.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll

C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll

C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\r8w8r6ks.default\extensions\
toolbar@ask.com

C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\r8w8r6ks.default\searchplugins\
askcom.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre6\bin\ssv.dll [2012-04-05 325408]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448}]
DealPly - C:\Program Files\DealPly\DealPlyIE.dll [2011-12-19 83048]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2012-05-04 1519272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2012-04-05 42272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2012-04-05 79648]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{D4027C7F-154A-4066-A1AD-4243D8127440} - Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2012-05-04 1519272]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2007-04-16 577536]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-02-10 61440]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cfp.exe [2012-03-11 6749512]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-01-18 254696]
""= []
"ApnUpdater"=C:\Program Files\Ask.com\Updater\Updater.exe [2012-05-04 1561768]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"GarenaMessenger"=C:\Program Files\Garena Plus\GarenaMessenger.exe [2012-06-06 6753144]
"AlcoholAutomount"=C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2012-01-05 75624]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2012-04-17 3671872]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
C:\Documents and Settings\pc\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe /c []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]

C:\Documents and Settings\pc\Nabídka Start\Programy\Po spuštění
NHL® 09 Registration.lnk - C:\Program Files\EA Sports\NHL 09\Support\EAregister.exe
OpenOffice.org 3.3.lnk - C:\Program Files\OpenOffice.org 3\program\quickstart.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" C:\WINDOWS\system32\guard32.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2010-02-11 155648]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\uTorrent\uTorrent.exe"="C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"C:\Program Files\Garena Plus\room\garena_room.exe"="C:\Program Files\Garena Plus\room\garena_room.exe:*:Enabled:Garena"
"C:\Program Files\Warcraft III Reign of Chaos & The Frozen Throne\Warcraft III.exe"="C:\Program Files\Warcraft III Reign of Chaos & The Frozen Throne\Warcraft III.exe:*:Enabled:Warcraft III"
"C:\Program Files\gproxy.exe"="C:\Program Files\gproxy.exe:*:Enabled:gproxy Application"
"C:\Program Files\Warcraft III\war3.exe"="C:\Program Files\Warcraft III\war3.exe:*:Enabled:Warcraft III"
"C:\Program Files\Warcraft III\gproxy.exe"="C:\Program Files\Warcraft III\gproxy.exe:*:Enabled:gproxy Application"
"C:\Program Files\Warcraft III\Warcraft III.exe"="C:\Program Files\Warcraft III\Warcraft III.exe:*:Enabled:Warcraft III"
"C:\Games\Paintball2\paintball2.exe"="C:\Games\Paintball2\paintball2.exe:*:Enabled:Digital Paint: Paintball 2"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"VIDC.FMVC"=fmcodec.dll

======List of files/folders created in the last 1 month======

2012-06-09 18:12:58 ----D---- C:\Program Files\trend micro
2012-06-09 18:12:52 ----D---- C:\rsit
2012-06-09 16:38:36 ----D---- C:\Documents and Settings\pc\Data aplikací\Leadertech
2012-06-09 16:33:34 ----D---- C:\Program Files\EA Sports
2012-06-09 16:33:32 ----A---- C:\WINDOWS\system32\XAudio2_1.dll
2012-06-09 16:33:32 ----A---- C:\WINDOWS\system32\XAPOFX1_0.dll
2012-06-09 16:33:32 ----A---- C:\WINDOWS\system32\xactengine3_1.dll
2012-06-09 16:33:32 ----A---- C:\WINDOWS\system32\X3DAudio1_4.dll
2012-06-09 16:33:31 ----A---- C:\WINDOWS\system32\XAudio2_0.dll
2012-06-09 16:33:31 ----A---- C:\WINDOWS\system32\D3DX9_38.dll
2012-06-09 16:33:31 ----A---- C:\WINDOWS\system32\d3dx10_38.dll
2012-06-09 16:33:31 ----A---- C:\WINDOWS\system32\D3DCompiler_38.dll
2012-06-09 16:33:30 ----A---- C:\WINDOWS\system32\xactengine3_0.dll
2012-06-09 16:33:30 ----A---- C:\WINDOWS\system32\X3DAudio1_3.dll
2012-06-09 16:33:30 ----A---- C:\WINDOWS\system32\d3dx10_37.dll
2012-06-09 16:33:30 ----A---- C:\WINDOWS\system32\D3DCompiler_37.dll
2012-06-09 16:33:29 ----A---- C:\WINDOWS\system32\xactengine2_10.dll
2012-06-09 16:33:29 ----A---- C:\WINDOWS\system32\D3DX9_37.dll
2012-06-09 16:33:29 ----A---- C:\WINDOWS\system32\d3dx10_36.dll
2012-06-09 16:33:29 ----A---- C:\WINDOWS\system32\D3DCompiler_36.dll
2012-06-09 16:33:28 ----A---- C:\WINDOWS\system32\xactengine2_9.dll
2012-06-09 16:33:28 ----A---- C:\WINDOWS\system32\d3dx9_36.dll
2012-06-09 16:33:27 ----A---- C:\WINDOWS\system32\xactengine2_8.dll
2012-06-09 16:33:27 ----A---- C:\WINDOWS\system32\d3dx9_35.dll
2012-06-09 16:33:27 ----A---- C:\WINDOWS\system32\d3dx10_35.dll
2012-06-09 16:33:27 ----A---- C:\WINDOWS\system32\D3DCompiler_35.dll
2012-06-09 16:33:26 ----A---- C:\WINDOWS\system32\X3DAudio1_2.dll
2012-06-09 16:33:26 ----A---- C:\WINDOWS\system32\d3dx9_34.dll
2012-06-09 16:33:26 ----A---- C:\WINDOWS\system32\d3dx10_34.dll
2012-06-09 16:33:26 ----A---- C:\WINDOWS\system32\D3DCompiler_34.dll
2012-06-09 16:33:25 ----A---- C:\WINDOWS\system32\xinput1_3.dll
2012-06-09 16:33:25 ----A---- C:\WINDOWS\system32\xactengine2_7.dll
2012-06-09 16:33:24 ----A---- C:\WINDOWS\system32\d3dx10_33.dll
2012-06-09 16:33:24 ----A---- C:\WINDOWS\system32\D3DCompiler_33.dll
2012-06-09 16:33:23 ----A---- C:\WINDOWS\system32\d3dx9_33.dll
2012-06-09 16:33:22 ----A---- C:\WINDOWS\system32\xactengine2_6.dll
2012-06-09 16:33:22 ----A---- C:\WINDOWS\system32\xactengine2_5.dll
2012-06-09 16:33:22 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2012-06-09 16:33:21 ----A---- C:\WINDOWS\system32\xinput1_2.dll
2012-06-09 16:33:21 ----A---- C:\WINDOWS\system32\xactengine2_4.dll
2012-06-09 16:33:21 ----A---- C:\WINDOWS\system32\xactengine2_3.dll
2012-06-09 16:33:21 ----A---- C:\WINDOWS\system32\xactengine2_2.dll
2012-06-09 16:33:21 ----A---- C:\WINDOWS\system32\x3daudio1_1.dll
2012-06-09 16:33:21 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
2012-06-09 16:33:20 ----A---- C:\WINDOWS\system32\xinput1_1.dll
2012-06-09 16:33:20 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
2012-06-09 16:33:14 ----A---- C:\WINDOWS\system32\xactengine2_0.dll
2012-06-09 16:33:14 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
2012-06-09 16:33:14 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2012-06-09 16:33:14 ----A---- C:\WINDOWS\system32\d3dx9_29.dll
2012-06-09 16:33:13 ----A---- C:\WINDOWS\system32\xinput9_1_0.dll
2012-06-09 16:33:13 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2012-06-09 16:33:13 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2012-06-09 16:33:12 ----A---- C:\WINDOWS\system32\d3dx9_26.dll
2012-06-09 16:33:12 ----A---- C:\WINDOWS\system32\d3dx9_25.dll
2012-06-09 16:33:11 ----A---- C:\WINDOWS\system32\d3dx9_24.dll
2012-06-09 16:33:02 ----D---- C:\WINDOWS\Logs
2012-06-09 16:19:25 ----D---- C:\Program Files\MagicISO
2012-06-09 16:13:55 ----D---- C:\Documents and Settings\pc\Data aplikací\DAEMON Tools Lite
2012-06-09 16:13:51 ----D---- C:\Program Files\DAEMON Tools Lite
2012-06-09 16:11:09 ----D---- C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Lite
2012-05-31 11:00:39 ----A---- C:\WINDOWS\system32\framedyn.dll
2012-05-29 18:16:02 ----D---- C:\Games
2012-05-27 11:24:55 ----D---- C:\WINDOWS\system32\QuickTime
2012-05-27 11:24:55 ----D---- C:\Documents and Settings\All Users\Data aplikací\Macromedia
2012-05-27 11:24:48 ----D---- C:\Program Files\Macromedia
2012-05-27 11:24:48 ----D---- C:\Program Files\Common Files\Macromedia
2012-05-27 11:23:50 ----D---- C:\WINDOWS\Downloaded Installations
2012-05-27 11:16:58 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2012-05-27 11:16:43 ----D---- C:\Program Files\Common Files\Adobe
2012-05-20 18:00:07 ----D---- C:\NDOORS
2012-05-20 16:29:13 ----D---- C:\ijji
2012-05-19 08:23:53 ----D---- C:\Program Files\Ask.com
2012-05-19 08:23:15 ----D---- C:\Program Files\DsNET Corp
2012-05-19 08:22:56 ----D---- C:\Documents and Settings\All Users\Data aplikací\Ask
2012-05-19 08:17:29 ----D---- C:\Documents and Settings\pc\Data aplikací\foobar2000
2012-05-19 08:17:18 ----D---- C:\Program Files\foobar2000
2012-05-12 15:50:32 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2012-05-12 15:40:30 ----D---- C:\Documents and Settings\pc\Data aplikací\Mozilla
2012-05-12 15:40:19 ----D---- C:\Program Files\Mozilla Maintenance Service
2012-05-12 15:40:19 ----D---- C:\Documents and Settings\All Users\Data aplikací\Mozilla
2012-05-12 15:40:14 ----D---- C:\Program Files\Mozilla Firefox

======List of files/folders modified in the last 1 month======

2012-06-09 18:13:06 ----D---- C:\WINDOWS\system32\drivers\etc
2012-06-09 18:12:58 ----RD---- C:\Program Files
2012-06-09 18:12:58 ----D---- C:\WINDOWS\Prefetch
2012-06-09 18:10:59 ----D---- C:\WINDOWS
2012-06-09 18:10:47 ----D---- C:\WINDOWS\Temp
2012-06-09 17:07:42 ----A---- C:\WINDOWS\SchedLgU.Txt
2012-06-09 16:38:27 ----SHD---- C:\WINDOWS\Installer
2012-06-09 16:38:24 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2012-06-09 16:33:33 ----D---- C:\WINDOWS\system32
2012-06-09 16:33:32 ----HD---- C:\WINDOWS\inf
2012-06-09 16:33:20 ----RSD---- C:\WINDOWS\assembly
2012-06-09 16:33:16 ----D---- C:\WINDOWS\Microsoft.NET
2012-06-09 16:33:05 ----D---- C:\WINDOWS\system32\DirectX
2012-06-09 16:08:36 ----D---- C:\Documents and Settings\pc\Data aplikací\uTorrent
2012-06-09 15:45:02 ----D---- C:\Documents and Settings\pc\Data aplikací\vlc
2012-06-09 14:20:04 ----D---- C:\Program Files\Warcraft III
2012-06-09 13:48:59 ----D---- C:\WINDOWS\system32\CatRoot2
2012-06-09 13:45:59 ----D---- C:\Documents and Settings\pc\Data aplikací\GarenaPlus
2012-06-09 13:45:57 ----D---- C:\Documents and Settings\All Users\Data aplikací\GarenaMessenger
2012-06-09 12:50:31 ----D---- C:\Documents and Settings\pc\Data aplikací\.minecraft
2012-06-07 21:12:41 ----D---- C:\Program Files\Garena Plus
2012-06-06 15:03:24 ----SD---- C:\WINDOWS\Tasks
2012-05-27 11:26:59 ----D---- C:\Documents and Settings\pc\Data aplikací\Macromedia
2012-05-27 11:24:59 ----SD---- C:\Documents and Settings\pc\Data aplikací\Microsoft
2012-05-27 11:24:48 ----D---- C:\Program Files\Common Files
2012-05-27 11:24:05 ----D---- C:\Program Files\Common Files\InstallShield
2012-05-27 11:16:58 ----D---- C:\Documents and Settings\pc\Data aplikací\Adobe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 gagp30kx;Filtr Microsoft Generic AGPv3.0 pro procesorovou platformu K8; C:\WINDOWS\system32\DRIVERS\gagp30kx.sys [2008-04-14 46464]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2012-05-03 477240]
R1 cmderd;COMODO Internet Security Eradication Driver; C:\WINDOWS\System32\DRIVERS\cmderd.sys [2012-03-11 18056]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\WINDOWS\System32\DRIVERS\cmdguard.sys [2012-03-11 494968]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2008-09-24 4122368]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2010-02-11 3565056]
R3 FETNDIS;VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\fetnd5.sys [2001-08-17 27165]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-25 12160]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
S3 a7jp1vh2;a7jp1vh2; C:\WINDOWS\system32\drivers\a7jp1vh2.sys []
S3 aozkm18i;aozkm18i; C:\WINDOWS\system32\drivers\aozkm18i.sys []
S3 GGSAFERDriver;GGSAFER Driver; \??\C:\Program Files\Garena Plus\Room\safedrv.sys []
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2010-02-11 602112]
R2 cmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2012-03-11 1983232]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2012-04-05 153376]
R2 StarWindServiceAE;StarWind AE Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2010-02-10 593920]
S2 AxAutoMntSrv;Alcohol Virtual Drive Auto-mount Service; C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2012-01-05 75624]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-06-05 116648]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-12 257696]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2007-10-24 33800]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2007-10-24 70144]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2007-10-09 36864]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-06-05 116648]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2007-10-11 864256]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2012-04-21 129976]
S3 usprserv;User Privilege Service; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2007-10-11 122880]

-----------------EOF-----------------

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím o kontrolu (tentokrát bráchovo pc)

#2 Příspěvek od Márty84 »

Zdravim :)

Na logu se pracuje, bude to nejakou dobu trvat :wink:
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím o kontrolu (tentokrát bráchovo pc)

#3 Příspěvek od Márty84 »

:???: Tyto slozky znate? C:\NDOORS a C:\ijji ?



:arrow: Najdete tento soubor C:\Program Files\trend micro\pc.exe a spustte ho.
Kliknete na Main menu a na Do a system scan only
U techto radku dejte vlevo zatrzitko

Kód: Vybrat vše

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://eu.ask.com/?l=dis&o=14672
R3 - URLSearchHook: UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll
a pokud nepotrebujete, aby se to spoustelo hned po startu pc, tak i u techto radku

Kód: Vybrat vše

O4 - HKCU\..\Run: [GarenaMessenger] "C:\Program Files\Garena Plus\GarenaMessenger.exe"
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" -automount
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - Startup: NHL® 09 Registration.lnk = C:\Program Files\EA Sports\NHL 09\Support\EAregister.exe
Kliknete na nápis Fix checked a potvrdte



:arrow: Stahnete OTM http://oldtimer.geekstogo.com/OTM.exe , ulozte nejlepe na plochu a spustte.
Do leveho okna zkopirujte tento skript (vcetne te dvojtecky pred slovem files)

Kód: Vybrat vše

:files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp
C:\Program Files\Ask.com
C:\WINDOWS\tasks\Adobe Flash Player Updater.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\r8w8r6ks.default\extensions\toolbar@ask.com
C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\r8w8r6ks.default\searchplugins\askcom.xml

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
[-HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"=-
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=-
"SunJavaUpdateSched"=-
""=-
"ApnUpdater"=-
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]

:services
JavaQuickStarterService
gupdate
AdobeFlashPlayerUpdateSvc
gupdatem

:commands
[RESETHOSTS]
[Purity]
[EMPTYTEMP]
[EMPTYFLASH]
Kliknete na MoveIt a nechte program pracovat. Pri otazce na restart souhlaste.
Po restartu sem dejte log, ktery na vas vyskoci, nebo bude zde C:\_OTM\MovedFiles\xxxxxxxx_xxxxxx (misto tech x budou cisla, predstavujici datum a cas spusteni)
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Pulpan3
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 21 srp 2007 10:19

Re: Prosím o kontrolu (tentokrát bráchovo pc)

#4 Příspěvek od Pulpan3 »

Márty84 píše::???: Tyto slozky znate? C:\NDOORS a C:\ijji ?
Mělo by se jednat o launchery pro hry...

All processes killed
========== FILES ==========
File/Folder C:\WINDOWS\system32\*.tmp.dll not found.
File/Folder C:\WINDOWS\system32\SET*.tmp not found.
C:\WINDOWS\SET3.tmp moved successfully.
C:\WINDOWS\SET4.tmp moved successfully.
C:\WINDOWS\SET8.tmp moved successfully.
C:\Program Files\Ask.com\Updater folder moved successfully.
C:\Program Files\Ask.com\assets\oobe folder moved successfully.
C:\Program Files\Ask.com\assets folder moved successfully.
C:\Program Files\Ask.com folder moved successfully.
C:\WINDOWS\tasks\Adobe Flash Player Updater.job moved successfully.
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job moved successfully.
C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job moved successfully.
C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\r8w8r6ks.default\extensions\toolbar@ask.com\searchplugins folder moved successfully.
C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\r8w8r6ks.default\extensions\toolbar@ask.com\defaults\preferences folder moved successfully.
C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\r8w8r6ks.default\extensions\toolbar@ask.com\defaults folder moved successfully.
C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\r8w8r6ks.default\extensions\toolbar@ask.com\chrome\skin folder moved successfully.
C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\r8w8r6ks.default\extensions\toolbar@ask.com\chrome\content folder moved successfully.
C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\r8w8r6ks.default\extensions\toolbar@ask.com\chrome folder moved successfully.
C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\r8w8r6ks.default\extensions\toolbar@ask.com folder moved successfully.
C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\r8w8r6ks.default\searchplugins\askcom.xml moved successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{D4027C7F-154A-4066-A1AD-4243D8127440} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\StartCCC deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ApnUpdater not found.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS\ deleted successfully.
========== SERVICES/DRIVERS ==========
Service JavaQuickStarterService stopped successfully!
Service JavaQuickStarterService deleted successfully!
Service gupdate stopped successfully!
Service gupdate deleted successfully!
Service AdobeFlashPlayerUpdateSvc stopped successfully!
Service AdobeFlashPlayerUpdateSvc deleted successfully!
Service gupdatem stopped successfully!
Service gupdatem deleted successfully!
========== COMMANDS ==========
C:\WINDOWS\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: All Users

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: pc
->Temp folder emptied: 683786759 bytes
->Temporary Internet Files folder emptied: 6766676 bytes
->Java cache emptied: 294145 bytes
->FireFox cache emptied: 456053883 bytes
->Google Chrome cache emptied: 406372416 bytes
->Flash cache emptied: 1251870 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 2504 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 38278359 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 119046867 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 11066685 bytes
RecycleBin emptied: 2244134913 bytes

Total Files Cleaned = 3 783,00 mb


[EMPTYFLASH]

User: All Users

User: Default User

User: LocalService

User: NetworkService

User: pc
->Flash cache emptied: 0 bytes

Total Flash Files Cleaned = 0,00 mb


OTM by OldTimer - Version 3.1.19.0 log created on 06092012_220340

Files moved on Reboot...

Registry entries deleted on Reboot...

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím o kontrolu (tentokrát bráchovo pc)

#5 Příspěvek od Márty84 »

OTM provedlo co melo. Jinak vypada log v poradku. Jednalo se ciste o preventivku, nebo je s pc nejaky problem?
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Pulpan3
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 21 srp 2007 10:19

Re: Prosím o kontrolu (tentokrát bráchovo pc)

#6 Příspěvek od Pulpan3 »

Ano, jednalo se pouze o preventivku. Díky

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím o kontrolu (tentokrát bráchovo pc)

#7 Příspěvek od Márty84 »

:arrow: Stahnete OTC http://oldtimer.geekstogo.com/OTC.exe , ulozte a spustte.
Kliknete na napis CleanUp a pote OK - Po uklidu dojde k restartu pc.

:arrow: Stahnete TFC http://oldtimer.geekstogo.com/TFC.exe , ulozte a spustte
Kliknete na START a pote OK - Po uklidu dojde k restartu pc.
Po pouziti muzete programek smazat

:arrow: Stahnete Ccleaner http://www.stahuj.centrum.cz/utility_a_ ... /ccleaner/ a spustte.
Pri instalaci pozor na toolbar, jestli vam nabidne jeho instalaci, tak zruste zatrzitko.
Po spusteni se ocitnete ve funkci Cistic. Vlevo je spousta zatrzitek. Pozor dejte hlavne na kos, pokud nechate zatrzene, vzdy ho vysype.
Dale, podle toho jak je nastaven, smaze vsechna hesla ulozena na netu!!! Takze jestli mate nastavene, at si pocitac hesla pamatuje (coz neni pro bezpecnost dobre), budete je muset pak napsat znova rucne (napr mail, facebook, ruzna fora atd.)
Kliknete na Analyzovat a az dokonci analyzu, kliknete na Spustit Cleaner.
Potom kliknete vlevo na funkci Registry
Kliknete na Hledej problemy, kdyz najde, kliknete na Opravit problemy. Nabidne Vam zalohu, tu udelejte a ulozte ji tak, at ji v pripade potreby najdete :)
Funkce Nastroje umoznuje odinstalovani programu. Je dukladnejsi nez samotny windows!

:arrow: Defragmentujte disk
Stahnete napriklad program Defraggler http://www.stahuj.centrum.cz/utility_a_ ... efraggler/
Pri instalaci opet pozor na toolbar
Po nainstalovani program spustte a kliknete na Analyzovat, po analyze kliknete na Defragmentovat a programek odvede svou praci :)



Nemate zac, mejte se :bye:
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Odpovědět