Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Dvojité háčky a čárky

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
hkotrc
Návštěvník
Návštěvník
Příspěvky: 91
Registrován: 11 zář 2012 21:48

Dvojité háčky a čárky

#1 Příspěvek od hkotrc »

Dobrý den,
prosím o kontrolu logu. Při otevřeném IE nebo Firefoxu naskakují dvojité háčky a čárky ˇˇ ´´
V open office to nedělá. PC je bez antiviru a takové předpotopní, děda to má na křížovky, takže nevím jestli je zpomalené havětí nebo už to rychleji nejde :D

ˇLogfile of random's system information tool 1.06 (written by random/random)
Run by Pavel K at 2014-07-19 21:08:13
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 9 GB (49%) free of 19 GB
Total RAM: 496 MB (40% free)

HijackThis download failed

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job
C:\WINDOWS\tasks\{51FF6313-4DE0-107B-6435-2F122B244E14}.job
C:\WINDOWS\tasks\{0EF96636-17B6-74E0-F235-FB6C520D677F}.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA837F48-5AD1-443E-AE34-FFE03CBF3099}]
Lištička - C:\Program Files\Seznam.cz\listicka.dll [2010-05-05 1736472]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"ccleaner"=C:\Program Files\CCleaner\CCleaner.exe [2011-12-20 2696512]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FlashPlayerUpdate]
C:\WINDOWS\system32\Macromed\Flash\FlashUtil10k_ActiveX.exe -update activex []

C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
ZyXEL G-302 v3 Utility.lnk - C:\Program Files\ZyXEL\G-302v3\G-302v3.exe

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

======List of files/folders created in the last 1 months======

2014-07-19 21:08:14 ----D---- C:\Program Files\trend micro
2014-07-19 21:08:13 ----D---- C:\rsit
2014-07-14 21:20:50 ----SHD---- C:\FOUND.005
2014-07-12 09:40:15 ----A---- C:\WINDOWS\system32\FlashPlayerInstaller.exe
2014-07-07 20:47:15 ----D---- C:\Documents and Settings\Pavel K\Data aplikací\EGMLVsYy
2014-06-28 19:51:10 ----A---- C:\WINDOWS\WININIT.INI
2014-06-28 19:07:36 ----A---- C:\WINDOWS\mixerdef.ini
2014-06-28 19:03:58 ----RA---- C:\WINDOWS\system32\cmnprop.dll
2014-06-28 19:03:58 ----RA---- C:\WINDOWS\system32\Audio3D.dll
2014-06-28 19:03:58 ----RA---- C:\WINDOWS\system32\a3d.dll
2014-06-28 19:03:58 ----RA---- C:\WINDOWS\Mixer.exe
2014-06-28 19:03:58 ----RA---- C:\WINDOWS\cmuninst.exe
2014-06-28 19:03:57 ----A---- C:\WINDOWS\system32\ksuser.dll
2014-06-28 19:03:47 ----RA---- C:\WINDOWS\W2KSetup.exe
2014-06-28 19:03:46 ----D---- C:\Program Files\C-Media
2014-06-28 19:03:44 ----A---- C:\WINDOWS\CMCDPLAY.INI
2014-06-28 18:56:09 ----D---- C:\WINDOWS\system32\Lang
2014-06-28 18:38:46 ----D---- C:\Program Files\Common Files\InstallShield

======List of files/folders modified in the last 1 months======

2014-07-19 18:49:38 ----A---- C:\WINDOWS\RTacDbg.txt
2014-07-19 18:23:52 ----N---- C:\WINDOWS\SchedLgU.Txt
2014-07-12 09:40:28 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 P3;Ovladač procesoru Intel PentiumIII; C:\WINDOWS\system32\DRIVERS\p3.sys [2008-04-14 46592]
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.4.5.0; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2012-01-11 21035]
R2 EAPPkt;Realtek EAPPkt Protocol; C:\WINDOWS\system32\DRIVERS\EAPPkt.sys [2006-11-15 38144]
R3 rtl8185;G-302 v3 802.11g Wireless PCI Adapter Driver; C:\WINDOWS\system32\DRIVERS\rtl8185.sys [2009-10-06 823936]
R3 SiS300i;SiS300i; C:\WINDOWS\system32\DRIVERS\sis300ip.sys [2001-08-17 101760]
R3 SISNIC;SiS PCI Fast Ethernet Adapter Driver; C:\WINDOWS\system32\DRIVERS\sisnic.sys [2008-04-13 32768]
R3 usbhub;Rozbočovač umožnující USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-14 59520]
R3 usbohci;Ovladač Miniport otevřeného hostitelského řadiče Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2008-04-14 17152]
S3 adusbser;AnyDATA USB Device for Legacy Serial Communication; C:\WINDOWS\system32\DRIVERS\adusbser.sys [2006-10-23 93440]
S3 cmpci;C-Media PCI Audio Driver (WDM); C:\WINDOWS\system32\drivers\cmaudio.sys [2001-10-30 280782]
S3 mvusbews;USB EWS Device; C:\WINDOWS\System32\Drivers\mvusbews.sys [2010-03-06 17408]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2008-03-27 503008]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 HPSIService;HP SI Service; C:\WINDOWS\system32\HPSIsvc.exe [2010-04-07 99896]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-12 262320]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2005-09-23 29896]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2005-09-23 66240]

-----------------EOF-----------------

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Dvojité háčky a čárky

#2 Příspěvek od vyosek »

Zdravim :)

:arrow: PC je slabe ale taky je tam havet :arcisit:

:arrow: Dejte log z FRST http://forum.viry.cz/viewtopic.php?f=13&t=133100
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

hkotrc
Návštěvník
Návštěvník
Příspěvky: 91
Registrován: 11 zář 2012 21:48

Re: Dvojité háčky a čárky

#3 Příspěvek od hkotrc »

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:21-07-2014
Ran by Pavel K (ATTENTION: The logged in user is not administrator) on PAVEL on 21-07-2014 21:17:53
Running from C:\Documents and Settings\Pavel K\Plocha
Platform: Microsoft Windows XP Service Pack 3 (X86) OS Language: Čeština
Internet Explorer Version 8
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================



==================== Registry (Whitelisted) ==================

HKU\S-1-5-21-2052111302-1677128483-1202660629-1004\...\Run: [ccleaner] => C:\Program Files\CCleaner\CCleaner.exe [2696512 2011-12-20] (Piriform Ltd)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\ZyXEL G-302 v3 Utility.lnk
ShortcutTarget: ZyXEL G-302 v3 Utility.lnk -> C:\Program Files\ZyXEL\G-302v3\G-302v3.exe ()

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
SearchScopes: HKCU - DefaultScope {f9d3b898-cf8b-4460-a033-35c60a2db7d7} URL = http://search.seznam.cz/?q={searchTerms}&sourceid=IE_5
SearchScopes: HKCU - {4c730c4b-e210-4052-b875-69217c04c736} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... rceid=IE_5
SearchScopes: HKCU - {c47077d8-750a-4c36-8eaa-c0ea8aa2b0fe} URL = http://www.mapy.cz/?query={searchTerms}&sourceid=IE_5
SearchScopes: HKCU - {e5c54514-5c47-46da-a57d-8805e7de9f19} URL = http://www.firmy.cz/phr/{searchTerms}?sourceid=IE_5
SearchScopes: HKCU - {f9d3b898-cf8b-4460-a033-35c60a2db7d7} URL = http://search.seznam.cz/?q={searchTerms}&sourceid=IE_5
BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO: Lištička -> {EA837F48-5AD1-443E-AE34-FFE03CBF3099} -> C:\Program Files\Seznam.cz\listicka.dll ()
Toolbar: HKCU - &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
Toolbar: HKCU - &Odkazy - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation)
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shoc ... tor/sw.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1

FireFox:
========
FF ProfilePath: C:\Documents and Settings\Pavel K\Data aplikací\Mozilla\Firefox\Profiles\3yt6vegh.default
FF Homepage: hxxp://www.seznam.cz/
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin: @adobe.com/ShockwavePlayer - C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\slunecnice-cz.xml

========================== Services (Whitelisted) =================

Locked "WmiApRpl" service could not be unlocked. <===== ATTENTION


==================== Drivers (Whitelisted) ====================

S3 adusbser; C:\WINDOWS\System32\DRIVERS\adusbser.sys [93440 2006-10-23] (AnyDATA Corporation)
S3 aec; C:\WINDOWS\System32\drivers\aec.sys [2834432 2008-04-13] () [File not signed]
R2 AegisP; C:\WINDOWS\System32\DRIVERS\AegisP.sys [21035 2012-01-11] (Meetinghouse Data Communications) [File not signed]
S3 cmpci; C:\WINDOWS\System32\drivers\cmaudio.sys [280782 2001-10-30] (C-Media Inc)
S3 DMusic; C:\WINDOWS\System32\drivers\DMusic.sys [2523136 2008-04-14] () [File not signed]
R2 EAPPkt; C:\WINDOWS\System32\DRIVERS\EAPPkt.sys [38144 2006-11-15] (Windows (R) 2000 DDK provider) [File not signed]
S3 gameenum; C:\WINDOWS\System32\DRIVERS\gameenum.sys [10624 2008-04-14] (Microsoft Corporation)
R1 P3; C:\WINDOWS\System32\DRIVERS\p3.sys [46592 2008-04-14] (Microsoft Corporation)
R3 rtl8185; C:\WINDOWS\System32\DRIVERS\rtl8185.sys [823936 2009-10-06] (Realtek Semiconductor Corporation )
R3 SiS300i; C:\WINDOWS\System32\DRIVERS\sis300ip.sys [101760 2001-08-17] (Silicon Integrated Systems Corporation)
R3 SISNIC; C:\WINDOWS\System32\DRIVERS\sisnic.sys [32768 2008-04-13] (SiS Corporation)
S3 splitter; C:\WINDOWS\System32\drivers\splitter.sys [6272 2008-04-14] () [File not signed]
S3 swmidi; C:\WINDOWS\System32\drivers\swmidi.sys [2637824 2008-04-14] () [File not signed]
S3 wdmaud; C:\WINDOWS\System32\drivers\wdmaud.sys [2375680 2008-04-14] () [File not signed]
S4 IntelIde; No ImagePath
U1 WS2IFSL;

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-07-21 21:17 - 2014-07-21 21:17 - 00005639 _____ () C:\Documents and Settings\Pavel K\Plocha\FRST.txt
2014-07-21 21:17 - 2014-07-21 21:17 - 00000000 ____D () C:\FRST
2014-07-21 21:13 - 2014-07-21 21:16 - 01080320 _____ (Farbar) C:\Documents and Settings\Pavel K\Plocha\FRST.exe
2014-07-21 21:12 - 2014-07-21 21:12 - 00112640 _____ (forum.viry.cz) C:\Documents and Settings\Pavel K\Plocha\FRSTLauncher.exe
2014-07-19 21:08 - 2014-07-19 21:08 - 00000000 ____D () C:\rsit
2014-07-19 21:08 - 2014-07-19 21:08 - 00000000 ____D () C:\Program Files\trend micro
2014-07-19 21:03 - 2014-07-19 21:08 - 00781909 _____ () C:\Documents and Settings\Pavel K\Plocha\RSIT.exe
2014-07-19 20:53 - 2014-07-19 20:53 - 00000000 ____D () C:\Documents and Settings\Pavel K\Plocha\Proces manager
2014-07-14 21:20 - 2014-07-14 21:20 - 00000000 __SHD () C:\FOUND.005
2014-07-12 09:40 - 2014-07-12 09:40 - 05659136 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerInstaller.exe
2014-07-07 20:47 - 2014-07-21 21:01 - 00000376 _____ () C:\WINDOWS\Tasks\{0EF96636-17B6-74E0-F235-FB6C520D677F}.job
2014-07-07 20:47 - 2014-07-07 20:47 - 00000000 ____D () C:\Documents and Settings\Pavel K\Data aplikací\EGMLVsYy
2014-06-28 19:51 - 2014-06-28 19:51 - 00000244 _____ () C:\WINDOWS\WININIT.INI
2014-06-28 19:08 - 2008-04-14 00:15 - 00006272 _____ () C:\WINDOWS\system32\Drivers\splitter.sys
2014-06-28 19:07 - 2014-06-28 19:51 - 00000025 _____ () C:\WINDOWS\mixerdef.ini
2014-06-28 19:04 - 2008-04-14 00:47 - 02375680 _____ () C:\WINDOWS\system32\Drivers\wdmaud.sys
2014-06-28 19:04 - 2008-04-14 00:45 - 00060800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sysaudio.sys
2014-06-28 19:04 - 2008-04-14 00:45 - 00060800 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sysaudio.sys
2014-06-28 19:04 - 2008-04-14 00:15 - 02637824 _____ () C:\WINDOWS\system32\Drivers\swmidi.sys
2014-06-28 19:04 - 2008-04-14 00:15 - 02523136 _____ () C:\WINDOWS\system32\Drivers\DMusic.sys
2014-06-28 19:04 - 2008-04-14 00:15 - 00172416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kmixer.sys
2014-06-28 19:04 - 2008-04-14 00:15 - 00032768 _____ () C:\WINDOWS\system32\dllcache\drmkaud.sys
2014-06-28 19:04 - 2008-04-14 00:15 - 00010624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\gameenum.sys
2014-06-28 19:04 - 2008-04-14 00:15 - 00010624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\gameenum.sys
2014-06-28 19:04 - 2008-04-14 00:15 - 00002944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\drmkaud.sys
2014-06-28 19:04 - 2008-04-14 00:09 - 00007552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MSKSSRV.sys
2014-06-28 19:04 - 2008-04-14 00:09 - 00007552 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mskssrv.sys
2014-06-28 19:04 - 2008-04-14 00:09 - 00005376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MSPCLOCK.sys
2014-06-28 19:04 - 2008-04-14 00:09 - 00005376 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mspclock.sys
2014-06-28 19:04 - 2008-04-14 00:09 - 00004992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MSPQM.sys
2014-06-28 19:04 - 2008-04-14 00:09 - 00004992 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mspqm.sys
2014-06-28 19:04 - 2008-04-13 22:09 - 02834432 _____ () C:\WINDOWS\system32\Drivers\aec.sys
2014-06-28 19:04 - 2008-04-13 22:09 - 00049152 _____ () C:\WINDOWS\system32\dllcache\aec.sys
2014-06-28 19:03 - 2014-06-28 19:21 - 00000026 _____ () C:\WINDOWS\CMCDPLAY.INI
2014-06-28 19:03 - 2014-06-28 19:03 - 00000000 ____D () C:\Program Files\C-Media
2014-06-28 19:03 - 2008-04-14 08:52 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax
2014-06-28 19:03 - 2008-04-14 08:52 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ksproxy.ax
2014-06-28 19:03 - 2008-04-14 08:51 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksuser.dll
2014-06-28 19:03 - 2008-04-14 08:51 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ksuser.dll
2014-06-28 19:03 - 2008-04-14 00:49 - 00146048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys
2014-06-28 19:03 - 2008-04-14 00:49 - 00146048 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\portcls.sys
2014-06-28 19:03 - 2008-04-14 00:15 - 00060160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\drmk.sys
2014-06-28 19:03 - 2008-04-14 00:15 - 00060160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\drmk.sys
2014-06-28 19:03 - 2001-12-07 20:32 - 00184320 ____R () C:\WINDOWS\W2KSetup.exe
2014-06-28 19:03 - 2001-12-07 15:24 - 01216512 ____R (C-Media Electronic Inc. (www.cmedia.com.tw)) C:\WINDOWS\Mixer.exe
2014-06-28 19:03 - 2001-12-07 15:24 - 01216512 ____R (C-Media Electronic Inc. (www.cmedia.com.tw)) C:\WINDOWS\Mixer.dat
2014-06-28 19:03 - 2001-10-30 20:01 - 00280782 ____R (C-Media Inc) C:\WINDOWS\system32\Drivers\cmaudio.sys
2014-06-28 19:03 - 2001-10-22 17:02 - 00122880 ____R () C:\WINDOWS\cmuninst.dat
2014-06-28 19:03 - 2001-10-22 17:01 - 00122880 ____R () C:\WINDOWS\cmuninst.exe
2014-06-28 19:03 - 2001-10-16 17:00 - 00028672 ____R (C-Media Corporation) C:\WINDOWS\system32\cmnprop.dll
2014-06-28 19:03 - 2001-01-11 15:02 - 00794624 ____R (Sensaura Ltd) C:\WINDOWS\system32\Audio3D.dll
2014-06-28 19:03 - 2001-01-11 15:02 - 00794624 ____R (Sensaura Ltd) C:\WINDOWS\system32\a3d.dll
2014-06-28 19:03 - 2001-01-11 15:02 - 00794624 _____ (Sensaura Ltd) C:\WINDOWS\system32\dllcache\a3d.dll
2014-06-28 19:03 - 2000-10-20 18:28 - 00765952 ____R (Sensaura Ltd) C:\WINDOWS\system\crlds3d.dll
2014-06-28 18:56 - 2014-06-28 18:56 - 00000000 ____D () C:\WINDOWS\system32\Lang
2014-06-28 18:39 - 2010-01-11 11:36 - 00000176 _____ () C:\WINDOWS\system32\Drivers\RTHDAEQ0.dat
2014-06-28 18:38 - 2014-06-28 18:38 - 00000000 ____D () C:\Program Files\Common Files\InstallShield

==================== One Month Modified Files and Folders =======

2014-07-21 21:17 - 2014-07-21 21:17 - 00005639 _____ () C:\Documents and Settings\Pavel K\Plocha\FRST.txt
2014-07-21 21:17 - 2014-07-21 21:17 - 00000000 ____D () C:\FRST
2014-07-21 21:16 - 2014-07-21 21:13 - 01080320 _____ (Farbar) C:\Documents and Settings\Pavel K\Plocha\FRST.exe
2014-07-21 21:12 - 2014-07-21 21:12 - 00112640 _____ (forum.viry.cz) C:\Documents and Settings\Pavel K\Plocha\FRSTLauncher.exe
2014-07-21 21:06 - 2010-10-30 17:45 - 00036160 _____ () C:\WINDOWS\WindowsUpdate.log
2014-07-21 21:01 - 2014-07-07 20:47 - 00000376 _____ () C:\WINDOWS\Tasks\{0EF96636-17B6-74E0-F235-FB6C520D677F}.job
2014-07-21 21:01 - 2014-06-04 14:08 - 00000418 _____ () C:\WINDOWS\Tasks\{51FF6313-4DE0-107B-6435-2F122B244E14}.job
2014-07-21 21:01 - 2012-01-11 18:54 - 00004842 _____ () C:\WINDOWS\RTacDbg.txt
2014-07-21 21:00 - 2010-10-30 18:05 - 00000178 ___SH () C:\Documents and Settings\Pavel K\ntuser.ini
2014-07-21 21:00 - 2010-10-30 17:57 - 00032552 ____N () C:\WINDOWS\SchedLgU.Txt
2014-07-21 21:00 - 2010-10-30 17:57 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-07-21 20:39 - 2014-03-15 15:12 - 00000914 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-07-19 21:08 - 2014-07-19 21:08 - 00000000 ____D () C:\rsit
2014-07-19 21:08 - 2014-07-19 21:08 - 00000000 ____D () C:\Program Files\trend micro
2014-07-19 21:08 - 2014-07-19 21:03 - 00781909 _____ () C:\Documents and Settings\Pavel K\Plocha\RSIT.exe
2014-07-19 20:53 - 2014-07-19 20:53 - 00000000 ____D () C:\Documents and Settings\Pavel K\Plocha\Proces manager
2014-07-19 18:52 - 2010-11-25 14:59 - 00002068 _____ () C:\WINDOWS\system32\d3d9caps.dat
2014-07-14 21:20 - 2014-07-14 21:20 - 00000000 __SHD () C:\FOUND.005
2014-07-14 10:23 - 2008-04-14 12:00 - 00013646 _____ () C:\WINDOWS\system32\wpa.dbl
2014-07-12 09:40 - 2014-07-12 09:40 - 05659136 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerInstaller.exe
2014-07-12 09:40 - 2014-03-06 17:18 - 00699056 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2014-07-12 09:40 - 2014-03-06 17:18 - 00071344 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2014-07-07 20:47 - 2014-07-07 20:47 - 00000000 ____D () C:\Documents and Settings\Pavel K\Data aplikací\EGMLVsYy
2014-06-28 19:51 - 2014-06-28 19:51 - 00000244 _____ () C:\WINDOWS\WININIT.INI
2014-06-28 19:51 - 2014-06-28 19:07 - 00000025 _____ () C:\WINDOWS\mixerdef.ini
2014-06-28 19:21 - 2014-06-28 19:03 - 00000026 _____ () C:\WINDOWS\CMCDPLAY.INI
2014-06-28 19:03 - 2014-06-28 19:03 - 00000000 ____D () C:\Program Files\C-Media
2014-06-28 18:56 - 2014-06-28 18:56 - 00000000 ____D () C:\WINDOWS\system32\Lang
2014-06-28 18:38 - 2014-06-28 18:38 - 00000000 ____D () C:\Program Files\Common Files\InstallShield

Files to move or delete:
====================
C:\Windows\Tasks\{51FF6313-4DE0-107B-6435-2F122B244E14}.job
C:\Windows\Tasks\{0EF96636-17B6-74E0-F235-FB6C520D677F}.job


==================== Bamital & volsnap Check =================

C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================


Available physical RAM: 221.39 MB
Total physical RAM: 495.53 MB
Percentage of memory in use: 55%

==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\{51FF6313-4DE0-107B-6435-2F122B244E14}.job => C:\Documents and Settings\Pavel K\Data aplikací\identities\{8eb77e4c-7fc1-4acc-a9ce-1eb3979673aa}\bjdxjkq.exe
Task: C:\WINDOWS\Tasks\{0EF96636-17B6-74E0-F235-FB6C520D677F}.job => C:\Documents and Settings\Pavel K\Data aplikací\EGMLVsYy\lvDaKLWv\AbWZtUmv\EXPGEkuLx.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================




===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Documents and Settings\Pavel K\Plocha" je 5 MB.


***** Startup Programs *****

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FlashPlayerUpdate
C:\WINDOWS\system32\Macromed\Flash\FlashUtil10k_ActiveX.exe -update activex [x]


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]


[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"


[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000


==================== End Of Log ==============================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Dvojité háčky a čárky

#4 Příspěvek od vyosek »

:arrow: Nemate ucet administratora, to bude tezke leceni

:arrow: Je potreba se prihlasit jako administrator a pak dejte novy log
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

hkotrc
Návštěvník
Návštěvník
Příspěvky: 91
Registrován: 11 zář 2012 21:48

Re: Dvojité háčky a čárky

#5 Příspěvek od hkotrc »

Ted to už bude dobře. Předtím se to nechovalo podle návodu ani. Špatně jsem to spustil asi.

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:24-07-2014
Ran by Pavel K (administrator) on PAVEL on 24-07-2014 15:50:30
Running from C:\Documents and Settings\Pavel K\Plocha
Platform: Microsoft Windows XP Home Edition Service Pack 3 (X86) OS Language: Čeština
Internet Explorer Version 8
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(HP) C:\WINDOWS\System32\HPSIsvc.exe
() C:\Program Files\ZyXEL\G-302v3\G-302v3.exe
(Microsoft Corporation) C:\WINDOWS\System32\WSCNTFY.EXE
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\FIREFOX.EXE
() C:\Documents and Settings\Pavel K\Plocha\FRSTLauncher.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKU\S-1-5-21-2052111302-1677128483-1202660629-1004\...\Run: [ccleaner] => C:\Program Files\CCleaner\CCleaner.exe [2696512 2011-12-20] (Piriform Ltd)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\ZyXEL G-302 v3 Utility.lnk
ShortcutTarget: ZyXEL G-302 v3 Utility.lnk -> C:\Program Files\ZyXEL\G-302v3\G-302v3.exe ()

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
SearchScopes: HKCU - DefaultScope {f9d3b898-cf8b-4460-a033-35c60a2db7d7} URL = http://search.seznam.cz/?q={searchTerms}&sourceid=IE_5
SearchScopes: HKCU - {4c730c4b-e210-4052-b875-69217c04c736} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... rceid=IE_5
SearchScopes: HKCU - {c47077d8-750a-4c36-8eaa-c0ea8aa2b0fe} URL = http://www.mapy.cz/?query={searchTerms}&sourceid=IE_5
SearchScopes: HKCU - {e5c54514-5c47-46da-a57d-8805e7de9f19} URL = http://www.firmy.cz/phr/{searchTerms}?sourceid=IE_5
SearchScopes: HKCU - {f9d3b898-cf8b-4460-a033-35c60a2db7d7} URL = http://search.seznam.cz/?q={searchTerms}&sourceid=IE_5
BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO: Lištička -> {EA837F48-5AD1-443E-AE34-FFE03CBF3099} -> C:\Program Files\Seznam.cz\listicka.dll ()
Toolbar: HKCU - &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
Toolbar: HKCU - &Odkazy - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation)
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shoc ... tor/sw.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Tcpip\Parameters: [DhcpNameServer] 77.236.192.130 77.236.192.150

FireFox:
========
FF ProfilePath: C:\Documents and Settings\Pavel K\Data aplikací\Mozilla\Firefox\Profiles\3yt6vegh.default
FF Homepage: hxxp://www.seznam.cz/
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin: @adobe.com/ShockwavePlayer - C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\slunecnice-cz.xml

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)


==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 adusbser; C:\WINDOWS\System32\DRIVERS\adusbser.sys [93440 2006-10-23] (AnyDATA Corporation)
S3 aec; C:\WINDOWS\System32\drivers\aec.sys [2834432 2008-04-13] () [File not signed]
R2 AegisP; C:\WINDOWS\System32\DRIVERS\AegisP.sys [21035 2012-01-11] (Meetinghouse Data Communications) [File not signed]
S3 cmpci; C:\WINDOWS\System32\drivers\cmaudio.sys [280782 2001-10-30] (C-Media Inc)
S3 DMusic; C:\WINDOWS\System32\drivers\DMusic.sys [2523136 2008-04-14] () [File not signed]
R2 EAPPkt; C:\WINDOWS\System32\DRIVERS\EAPPkt.sys [38144 2006-11-15] (Windows (R) 2000 DDK provider) [File not signed]
S3 gameenum; C:\WINDOWS\System32\DRIVERS\gameenum.sys [10624 2008-04-14] (Microsoft Corporation)
R1 P3; C:\WINDOWS\System32\DRIVERS\p3.sys [46592 2008-04-14] (Microsoft Corporation)
R3 rtl8185; C:\WINDOWS\System32\DRIVERS\rtl8185.sys [823936 2009-10-06] (Realtek Semiconductor Corporation )
R3 SiS300i; C:\WINDOWS\System32\DRIVERS\sis300ip.sys [101760 2001-08-17] (Silicon Integrated Systems Corporation)
R3 SISNIC; C:\WINDOWS\System32\DRIVERS\sisnic.sys [32768 2008-04-13] (SiS Corporation)
S3 splitter; C:\WINDOWS\System32\drivers\splitter.sys [6272 2008-04-14] () [File not signed]
S3 swmidi; C:\WINDOWS\System32\drivers\swmidi.sys [2637824 2008-04-14] () [File not signed]
S3 wdmaud; C:\WINDOWS\System32\drivers\wdmaud.sys [2375680 2008-04-14] () [File not signed]
S4 IntelIde; No ImagePath
U1 WS2IFSL;

==================== NetSvcs (Whitelisted) ===================


(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-07-24 15:50 - 2014-07-24 15:50 - 00000000 ____D () C:\Documents and Settings\Pavel K\Plocha\FRST-OlderVersion
2014-07-24 15:24 - 2014-07-24 15:25 - 00002972 _____ () C:\WINDOWS\setupapi.log
2014-07-24 15:24 - 2014-07-24 15:25 - 00000075 _____ () C:\WINDOWS\setupact.log
2014-07-24 15:24 - 2014-07-24 15:24 - 00000000 _____ () C:\WINDOWS\setuperr.log
2014-07-24 15:24 - 2008-04-14 00:15 - 00010368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys
2014-07-24 15:24 - 2008-04-14 00:15 - 00010368 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hidusb.sys
2014-07-24 15:24 - 2001-10-24 11:54 - 00012160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mouhid.sys
2014-07-24 15:24 - 2001-10-24 11:54 - 00012160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mouhid.sys
2014-07-21 21:17 - 2014-07-24 15:50 - 00006721 _____ () C:\Documents and Settings\Pavel K\Plocha\FRST.txt
2014-07-21 21:17 - 2014-07-21 21:17 - 00000000 ____D () C:\FRST
2014-07-21 21:13 - 2014-07-24 15:50 - 01084416 _____ (Farbar) C:\Documents and Settings\Pavel K\Plocha\FRST.exe
2014-07-19 21:08 - 2014-07-19 21:08 - 00000000 ____D () C:\rsit
2014-07-19 21:08 - 2014-07-19 21:08 - 00000000 ____D () C:\Program Files\trend micro
2014-07-19 21:03 - 2014-07-19 21:08 - 00781909 _____ () C:\Documents and Settings\Pavel K\Plocha\RSIT.exe
2014-07-19 20:53 - 2014-07-19 20:53 - 00000000 ____D () C:\Documents and Settings\Pavel K\Plocha\Proces manager
2014-07-14 21:20 - 2014-07-14 21:20 - 00000000 __SHD () C:\FOUND.005
2014-07-12 09:40 - 2014-07-12 09:40 - 05659136 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerInstaller.exe
2014-07-07 20:47 - 2014-07-24 15:24 - 00000376 _____ () C:\WINDOWS\Tasks\{0EF96636-17B6-74E0-F235-FB6C520D677F}.job
2014-07-07 20:47 - 2014-07-07 20:47 - 00000000 ____D () C:\Documents and Settings\Pavel K\Data aplikací\EGMLVsYy
2014-06-28 19:51 - 2014-06-28 19:51 - 00000244 _____ () C:\WINDOWS\WININIT.INI
2014-06-28 19:08 - 2008-04-14 00:15 - 00006272 _____ () C:\WINDOWS\system32\Drivers\splitter.sys
2014-06-28 19:07 - 2014-06-28 19:51 - 00000025 _____ () C:\WINDOWS\mixerdef.ini
2014-06-28 19:04 - 2008-04-14 00:47 - 02375680 _____ () C:\WINDOWS\system32\Drivers\wdmaud.sys
2014-06-28 19:04 - 2008-04-14 00:45 - 00060800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sysaudio.sys
2014-06-28 19:04 - 2008-04-14 00:45 - 00060800 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sysaudio.sys
2014-06-28 19:04 - 2008-04-14 00:15 - 02637824 _____ () C:\WINDOWS\system32\Drivers\swmidi.sys
2014-06-28 19:04 - 2008-04-14 00:15 - 02523136 _____ () C:\WINDOWS\system32\Drivers\DMusic.sys
2014-06-28 19:04 - 2008-04-14 00:15 - 00172416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kmixer.sys
2014-06-28 19:04 - 2008-04-14 00:15 - 00032768 _____ () C:\WINDOWS\system32\dllcache\drmkaud.sys
2014-06-28 19:04 - 2008-04-14 00:15 - 00010624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\gameenum.sys
2014-06-28 19:04 - 2008-04-14 00:15 - 00010624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\gameenum.sys
2014-06-28 19:04 - 2008-04-14 00:15 - 00002944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\drmkaud.sys
2014-06-28 19:04 - 2008-04-14 00:09 - 00007552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MSKSSRV.sys
2014-06-28 19:04 - 2008-04-14 00:09 - 00007552 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mskssrv.sys
2014-06-28 19:04 - 2008-04-14 00:09 - 00005376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MSPCLOCK.sys
2014-06-28 19:04 - 2008-04-14 00:09 - 00005376 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mspclock.sys
2014-06-28 19:04 - 2008-04-14 00:09 - 00004992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MSPQM.sys
2014-06-28 19:04 - 2008-04-14 00:09 - 00004992 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mspqm.sys
2014-06-28 19:04 - 2008-04-13 22:09 - 02834432 _____ () C:\WINDOWS\system32\Drivers\aec.sys
2014-06-28 19:04 - 2008-04-13 22:09 - 00049152 _____ () C:\WINDOWS\system32\dllcache\aec.sys
2014-06-28 19:03 - 2014-06-28 19:21 - 00000026 _____ () C:\WINDOWS\CMCDPLAY.INI
2014-06-28 19:03 - 2014-06-28 19:03 - 00000000 ____D () C:\Program Files\C-Media
2014-06-28 19:03 - 2008-04-14 08:52 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax
2014-06-28 19:03 - 2008-04-14 08:52 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ksproxy.ax
2014-06-28 19:03 - 2008-04-14 08:51 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksuser.dll
2014-06-28 19:03 - 2008-04-14 08:51 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ksuser.dll
2014-06-28 19:03 - 2008-04-14 00:49 - 00146048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys
2014-06-28 19:03 - 2008-04-14 00:49 - 00146048 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\portcls.sys
2014-06-28 19:03 - 2008-04-14 00:15 - 00060160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\drmk.sys
2014-06-28 19:03 - 2008-04-14 00:15 - 00060160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\drmk.sys
2014-06-28 19:03 - 2001-12-07 20:32 - 00184320 ____R () C:\WINDOWS\W2KSetup.exe
2014-06-28 19:03 - 2001-12-07 15:24 - 01216512 ____R (C-Media Electronic Inc. (www.cmedia.com.tw)) C:\WINDOWS\Mixer.exe
2014-06-28 19:03 - 2001-12-07 15:24 - 01216512 ____R (C-Media Electronic Inc. (www.cmedia.com.tw)) C:\WINDOWS\Mixer.dat
2014-06-28 19:03 - 2001-10-30 20:01 - 00280782 ____R (C-Media Inc) C:\WINDOWS\system32\Drivers\cmaudio.sys
2014-06-28 19:03 - 2001-10-22 17:02 - 00122880 ____R () C:\WINDOWS\cmuninst.dat
2014-06-28 19:03 - 2001-10-22 17:01 - 00122880 ____R () C:\WINDOWS\cmuninst.exe
2014-06-28 19:03 - 2001-10-16 17:00 - 00028672 ____R (C-Media Corporation) C:\WINDOWS\system32\cmnprop.dll
2014-06-28 19:03 - 2001-01-11 15:02 - 00794624 ____R (Sensaura Ltd) C:\WINDOWS\system32\Audio3D.dll
2014-06-28 19:03 - 2001-01-11 15:02 - 00794624 ____R (Sensaura Ltd) C:\WINDOWS\system32\a3d.dll
2014-06-28 19:03 - 2001-01-11 15:02 - 00794624 _____ (Sensaura Ltd) C:\WINDOWS\system32\dllcache\a3d.dll
2014-06-28 19:03 - 2000-10-20 18:28 - 00765952 ____R (Sensaura Ltd) C:\WINDOWS\system\crlds3d.dll
2014-06-28 18:56 - 2014-06-28 18:56 - 00000000 ____D () C:\WINDOWS\system32\Lang
2014-06-28 18:39 - 2010-01-11 11:36 - 00000176 _____ () C:\WINDOWS\system32\Drivers\RTHDAEQ0.dat
2014-06-28 18:38 - 2014-06-28 18:38 - 00000000 ____D () C:\Program Files\Common Files\InstallShield

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-07-24 15:50 - 2014-07-24 15:50 - 00000000 ____D () C:\Documents and Settings\Pavel K\Plocha\FRST-OlderVersion
2014-07-24 15:50 - 2014-07-21 21:17 - 00006721 _____ () C:\Documents and Settings\Pavel K\Plocha\FRST.txt
2014-07-24 15:50 - 2014-07-21 21:13 - 01084416 _____ (Farbar) C:\Documents and Settings\Pavel K\Plocha\FRST.exe
2014-07-24 15:39 - 2014-03-15 15:12 - 00000914 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-07-24 15:30 - 2010-10-30 17:45 - 00004276 _____ () C:\WINDOWS\WindowsUpdate.log
2014-07-24 15:25 - 2014-07-24 15:24 - 00002972 _____ () C:\WINDOWS\setupapi.log
2014-07-24 15:25 - 2014-07-24 15:24 - 00000075 _____ () C:\WINDOWS\setupact.log
2014-07-24 15:24 - 2014-07-24 15:24 - 00000000 _____ () C:\WINDOWS\setuperr.log
2014-07-24 15:24 - 2014-07-07 20:47 - 00000376 _____ () C:\WINDOWS\Tasks\{0EF96636-17B6-74E0-F235-FB6C520D677F}.job
2014-07-24 15:24 - 2014-06-04 14:08 - 00000418 _____ () C:\WINDOWS\Tasks\{51FF6313-4DE0-107B-6435-2F122B244E14}.job
2014-07-24 15:24 - 2012-01-11 18:54 - 00002383 _____ () C:\WINDOWS\RTacDbg.txt
2014-07-24 15:24 - 2010-10-30 17:57 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-07-24 15:24 - 2008-04-14 12:00 - 00013646 _____ () C:\WINDOWS\system32\wpa.dbl
2014-07-22 18:22 - 2010-10-30 17:57 - 00032552 ____N () C:\WINDOWS\SchedLgU.Txt
2014-07-22 18:21 - 2010-10-30 18:05 - 00000178 ___SH () C:\Documents and Settings\Pavel K\ntuser.ini
2014-07-22 06:20 - 2010-11-25 14:59 - 00002068 _____ () C:\WINDOWS\system32\d3d9caps.dat
2014-07-21 21:17 - 2014-07-21 21:17 - 00000000 ____D () C:\FRST
2014-07-19 21:08 - 2014-07-19 21:08 - 00000000 ____D () C:\rsit
2014-07-19 21:08 - 2014-07-19 21:08 - 00000000 ____D () C:\Program Files\trend micro
2014-07-19 21:08 - 2014-07-19 21:03 - 00781909 _____ () C:\Documents and Settings\Pavel K\Plocha\RSIT.exe
2014-07-19 20:53 - 2014-07-19 20:53 - 00000000 ____D () C:\Documents and Settings\Pavel K\Plocha\Proces manager
2014-07-14 21:20 - 2014-07-14 21:20 - 00000000 __SHD () C:\FOUND.005
2014-07-12 09:40 - 2014-07-12 09:40 - 05659136 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerInstaller.exe
2014-07-12 09:40 - 2014-03-06 17:18 - 00699056 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2014-07-12 09:40 - 2014-03-06 17:18 - 00071344 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2014-07-07 20:47 - 2014-07-07 20:47 - 00000000 ____D () C:\Documents and Settings\Pavel K\Data aplikací\EGMLVsYy
2014-06-28 19:51 - 2014-06-28 19:51 - 00000244 _____ () C:\WINDOWS\WININIT.INI
2014-06-28 19:51 - 2014-06-28 19:07 - 00000025 _____ () C:\WINDOWS\mixerdef.ini
2014-06-28 19:21 - 2014-06-28 19:03 - 00000026 _____ () C:\WINDOWS\CMCDPLAY.INI
2014-06-28 19:03 - 2014-06-28 19:03 - 00000000 ____D () C:\Program Files\C-Media
2014-06-28 18:56 - 2014-06-28 18:56 - 00000000 ____D () C:\WINDOWS\system32\Lang
2014-06-28 18:38 - 2014-06-28 18:38 - 00000000 ____D () C:\Program Files\Common Files\InstallShield

Files to move or delete:
====================
C:\Windows\Tasks\{51FF6313-4DE0-107B-6435-2F122B244E14}.job
C:\Windows\Tasks\{0EF96636-17B6-74E0-F235-FB6C520D677F}.job


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed




===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: (DISK) (Fixed) (Total:18.64 GB) (Free:9.17 GB) FAT32 ==>[Drive with boot components (Windows XP)]

Available physical RAM: 175.36 MB
Total physical RAM: 495.53 MB
Percentage of memory in use: 64%

==================== MBR and Partition Table ==================

Disk: 0 (Size: 19 GB) (Disk ID: EF9BEF9B)
Partition 1: (Active) - (Size=19 GB) - (Type=0C)

==================== Scheduled Tasks (whitelisted) ==================

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not bemove.)
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\{51FF6313-4DE0-107B-6435-2F122B244E14}.job => C:\Documents and Settings\Pavel K\Data aplikací\identities\{8eb77e4c-7fc1-4acc-a9ce-1eb3979673aa}\bjdxjkq.exe
Task: C:\WINDOWS\Tasks\{0EF96636-17B6-74E0-F235-FB6C520D677F}.job => C:\Documents and Settings\Pavel K\Data aplikací\EGMLVsYy\lvDaKLWv\AbWZtUmv\EXPGEkuLx.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================




===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Documents and Settings\Pavel K\Plocha" je 6 MB.


***** Startup Programs *****

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FlashPlayerUpdate
C:\WINDOWS\system32\Macromed\Flash\FlashUtil10k_ActiveX.exe -update activex [x]


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]


[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"


[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000


==================== End Of Log ==============================

hkotrc
Návštěvník
Návštěvník
Příspěvky: 91
Registrován: 11 zář 2012 21:48

Re: Dvojité háčky a čárky

#6 Příspěvek od hkotrc »

Mohu poprosit o pomoc, co s tím dál? :)

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Dvojité háčky a čárky

#7 Příspěvek od vyosek »

:arrow: Tvorba fixlistu pro FRST
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    Start
    HKU\S-1-5-21-2052111302-1677128483-1202660629-1004\...\Run: [ccleaner] => C:\Program Files\CCleaner\CCleaner.exe [2696512 2011-12-20] (Piriform Ltd)
    
    BHO: Lištička -> {EA837F48-5AD1-443E-AE34-FFE03CBF3099} -> C:\Program Files\Seznam.cz\listicka.dll ()
    Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
    
    2014-07-24 15:24 - 2014-07-24 15:25 - 00002972 _____ () C:\WINDOWS\setupapi.log
    2014-07-24 15:24 - 2014-07-24 15:25 - 00000075 _____ () C:\WINDOWS\setupact.log
    2014-07-24 15:24 - 2014-07-24 15:24 - 00000000 _____ () C:\WINDOWS\setuperr.log
    2014-07-21 21:17 - 2014-07-24 15:50 - 00006721 _____ () C:\Documents and Settings\Pavel K\Plocha\FRST.txt
    2014-07-19 21:08 - 2014-07-19 21:08 - 00000000 ____D () C:\rsit
    2014-07-19 21:08 - 2014-07-19 21:08 - 00000000 ____D () C:\Program Files\trend micro
    2014-07-19 21:03 - 2014-07-19 21:08 - 00781909 _____ () C:\Documents and Settings\Pavel K\Plocha\RSIT.exe
    2014-07-07 20:47 - 2014-07-24 15:24 - 00000376 _____ () C:\WINDOWS\Tasks\{0EF96636-17B6-74E0-F235-FB6C520D677F}.job
    2014-07-07 20:47 - 2014-07-07 20:47 - 00000000 ____D () C:\Documents and Settings\Pavel K\Data aplikací\EGMLVsYy
    C:\Windows\Tasks\{51FF6313-4DE0-107B-6435-2F122B244E14}.job
    C:\Windows\Tasks\{0EF96636-17B6-74E0-F235-FB6C520D677F}.job
    
    Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
    Task: C:\WINDOWS\Tasks\{51FF6313-4DE0-107B-6435-2F122B244E14}.job => C:\Documents and Settings\Pavel K\Data aplikací\identities\{8eb77e4c-7fc1-4acc-a9ce-1eb3979673aa}\bjdxjkq.exe
    Task: C:\WINDOWS\Tasks\{0EF96636-17B6-74E0-F235-FB6C520D677F}.job => C:\Documents and Settings\Pavel K\Data aplikací\EGMLVsYy\lvDaKLWv\AbWZtUmv\EXPGEkuLx.exe
    C:\Documents and Settings\Pavel K\Data aplikací\identities\{8eb77e4c-7fc1-4acc-a9ce-1eb3979673aa}
    C:\Documents and Settings\Pavel K\Data aplikací\EGMLVsYy
    
    REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FlashPlayerUpdate" /f
    
    Hosts:
    Reboot:
    End
    
  • Ulozte vytvoreny TXT jako fixlist.txt
  • Presunte vytvoreny fixlist vedle FRST
:arrow: Spustte znovu FRST.exe
  • Kliknete na Fix
  • Probehne oprava a vytvori log Fixlog.txt
:arrow: Restart PC a dejte mi sem fixlog.txt
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

hkotrc
Návštěvník
Návštěvník
Příspěvky: 91
Registrován: 11 zář 2012 21:48

Re: Dvojité háčky a čárky

#8 Příspěvek od hkotrc »

Přikládám log
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version:24-07-2014
Ran by Pavel K at 2014-07-27 10:12:18 Run:2
Running from C:\Documents and Settings\Pavel K\Plocha
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
Start
HKU\S-1-5-21-2052111302-1677128483-1202660629-1004\...\Run: [ccleaner] => C:\Program Files\CCleaner\CCleaner.exe [2696512 2011-12-20] (Piriform Ltd)

BHO: Lištička -> {EA837F48-5AD1-443E-AE34-FFE03CBF3099} -> C:\Program Files\Seznam.cz\listicka.dll ()
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File

2014-07-24 15:24 - 2014-07-24 15:25 - 00002972 _____ () C:\WINDOWS\setupapi.log
2014-07-24 15:24 - 2014-07-24 15:25 - 00000075 _____ () C:\WINDOWS\setupact.log
2014-07-24 15:24 - 2014-07-24 15:24 - 00000000 _____ () C:\WINDOWS\setuperr.log
2014-07-21 21:17 - 2014-07-24 15:50 - 00006721 _____ () C:\Documents and Settings\Pavel K\Plocha\FRST.txt
2014-07-19 21:08 - 2014-07-19 21:08 - 00000000 ____D () C:\rsit
2014-07-19 21:08 - 2014-07-19 21:08 - 00000000 ____D () C:\Program Files\trend micro
2014-07-19 21:03 - 2014-07-19 21:08 - 00781909 _____ () C:\Documents and Settings\Pavel K\Plocha\RSIT.exe
2014-07-07 20:47 - 2014-07-24 15:24 - 00000376 _____ () C:\WINDOWS\Tasks\{0EF96636-17B6-74E0-F235-FB6C520D677F}.job
2014-07-07 20:47 - 2014-07-07 20:47 - 00000000 ____D () C:\Documents and Settings\Pavel K\Data aplikací\EGMLVsYy
C:\Windows\Tasks\{51FF6313-4DE0-107B-6435-2F122B244E14}.job
C:\Windows\Tasks\{0EF96636-17B6-74E0-F235-FB6C520D677F}.job

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\{51FF6313-4DE0-107B-6435-2F122B244E14}.job => C:\Documents and Settings\Pavel K\Data aplikací\identities\{8eb77e4c-7fc1-4acc-a9ce-1eb3979673aa}\bjdxjkq.exe
Task: C:\WINDOWS\Tasks\{0EF96636-17B6-74E0-F235-FB6C520D677F}.job => C:\Documents and Settings\Pavel K\Data aplikací\EGMLVsYy\lvDaKLWv\AbWZtUmv\EXPGEkuLx.exe
C:\Documents and Settings\Pavel K\Data aplikací\identities\{8eb77e4c-7fc1-4acc-a9ce-1eb3979673aa}
C:\Documents and Settings\Pavel K\Data aplikací\EGMLVsYy

REG: reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FlashPlayerUpdate" /f

Hosts:
Reboot:
End
*****************

HKU\S-1-5-21-2052111302-1677128483-1202660629-1004\Software\Microsoft\Windows\CurrentVersion\Run\\ccleaner => Value not found.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA837F48-5AD1-443E-AE34-FFE03CBF3099}" => Key not found.
"HKCR\CLSID\{EA837F48-5AD1-443E-AE34-FFE03CBF3099}" => Key not found.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => Value not found.
"HKCR\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}" => Key not found.
"C:\WINDOWS\setupapi.log" => File/Directory not found.
"C:\WINDOWS\setupact.log" => File/Directory not found.
"C:\WINDOWS\setuperr.log" => File/Directory not found.
C:\Documents and Settings\Pavel K\Plocha\FRST.txt => Moved successfully.
C:\rsit => Moved successfully.
C:\Program Files\trend micro => Moved successfully.
C:\Documents and Settings\Pavel K\Plocha\RSIT.exe => Moved successfully.
C:\WINDOWS\Tasks\{0EF96636-17B6-74E0-F235-FB6C520D677F}.job => Moved successfully.

"C:\Documents and Settings\Pavel K\Data aplikací\EGMLVsYy" directory move:

Could not move "C:\Documents and Settings\Pavel K\Data aplikací\EGMLVsYy\lvDaKLWv\AbWZtUmv\EXPGEkuLx.exe" => Scheduled to move on reboot.
Could not move "C:\Documents and Settings\Pavel K\Data aplikací\EGMLVsYy" directory. => Scheduled to move on reboot.

C:\Windows\Tasks\{51FF6313-4DE0-107B-6435-2F122B244E14}.job => Moved successfully.
"C:\Windows\Tasks\{0EF96636-17B6-74E0-F235-FB6C520D677F}.job" => File/Directory not found.
C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\WINDOWS\Tasks\{51FF6313-4DE0-107B-6435-2F122B244E14}.job not found.
C:\WINDOWS\Tasks\{0EF96636-17B6-74E0-F235-FB6C520D677F}.job not found.
C:\Documents and Settings\Pavel K\Data aplikací\identities\{8eb77e4c-7fc1-4acc-a9ce-1eb3979673aa} => Moved successfully.

"C:\Documents and Settings\Pavel K\Data aplikací\EGMLVsYy" directory move:

Could not move "C:\Documents and Settings\Pavel K\Data aplikací\EGMLVsYy\lvDaKLWv\AbWZtUmv\EXPGEkuLx.exe" => Scheduled to move on reboot.
Could not move "C:\Documents and Settings\Pavel K\Data aplikací\EGMLVsYy" directory. => Scheduled to move on reboot.


========= reg delete "HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FlashPlayerUpdate" /f =========


Operace byla dokončena úspěšně.


========= End of Reg: =========

C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.

=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2014-07-27 10:13:29)<=

C:\Documents and Settings\Pavel K\Data aplikací\EGMLVsYy\lvDaKLWv\AbWZtUmv\EXPGEkuLx.exe => Is moved successfully.
C:\Documents and Settings\Pavel K\Data aplikací\EGMLVsYy => Is moved successfully.
C:\Documents and Settings\Pavel K\Data aplikací\EGMLVsYy\lvDaKLWv\AbWZtUmv\EXPGEkuLx.exe => Is moved successfully.
C:\Documents and Settings\Pavel K\Data aplikací\EGMLVsYy => Is moved successfully.

==== End of Fixlog ====

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Dvojité háčky a čárky

#9 Příspěvek od vyosek »

Jak se chova PC??
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

hkotrc
Návštěvník
Návštěvník
Příspěvky: 91
Registrován: 11 zář 2012 21:48

Re: Dvojité háčky a čárky

#10 Příspěvek od hkotrc »

Teď už to jde! :) Skvělý moc díky!! :thumbsup:

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Dvojité háčky a čárky

#11 Příspěvek od vyosek »

Tak jeste uklidime :James008:

:arrow: T-Cleaner http://vyosek.tym.cz/pro_usery/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: OTC http://oldtimer.geekstogo.com/OTC.exe
  • Stahnete a spustte
  • Kliknete na CleanUp a potvrdte YES
  • Program uklidi a restartuje PC

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stahnete a spustte
  • Kliknete na Start a potvrdte OK
  • Program uklidi a restartuje pc
  • Po pouziti utilitu smazte
:arrow: Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: A pokud nejsou problemy ci dotazy, je to z me strany vse :|
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Zamčeno