Zdravím Vás,
během dneška se objevily jisté problémy ve Windows, pokusím se to popsat. Mozilla má potíže s načítáním filů (obrázky, skripty), pokus o spuštění scanu v NOD32 končí chybou, nelze spustit některé .exe soubory, končí to chybou "...nená platná aplikace typu Win32". Týká se to například instalačky Firefoxu.
Spouštěl jsem scan Dr.Web, Mbam a SpyBot v nouzovém režimu a až na pár tracker cookies bylo vše čisté. Byl bych moc rád, pokud bych Vás mohl požádat o kontrolu logu z RSIT.
info.txt logfile of random's system information tool 1.08 2010-08-06 11:45:31
======Uninstall list======
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 D:\WINDOWS\INF\PCHealth.inf
µTorrent-->"G:\INSTALLED\uTorrent\uTorrent.exe" /UNINSTALL
32 Bit HP CIO Components Installer-->MsiExec.exe /I{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}
Acrobat.com-->MsiExec.exe /X{287ECFA4-719A-2143-A09B-D6A12DE54E40}
Acronis True Image Home-->MsiExec.exe /X{67ED38A3-4882-448B-B44D-3428AB00D7D5}
Adobe AIR-->d:\Program Files\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe -arp:uninstall
Adobe AIR-->MsiExec.exe /I{A2BCA9F1-566C-4805-97D1-7FDC93386723}
Adobe Anchor Service CS3-->MsiExec.exe /I{90176341-0A8B-4CCC-A78D-F862228A6B95}
Adobe Asset Services CS3-->MsiExec.exe /I{6FF5DD7A-FE28-4439-B8CF-1E9AF4EA0A61}
Adobe Bridge CS3-->MsiExec.exe /I{9C9824D9-9000-4373-A6A5-D0E5D4831394}
Adobe Bridge Start Meeting-->MsiExec.exe /I{08B32819-6EEF-4057-AEDA-5AB681A36A23}
Adobe Camera Raw 4.0-->MsiExec.exe /I{B3BF6689-A81D-40D8-9A86-4AC4ACD9FC1C}
Adobe CMaps-->MsiExec.exe /I{A2B242BD-FF8D-4840-9DAA-9170EABEC59C}
Adobe Color - Photoshop Specific-->MsiExec.exe /I{A2D81E70-2A98-4A08-A628-94388B063C5E}
Adobe Color Common Settings-->MsiExec.exe /I{DADD7B8A-BCB0-44F5-967A-ECB6B4F2ECD9}
Adobe Color EU Extra Settings-->MsiExec.exe /I{51846830-E7B2-4218-8968-B77F0FF475B8}
Adobe Color JA Extra Settings-->MsiExec.exe /I{DD7DB3C5-6FA3-4FA3-8A71-C2F2940EB029}
Adobe Color NA Recommended Settings-->MsiExec.exe /I{95655ED4-7CA5-46DF-907F-7144877A32E5}
Adobe Default Language CS3-->MsiExec.exe /I{B9B35331-B7E4-4E5C-BF4C-7BC87856124D}
Adobe Device Central CS3-->MsiExec.exe /I{8D2BA474-F406-4710-9AE4-D4F22D21F0DD}
Adobe Download Manager-->"D:\WINDOWS\system32\rundll32.exe" "D:\Program Files\NOS\bin\getPlus_Helper.dll",Uninstall
/IE2883E8F-472F-4fb0-9522-AC9BF37916A7 /Get1
Adobe ExtendScript Toolkit 2-->MsiExec.exe /I{C2D69781-F392-4118-A5A7-C7E9C38DBFC2}
Adobe Flash Player 10 ActiveX-->D:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Flash Player 10 Plugin-->D:\WINDOWS\system32\Macromed\Flash\FlashUtil10h_Plugin.exe -maintain plugin
Adobe Fonts All-->MsiExec.exe /I{6ABE0BEE-D572-4FE8-B434-9E72A289431B}
Adobe Help Viewer CS3-->MsiExec.exe /I{04AF207D-9A77-465A-8B76-991F6AB66245}
Adobe Linguistics CS3-->MsiExec.exe /I{54793AA1-5001-42F4-ABB6-C364617C6078}
Adobe PDF Library Files-->MsiExec.exe /I{D2559B88-CC9D-4B48-81BB-F492BAA9C48C}
Adobe Photoshop CS3-->D:\Program Files\Common Files\Adobe\Installers\719d6f144d0c086a0dfa7ff76bb9ac1\Setup.exe
Adobe Photoshop CS3-->MsiExec.exe /I{3D7E3EC9-46CF-4359-9289-39CE01DFB82F}
Adobe Reader 9.1-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A91000000001}
Adobe Setup-->MsiExec.exe /I{FF11004C-F42A-4A31-9BCF-7F5C8FDBE53C}
Adobe Stock Photos CS3-->MsiExec.exe /I{29E5EA97-5F74-4A57-B8B2-D4F169117183}
Adobe Type Support-->MsiExec.exe /I{8E6808E2-613D-4FCD-81A2-6C8FA8E03312}
Adobe Update Manager CS3-->MsiExec.exe /I{E69AE897-9E0B-485C-8552-7841F48D42D8}
Adobe Version Cue CS3 Client-->MsiExec.exe /I{D0DFF92A-492E-4C40-B862-A74A173C25C5}
Adobe WinSoft Linguistics Plugin-->MsiExec.exe /I{184CE391-7E0E-4C63-9935-D7A10EDFD3C6}
Adobe XMP Panels CS3-->MsiExec.exe /I{802771A9-A856-4A41-ACF7-1450E523C923}
ATI AVIVO Codecs-->MsiExec.exe /I{535C211C-DB3E-10DD-9112-5BC6F144D2AC}
Catalyst Control Center - Branding-->MsiExec.exe /I{87323561-58BA-4D5B-BADA-A791B69D1705}
CINEMA 4D 11.514-->"G:\INSTALLED\Cinema 4D R11\CINEMA 4D.exe" "G:\INSTALLED\Cinema 4D
R11\resource\install20100720_213359.log" -uninstall
Citrix XenApp Web Plugin-->MsiExec.exe /X{EBFEEB3F-3E3B-4725-A4E0-376144CE4F76}
Far Cry 2-->"D:\Program Files\InstallShield Installation
Information\{F2835483-37F2-4123-B4FE-0E77D58447F2}\setup.exe" -runfromtemp -l0x0009 -removeonly
Hotfix for Windows XP (KB942766-v6)-->"D:\WINDOWS\$NtUninstallKB942766-v6$\spuninst\spuninst.exe"
HP Deskjet All-In-One Software 9.0-->G:\INSTALLED\HP\Digital
Imaging\{FA8A44D7-3E8A-4034-9C4F-088FA6B72BC4}\setup\hpzscr01.exe -datfile hposcr14.dat
HP Imaging Device Functions 9.0-->G:\INSTALLED\HP\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile
hpqbud01.dat
HP Photosmart Essential 2.01-->G:\INSTALLED\HP\Digital Imaging\PhotoSmartEssential\hpzscr01.exe -datfile
hpqbud13.dat
HP Smart Web Printing-->MsiExec.exe /X{415CDA53-9100-476F-A7B2-476691E117C7}
Java(TM) 6 Update 21-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216021FF}
JMicron JMB36X Driver-->RunDll32 D:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup
"D:\Program Files\InstallShield Installation Information\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}\setup.exe" -l0x9
-removeonly
K-Lite Codec Pack 6.2.0 (Full)-->"D:\Program Files\K-Lite Codec Pack\unins000.exe"
LogMeIn-->MsiExec.exe /I{4475560E-9418-4908-A158-472D873AE139}
Malwarebytes' Anti-Malware-->"G:\INSTALLED\Malwarebytes' Anti-Malware\unins000.exe"
Microsoft .NET Framework 2.0-->D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework
2.0\install.exe
Microsoft Office Professional Edition 2003-->MsiExec.exe /I{90110409-6000-11D3-8CFE-0150048383C9}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022-->MsiExec.exe /X{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe
/X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Mozilla Firefox (3.6.8)-->G:\INSTALLED\Mozilla Firefox\uninstall\helper.exe
MUI Help Package - CSY-->D:\WINDOWS\$NtUninstallKB841625_CSY$\spuninst\spuninst.exe
Nero 6 Enterprise Edition-->G:\INSTALLED\Nero\nero\uninstall\UNNERO.exe /UNINSTALL
PDF Settings-->MsiExec.exe /I{AC5B0C19-D851-42F4-BDA0-410ECF7F70A5}
PSPad editor-->"G:\INSTALLED\PSPad editor\Uninst\unins000.exe"
REALTEK GbE & FE Ethernet PCI-E NIC Driver-->D:\Program Files\InstallShield Installation
Information\{C9BED750-1211-4480-B1A5-718A3BE15525}\Setup.exe -runfromtemp -removeonly
Spybot - Search & Destroy-->"G:\INSTALLED\Spybot - Search & Destroy\unins000.exe"
Total Commander (Remove or Repair)-->G:\INSTALLED\totalcmd\tcuninst.exe
UltraISO Premium V9.33-->"G:\INSTALLED\UltraISO\unins000.exe"
Update for Windows XP (KB955839)-->"D:\WINDOWS\$NtUninstallKB955839$\spuninst\spuninst.exe"
VC 9.0 Runtime-->MsiExec.exe /I{02E89EFC-7B07-4D5A-AA03-9EC0902914EE}
VIA Platforma Ovladače zařízení-->D:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe
/M{20D4A895-748C-4D88-871C-FDB1695B0169}
VLC media player 1.0.5-->G:\INSTALLED\VLC\uninstall.exe
Winamp-->"G:\INSTALLED\Winamp\UninstWA.exe"
Windows Media Format Runtime-->"D:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
WinRAR archiver-->G:\INSTALLED\WinRAR\uninstall.exe
ZoneAlarm Pro-->G:\INSTALLED\ZoneAlarm\zauninst.exe
======Security center information======
AV: ESET NOD32 Antivirus 4.0
FW: ZoneAlarm Pro Firewall
======System event log======
Computer Name: MARTIN
Event Code: 1003
Message: Your computer was not able to renew its address from the network (from the
DHCP Server) for the Network Card with network address E0CB4EA97A2B. The following
error occurred:
The operation was canceled by the user.
.
Your computer will continue to try and obtain an address on its own from
the network address (DHCP) server.
Record Number: 638
Source Name: Dhcp
Time Written: 20100721225346.000000+120
Event Type: warning
User:
Computer Name: MARTIN
Event Code: 4226
Message: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.
Record Number: 488
Source Name: Tcpip
Time Written: 20100720210528.000000+120
Event Type: warning
User:
Computer Name: MARTIN
Event Code: 1003
Message: Your computer was not able to renew its address from the network (from the
DHCP Server) for the Network Card with network address E0CB4EA97A2B. The following
error occurred:
The operation was canceled by the user.
.
Your computer will continue to try and obtain an address on its own from
the network address (DHCP) server.
Record Number: 445
Source Name: Dhcp
Time Written: 20100720181119.000000+120
Event Type: warning
User:
Computer Name: MARTIN
Event Code: 4226
Message: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.
Record Number: 340
Source Name: Tcpip
Time Written: 20100720094011.000000+120
Event Type: warning
User:
Computer Name: MARTIN
Event Code: 20
Message: Printer Driver Microsoft Office Document Image Writer Driver for Windows NT x86 Version-3 was added or
updated. Files:- mdigraph.dll, mdiui.dll, mdiui.dll.
Record Number: 292
Source Name: Print
Time Written: 20100720015715.000000+120
Event Type: warning
User: NT AUTHORITY\SYSTEM
=====Application event log=====
Computer Name: CHANGEME
Event Code: 5603
Message: A provider, Rsop Planning Mode Provider, has been registered in the WMI namespace, root\RSOP, but did not
specify the HostingModel property. This provider will be run using the LocalSystem account. This account is
privileged and the provider may cause a security violation if it does not correctly impersonate user requests.
Ensure that provider has been reviewed for security behavior and update the HostingModel property of the provider
registration to an account with the least privileges possible for the required functionality.
Record Number: 15
Source Name: WinMgmt
Time Written: 20100721045211.000000+120
Event Type: warning
User: NT AUTHORITY\SYSTEM
Computer Name: CHANGEME
Event Code: 5603
Message: A provider, Rsop Planning Mode Provider, has been registered in the WMI namespace, root\RSOP, but did not
specify the HostingModel property. This provider will be run using the LocalSystem account. This account is
privileged and the provider may cause a security violation if it does not correctly impersonate user requests.
Ensure that provider has been reviewed for security behavior and update the HostingModel property of the provider
registration to an account with the least privileges possible for the required functionality.
Record Number: 14
Source Name: WinMgmt
Time Written: 20100721045211.000000+120
Event Type: warning
User: NT AUTHORITY\SYSTEM
Computer Name: CHANGEME
Event Code: 63
Message: A provider, CmdTriggerConsumer, has been registered in the WMI namespace, Root\cimv2, to use the
LocalSystem account. This account is privileged and the provider may cause a security violation if it does not
correctly impersonate user requests.
Record Number: 13
Source Name: WinMgmt
Time Written: 20100721045211.000000+120
Event Type: warning
User: NT AUTHORITY\SYSTEM
Computer Name: CHANGEME
Event Code: 63
Message: A provider, CmdTriggerConsumer, has been registered in the WMI namespace, Root\cimv2, to use the
LocalSystem account. This account is privileged and the provider may cause a security violation if it does not
correctly impersonate user requests.
Record Number: 12
Source Name: WinMgmt
Time Written: 20100721045211.000000+120
Event Type: warning
User: NT AUTHORITY\SYSTEM
Computer Name: CHANGEME
Event Code: 63
Message: A provider, HiPerfCooker_v1, has been registered in the WMI namespace, Root\WMI, to use the LocalSystem
account. This account is privileged and the provider may cause a security violation if it does not correctly
impersonate user requests.
Record Number: 11
Source Name: WinMgmt
Time Written: 20100721045209.000000+120
Event Type: warning
User: NT AUTHORITY\SYSTEM
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;D:\Program Files\ATI
Technologies\ATI.ACE\Core-Static;D:\Program Files\Common Files\Acronis\SnapAPI\
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=x86 Family 6 Model 30 Stepping 5, GenuineIntel
"PROCESSOR_REVISION"=1e05
"NUMBER_OF_PROCESSORS"=4
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"tvdumpflags"=8
-----------------EOF-----------------

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím o kontrolu RSIT
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: Prosím o kontrolu RSIT
Dobrý den, dejte sem z RSIT log.txt ne info.txt.
"Jen dvě věci na světě jsou nekonečné, vesmír a lidská hloupost, tím prvním si ale nejsem jistý." Albert Einstein