Na první pokus ZOEK vzdoroval - otevřelo se jen bílé okno bez spodní lišty a nebylo v editačním módu. Když jsem se ho snažil vypnout, tak zmizelo a za 2s vyskočilo znovu, pokaždé na jiném místě obrazovky.
Udělal jsem restart a spustil ho znovu, chvíli to trvalo, ale tentokrát se s ním dalo pracovat. Po chvilce mi vyskočila hláška (viz obr.), když jsem ji odstřelil, tak ZOEK pokračoval. Stav se ale nezlepšil.
Zde je log:
Zoek.exe v5.0.0.0 Updated 04-May-2015
Tool run by uzivatel on so 15.08.2015 at 15:14:20,21.
Systém Microsoft Windows XP Professional 5.1.2600 Service Pack 3 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Documents and Settings\uzivatel\Plocha\zoek.exe [Scan all users] [Script inserted]
==== Older Logs ======================
C:\zoek-results2015-08-12-112531.log 7528 bytes
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
127.0.0.1 localhost
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\{20a82645-c095-46ed-80e3-08825760534b} deleted successfully
==== Running Processes ======================
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\wbem\unsecapp.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\alg.exe
C:\Documents and Settings\uzivatel\Plocha\zoek.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k imgsvc
==== Deleting Services ======================
======== System Restore Points ========
RP435: 10.7.2015 5:52:19 - Software Distribution Service 3.0
RP436: 10.7.2015 21:37:36 - Installed Sawbuck
RP437: 11.7.2015 5:35:28 - Software Distribution Service 3.0
RP438: 11.7.2015 23:04:15 - Instalováno Renesas Electronics USB 3.0 Host Controller Driver
RP439: 11.7.2015 23:18:43 - Installed eM Client
RP440: 12.7.2015 3:00:19 - Software Distribution Service 3.0
RP441: 12.7.2015 20:25:34 - Removed PC Inspector smart recovery
RP442: 12.7.2015 20:26:22 - Odebráno: PowerArchiver 2007 Czech
RP443: 12.7.2015 20:26:47 - Odebráno: PowerArchiver 2007 Czech
RP444: 12.7.2015 20:27:10 - Removed Sawbuck
RP445: 13.7.2015 5:39:38 - Software Distribution Service 3.0
RP446: 14.7.2015 3:00:20 - Software Distribution Service 3.0
RP447: 14.7.2015 19:14:04 - Odebráno: Adobe Reader 8 - Czech
RP448: 14.7.2015 20:01:55 - Installed Adobe Reader XI - Czech.
RP449: 15.7.2015 7:25:28 - Software Distribution Service 3.0
RP450: 16.7.2015 6:04:18 - Software Distribution Service 3.0
RP451: 16.7.2015 6:21:32 - Odebráno: PowerArchiver 2007 Czech
RP452: 16.7.2015 10:36:52 - Je nainstalován ovladač tiskárny HP LaserJet 1020
RP453: 16.7.2015 11:31:49 - Je nainstalován ovladač tiskárny Wondershare PDFelement
RP454: 17.7.2015 7:11:24 - Software Distribution Service 3.0
RP455: 17.7.2015 7:24:48 - Removed Bonjour
RP456: 18.7.2015 3:00:15 - Software Distribution Service 3.0
RP457: 19.7.2015 6:41:53 - Software Distribution Service 3.0
RP458: 19.7.2015 14:28:01 - Removed Microsoft Silverlight
RP459: 20.7.2015 12:52:09 - Software Distribution Service 3.0
RP460: 21.7.2015 8:29:08 - Software Distribution Service 3.0
RP461: 22.7.2015 6:21:49 - Software Distribution Service 3.0
RP462: 23.7.2015 7:19:47 - Software Distribution Service 3.0
RP463: 24.7.2015 10:41:22 - Software Distribution Service 3.0
RP464: 25.7.2015 8:22:49 - Software Distribution Service 3.0
RP465: 26.7.2015 3:00:14 - Software Distribution Service 3.0
RP466: 27.7.2015 11:21:31 - Software Distribution Service 3.0
RP467: 28.7.2015 7:34:37 - Software Distribution Service 3.0
RP468: 29.7.2015 6:36:22 - Software Distribution Service 3.0
RP469: 30.7.2015 12:32:03 - Software Distribution Service 3.0
RP470: 31.7.2015 3:00:15 - Software Distribution Service 3.0
RP471: 1.8.2015 7:23:34 - Software Distribution Service 3.0
RP472: 2.8.2015 3:00:14 - Software Distribution Service 3.0
RP473: 3.8.2015 8:04:12 - Software Distribution Service 3.0
RP474: 3.8.2015 8:25:15 - Removed Adobe Community Help
RP475: 4.8.2015 3:00:18 - Software Distribution Service 3.0
RP476: 5.8.2015 10:13:23 - Software Distribution Service 3.0
RP477: 6.8.2015 7:34:32 - Software Distribution Service 3.0
RP478: 7.8.2015 16:39:50 - abc
RP479: 8.8.2015 19:14:43 - Kontrolní bod systému
RP480: 10.8.2015 10:18:13 - Odebráno: PowerArchiver 2007 Czech
RP481: 10.8.2015 13:09:32 - Revo Uninstaller's restore point - PowerArchiver 2007 Czech
RP482: 10.8.2015 16:20:47 - Odebráno: Microsoft Visual C++ 2005 Redistributable
RP483: 10.8.2015 16:21:35 - Odebráno: Microsoft Visual C++ 2005 Redistributable
RP484: 10.8.2015 16:22:19 - Removed Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
RP485: 10.8.2015 16:22:56 - Removed Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
RP486: 10.8.2015 17:28:32 - Nainstalováno: PowerArchiver 2011
RP487: 10.8.2015 17:51:56 - Revo Uninstaller's restore point - PowerArchiver 2011
RP488: 10.8.2015 17:52:20 - Nainstalováno: PowerArchiver 2011
RP489: 10.8.2015 18:03:59 - Nainstalováno: PowerArchiver 2011
RP490: 11.8.2015 21:02:31 - Kontrolní bod systému
RP491: 12.8.2015 14:42:39 - JRT Pre-Junkware Removal
RP492: 12.8.2015 16:34:04 - Revo Uninstaller's restore point - CrystalDiskInfo 6.5.2
RP493: 12.8.2015 17:25:53 - Revo Uninstaller's restore point - PatchBeam
RP494: 13.8.2015 18:01:26 - Kontrolní bod systému
RP495: 14.8.2015 10:29:55 - Revo Uninstaller's restore point - Google Chrome
RP496: 15.8.2015 12:11:18 - Kontrolní bod systému
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"
wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [08.07.2015 19:54]
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="
http://www.google.com"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="
http://www.google.com"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="
http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="
http://www.bing.com/search?q={searchTer ... ORM=IE8SRC"
==== HijackThis Entries ======================
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\WINDOWS\JM\JMInsIDE.exe
O4 - HKLM\..\Run: [JMB36X Configure] C:\WINDOWS\system32\JMRaidSetup.exe boot
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) -
http://upload.facebook.com/controls/200 ... oader5.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
http://fpdownload2.macromedia.com/get/s ... wflash.cab
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - Avast Software s.r.o. - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
==== Empty IE Cache ======================
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
C:\Documents and Settings\uzivatel\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
==== Empty FireFox Cache ======================
No FireFox Profiles found
==== Empty Chrome Cache ======================
No Chrome User Data found
==== Empty All Flash Cache ======================
No Flash Cache Found
==== Empty All Java Cache ======================
No Java Cache Found
==== C:\zoek_backup content ======================
C:\zoek_backup (files=111 folders=33 29170897 bytes)
==== Empty Temp Folders ======================
C:\WINDOWS\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\WINDOWS\Temp successfully emptied
C:\DOCUME~1\uzivatel\LOCALS~1\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\RECYCLER successfully emptied
==== Deleting Files / Folders ======================
"C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not deleted
"C:\Documents and Settings\uzivatel\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not deleted
==== EOF on so 15.08.2015 at 15:25:20,00 ======================