Stránka 2 z 4

Re: POMOC ! POMOC ! POMOC !

Napsal: 27 dub 2011 20:20
od motji
Ani v nouzovém režimu?

:arrow: Spusťte combofix podle tohoto návodu
http://www.bleepingcomputer.com/combofi ... t-combofix

Re: POMOC ! POMOC ! POMOC !

Napsal: 28 dub 2011 04:18
od Hondzzikk
ComboFix 11-04-27.01 - Hondzzikk 27.04.2011 22:12:05.1.1 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.1535.1115 [GMT 2:00]
Spuštěný z: c:\documents and settings\Hondzzikk\Plocha\ComboFix.exe
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\data
c:\data\WINDOWSDEFENDER.EXE
c:\program files\TNod User & Password Finder\TNODUP.exe
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-03-27 do 2011-04-27 )))))))))))))))))))))))))))))))
.
.
2011-04-26 19:51 . 2011-04-26 19:52 -------- d-----w- C:\rsit
2011-04-25 19:38 . 2011-04-25 19:38 -------- d-----w- C:\ATI
2011-04-15 09:09 . 2011-04-15 09:09 -------- d-----w- C:\CanonMP
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-04-08 11:07 . 2008-04-14 08:52 219648 ----a-w- c:\windows\system32\uxtheme.dll
2011-04-08 11:07 . 2008-04-14 08:52 219648 ----a-w- c:\windows\system32\uxtheme(2).dll
2011-03-04 06:43 . 2008-04-27 10:10 434176 ----a-w- c:\windows\system32\vbscript.dll
2011-03-03 13:53 . 2008-04-14 07:45 1857920 ----a-w- c:\windows\system32\win32k.sys
2011-02-17 18:55 . 2008-03-01 13:02 832512 ----a-w- c:\windows\system32\wininet.dll
2011-02-17 18:55 . 2008-03-01 13:02 1830912 ----a-w- c:\windows\system32\inetcpl.cpl
2011-02-17 18:55 . 2008-04-27 10:09 78336 ----a-w- c:\windows\system32\ieencode.dll
2011-02-17 18:55 . 2008-04-27 10:08 17408 ----a-w- c:\windows\system32\corpol.dll
2011-02-17 13:18 . 2008-04-14 00:47 455936 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2011-02-17 13:18 . 2008-04-14 00:45 357888 ----a-w- c:\windows\system32\drivers\srv.sys
2011-02-17 12:54 . 2010-08-13 16:44 5632 ----a-w- c:\windows\system32\xpsp4res.dll
2011-02-17 11:44 . 2008-04-27 10:08 389120 ----a-w- c:\windows\system32\html.iec
2011-02-15 12:56 . 2008-04-14 08:37 290432 ----a-w- c:\windows\system32\atmfd.dll
2011-02-09 13:53 . 2008-04-14 08:51 270848 ----a-w- c:\windows\system32\sbe.dll
2011-02-09 13:53 . 2008-04-14 08:51 186880 ----a-w- c:\windows\system32\encdec.dll
2011-02-08 13:33 . 2008-04-14 08:51 978944 ----a-w- c:\windows\system32\mfc42.dll
2011-02-08 13:33 . 2007-04-03 08:44 974848 ----a-w- c:\windows\system32\mfc42u.dll
2011-03-18 17:55 . 2011-04-24 16:26 142296 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
------- Sigcheck -------
.
[-] 2008-04-27 . 1E603EA2A3FDBAE9E5B88A8CB3C03124 . 1571840 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Walser"="c:\program files\Draxysoft\Wallpaper Sequencer\Walser.exe" [2008-10-16 1365504]
"AlcoholAutomount"="c:\program files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" [2009-11-15 33120]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2010-10-11 14940040]
"RocketDock"="c:\windows\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe" [2007-03-18 630784]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2006-11-10 90112]
"SoundMan"="SOUNDMAN.EXE" [2005-11-11 90112]
"mouseElf"="c:\progra~1\GENIUS~1\GNETMOUS.EXE" [2004-02-24 176128]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-10-29 249064]
"Malwarebytes' Anti-Malware"="c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe" [2010-12-20 443728]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"nltide_2"="shell32" [X]
.
c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
REALTEK USB Wireless LAN Utility.lnk - c:\program files\REALTEK USB Wireless LAN Driver and Utility\RtWLan.exe [2011-4-8 794624]
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\ICQ7.4\\ICQ.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"c:\\Program Files\\Java\\jre6\\bin\\javaw.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Program Files\\Opera\\opera.exe"=
"c:\program files\Adobe\Adobe Photoshop CS4\Photoshop.exe"= c:\program files\Adobe\Adobe Photoshop CS4\Photoshop.exe:192.168.1.100/255.255.255.255:Enabled:Adobe Photoshop CS4
"c:\program files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe"= c:\program files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe:192.168.1.100/255.255.255.255:Enabled:Adobe CSI CS4
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"5353:TCP"= 5353:TCP:192.168.1.100/255.255.255.255:Enabled:Adobe CSI CS4
.
R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [8.4.2011 12:52 697328]
R2 EAPPkt;Realtek EAPPkt Protocol;c:\windows\system32\drivers\EAPPkt.sys [8.4.2011 11:25 38144]
R2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [25.4.2011 10:12 363344]
R2 RtNdPt5x;Realtek NDIS Protocol Driver;c:\windows\system32\drivers\RtNdPt5x.sys [10.4.2011 1:56 22016]
R2 WinDefend;Windows Defender;c:\program files\Windows Defender\MsMpEng.exe [3.11.2006 19:19 13592]
R3 genmcmnUSB;USB Scroll Mouse Driver;c:\windows\system32\drivers\gflmouhid.sys [8.4.2011 13:00 6528]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [25.4.2011 10:12 20952]
R3 RTLWUSB;Realtek RTL8187 Wireless 802.11g 54Mbps USB 2.0 Network Adapter;c:\windows\system32\drivers\RTL8187.sys [8.4.2011 11:25 235648]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [18.3.2010 13:16 130384]
S3 MSI_MSIBIOS_010507;MSI_MSIBIOS_010507;c:\program files\MSI\Live Update 5\msibios32_100507.sys [10.4.2011 1:51 25912]
S3 NTIOLib_1_0_4;NTIOLib_1_0_4;c:\program files\MSI\Live Update 5\NTIOLib.sys [10.4.2011 1:51 7680]
S3 RTLTEAMING;Realtek Intermediate Driver for Ethernet Extended Features;c:\windows\system32\drivers\RTLTEAMING.SYS [10.4.2011 1:56 32544]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [18.3.2010 13:16 753504]
S3 ZD1211BU(TP-LINK);TL-WN422G Wireless USB Adapter Driver(TP-LINK);c:\windows\system32\drivers\ZD1211BU.sys [21.4.2011 11:35 500736]
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - AAVMKER4
*NewlyCreated* - ASWMON2
*NewlyCreated* - ASWRDR
*NewlyCreated* - ASWTDI
*NewlyCreated* - ASWUPDSV
*NewlyCreated* - AVAST!_ANTIVIRUS
*NewlyCreated* - AVAST!_MAIL_SCANNER
*NewlyCreated* - AVAST!_WEB_SCANNER
.
Obsah adresáře 'Naplánované úlohy'
.
2011-04-27 c:\windows\Tasks\MP Scheduled Scan.job
- c:\program files\Windows Defender\MpCmdRun.exe [2006-11-03 17:20]
.
.
------- Doplňkový sken -------
.
uInternet Connection Wizard,ShellNext = hxxp://www.google.com/support/chrome/bin/reque ... s=5.1.2600
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: {{73C6DCFB-B606-47F3-BDFA-9A4FBF931E37} - c:\program files\ICQ7.4\ICQ.exe
FF - ProfilePath - c:\documents and settings\Hondzzikk\Data aplikací\Mozilla\Firefox\Profiles\uxhv87l2.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - seznam.cz
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
HKLM-Run-TNOD UP - c:\program files\TNod User & Password Finder\TNODUP.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-04-27 22:20
Windows 5.1.2600 Service Pack 3 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'winlogon.exe'(680)
c:\windows\system32\Ati2evxx.dll
.
Celkový čas: 2011-04-27 22:22:51
ComboFix-quarantined-files.txt 2011-04-27 20:22
.
Před spuštěním: Volných bajtů: 55 245 950 976
Po spuštění: Volných bajtů: 55 505 735 680
.
WindowsXP-KB310994-SP2-Pro-BootDisk-CSY.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect
.
- - End Of File - - A2E8A0EE2698363AF0DA874A8AEBCF7A

Re: POMOC ! POMOC ! POMOC !

Napsal: 28 dub 2011 05:26
od motji
Jak to vypadá s počítačem?

Re: POMOC ! POMOC ! POMOC !

Napsal: 28 dub 2011 18:59
od Hondzzikk
moc mi nefunguje internet a pc je čim dál zasekanější

Re: POMOC ! POMOC ! POMOC !

Napsal: 28 dub 2011 21:10
od motji
MOc mi nefunguje internet - to znamená co?

:arrow: Stahněte OTL http://oldtimer.geekstogo.com/OTL.exe
-uložte ho na plochu a spustte soubor OTL.exe.
-do bílého okna dole skopírujte tento skript:

Kód: Vybrat vše

netsvcs
drivers32
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
c:\windows\*.* /U
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
/md5start
eventlog.dll
scecli.dll
netlogon.dll
cngaudit.dll
sceclt.dll
ntelogon.dll
logevent.dll
iaStor.sys
nvstor.sys
atapi.sys
IdeChnDr.sys
viasraid.sys
AGP440.sys
vaxscsi.sys
nvatabus.sys
viamraid.sys
nvata.sys
nvgts.sys
iastorv.sys
ViPrt.sys
eNetHook.dll
ahcix86.sys
KR10N.sys
nvstor32.sys
ahcix86s.sys
nvrd32.sys
symmpi.sys
adp3132.sys
mv61xx.sys
nvraid.sys
ndis.sys
winlogon.exe
explorer.exe
userinit.exe
lsass.exe
svchost.exe
smss.exe
hal.dll
ws2_32.dll
tcpip.sys
cryptsvc.dll
Changer.sys
JakNDis.sys
isapnp.sys
cdrom.sys
/md5stop
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
CREATERESTOREPOINT 
- zaškrtněte okénko Pro všechny uživatele.
-označte okénka Kontrola na havěť "LOP" a Kontrola na havěť "Purity"
- Klikněte na tlačítko Prohledat
-po dokončení skenu se objeví logy OTL.Txt a Extras.txt, vložte je zde :)

Re: POMOC ! POMOC ! POMOC !

Napsal: 29 dub 2011 01:23
od Hondzzikk
tady to je a prostě mi skoro nenačítaj stránky...

Extras.txt

OTL Extras logfile created on: 28.4.2011 22:50:35 - Run 1
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Documents and Settings\Hondzzikk\Plocha
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

1,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 55,00% Memory free
3,00 Gb Paging File | 3,00 Gb Available in Paging File | 84,00% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 78,13 Gb Total Space | 51,71 Gb Free Space | 66,18% Space Free | Partition Type: NTFS
Drive D: | 319,27 Gb Total Space | 32,49 Gb Free Space | 10,18% Space Free | Partition Type: NTFS
Drive E: | 68,35 Gb Total Space | 36,44 Gb Free Space | 53,31% Space Free | Partition Type: NTFS

Computer Name: HECKER | User Name: Hondzzikk | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
.url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l

[HKEY_USERS\S-1-5-21-1606980848-1957994488-1417001333-1003\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
https [open] -- "C:\Program Files\Mozilla Firefox\firefox.exe" -requestPending -osint -url "%1" (Mozilla Corporation)
InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Directory [Prozkoumat v XnView] -- "C:\Program Files\XnView\xnview.exe" "%1" (XnView, http://www.xnview.com)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"5353:TCP" = 5353:TCP:192.168.1.100/255.255.255.255:Enabled:Adobe CSI CS4
"1900:UDP" = 1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"C:\Program Files\ICQ7.4\ICQ.exe" = C:\Program Files\ICQ7.4\ICQ.exe:*:Enabled:ICQ7.4 -- (ICQ, LLC.)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\ICQ7.4\ICQ.exe" = C:\Program Files\ICQ7.4\ICQ.exe:*:Enabled:ICQ7.4 -- (ICQ, LLC.)
"C:\Program Files\Java\jre6\bin\javaw.exe" = C:\Program Files\Java\jre6\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary -- (Sun Microsystems, Inc.)
"C:\Program Files\Opera\opera.exe" = C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser -- (Opera Software)
"C:\Program Files\Adobe\Adobe Photoshop CS4\Photoshop.exe" = C:\Program Files\Adobe\Adobe Photoshop CS4\Photoshop.exe:192.168.1.100/255.255.255.255:Enabled:Adobe Photoshop CS4 -- (Adobe Systems, Incorporated)
"C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" = C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe:192.168.1.100/255.255.255.255:Enabled:Adobe CSI CS4 -- (Adobe Systems Incorporated)


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{01155424-B450-348E-C60B-AEE30EC5BD95}" = ccc-core-preinstall
"{0251283C-41B5-556A-8C47-D842E76613EF}" = Catalyst Control Center Localization Thai
"{02952E4C-5109-A630-639E-06E65CA6BD31}" = CCC Help Polish
"{05308C4E-7285-4066-BAE3-6B50DA6ED755}" = Adobe Update Manager CS4
"{054EFA56-2AC1-48F4-A883-0AB89874B972}" = Adobe Extension Manager CS4
"{055EE59D-217B-43A7-ABFF-507B966405D8}" = ATI Catalyst Control Center
"{073E6BDE-3AED-6A71-54C6-6756103F1FB8}" = Catalyst Control Center Core Implementation
"{083F79E4-6FE9-46FB-A6C6-4F8862742947}" = ATI HYDRAVISION
"{098727E1-775A-4450-B573-3F441F1CA243}" = kuler
"{098A2A49-7CF3-4F08-A38D-FB879117152A}" = Adobe Color NA Extra Settings CS4
"{0A0CADCF-78DA-33C4-A350-CD51849B9702}" = Microsoft .NET Framework 4 Extended
"{0C714BB7-4CAD-D173-F84C-554F380E285F}" = Catalyst Control Center Localization Norwegian
"{0D106685-166E-0D6D-29B8-E3E8EE9D8BE4}" = Catalyst Control Center Localization Finnish
"{0D6013AB-A0C7-41DC-973C-E93129C9A29F}" = Adobe Color JA Extra Settings CS4
"{0D67A4E4-5BE0-4C9A-8AD8-AB552B433F23}" = Adobe Setup
"{0DC0E85F-36E4-463B-B3EA-4CD8ED2222A1}" = Adobe Color EU Recommended Settings CS4
"{0F723FC1-7606-4867-866C-CE80AD292DAF}" = Adobe CSI CS4
"{0FE84B98-9821-A472-3E63-A5D7C72A5BEA}" = CCC Help Danish
"{1367FA2F-2B3D-430F-872F-588B93420BFC}" = TimeShift
"{15E56370-5490-9534-330A-202CC9CB1A17}" = CCC Help Finnish
"{1618734A-3957-4ADD-8199-F973763109A8}" = Adobe Anchor Service CS4
"{16E6D2C1-7C90-4309-8EC4-D2212690AAA4}" = AdobeColorCommonSetRGB
"{18F600C5-89DA-939F-C456-7EFF8545F7F2}" = ATI Catalyst Install Manager
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{2018A250-C32D-2164-C988-937412C1AEED}" = CCC Help English
"{205403B5-6EBC-32AB-F1D5-4BBD635B8211}" = CCC Help Greek
"{20D4A895-748C-4D88-871C-FDB1695B0169}" = Platform
"{2181E115-081A-4A96-97AB-7E8413639288}" = MSI VideoGenie Application
"{247286E7-3966-8A6B-F962-9FB49B193B65}" = Catalyst Control Center Localization Dutch
"{26A24AE4-039D-4CA4-87B4-2F83216011FF}" = Java(TM) 6 Update 24
"{2D7FA997-376C-6870-A0B8-03C1928383DD}" = Catalyst Control Center Localization Swedish
"{350C9405-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{354D2902-EBB4-A562-93E2-1CEECB35D1E0}" = Catalyst Control Center Graphics Light
"{35D94F92-1D3A-43C5-8605-EA268B1A7BD9}" = PDF Settings CS4
"{36CDA33B-909B-4719-97D1-C4B99309BDC7}" = ATI Parental Control & Encoder
"{3A4E8896-C2E7-4084-A4A4-B8FD1894E739}" = Adobe XMP Panels CS4
"{3B7B9A55-BE2F-963B-1306-1C8AF4B6BEC5}" = CCC Help German
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{3D2C9DE6-9ADE-4252-A241-E43723B0CE02}" = Adobe Color - Photoshop Specific CS4
"{3D5FDC57-3D8C-3CA8-CEE1-64169C48E524}" = Catalyst Control Center Graphics Full Existing
"{3DA8DF9A-044E-46C4-8531-DEDBB0EE37FF}" = Adobe WinSoft Linguistics Plugin
"{3FA604E7-AE4E-08E9-CDB7-CD87A571641A}" = CCC Help Hungarian
"{4136A82D-6AAC-DDD0-AE14-7F26B4E5B5F1}" = CCC Help Norwegian
"{45C8D564-77BF-CBE5-BC3E-F731C536BC84}" = Skins
"{4943EFF5-229F-435D-BEA9-BE3CAEA783A7}" = Adobe Service Manager Extension
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{51356925-C6C8-5999-08D9-5A98C0645E80}" = CCC Help Chinese Traditional
"{56DF30DD-CEC9-06B0-C572-AEA477BD245C}" = CCC Help Spanish
"{57252EEC-6E6E-917B-B02A-F125B7CF0C9E}" = Catalyst Control Center Localization Japanese
"{5C49377D-699C-04F4-F26A-1583F0EB2525}" = CCC Help Italian
"{5D3541C3-0A67-2587-360B-67ADD2A35491}" = ccc-utility
"{5DA6F06A-B389-407B-BF8C-1548767914D8}" = ATI Problem Report Wizard
"{627FCE23-DC14-2D59-5449-5AACDDA59CDD}" = CCC Help Korean
"{63C24A08-70F3-4C8E-B9FB-9F21A903801D}" = Adobe Color Video Profiles CS CS4
"{63E5CDBF-8214-4F03-84F8-CD3CE48639AD}" = Adobe Photoshop CS4 Support
"{68243FF8-83CA-466B-B2B8-9F99DA5479C4}" = AdobeColorCommonSetCMYK
"{69A78876-1C3E-6F0A-BDEC-C09D5F302BC0}" = CCC Help French
"{6DCEF478-2917-F4DF-3265-8447E3DBB5B3}" = Catalyst Control Center Localization French
"{70312451-0D00-4A84-B9B1-0D59B5180A4F}" = Opera 10.53
"{7036A6F4-5DAD-3908-956D-1752CD7F7E5A}" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"{7131646D-CD3C-40F4-97B9-CD9E4E6262EF}" = Microsoft .NET Framework 2.0
"{714A15CA-8BA4-F6C9-D8FF-B28CE631BE8F}" = CCC Help Chinese Standard
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{73C6DCFB-B606-47F3-BDFA-9A4FBF931E37}" = ICQ7.4
"{7707CB13-8F15-36E2-9579-93F34838CE24}" = Catalyst Control Center Localization Polish
"{7B35C1CE-695E-D663-3F1E-0AA176C0D4C5}" = Catalyst Control Center Localization Greek
"{7DA669BD-1642-AD33-7377-4535BFB1BCE4}" = CCC Help Swedish
"{7E32F9DB-A6FC-5091-5533-2A061C2A2FC2}" = ccc-core-static
"{820D3F45-F6EE-4AAF-81EF-CE21FF21D230}" = Adobe Type Support CS4
"{83877DB1-8B77-45BC-AB43-2BAC22E093E0}" = Adobe Bridge CS4
"{842B4B72-9E8F-4962-B3C1-1C422A5C4434}" = Suite Shared Configuration CS4
"{84F994E5-1565-06BB-171A-71AB7626E63B}" = CCC Help Portuguese
"{89DE67AD-08B8-4699-A55D-CA5C0AF82BF3}" = ATI AVIVO Codecs
"{8C3727F2-8E37-49E4-820C-03B1677F53B6}" = Stronghold Crusader
"{90110405-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003
"{931AB7EA-3656-4BB7-864D-022B09E3DD67}" = Adobe Linguistics CS4
"{94D398EB-D2FD-4FD1-B8C4-592635E8A191}" = Adobe CMaps CS4
"{992968F7-248A-1D5D-7FB5-BD6D5B953215}" = Catalyst Control Center Graphics Full New
"{9D9D12DF-3EDB-A01A-F843-C613681467F8}" = Catalyst Control Center Localization Hungarian
"{A06275F4-324B-4E85-95E6-87B2CD729401}" = Windows Defender
"{A161C3C9-BEA6-A806-D77F-81E018CA5D67}" = Catalyst Control Center Localization Italian
"{A2DE62D8-EF1B-36CB-B461-B1E221ED8608}" = Microsoft .NET Framework 4 Extended CSY Language Pack
"{A3C177CE-97E1-6F90-D389-BD951A9FB81B}" = Catalyst Control Center Localization German
"{A654CDEB-F7A7-3CAC-0D17-94B66CCCAE59}" = Catalyst Control Center Localization Chinese Standard
"{A7A34FC9-DF24-4A36-00AD-D4EFE94CC116}" = SimCity 4 Deluxe
"{ADE91A13-434D-4229-00BC-182BAD607303}" = Need for Speed™ Most Wanted
"{AEAAA92E-9A5D-DF42-5FDD-74D545DAA7BA}" = CCC Help Thai
"{B29AD377-CC12-490A-A480-1452337C618D}" = Connect
"{B5025AC2-F3AE-29F5-5A0E-CFC89B634958}" = Catalyst Control Center Localization Portuguese
"{B63B5FC6-B005-5B6D-7F04-3950656634B9}" = Catalyst Control Center InstallProxy
"{B65BA85C-0A27-4BC0-A22D-A66F0E5B9494}" = Adobe Photoshop CS4
"{B66C315A-2D08-9FDB-F655-DC331E97141B}" = CCC Help Dutch
"{B838DCFC-3490-263C-0FFE-50C8B306FC8D}" = Catalyst Control Center Localization Russian
"{BA040794-A600-8C78-D72F-1B4797C01472}" = CCC Help Japanese
"{BA05CD9C-59FF-B4FE-0544-855F0982D0A4}" = Catalyst Control Center Localization Danish
"{BB4E33EC-8181-4685-96F7-8554293DEC6A}" = Adobe Output Module
"{BE686891-3C56-4714-AFEF-341A7867BA80}" = REALTEK USB Wireless LAN Driver and Utility
"{C52E3EC1-048C-45E1-8D53-10B0C6509683}" = Adobe Default Language CS4
"{C67A4B20-E47F-4CF1-5522-98899F9A529A}" = Catalyst Control Center Localization Turkish
"{C917BA70-28A3-4C74-B163-41FD8C8E1A5A}" = Stronghold
"{CA9A3609-3ECC-4574-8824-A8161A71A603}" = Canon MP150
"{CC75AB5C-2110-4A7F-AF52-708680D22FE8}" = Photoshop Camera Raw
"{CD95D125-2992-4858-B3EF-5F6FB52FBAD6}" = Skype Toolbars
"{CE453374-9697-4043-D2B2-16C41D906641}" = CCC Help Czech
"{D57FF9F2-E6A1-6E10-16F0-58B676F6DE3C}" = Catalyst Control Center Localization Korean
"{DC550B90-A58E-6964-298D-18CF7DF550CD}" = CCC Help Turkish
"{DC8B50E5-AE03-EF2A-044F-9C1A2ED92BD1}" = Catalyst Control Center Graphics Previews Common
"{E09F11E0-7E27-640C-ADB9-8B2F7CA19470}" = CCC Help Russian
"{E1352FB0-944D-68D4-1B08-35AB82CFD5CB}" = Catalyst Control Center Localization Czech
"{E4848436-0345-47E2-B648-8B522FCDA623}" = Adobe Photoshop CS4
"{E633D396-5188-4E9D-8F6B-BFB8BF3467E8}" = Skype™ 5.0
"{F0E64E2E-3A60-40D8-A55D-92F6831875DA}" = Adobe Search for Help
"{F4A7123B-E1CB-97DD-D4CC-31BF6936DC82}" = Catalyst Control Center Localization Chinese Traditional
"{F8EF2B3F-C345-4F20-8FE4-791A20333CD5}" = Adobe ExtendScript Toolkit CS4
"{F8F2008B-9CFC-B7A2-087C-26D7856D10C0}" = Catalyst Control Center Localization Spanish
"{F93C84A6-0DC6-42AF-89FA-776F7C377353}" = Adobe PDF Library Files CS4
"{FB08F381-6533-4108-B7DD-039E11FBC27E}" = Realtek AC'97 Audio
"{FCDD51BB-CAD0-4BB1-B7DF-CE86D1032794}" = Adobe Fonts All
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe_faf656ef605427ee2f42989c3ad31b8" = Adobe Photoshop CS4
"AIMP2" = AIMP2
"Ashampoo Burning Studio 8_is1" = Ashampoo Burning Studio 8.03
"ATI Display Driver" = ATI Display Driver
"avast!" = avast! Antivirus
"CCleaner" = CCleaner
"Čestina do SimCity 4 Rush Hour a Delux BETA" = Čestina do SimCity 4 Rush Hour a Delux BETA
"KYE" = Genius NetScroll+ Optical Mouse
"Liveupdate5_is1" = Liveupdate5
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Microsoft .NET Framework 2.0" = Microsoft .NET Framework 2.0
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile CSY Language Pack" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Microsoft .NET Framework 4 Extended CSY Language Pack" = Microsoft .NET Framework 4 Extended CSY Language Pack
"Mozilla Firefox 4.0 (x86 cs)" = Mozilla Firefox 4.0 (x86 cs)
"MP Navigator 2.0" = Canon MP Navigator 2.0
"Original War" = Original War
"Pack Vista Inspirat 2" = Pack Vista Inspirat 2 1.0
"PunkBusterSvc" = PunkBuster Services
"Super-Charger_is1" = Super-Charger
"TeamingGenie_is1" = TeamingGenie
"TNod" = TNod User & Password Finder
"VLC media player" = VLC media player 1.1.9
"Wallpaper Sequencer Ultra_is1" = Draxysoft Wallpaper Sequencer Ultra 4.6.2.451
"WinRAR archiver" = WinRAR
"XnView_is1" = XnView 1.97.8
"Your Uninstaller! 2008_is1" = Your Uninstaller! 2008 Version 6.0

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-1606980848-1957994488-1417001333-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"75c0e0ceac8ef0d4" = CZShare Manager

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 16.4.2011 4:03:28 | Computer Name = HECKER | Source = Application Error | ID = 1000
Description = Chybující aplikace setup.exe, verze 12.0.0.58849, chybující modul
setup.exe, verze 12.0.0.58849, adresa chyby 0x0001e7b9.

Error - 18.4.2011 6:08:53 | Computer Name = HECKER | Source = Application Error | ID = 1000
Description = Chybující aplikace timeshift.exe, verze 0.0.1.0, chybující modul timeshift.exe,
verze 0.0.1.0, adresa chyby 0x000f9ad9.

Error - 19.4.2011 15:55:17 | Computer Name = HECKER | Source = Application Error | ID = 1000
Description = Chybující aplikace stronghold.exe, verze 0.0.0.0, chybující modul
stronghold.exe, verze 0.0.0.0, adresa chyby 0x0012dcb0.

Error - 21.4.2011 1:58:01 | Computer Name = HECKER | Source = Application Error | ID = 1000
Description = Chybující aplikace stronghold.exe, verze 0.0.0.0, chybující modul
stronghold.exe, verze 0.0.0.0, adresa chyby 0x0012dcb0.

Error - 21.4.2011 2:17:46 | Computer Name = HECKER | Source = Application Error | ID = 1000
Description = Chybující aplikace stronghold.exe, verze 0.0.0.0, chybující modul
stronghold.exe, verze 0.0.0.0, adresa chyby 0x0012dcb0.

Error - 31.12.2002 18:09:43 | Computer Name = HECKER | Source = Application Error | ID = 1000
Description = Chybující aplikace stronghold.exe, verze 0.0.0.0, chybující modul
stronghold.exe, verze 0.0.0.0, adresa chyby 0x0012dcb0.

Error - 23.4.2011 4:32:34 | Computer Name = HECKER | Source = MsiInstaller | ID = 10005
Description = Produkt: ESET NOD32 Antivirus -- Chyba 5001. Produkt není možné nainstalovat,
protože počítač nebyl restartován po předcházející odinstalaci. Zrestartujte počítač
a znovu spusťte instalaci.

Error - 24.4.2011 18:37:47 | Computer Name = HECKER | Source = Application Hang | ID = 1002
Description = Zablokovaná aplikace vlc.exe, verze 1.1.9.0, zablokovaný modul hungapp,
verze 0.0.0.0, adresa bloku 0x00000000.

Error - 25.4.2011 3:35:55 | Computer Name = HECKER | Source = Application Error | ID = 1000
Description = Chybující aplikace skype.exe, verze 5.0.0.152, chybující modul unknown,
verze 0.0.0.0, adresa chyby 0x00000000.

Error - 25.4.2011 3:43:37 | Computer Name = HECKER | Source = Application Error | ID = 1000
Description = Chybující aplikace skype.exe, verze 5.0.0.152, chybující modul skype.exe,
verze 5.0.0.152, adresa chyby 0x0014c7b9.

[ System Events ]
Error - 27.4.2011 16:10:29 | Computer Name = HECKER | Source = Service Control Manager | ID = 7034
Description = Služba avast! iAVS4 Control Service byla neočekávaně ukončena. Tento
stav nastal již 1krát.

Error - 27.4.2011 23:32:50 | Computer Name = HECKER | Source = sptd | ID = 262148
Description = Ovladač zjistil interní chybu ve vlastní struktuře dat u .

Error - 27.4.2011 23:33:03 | Computer Name = HECKER | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1084 při pokusu o spuštění služby EventSystem
s argumenty za účelem spuštění serveru: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 27.4.2011 23:34:15 | Computer Name = HECKER | Source = Service Control Manager | ID = 7026
Description = Zavedení následujícího ovladače pro spouštění počítače nebo systému
se nezdařilo: Aavmker4 Fips intelppm sptd

Error - 27.4.2011 23:37:17 | Computer Name = HECKER | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1084 při pokusu o spuštění služby EventSystem
s argumenty za účelem spuštění serveru: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 28.4.2011 13:53:17 | Computer Name = HECKER | Source = Cdrom | ID = 262151
Description = Zařízení \Device\CdRom0 má chybný blok.

Error - 28.4.2011 13:57:44 | Computer Name = HECKER | Source = sptd | ID = 262148
Description = Ovladač zjistil interní chybu ve vlastní struktuře dat u .

Error - 28.4.2011 13:57:55 | Computer Name = HECKER | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1084 při pokusu o spuštění služby EventSystem
s argumenty za účelem spuštění serveru: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 28.4.2011 13:59:09 | Computer Name = HECKER | Source = Service Control Manager | ID = 7026
Description = Zavedení následujícího ovladače pro spouštění počítače nebo systému
se nezdařilo: Aavmker4 Fips intelppm sptd

Error - 28.4.2011 13:59:40 | Computer Name = HECKER | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1084 při pokusu o spuštění služby EventSystem
s argumenty za účelem spuštění serveru: {1BE1F766-5536-11D1-B726-00C04FB926AF}


< End of report >

Re: POMOC ! POMOC ! POMOC !

Napsal: 29 dub 2011 01:26
od Hondzzikk
OTL.txt přiloženo

Re: POMOC ! POMOC ! POMOC !

Napsal: 29 dub 2011 06:58
od vyosek
Rozdelte prosim log do vice prispevku :wink:

Re: POMOC ! POMOC ! POMOC !

Napsal: 29 dub 2011 09:38
od motji
:arrow: V nouzovém režimu jde normálně?

:arrow: Spustte OTL
-do bílého okna dole skopírujte tento skript:

Kód: Vybrat vše

:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O4 - HKU\.DEFAULT..\RunOnce: [nltide_2]  File not found
O4 - HKU\S-1-5-18..\RunOnce: [nltide_2]  File not found
@Alternate Data Stream - 171 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:B3D74A13

:files
C:\WINDOWS\system32\*.tmp.dll /s
C:\WINDOWS\system32\SET*.tmp /s
C:\WINDOWS\*.tmp /s

:commands
[resethosts]
[emptytemp]
[EMPTYFLASH]
[clearallrestorepoints]
[Reboot]

-klikněte na tlačítko opravit.
-Následně se pc restartuje.
- Log vložte zde :)



-klikněte na tlačítko Run fix.
-Následně se pc restartuje.
- Log vložte zde :)

Re: POMOC ! POMOC ! POMOC !

Napsal: 29 dub 2011 23:42
od Hondzzikk
Při spuštěl OTL jen zmizí ikony a OTL neodpovídá...

Re: POMOC ! POMOC ! POMOC !

Napsal: 29 dub 2011 23:46
od motji
Zkuste v nouzovém režimu.

Re: POMOC ! POMOC ! POMOC !

Napsal: 29 dub 2011 23:58
od Hondzzikk
All processes killed
========== OTL ==========
No active process named explorer.exe was found!
Registry value HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce\\nltide_2 deleted successfully.
Registry value HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\RunOnce\\nltide_2 not found.
ADS C:\Documents and Settings\All Users\Data aplikací\TEMP:B3D74A13 deleted successfully.
========== FILES ==========
File\Folder C:\WINDOWS\system32\*.tmp.dll not found.
C:\WINDOWS\system32\drivers\SET1F6.tmp moved successfully.
C:\WINDOWS\system32\drivers\SET204.tmp moved successfully.
C:\WINDOWS\000001_.tmp moved successfully.
C:\WINDOWS\nsf59EA.tmp moved successfully.
C:\WINDOWS\nsm5A1F.tmp moved successfully.
C:\WINDOWS\nsp5A2E.tmp moved successfully.
C:\WINDOWS\SET3.tmp moved successfully.
C:\WINDOWS\SET4.tmp moved successfully.
C:\WINDOWS\SET8.tmp moved successfully.
C:\WINDOWS\pchealth\helpctr\binaries\nsg59F0.tmp moved successfully.
C:\WINDOWS\SoftwareDistribution\Download\7703a2cfb79a335fc73578a0ff0c6cb3\BITA2.tmp moved successfully.
C:\WINDOWS\system32\CONFIG.TMP moved successfully.
C:\WINDOWS\system32\nsa59E8.tmp moved successfully.
C:\WINDOWS\system32\nsa5A52.tmp moved successfully.
C:\WINDOWS\system32\nsb5A0E.tmp moved successfully.
C:\WINDOWS\system32\nsb5A19.tmp moved successfully.
C:\WINDOWS\system32\nsb5A67.tmp moved successfully.
C:\WINDOWS\system32\nsb5A69.tmp moved successfully.
C:\WINDOWS\system32\nsc59D7.tmp moved successfully.
C:\WINDOWS\system32\nsc59DA.tmp moved successfully.
C:\WINDOWS\system32\nsc5A06.tmp moved successfully.
C:\WINDOWS\system32\nsd59DC.tmp moved successfully.
C:\WINDOWS\system32\nsd5A2A.tmp moved successfully.
C:\WINDOWS\system32\nse59E6.tmp moved successfully.
C:\WINDOWS\system32\nse5A00.tmp moved successfully.
C:\WINDOWS\system32\nse5A39.tmp moved successfully.
C:\WINDOWS\system32\nsf59EC.tmp moved successfully.
C:\WINDOWS\system32\nsf5A0C.tmp moved successfully.
C:\WINDOWS\system32\nsf5A62.tmp moved successfully.
C:\WINDOWS\system32\nsf5A64.tmp moved successfully.
C:\WINDOWS\system32\nsg5A54.tmp moved successfully.
C:\WINDOWS\system32\nsh5A23.tmp moved successfully.
C:\WINDOWS\system32\nsh5A44.tmp moved successfully.
C:\WINDOWS\system32\nsh5A58.tmp moved successfully.
C:\WINDOWS\system32\nsh5A6B.tmp moved successfully.
C:\WINDOWS\system32\nsi59FA.tmp moved successfully.
C:\WINDOWS\system32\nsi59FC.tmp moved successfully.
C:\WINDOWS\system32\nsi5A15.tmp moved successfully.
C:\WINDOWS\system32\nsj5A0A.tmp moved successfully.
C:\WINDOWS\system32\nsl5A1D.tmp moved successfully.
C:\WINDOWS\system32\nsl5A31.tmp moved successfully.
C:\WINDOWS\system32\nsl5A3D.tmp moved successfully.
C:\WINDOWS\system32\nsl5A3F.tmp moved successfully.
C:\WINDOWS\system32\nsl5A66.tmp moved successfully.
C:\WINDOWS\system32\nsm59D5.tmp moved successfully.
C:\WINDOWS\system32\nsm59F2.tmp moved successfully.
C:\WINDOWS\system32\nsm5A11.tmp moved successfully.
C:\WINDOWS\system32\nsm5A21.tmp moved successfully.
C:\WINDOWS\system32\nsn59F6.tmp moved successfully.
C:\WINDOWS\system32\nsn59F8.tmp moved successfully.
C:\WINDOWS\system32\nsn5A26.tmp moved successfully.
C:\WINDOWS\system32\nsn5A28.tmp moved successfully.
C:\WINDOWS\system32\nso59DE.tmp moved successfully.
C:\WINDOWS\system32\nso59E2.tmp moved successfully.
C:\WINDOWS\system32\nso59FE.tmp moved successfully.
C:\WINDOWS\system32\nso5A2C.tmp moved successfully.
C:\WINDOWS\system32\nsp5A50.tmp moved successfully.
C:\WINDOWS\system32\nsq5A04.tmp moved successfully.
C:\WINDOWS\system32\nsr59D1.tmp moved successfully.
C:\WINDOWS\system32\nsr59D3.tmp moved successfully.
C:\WINDOWS\system32\nsr5A33.tmp moved successfully.
C:\WINDOWS\system32\nsr5A42.tmp moved successfully.
C:\WINDOWS\system32\nsr5A56.tmp moved successfully.
C:\WINDOWS\system32\nss5A17.tmp moved successfully.
C:\WINDOWS\system32\nss5A5C.tmp moved successfully.
C:\WINDOWS\system32\nst59E0.tmp moved successfully.
C:\WINDOWS\system32\nst5A08.tmp moved successfully.
C:\WINDOWS\system32\nst5A36.tmp moved successfully.
C:\WINDOWS\system32\nst5A48.tmp moved successfully.
C:\WINDOWS\system32\nsu5A3B.tmp moved successfully.
C:\WINDOWS\system32\nsu5A60.tmp moved successfully.
C:\WINDOWS\system32\nsv59CF.tmp moved successfully.
C:\WINDOWS\system32\nsv59EE.tmp moved successfully.
C:\WINDOWS\system32\nsw5A0F.tmp moved successfully.
C:\WINDOWS\system32\nsx59F4.tmp moved successfully.
C:\WINDOWS\system32\nsx5A13.tmp moved successfully.
C:\WINDOWS\system32\nsx5A46.tmp moved successfully.
C:\WINDOWS\system32\nsx5A5A.tmp moved successfully.
C:\WINDOWS\system32\nsy5A1B.tmp moved successfully.
C:\WINDOWS\system32\nsy5A5E.tmp moved successfully.
C:\WINDOWS\system32\nsz59E4.tmp moved successfully.
C:\WINDOWS\system32\nsz5A4A.tmp moved successfully.
C:\WINDOWS\system32\nsz5A4C.tmp moved successfully.
C:\WINDOWS\system32\nsz5A4E.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsa59EB.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsa5A2F.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsa5A3C.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsa5A4F.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsc5A14.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsd5A5D.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsd5A6E.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nse5A49.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nse5A61.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsf5A1C.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsf5A63.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsg5A1E.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsg5A55.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsh59F3.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsh59F5.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsh5A1A.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsh5A20.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsh5A24.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsh5A32.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsh5A43.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsh5A6C.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsi5A16.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsi5A70.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsj59E3.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsj5A01.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsj5A09.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsj5A4B.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsk59E7.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsk5A0B.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsk5A18.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsl5A05.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsl5A53.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsl5A65.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsm59D2.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsm5A35.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsn59D9.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsn5A45.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nso5A47.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsp59E5.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsp59E9.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsp5A03.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsp5A38.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsp5A3A.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsq59CD.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsq59ED.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsq59EF.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsq5A0D.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsq5A3E.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsr5A12.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsr5A22.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsr5A6A.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nss59F9.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nss5A07.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nss5A59.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nst59DF.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nst59FB.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nst59FD.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nst5A2B.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsu5A2D.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsu5A4D.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsv59D0.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsv5A51.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsw59D4.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsw59F1.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsw5A10.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsw5A40.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsw5A57.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsw5A68.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsx59D6.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsx59DB.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsx59F7.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsx5A5B.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsy59DD.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsy59E1.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsy5A27.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsy5A29.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsz59FF.tmp moved successfully.
C:\WINDOWS\system32\dllcache\nsz5A5F.tmp moved successfully.
C:\WINDOWS\system32\usmt\nsz5A02.tmp moved successfully.
C:\WINDOWS\Temp\JETC1C9.tmp moved successfully.
C:\WINDOWS\Temp\JETC9F7.tmp moved successfully.
C:\WINDOWS\Temp\JETEFDE.tmp moved successfully.
C:\WINDOWS\Temp\JETF7FC.tmp moved successfully.
C:\WINDOWS\Temp\JETF7FD.tmp moved successfully.
C:\WINDOWS\Temp\_avast4_\PxB126.tmp moved successfully.
========== COMMANDS ==========
C:\WINDOWS\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->FireFox cache emptied: 1528230 bytes
->Flash cache emptied: 456 bytes

User: Administrator.HECKER
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes
->FireFox cache emptied: 15452187 bytes
->Flash cache emptied: 456 bytes

User: All Users

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes

User: Hondzzikk
->Temp folder emptied: 51291 bytes
->Temporary Internet Files folder emptied: 1024232 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 76025753 bytes
->Opera cache emptied: 181718 bytes
->Flash cache emptied: 14306 bytes

User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 32902 bytes

User: NetworkService
->Temp folder emptied: 3828 bytes
->Temporary Internet Files folder emptied: 33170 bytes

%systemdrive% .tmp files removed: 220172 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 576730 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 91,00 mb


[EMPTYFLASH]

User: Administrator
->Flash cache emptied: 0 bytes

User: Administrator.HECKER
->Flash cache emptied: 0 bytes

User: All Users

User: Default User

User: Hondzzikk
->Flash cache emptied: 0 bytes

User: LocalService

User: NetworkService

Total Flash Files Cleaned = 0,00 mb

Restore points cleared and new OTL Restore Point set!

OTL by OldTimer - Version 3.2.22.3 log created on 04302011_005338

Files\Folders moved on Reboot...

Registry entries deleted on Reboot...

Re: POMOC ! POMOC ! POMOC !

Napsal: 30 dub 2011 00:00
od Hondzzikk
-klikněte na tlačítko Run fix.
kde to je?

Re: POMOC ! POMOC ! POMOC !

Napsal: 30 dub 2011 00:01
od motji
Log už jste dal, je to v pořádku. Jak to vypadá s počítačem?

Re: POMOC ! POMOC ! POMOC !

Napsal: 30 dub 2011 00:04
od Hondzzikk
pořád stejný