Stránka 2 z 2

Re: Facebook Chat Vir (Log)

Napsal: 21 srp 2011 17:25
od JeyDee
Ad Aware jsem odinstaloval a tohle je výsledný log


All processes killed
========== COMMANDS ==========
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Host
->Temp folder emptied: 6191 bytes
->Temporary Internet Files folder emptied: 5534641 bytes
->Flash cache emptied: 12459 bytes

User: Public

User: Uživatel
->Temp folder emptied: 7980491468 bytes
->Temporary Internet Files folder emptied: 944491174 bytes
->Java cache emptied: 361468 bytes
->FireFox cache emptied: 76219168 bytes
->Google Chrome cache emptied: 558651172 bytes
->Flash cache emptied: 90858 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 2834002967 bytes
RecycleBin emptied: 4479106325 bytes

Total Files Cleaned = 16 097,00 mb


[EMPTYFLASH]

User: All Users

User: Default

User: Default User

User: Host
->Flash cache emptied: 0 bytes

User: Public

User: Uživatel
->Flash cache emptied: 0 bytes

Total Flash Files Cleaned = 0,00 mb


========== OTL ==========
Service srvbtcclient stopped successfully!
Service srvbtcclient deleted successfully!
File C:\Windows\update.5.0\svchost.exe not found.
Service srviecheck stopped successfully!
Service srviecheck deleted successfully!
File C:\Windows\update.2\svchost.exe not found.
Service ddservice stopped successfully!
Service ddservice deleted successfully!
File C:\Windows\update.7.1\svchostdriver.exe not found.
Service srvsysdriver32 stopped successfully!
Service srvsysdriver32 deleted successfully!
File C:\Windows\sysdriver32.exe not found.
Service wxpdrivers stopped successfully!
Service wxpdrivers deleted successfully!
File C:\Windows\update.1\svchost.exe not found.
Registry value HKEY_USERS\S-1-5-21-1902724176-3205514061-4035515947-1000\Software\Microsoft\Internet Explorer\URLSearchHooks\\{00000000-6E41-4FD3-8538-502F5495E5FC} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}\ deleted successfully.
C:\Program Files\Ask.com\GenericAskToolbar.dll moved successfully.
Prefs.js: "Ask.com" removed from browser.search.defaultenginename
Prefs.js: "Ask.com" removed from browser.search.order.1
Prefs.js: "Ask.com" removed from browser.search.selectedEngine
Prefs.js: "http://websearch.ask.com/redirect?clien ... YYYYYCZ&q=" removed from keyword.URL
C:\Users\Uživatel\AppData\Roaming\mozilla\Firefox\Profiles\vxll5oq5.default\extensions\toolbar@ask.com\searchplugins folder moved successfully.
C:\Users\Uživatel\AppData\Roaming\mozilla\Firefox\Profiles\vxll5oq5.default\extensions\toolbar@ask.com\logs folder moved successfully.
C:\Users\Uživatel\AppData\Roaming\mozilla\Firefox\Profiles\vxll5oq5.default\extensions\toolbar@ask.com\defaults\preferences folder moved successfully.
C:\Users\Uživatel\AppData\Roaming\mozilla\Firefox\Profiles\vxll5oq5.default\extensions\toolbar@ask.com\defaults folder moved successfully.
C:\Users\Uživatel\AppData\Roaming\mozilla\Firefox\Profiles\vxll5oq5.default\extensions\toolbar@ask.com\datastore folder moved successfully.
C:\Users\Uživatel\AppData\Roaming\mozilla\Firefox\Profiles\vxll5oq5.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Tue-16-Aug-2011-00-31-08-GMT folder moved successfully.
C:\Users\Uživatel\AppData\Roaming\mozilla\Firefox\Profiles\vxll5oq5.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Tue-12-Jul-2011-10-02-28-GMT folder moved successfully.
C:\Users\Uživatel\AppData\Roaming\mozilla\Firefox\Profiles\vxll5oq5.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Sun-29-May-2011-02-07-07-GMT folder moved successfully.
C:\Users\Uživatel\AppData\Roaming\mozilla\Firefox\Profiles\vxll5oq5.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Sat-28-May-2011-00-59-06-GMT folder moved successfully.
C:\Users\Uživatel\AppData\Roaming\mozilla\Firefox\Profiles\vxll5oq5.default\extensions\toolbar@ask.com\chrome\temp folder moved successfully.
C:\Users\Uživatel\AppData\Roaming\mozilla\Firefox\Profiles\vxll5oq5.default\extensions\toolbar@ask.com\chrome\skin folder moved successfully.
C:\Users\Uživatel\AppData\Roaming\mozilla\Firefox\Profiles\vxll5oq5.default\extensions\toolbar@ask.com\chrome\content folder moved successfully.
Folder move failed. C:\Users\Uživatel\AppData\Roaming\mozilla\Firefox\Profiles\vxll5oq5.default\extensions\toolbar@ask.com\chrome scheduled to be moved on reboot.
Folder move failed. C:\Users\Uživatel\AppData\Roaming\mozilla\Firefox\Profiles\vxll5oq5.default\extensions\toolbar@ask.com scheduled to be moved on reboot.
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@microsoft.com/GENUINE\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ deleted successfully.
File C:\Program Files\Ask.com\GenericAskToolbar.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ not found.
File C:\Program Files\Ask.com\GenericAskToolbar.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\4282020.exe deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\57868644-loader2.exe deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\6084512.exe deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\6097584.exe deleted successfully.
File C:\Windows\Temp\6097584.exe not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\8304816.exe deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\l1rezerv.exe deleted successfully.
File C:\Windows\l1rezerv.exe not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\sysdriver32.exe deleted successfully.
File C:\Windows\sysdriver32.exe not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\sysdriver32_.exe deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\tray_ico deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\tray_ico0 deleted successfully.
File C:\Windows\update.tray-2-0\svchost.exe not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\tray_ico1 deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\tray_ico2 deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\tray_ico3 deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\tray_ico4 deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\wxpdrv deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\\AlternateShell deleted successfully.
C:\Windows\ufa folder moved successfully.
C:\Windows\rpcminer folder moved successfully.
C:\Windows\phoenix\kernels\poclbm folder moved successfully.
C:\Windows\phoenix\kernels\phatk folder moved successfully.
C:\Windows\phoenix\kernels folder moved successfully.
C:\Windows\phoenix folder moved successfully.
C:\Windows\update.5.0 folder moved successfully.
C:\Windows\update.2 folder moved successfully.
C:\Windows\update.7.1 folder moved successfully.
C:\Windows\av_ico folder moved successfully.
C:\Windows\update.1 folder moved successfully.
C:\Windows\update.tray-2-0-lnk folder moved successfully.
C:\Windows\update.tray-2-0 folder moved successfully.
C:\Windows\phoenix.rar moved successfully.
C:\Windows\rpcminer.rar moved successfully.
C:\Windows\unrar.exe moved successfully.
C:\Windows\ufa.rar moved successfully.
C:\Windows\info1 moved successfully.
File C:\Windows\l1rezerv.exe not found.
C:\Windows\geoiplist.rar moved successfully.
C:\Windows\loader2.exe_ok moved successfully.
File C:\Windows\sysdriver32.exe not found.
File C:\Windows\System32\lsdelete.exe not found.
File C:\aaw7boot.cmd not found.
File C:\Windows\phoenix.rar not found.
File C:\Windows\rpcminer.rar not found.
File C:\Windows\ufa.rar not found.
File C:\Windows\l1rezerv.exe not found.
File C:\Windows\info1 not found.
C:\Windows\geoiplist moved successfully.
File C:\Windows\geoiplist.rar not found.
File C:\Windows\unrar.exe not found.
File C:\Windows\loader2.exe_ok not found.
File C:\Windows\sysdriver32.exe not found.
C:\Windows\KMSAct.exe moved successfully.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Users\Uživatel\Downloads\Flash-Player.exe deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Windows\update.1\svchost.exe deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Windows\update.tray-2-0\svchost.exe deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Windows\update.2\svchost.exe deleted successfully.

OTL by OldTimer - Version 3.2.26.5 log created on 08212011_181854

Files\Folders moved on Reboot...
C:\Users\Uživatel\AppData\Roaming\mozilla\Firefox\Profiles\vxll5oq5.default\extensions\toolbar@ask.com\chrome folder moved successfully.
C:\Users\Uživatel\AppData\Roaming\mozilla\Firefox\Profiles\vxll5oq5.default\extensions\toolbar@ask.com folder moved successfully.

Registry entries deleted on Reboot...

Re: Facebook Chat Vir (Log)

Napsal: 21 srp 2011 18:40
od Caroprd111
Jak se chová PC?