

- Pokud používáš Win Vista či Win7, klikni na OTL pravým myšítkem a dej Run As Administrator či Spustit jako správce.
- Pokud používáš 64bitový OS, zkontroluj, zda-li je zaškrtnutý čtvereček Pro 64 bitové OS. Pokud ne, zaškrtni jej.
- Do spodního okénka Vlastní skenování/opravy vlož tento script (pouze zelená písmenka v bílém poli!):
Kód: Vybrat vše
:Commands
[clearallrestorepoints]
[resethosts]
[purity]
[emptytemp]
[emptyflash]
:OTL
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- System32\Drivers\usbaapl.sys -- (USBAAPL)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\pccsmcfd.sys -- (pccsmcfd)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\PcaSp50.sys -- (PcaSp50)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ewusbdev.sys -- (hwusbdev)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ewusbmdm.sys -- (hwdatacard)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\ComboFix\catchme.sys -- (catchme)
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://toolbar.ask.com/toolbarv/askRedi ... t=&gc=1&q=
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
IE - HKU\S-1-5-21-1614895754-1708537768-1801674531-1006\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = BC 0F CA F0 F0 36 CD 01 [binary data]
IE - HKU\S-1-5-21-1614895754-1708537768-1801674531-1006\..\SearchScopes,DefaultScope = {afdbddaa-5d3f-42ee-b79c-185a7020515b}
IE - HKU\S-1-5-21-1614895754-1708537768-1801674531-1006\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src=IE-SearchBox&Form=IE8SRC
IE - HKU\S-1-5-21-1614895754-1708537768-1801674531-1006\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2548838
IE - HKU\S-1-5-21-1614895754-1708537768-1801674531-1006\..\SearchScopes\{CF739809-1C6C-47C0-85B9-569DBB141420}: "URL" = http://websearch.ask.com/redirect?clien ... src=crm&q={searchTerms}&locale=en_EU&apn_ptnrs=NY&apn_dtid=YYYYYYYYSK&apn_uid=747930EB-0B32-40E0-9A1E-F05251239E9F&apn_sauid=B84387F6-F49C-41AE-BFE7-365C6A62D061&
FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaultenginename: "Ask.com"
FF - prefs.js..browser.search.defaultthis.engineName: "TVersitybar Customized Web Search"
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - user.js - File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll File not found
FF - HKLM\Software\MozillaPlugins\yaxmpb@yahoo.com/YahooActiveXPluginBridge;version=1.0.0.1: C:\Program Files\Yahoo!\Common\npyaxmpb.dll (Yahoo! Inc.)
[2011.05.25 17:55:23 | 000,000,000 | ---D | M] (XfireXO) -- C:\Documents and Settings\Doma\Data aplikací\Mozilla\Firefox\Profiles\k1plvtzz.default\extensions\{5e5ab302-7f65-44cd-8211-c1d4caaccea3}
[2011.11.12 19:44:34 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Doma\Data aplikací\Mozilla\Firefox\Profiles\k1plvtzz.default\extensions\ffxtlbr@babylon.com
[2012.05.18 19:33:19 | 000,002,400 | ---- | M] () -- C:\Documents and Settings\Doma\Data aplikací\Mozilla\Firefox\Profiles\k1plvtzz.default\searchplugins\askcom.xml
[2011.12.15 12:40:20 | 000,000,925 | ---- | M] () -- C:\Documents and Settings\Doma\Data aplikací\Mozilla\Firefox\Profiles\k1plvtzz.default\searchplugins\conduit.xml
[2011.03.18 14:05:04 | 000,001,908 | ---- | M] () -- C:\Documents and Settings\Doma\Data aplikací\Mozilla\Firefox\Profiles\k1plvtzz.default\searchplugins\metacrawler.xml
[2011.11.12 19:44:23 | 000,002,227 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\babylon.xml
CHR - Extension: Babylon Translator = C:\Documents and Settings\Doma\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb\1.4\
O8 - Extra context menu item: Translate this web page with Babylon - Reg Error: Value error. File not found
O8 - Extra context menu item: Translate with Babylon - Reg Error: Value error. File not found
O9 - Extra Button: Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/ActionTU.htm File not found
O9 - Extra 'Tools' menuitem : Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/ActionTU.htm File not found
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[15 C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[1 C:\WINDOWS\Installer\*.tmp files -> C:\WINDOWS\Installer\*.tmp -> ]
[1 C:\WINDOWS\SoftwareDistribution\AuthCabs\7971f918-a847-4430-9279-4a52d1efe18d\*.tmp files -> C:\WINDOWS\SoftwareDistribution\AuthCabs\7971f918-a847-4430-9279-4a52d1efe18d\*.tmp -> ]
[1 C:\WINDOWS\SoftwareDistribution\Download\b25a6f5145cb11af9dd5be9e353db6ab\*.tmp files -> C:\WINDOWS\SoftwareDistribution\Download\b25a6f5145cb11af9dd5be9e353db6ab\*.tmp -> ]
[5 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
[7 \Documents and Settings\Doma\Data aplikací\Azureus\torrents\*.tmp files -> \Documents and Settings\Doma\Data aplikací\Azureus\torrents\*.tmp -> ]
[2010.07.24 11:18:58 | 000,000,000 | ---D | M](C:\Documents and Settings\Doma\Data aplikac?) -- C:\Documents and Settings\Doma\Data aplikac�
(C:\Documents and Settings\Doma\Data aplikac?) -- C:\Documents and Settings\Doma\Data aplikac�
@Alternate Data Stream - 500 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:05EE1EEF
:Files
C:\Documents and Settings\All Users\Data aplikací\Babylon
C:\Documents and Settings\Doma\Data aplikací\Babylon
C:\WINDOWS\System32\H@tKeysH@@k.DLL
C:\Documents and Settings\Doma\Data aplikací\Azureus\torrents\Adobe_Photoshop_CS5_Extended_(Crack___Instructions).5570840.TPB.torrent /d
C:\Documents and Settings\Doma\Data aplikací\Azureus\torrents\[kat.ph]audio4fun.av.voice.changer.diamond.7.0.29.crack.rh.torrent /d
C:\Documents and Settings\Doma\Data aplikací\uTorrent\GTAIV Patch 1030 + Razor Crack.rar.torrent /d
C:\Documents and Settings\Doma\Local Settings\Data aplikací\Opera\Opera\profile\images\http%3A%2F%2Fwww.crackfulldownload.com%2Ffavicon.ico /d
C:\Documents and Settings\Doma\Local Settings\Data aplikací\Opera\Opera\profile\images\http%3A%2F%2Fwww.cracks.cx%2Ffavicon.ico /d
C:\Documents and Settings\Doma\Local Settings\Data aplikací\Opera\Opera\profile\images\http%3A%2F%2Fwww.crackserialcodes.com%2Ffavicon.ico /d
C:\Documents and Settings\Doma\Local Settings\Data aplikací\Opera\Opera\profile\images\www.crackfulldownload.com.idx /d
C:\Documents and Settings\Doma\Local Settings\Data aplikací\Opera\Opera\profile\images\www.cracks.cx.idx /d
C:\Documents and Settings\Doma\Local Settings\Data aplikací\Opera\Opera\profile\images\www.crackserialcodes.com.idx /d
C:\Documents and Settings\Doma\Data aplikací\uTorrent\Camtasia Studio 7.0.0 + Serials & Keygen - DivXNL-team.torrent /d
C:\Documents and Settings\Doma\Data aplikací\uTorrent\Sony.Vegas.Pro.v11.Build.371.x64.Incl.Keygen.and.Patch.torrent /d
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp /s
:Reg
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"57715:TCP"=-
"57715:UDP"=-
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"57715:TCP"=-
"57715:UDP"=-
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\OptionalComponents]
""=-
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\IMAIL]
""=-
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\MAPI]
""=-
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\MSFS]
""=-
- Klikni na tlačítko [Opravit].
- Po dokončení skenu se objeví log, ten mi sem vlož.
- Pokud se log nevejde do jednoho příspěvku, rozděl jej na více částí.