Re: Skoro nefunkční notebook
Napsal: 29 kvě 2013 08:49
Hláška o Partizanovi při staru mezi Windows XP a Vítejte zmizela, ve stejném místě je ted "SystemRoot\Windows\System32\AutoChk.exe program not found - skipping Autocheck" - opět zachyceno s pomocí foťáku.
Log z OTM:
All processes killed
========== COMMANDS ==========
[EMPTYTEMP]
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 32768 bytes
User: All Users
User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: LocalService
->Temp folder emptied: 65984 bytes
->Temporary Internet Files folder emptied: 34418 bytes
User: Acer
->Temp folder emptied: 1334155868 bytes
->Temporary Internet Files folder emptied: 480925113 bytes
->Java cache emptied: 56144158 bytes
->Opera cache emptied: 365509087 bytes
->Flash cache emptied: 195444 bytes
User: Administrator
->Temp folder emptied: 1196315 bytes
->Temporary Internet Files folder emptied: 7304382 bytes
->Flash cache emptied: 405 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 109681 bytes
%systemroot%\System32 .tmp files removed: 2504 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 14828919 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 925805674 bytes
Total Files Cleaned = 3 039,00 mb
[EMPTYFLASH]
User: Default User
User: All Users
User: NetworkService
User: LocalService
User: Acer
->Flash cache emptied: 0 bytes
User: Administrator
->Flash cache emptied: 0 bytes
Total Flash Files Cleaned = 0,00 mb
[EMPTYJAVA]
User: Default User
User: All Users
User: NetworkService
User: LocalService
User: Acer
->Java cache emptied: 0 bytes
User: Administrator
Total Java Files Cleaned = 0,00 mb
Restore point Set: OTM Restore Point
========== FILES ==========
File/Folder C:\WINDOWS\system32\*.tmp.dll not found.
File/Folder C:\WINDOWS\system32\SET*.tmp not found.
File/Folder C:\WINDOWS\*.tmp not found.
C:\WINDOWS\Partizan.log moved successfully.
C:\WINDOWS\system32\PARTIZAN.TXT moved successfully.
C:\WINDOWS\system32\Partizan.exe moved successfully.
C:\WINDOWS\system32\drivers\Partizan.sys moved successfully.
File/Folder C:\WINDOWS\system32\drivers\ooasywux.sys not found.
C:\FOUND.056 folder moved successfully.
C:\FOUND.057 folder moved successfully.
C:\FOUND.058 folder moved successfully.
C:\AdwCleaner[S1].txt moved successfully.
C:\AdwCleaner[R1].txt moved successfully.
C:\FOUND.060 folder moved successfully.
C:\FOUND.059 folder moved successfully.
C:\Documents and Settings\Acer\Nabídka Start\Programy\Po spuštění\Registration Heroes of Might & Magic 5.LNK moved successfully.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Session Manager\\BootExecute deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_PARTIZAN\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Partizan\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_PARTIZAN\ not found.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Partizan\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\preload deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\NeroFilterCheck deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Family Tree Builder Update deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\Search Protection deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\GameXN GO deleted successfully.
========== SERVICES/DRIVERS ==========
Error: Unable to stop service Partizan!
Service\Driver key Partizan not found.
Service NEXZJAT stopped successfully!
Service NEXZJAT deleted successfully!
Service JavaQuickStarterService stopped successfully!
Service JavaQuickStarterService deleted successfully!
Service ogdsiwkv stopped successfully!
Service ogdsiwkv deleted successfully!
Service mailKmd stopped successfully!
Service mailKmd deleted successfully!
Service Wbutton stopped successfully!
Service Wbutton deleted successfully!
Service osaio stopped successfully!
Service osaio deleted successfully!
Service osanbm stopped successfully!
Service osanbm deleted successfully!
OTM by OldTimer - Version 3.1.21.0 log created on 05292013_090707
Files moved on Reboot...
File C:\Documents and Settings\Acer\Local Settings\Temp\Temporary Internet Files\Content.IE5\QXQB30O6\click,fstgAAYHCQCitxAAvi4FAAIAMAAAAP8AAAAEAwIAAgNQpw0AmXALABG0BwAAAAAAAAAAAAAAAAAAAAAAAAAAADE2OEoAAAAA,,http%3A%2F%2Fwww.netfork.com%2Fopenx%2Fwww%2Fdelivery%2Fafr[1] not found!
File C:\WINDOWS\temp\_avast_\Webshlock.txt not found!
Registry entries deleted on Reboot...
Log z OTM:
All processes killed
========== COMMANDS ==========
[EMPTYTEMP]
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 32768 bytes
User: All Users
User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: LocalService
->Temp folder emptied: 65984 bytes
->Temporary Internet Files folder emptied: 34418 bytes
User: Acer
->Temp folder emptied: 1334155868 bytes
->Temporary Internet Files folder emptied: 480925113 bytes
->Java cache emptied: 56144158 bytes
->Opera cache emptied: 365509087 bytes
->Flash cache emptied: 195444 bytes
User: Administrator
->Temp folder emptied: 1196315 bytes
->Temporary Internet Files folder emptied: 7304382 bytes
->Flash cache emptied: 405 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 109681 bytes
%systemroot%\System32 .tmp files removed: 2504 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 14828919 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 925805674 bytes
Total Files Cleaned = 3 039,00 mb
[EMPTYFLASH]
User: Default User
User: All Users
User: NetworkService
User: LocalService
User: Acer
->Flash cache emptied: 0 bytes
User: Administrator
->Flash cache emptied: 0 bytes
Total Flash Files Cleaned = 0,00 mb
[EMPTYJAVA]
User: Default User
User: All Users
User: NetworkService
User: LocalService
User: Acer
->Java cache emptied: 0 bytes
User: Administrator
Total Java Files Cleaned = 0,00 mb
Restore point Set: OTM Restore Point
========== FILES ==========
File/Folder C:\WINDOWS\system32\*.tmp.dll not found.
File/Folder C:\WINDOWS\system32\SET*.tmp not found.
File/Folder C:\WINDOWS\*.tmp not found.
C:\WINDOWS\Partizan.log moved successfully.
C:\WINDOWS\system32\PARTIZAN.TXT moved successfully.
C:\WINDOWS\system32\Partizan.exe moved successfully.
C:\WINDOWS\system32\drivers\Partizan.sys moved successfully.
File/Folder C:\WINDOWS\system32\drivers\ooasywux.sys not found.
C:\FOUND.056 folder moved successfully.
C:\FOUND.057 folder moved successfully.
C:\FOUND.058 folder moved successfully.
C:\AdwCleaner[S1].txt moved successfully.
C:\AdwCleaner[R1].txt moved successfully.
C:\FOUND.060 folder moved successfully.
C:\FOUND.059 folder moved successfully.
C:\Documents and Settings\Acer\Nabídka Start\Programy\Po spuštění\Registration Heroes of Might & Magic 5.LNK moved successfully.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Session Manager\\BootExecute deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_PARTIZAN\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Partizan\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_PARTIZAN\ not found.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Partizan\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\preload deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\NeroFilterCheck deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Family Tree Builder Update deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\Search Protection deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\GameXN GO deleted successfully.
========== SERVICES/DRIVERS ==========
Error: Unable to stop service Partizan!
Service\Driver key Partizan not found.
Service NEXZJAT stopped successfully!
Service NEXZJAT deleted successfully!
Service JavaQuickStarterService stopped successfully!
Service JavaQuickStarterService deleted successfully!
Service ogdsiwkv stopped successfully!
Service ogdsiwkv deleted successfully!
Service mailKmd stopped successfully!
Service mailKmd deleted successfully!
Service Wbutton stopped successfully!
Service Wbutton deleted successfully!
Service osaio stopped successfully!
Service osaio deleted successfully!
Service osanbm stopped successfully!
Service osanbm deleted successfully!
OTM by OldTimer - Version 3.1.21.0 log created on 05292013_090707
Files moved on Reboot...
File C:\Documents and Settings\Acer\Local Settings\Temp\Temporary Internet Files\Content.IE5\QXQB30O6\click,fstgAAYHCQCitxAAvi4FAAIAMAAAAP8AAAAEAwIAAgNQpw0AmXALABG0BwAAAAAAAAAAAAAAAAAAAAAAAAAAADE2OEoAAAAA,,http%3A%2F%2Fwww.netfork.com%2Fopenx%2Fwww%2Fdelivery%2Fafr[1] not found!
File C:\WINDOWS\temp\_avast_\Webshlock.txt not found!
Registry entries deleted on Reboot...