Re: Prosím o kontrolu pomale PC
Napsal: 29 srp 2013 16:17
za chvilku dam log
vyosek píše:T-Cleaner http://tharifas.sweb.cz/T-Cleaner.exe
- Stahnete a spustte
- Pro potvrzeni volby mackejte A, Enter
- Po pouziti utilitu smazte
- Antiviry mohou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
vyosek píše:Stahnete Malwarebytes Anti-Rootkit http://www.bleepingcomputer.com/downloa ... i-rootkit/
- Ulozte nejlepe na Plochu a rozbalte
- Spustte kliknutim na mbar
- Nyni postupne kliknete na Next a Update
- Po dokonceni update (aktualizace) databaze kliknete opet na Next
- Nechte zaskrtnute vsechny tri moznosti a klinete na Scan cimz spustite prohledavani PC
- Po dokonceni skenu (cca 5 minutek) zkontrolujte, zda-li je u vsech nalezu (samozrejme pokud budou) zatrzitko
- Tez zkontrolujte, jetsli je zatrzitko u Create Restore point
- Nyni kliknete na CleanUp cimz nalezenou infekci odstranime
- PC bude restartovan
- Slozka mbar by mela obsahovat log (a zrejme se i sam otevre) mbar-log-rok-mesic-den (hodina-minuta-sekunda).txt, ten mi sem dejte
vyosek píše:Stahnete si TDSSKiller http://support.kaspersky.com/downloads/ ... killer.exe
- Kliknete na volbu Change parametrs
- V okne Additional Option zakliknete vsechny moznosti
- Kliknete na OK
- Utilite prikazte, at skenuje - klik na Start Scan
- Po dokonceni skenu se objevi okno, zkontrolujte, zda-li je vsude moznost Skip
- Pokud moznost Skip nebude primarne nastavena, prekliknete ji na Skip
- Pokud mate vsude Skip, kliknete na Continue
- Na disku, kde mate Windows (obvykle c:\) ve tvaru TDSSKiller.nejaka cisilka _log.txt bude log - jeho obsah sem vlozte
Kód: Vybrat vše
MBRScan v1.1.1
OS : Windows XP Home Service Pack 3 (32 bit)
PROCESSOR : x86 Family 6 Model 10 Stepping 0, AuthenticAMD
BOOT : Normal Boot
DATE : 2013/09/02 (ISO 8601) at 09:16:55
________________________________________________________________________________
DISK : Device\Harddisk0\DR0 __Maxtor 6L200M0 (BANC1G10)
BUS_TYPE : (0x03) P-ATA
USE_PIO : YES
MAX_TRANSFER : 128 Kb
ALIGNMENT_MASK : word aligned
________________________________________________________________________________
DISK : Device\Harddisk1\DR3 __ST950032 5AS
BUS_TYPE : (0x07) USB
USE_PIO : NO
MAX_TRANSFER : 64 Kb
ALIGNMENT_MASK : byte aligned
________________________________________________________________________________
DISK : Device\Harddisk6\DR13 __A-DATA USB Flash Drive (1100)
BUS_TYPE : (0x07) USB
USE_PIO : NO
MAX_TRANSFER : 64 Kb
ALIGNMENT_MASK : byte aligned
________________________________________________________________________________
Device\Harddisk0\DR0 189.9 Go [Fixed] ==> XP MBR Code
MBR_MD5 : E009FDE99B6D1F94D0BABED83D44C53C
MBR_SHA1 : 268CACCCB0909615DCC23095C99AC4DEC0E5B99B
Device\Harddisk0\Partition1 78.13 Go 0x07 NTFS / HPFS __ BOOTABLE __
Device\Harddisk0\Partition2 111.8 Go 0x07 NTFS / HPFS
________________________________________________________________________________
Device\Harddisk1\DR3 465.8 Go [Fixed] ==> Vista MBR Code ....
MBR_MD5 : 78AF261C1BF88495EC8877FEDBE597DE
MBR_SHA1 : D9D804DDA5754BF4F1DA4FE68ED848424DC00350
Device\Harddisk1\Partition1 465.8 Go 0x07 NTFS / HPFS
________________________________________________________________________________
Device\Harddisk6\DR13 7.56 Go [Removable] ==> Unknown MBR Code
MBR_MD5 : E33DACA7C742D42B673DF2C7818EF271
MBR_SHA1 : 4CBF0A95348A397EC7E292F70144240ADDFD8557
Device\Harddisk6\Partition1 7.56 Go __ BOOTABLE __
________________________________________________________________________________
############################### Additional scan ################################
DRIVER : C:\WINDOWS\System32\Drivers\dump_atapi.sys => Invisible on the disk
ADDRESS : 0xF379E000
SIZE : 96.0 Ko
DRIVER : C:\WINDOWS\System32\Drivers\dump_WMILIB.SYS => Invisible on the disk
ADDRESS : 0xF7BD1000
SIZE : 8.0 Ko
SystemStartOptions : NOEXECUTE=OPTIN FASTDETECT
________________________________________________________________________________
_______MBR \Device\Harddisk0\DR0
0x00000000 33 C0 8E D0 BC 00 7C FB 50 07 50 1F FC BE 1B 7C 3À.м.|ûP.P.ü¾.|
0x00000010 BF 1B 06 50 57 B9 E5 01 F3 A4 CB BD BE 07 B1 04 ¿..PW¹å.ó¤Ë½¾.±.
0x00000020 38 6E 00 7C 09 75 13 83 C5 10 E2 F4 CD 18 8B F5 8n.|.u..Å.âôÍ..õ
0x00000030 83 C6 10 49 74 19 38 2C 74 F6 A0 B5 07 B4 07 8B .Æ.It.8,tö.µ.´..
0x00000040 F0 AC 3C 00 74 FC BB 07 00 B4 0E CD 10 EB F2 88 ð¬<.tü»..´.Í.ëò.
0x00000050 4E 10 E8 46 00 73 2A FE 46 10 80 7E 04 0B 74 0B N.èF.s*þF..~..t.
0x00000060 80 7E 04 0C 74 05 A0 B6 07 75 D2 80 46 02 06 83 .~..t..¶.uÒ.F...
0x00000070 46 08 06 83 56 0A 00 E8 21 00 73 05 A0 B6 07 EB F...V..è!.s..¶.ë
0x00000080 BC 81 3E FE 7D 55 AA 74 0B 80 7E 10 00 74 C8 A0 ¼.>þ}Uªt..~..tÈ.
0x00000090 B7 07 EB A9 8B FC 1E 57 8B F5 CB BF 05 00 8A 56 ·.ë©.ü.W.õË¿...V
0x000000A0 00 B4 08 CD 13 72 23 8A C1 24 3F 98 8A DE 8A FC .´.Í.r#.Á$?..Þ.ü
0x000000B0 43 F7 E3 8B D1 86 D6 B1 06 D2 EE 42 F7 E2 39 56 C÷ã.Ñ.Ö±.ÒîB÷â9V
0x000000C0 0A 77 23 72 05 39 46 08 73 1C B8 01 02 BB 00 7C .w#r.9F.s.¸..».|
0x000000D0 8B 4E 02 8B 56 00 CD 13 73 51 4F 74 4E 32 E4 8A .N..V.Í.sQOtN2ä.
0x000000E0 56 00 CD 13 EB E4 8A 56 00 60 BB AA 55 B4 41 CD V.Í.ëä.V.`»ªU´AÍ
0x000000F0 13 72 36 81 FB 55 AA 75 30 F6 C1 01 74 2B 61 60 .r6.ûUªu0öÁ.t+a`
0x00000100 6A 00 6A 00 FF 76 0A FF 76 08 6A 00 68 00 7C 6A j.j..v..v.j.h.|j
0x00000110 01 6A 10 B4 42 8B F4 CD 13 61 61 73 0E 4F 74 0B .j.´B.ôÍ.aas.Ot.
0x00000120 32 E4 8A 56 00 CD 13 EB D6 61 F9 C3 49 6E 76 61 2ä.V.Í.ëÖaùÃInva
0x00000130 6C 69 64 20 70 61 72 74 69 74 69 6F 6E 20 74 61 lid partition ta
0x00000140 62 6C 65 00 45 72 72 6F 72 20 6C 6F 61 64 69 6E ble.Error loadin
0x00000150 67 20 6F 70 65 72 61 74 69 6E 67 20 73 79 73 74 g operating syst
0x00000160 65 6D 00 4D 69 73 73 69 6E 67 20 6F 70 65 72 61 em.Missing opera
0x00000170 74 69 6E 67 20 73 79 73 74 65 6D 00 00 00 00 00 ting system.....
0x00000180 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x00000190 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000001A0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000001B0 00 00 00 00 00 2C 44 63 DD 27 DE 27 00 00 80 01 .....,DcÝ'Þ'....
0x000001C0 01 00 07 FE FF FF 3F 00 00 00 D8 1A C4 09 00 FE ...þ..?...Ø.Ä..þ
0x000001D0 FF FF 07 FE FF FF 17 1B C4 09 C1 37 F9 0D 00 00 ...þ....Ä.Á7ù...
0x000001E0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000001F0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 55 AA ..............Uª
_______MBR \Device\Harddisk1\DR3
0x00000000 33 C0 8E D0 BC 00 7C 8E C0 8E D8 BE 00 7C BF 00 3À.м.|.À.ؾ.|¿.
0x00000010 06 B9 00 02 FC F3 A4 50 68 1C 06 CB FB B9 04 00 .¹..üó¤Ph..Ëû¹..
0x00000020 BD BE 07 80 7E 00 00 7C 0B 0F 85 10 01 83 C5 10 ½¾..~..|......Å.
0x00000030 E2 F1 CD 18 88 56 00 55 C6 46 11 05 C6 46 10 00 âñÍ..V.UÆF..ÆF..
0x00000040 B4 41 BB AA 55 CD 13 5D 72 0F 81 FB 55 AA 75 09 ´A»ªUÍ.]r..ûUªu.
0x00000050 F7 C1 01 00 74 03 FE 46 10 66 60 80 7E 10 00 74 ÷Á..t.þF.f`.~..t
0x00000060 26 66 68 00 00 00 00 66 FF 76 08 68 00 00 68 00 &fh....f.v.h..h.
0x00000070 7C 68 01 00 68 10 00 B4 42 8A 56 00 8B F4 CD 13 |h..h..´B.V..ôÍ.
0x00000080 9F 83 C4 10 9E EB 14 B8 01 02 BB 00 7C 8A 56 00 ..Ä..ë.¸..».|.V.
0x00000090 8A 76 01 8A 4E 02 8A 6E 03 CD 13 66 61 73 1E FE .v..N..n.Í.fas.þ
0x000000A0 4E 11 0F 85 0C 00 80 7E 00 80 0F 84 8A 00 B2 80 N......~......².
0x000000B0 EB 82 55 32 E4 8A 56 00 CD 13 5D EB 9C 81 3E FE ë.U2ä.V.Í.]ë..>þ
0x000000C0 7D 55 AA 75 6E FF 76 00 E8 8A 00 0F 85 15 00 B0 }Uªun.v.è......°
0x000000D0 D1 E6 64 E8 7F 00 B0 DF E6 60 E8 78 00 B0 FF E6 Ñædè..°ßæ`èx.°.æ
0x000000E0 64 E8 71 00 B8 00 BB CD 1A 66 23 C0 75 3B 66 81 dèq.¸.»Í.f#Àu;f.
0x000000F0 FB 54 43 50 41 75 32 81 F9 02 01 72 2C 66 68 07 ûTCPAu2.ù..r,fh.
0x00000100 BB 00 00 66 68 00 02 00 00 66 68 08 00 00 00 66 »..fh....fh....f
0x00000110 53 66 53 66 55 66 68 00 00 00 00 66 68 00 7C 00 SfSfUfh....fh.|.
0x00000120 00 66 61 68 00 00 07 CD 1A 5A 32 F6 EA 00 7C 00 .fah...Í.Z2öê.|.
0x00000130 00 CD 18 A0 B7 07 EB 08 A0 B6 07 EB 03 A0 B5 07 .Í..·.ë..¶.ë..µ.
0x00000140 32 E4 05 00 07 8B F0 AC 3C 00 74 FC BB 07 00 B4 2ä....ð¬<.tü»..´
0x00000150 0E CD 10 EB F2 2B C9 E4 64 EB 00 24 02 E0 F8 24 .Í.ëò+Éädë.$.àø$
0x00000160 02 C3 49 6E 76 61 6C 69 64 20 70 61 72 74 69 74 .ÃInvalid partit
0x00000170 69 6F 6E 20 74 61 62 6C 65 00 45 72 72 6F 72 20 ion table.Error
0x00000180 6C 6F 61 64 69 6E 67 20 6F 70 65 72 61 74 69 6E loading operatin
0x00000190 67 20 73 79 73 74 65 6D 00 4D 69 73 73 69 6E 67 g system.Missing
0x000001A0 20 6F 70 65 72 61 74 69 6E 67 20 73 79 73 74 65 operating syste
0x000001B0 6D 00 00 00 00 62 7A 99 6E 49 B3 D9 00 00 00 01 m....bz.nI³Ù....
0x000001C0 01 00 07 FE FF FF 3F 00 00 00 02 4C 38 3A 00 00 ...þ..?....L8:..
0x000001D0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000001E0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000001F0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 55 AA ..............Uª
_______MBR \Device\Harddisk6\DR13
0x00000000 FA 31 C0 8E D8 8E D0 BC 00 7C 89 E6 06 57 8E C0 ú1À.Ø.м.|.æ.W.À
0x00000010 FB FC BF 00 06 B9 00 01 F3 A5 EA 1F 06 00 00 52 ûü¿..¹..ó¥ê....R
0x00000020 52 B4 41 BB AA 55 31 C9 30 F6 F9 CD 13 72 13 81 R´A»ªU1É0öùÍ.r..
0x00000030 FB 55 AA 75 0D D1 E9 73 09 66 C7 06 8D 06 B4 42 ûUªu.Ñés.fÇ...´B
0x00000040 EB 15 5A B4 08 CD 13 83 E1 3F 51 0F B6 C6 40 F7 ë.Z´.Í..á?Q.¶Æ@÷
0x00000050 E1 52 50 66 31 C0 66 99 E8 66 00 E8 21 01 4D 69 áRPf1Àf.èf.è!.Mi
0x00000060 73 73 69 6E 67 20 6F 70 65 72 61 74 69 6E 67 20 ssing operating
0x00000070 73 79 73 74 65 6D 2E 0D 0A 66 60 66 31 D2 BB 00 system...f`f1Ò».
0x00000080 7C 66 52 66 50 06 53 6A 01 6A 10 89 E6 66 F7 36 |fRfP.Sj.j..æf÷6
0x00000090 F4 7B C0 E4 06 88 E1 88 C5 92 F6 36 F8 7B 88 C6 ô{Àä..á.Å.ö6ø{.Æ
0x000000A0 08 E1 41 B8 01 02 8A 16 FA 7B CD 13 8D 64 10 66 .áA¸....ú{Í..d.f
0x000000B0 61 C3 E8 C4 FF BE BE 7D BF BE 07 B9 20 00 F3 A5 aÃèÄ.¾¾}¿¾.¹ .ó¥
0x000000C0 C3 66 60 89 E5 BB BE 07 B9 04 00 31 C0 53 51 F6 Ãf`.廾.¹..1ÀSQö
0x000000D0 07 80 74 03 40 89 DE 83 C3 10 E2 F3 48 74 5B 79 ..t.@.Þ.Ã.âóHt[y
0x000000E0 39 59 5B 8A 47 04 3C 0F 74 06 24 7F 3C 05 75 22 9Y[.G.<.t.$.<.u"
0x000000F0 66 8B 47 08 66 8B 56 14 66 01 D0 66 21 D2 75 03 f.G.f.V.f.Ðf!Òu.
0x00000100 66 89 C2 E8 AC FF 72 03 E8 B6 FF 66 8B 46 1C E8 f.Âè¬.r.è¶.f.F.è
0x00000110 A0 FF 83 C3 10 E2 CC 66 61 C3 E8 62 00 4D 75 6C ...Ã.âÌfaÃèb.Mul
0x00000120 74 69 70 6C 65 20 61 63 74 69 76 65 20 70 61 72 tiple active par
0x00000130 74 69 74 69 6F 6E 73 2E 0D 0A 66 8B 44 08 66 03 titions...f.D.f.
0x00000140 46 1C 66 89 44 08 E8 30 FF 72 13 81 3E FE 7D 55 F.f.D.è0.r..>þ}U
0x00000150 AA 0F 85 06 FF BC FA 7B 5A 5F 07 FA FF E4 E8 1E ª....¼ú{Z_.ú.äè.
0x00000160 00 4F 70 65 72 61 74 69 6E 67 20 73 79 73 74 65 .Operating syste
0x00000170 6D 20 6C 6F 61 64 20 65 72 72 6F 72 2E 0D 0A 5E m load error...^
0x00000180 AC B4 0E 8A 3E 62 04 B3 07 CD 10 3C 0A 75 F1 CD ¬´..>b.³.Í.<.uñÍ
0x00000190 18 F4 EB FD 00 00 00 00 00 00 00 00 00 00 00 00 .ôëý............
0x000001A0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000001B0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 80 20 ...............
0x000001C0 21 00 07 FE FF D9 00 08 00 00 00 D8 F1 00 00 00 !..þ.Ù.....Øñ...
0x000001D0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000001E0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0x000001F0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 55 AA ..............Uª