Stránka 6 z 12

Re: zase ROOTKIT

Napsal: 13 pro 2009 21:15
od brankar
TAK KOUKAM ŽE TAHLE IP adresa, 93.91.144.178, JE POD GOOGLE VŠUDE PĚKNE VYUŽIVANA
TOJE HUMUS

IP adresa je ta neprava
interní IP adresa je :spravna

Re: zase ROOTKIT

Napsal: 14 pro 2009 19:00
od earl
Reknu to takto.

Priklad:

Mam poskytovatele napr. UPC a pridelenou IP 83.213.45.34. (verejna) nebo 192.168.16.134 (neverejna).

Jakoukoliv zmenu vam provider oznami emailem na ucet,ktery u nej mate zrizen.

A ze by doslo ke zmene jen tak z UPC napr. k O2 je proste nemyslitelne.

Takze se ptam,kdo je vas poskytovatel a jestli vam tyto zmeny nejak oznamil.

To jsou veci,ktere je treba vyresit,nez se bude resit nejaka eventualni infekce.

Re: zase ROOTKIT

Napsal: 14 pro 2009 19:36
od brankar
poskitovatel je AR - SYSTEM

ZMĚNY ŽADNÉ NIKDO NENAHLASIL

Re: zase ROOTKIT

Napsal: 14 pro 2009 19:49
od earl
V logu z Comba zadna havet neni.

Spustte postupne IE8,FF a Operu s nastavenou homepage www.seznam.cz a popiste presne,jak to vypada.

Re: zase ROOTKIT

Napsal: 14 pro 2009 21:26
od brankar
nezlobte se ted tomu nerozumím jak co má vypadat

Re: zase ROOTKIT

Napsal: 14 pro 2009 21:34
od brankar
OPERA A IE PŘIPOJENO NA SEZNAM JINAK MÁM UDĚLAT NĚCO JINEHO
FF NEMÁM

Re: zase ROOTKIT

Napsal: 15 pro 2009 16:19
od earl
Ok,a ta hlaska?

Re: zase ROOTKIT

Napsal: 15 pro 2009 17:29
od brankar
před 10 minutami opět ta hlaška na seznamu

proč tuhle udajnou IP adresu na google když se podivate každy používa k věcem které bych nikdy neuskutečnil proto ty hlašky no nevím ale jeto divné

skuste se prosím podívat na google a zadat tuhle IPadresu 93.91.144.178

Re: zase ROOTKIT

Napsal: 15 pro 2009 17:40
od earl
Jdete do IE - Nastroje - Moznosti internetu - Pripojeni - co tam mate vyplneno?

Re: zase ROOTKIT

Napsal: 15 pro 2009 18:22
od brankar
nastaveni tel. připojení a sitě VPN ......NIC NASTAVENO
nastavení mistni sitě lan
automaticka konfigurace
automaticke zjištovani nastaveni ..... nezaškrtnuto
použít scrip pro automatickou ........nezaškrtnuto
server proxy.....nezaškrtnuto
adresa ....neviplněna
port,.......80

Re: zase ROOTKIT

Napsal: 15 pro 2009 18:31
od earl
Pres prave tlacitko mysi jdete na Stav u sitoveho adapteru - Vlastnosti - Internet protocol TCP/IP - Vlastnosti - prosim o udaje v radcich.

Re: zase ROOTKIT

Napsal: 15 pro 2009 18:43
od brankar
adresa IP... 10.1.6.10
maska......255.255.255.0
brana.....10.1.6.1
server DNS....10.1.1.1

Re: zase ROOTKIT

Napsal: 15 pro 2009 18:46
od earl
IP adresa je pridelena providerem,takze bych kontaktoval jeho,kde je problem.

:arrow: Stahnete OTListIt2 ,ulozte na plochu,spustte,oznacte "Scan All Users,30days zmente na 7,kliknete na "Run Scan",otevre se log, jeho obsah zkopirujte sem.

Re: zase ROOTKIT

Napsal: 15 pro 2009 19:12
od brankar
OTL Extras logfile created on: 15.12.2009 18:56:24 - Run 1
OTL by OldTimer - Version 3.1.17.0 Folder = C:\Documents and Settings\user\Plocha
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

511,48 Mb Total Physical Memory | 187,19 Mb Available Physical Memory | 36,60% Memory free
1,22 Gb Paging File | 0,92 Gb Available in Paging File | 75,75% Paging File free
Paging file location(s): C:\pagefile.sys 0 0 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 149,04 Gb Total Space | 37,62 Gb Free Space | 25,24% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: VLASTN-81FD8C78
Current User Name: user
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 7 Days
Output = Standard

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.chm [@ = chm.file] -- "%SYSTEMROOT%\hh.exe" %1
.html [@ = Opera.HTML] -- C:\Program Files\Opera\Opera.exe (Opera Software)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
chm.file [open] -- "%SYSTEMROOT%\hh.exe" %1
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
htmlfile [edit] -- "C:\Program Files\Microsoft Office\OFFICE11\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation)
https [open] -- "C:\Program Files\Opera\opera.exe" (Opera Software)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "%programfiles%\internet explorer\iexplore.exe"

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0
"UpdatesDisableNotify" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\uTorrent\uTorrent.exe" = C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent -- (BitTorrent, Inc.)
"C:\Program Files\Opera\Opera.exe" = C:\Program Files\Opera\Opera.exe:*:Enabled:Opera Internet Browser -- (Opera Software)
"C:\Program Files\2K Sports\NBA 2K10\nba2k10.exe" = C:\Program Files\2K Sports\NBA 2K10\nba2k10.exe:*:Enabled:2K Sports NBA 2K10 -- (2K Sports)
"C:\Documents and Settings\user\Dokumenty\košikova nba\nba2k10.exe" = C:\Documents and Settings\user\Dokumenty\košikova nba\nba2k10.exe:*:Enabled:2K Sports NBA 2K10 -- (2K Sports)
"C:\Program Files\Sports Interactive\Football Manager 2010\fm.exe" = C:\Program Files\Sports Interactive\Football Manager 2010\fm.exe:*:Enabled:Football Manager 2010 -- (Sports Interactive)
"C:\Program Files\Microsoft Games\Flight Simulator 9\fs9.exe" = C:\Program Files\Microsoft Games\Flight Simulator 9\fs9.exe:*:Enabled:Microsoft Flight Simulator -- (Microsoft Corporation)
"C:\WINDOWS\system32\dpnsvr.exe" = C:\WINDOWS\system32\dpnsvr.exe:*:Enabled:Microsoft DirectPlay8 Server -- (Microsoft Corporation)
"C:\Program Files\Ares\Ares.exe" = C:\Program Files\Ares\Ares.exe:*:Enabled:Ares p2p for windows -- (Ares Development Group)


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{02EBDBB9-4600-41D3-B566-40CB861511D2}" = World of Warcraft FREE Trial
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{055EE59D-217B-43A7-ABFF-507B966405D8}" = ATI Catalyst Control Center
"{0A9C9BD5-8588-40D4-8A1A-860E3D2ED6EE}" = NBA 2K10
"{11051835-560C-9E8F-C9B5-C376F4A46580}" = Catalyst Control Center Graphics Previews Common
"{11202615-E557-4ECF-9B86-F59C81E52909}" = FIFA 10
"{16D354E4-63D4-B300-AFBC-8D22A94CE6D6}" = ccc-utility
"{1C2CD847-D196-079D-E004-C1D82B57E3A7}" = Catalyst Control Center Graphics Full Existing
"{2BF0AE92-C3BC-4112-9066-1546342B1FAE}" = Call of Duty(R) - World at War(TM) 1.2 Patch
"{350C9405-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{37E9E443-FA8E-095F-CF2A-90A18B0B206B}" = CCC Help English
"{3EBC0693-0A27-4B50-90A1-A8B688911C7A}" = Samsung PC Studio 3
"{448A1BF6-B110-5C4B-2220-30F5ECE6DD83}" = Catalyst Control Center Core Implementation
"{4F3C8CEE-89D6-891E-D728-80A8CF0DCB32}" = ccc-core-preinstall
"{654870E9-EF38-D3B3-328C-ABA367163D15}" = Catalyst Control Center Graphics Full New
"{65F1CF63-31E0-450B-96F3-4A88BE7361A6}" = AGEIA PhysX v7.07.09
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{7104189A-C592-4A56-AC9E-7C0CA135DA3C}" = AGEIA PhysX v6.10.25
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{84BAD30E-07CD-496A-AC88-EE9C8DFE2327}_is1" = FlatOut
"{8CD8CCC0-3C5C-DF21-DAC3-D5834E803F1E}" = Catalyst Control Center Graphics Light
"{8F6A89F1-F04A-6FD8-1802-D7D5BAE382E1}" = ccc-core-static
"{90110405-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003
"{90F60409-6000-11D3-8CFE-0150048383C9}" = Visual Basic for Applications (R) Core - English
"{9720C029-0C2C-4D1E-9DE0-E89971C4C8C7}" = Silent Hunter III
"{9B63540D-D942-4C38-B42E-A48AE0145970}" = Virtua Tennis 3
"{A2A5C34C-BD78-4505-9E57-AFCDF2FB926C}" = Autodesk DWF Writer
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{AC76BA86-7AD7-1029-7B44-A91000000001}" = Adobe Reader 9.1 - Czech
"{AC76BA86-7AD7-5464-3428-800000000003}" = Spelling Dictionaries Support For Adobe Reader 8
"{B3B20D3D-92F9-5EBA-B557-CECA02984F05}" = Catalyst Control Center HydraVision Full
"{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}" = SUPERAntiSpyware Free Edition
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}" = TuneUp Utilities
"{D3B1C799-CB73-42DE-BA0F-2344793A095C}" = Catalyst Control Center - Branding
"{D560A981-FEB3-42F0-A61A-13E9528E0C51}_is1" = GTR 2 1.0.0.0
"{D80A6A73-E58A-4673-AFF5-F12D7110661F}" = Call of Duty(R) - World at War(TM)
"{EBA29752-DDD2-4B62-B2E3-9841F92A3E3A}" = Samsung PC Studio 3 USB Driver Installer
"{F0601E2E-8FB3-1C63-F72D-54EB2F908767}" = Skins
"{F2B5A2A7-2DF9-4361-8BD5-362714528B51}" = NHL® 09
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729)
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01
"{F8CCEF4F-6EEF-4B81-B70D-821E72451D93}" = Opera 9.61
"{FB08F381-6533-4108-B7DD-039E11FBC27E}" = Realtek AC'97 Audio
"{FD1B1980-8CAB-4474-89F8-1245AF657AD1}" = Harry Potter a Princ Dvojí Krve™
"{FE3997D3-6B56-4AC4-A99C-9DDFC45359BF}" = TuneUp Utilities Language Pack (en-US)
"7-Zip" = 7-Zip 4.65
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player
"All ATI Software" = ATI - Software Uninstall Utility
"Annihilator 0.5 beta" = Annihilator 0.5 beta
"Ares" = Ares 2.1.0
"ATI Display Driver" = ATI Display Driver
"CCleaner" = CCleaner (remove only)
"COMODO Internet Security" = COMODO Internet Security
"Creation Master 10_is1" = Creation Master 10 Release 10.1
"čeština GTR2 v.1.1" = čeština GTR2 v.1.1
"Dostihy 3000 deluxe" = Dostihy 3000 deluxe 1.1
"Euro Truck Simulator" = Euro Truck Simulator
"FarmingSimulator2009DE_is1" = Landwirtschafts-Simulator 2009
"FIFA 10 FAT Rebuilder" = FIFA 10 FAT Rebuilder
"Flight Simulator 9.0" = Microsoft Flight Simulator 2004 A Century of Flight
"Football Manager 2010" = Football Manager 2010
"Hamachi" = Hamachi 1.0.3.0
"HijackThis" = HijackThis 2.0.2
"ie8" = Windows Internet Explorer 8
"KLiteCodecPack_is1" = K-Lite Mega Codec Pack 3.8.5
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
"PowerISO" = PowerISO
"SAMSUNG Mobile Modem" = SAMSUNG Mobile Modem Driver Set
"Samsung Mobile phone USB driver" = Samsung Mobile phone USB driver Software
"SAMSUNG Mobile USB Modem" = SAMSUNG Mobile USB Modem Software
"SAMSUNG Mobile USB Modem 1.0" = SAMSUNG Mobile USB Modem 1.0 Software
"SAS Secure Tomorrow_is1" = SAS Secure Tomorrow (1.0)
"Summer Athletics_is1" = Summer Athletics
"Totalcmd" = Total Commander (Remove or Repair)
"Train Simulator 1.0" = Microsoft Train Simulator
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows Media Player" = Windows Media Player 11
"WinRAR archiver" = WinRAR
"Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-1409082233-1580818891-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Messenger Update" = Messenger Update
"uTorrent" = µTorrent

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 21.11.2009 8:44:23 | Computer Name = VLASTN-81FD8C78 | Source = MsiInstaller | ID = 11714
Description = Product: Java(TM) 6 Update 17 -- Error 1714.The older version of Java(TM)
6 Update 17 cannot be removed. Contact your technical support group. System Error
1612.

Error - 21.11.2009 8:56:05 | Computer Name = VLASTN-81FD8C78 | Source = MsiInstaller | ID = 11714
Description = Product: Java(TM) 6 Update 17 -- Error 1714.The older version of Java(TM)
6 Update 17 cannot be removed. Contact your technical support group. System Error
1612.

Error - 21.11.2009 9:01:49 | Computer Name = VLASTN-81FD8C78 | Source = MsiInstaller | ID = 1008
Description = Instalace C:\Documents and Settings\user\Data aplikací\Sun\Java\jre1.6.0_16\jre1.6.0_16.msi
není povolena z důvodu chyby při zpracování zásad omezení softwaru. Objekt není
důvěryhodný

Error - 21.11.2009 9:15:55 | Computer Name = VLASTN-81FD8C78 | Source = MsiInstaller | ID = 1008
Description = Instalace C:\Documents and Settings\user\Data aplikací\Sun\Java\jre1.6.0_16\jre1.6.0_16.msi
není povolena z důvodu chyby při zpracování zásad omezení softwaru. Objekt není
důvěryhodný

Error - 22.11.2009 11:31:35 | Computer Name = VLASTN-81FD8C78 | Source = MsiInstaller | ID = 11714
Description = Product: Java(TM) 6 Update 17 -- Error 1714.The older version of Java(TM)
6 Update 17 cannot be removed. Contact your technical support group. System Error
1612.

Error - 22.11.2009 16:39:38 | Computer Name = VLASTN-81FD8C78 | Source = MsiInstaller | ID = 11714
Description = Product: Java(TM) 6 Update 17 -- Error 1714.The older version of Java(TM)
6 Update 17 cannot be removed. Contact your technical support group. System Error
1612.

Error - 3.12.2009 0:34:38 | Computer Name = VLASTN-81FD8C78 | Source = PerfNet | ID = 2004
Description = Nelze otevřít službu serveru. Data o výkonu serveru nejsou k dispozici.
Vrácený chybový kód je v datech DWORD 0.

Error - 4.12.2009 8:28:23 | Computer Name = VLASTN-81FD8C78 | Source = PerfNet | ID = 2004
Description = Nelze otevřít službu serveru. Data o výkonu serveru nejsou k dispozici.
Vrácený chybový kód je v datech DWORD 0.

Error - 12.12.2009 9:17:08 | Computer Name = VLASTN-81FD8C78 | Source = crypt32 | ID = 131080
Description = Načtení automatické aktualizace pořadového čísla kořenového seznamu
jiného výrobce z: <http://www.download.windowsupdate.com/m ... ootseq.txt>
se nezdařilo. Chyba: The server name or address could not be resolved

Error - 15.12.2009 11:18:41 | Computer Name = VLASTN-81FD8C78 | Source = MsiInstaller | ID = 1013
Description = Produkt: Adobe Reader 9.2 - Czech -- Je spuštěný proces, který instalátor
nemůže ukončit. Buď ukončete všechny aplikace a spusťte instalátor znovu, nebo
restartujte počítač a spusťte instalátor znovu.

[ System Events ]
Error - 13.12.2009 2:21:48 | Computer Name = VLASTN-81FD8C78 | Source = Service Control Manager | ID = 7026
Description = Zavedení následujícího ovladače pro spouštění počítače nebo systému
se nezdařilo: StarOpen

Error - 14.12.2009 3:16:36 | Computer Name = VLASTN-81FD8C78 | Source = Service Control Manager | ID = 7026
Description = Zavedení následujícího ovladače pro spouštění počítače nebo systému
se nezdařilo: StarOpen

Error - 14.12.2009 16:01:50 | Computer Name = VLASTN-81FD8C78 | Source = Service Control Manager | ID = 7034
Description = Služba Ati HotKey Poller byla neočekávaně ukončena. Tento stav nastal
již 1krát.

Error - 14.12.2009 16:01:50 | Computer Name = VLASTN-81FD8C78 | Source = Service Control Manager | ID = 7034
Description = Služba COMODO Internet Security Helper Service byla neočekávaně ukončena.
Tento stav nastal již 1krát.

Error - 14.12.2009 16:01:50 | Computer Name = VLASTN-81FD8C78 | Source = Service Control Manager | ID = 7034
Description = Služba Java Quick Starter byla neočekávaně ukončena. Tento stav nastal
již 1krát.

Error - 14.12.2009 16:01:50 | Computer Name = VLASTN-81FD8C78 | Source = Service Control Manager | ID = 7034
Description = Služba PnkBstrA byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error - 14.12.2009 16:01:50 | Computer Name = VLASTN-81FD8C78 | Source = Service Control Manager | ID = 7034
Description = Služba PnkBstrB byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error - 14.12.2009 16:05:33 | Computer Name = VLASTN-81FD8C78 | Source = Service Control Manager | ID = 7026
Description = Zavedení následujícího ovladače pro spouštění počítače nebo systému
se nezdařilo: StarOpen

Error - 15.12.2009 10:44:48 | Computer Name = VLASTN-81FD8C78 | Source = Service Control Manager | ID = 7026
Description = Zavedení následujícího ovladače pro spouštění počítače nebo systému
se nezdařilo: StarOpen

Error - 15.12.2009 13:56:08 | Computer Name = VLASTN-81FD8C78 | Source = Service Control Manager | ID = 7026
Description = Zavedení následujícího ovladače pro spouštění počítače nebo systému
se nezdařilo: StarOpen


< End of report >

Re: zase ROOTKIT

Napsal: 15 pro 2009 19:44
od earl
Jeste poprosim o log OTL.txt