Stránka 1 z 2

RSIT Error: Variable used without being declared

Napsal: 29 kvě 2013 21:20
od mijel88
Zdravím,

RSIT mi nechce vytvorit log, pise pri spusteni hlasku Error: Variable used without being declared.

Prosím o radu

Díky
Michal

Re: RSIT Error: Variable used without being declared

Napsal: 29 kvě 2013 21:40
od Rudy
Také zdravím!
Zkuste, jestli půjde spustit MBAR:

Stáhněte Malwarebytes Anti-Rootkit http://www.malwarebytes.org/products/mbar/

Uložte nejlépe na Plochu a rozbalte
Spusťte kliknutím na mbar
Nyní postupně klikněte na Next a Update
Po dokončení update (aktualizace) databáze klikněte opět na Next
Nechte zaškrtnute všechny tři možnosti a kliněte na Scan čímž spustíte prohledavani PC
Po dokončeni skenu (cca 5 minutek) zkontrolujte, zda-li je u všech nalezů (samozrejme pokud budou) zatržítko
Tež zkontrolujte, jestli je zatržitko u Create Restore point
Nyní klikněte na CleanUp čímž nalezenou infekci odstraníme
PC bude restartován
Složka mbar by měla obsahovat log (a zřejmě se i sám otevře) mbar-log-rok-měsíc-den (hodina-minuta-sekunda).txt, ten mi sem dejte.

Re: RSIT Error: Variable used without being declared

Napsal: 29 kvě 2013 22:03
od mijel88
malware nebyl nalezen, tak posilam log

Malwarebytes Anti-Rootkit BETA 1.06.0.1003
www.malwarebytes.org

Database version: v2013.05.29.07

Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 10.0.9200.16576
Uživatel :: UŽIVATEL-PC [administrator]

29.5.2013 22:47:58
mbar-log-2013-05-29 (22-47-58).txt

Scan type: Quick scan
Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUM | P2P
Scan options disabled: Deep Anti-Rootkit Scan | PUP
Objects scanned: 221118
Time elapsed: 13 minute(s), 50 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

Physical Sectors Detected: 0
(No malicious items detected)

(end)

Re: RSIT Error: Variable used without being declared

Napsal: 30 kvě 2013 16:11
od Rudy
Zkuste spustit RSIT v nouz. režimu.

Re: RSIT Error: Variable used without being declared

Napsal: 30 kvě 2013 17:44
od mijel88
Při nouzovém režimu taky vyhodí stejnou chybovou hlášku, s RSIT jsem problém nikdy neměl.
Je ještě nějaká možnost řešení tohoto problému?

Díky moc
Michal

Re: RSIT Error: Variable used without being declared

Napsal: 30 kvě 2013 18:04
od Rudy
Dejte log ComboFix:
Stahnete a ulozte nejlepe na plochu ComboFix: http://download.bleepingcomputer.com/sUBs/ComboFix.exe

pote spustte aplikaci pod uctem s administratorskym opravnenim

hned po startu se zobrazi obrazovka s licencnimi podminkami, pokracujte kliknutim na tlacitko Ano.

v klidu si postavte na kafe (cela akce trva cca. 5-10 minut, nekdy i dele - dle toho, o jak rychly stroj se

jedna a kolika soubory se skener bude muset prodirat), behem skenu se nepokousejte spoustet zadne jine

aplikace ani nic jineho

behem skenovani nepropadejte panice, vas stroj muze byt restartovan (predevsim pri prvni aplikaci skeneru)

upozorneni: pokud pouzivate antispyware s rezidentnim stitem, prepnete jeho rezidentni stit do Install Mode,

pripadne jej po dobu skenu uplne deaktivujte, protoze dochazi pri skenu a vymazu pripadneho malware k

nezadoucim kolizim s rezidentem antispyware.

Re: RSIT Error: Variable used without being declared

Napsal: 30 kvě 2013 18:25
od mijel88
ComboFix 13-05-30.02 - Uživatel 30.05.2013 19:15:23.1.2 - x86
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.2999.1981 [GMT 2:00]
Spuštěný z: c:\users\U×ivatel\Desktop\ComboFix.exe
AV: Microsoft Security Essentials *Disabled/Updated* {3F839487-C7A2-C958-E30C-E2825BA31FB5}
SP: Microsoft Security Essentials *Disabled/Updated* {84E27563-E198-C6D6-D9BC-D9F020245508}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\ciointinuetosave
c:\programdata\ciointinuetosave\518df6fa9a5ae.dll
c:\programdata\ciointinuetosave\518df6fa9a5ae.tlb
c:\programdata\ciointinuetosave\data\ciointinuetosave.dat
c:\programdata\ciointinuetosave\settings.ini
c:\programdata\ciointinuetosave\uninstall.exe
c:\programdata\Microsoft\Windows\Start Menu\Programs\ciointinuetosave
c:\programdata\Microsoft\Windows\Start Menu\Programs\ciointinuetosave\ciointinuetosave.lnk
c:\programdata\Microsoft\Windows\Start Menu\Programs\ciointinuetosave\Uninstall.lnk
c:\programdata\Microsoft\Windows\Start Menu\Programs\SearchNewTab
c:\programdata\Microsoft\Windows\Start Menu\Programs\SearchNewTab\SearchNewTab.lnk
c:\programdata\Microsoft\Windows\Start Menu\Programs\SearchNewTab\Uninstall.lnk
c:\programdata\SearchNewTab
c:\programdata\SearchNewTab\518df71848e52.dll
c:\programdata\SearchNewTab\518df71848e52.tlb
c:\programdata\SearchNewTab\data\SearchNewTab.dat
c:\programdata\SearchNewTab\settings.ini
c:\programdata\SearchNewTab\uninstall.exe
c:\windows\system32\AF15BDAEX.dll
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-04-28 do 2013-05-30 )))))))))))))))))))))))))))))))
.
.
2013-05-30 17:23 . 2013-05-30 17:23 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-05-30 17:10 . 2013-05-30 17:10 29904 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{5FE9B054-F8D6-440E-8707-41DD78E3EC6E}\MpKsl18718abb.sys
2013-05-30 16:50 . 2013-05-13 06:19 7016152 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{5FE9B054-F8D6-440E-8707-41DD78E3EC6E}\mpengine.dll
2013-05-29 20:47 . 2013-05-30 04:42 -------- d-----w- c:\programdata\Malwarebytes' Anti-Malware (portable)
2013-05-29 16:36 . 2013-05-13 06:19 7016152 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2013-05-27 17:03 . 2013-05-27 17:03 -------- d-----w- c:\users\Uživatel\AppData\Roaming\Telefónica Móviles
2013-05-27 17:01 . 2009-12-15 12:05 198656 ----a-w- c:\windows\system32\drivers\ewusbnet.sys
2013-05-27 17:01 . 2009-12-15 12:05 102912 ----a-w- c:\windows\system32\drivers\ewusbmdm.sys
2013-05-27 17:01 . 2009-12-15 12:05 23424 ----a-w- c:\windows\system32\drivers\ewdcsc.sys
2013-05-27 17:01 . 2009-12-15 12:05 101120 ----a-w- c:\windows\system32\drivers\ewusbdev.sys
2013-05-27 17:01 . 2013-05-27 17:01 -------- d-----w- c:\program files\O2
2013-05-21 22:23 . 2013-05-21 22:23 724464 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{3F8E0302-859A-4B03-9DC6-BFC273F60FCE}\gapaengine.dll
2013-05-15 06:31 . 2013-03-19 04:53 186368 ----a-w- c:\windows\system32\wwansvc.dll
2013-05-15 06:31 . 2013-03-19 03:33 40960 ----a-w- c:\windows\system32\wwanprotdim.dll
2013-05-15 06:31 . 2013-04-10 03:14 2347520 ----a-w- c:\windows\system32\win32k.sys
2013-05-15 06:31 . 2013-04-10 05:18 728424 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2013-05-15 06:31 . 2013-04-10 05:18 218984 ----a-w- c:\windows\system32\drivers\dxgmms1.sys
2013-05-15 06:31 . 2013-02-27 05:05 101720 ----a-w- c:\windows\system32\consent.exe
2013-05-15 06:31 . 2013-02-27 04:49 1796096 ----a-w- c:\windows\system32\authui.dll
2013-05-15 06:31 . 2013-02-27 04:49 47104 ----a-w- c:\windows\system32\appinfo.dll
2013-05-11 07:03 . 2013-05-11 07:03 -------- d-----w- c:\programdata\StarApp
2013-05-11 06:59 . 2013-05-11 07:03 -------- d-----w- c:\programdata\InstallMate
2013-05-10 18:03 . 2013-05-10 18:03 -------- d-----w- c:\users\Uživatel\AppData\Local\Facebook
2013-05-10 07:57 . 2013-05-10 07:57 187456 ----a-w- c:\program files\Internet Explorer\Plugins\nppdf32.dll
2013-05-03 07:50 . 2013-05-03 07:52 -------- d-----w- c:\users\Uživatel\AppData\Local\NFS Underground 2
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-05-15 14:51 . 2012-04-13 06:15 692104 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-05-15 14:51 . 2011-12-22 20:15 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-05-10 05:51 . 2011-03-28 16:36 22240 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2013-05-02 15:28 . 2010-11-11 18:24 238872 ------w- c:\windows\system32\MpSigStub.exe
2013-04-30 06:04 . 2013-04-30 06:04 745472 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2013-04-30 06:04 . 2013-04-30 06:04 185344 ----a-w- c:\windows\system32\elshyph.dll
2013-04-30 06:04 . 2013-04-30 06:04 158720 ----a-w- c:\windows\system32\msls31.dll
2013-04-30 06:04 . 2013-04-30 06:04 523264 ----a-w- c:\windows\system32\vbscript.dll
2013-04-30 06:04 . 2013-04-30 06:04 38400 ----a-w- c:\windows\system32\imgutil.dll
2013-04-30 06:04 . 2013-04-30 06:04 150528 ----a-w- c:\windows\system32\iexpress.exe
2013-04-30 06:04 . 2013-04-30 06:04 138752 ----a-w- c:\windows\system32\wextract.exe
2013-04-30 06:04 . 2013-04-30 06:04 137216 ----a-w- c:\windows\system32\ieUnatt.exe
2013-04-30 06:04 . 2013-04-30 06:04 12800 ----a-w- c:\windows\system32\mshta.exe
2013-04-30 06:04 . 2013-04-30 06:04 110592 ----a-w- c:\windows\system32\IEAdvpack.dll
2013-04-30 06:04 . 2013-04-30 06:04 73728 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2013-04-30 06:04 . 2013-04-30 06:04 61952 ----a-w- c:\windows\system32\tdc.ocx
2013-04-30 06:04 . 2013-04-30 06:04 48640 ----a-w- c:\windows\system32\mshtmler.dll
2013-04-30 06:04 . 2013-04-30 06:04 361984 ----a-w- c:\windows\system32\html.iec
2013-04-30 06:04 . 2013-04-30 06:04 719360 ----a-w- c:\windows\system32\mshtmlmedia.dll
2013-04-30 06:04 . 2013-04-30 06:04 23040 ----a-w- c:\windows\system32\licmgr10.dll
2013-04-30 06:04 . 2013-04-30 06:04 1441280 ----a-w- c:\windows\system32\inetcpl.cpl
2013-04-24 19:26 . 2011-03-25 17:32 706640 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\NISBackup\gapaengine.dll
2013-04-13 04:45 . 2013-05-15 06:31 474624 ----a-w- c:\windows\apppatch\AcSpecfc.dll
2013-04-13 04:45 . 2013-05-15 06:31 2176512 ----a-w- c:\windows\apppatch\AcGenral.dll
2013-04-12 13:45 . 2013-04-24 19:22 1211752 ----a-w- c:\windows\system32\drivers\ntfs.sys
2013-04-01 09:03 . 2013-04-14 21:10 727952 ----a-w- c:\windows\system32\WSCM64.dll
2013-04-01 09:03 . 2013-04-14 21:10 153088 ----a-w- c:\windows\system32\WSCM32.dll
2013-03-19 05:04 . 2013-04-10 06:04 3968856 ----a-w- c:\windows\system32\ntkrnlpa.exe
2013-03-19 05:04 . 2013-04-10 06:04 3913560 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-03-19 04:48 . 2013-04-10 06:04 38912 ----a-w- c:\windows\system32\csrsrv.dll
2013-03-19 02:49 . 2013-04-10 06:04 69632 ----a-w- c:\windows\system32\smss.exe
2013-03-17 13:50 . 2013-03-17 13:50 94112 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2013-03-17 13:50 . 2012-06-16 16:03 861088 ----a-w- c:\windows\system32\npDeployJava1.dll
2013-03-17 13:50 . 2010-12-25 21:43 782240 ----a-w- c:\windows\system32\deployJava1.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Center Agent"="c:\program files\Genius Multimedia\HyperMediaCenter\DTVR\Scheduled.exe" [2008-11-07 1520128]
"Facebook Update"="c:\users\Uživatel\AppData\Local\Facebook\Update\FacebookUpdate.exe" [2013-05-10 138096]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ETDWare"="c:\program files\Elantech\ETDCtrl.exe" [2010-06-24 1822600]
"SmartAudio"="c:\program files\CONEXANT\SAII\SAIICpl.exe" [2010-04-28 307768]
"cAudioFilterAgent"="c:\program files\Conexant\cAudioFilterAgent\cAudioFilterAgent.exe" [2010-03-22 496184]
"Mouse Suite 98 Daemon"="ICO.EXE" [2004-07-14 57344]
"Easy-PrintToolBox"="c:\program files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE" [2004-01-14 409600]
"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2012-02-20 59240]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2011-10-21 142616]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2011-10-21 177432]
"Persistence"="c:\windows\system32\igfxpers.exe" [2011-10-21 176408]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2013-01-27 947152]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2012-03-27 421736]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2012-04-18 421888]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-04-04 958576]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2012-07-03 252848]
.
c:\users\Uživatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - c:\program files\Microsoft Office\Office12\ONENOTEM.EXE [2009-2-26 97680]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
[HKLM\~\startupfolder\C:^Users^Uživatel^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Remote Control.lnk]
path=c:\users\Uživatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Remote Control.lnk
backup=c:\windows\pss\Remote Control.lnk.Startup
backupExtension=.Startup
.
R2 PanService;PandoraService;c:\program files\PANDORA.TV\PanService\PandoraService.exe [x]
R3 ggflt;SEMC USB Flash Driver Filter;c:\windows\system32\DRIVERS\ggflt.sys [x]
R3 Huawei;HUAWEI Mobile Connect - USB Smart Card Reader;c:\windows\system32\DRIVERS\ewdcsc.sys [x]
R3 hwusbdev;Huawei DataCard USB PNP Device;c:\windows\system32\DRIVERS\ewusbdev.sys [x]
R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [x]
R3 NisSrv;Kontrola sítě Microsoft;c:\program files\Microsoft Security Client\NisSrv.exe [x]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys [x]
R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [x]
R3 s0017bus;Sony Ericsson Device 0017 driver (WDM);c:\windows\system32\DRIVERS\s0017bus.sys [x]
R3 s0017mdfl;Sony Ericsson Device 0017 USB WMC Modem Filter;c:\windows\system32\DRIVERS\s0017mdfl.sys [x]
R3 s0017mdm;Sony Ericsson Device 0017 USB WMC Modem Driver;c:\windows\system32\DRIVERS\s0017mdm.sys [x]
R3 s0017mgmt;Sony Ericsson Device 0017 USB WMC Device Management Drivers (WDM);c:\windows\system32\DRIVERS\s0017mgmt.sys [x]
R3 s0017nd5;Sony Ericsson Device 0017 USB Ethernet Emulation SEMC0017 (NDIS);c:\windows\system32\DRIVERS\s0017nd5.sys [x]
R3 s0017obex;Sony Ericsson Device 0017 USB WMC OBEX Interface;c:\windows\system32\DRIVERS\s0017obex.sys [x]
R3 s0017unic;Sony Ericsson Device 0017 USB Ethernet Emulation SEMC0017 (WDM);c:\windows\system32\DRIVERS\s0017unic.sys [x]
R3 Sony PC Companion;Sony PC Companion;c:\program files\Sony\Sony PC Companion\PCCService.exe [x]
R3 SynasUSB;SynasUSB;c:\windows\system32\drivers\SynasUSB.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S1 MpKsl18718abb;MpKsl18718abb;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{5FE9B054-F8D6-440E-8707-41DD78E3EC6E}\MpKsl18718abb.sys [x]
S3 ACPIVPC;Lenovo Virtual Power Controller Driver;c:\windows\system32\DRIVERS\AcpiVpc.sys [x]
S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys [x]
S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [x]
S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys [x]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - MPKSL18718ABB
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ SSDPSRV upnphost SCardSvr TBS fdrespub AppIDSvc QWAVE wcncsvc Mcx2Svc SensrSvc
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - LocalService
FontCache
.
.
Obsah adresáře 'Naplánované úlohy'
.
2013-05-30 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-13 14:51]
.
2013-05-30 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2011-06-17 13:42]
.
2013-05-30 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2011-06-17 13:42]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://websearch.lookforithere.info/?pid=945&r=2013/05/11&hid=2271767507&lg=EN&cc=CZ&unqvl=14
mStart Page = hxxp://websearch.lookforithere.info/?pid=945&r=2013/05/11&hid=2271767507&lg=EN&cc=CZ&unqvl=14
uInternet Settings,ProxyOverride = *.local
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: {{7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - c:\program files\ICQ7.5\ICQ.exe
TCP: DhcpNameServer = 192.168.1.1
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
BHO-{A83BD31E-206A-0C87-9FE4-A65DB3B58A39} - c:\programdata\SearchNewTab\518df71848e52.dll
BHO-{F6448EA3-4981-01D2-5EAA-B2B1A28AD0D9} - c:\programdata\ciointinuetosave\518df6fa9a5ae.dll
AddRemove-{C1C6816E-CBB3-A748-85F9-A8B47B68985B} - c:\programdata\ciointinuetosave\uninstall.exe
AddRemove-{C670DCAE-E392-AA32-6F42-143C7FC4BDFD} - c:\programdata\SearchNewTab\uninstall.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0005\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0006\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2013-05-30 19:24:51
ComboFix-quarantined-files.txt 2013-05-30 17:24
.
Před spuštěním: Volných bajtů: 27 444 637 696
Po spuštění: Volných bajtů: 27 200 708 608
.
- - End Of File - - 8AE42BE8A4E54522D1C611A807A2C00E

Re: RSIT Error: Variable used without being declared

Napsal: 30 kvě 2013 19:15
od Rudy
Ještě dočistíme. Přesuňte ComboFix na kořenový adresář c:\. Otevřte poznámkový blok a zkopírujte do něj:
KillAll::

Folder::
c:\users\Uživatel\AppData\Local\Facebook\Update

File::
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job

Registry::
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Facebook Update"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=-

RegLock::
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0005\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0006\AllUserSettings]

Reboot::
Uložte rovněž na kořenový adresář c:\ jako CFScript.txt. Pak jej myší v průzkumníku windows (nebo v jiném souborovém manažeru) přetáhněte nad ikonu ComboFix a pusťte. CF se spustí a vykoná příkazy ze skriptu.

Re: RSIT Error: Variable used without being declared

Napsal: 30 kvě 2013 19:38
od mijel88
Provedeno, ale na disku c zůstalo plno složek, co asi combofix vytvoril.

Re: RSIT Error: Variable used without being declared

Napsal: 30 kvě 2013 19:40
od Rudy
Dejte ještě log z posledního skenu. Najdete ho v c:\combofix.txt. Pak vám poradím, jak CF odinstalovat.

Re: RSIT Error: Variable used without being declared

Napsal: 30 kvě 2013 20:09
od mijel88
ComboFix 13-05-30.02 - Uživatel 30.05.2013 20:54:54.3.2 - x86
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.2999.1946 [GMT 2:00]
Spuštěný z: C:\ComboFix.exe
Použité ovládací přepínače :: C:\CFScript.txt.txt
AV: Microsoft Security Essentials *Disabled/Updated* {3F839487-C7A2-C958-E30C-E2825BA31FB5}
SP: Microsoft Security Essentials *Disabled/Updated* {84E27563-E198-C6D6-D9BC-D9F020245508}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
FILE ::
"c:\windows\Tasks\GoogleUpdateTaskMachineCore.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA.job"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\iun6002.exe
c:\windows\pkunzip.pif
c:\windows\pkzip.pif
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
.
Nakažená kopie c:\windows\system32\userinit.exe byla nalezena a vyléčena.
Obnovena kopie z - c:\windows\erdnt\cache\userinit.exe
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-04-28 do 2013-05-30 )))))))))))))))))))))))))))))))
.
.
2013-05-30 19:01 . 2013-05-30 19:03 -------- d-----w- c:\users\Uživatel\AppData\Local\temp
2013-05-30 19:01 . 2013-05-30 19:01 -------- d-----w- c:\users\U§ivatel\AppData\Local\temp
2013-05-30 19:01 . 2013-05-30 19:01 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-05-30 17:27 . 2013-05-13 06:19 7016152 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{2D134270-88E2-48A3-8024-F1D3B9C6B39C}\mpengine.dll
2013-05-29 20:47 . 2013-05-30 04:42 -------- d-----w- c:\programdata\Malwarebytes' Anti-Malware (portable)
2013-05-29 16:36 . 2013-05-13 06:19 7016152 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2013-05-27 17:03 . 2013-05-27 17:03 -------- d-----w- c:\users\Uživatel\AppData\Roaming\Telefónica Móviles
2013-05-27 17:01 . 2009-12-15 12:05 198656 ----a-w- c:\windows\system32\drivers\ewusbnet.sys
2013-05-27 17:01 . 2009-12-15 12:05 102912 ----a-w- c:\windows\system32\drivers\ewusbmdm.sys
2013-05-27 17:01 . 2009-12-15 12:05 23424 ----a-w- c:\windows\system32\drivers\ewdcsc.sys
2013-05-27 17:01 . 2009-12-15 12:05 101120 ----a-w- c:\windows\system32\drivers\ewusbdev.sys
2013-05-27 17:01 . 2013-05-27 17:01 -------- d-----w- c:\program files\O2
2013-05-21 22:23 . 2013-05-21 22:23 724464 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{3F8E0302-859A-4B03-9DC6-BFC273F60FCE}\gapaengine.dll
2013-05-15 06:31 . 2013-03-19 04:53 186368 ----a-w- c:\windows\system32\wwansvc.dll
2013-05-15 06:31 . 2013-03-19 03:33 40960 ----a-w- c:\windows\system32\wwanprotdim.dll
2013-05-15 06:31 . 2013-04-10 03:14 2347520 ----a-w- c:\windows\system32\win32k.sys
2013-05-15 06:31 . 2013-04-10 05:18 728424 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2013-05-15 06:31 . 2013-04-10 05:18 218984 ----a-w- c:\windows\system32\drivers\dxgmms1.sys
2013-05-15 06:31 . 2013-02-27 05:05 101720 ----a-w- c:\windows\system32\consent.exe
2013-05-15 06:31 . 2013-02-27 04:49 1796096 ----a-w- c:\windows\system32\authui.dll
2013-05-15 06:31 . 2013-02-27 04:49 47104 ----a-w- c:\windows\system32\appinfo.dll
2013-05-11 07:03 . 2013-05-11 07:03 -------- d-----w- c:\programdata\StarApp
2013-05-11 06:59 . 2013-05-11 07:03 -------- d-----w- c:\programdata\InstallMate
2013-05-10 18:03 . 2013-05-10 18:03 -------- d-----w- c:\users\Uživatel\AppData\Local\Facebook
2013-05-10 07:57 . 2013-05-10 07:57 187456 ----a-w- c:\program files\Internet Explorer\Plugins\nppdf32.dll
2013-05-03 07:50 . 2013-05-03 07:52 -------- d-----w- c:\users\Uživatel\AppData\Local\NFS Underground 2
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-05-15 14:51 . 2012-04-13 06:15 692104 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-05-15 14:51 . 2011-12-22 20:15 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-05-10 05:51 . 2011-03-28 16:36 22240 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2013-05-02 15:28 . 2010-11-11 18:24 238872 ------w- c:\windows\system32\MpSigStub.exe
2013-04-30 06:04 . 2013-04-30 06:04 745472 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2013-04-30 06:04 . 2013-04-30 06:04 185344 ----a-w- c:\windows\system32\elshyph.dll
2013-04-30 06:04 . 2013-04-30 06:04 158720 ----a-w- c:\windows\system32\msls31.dll
2013-04-30 06:04 . 2013-04-30 06:04 523264 ----a-w- c:\windows\system32\vbscript.dll
2013-04-30 06:04 . 2013-04-30 06:04 38400 ----a-w- c:\windows\system32\imgutil.dll
2013-04-30 06:04 . 2013-04-30 06:04 150528 ----a-w- c:\windows\system32\iexpress.exe
2013-04-30 06:04 . 2013-04-30 06:04 138752 ----a-w- c:\windows\system32\wextract.exe
2013-04-30 06:04 . 2013-04-30 06:04 137216 ----a-w- c:\windows\system32\ieUnatt.exe
2013-04-30 06:04 . 2013-04-30 06:04 12800 ----a-w- c:\windows\system32\mshta.exe
2013-04-30 06:04 . 2013-04-30 06:04 110592 ----a-w- c:\windows\system32\IEAdvpack.dll
2013-04-30 06:04 . 2013-04-30 06:04 73728 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2013-04-30 06:04 . 2013-04-30 06:04 61952 ----a-w- c:\windows\system32\tdc.ocx
2013-04-30 06:04 . 2013-04-30 06:04 48640 ----a-w- c:\windows\system32\mshtmler.dll
2013-04-30 06:04 . 2013-04-30 06:04 361984 ----a-w- c:\windows\system32\html.iec
2013-04-30 06:04 . 2013-04-30 06:04 719360 ----a-w- c:\windows\system32\mshtmlmedia.dll
2013-04-30 06:04 . 2013-04-30 06:04 23040 ----a-w- c:\windows\system32\licmgr10.dll
2013-04-30 06:04 . 2013-04-30 06:04 1441280 ----a-w- c:\windows\system32\inetcpl.cpl
2013-04-24 19:26 . 2011-03-25 17:32 706640 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\NISBackup\gapaengine.dll
2013-04-13 04:45 . 2013-05-15 06:31 474624 ----a-w- c:\windows\apppatch\AcSpecfc.dll
2013-04-13 04:45 . 2013-05-15 06:31 2176512 ----a-w- c:\windows\apppatch\AcGenral.dll
2013-04-12 13:45 . 2013-04-24 19:22 1211752 ----a-w- c:\windows\system32\drivers\ntfs.sys
2013-04-01 09:03 . 2013-04-14 21:10 727952 ----a-w- c:\windows\system32\WSCM64.dll
2013-04-01 09:03 . 2013-04-14 21:10 153088 ----a-w- c:\windows\system32\WSCM32.dll
2013-03-19 05:04 . 2013-04-10 06:04 3968856 ----a-w- c:\windows\system32\ntkrnlpa.exe
2013-03-19 05:04 . 2013-04-10 06:04 3913560 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-03-19 04:48 . 2013-04-10 06:04 38912 ----a-w- c:\windows\system32\csrsrv.dll
2013-03-19 02:49 . 2013-04-10 06:04 69632 ----a-w- c:\windows\system32\smss.exe
2013-03-17 13:50 . 2013-03-17 13:50 94112 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2013-03-17 13:50 . 2012-06-16 16:03 861088 ----a-w- c:\windows\system32\npDeployJava1.dll
2013-03-17 13:50 . 2010-12-25 21:43 782240 ----a-w- c:\windows\system32\deployJava1.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Center Agent"="c:\program files\Genius Multimedia\HyperMediaCenter\DTVR\Scheduled.exe" [2008-11-07 1520128]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ETDWare"="c:\program files\Elantech\ETDCtrl.exe" [2010-06-24 1822600]
"SmartAudio"="c:\program files\CONEXANT\SAII\SAIICpl.exe" [2010-04-28 307768]
"cAudioFilterAgent"="c:\program files\Conexant\cAudioFilterAgent\cAudioFilterAgent.exe" [2010-03-22 496184]
"Mouse Suite 98 Daemon"="ICO.EXE" [2004-07-14 57344]
"Easy-PrintToolBox"="c:\program files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE" [2004-01-14 409600]
"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2012-02-20 59240]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2011-10-21 142616]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2011-10-21 177432]
"Persistence"="c:\windows\system32\igfxpers.exe" [2011-10-21 176408]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2013-01-27 947152]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2012-03-27 421736]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2012-04-18 421888]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-04-04 958576]
.
c:\users\Uživatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - c:\program files\Microsoft Office\Office12\ONENOTEM.EXE [2009-2-26 97680]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
[HKLM\~\startupfolder\C:^Users^Uživatel^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Remote Control.lnk]
path=c:\users\Uživatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Remote Control.lnk
backup=c:\windows\pss\Remote Control.lnk.Startup
backupExtension=.Startup
.
R2 PanService;PandoraService;c:\program files\PANDORA.TV\PanService\PandoraService.exe [x]
R3 ggflt;SEMC USB Flash Driver Filter;c:\windows\system32\DRIVERS\ggflt.sys [x]
R3 Huawei;HUAWEI Mobile Connect - USB Smart Card Reader;c:\windows\system32\DRIVERS\ewdcsc.sys [x]
R3 hwusbdev;Huawei DataCard USB PNP Device;c:\windows\system32\DRIVERS\ewusbdev.sys [x]
R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [x]
R3 NisSrv;Kontrola sítě Microsoft;c:\program files\Microsoft Security Client\NisSrv.exe [x]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys [x]
R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [x]
R3 s0017bus;Sony Ericsson Device 0017 driver (WDM);c:\windows\system32\DRIVERS\s0017bus.sys [x]
R3 s0017mdfl;Sony Ericsson Device 0017 USB WMC Modem Filter;c:\windows\system32\DRIVERS\s0017mdfl.sys [x]
R3 s0017mdm;Sony Ericsson Device 0017 USB WMC Modem Driver;c:\windows\system32\DRIVERS\s0017mdm.sys [x]
R3 s0017mgmt;Sony Ericsson Device 0017 USB WMC Device Management Drivers (WDM);c:\windows\system32\DRIVERS\s0017mgmt.sys [x]
R3 s0017nd5;Sony Ericsson Device 0017 USB Ethernet Emulation SEMC0017 (NDIS);c:\windows\system32\DRIVERS\s0017nd5.sys [x]
R3 s0017obex;Sony Ericsson Device 0017 USB WMC OBEX Interface;c:\windows\system32\DRIVERS\s0017obex.sys [x]
R3 s0017unic;Sony Ericsson Device 0017 USB Ethernet Emulation SEMC0017 (WDM);c:\windows\system32\DRIVERS\s0017unic.sys [x]
R3 Sony PC Companion;Sony PC Companion;c:\program files\Sony\Sony PC Companion\PCCService.exe [x]
R3 SynasUSB;SynasUSB;c:\windows\system32\drivers\SynasUSB.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S3 ACPIVPC;Lenovo Virtual Power Controller Driver;c:\windows\system32\DRIVERS\AcpiVpc.sys [x]
S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys [x]
S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [x]
S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ SSDPSRV upnphost SCardSvr TBS fdrespub AppIDSvc QWAVE wcncsvc Mcx2Svc SensrSvc
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - LocalService
FontCache
.
.
Obsah adresáře 'Naplánované úlohy'
.
2013-05-30 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-13 14:51]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://websearch.lookforithere.info/?pid=945&r=2013/05/11&hid=2271767507&lg=EN&cc=CZ&unqvl=14
mStart Page = hxxp://websearch.lookforithere.info/?pid=945&r=2013/05/11&hid=2271767507&lg=EN&cc=CZ&unqvl=14
uInternet Settings,ProxyOverride = *.local
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: {{7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - c:\program files\ICQ7.5\ICQ.exe
TCP: DhcpNameServer = 192.168.1.1
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\Microsoft Security Client\MsMpEng.exe
c:\windows\system32\WLANExt.exe
c:\windows\system32\conhost.exe
c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe
c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
c:\windows\system32\taskhost.exe
c:\program files\Google\Update\GoogleUpdate.exe
c:\windows\system32\conhost.exe
c:\windows\System32\ico.exe
c:\program files\Conexant\SAII\SmartAudio.exe
c:\program files\iPod\bin\iPodService.exe
c:\program files\Windows Media Player\wmpnetwk.exe
c:\windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
c:\windows\system32\DllHost.exe
c:\windows\system32\sppsvc.exe
c:\windows\system32\taskhost.exe
.
**************************************************************************
.
Celkový čas: 2013-05-30 21:07:22 - počítač byl restartován
ComboFix-quarantined-files.txt 2013-05-30 19:07
ComboFix2.txt 2013-05-30 18:35
ComboFix3.txt 2013-05-30 17:24
.
Před spuštěním: Volných bajtů: 27 183 665 152
Po spuštění: Volných bajtů: 27 134 504 960
.
- - End Of File - - F9B2AB96F07344532D814EB8997F0251

Re: RSIT Error: Variable used without being declared

Napsal: 30 kvě 2013 20:30
od Rudy
Log je již OK. CF odinstalujte pomocí T-Cleaneru: http://vyosek.ic.cz/pro_usery/T-Cleaner.exe .

Re: RSIT Error: Variable used without being declared

Napsal: 30 kvě 2013 20:38
od mijel88
Mockrát děkuji, je to již vše?

Re: RSIT Error: Variable used without being declared

Napsal: 30 kvě 2013 20:56
od Rudy
Pokud systém normálně funguje, pak ano.

Re: RSIT Error: Variable used without being declared

Napsal: 30 kvě 2013 21:06
od mijel88
Zkusil jsem ze zvědavosti RSIT a stále píše chybu, ale jinak je vše OK.