Stránka 1 z 1

Nelze vypnout počítač

Napsal: 15 lis 2015 12:36
od John Hoof
Ahoj,

prosím o radu. Pokud chci počítač vypnout přes nabídku start, počítač ukončuje postupně všechny programi, zmizí ikony z plochy, takže se vypne i explorer.exe, předpokládám, ale dál se nestane nic. Pokud ale počítač vypnu přes čudlík (a to ho nemusím ani držet a natvrdo vypnout, stačí jen jednou zmáčknout), vše funguje v pořádku.

Za chvíli přidám log z FRST, RSIT mi nefunguje.

Re: Nelze vypnout počítač

Napsal: 15 lis 2015 12:39
od John Hoof
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:07-11-2015
Ran by Kopejtice (administrator) on HANKA (15-11-2015 12:37:34)
Running from C:\Documents and Settings\Kopejtice\Plocha
Loaded Profiles: Kopejtice (Available Profiles: Kopejtice & Administrator)
Platform: Microsoft Windows XP Service Pack 3 (X86) Language: Čeština
Internet Explorer Version 8 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Intel Corporation) C:\WINDOWS\system32\igfxtray.exe
(Analog Devices, Inc.) C:\Program Files\Analog Devices\SoundMAX\SMTray.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\avastui.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.bin
(Analog Devices, Inc.) C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
(forum.viry.cz) C:\Documents and Settings\Kopejtice\Plocha\FRSTLauncher.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [igfxhkcmd] => C:\WINDOWS\system32\hkcmd.exe [77824 2005-09-20] (Intel Corporation)
HKLM\...\Run: [igfxpers] => C:\WINDOWS\system32\igfxpers.exe [114688 2005-09-20] (Intel Corporation)
HKLM\...\Run: [Smapp] => C:\Program Files\Analog Devices\SoundMAX\SMTray.exe [143360 2003-07-30] (Analog Devices, Inc.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5515496 2015-05-11] (Avast Software s.r.o.)
HKU\S-1-5-21-1934121800-541894680-2237922073-1006\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [6490904 2015-08-20] (Piriform Ltd)
HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> (None)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2015-04-22] (Avast Software s.r.o.)
Startup: C:\Documents and Settings\Administrator\Nabídka Start\Programy\Po spuštění\OpenOffice.org 3.3.lnk [2013-07-24]
ShortcutTarget: OpenOffice.org 3.3.lnk -> C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()
Startup: C:\Documents and Settings\Kopejtice\Nabídka Start\Programy\Po spuštění\OpenOffice.org 3.3.lnk [2013-07-24]
ShortcutTarget: OpenOffice.org 3.3.lnk -> C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()
Startup: C:\Documents and Settings\Kopejtice\Nabídka Start\Programy\Po spuštění\Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk [2014-12-14]
ShortcutTarget: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk -> C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{9B90BE78-772D-43FA-932A-EB579AFF3CE7}: [DhcpNameServer] 10.0.0.138

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.seznam.cz/?clid=22668
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKU\S-1-5-21-1934121800-541894680-2237922073-1006\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}
HKU\S-1-5-21-1934121800-541894680-2237922073-1006\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.seznam.cz/?clid=22668
HKU\S-1-5-21-1934121800-541894680-2237922073-1006\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxps://www.seznam.cz/?clid=22668
SearchScopes: HKLM -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1934121800-541894680-2237922073-1006 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}
BHO: No Name -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> No File
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-04-22] (Avast Software s.r.o.)
BHO: No Name -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> No File
DPF: {17492023-C23A-453E-A040-C7C580BBF700} hxxp://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} hxxp://windowsupdate.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1331139284062

FireFox:
========
FF ProfilePath: C:\Documents and Settings\Kopejtice\Data aplikací\Mozilla\Firefox\Profiles\4z96sqkf.default
FF DefaultSearchEngine: Google (avast)
FF DefaultSearchUrl: hxxps://www.google.com/search/?trackid=sp-006
FF SearchEngineOrder.1: Google (avast)
FF SelectedSearchEngine: Google (avast)
FF Homepage: hxxps://www.google.com
FF Keyword.URL: hxxps://www.google.com/search/?trackid=sp-006
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_18_0_0_232.dll [2015-08-12] ()
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin: @java.com/DTPlugin,version=10.71.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-09-26] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.71.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2014-09-26] (Oracle Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-17] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-17] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-08-05] (Adobe Systems Inc.)
FF SearchPlugin: C:\Documents and Settings\Kopejtice\Data aplikací\Mozilla\Firefox\Profiles\4z96sqkf.default\searchplugins\google-avast.xml [2015-06-10]
FF SearchPlugin: C:\Documents and Settings\Kopejtice\Data aplikací\Mozilla\Firefox\Profiles\4z96sqkf.default\searchplugins\seznam-avast.xml [2015-01-03]
FF Extension: FEBE - C:\Documents and Settings\Kopejtice\Data aplikací\Mozilla\Firefox\Profiles\4z96sqkf.default\Extensions\{4BBDD651-70CF-4821-84F8-2B918CF89CA3} [2015-05-30]
FF Extension: Plná Peněženka Lištička - C:\Documents and Settings\Kopejtice\Data aplikací\Mozilla\Firefox\Profiles\4z96sqkf.default\Extensions\toolbar@plnapenezenka.cz.xpi [2015-01-02] [not signed]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2015-05-08] [not signed]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-04-22] [not signed]
FF Extension: No Name - C:\Documents and Settings\Kopejtice\Data aplikacĂ­\Mozilla\Firefox\Profiles\4z96sqkf.default\extensions\{4BBDD651-70CF-4821-84F8-2B918CF89CA3} [not found]

Chrome:
=======
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Profile: C:\Documents and Settings\Kopejtice\Local Settings\Data aplikací\Google\Chrome\User Data\Default
CHR Extension: (Dokumenty Google) - C:\Documents and Settings\Kopejtice\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-06-28]
CHR Extension: (Disk Google) - C:\Documents and Settings\Kopejtice\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-04-23]
CHR Extension: (YouTube) - C:\Documents and Settings\Kopejtice\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-04-21]
CHR Extension: (Vyhledávání Google) - C:\Documents and Settings\Kopejtice\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-04-21]
CHR Extension: (Avast Online Security) - C:\Documents and Settings\Kopejtice\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-11-08]
CHR Extension: (Peněženka Google) - C:\Documents and Settings\Kopejtice\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-04-21]
CHR Extension: (Gmail) - C:\Documents and Settings\Kopejtice\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-04-23]
CHR HKLM\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx [2015-04-22]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-04-22]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-04-22] (Avast Software s.r.o.)
R2 SoundMAX Agent Service (default); C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe [45056 2002-09-20] (Analog Devices, Inc.) [File not signed]

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 aeaudio; C:\WINDOWS\System32\drivers\aeaudio.sys [100384 2003-10-23] (Andrea Electronics Corporation) [File not signed]
R2 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [24144 2015-04-22] ()
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [74976 2015-04-22] (Avast Software s.r.o.)
R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [55200 2015-04-22] (Avast Software s.r.o.)
R0 aswRvrt; C:\WINDOWS\system32\Drivers\aswRvrt.sys [49904 2015-04-22] ()
R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [787760 2015-04-22] (Avast Software s.r.o.)
R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [428120 2015-06-26] (Avast Software s.r.o.)
R1 aswTdi; C:\WINDOWS\system32\drivers\aswTdi.sys [57888 2015-04-22] (Avast Software s.r.o.)
R0 aswVmm; C:\WINDOWS\system32\Drivers\aswVmm.sys [209048 2015-04-22] ()
S3 Blfp; C:\WINDOWS\System32\DRIVERS\baspxp32.sys [98816 2008-06-06] (Broadcom Corporation)
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-14] (Microsoft Corporation)
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-14] (Microsoft Corporation)
R3 smwdm; C:\WINDOWS\System32\drivers\smwdm.sys [612416 2004-04-15] (Analog Devices, Inc.) [File not signed]
U1 WS2IFSL; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-11-15 12:37 - 2015-11-15 12:37 - 00012761 _____ C:\Documents and Settings\Kopejtice\Plocha\FRST.txt
2015-11-15 12:37 - 2015-11-15 12:37 - 00000000 ____D C:\FRST
2015-11-15 12:36 - 2015-11-15 12:36 - 00112640 _____ (forum.viry.cz) C:\Documents and Settings\Kopejtice\Plocha\FRSTLauncher.exe
2015-11-15 12:35 - 2015-11-15 12:36 - 01702400 _____ (Farbar) C:\Documents and Settings\Kopejtice\Plocha\FRST.exe
2015-11-15 12:30 - 2015-11-15 12:30 - 00000000 ____D C:\rsit
2015-11-15 12:29 - 2015-11-15 12:29 - 01107968 _____ C:\Documents and Settings\Kopejtice\Plocha\RSIT.exe
2015-11-07 18:24 - 2015-11-07 18:25 - 00000000 ____D C:\Program Files\Mozilla Firefox
2015-10-31 11:34 - 2015-10-31 11:39 - 00011615 _____ C:\Documents and Settings\Kopejtice\Plocha\MÉ TĚLO .odt

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-11-15 12:37 - 2013-07-24 13:22 - 00000000 ___HD C:\Documents and Settings\Kopejtice\Local Settings\Data aplikací
2015-11-15 12:37 - 2013-07-24 13:22 - 00000000 ____D C:\Documents and Settings\Kopejtice\Plocha
2015-11-15 12:37 - 2013-07-24 13:22 - 00000000 ____D C:\Documents and Settings\Kopejtice\Local Settings\Temp
2015-11-15 12:36 - 2013-12-01 20:22 - 00000000 ____D C:\Documents and Settings\Kopejtice\Dokumenty\Stažené soubory
2015-11-15 12:25 - 2015-10-10 17:16 - 00589107 _____ C:\WINDOWS\WindowsUpdate.log
2015-11-15 11:28 - 1980-01-04 01:45 - 01120816 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-11-15 11:24 - 2015-10-10 17:16 - 00000159 _____ C:\WINDOWS\wiadebug.log
2015-11-15 11:24 - 2015-10-10 17:16 - 00000050 _____ C:\WINDOWS\wiaservc.log
2015-11-15 11:24 - 2008-04-14 13:00 - 00012598 _____ C:\WINDOWS\system32\wpa.dbl
2015-11-15 11:23 - 2012-03-07 17:06 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-11-14 23:51 - 2012-03-07 17:06 - 00032618 _____ C:\WINDOWS\SchedLgU.Txt
2015-11-14 23:49 - 2013-07-24 13:22 - 00000178 ___SH C:\Documents and Settings\Kopejtice\ntuser.ini
2015-11-08 19:15 - 2013-07-24 12:15 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2015-11-07 18:17 - 2013-07-24 13:22 - 00000000 ____D C:\Documents and Settings\Kopejtice
2015-11-06 20:14 - 2012-03-07 17:06 - 00000000 ____D C:\Documents and Settings\LocalService\Local Settings\Temp

==================== Files in the root of some directories =======

2015-04-06 16:40 - 2010-07-10 19:01 - 0054272 _____ () C:\Program Files\winbox.exe

Files to move or delete:
====================
C:\Documents and Settings\Kopejtice\cc_20141108_160211.reg


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

==================== End of FRST.txt ============================



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: () (Fixed) (Total:74.53 GB) (Free:36.91 GB) NTFS ==>[drive with boot components (Windows XP)]

Available physical RAM: 976.98 MB
Total physical RAM: 1527.43 MB
Percentage of memory in use: 36%

==================== MBR and Partition Table ==================

Disk: 0 (Size: 74.5 GB) (Disk ID: 9D429D42)
Partition 1: (Active) - (Size=74.5 GB) - (Type=07 NTFS)

==================== Scheduled Tasks (whitelisted) ==================

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: avast! Antivirus (Disabled - Up to date) {7591DB91-41F0-48A3-B128-1A293FD8233D}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Documents and Settings\Kopejtice\Plocha" je 15 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
DoNotAllowExceptions REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
DoNotAllowExceptions REG_DWORD 0x0


[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"


[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Samsung\\AllShare Control\\AllShare Control PC.exe"="C:\\Program Files\\Samsung\\AllShare Control\\AllShare Control PC.exe:*:Enabled:AllShare Control PC"
"C:\\WINDOWS\\system32\\muzapp.exe"="C:\\WINDOWS\\system32\\muzapp.exe:*:Enabled:MUZ AOD APP player"
"C:\\Program Files\\HP\\HP Deskjet 3050 J610 series\\Bin\\DeviceSetup.exe"="C:\\Program Files\\HP\\HP Deskjet 3050 J610 series\\Bin\\DeviceSetup.exe:LocalSubNet:Enabled:Instalace zazen HP (HP Deskjet 3050 J610 series)"
"C:\\Program Files\\HP\\HP Deskjet 3050 J610 series\\Bin\\HPNetworkCommunicator.exe"="C:\\Program Files\\HP\\HP Deskjet 3050 J610 series\\Bin\\HPNetworkCommunicator.exe:LocalSubNet:Enabled:Sov komunikan program HP (HP Deskjet 3050 J610 series)"
"C:\\Program Files\\HP\\HP Deskjet 3050 J610 series\\Bin\\HPNetworkCommunicatorCom.exe"="C:\\Program Files\\HP\\HP Deskjet 3050 J610 series\\Bin\\HPNetworkCommunicatorCom.exe:LocalSubNet:Enabled:Sov komunikan program HP COM (HP Deskjet 3050 J610 series)"
"C:\\Documents and Settings\\Kopejtice\\Data aplikac\\uTorrent\\utorrent.exe"="C:\\Documents and Settings\\Kopejtice\\Data aplikac\\uTorrent\\utorrent.exe:*:Enabled:uTorrent"
"C:\\Program Files\\Google\\Chrome\\Application\\chrome.exe"="C:\\Program Files\\Google\\Chrome\\Application\\chrome.exe:*:Enabled:Google Chrome"
"C:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype"
"C:\\Program Files\\Mozilla Firefox\\firefox.exe"="C:\\Program Files\\Mozilla Firefox\\firefox.exe:*:Enabled:'Firefox' (C:\\Program Files\\Mozilla Firefox)"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"7878:TCP"="7878:TCP:*:Enabled:AllShare TCP Port"
"20102:TCP"="20102:TCP:*:Enabled:AllShare UDP Port"
"1900:TCP"="1900:TCP:*:Enabled:AllShare Multicast Port"


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000


==================== End Of Log ==============================

Re: Nelze vypnout počítač

Napsal: 15 lis 2015 12:42
od Rudy
Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.

Re: Nelze vypnout počítač

Napsal: 15 lis 2015 13:48
od John Hoof
Čau Rudy :-) Tak po pár letech mi opět pomáháš odstraňovat problémy s PC! :D

Program jsem stáhnul a spustil. Nenalezl nic.

Re: Nelze vypnout počítač

Napsal: 15 lis 2015 18:14
od Rudy
OK. Otevřte poznámkový blok a zkopírujte do něj:
Start
HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> (None)
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: No Name -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> No File
BHO: No Name -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> No File
U1 WS2IFSL; no ImagePath
C:\Documents and Settings\Kopejtice\cc_20141108_160211.reg
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Re: Nelze vypnout počítač

Napsal: 15 lis 2015 18:23
od John Hoof
Fix result of Farbar Recovery Scan Tool (x86) Version:07-11-2015
Ran by Kopejtice (2015-11-15 18:23:08) Run:1
Running from C:\Documents and Settings\Kopejtice\Plocha
Loaded Profiles: Kopejtice (Available Profiles: Kopejtice & Administrator)
Boot Mode: Normal

==============================================

fixlist content:
*****************
Start
HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> (None)
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: No Name -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> No File
BHO: No Name -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> No File
U1 WS2IFSL; no ImagePath
C:\Documents and Settings\Kopejtice\cc_20141108_160211.reg
End
*****************

HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Local Page => value restored successfully
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}" => key removed successfully.
HKCR\CLSID\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} => key not found.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}" => key removed successfully.
HKCR\CLSID\{DBC80044-A445-435b-BC74-9C25C1C588A9} => key not found.
WS2IFSL => service removed successfully.
C:\Documents and Settings\Kopejtice\cc_20141108_160211.reg => moved successfully

==== End of Fixlog 18:23:08 ====

Re: Nelze vypnout počítač

Napsal: 15 lis 2015 18:43
od Rudy
Smazáno. Nastala změna?

Re: Nelze vypnout počítač

Napsal: 23 lis 2015 01:10
od John Hoof
Omlouvám se za zpoždění. Počítač stále po kliknutí na "vypnout" skrze nabídku start ukáže přesípací hodiny a nic se nestane. Dříve jsem tvrdil, že se vypne explorer.exe, ale mýlil jsem se - asi bych si fakt neměl hrát na odborníka IT. Nu jednoduše se objeví přesípačky a dál nic.

Přeji hodně optimismu do dnešního pondělí :-)

Re: Nelze vypnout počítač

Napsal: 23 lis 2015 18:06
od Rudy
Díky za přání. Neobjevil se tento problém po některé systémové aktualizaci?

Re: Nelze vypnout počítač

Napsal: 25 lis 2015 23:22
od John Hoof
Hm. Jde o to, že já přesně nevím, kdy se to začlo dít. Ten počítač používá rodič, který si nevšiml žádné jiné změny. Ale automatické aktualizace jsou zapnuté, tak je to možné.

Dnes jsem to zkusil opět vypnout a objevil se posun - už se vše uzavřelo a objevila se modrá obrazovka s tím, že se počítač vypíná, ale nevypnul se ani po 2 minutách.

Re: Nelze vypnout počítač

Napsal: 26 lis 2015 17:55
od Rudy
Virový problém to zřejmě není. Zkuste obnovu systému k nestaršímu bodu obnovení. Pokud se to ani pak nezmění, budete muset začít jednu po druhé aktualizace odinstalovávat.

Re: Nelze vypnout počítač

Napsal: 05 pro 2015 21:47
od John Hoof
Aha, tak to mě tedy ještě čeká... děkuji mnohokrát a hezký víkend :-)

Re: Nelze vypnout počítač

Napsal: 05 pro 2015 21:59
od Rudy
Hezký víkend i vám a nemáte zač! :)