Ahoj všem,
mám takovej problém. Když vypnu mašinu, tak se mi tak po pěti vteřinách sama zase pustí. Co s tím?
opětovný start PC
- Libor Maxa
- Level 2
- Příspěvky: 162
- Registrován: březen 06
- Bydliště: Posázaví
- Pohlaví:
- Stav:
Offline
- Libor Maxa
- Level 2
- Příspěvky: 162
- Registrován: březen 06
- Bydliště: Posázaví
- Pohlaví:
- Stav:
Offline
- Libor Maxa
- Level 2
- Příspěvky: 162
- Registrován: březen 06
- Bydliště: Posázaví
- Pohlaví:
- Stav:
Offline
- mijaja
- Tvůrce článků
-
Level 6.5
- Příspěvky: 4136
- Registrován: září 05
- Bydliště: Zlín
- Pohlaví:
- Stav:
Offline
- Kontakt:
Projdi si ještě tento topic:
http://www.pc-help.cz/viewtopic.php?t=2490
http://www.pc-help.cz/viewtopic.php?t=2490
- Libor Maxa
- Level 2
- Příspěvky: 162
- Registrován: březen 06
- Bydliště: Posázaví
- Pohlaví:
- Stav:
Offline
Můžete mi někdo kouknout na hijackthis?:
Logfile of HijackThis v1.99.1
Scan saved at 21:38:18, on 26.6.2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\COMMON~1\Stardock\SDMCP.exe
C:\Program Files\Stardock\Object Desktop\WindowBlinds\wbload.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Eset\nod32krn.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb10.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\Program Files\Eset\nod32kui.exe
C:\PROGRA~1\BILLPS~1\WINPAT~1\WinPatrol.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktopIndex.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktopCrawl.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\rundll32.exe
C:\Documents and Settings\user\Plocha\hijackthis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customi ... ch/ie.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customi ... .yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.idnes.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.idnes.cz/
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://red.clientapps.yahoo.com/customi ... .yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0 CE\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb10.exe
O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /startintray
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [WinPatrol] "C:\PROGRA~1\BILLPS~1\WINPAT~1\WinPatrol.exe"
O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - Startup: HDDlife.lnk = ?
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O14 - IERESET.INF: START_PAGE_URL=http://www.idnes.cz/
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O17 - HKLM\System\CCS\Services\Tcpip\..\{797E088F-59BD-4829-A713-F152D43A435F}: NameServer = 213.235.188.145,195.146.99.4
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL,wbsys.dll C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
O20 - Winlogon Notify: MCPClient - C:\PROGRA~1\COMMON~1\Stardock\mcpstub.dll
O20 - Winlogon Notify: WB - C:\PROGRA~1\Stardock\OBJECT~1\WINDOW~1\fastload.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
Logfile of HijackThis v1.99.1
Scan saved at 21:38:18, on 26.6.2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\COMMON~1\Stardock\SDMCP.exe
C:\Program Files\Stardock\Object Desktop\WindowBlinds\wbload.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Eset\nod32krn.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb10.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\Program Files\Eset\nod32kui.exe
C:\PROGRA~1\BILLPS~1\WINPAT~1\WinPatrol.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktopIndex.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktopCrawl.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\rundll32.exe
C:\Documents and Settings\user\Plocha\hijackthis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customi ... ch/ie.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customi ... .yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.idnes.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.idnes.cz/
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://red.clientapps.yahoo.com/customi ... .yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0 CE\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb10.exe
O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /startintray
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [WinPatrol] "C:\PROGRA~1\BILLPS~1\WINPAT~1\WinPatrol.exe"
O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - Startup: HDDlife.lnk = ?
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O14 - IERESET.INF: START_PAGE_URL=http://www.idnes.cz/
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O17 - HKLM\System\CCS\Services\Tcpip\..\{797E088F-59BD-4829-A713-F152D43A435F}: NameServer = 213.235.188.145,195.146.99.4
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL,wbsys.dll C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
O20 - Winlogon Notify: MCPClient - C:\PROGRA~1\COMMON~1\Stardock\mcpstub.dll
O20 - Winlogon Notify: WB - C:\PROGRA~1\Stardock\OBJECT~1\WINDOW~1\fastload.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
- Libor Maxa
- Level 2
- Příspěvky: 162
- Registrován: březen 06
- Bydliště: Posázaví
- Pohlaví:
- Stav:
Offline
- mijaja
- Tvůrce článků
-
Level 6.5
- Příspěvky: 4136
- Registrován: září 05
- Bydliště: Zlín
- Pohlaví:
- Stav:
Offline
- Kontakt:
Fixni tyto řádky:
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customi ... ch/ie.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customi ... .yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://red.clientapps.yahoo.com/customi ... .yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - Startup: HDDlife.lnk = ?
Jen zbytečnosti, nic aktivního tam není. Když, tak zkus MWAV.
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customi ... ch/ie.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customi ... .yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://red.clientapps.yahoo.com/customi ... .yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - Startup: HDDlife.lnk = ?
Jen zbytečnosti, nic aktivního tam není. Když, tak zkus MWAV.
- Libor Maxa
- Level 2
- Příspěvky: 162
- Registrován: březen 06
- Bydliště: Posázaví
- Pohlaví:
- Stav:
Offline
Tak jsem udělal ten MWAV, doufám, že to je to co potřebuješ:
Object "stylexp Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "clocksync Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "kazaa Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "whenu.savenow Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "whenu/search Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "clocksync Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "kazaa Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "whenu.savenow Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "whenu/search Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "whenu.savenow Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "ezula Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "whenu.savenow Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "kazaa Spyware/Adware" found in File System! Action Taken: No Action Taken.
Tue Jun 27 10:19:53 2006 => ***** Scanning complete. *****
Tue Jun 27 10:19:53 2006 => Total Objects Scanned: 16850
Tue Jun 27 10:19:53 2006 => Total Critical Objects: 13
Tue Jun 27 10:19:53 2006 => Total Disinfected Objects: 0
Tue Jun 27 10:19:53 2006 => Total Objects Renamed: 0
Tue Jun 27 10:19:53 2006 => Total Deleted Objects: 0
Tue Jun 27 10:19:53 2006 => Total Errors: 0
Tue Jun 27 10:19:53 2006 => Time Elapsed: 00:04:52
Tue Jun 27 10:19:53 2006 => Virus Database Date: 6/27/2006
Tue Jun 27 10:19:53 2006 => Virus Database Count: 203051
Tue Jun 27 10:19:53 2006 => Scan Completed.
Tue Jun 27 10:11:56 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus.avi
Tue Jun 27 10:12:07 2006 => Virus Database Date: 6/20/2006
Tue Jun 27 10:12:07 2006 => Virus Database Count: 201549
Tue Jun 27 10:13:43 2006 => Downloading AntiVirus and Anti-Spyware Databases..
Tue Jun 27 10:14:56 2006 => Reload of AntiVirus Signatures successfully done.
Tue Jun 27 10:14:56 2006 => Virus Database Date: 6/27/2006
Tue Jun 27 10:14:56 2006 => Virus Database Count: 203051
Tue Jun 27 10:15:00 2006 => MicroWorld Anti Virus & Spyware Toolkit Utility
Tue Jun 27 10:19:17 2006 => Scanning File C:\WINDOWS\system32\virus1.exe
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus.avi
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus004.avc
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus006.avc
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus007.avc
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus008.avc
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus009.avc
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus010.avc
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus011.avc
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus012.avc
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus013.avc
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus014.avc
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus015.avc
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus016.avc
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus017.avc
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus018.avc
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus019.avc
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus020.avc
Tue Jun 27 10:13:43 2006 => Downloading AntiVirus and Anti-Spyware Databases..
Tue Jun 27 10:14:55 2006 => Indexed Spyware Databases Successfully Created...
Tue Jun 27 10:15:00 2006 => MicroWorld Anti Virus & Spyware Toolkit Utility.
Tue Jun 27 10:16:58 2006 => ***** Scanning Registry and File system for Adware/Spyware *****
Tue Jun 27 10:16:58 2006 => Loading Spyware Signatures from new External Database (Size: 161136).
Spyware Databases Successfully Created...
Tue Jun 27 10:17:04 2006 => System found infected with stylexp Spyware/Adware ({c333cf63-767f-4831-94ac-e683d962c63c})! Action taken: No Action Taken.
Tue Jun 27 10:17:06 2006 => Offending Key found: HKCU\software\microsoft\windows\currentversion\explorer\menuorder\start menu\programs\clocksync !!!
Tue Jun 27 10:17:06 2006 => Object "clocksync Spyware/Adware" found in File System! Action Taken: No Action Taken.
Tue Jun 27 10:17:06 2006 => Offending Key found: HKCU\software\microsoft\windows\currentversion\explorer\menuorder\start menu\programs\kazaa !!!
Tue Jun 27 10:17:06 2006 => Object "kazaa Spyware/Adware" found in File System! Action Taken: No Action Taken.
Tue Jun 27 10:17:06 2006 => Offending Key found: HKCU\software\microsoft\windows\currentversion\explorer\menuorder\start menu\programs\whenu !!!
Tue Jun 27 10:17:06 2006 => Object "whenu.savenow Spyware/Adware" found in File System! Action Taken: No Action Taken.
Tue Jun 27 10:17:06 2006 => Offending Key found: HKCU\software\microsoft\windows\currentversion\explorer\menuorder\start menu\programs\whenusearch !!!
Tue Jun 27 10:17:06 2006 => Object "whenu/search Spyware/Adware" found in File System! Action Taken: No Action Taken.
Tue Jun 27 10:17:06 2006 => Offending Key found: HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu\Programs\clocksync !!!
Tue Jun 27 10:17:06 2006 => Object "clocksync Spyware/Adware" found in File System! Action Taken: No Action Taken.
Tue Jun 27 10:17:06 2006 => Offending Key found: HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu\Programs\kazaa !!!
Tue Jun 27 10:17:06 2006 => Object "kazaa Spyware/Adware" found in File System! Action Taken: No Action Taken.
Tue Jun 27 10:17:06 2006 => Offending Key found: HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu\Programs\whenu !!!
Tue Jun 27 10:17:06 2006 => Object "whenu.savenow Spyware/Adware" found in File System! Action Taken: No Action Taken.
Tue Jun 27 10:17:06 2006 => Offending Key found: HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu\Programs\whenusearch !!!
Tue Jun 27 10:17:06 2006 => Object "whenu/search Spyware/Adware" found in File System! Action Taken: No Action Taken.
Tue Jun 27 10:17:07 2006 => Offending file found: C:\DOCUME~1\user\LOCALS~1\Temp\cmdlineext02.dll
Tue Jun 27 10:17:07 2006 => System found infected with whenu.savenow Spyware/Adware (cmdlineext02.dll)! Action taken: No Action Taken.
Tue Jun 27 10:17:09 2006 => Offending file found: C:\Documents and Settings\user\Oblíbené položky\internet.url
Tue Jun 27 10:17:09 2006 => System found infected with ezula Spyware/Adware (internet.url)! Action taken: No Action Taken.
Tue Jun 27 10:17:12 2006 => Offending file found: C:\Documents and Settings\user\Local Settings\temp\cmdlineext02.dll
Tue Jun 27 10:17:12 2006 => System found infected with whenu.savenow Spyware/Adware (cmdlineext02.dll)! Action taken: No Action Taken.
Tue Jun 27 10:17:13 2006 => Offending Folder found: C:\Documents and Settings\All Users\Data aplikací\kazaa
Tue Jun 27 10:17:13 2006 => Object "kazaa Spyware/Adware" found in File System! Action Taken: No Action Taken.
Tue Jun 27 10:19:39 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\riskware.avc
Tue Jun 27 10:19:39 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\Spyware.sdb
Tue Jun 27 10:19:53 2006 => Checking for Adware.SeekSeek Virus...
Zatím díky za ochotu.
Object "stylexp Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "clocksync Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "kazaa Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "whenu.savenow Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "whenu/search Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "clocksync Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "kazaa Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "whenu.savenow Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "whenu/search Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "whenu.savenow Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "ezula Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "whenu.savenow Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "kazaa Spyware/Adware" found in File System! Action Taken: No Action Taken.
Tue Jun 27 10:19:53 2006 => ***** Scanning complete. *****
Tue Jun 27 10:19:53 2006 => Total Objects Scanned: 16850
Tue Jun 27 10:19:53 2006 => Total Critical Objects: 13
Tue Jun 27 10:19:53 2006 => Total Disinfected Objects: 0
Tue Jun 27 10:19:53 2006 => Total Objects Renamed: 0
Tue Jun 27 10:19:53 2006 => Total Deleted Objects: 0
Tue Jun 27 10:19:53 2006 => Total Errors: 0
Tue Jun 27 10:19:53 2006 => Time Elapsed: 00:04:52
Tue Jun 27 10:19:53 2006 => Virus Database Date: 6/27/2006
Tue Jun 27 10:19:53 2006 => Virus Database Count: 203051
Tue Jun 27 10:19:53 2006 => Scan Completed.
Tue Jun 27 10:11:56 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus.avi
Tue Jun 27 10:12:07 2006 => Virus Database Date: 6/20/2006
Tue Jun 27 10:12:07 2006 => Virus Database Count: 201549
Tue Jun 27 10:13:43 2006 => Downloading AntiVirus and Anti-Spyware Databases..
Tue Jun 27 10:14:56 2006 => Reload of AntiVirus Signatures successfully done.
Tue Jun 27 10:14:56 2006 => Virus Database Date: 6/27/2006
Tue Jun 27 10:14:56 2006 => Virus Database Count: 203051
Tue Jun 27 10:15:00 2006 => MicroWorld Anti Virus & Spyware Toolkit Utility
Tue Jun 27 10:19:17 2006 => Scanning File C:\WINDOWS\system32\virus1.exe
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus.avi
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus004.avc
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus006.avc
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus007.avc
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus008.avc
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus009.avc
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus010.avc
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus011.avc
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus012.avc
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus013.avc
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus014.avc
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus015.avc
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus016.avc
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus017.avc
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus018.avc
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus019.avc
Tue Jun 27 10:19:47 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\virus020.avc
Tue Jun 27 10:13:43 2006 => Downloading AntiVirus and Anti-Spyware Databases..
Tue Jun 27 10:14:55 2006 => Indexed Spyware Databases Successfully Created...
Tue Jun 27 10:15:00 2006 => MicroWorld Anti Virus & Spyware Toolkit Utility.
Tue Jun 27 10:16:58 2006 => ***** Scanning Registry and File system for Adware/Spyware *****
Tue Jun 27 10:16:58 2006 => Loading Spyware Signatures from new External Database (Size: 161136).
Spyware Databases Successfully Created...
Tue Jun 27 10:17:04 2006 => System found infected with stylexp Spyware/Adware ({c333cf63-767f-4831-94ac-e683d962c63c})! Action taken: No Action Taken.
Tue Jun 27 10:17:06 2006 => Offending Key found: HKCU\software\microsoft\windows\currentversion\explorer\menuorder\start menu\programs\clocksync !!!
Tue Jun 27 10:17:06 2006 => Object "clocksync Spyware/Adware" found in File System! Action Taken: No Action Taken.
Tue Jun 27 10:17:06 2006 => Offending Key found: HKCU\software\microsoft\windows\currentversion\explorer\menuorder\start menu\programs\kazaa !!!
Tue Jun 27 10:17:06 2006 => Object "kazaa Spyware/Adware" found in File System! Action Taken: No Action Taken.
Tue Jun 27 10:17:06 2006 => Offending Key found: HKCU\software\microsoft\windows\currentversion\explorer\menuorder\start menu\programs\whenu !!!
Tue Jun 27 10:17:06 2006 => Object "whenu.savenow Spyware/Adware" found in File System! Action Taken: No Action Taken.
Tue Jun 27 10:17:06 2006 => Offending Key found: HKCU\software\microsoft\windows\currentversion\explorer\menuorder\start menu\programs\whenusearch !!!
Tue Jun 27 10:17:06 2006 => Object "whenu/search Spyware/Adware" found in File System! Action Taken: No Action Taken.
Tue Jun 27 10:17:06 2006 => Offending Key found: HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu\Programs\clocksync !!!
Tue Jun 27 10:17:06 2006 => Object "clocksync Spyware/Adware" found in File System! Action Taken: No Action Taken.
Tue Jun 27 10:17:06 2006 => Offending Key found: HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu\Programs\kazaa !!!
Tue Jun 27 10:17:06 2006 => Object "kazaa Spyware/Adware" found in File System! Action Taken: No Action Taken.
Tue Jun 27 10:17:06 2006 => Offending Key found: HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu\Programs\whenu !!!
Tue Jun 27 10:17:06 2006 => Object "whenu.savenow Spyware/Adware" found in File System! Action Taken: No Action Taken.
Tue Jun 27 10:17:06 2006 => Offending Key found: HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu\Programs\whenusearch !!!
Tue Jun 27 10:17:06 2006 => Object "whenu/search Spyware/Adware" found in File System! Action Taken: No Action Taken.
Tue Jun 27 10:17:07 2006 => Offending file found: C:\DOCUME~1\user\LOCALS~1\Temp\cmdlineext02.dll
Tue Jun 27 10:17:07 2006 => System found infected with whenu.savenow Spyware/Adware (cmdlineext02.dll)! Action taken: No Action Taken.
Tue Jun 27 10:17:09 2006 => Offending file found: C:\Documents and Settings\user\Oblíbené položky\internet.url
Tue Jun 27 10:17:09 2006 => System found infected with ezula Spyware/Adware (internet.url)! Action taken: No Action Taken.
Tue Jun 27 10:17:12 2006 => Offending file found: C:\Documents and Settings\user\Local Settings\temp\cmdlineext02.dll
Tue Jun 27 10:17:12 2006 => System found infected with whenu.savenow Spyware/Adware (cmdlineext02.dll)! Action taken: No Action Taken.
Tue Jun 27 10:17:13 2006 => Offending Folder found: C:\Documents and Settings\All Users\Data aplikací\kazaa
Tue Jun 27 10:17:13 2006 => Object "kazaa Spyware/Adware" found in File System! Action Taken: No Action Taken.
Tue Jun 27 10:19:39 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\riskware.avc
Tue Jun 27 10:19:39 2006 => Scanning File C:\DOCUME~1\user\LOCALS~1\Temp\Spyware.sdb
Tue Jun 27 10:19:53 2006 => Checking for Adware.SeekSeek Virus...
Zatím díky za ochotu.
- mijaja
- Tvůrce článků
-
Level 6.5
- Příspěvky: 4136
- Registrován: září 05
- Bydliště: Zlín
- Pohlaví:
- Stav:
Offline
- Kontakt:
Takže nabídka Start>>Spustit- do okénka napiš regedit a zmáčkni Enter. V editoru registrů vyhledej tyto klíče a smaž je:
HKCU\software\microsoft\windows\currentversion\explorer\menuorder\start menu\programs\clocksync !!!
HKCU\software\microsoft\windows\currentversion\explorer\menuorder\start menu\programs\kazaa !!!
HKCU\software\microsoft\windows\currentversion\explorer\menuorder\start menu\programs\whenu !!!
HKCU\software\microsoft\windows\currentversion\explorer\menuorder\start menu\programs\whenusearch !!!
Zavři editor a na disku vyhledej tyto soubory a smaž je také:
C:\Documents and Settings\user\Local Settings\temp\cmdlineext02.dll
C:\Documents and Settings\user\Oblíbené položky\internet.url
C:\Documents and Settings\All Users\Data aplikací\kazaa
C:\Documents and Settings\user\Local Settings\Temp\riskware.avc
C:\Documents and Settings\user\Local Settings\Spyware.sdb
Potom projdi komp CCleanerem a dej vyčistit vše co najde.
Ale nic z tohoto, stejně jako v tamtom topicu nemělo by samo od sebe spouštět komp. Mohl bys zkusit jedno - po normálním startu snapnout Taskmanager - co tam všechno jede, potom před vypnutím a do třetice hned po tom restartu. Zkus porovnat o jaké procesy se tyto momenty liší.
HKCU\software\microsoft\windows\currentversion\explorer\menuorder\start menu\programs\clocksync !!!
HKCU\software\microsoft\windows\currentversion\explorer\menuorder\start menu\programs\kazaa !!!
HKCU\software\microsoft\windows\currentversion\explorer\menuorder\start menu\programs\whenu !!!
HKCU\software\microsoft\windows\currentversion\explorer\menuorder\start menu\programs\whenusearch !!!
Zavři editor a na disku vyhledej tyto soubory a smaž je také:
C:\Documents and Settings\user\Local Settings\temp\cmdlineext02.dll
C:\Documents and Settings\user\Oblíbené položky\internet.url
C:\Documents and Settings\All Users\Data aplikací\kazaa
C:\Documents and Settings\user\Local Settings\Temp\riskware.avc
C:\Documents and Settings\user\Local Settings\Spyware.sdb
Potom projdi komp CCleanerem a dej vyčistit vše co najde.
Ale nic z tohoto, stejně jako v tamtom topicu nemělo by samo od sebe spouštět komp. Mohl bys zkusit jedno - po normálním startu snapnout Taskmanager - co tam všechno jede, potom před vypnutím a do třetice hned po tom restartu. Zkus porovnat o jaké procesy se tyto momenty liší.
-
- Mohlo by vás zajímat
- Odpovědi
- Zobrazení
- Poslední příspěvek
-
- 2
- 778
-
od 28nitro28
Zobrazit poslední příspěvek
01 led 2024 21:58
-
- 14
- 1757
-
od petr22
Zobrazit poslední příspěvek
01 črc 2023 16:36
-
- 9
- 1670
-
od M.I.RASL
Zobrazit poslední příspěvek
29 lis 2023 14:06
-
-
nefunguje nabídka start v jednom účtu v druhém ano
od DeNNI85 » 16 srp 2023 12:00 » v Windows 11, 10, 8... - 1
- 909
-
od RIKI22
Zobrazit poslední příspěvek
16 srp 2023 12:07
-
Zpět na “Windows 11, 10, 8...”
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 14 hostů