prosím o kontrolu logu Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43294
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu logu

Příspěvekod jaro3 » 30 pro 2011 13:06

Pokud máš PC tak je to klávesa F8 , držet určitou chvíli , mělo by naskočit menu , kde vybereš:
"Stav nouze s prací v síti"

U NB to bude asi jinak , zkus nápovědu (help).
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Reklama
termat
Level 1
Level 1
Příspěvky: 70
Registrován: duben 10
Pohlaví: Žena
Stav:
Offline

Re: prosím o kontrolu logu

Příspěvekod termat » 31 pro 2011 08:58

Tak se mi to konečně podařilo, spustila jsem notebook v nouzovém režimu a spustila jsem tvůj skript a šlo to...
tady je log: (PS: zdá se mi, že to teď běhá suprově)


All processes killed
========== OTL ==========
Process explorer.exe killed successfully!
No active process named firefox.exe was found!
Service HidServ stopped successfully!
Service HidServ deleted successfully!
File File not found not found.
Service AppMgmt stopped successfully!
Service AppMgmt deleted successfully!
File File not found not found.
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@Apple.com/iTunes,version=\ deleted successfully.
C:\Documents and Settings\Tereza\Data aplikací\Mozilla\Extensions folder moved successfully.
C:\Documents and Settings\Tereza\Data aplikací\Mozilla\Firefox\Profiles\jwmholm3.default\extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\searchplugins folder moved successfully.
C:\Documents and Settings\Tereza\Data aplikací\Mozilla\Firefox\Profiles\jwmholm3.default\extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\defaults\preferences folder moved successfully.
C:\Documents and Settings\Tereza\Data aplikací\Mozilla\Firefox\Profiles\jwmholm3.default\extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\defaults folder moved successfully.
C:\Documents and Settings\Tereza\Data aplikací\Mozilla\Firefox\Profiles\jwmholm3.default\extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\components folder moved successfully.
C:\Documents and Settings\Tereza\Data aplikací\Mozilla\Firefox\Profiles\jwmholm3.default\extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\chrome\skin\classic folder moved successfully.
C:\Documents and Settings\Tereza\Data aplikací\Mozilla\Firefox\Profiles\jwmholm3.default\extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\chrome\skin folder moved successfully.
C:\Documents and Settings\Tereza\Data aplikací\Mozilla\Firefox\Profiles\jwmholm3.default\extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\chrome\locale\cs folder moved successfully.
C:\Documents and Settings\Tereza\Data aplikací\Mozilla\Firefox\Profiles\jwmholm3.default\extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\chrome\locale folder moved successfully.
C:\Documents and Settings\Tereza\Data aplikací\Mozilla\Firefox\Profiles\jwmholm3.default\extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\chrome\content folder moved successfully.
C:\Documents and Settings\Tereza\Data aplikací\Mozilla\Firefox\Profiles\jwmholm3.default\extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\chrome folder moved successfully.
C:\Documents and Settings\Tereza\Data aplikací\Mozilla\Firefox\Profiles\jwmholm3.default\extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384} folder moved successfully.
C:\Documents and Settings\Tereza\Data aplikací\Mozilla\Firefox\Profiles\jwmholm3.default\extensions\centrumpomocnik@centrum.cz\defaults\preferences folder moved successfully.
C:\Documents and Settings\Tereza\Data aplikací\Mozilla\Firefox\Profiles\jwmholm3.default\extensions\centrumpomocnik@centrum.cz\defaults folder moved successfully.
C:\Documents and Settings\Tereza\Data aplikací\Mozilla\Firefox\Profiles\jwmholm3.default\extensions\centrumpomocnik@centrum.cz\chrome\skin\classic folder moved successfully.
C:\Documents and Settings\Tereza\Data aplikací\Mozilla\Firefox\Profiles\jwmholm3.default\extensions\centrumpomocnik@centrum.cz\chrome\skin folder moved successfully.
C:\Documents and Settings\Tereza\Data aplikací\Mozilla\Firefox\Profiles\jwmholm3.default\extensions\centrumpomocnik@centrum.cz\chrome\locale\en-US folder moved successfully.
C:\Documents and Settings\Tereza\Data aplikací\Mozilla\Firefox\Profiles\jwmholm3.default\extensions\centrumpomocnik@centrum.cz\chrome\locale\cs folder moved successfully.
C:\Documents and Settings\Tereza\Data aplikací\Mozilla\Firefox\Profiles\jwmholm3.default\extensions\centrumpomocnik@centrum.cz\chrome\locale folder moved successfully.
C:\Documents and Settings\Tereza\Data aplikací\Mozilla\Firefox\Profiles\jwmholm3.default\extensions\centrumpomocnik@centrum.cz\chrome\content\images folder moved successfully.
C:\Documents and Settings\Tereza\Data aplikací\Mozilla\Firefox\Profiles\jwmholm3.default\extensions\centrumpomocnik@centrum.cz\chrome\content folder moved successfully.
C:\Documents and Settings\Tereza\Data aplikací\Mozilla\Firefox\Profiles\jwmholm3.default\extensions\centrumpomocnik@centrum.cz\chrome folder moved successfully.
C:\Documents and Settings\Tereza\Data aplikací\Mozilla\Firefox\Profiles\jwmholm3.default\extensions\centrumpomocnik@centrum.cz folder moved successfully.
C:\Documents and Settings\Tereza\Data aplikací\Mozilla\Firefox\Profiles\jwmholm3.default\extensions folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} folder moved successfully.
C:\Program Files\Mozilla Firefox\extensions folder moved successfully.
C:\Program Files\Mozilla Firefox\distribution\extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\searchplugins folder moved successfully.
C:\Program Files\Mozilla Firefox\distribution\extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\defaults\preferences folder moved successfully.
C:\Program Files\Mozilla Firefox\distribution\extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\defaults folder moved successfully.
C:\Program Files\Mozilla Firefox\distribution\extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\components folder moved successfully.
C:\Program Files\Mozilla Firefox\distribution\extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\chrome\skin\classic folder moved successfully.
C:\Program Files\Mozilla Firefox\distribution\extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\chrome\skin folder moved successfully.
C:\Program Files\Mozilla Firefox\distribution\extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\chrome\locale\cs folder moved successfully.
C:\Program Files\Mozilla Firefox\distribution\extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\chrome\locale folder moved successfully.
C:\Program Files\Mozilla Firefox\distribution\extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\chrome\content folder moved successfully.
C:\Program Files\Mozilla Firefox\distribution\extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\chrome folder moved successfully.
C:\Program Files\Mozilla Firefox\distribution\extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384} folder moved successfully.
C:\Program Files\Mozilla Firefox\distribution\extensions\centrumpomocnik@centrum.cz\defaults\preferences folder moved successfully.
C:\Program Files\Mozilla Firefox\distribution\extensions\centrumpomocnik@centrum.cz\defaults folder moved successfully.
C:\Program Files\Mozilla Firefox\distribution\extensions\centrumpomocnik@centrum.cz\chrome\skin\classic folder moved successfully.
C:\Program Files\Mozilla Firefox\distribution\extensions\centrumpomocnik@centrum.cz\chrome\skin folder moved successfully.
C:\Program Files\Mozilla Firefox\distribution\extensions\centrumpomocnik@centrum.cz\chrome\locale\en-US folder moved successfully.
C:\Program Files\Mozilla Firefox\distribution\extensions\centrumpomocnik@centrum.cz\chrome\locale\cs folder moved successfully.
C:\Program Files\Mozilla Firefox\distribution\extensions\centrumpomocnik@centrum.cz\chrome\locale folder moved successfully.
C:\Program Files\Mozilla Firefox\distribution\extensions\centrumpomocnik@centrum.cz\chrome\content\images folder moved successfully.
C:\Program Files\Mozilla Firefox\distribution\extensions\centrumpomocnik@centrum.cz\chrome\content folder moved successfully.
C:\Program Files\Mozilla Firefox\distribution\extensions\centrumpomocnik@centrum.cz\chrome folder moved successfully.
C:\Program Files\Mozilla Firefox\distribution\extensions\centrumpomocnik@centrum.cz folder moved successfully.
C:\Program Files\Mozilla Firefox\distribution\extensions folder moved successfully.
File C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll not found.
File C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll not found.
C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll moved successfully.
127.0.0.1 localhost removed from HOSTS file successfully
Registry key HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Restrictions\ deleted successfully.
Registry key HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer\Control Panel\ deleted successfully.
Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\WikiKomentáře Google...\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ipp\ deleted successfully.
File Protocol\Handler\ipp - No CLSID value found not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\msdaipp\ deleted successfully.
File Protocol\Handler\msdaipp - No CLSID value found not found.
C:\WINDOWS\system32\perfh009.dat moved successfully.
C:\WINDOWS\system32\perfh005.dat moved successfully.
C:\WINDOWS\system32\perfc005.dat moved successfully.
C:\WINDOWS\system32\perfc009.dat moved successfully.
File C:\WINDOWS\System32\perfh005.dat not found.
C:\WINDOWS\system32\perfi005.dat moved successfully.
File C:\WINDOWS\System32\perfc005.dat not found.
C:\WINDOWS\system32\perfd005.dat moved successfully.
File C:\WINDOWS\System32\perfh009.dat not found.
C:\WINDOWS\system32\perfi009.dat moved successfully.
File C:\WINDOWS\System32\perfc009.dat not found.
C:\WINDOWS\system32\perfd009.dat moved successfully.
========== FILES ==========
C:\WINDOWS\System32\CONFIG.TMP moved successfully.
File\Folder C:\WINDOWS\*.tmp not found.
File\Folder C:\WINDOWS\system32\*.tmp.dll not found.
File\Folder C:\WINDOWS\System32\dllcache\*.tmp not found.
File\Folder C:\WINDOWS\system32\SET*.tmp not found.
c:\windows\Tasks\AppleSoftwareUpdate.job moved successfully.
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job moved successfully.
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job moved successfully.
File\Folder C:\*.tmp not found.
File\Folder C:\Documents and Settings\All Users\Data aplikací\*.tmp not found.
C:\ComboFix folder moved successfully.
C:\WINDOWS\NIRCMD.exe moved successfully.
File\Folder [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] not found.
C:\WINDOWS\PEV.exe moved successfully.
File\Folder C:\WINDOWS\PEV.exe not found.
C:\WINDOWS\MBR.exe moved successfully.
C:\Documents and Settings\Tereza\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini moved successfully.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\\FirstRunDisabled deleted successfully.
========== COMMANDS ==========
C:\WINDOWS\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->FireFox cache emptied: 5646759 bytes
->Flash cache emptied: 321 bytes

User: All Users

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes
->Flash cache emptied: 321 bytes

User: LocalService
->Temp folder emptied: 65748 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->FireFox cache emptied: 12999739 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: Tereza
->Temp folder emptied: 1042183 bytes
->Temporary Internet Files folder emptied: 172286 bytes
->Java cache emptied: 5303 bytes
->FireFox cache emptied: 62421002 bytes
->Google Chrome cache emptied: 6252829 bytes
->Opera cache emptied: 0 bytes
->Flash cache emptied: 1108 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 2692894 bytes
RecycleBin emptied: 6669181 bytes

Total Files Cleaned = 94,00 mb


[EMPTYFLASH]

User: Administrator
->Flash cache emptied: 0 bytes

User: All Users

User: Default User
->Flash cache emptied: 0 bytes

User: LocalService

User: NetworkService

User: Tereza
->Flash cache emptied: 0 bytes

Total Flash Files Cleaned = 0,00 mb


OTL by OldTimer - Version 3.2.31.0 log created on 12312011_085108

Files\Folders moved on Reboot...

Registry entries deleted on Reboot...

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43294
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu logu

Příspěvekod jaro3 » 31 pro 2011 09:02

Tak fajn!!

Chvíli to ještě kontroluj , pak:
Spusť OTL a klikni na Vyčisti.

Pokud nejsou problémy , je to vše a můžeš dát vyřešeno , zelenou fajfku.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

termat
Level 1
Level 1
Příspěvky: 70
Registrován: duben 10
Pohlaví: Žena
Stav:
Offline

Re: prosím o kontrolu logu  Vyřešeno

Příspěvekod termat » 31 pro 2011 09:43

:-) díky moc..snad to bude běhat bez problémů....
Přeji krásný nový rok a ještě jednou díky, Termat


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 105 hostů