prosím o kontrolu logu -- restartování a hlášení chyby

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

s.stene.e
nováček
Příspěvky: 25
Registrován: únor 08
Pohlaví: Nespecifikováno
Stav:
Offline
Kontakt:

prosím o kontrolu logu -- restartování a hlášení chyby

Příspěvekod s.stene.e » 11 úno 2008 21:01

prosím o kontrolu logu

počítač jede normální rychlostí, ale občas naskočí modrá obrazovka s nějakou zprávou a počítač se zrestartuje, po následném zpuštění programu vyskakuje upozornění, že byl počítač obnoven po chybě, ale dále tento problém není specifikován

Logfile of Trend Micro HijackThis v2.0.0 (BETA)
Scan saved at 20:55:29, on 11.2.2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\savedump.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\ATK0100\HControl.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\sm56hlpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Wireless Console 2\wcourier.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
C:\Program Files\ASUS\WLAN Card Utilities\Center.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\QIP\qip.exe
C:\WINDOWS\OETRN.EXE
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE
C:\WINDOWS\ATK0100\ATKOSD.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\tosOBEX.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\tosBtProc.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\PROGRA~1\ZONELA~1\ZONEAL~1\MAILFR~1\mantispm.exe
C:\Documents and Settings\Owner\Dokumenty\HiJackThis_v2.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: ICQ Toolbar - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\PROGRA~1\ICQTOO~1\toolbaru.dll
O2 - BHO: XTTBPos00 - {055FD26D-3A88-4e15-963D-DC8493744B1D} - C:\PROGRA~1\ICQTOO~1\toolbaru.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: WebTransBHO Class - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - C:\WINDOWS\WebIE.dll
O2 - BHO: ZoneAlarm Spy Blocker BHO - {F0D4B231-DA4B-4daf-81E4-DFEE4931A4AA} - C:\Program Files\ZoneAlarmSB\bar\1.bin\SPYBLOCK.DLL
O3 - Toolbar: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\PROGRA~1\ICQTOO~1\toolbaru.dll
O3 - Toolbar: ZoneAlarm Spy Blocker - {F0D4B239-DA4B-4daf-81E4-DFEE4931A4AA} - C:\Program Files\ZoneAlarmSB\bar\1.bin\SPYBLOCK.DLL
O3 - Toolbar: WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\WINDOWS\WebIE.dll
O4 - HKLM\..\Run: [HControl] C:\WINDOWS\ATK0100\HControl.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [SMSERIAL] C:\WINDOWS\sm56hlpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Wireless Console 2] C:\Program Files\Wireless Console 2\wcourier.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
O4 - HKLM\..\Run: [Control Center] C:\Program Files\ASUS\WLAN Card Utilities\Center.exe
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe"
O4 - HKCU\..\Run: [QIP2005] C:\Program Files\QIP\qip.exe
O4 - HKCU\..\Run: [AdVantage] "C:\Program Files\AdVantage\AdVantage.exe"
O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_9
O4 - HKCU\..\Run: [OEXPRESS] C:\WINDOWS\OETRN.EXE
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: CCC.lnk = ?
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Bluetooth Manager.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\WINDOWS\WebIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\WINDOWS\WebIE.dll
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\WINDOWS\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\WINDOWS\WebIE.dll
O9 - Extra 'Tools' menuitem: &Slovník - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\WINDOWS\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\WINDOWS\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\WINDOWS\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\WINDOWS\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\WINDOWS\WebIE.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: ASWLSVC - Unknown owner - C:\WINDOWS\system32\ASWLSVC.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

--
End of file - 8540 bytes

Reklama
Uživatelský avatar
Baron Prášil
Master Level 7
Master Level 7
Příspěvky: 4882
Registrován: červen 06
Pohlaví: Muž
Stav:
Offline

Příspěvekod Baron Prášil » 11 úno 2008 23:47

tento problém je specifikován v tej modrej smrti :smile:
takže až ti příště přijde,chňapni foun nebo fouťák a vyfoť a pošli.nebo to opiš.
log je v pořádku.

s.stene.e
nováček
Příspěvky: 25
Registrován: únor 08
Pohlaví: Nespecifikováno
Stav:
Offline
Kontakt:

Příspěvekod s.stene.e » 13 úno 2008 16:43

no s tím chytáním je to celkem problém, prototže se tam ta obrazovka zobrazí vždy jen na cvíli, ale na disku C se mi objevily dva poznámkové blogy a jeden nějaký program nevím jestli to pomuže,a le snad ano

ten prní se jmenuje "CDAVFSuser"

GMT time: Sat Feb 09 17:36:20 2008
Thread ID: 3488
error: FilterReplyMessage failed: 801f0020
kernel mode file: \Device\HarddiskVolume1\Program Files\CyberDefender\AntiSpyware\cdase.exe
Clients Connected: 1
user mode file: e1\Program Files\CyberDefender\AntiSpyware\cdase.exe
process file: e1\WINDOWS\system32\dwwin.exe
vendor name: NULL
files waiting: 0
launching exe to scan
last reply: did not time out
Process ID: 2640

GMT time: Sat Feb 09 17:36:20 2008
Thread ID: 3488
error: Previous File timed out
kernel mode file: \Device\HarddiskVolume1\Program Files\AdVantage\AdVantage.exe
Clients Connected: 1
user mode file: e1\Program Files\AdVantage\AdVantage.exe
process file: e1\WINDOWS\explorer.exe
vendor name: NULL
files waiting: 0
launching exe to scan
last reply: timed out
Process ID: 2640

GMT time: Sat Feb 09 17:36:20 2008
Thread ID: 3488
error: Previous File timed out
kernel mode file: \Device\HarddiskVolume1\Documents and Settings\Owner\Local Settings\Temp\365A1.dmp
Clients Connected: 1
user mode file: e1\Documents and Settings\Owner\Local Settings\Temp\365A1.dmp
process file: e1\WINDOWS\system32\dwwin.exe
vendor name: NULL
files waiting: 2
launching exe to scan
last reply: timed out
Process ID: 1680


a ten druhý "CybDeFInstallInfo"

[FLOW (Thread ID=3376)]
1 09 14:38:35=Command Line="C:\DOCUME~1\Owner\LOCALS~1\Temp\cdD.tmp\CDInstaller\BIN\runtime\ISS2006\cdinstx.exe" /i
3 09 14:38:35=Target Directory assigned = C:\Program Files\CyberDefender
4 09 14:38:35=Install Path Detected = C:\Program Files\CyberDefender
16 09 14:38:36=StartPage: Show=TRUE
17 09 14:38:36=UpdatePage: Show=FALSE
18 09 14:38:36=StartPage: Show=FALSE
19 09 14:38:36=LicensePage: Show=TRUE
20 09 14:38:38=LicensePage: Show=FALSE
22 09 14:38:38=Target Directory assigned = C:\Program Files\CyberDefender
23 09 14:38:38=DestinationPage: Show=TRUE
25 09 14:38:39=Target Directory detected = C:\Program Files\CyberDefender
26 09 14:38:39=DestinationPage: Show=FALSE
27 09 14:38:39=TasksPage: Show=TRUE
29 09 14:38:39=TasksPage: Show=FALSE
30 09 14:38:39=ProgressPage: Show=TRUE
31 09 14:38:39=Install thread is running...
33 09 14:38:39=Target Directory detected = C:\Program Files\CyberDefender
39 09 14:38:53=AntiSpam - all files have been copied from C:\DOCUME~1\Owner\LOCALS~1\Temp\cdD.tmp\CDInstaller\BIN\runtime\ISS2006\InstallModule\AntiSpam to C:\Program Files\CyberDefender
40 09 14:38:56=AntiSpam: installation complete!!!
42 09 14:38:58=Secirity Toolbar: installation complete!!!
43 09 14:38:59=AntiSpyware: installation complete!!!
45 09 14:39:03=Create Process: RUNDLL32.EXE SETUPAPI.DLL,InstallHinfSection DefaultInstall 132 C:\Program Files\CyberDefender\AntiVirus\CDAVFS.inf
46 09 14:39:25=AV Driver: installation complete!!!
47 09 14:39:25=TuneUpActiveXDetector: installation complete!!!
48 09 14:39:25=AntiVirus: installation complete!!!
50 09 14:39:26=EDC: installation complete!!!
51 09 14:39:29=ProgressPage: Show=FALSE
52 09 14:39:32=SuccessPage: Show=FALSE
53 09 14:39:32=BrowserPage: Show=TRUE
54 09 14:39:35=Hidden Browser called the OnDocumentComplete function.
55 09 14:39:35=Hidden Browser called the OnDocumentComplete function.
[INFO (Thread ID=3376)]
2 09 14:38:35=InstallSubPath="CyberDefender"
5 09 14:38:35=(From .cfg file) ADP=-1
6 09 14:38:35=***Install Mode has been detected***
7 09 14:38:35=ShowWelcome=0
8 09 14:38:35=CloseIE=0
9 09 14:38:35=uinst6=0
10 09 14:38:35=QuickInst=0
11 09 14:38:35=QuickBuy=0
12 09 14:38:35=(From .set file) ADP=0
13 09 14:38:35=(From .set file) FullTrial=30
14 09 14:38:35=InstallModule="AntiSpam"
15 09 14:38:36=Title: CyberDefender Early Detection Center
21 09 14:38:38=InstallSubPath="CyberDefender"
24 09 14:38:39=InstallSubPath="CyberDefender"
28 09 14:38:39=***Security Toolbar will be installed.***
32 09 14:38:39=InstallSubPath="CyberDefender"
34 09 14:38:49=C:\Program Files\CyberDefender\InstallModule\AntiSpam\CSIDL_PROGRAM_FILES\AntiSpam\cdaspm.dll has passed MD5 check and has not been replaced with the identical file from the installation package.
35 09 14:38:49=C:\Program Files\CyberDefender\InstallModule\AntiSpam\CSIDL_PROGRAM_FILES\AntiSpam\oeapiinitcom.dll has passed MD5 check and has not been replaced with the identical file from the installation package.
36 09 14:38:50=C:\Program Files\CyberDefender\InstallModule\AntiSpam\CSIDL_PROGRAM_FILES\AntiSpam\oecom.dll has passed MD5 check and has not been replaced with the identical file from the installation package.
37 09 14:38:50=C:\Program Files\CyberDefender\InstallModule\AntiSpam\CSIDL_PROGRAM_FILES\AntiSpam\oehook.dll has passed MD5 check and has not been replaced with the identical file from the installation package.
38 09 14:38:50=C:\Program Files\CyberDefender\InstallModule\AntiSpam\CSIDL_PROGRAM_FILES\AntiSpam\oestore.dll has passed MD5 check and has not been replaced with the identical file from the installation package.
41 09 14:38:58=The Buttons Order for ST has been set to 0,0,0,1,0,0,0
44 09 14:39:03=CDAVFS driver will not be re-installed: clean installation
49 09 14:39:25=The Buttons Order for ST has been set to 0,0,0,1,0,0,0
56 09 14:39:35=System Temp Directory: c:\docume~1\owner\locals~1\temp\cdd.tmp
57 09 14:39:35=Application Path: c:\docume~1\owner\locals~1\temp\cdd.tmp\cdinstaller\bin\runtime
58 09 14:39:35=Folder(s) (from Temp directory) to be removed:
59 09 14:39:35="C:\Program Files\CyberDefender\AntiSpyware\cdase.exe"
rmdir "c:\docume~1\owner\locals~1\temp\cdd.tmp\cdinstaller\bin\runtime"

60 09 14:39:35="C:\Program Files\CyberDefender\AntiSpyware\cdase.exe"
rmdir "c:\docume~1\owner\locals~1\temp\cdd.tmp\cdinstaller\bin\runtime"
rmdir "c:\docume~1\owner\locals~1\temp\cdd.tmp\cdinstaller\bin"

61 09 14:39:35="C:\Program Files\CyberDefender\AntiSpyware\cdase.exe"
rmdir "c:\docume~1\owner\locals~1\temp\cdd.tmp\cdinstaller\bin\runtime"
rmdir "c:\docume~1\owner\locals~1\temp\cdd.tmp\cdinstaller\bin"
rmdir "c:\docume~1\owner\locals~1\temp\cdd.tmp\cdinstaller"

62 09 14:39:35="C:\Program Files\CyberDefender\AntiSpyware\cdase.exe"
rmdir "c:\docume~1\owner\locals~1\temp\cdd.tmp\cdinstaller\bin\runtime"
rmdir "c:\docume~1\owner\locals~1\temp\cdd.tmp\cdinstaller\bin"
rmdir "c:\docume~1\owner\locals~1\temp\cdd.tmp\cdinstaller"
rmdir "c:\docume~1\owner\locals~1\temp\cdd.tmp"

63 09 14:39:35=Folders (from Temp directory) enumeration - complete.
[INFO (Thread ID=)]
1 09 15:27:49=*** Cobrand = CYBERDEFENDER
1 09 18:35:36=*** No Cobrand detected from command line.
1 09 18:35:38=*** No Cobrand detected from command line.
[ERROR (Thread ID=2352)]
2 09 15:27:49=.
3 09 15:27:49=***************************BEGIN***************************
60 09 15:28:36=C:\Program Files\CyberDefender\AntiSpyware\cdase.exe has been renamed to C:\Program Files\CyberDefender\AntiSpyware\cd4.tmp and will be deleted after reboot.
62 09 15:28:38=C:\Program Files\CyberDefender\AntiVirus\cdavf.exe has been renamed to C:\Program Files\CyberDefender\AntiVirus\cd5.tmp and will be deleted after reboot.
63 09 15:28:38=C:\Program Files\CyberDefender\AntiVirus\uwhttpsr.dll has been renamed to C:\Program Files\CyberDefender\AntiVirus\cd6.tmp and will be deleted after reboot.
[FLOW (Thread ID=2352)]
4 09 15:27:49=.
5 09 15:27:49=***************************BEGIN***************************
8 09 15:27:49=Command Line="C:\DOCUME~1\Owner\LOCALS~1\Temp\cd3.tmp\2006 codebase\installers\cdinstaller8\bin\runtime\edc-cyberdefender\cdinstx.exe" /i /s1 update /r /cobrand CYBERDEFENDER
10 09 15:27:49=Target Directory detected = C:\Program Files\CyberDefender
12 09 15:27:49=Install Path Detected = C:\Program Files\CyberDefender
37 09 15:27:50=Target Directory detected = C:\Program Files\CyberDefender
39 09 15:27:50=3rd Party Install thread is running...
40 09 15:27:50=ProgressPage: Show=TRUE
41 09 15:27:50=DestinationPage: Show=TRUE
42 09 15:27:50=Install thread is running...
43 09 15:27:50=LicensePage: Show=TRUE
44 09 15:27:50=StartPage: Show=TRUE
46 09 15:28:27=Target Directory detected = C:\Program Files\CyberDefender
58 09 15:28:35=AntiSpam - all files have been copied from C:\DOCUME~1\Owner\LOCALS~1\Temp\cd3.tmp\2006 codebase\installers\cdinstaller8\bin\runtime\edc-cyberdefender\InstallModule\AntiSpam to C:\Program Files\CyberDefender
59 09 15:28:36=AntiSpam: installation complete!!!
61 09 15:28:38=AntiSpyware: installation complete!!!
65 09 15:28:39=Create Process: RUNDLL32.EXE SETUPAPI.DLL,InstallHinfSection DefaultInstall 132 C:\Program Files\CyberDefender\AntiVirus\CDAVFS.inf
66 09 15:28:47=AV Driver: installation complete!!!
67 09 15:28:47=TuneUpActiveXDetector: installation complete!!!
68 09 15:28:47=AntiVirus: installation complete!!!
69 09 15:28:47=EDC: installation complete!!!
70 09 15:28:48=Update1Page: Show=FALSE
71 09 15:28:48=StartPage: Show=FALSE
72 09 15:28:48=LicensePage: Show=FALSE
74 09 15:28:48=Target Directory detected = C:\Program Files\CyberDefender
75 09 15:28:48=DestinationPage: Show=FALSE
76 09 15:28:48=ProgressPage: Show=FALSE
79 09 15:28:48=SuccessPage: Show=TRUE
80 09 15:28:49=Enterng CCDInstallerApp::ExitInstance()
81 09 15:28:49=Create Process: C:\Program Files\CyberDefender\AntiSpyware\cdase.exe
93 09 15:28:53=Exiting CCDInstallerApp::ExitInstance()
[INFO (Thread ID=2352)]
6 09 15:27:49=.
7 09 15:27:49=***************************BEGIN***************************
9 09 15:27:49=InstallSubPath="CyberDefender"
11 09 15:27:49=UpdateMode detected
13 09 15:27:49=*cfg.ini detected: C:\Program Files\CyberDefender\AntiSpyware\cdascfg.ini
14 09 15:27:49=GoodbyeURL =
15 09 15:27:49=(From .cfg file) ADP=0
16 09 15:27:49=***Install Mode has been detected***
17 09 15:27:49=Title=CyberDefender Early Detection Center
18 09 15:27:49=caption=CyberDefender Internet Security
19 09 15:27:49=CompanyNameShort = CyberDefender
20 09 15:27:49=CompanyNameShort = CyberDefender Corp.
21 09 15:27:49=CompanyURL =http://www.cyberdefender.com
22 09 15:27:49=SupportURL =http://support.cyberdefender.com/cgi-bin/support/kb.cgi
23 09 15:27:49=PrivacyURL =http://edc.cyberdefender.com/privacy.htm
24 09 15:27:49=DisplayName =CyberDefender Early Detection Center
25 09 15:27:49=cobrand =CYBERDEFENDER
26 09 15:27:49=*** Cobrand = CYBERDEFENDER (from .set file)
27 09 15:27:49=ShowWelcome=-1
28 09 15:27:49=CloseIE=-1
29 09 15:27:49=uinst6=-1
30 09 15:27:49=QuickInst=-1
31 09 15:27:49=QuickBuy=-1
32 09 15:27:49=(From .set file) ADP=-1
33 09 15:27:49=(From .set file) FullTrial=-1
34 09 15:27:49=InstallModule="AntiSpam"
35 09 15:27:50=Dialog caption: CyberDefender Internet Security
36 09 15:27:50=InstallSubPath="CyberDefender"
38 09 15:27:50=***Security Toolbar has already been installed (whatever ST layout is on the user machine).***
45 09 15:28:27=InstallSubPath="CyberDefender"
47 09 15:28:27=UpdateMode detected
48 09 15:28:27=CDAVFS driver: CDAVFS.UserFiles = C:\Program Files\CyberDefender\AntiVirus
49 09 15:28:27=CDAVFS driver: StartType = 3
50 09 15:28:27=CDAVFS driver: PatPath = "C:\Program Files\CyberDefender\AntiVirus\cdavpat.dat.03"
51 09 15:28:32=C:\Program Files\CyberDefender\AntiVirus\CapiCom.Dll has passed MD5 check and has not been replaced with the identical file from the installation package.
52 09 15:28:33=C:\Program Files\CyberDefender\AntiVirus\uwcdsoe.dll has passed MD5 check and has not been replaced with the identical file from the installation package.
53 09 15:28:33=C:\Program Files\CyberDefender\AntiVirus\uwhook32.dll has passed MD5 check and has not been replaced with the identical file from the installation package.
54 09 15:28:34=C:\Program Files\CyberDefender\InstallModule\AntiSpam\CSIDL_PROGRAM_FILES\earlySpam\cdaspm.dll has passed MD5 check and has not been replaced with the identical file from the installation package.
55 09 15:28:34=C:\Program Files\CyberDefender\InstallModule\AntiSpam\CSIDL_PROGRAM_FILES\earlySpam\oeapiinitcom.dll has passed MD5 check and has not been replaced with the identical file from the installation package.
56 09 15:28:34=C:\Program Files\CyberDefender\InstallModule\AntiSpam\CSIDL_PROGRAM_FILES\earlySpam\oecom.dll has passed MD5 check and has not been replaced with the identical file from the installation package.
57 09 15:28:34=C:\Program Files\CyberDefender\InstallModule\AntiSpam\CSIDL_PROGRAM_FILES\earlySpam\oestore.dll has passed MD5 check and has not been replaced with the identical file from the installation package.
64 09 15:28:39=***Setup successfully closed EDC***
73 09 15:28:48=InstallSubPath="CyberDefender"
77 09 15:28:48=*** Entering reading the cdinstx_restart key. ***
78 09 15:28:48=*** Exiting reading the cdinstx_restart key. ***
82 09 15:28:49=GoodbyeURL has been set: http://www.cyberdefender.com/uninstallsurvey
83 09 15:28:49=System Temp Directory: c:\docume~1\owner\locals~1\temp\cd3.tmp
84 09 15:28:49=Application Path: c:\docume~1\owner\locals~1\temp\cd3.tmp\2006 codebase\installers\cdinstaller8\bin\runtime
85 09 15:28:49=Folder(s) (from Temp directory) to be removed:
86 09 15:28:49=rmdir "c:\docume~1\owner\locals~1\temp\cd3.tmp\2006 codebase\installers\cdinstaller8\bin\runtime"

87 09 15:28:49=rmdir "c:\docume~1\owner\locals~1\temp\cd3.tmp\2006 codebase\installers\cdinstaller8\bin\runtime"
rmdir "c:\docume~1\owner\locals~1\temp\cd3.tmp\2006 codebase\installers\cdinstaller8\bin"

88 09 15:28:49=rmdir "c:\docume~1\owner\locals~1\temp\cd3.tmp\2006 codebase\installers\cdinstaller8\bin\runtime"
rmdir "c:\docume~1\owner\locals~1\temp\cd3.tmp\2006 codebase\installers\cdinstaller8\bin"
rmdir "c:\docume~1\owner\locals~1\temp\cd3.tmp\2006 codebase\installers\cdinstaller8"

89 09 15:28:49=rmdir "c:\docume~1\owner\locals~1\temp\cd3.tmp\2006 codebase\installers\cdinstaller8\bin\runtime"
rmdir "c:\docume~1\owner\locals~1\temp\cd3.tmp\2006 codebase\installers\cdinstaller8\bin"
rmdir "c:\docume~1\owner\locals~1\temp\cd3.tmp\2006 codebase\installers\cdinstaller8"
rmdir "c:\docume~1\owner\locals~1\temp\cd3.tmp\2006 codebase\installers"

90 09 15:28:49=rmdir "c:\docume~1\owner\locals~1\temp\cd3.tmp\2006 codebase\installers\cdinstaller8\bin\runtime"
rmdir "c:\docume~1\owner\locals~1\temp\cd3.tmp\2006 codebase\installers\cdinstaller8\bin"
rmdir "c:\docume~1\owner\locals~1\temp\cd3.tmp\2006 codebase\installers\cdinstaller8"
rmdir "c:\docume~1\owner\locals~1\temp\cd3.tmp\2006 codebase\installers"
rmdir "c:\docume~1\owner\locals~1\temp\cd3.tmp\2006 codebase"

91 09 15:28:49=rmdir "c:\docume~1\owner\locals~1\temp\cd3.tmp\2006 codebase\installers\cdinstaller8\bin\runtime"
rmdir "c:\docume~1\owner\locals~1\temp\cd3.tmp\2006 codebase\installers\cdinstaller8\bin"
rmdir "c:\docume~1\owner\locals~1\temp\cd3.tmp\2006 codebase\installers\cdinstaller8"
rmdir "c:\docume~1\owner\locals~1\temp\cd3.tmp\2006 codebase\installers"
rmdir "c:\docume~1\owner\locals~1\temp\cd3.tmp\2006 codebase"
rmdir "c:\docume~1\owner\locals~1\temp\cd3.tmp"

92 09 15:28:49=Folders (from Temp directory) enumeration - complete.
[ERROR (Thread ID=3976)]
2 09 18:35:36=.
3 09 18:35:36=***************************BEGIN***************************
12 09 18:35:37=TARGETDIR - not defined!
13 09 18:35:37=TARGETDIR - not defined!
[FLOW (Thread ID=3976)]
4 09 18:35:36=.
5 09 18:35:36=***************************BEGIN***************************
8 09 18:35:36=Command Line="C:\Program Files\CyberDefender\cdinstx.exe" /u
10 09 18:35:36=Install Path Detected =
18 09 18:35:37=StartPage: Show=TRUE
19 09 18:35:38=StartPage: Show=FALSE
20 09 18:35:38=UnInstall thread is running...
21 09 18:35:38=ProgressPage: Show=TRUE
23 09 18:35:38=Create Process: "C:\Program Files\CyberDefender\cdinstx.exe" /u "C:\Program Files\CyberDefender\earlySpam\cdinstx.log" /t "CyberDefender Early Detection Center - AntiSpam" /s
81 09 18:35:47=ProgressPage: Show=FALSE
84 09 18:35:52=SuccessPage: Show=FALSE
85 09 18:35:52=Enterng CCDInstallerApp::ExitInstance()
86 09 18:35:52=theApp.m_sRun = . Empty path?!
87 09 18:35:52=Exiting CCDInstallerApp::ExitInstance()
[INFO (Thread ID=3976)]
6 09 18:35:36=.
7 09 18:35:36=***************************BEGIN***************************
9 09 18:35:36=InstallSubPath="CyberDefender"
11 09 18:35:37=Uninstall: Title=
14 09 18:35:37=*cfg.ini detected:
15 09 18:35:37=GoodbyeURL =
16 09 18:35:37=***Uninstall Mode has been detected***
17 09 18:35:37=Dialog caption:
22 09 18:35:38="C:\Program Files\CyberDefender\cdinstx.exe" /u "C:\Program Files\CyberDefender\earlySpam\cdinstx.log" /t "CyberDefender Early Detection Center - AntiSpam" /s uninstall string has been detected.
24 09 18:35:39=Silent Uninstall has been initiated: "C:\Program Files\CyberDefender\cdinstx.exe" /u "C:\Program Files\CyberDefender\earlySpam\cdinstx.log" /t "CyberDefender Early Detection Center - AntiSpam" /s
25 09 18:35:40=HKEY_CURRENT_USER\Software\cdinstx_restart: restart flag has been set to 1
26 09 18:35:40=Reason: C:\PROGRA~1\CYBERD~1\ANTISP~1\CybDefSB.dll
27 09 18:35:40=HKEY_CURRENT_USER\Software\cdinstx_restart: restart flag has been set to 1
28 09 18:35:40=Reason: C:\PROGRA~1\CYBERD~1\ANTISP~1\CYBDEF~1.DLL
29 09 18:35:40=HKEY_CURRENT_USER\Software\cdinstx_restart: restart flag has been set to 1
30 09 18:35:40=Reason: C:\PROGRA~1\CYBERD~1\ANTISP~1\CYBDEF~2.DLL
31 09 18:35:40=HKEY_CURRENT_USER\Software\cdinstx_restart: restart flag has been set to 1
32 09 18:35:40=Reason: C:\PROGRA~1\CYBERD~1\ANTISP~1\uwhttpsr.dll
33 09 18:35:44=HKEY_CURRENT_USER\Software\cdinstx_restart: restart flag has been set to 1
34 09 18:35:44=Reason: C:\PROGRA~1\CYBERD~1\ANTIVI~1\CDAVFS.dll
35 09 18:35:44=HKEY_CURRENT_USER\Software\cdinstx_restart: restart flag has been set to 1
36 09 18:35:44=Reason: C:\PROGRA~1\CYBERD~1\ANTIVI~1\CybDefAV.dll
37 09 18:35:44=HKEY_CURRENT_USER\Software\cdinstx_restart: restart flag has been set to 1
38 09 18:35:44=Reason: C:\PROGRA~1\CYBERD~1\ANTIVI~1\CYBDEF~1.DLL
39 09 18:35:44=HKEY_CURRENT_USER\Software\cdinstx_restart: restart flag has been set to 1
40 09 18:35:44=Reason: C:\PROGRA~1\CYBERD~1\ANTIVI~1\CYBDEF~3.DLL
41 09 18:35:44=HKEY_CURRENT_USER\Software\cdinstx_restart: restart flag has been set to 1
42 09 18:35:44=Reason: C:\PROGRA~1\CYBERD~1\HomePage\CDWebVw.dll
43 09 18:35:44=HKEY_CURRENT_USER\Software\cdinstx_restart: restart flag has been set to 1
44 09 18:35:44=Reason: C:\PROGRA~1\CYBERD~1\EARLYS~1\cdaspm.dll
45 09 18:35:45=HKEY_CURRENT_USER\Software\cdinstx_restart: restart flag has been set to 1
46 09 18:35:45=Reason: C:\PROGRA~1\CYBERD~1\ANTISP~1\cdase.exe
47 09 18:35:45=HKEY_CURRENT_USER\Software\cdinstx_restart: restart flag has been set to 1
48 09 18:35:45=Reason: C:\PROGRA~1\CYBERD~1\ANTISP~1\CONSOL~1.DLL
49 09 18:35:45=HKEY_CURRENT_USER\Software\cdinstx_restart: restart flag has been set to 1
50 09 18:35:45=Reason: C:\PROGRA~1\CYBERD~1\ANTISP~1\INSTAL~1.DLL
51 09 18:35:47=bAllowRemoving = TRUE for registry key Software\CyberDefender\AntiVirus\Install Information
52 09 18:35:47=bAllowRemoving = TRUE for registry key Software\CyberDefender\AntiVirus\Install Information
53 09 18:35:47=bAllowRemoving = TRUE for registry key Software\CyberDefender\AntiSpyware\Install Information
54 09 18:35:47=bAllowRemoving = TRUE for registry key Software\CyberDefender\AntiSpyware\Install Information
55 09 18:35:47=bAllowRemoving = TRUE for registry key SOFTWARE\CyberDefender\AntiSpyware
56 09 18:35:47=bAllowRemoving = TRUE for registry key Software\CyberDefender\AntiSpyware
57 09 18:35:47=bAllowRemoving = TRUE for registry key SOFTWARE\CyberDefender\AntiVirus
58 09 18:35:47=bAllowRemoving = TRUE for registry key Software\CyberDefender\AntiVirus
59 09 18:35:47=bAllowRemoving = TRUE for registry key SYSTEM\CurrentControlSet\Services\CDAVFS
60 09 18:35:47=bAllowRemoving = TRUE for registry key SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{AC5352DA-F4F2-4A59-A1BF-41546342746B}
61 09 18:35:47=bAllowRemoving = TRUE for registry key SOFTWARE\WsLiveUp
62 09 18:35:47=bAllowRemoving = TRUE for registry key SOFTWARE\WsLiveUp
63 09 18:35:47=bAllowRemoving = TRUE for registry key SOFTWARE\eBlocsKeepSafe
64 09 18:35:47=bAllowRemoving = TRUE for registry key SOFTWARE\CybDefKeepSafe
65 09 18:35:47=bAllowRemoving = TRUE for registry key SOFTWARE\CyberDefender
66 09 18:35:47=bAllowRemoving = TRUE for registry key SOFTWARE\CyberDefender
67 09 18:35:47=bAllowRemoving = TRUE for registry key SOFTWARE\eBlocs
68 09 18:35:47=bAllowRemoving = TRUE for registry key SOFTWARE\ebc
69 09 18:35:47=bAllowRemoving = TRUE for registry key SOFTWARE\Classes\AppID\EDCConfig.EXE
70 09 18:35:47=bAllowRemoving = TRUE for registry key SOFTWARE\Classes\AppID\{0F0ED099-0402-4CF8-8A74-520F0ED354DF}
71 09 18:35:47=bAllowRemoving = TRUE for registry key SOFTWARE\Classes\CLSID\{5E53AE00-5746-475E-8F7F-4EA85A1BC7A4}
72 09 18:35:47=bAllowRemoving = TRUE for registry key SOFTWARE\Classes\CLSID\{CEF3D8E2-7497-48d8-B574-DA1C4AB22B93}
73 09 18:35:47=bAllowRemoving = TRUE for registry key SOFTWARE\Classes\CyberDefender.EDCConfigWizard
74 09 18:35:47=bAllowRemoving = TRUE for registry key SOFTWARE\Classes\CyberDefender.EDCConfigWizard.1
75 09 18:35:47=bAllowRemoving = TRUE for registry key SOFTWARE\Classes\Interface\{95888CF7-CF1A-4CBF-86C4-467EDEDA7ECD}
76 09 18:35:47=bAllowRemoving = TRUE for registry key TypeLib\{EE3739AE-27BB-48BE-BD79-E820389BD8C0}
77 09 18:35:47=bAllowRemoving = TRUE for registry key CLSID\{F6DCBA17-D2E9-430E-8D6F-83198004F674}
78 09 18:35:47=bAllowRemoving = TRUE for registry key CLSID\{D197ACF1-13C9-4C0C-B1CF-E868EAF58531}
79 09 18:35:47=bAllowRemoving = TRUE for registry key TypeLib\{AD4E8864-245A-4C8D-BE59-23A6C9DD54AA}
80 09 18:35:47=Installer Exe self-removing has NOT been initiated (bDeleteBF = FALSE)
82 09 18:35:47=*** Entering reading the cdinstx_restart key. ***
83 09 18:35:47=*** Exiting reading the cdinstx_restart key. ***
[ERROR (Thread ID=4000)]
2 09 18:35:38=.
3 09 18:35:38=***************************BEGIN***************************
[FLOW (Thread ID=4000)]
4 09 18:35:38=.
5 09 18:35:38=***************************BEGIN***************************
8 09 18:35:38=Command Line="C:\Program Files\CyberDefender\cdinstx.exe" /u "C:\Program Files\CyberDefender\earlySpam\cdinstx.log" /t "CyberDefender Early Detection Center - AntiSpam" /s
10 09 18:35:38=Install Path Detected =
15 09 18:35:38=UnInstall thread is running...
16 09 18:35:38=StartPage: Show=TRUE
19 09 18:35:39=StartPage: Show=FALSE
20 09 18:35:39=ProgressPage: Show=FALSE
23 09 18:35:39=SuccessPage: Show=TRUE
24 09 18:35:39=Enterng CCDInstallerApp::ExitInstance()
25 09 18:35:39=theApp.m_sRun = . Empty path?!
26 09 18:35:39=Exiting CCDInstallerApp::ExitInstance()
[INFO (Thread ID=4000)]
6 09 18:35:38=.
7 09 18:35:38=***************************BEGIN***************************
9 09 18:35:38=InstallSubPath="CyberDefender"
11 09 18:35:38=GoodbyeURL =
12 09 18:35:38=***Uninstall Mode has been detected***
13 09 18:35:38=Dialog caption:
17 09 18:35:39=bAllowRemoving = TRUE for registry key SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{AA63780B-DDB7-417b-8A13-E5AFBE08E807}
18 09 18:35:39=Installer Exe self-removing has NOT been initiated (bDeleteBF = FALSE)
21 09 18:35:39=*** Entering reading the cdinstx_restart key. ***
22 09 18:35:39=*** Exiting reading the cdinstx_restart key. ***


ten soubor co se mi tam ještě objevil má název tmp a je to udajně dávkový soubor pro systém MS-DOC, ale netuším co to má znamenat :-(

s.stene.e
nováček
Příspěvky: 25
Registrován: únor 08
Pohlaví: Nespecifikováno
Stav:
Offline
Kontakt:

Příspěvekod s.stene.e » 13 úno 2008 16:56

ještě dodatek:

když se pokusím zpustit ten prgram co se objevil, tak se objeví ta modrá obrazovka a počítač se zrestartuje a i když obrazovku předtím "vyfotím" tak jako by se mi ten "zásobník" tím restartováním vymaže

počítač mi pořád hlásí hlášku, že je systém obnoven po závažné chybě a tady jsou podle něj vadné soubory, prolém je v tom, že mám takový pocit, že se číslo u prvního souboru (myslím konec čísla tj. za pomlčkou) zvyšuje a druhý soubor podle vyledáání vůbec není v počítači

C:\DOCUME~1\Owner\LOCALS~1\Temp\WER82be.dir00\Mini021308-09.dmp
C:\DOCUME~1\Owner\LOCALS~1\Temp\WER82be.dir00\sysdata.xml

Uživatelský avatar
Baron Prášil
Master Level 7
Master Level 7
Příspěvky: 4882
Registrován: červen 06
Pohlaví: Muž
Stav:
Offline

Příspěvekod Baron Prášil » 13 úno 2008 18:15

tohle vůbec není pro tuto sekci a tady by si se načekal.máš problémy s hardvérem a to tipnul bych HDD.
takže si najdi dobrou HW sekci a hoď tam ten problém a pohledej tam nějaké testy hdd
doporučím HD Tune asi jako základ :wink:


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 120 hostů