Stránka 1 z 3

Critical Error ve windows 2

Napsal: 21 črc 2008 20:18
od propi
//Téma rozděleno. Příště si založ prosím tě vlastní téma, i kdyby jsi měl stejný problém jako se řešil v daném tématu.
fredik


Čaute ... mohl by mi prosím někdo poradit?Nevím,jak jsem k tomu přišel,ale začala se mi objevovat tabulka skoro při každém otevření nějaké složky na disku a je na ní napsáno:

----------------------------------------------------------------------------------------------------------
Critical Error!

Attention, .... Some dangerous viruses detected in your system.
Windows Vista (TM) Ultimate files corrupted.
This may lead to the destruction of important files in C:\Windows.
Download protection software now!

Click OK to download the antispayware. (Recommended)

Ano Ne
----------------------------------------------------------------------------------------------------------

... ať dám Ano nebo Ne,vždycky se mi spustí nějaká stránka ve Firefoxu a tu hned zablokuje Eset Smart Security. Když jsem dal sken celého počítače,tak nic nenašel.Mám taky Ad-aware 2008 a ten taky nic nenašel.
Nevíte někdo,jak se toho mám zbavit?
Dík ;-)


muj hijackthis ...... ZDE !

Logfile of HijackThis v1.99.1
Scan saved at 20:14:54, on 21.7.2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe
C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Spyware Terminator\sp_rsser.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe
C:\WINDOWS\vsnpstd2.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\RocketDock\RocketDock.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\QIP\qip.exe
C:\Program Files\BitLord\BitLord.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
C:\DOCUME~1\Luky\LOCALS~1\Temp\Rar$EX00.032\HijackThis.exe
C:\Program Files\WinRar\WinRAR.exe
C:\DOCUME~1\Luky\LOCALS~1\Temp\Rar$EX00.421\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.qip.ru
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://ar.atwola.com/redir/B0/A4MZaGrjo ... _admin.php
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: (no name) - {855F3B16-6D32-4fe6-8A56-BBB695989046} - (no file)
R3 - URLSearchHook: (no name) - {b69a9db4-d0a1-4722-b56b-f20757a29cdf} - (no file)
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Megaupload Toolbar - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - C:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLL
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - (no file)
O2 - BHO: (no name) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - (no file)
O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - (no file)
O2 - BHO: search toolbar - {7D76D0EB-AE56-4DF4-AFFC-20AFF4344AC6} - C:\WINDOWS\system32\tbsrch.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: (no name) - {855F3B16-6D32-4fe6-8A56-BBB695989046} - (no file)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Megaupload Toolbar - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - C:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLL
O3 - Toolbar: (no name) - {b69a9db4-d0a1-4722-b56b-f20757a29cdf} - (no file)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - (no file)
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SpywareTerminator] "C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe"
O4 - HKLM\..\Run: [SNPSTD2] C:\WINDOWS\vsnpstd2.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKCU\..\Run: [RocketDock] "C:\Program Files\RocketDock\RocketDock.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Service Manager.lnk = C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
O8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm
O8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - D:\Záloha Milan\Luky\Programy\ICQLite\ICQLite.exe
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - D:\Záloha Milan\Luky\Programy\ICQLite\ICQLite.exe
O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.2.1.2.dll/206 (file missing)
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: dimsntfy - C:\WINDOWS\
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: Capture Device Service - InterVideo Inc. - C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Spyware Terminator Clam Service (sp_clamsrv) - Crawler.com - C:\Program Files\WinClamAVShield\sp_clamsrv.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe

:huh: :huh: prosíím poradte uz nevíím co s tim piste na ICQ 380 952 353 nebo na mejl propi.11@seznam.cz nebo sem do forum prosim ... predem diky !!!! :bigups:

Re: Critical Error ve windows 2

Napsal: 21 črc 2008 21:04
od fredik
Vítej na fóru

Před použitím ComboFix udělej následující kroky:

Vypni rezidentní štít ve Spyware Terminátoru:
Spusť Spywater Terminátora, nahoře klikni na ikonu Rezidentní štít
- program se přepne do okna Natavení rezidentního štítu
- tam na záložce Nastavení štítu zruš zatržení u položky: Aktivovat Rezidentní štít
- klikni dole na tlačítko: Uložit změny
- zavři program

vypni rez. ochranu u SpyBota:
- spusť Spybot - Search & Destroy
- nahoře v menu zvol: Režim => Pro pokročilé
- objeví se ti varovné okno kde zvol Ano
- okno programu se ti přepne do pokročilého zobrazení a tam zvol: Nástroje => Rezidentní
- tam zruš zatržení pokud bude u položky: Rezidentní program "TeaTimer" (Ochrana ...)
Obrázek
- zavři program
Restartuj PC.

Pak si stáhni ComboFix (by sUBs) a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah

Btw. Používáš ještě něco od Symantecu?

Re: Critical Error ve windows 2

Napsal: 22 črc 2008 10:18
od propi
ps : od symantecu nic nepoužívám ....



zde je muj Log !



ComboFix 08-07-21.1 - Luky 2008-07-22 9:53:58.1 - NTFSx86
Systém Microsoft Windows XP Professional 5.1.2600.2.1250.1.1029.18.621 [GMT 2:00]
Running from: C:\Documents and Settings\Luky\Plocha\ComboFix.exe
* Created a new restore point

WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\update.exe
C:\WINDOWS\Downloaded Program Files\setup.inf
C:\WINDOWS\system32\_006089_.tmp.dll
C:\WINDOWS\system32\_006090_.tmp.dll
C:\WINDOWS\system32\_006091_.tmp.dll
C:\WINDOWS\system32\_006092_.tmp.dll
C:\WINDOWS\system32\_006099_.tmp.dll
C:\WINDOWS\system32\_006100_.tmp.dll
C:\WINDOWS\system32\_006101_.tmp.dll
C:\WINDOWS\system32\_006102_.tmp.dll
C:\WINDOWS\system32\_006104_.tmp.dll
C:\WINDOWS\system32\_006105_.tmp.dll
C:\WINDOWS\system32\_006108_.tmp.dll
C:\WINDOWS\system32\_006109_.tmp.dll
C:\WINDOWS\system32\_006111_.tmp.dll
C:\WINDOWS\system32\_006112_.tmp.dll
C:\WINDOWS\system32\_006113_.tmp.dll
C:\WINDOWS\system32\_006115_.tmp.dll
C:\WINDOWS\system32\_006118_.tmp.dll
C:\WINDOWS\system32\_006119_.tmp.dll
C:\WINDOWS\system32\_006123_.tmp.dll
C:\WINDOWS\system32\_006124_.tmp.dll
C:\WINDOWS\system32\_006126_.tmp.dll
C:\WINDOWS\system32\_006129_.tmp.dll
C:\WINDOWS\system32\_006131_.tmp.dll
C:\WINDOWS\system32\_006132_.tmp.dll
C:\WINDOWS\system32\_006133_.tmp.dll
C:\WINDOWS\system32\_006134_.tmp.dll
C:\WINDOWS\system32\_006135_.tmp.dll
C:\WINDOWS\system32\_006138_.tmp.dll
C:\WINDOWS\system32\_006139_.tmp.dll
C:\WINDOWS\system32\_006140_.tmp.dll
C:\WINDOWS\system32\_006141_.tmp.dll
C:\WINDOWS\system32\_006142_.tmp.dll
C:\WINDOWS\system32\_006147_.tmp.dll
C:\WINDOWS\system32\_006149_.tmp.dll

.
((((((((((((((((((((((((( Files Created from 2008-06-22 to 2008-07-22 )))))))))))))))))))))))))))))))
.

2008-07-21 20:32 . 2008-07-21 20:32 54,156 --ah----- C:\WINDOWS\QTFont.qfn
2008-07-21 20:32 . 2008-07-21 20:32 1,409 --a------ C:\WINDOWS\QTFont.for
2008-07-21 20:18 . 2008-07-21 20:18 241 --a------ C:\Documents and Settings\Luky\SR.vbs
2008-07-21 18:40 . 2008-07-21 18:40 <DIR> d-------- C:\WINDOWS\E80F62FF5D3C4A1984099721F2928206.TMP
2008-07-20 19:51 . 2008-07-20 19:51 <DIR> d-------- C:\Program Files\Yahoo!
2008-07-20 19:51 . 2008-07-21 18:40 <DIR> d-------- C:\Program Files\Symantec
2008-07-20 18:59 . 2008-07-20 18:59 <DIR> d-------- C:\Program Files\Spybot - Search & Destroy
2008-07-20 16:42 . 2008-07-20 16:42 17,920 --a------ C:\WINDOWS\system32\toolbarsrch.dll
2008-07-05 22:24 . 2008-07-05 22:24 <DIR> d-------- C:\Documents and Settings\Luky\dwhelper
2008-07-05 19:09 . 2008-07-05 21:53 <DIR> d-------- C:\Program Files\Weather Watcher
2008-07-05 19:09 . 2004-05-27 02:32 102,400 --a------ C:\WINDOWS\system32\unzip32.dll
2008-07-05 18:41 . 2008-07-05 18:41 28,824 --a------ C:\img2-001.raw
2008-07-01 09:12 . 2007-09-28 17:42 1,307,469,824 -ra------ C:\rnt-fi08.iso
2008-07-01 08:15 . 2008-07-01 08:16 <DIR> d-------- C:\Program Files\QuickTime
2008-07-01 08:14 . 2008-07-01 08:14 <DIR> d-------- C:\Program Files\Apple Software Update
2008-07-01 08:09 . 2008-07-01 13:27 <DIR> d-------- C:\Program Files\Glyph2
2008-07-01 08:05 . 2008-07-01 08:08 <DIR> d-------- C:\Program Files\Glyph
2008-07-01 08:05 . 2005-09-04 17:01 1,056,768 --a------ C:\WINDOWS\system32\freeimage.dll
2008-07-01 08:05 . 2003-01-26 13:41 40,960 --a------ C:\WINDOWS\system32\SSubTmr6.dll
2008-06-29 18:35 . 2008-06-29 19:17 <DIR> d-------- C:\Program Files\Microsoft Games
2008-06-28 19:15 . 2008-06-28 19:15 <DIR> d-------- C:\Program Files\Free YouTube to iPod Converter
2008-06-26 23:30 . 2008-07-05 13:56 <DIR> d-------- C:\Downloads
2008-06-26 17:25 . 2008-06-26 17:28 <DIR> d-------- C:\Program Files\Live_TV
2008-06-26 13:54 . 2008-06-26 16:00 <DIR> d-------- C:\Program Files\FreeDVDRipper
2008-06-26 13:54 . 2008-06-26 13:54 65 --a------ C:\ioY.ini
2008-06-25 20:08 . 2008-06-25 20:26 0 --a------ C:\WINDOWS\system32\video.avs
2008-06-25 19:37 . 2008-06-25 19:37 <DIR> d-------- C:\Program Files\Avex
2008-06-24 17:44 . 2008-06-24 17:44 <DIR> d-------- C:\Documents and Settings\Luky\PsiData

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-07-22 07:41 --------- d-----w C:\Program Files\Spyware Terminator
2008-07-21 23:58 --------- d-----w C:\Program Files\DC++
2008-07-21 16:41 --------- d-----w C:\Program Files\Common Files\Symantec Shared
2008-07-21 16:28 --------- d-----w C:\Program Files\AIMP2
2008-07-05 10:36 --------- d-----w C:\Program Files\QIP
2008-07-01 11:27 --------- d-----w C:\Program Files\ImTOO
2008-07-01 06:23 --------- d-----w C:\Program Files\Sony
2008-07-01 06:12 --------- d-----w C:\Program Files\Sony Setup
2008-06-29 19:42 --------- d-----w C:\Program Files\WM Converter
2008-06-29 12:11 --------- d-----w C:\Program Files\Skype
2008-06-25 18:08 --------- d-----w C:\Program Files\Plato DVD to PSP Converter
2008-06-24 19:37 --------- d-----w C:\Program Files\Common Files\DVDVideoSoft
2008-06-24 15:26 --------- d-----w C:\Program Files\DVDVideoSoft
2008-06-21 16:42 --------- d-----w C:\Program Files\XnView
2008-06-21 16:32 796,672 ----a-w C:\WINDOWS\GPInstall.exe
2008-06-21 16:32 --------- d-----w C:\Program Files\DExUS
2008-06-20 05:58 --------- d-----w C:\Program Files\Garena
2008-06-20 05:52 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-06-20 05:31 --------- d-----w C:\Program Files\GamePark
2008-06-18 10:38 --------- d-----w C:\Program Files\Common Files\Stardock
2008-06-18 10:35 --------- d-----w C:\Program Files\Java
2008-06-17 14:45 --------- d-----w C:\Program Files\Pidgin
2008-06-17 14:44 --------- d-----w C:\Program Files\Common Files\GTK
2008-06-17 11:57 --------- d-----w C:\Program Files\PhotoFiltre
2008-06-17 11:37 --------- d-----w C:\Program Files\Opanda
2008-06-17 11:09 --------- d-----w C:\Program Files\Common Files\ACD Systems
2008-06-17 11:05 --------- d-----w C:\Program Files\IrfanView
2008-06-16 08:48 --------- d-----w C:\Program Files\Tinynice Software
2008-06-16 08:44 --------- d-----w C:\Program Files\Fx Text Talker
2008-06-14 18:00 272,128 ------w C:\WINDOWS\system32\drivers\bthport.sys
2008-06-09 05:20 --------- d-----w C:\Program Files\PPMate
2008-06-08 08:20 --------- d-----w C:\Program Files\i-Sound Pro
2008-06-07 22:06 --------- d-----w C:\Program Files\Crystal Software
2008-06-07 09:09 --------- d-----w C:\Program Files\r2 Studios
2008-06-07 08:53 --------- d-----w C:\Program Files\Winamp
2008-06-06 18:40 --------- d-----w C:\Program Files\ICQLite
2008-05-31 19:08 --------- d-----w C:\Program Files\AviSynth 2.5
2008-05-29 15:35 --------- d-----w C:\Program Files\Windows Live
2008-05-29 15:34 --------- dcsh--w C:\Program Files\Common Files\WindowsLiveInstaller
2008-05-28 19:09 --------- d-----w C:\Program Files\BitLord
2008-05-27 14:45 --------- d-----w C:\Program Files\MegauploadToolbar
2008-05-26 16:02 --------- d-----w C:\Program Files\ICQToolbar
2008-05-25 12:00 --------- d-----w C:\Program Files\RocketDock
2008-05-25 08:45 --------- d-----w C:\Program Files\True Transparency
2008-05-25 07:44 --------- d-----w C:\Program Files\SPMT
2008-05-22 14:29 --------- d-----w C:\Program Files\TotalAudioConverter
2008-03-19 16:09 234,842 --sh--w C:\WINDOWS\Resources\Themes\DameK UltraBlue\irunin.dat
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RocketDock"="C:\Program Files\RocketDock\RocketDock.exe" [2007-09-02 13:58 495616]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-17 15:49 15360]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="C:\WINDOWS\System32\NvCpl.dll" [2006-10-22 12:22 7700480]
"NvMediaCenter"="C:\WINDOWS\System32\NvMcTray.dll" [2006-10-22 12:22 86016]
"SpywareTerminator"="C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe" [2007-08-29 16:08 2778112]
"SNPSTD2"="C:\WINDOWS\vsnpstd2.exe" [2004-06-10 11:54 286720]
"NeroFilterCheck"="C:\WINDOWS\system32\NeroCheck.exe" [2001-07-09 11:50 155648]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2007-03-14 19:05 257088]
"RemoteControl"="C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" [2004-11-02 20:24 32768]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2007-06-29 06:24 286720]
"nwiz"="nwiz.exe" [2006-10-22 12:22 1622016 C:\WINDOWS\system32\nwiz.exe]
"SoundMan"="SOUNDMAN.EXE" [2003-08-05 07:59 57344 C:\WINDOWS\SOUNDMAN.EXE]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [2004-08-17 15:49 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon]
"UIHost"="C:\\WINDOWS\\system32\\logonuiX.exe"

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"vidc.iv31"= C:\WINDOWS\system32\ir32_32.dll
"vidc.iv32"= C:\WINDOWS\system32\ir32_32.dll
"VIDC.ACDV"= ACDV.dll

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"C:\\Program Files\\Messenger\\msmsgs.exe"=
"C:\\Program Files\\DC++\\DCPlusPlus.exe"=
"C:\\Program Files\\NetMeeting\\conf.exe"=
"C:\\Program Files\\iTunes\\iTunes.exe"=
"C:\\Program Files\\uTorrent\\utorrent.exe"=
"C:\\WINDOWS\\system32\\dplaysvr.exe"=
"C:\\Program Files\\QIP\\qip.exe"=
"C:\\Program Files\\Mozilla Firefox\\firefox.exe"=
"C:\\Program Files\\Trillian\\trillian.exe"=
"C:\\WINDOWS\\system32\\dpvsetup.exe"=
"C:\\Program Files\\TVAnts\\Tvants.exe"=
"C:\\Program Files\\TVUPlayer\\TVUPlayer.exe"=
"C:\\Program Files\\PPMate\\PPMate\\ppmate.exe"=
"C:\\Program Files\\PPMate\\ppamnet.exe"=
"C:\\Program Files\\SopCast\\SopCast.exe"=
"C:\\Program Files\\SopCast\\adv\\SopAdver.exe"=
"C:\\Program Files\\Azureus\\Azureus.exe"=
"C:\\Program Files\\BitComet\\BitComet.exe"=
"C:\\Program Files\\WIP Miranda IM 1.7.1\\miranda32.exe"=
"C:\\Program Files\\BitLord\\BitLord.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=
"C:\\Program Files\\Microsoft Games\\Age of Empires II\\empires2.exe"=
"C:\\Program Files\\Windows Media Player\\wmplayer.exe"=
"C:\\Program Files\\Sony\\Media Manager for PSP 2.5\\MediaManager.exe"=
"C:\\Program Files\\Skype\\Phone\\Skype.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"22270:TCP"= 22270:TCP:BitComet 22270 TCP
"22270:UDP"= 22270:UDP:BitComet 22270 UDP
"1976:UDP"= 1976:UDP:Windows Media Format SDK (wmplayer.exe)
"1977:UDP"= 1977:UDP:Windows Media Format SDK (wmplayer.exe)
"1978:UDP"= 1978:UDP:Windows Media Format SDK (wmplayer.exe)

R0 hotcore;hotcore;C:\WINDOWS\system32\drivers\hotcore.sys [2006-06-20 10:04]
R0 sfdrv01a;StarForce Protection Environment Driver (version 1.x.a);C:\WINDOWS\system32\drivers\sfdrv01a.sys [2006-07-05 14:46]
R0 sfsync03;StarForce Protection Synchronization Driver (version 3.x);C:\WINDOWS\system32\drivers\sfsync03.sys [2005-10-13 15:46]
R1 aswSP;avast! Self Protection;C:\WINDOWS\system32\drivers\aswSP.sys [2008-05-16 01:20]
R1 sp_rsdrv2;Spyware Terminator Driver 2;C:\WINDOWS\system32\drivers\sp_rsdrv2.sys [2007-08-29 16:29]
R2 aswFsBlk;aswFsBlk;C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2008-05-16 01:16]
R3 PSched;Plánovač paketů technologie QoS;C:\WINDOWS\system32\DRIVERS\psched.sys [2004-08-03 23:04]
R3 snpstd2;VideoCAM Look;C:\WINDOWS\system32\DRIVERS\snpstd2.sys [2004-07-28 11:49]
S3 npkycryp;npkycryp;D:\Záloha Milan\Luky\Hry\Gravity\RO\npkycryp.sys []
.
Contents of the 'Scheduled Tasks' folder
"2008-06-13 15:15:00 C:\WINDOWS\Tasks\1-Click Maintenance.job"
- C:\Program Files\TuneUp Utilities 2006\SystemOptimizer.exe
"2008-07-21 13:54:03 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
"2008-06-20 13:00:00 C:\WINDOWS\Tasks\Norton Security Scan.job"
- C:\Program Files\Norton Security Scan\Nss.exe
.
- - - - ORPHANS REMOVED - - - -

BHO-{7D76D0EB-AE56-4DF4-AFFC-20AFF4344AC6} - C:\WINDOWS\system32\tbsrch.dll
HKLM-Run-NWEReboot - (no file)
Notify-dimsntfy - (no file)


.
------- Supplementary Scan -------
.
R0 -: HKCU-Main,Start Page = hxxp://start.qip.ru
R0 -: HKLM-Main,Start Page = hxxp://home.sweetim.com
R1 -: HKCU-Internet Connection Wizard,ShellNext = hxxp://ar.atwola.com/redir/B0/A4MZaGrjo ... _admin.php
O8 -: &D&ownload &with BitComet - C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 -: &D&ownload all video with BitComet - C:\Program Files\BitComet\BitComet.exe/AddVideo.htm
O8 -: &D&ownload all with BitComet - C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O8 -: E&xportovat do aplikace Microsoft Excel - C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 -: {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.2.1.2.dll/206


**************************************************************************

catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-07-22 10:02:03
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------

PROCESS: C:\WINDOWS\explorer.exe
-> C:\Program Files\RocketDock\RocketDock.dll
.
------------------------ Other Running Processes ------------------------
.
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe
C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Spyware Terminator\sp_rsser.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\SoftwareDistribution\Download\670f65b4beba72d9da6c0847dce9968a\update\update.exe
.
**************************************************************************
.
Completion time: 2008-07-22 10:15:14 - machine was rebooted
ComboFix-quarantined-files.txt 2008-07-22 08:15:02

Pre-Run: 3,610,976,256
Post-Run: 4,495,085,568

265 --- E O F --- 2008-06-21 10:53:48

Re: Critical Error ve windows 2

Napsal: 22 črc 2008 12:57
od propi
hej frediku nwm jak si to dokazal :D ale uz je to v pohodě asi .... moc díky fakt uz me to hodne štvalo ale ted uz se mi to neotevira moc díky !!!!!!! ses fakt frajer :D

Re: Critical Error ve windows 2

Napsal: 22 črc 2008 18:56
od fredik
Na kompletní odinstalovaní pozůstatků po Symantcu zkus použit tento nástroj: Norton Removal Tool

* * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * *

Opět vypni již zmíněné rezidenty a udělej toto:

Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok)
Zkopíruj do něj následující celý text označený zeleně:
Poznámka: Nepoužij k označení skriptu funkci VYBRAT VŠE

Kód: Vybrat vše

File::
C:\WINDOWS\system32\toolbarsrch.dll

Registry::
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000000
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=-
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=-

Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.

Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť
Obrázek
- Automaticky se spustí ComboFix (Pc se ti pak restartuje tak se nelekni)
- Vlož sem log, který vyběhne v závěru čistícího procesu

* * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * *

Vypni si v nastavení Spyware Terminátora integrovaný ClamAntivirus a pak udělej toto:

Jdi přes Start -> Spustit... otevře se ti okno kde do volného řádku napiš/zkopíruj postupně příkazy označené tučně:
sc config sp_clamsrv start= disabled
klikni buď na tlačítko OK nebo dej Enter
pak tam zkopíruj tento příkaz
sc stop sp_clamsrv
a zase buď klikni na tlačítko OK nebo dej Enter

* * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * *

Používáš starší verzi HijackThis, stáhni si aktuální verzi zde a tu starou před použitím vymaž a dej sem pak zároveň z něho nový log.

Re: Critical Error ve windows 2

Napsal: 22 črc 2008 20:39
od propi
musím to dělat když už je vše v pořádku ??? :? :?

Re: Critical Error ve windows 2

Napsal: 22 črc 2008 21:18
od fredik
Nemusíš záleží na tobě, ale máš tam nekompletně odinstalovaného Nortona, všechno nebylo komplet odstraněno .... + ještě tam jsou některé další věci na dořešení.

Re: Critical Error ve windows 2

Napsal: 22 črc 2008 21:41
od propi
ty rezidenty mam tedy vypnout znovu takhle????????

------------------------------------>>>>>
.... Vypni rezidentní štít ve Spyware Terminátoru:
Spusť Spywater Terminátora, nahoře klikni na ikonu Rezidentní štít
- program se přepne do okna Natavení rezidentního štítu
- tam na záložce Nastavení štítu zruš zatržení u položky: Aktivovat Rezidentní štít
- klikni dole na tlačítko: Uložit změny
- zavři program

vypni rez. ochranu u SpyBota:
- spusť Spybot - Search & Destroy
- nahoře v menu zvol: Režim => Pro pokročilé
- objeví se ti varovné okno kde zvol Ano
- okno programu se ti přepne do pokročilého zobrazení a tam zvol: Nástroje => Rezidentní
- tam zruš zatržení pokud bude u položky: Rezidentní program "TeaTimer" (Ochrana ...)
Obrázek
- zavři program
Restartuj PC.

<<<<<<<<<<---------------------------------------

??????????

a potom pokracovat podle dalsich pokynu ???

Re: Critical Error ve windows 2

Napsal: 22 črc 2008 22:21
od fredik
Pokud je máš zapnuté tak jo.

Re: Critical Error ve windows 2

Napsal: 23 črc 2008 10:23
od propi
tak zde je Log ----->>>


ComboFix 08-07-21.1 - Luky 2008-07-23 10:09:15.2 - NTFSx86
Systém Microsoft Windows XP Professional 5.1.2600.2.1250.1.1029.18.575 [GMT 2:00]
Running from: C:\Documents and Settings\Luky\Plocha\ComboFix.exe
Command switches used :: C:\Documents and Settings\Luky\Plocha\CFScript.txt
* Created a new restore point

WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!

FILE ::
C:\WINDOWS\system32\toolbarsrch.dll
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\WINDOWS\system32\toolbarsrch.dll

.
((((((((((((((((((((((((( Files Created from 2008-06-23 to 2008-07-23 )))))))))))))))))))))))))))))))
.

2008-07-22 23:19 . 2008-07-22 23:19 <DIR> d-------- C:\Program Files\ICQToolbar
2008-07-22 23:18 . 2008-07-22 23:20 <DIR> d-------- C:\Documents and Settings\Luky\Data aplikací\ICQ
2008-07-21 20:27 . 2008-07-21 20:27 <DIR> d-------- C:\Documents and Settings\Luky\Data aplikací\Yahoo!
2008-07-21 20:18 . 2008-07-21 20:18 241 --a------ C:\Documents and Settings\Luky\SR.vbs
2008-07-21 18:40 . 2008-07-21 18:40 <DIR> d-------- C:\WINDOWS\E80F62FF5D3C4A1984099721F2928206.TMP
2008-07-21 11:18 . 2008-07-21 11:18 <DIR> d-------- C:\Documents and Settings\Milan\Data aplikací\Yahoo!
2008-07-21 11:18 . 2008-07-21 11:18 <DIR> d-------- C:\Documents and Settings\All Users\Data aplikací\Yahoo! Companion
2008-07-21 11:13 . 2008-07-21 11:13 <DIR> d-------- C:\Documents and Settings\Milan\Data aplikací\Symantec
2008-07-20 19:51 . 2008-07-20 19:51 <DIR> d-------- C:\Program Files\Yahoo!
2008-07-20 19:51 . 2008-07-21 18:40 <DIR> d-------- C:\Program Files\Symantec
2008-07-20 19:51 . 2008-07-21 18:40 <DIR> d-------- C:\Documents and Settings\All Users\Data aplikací\Symantec
2008-07-20 19:47 . 2008-07-20 20:00 <DIR> d-------- C:\Documents and Settings\Luky\Data aplikací\Symantec
2008-07-20 18:59 . 2008-07-20 18:59 <DIR> d-------- C:\Program Files\Spybot - Search & Destroy
2008-07-20 18:59 . 2008-07-20 19:22 <DIR> d-------- C:\Documents and Settings\All Users\Data aplikací\Spybot - Search & Destroy
2008-07-05 22:24 . 2008-07-05 22:24 <DIR> d-------- C:\Documents and Settings\Luky\dwhelper
2008-07-05 19:10 . 2008-07-05 19:10 <DIR> d-------- C:\Documents and Settings\Luky\Data aplikací\WeatherWatcher
2008-07-05 19:09 . 2008-07-05 21:53 <DIR> d-------- C:\Program Files\Weather Watcher
2008-07-05 19:09 . 2004-05-27 02:32 102,400 --a------ C:\WINDOWS\system32\unzip32.dll
2008-07-05 18:41 . 2008-07-05 18:41 28,824 --a------ C:\img2-001.raw
2008-07-01 09:12 . 2007-09-28 17:42 1,307,469,824 -ra------ C:\rnt-fi08.iso
2008-07-01 08:15 . 2008-07-01 08:16 <DIR> d-------- C:\Program Files\QuickTime
2008-07-01 08:14 . 2008-07-01 08:14 <DIR> d-------- C:\Program Files\Apple Software Update
2008-07-01 08:14 . 2008-07-01 08:14 <DIR> d-------- C:\Documents and Settings\All Users\Data aplikací\Apple
2008-07-01 08:09 . 2008-07-01 13:27 <DIR> d-------- C:\Program Files\Glyph2
2008-07-01 08:05 . 2008-07-01 08:08 <DIR> d-------- C:\Program Files\Glyph
2008-07-01 08:05 . 2005-09-04 17:01 1,056,768 --a------ C:\WINDOWS\system32\freeimage.dll
2008-07-01 08:05 . 2003-01-26 13:41 40,960 --a------ C:\WINDOWS\system32\SSubTmr6.dll
2008-06-29 18:35 . 2008-06-29 19:17 <DIR> d-------- C:\Program Files\Microsoft Games
2008-06-28 19:15 . 2008-06-28 19:15 <DIR> d-------- C:\Program Files\Free YouTube to iPod Converter
2008-06-26 23:30 . 2008-07-05 13:56 <DIR> d-------- C:\Downloads
2008-06-26 17:25 . 2008-06-26 17:28 <DIR> d-------- C:\Program Files\Live_TV
2008-06-26 13:54 . 2008-06-26 16:00 <DIR> d-------- C:\Program Files\FreeDVDRipper
2008-06-26 13:54 . 2008-06-26 13:54 65 --a------ C:\ioY.ini
2008-06-25 20:08 . 2008-06-25 20:26 0 --a------ C:\WINDOWS\system32\video.avs
2008-06-25 19:37 . 2008-06-25 19:37 <DIR> d-------- C:\Program Files\Avex
2008-06-24 17:44 . 2008-06-24 17:44 <DIR> d-------- C:\Documents and Settings\Luky\PsiData
2008-06-24 17:18 . 2008-07-23 10:05 <DIR> d-------- C:\Documents and Settings\Luky\Data aplikací\XnView

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-07-23 08:06 --------- d-----w C:\Program Files\Spyware Terminator
2008-07-22 22:30 --------- d-----w C:\Program Files\DC++
2008-07-22 21:19 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-07-22 21:01 --------- d-----w C:\Program Files\XnView
2008-07-22 19:07 --------- d-----w C:\Program Files\AIMP2
2008-07-22 07:41 --------- d-----w C:\Documents and Settings\All Users\Data aplikací\Spyware Terminator
2008-07-22 07:32 --------- d-----w C:\Documents and Settings\Luky\Data aplikací\skypePM
2008-07-22 07:32 --------- d-----w C:\Documents and Settings\Luky\Data aplikací\Skype
2008-07-21 20:32 --------- d-----w C:\Documents and Settings\Milan\Data aplikací\Skype
2008-07-21 19:30 --------- d-----w C:\Documents and Settings\Milan\Data aplikací\skypePM
2008-07-21 16:41 --------- d-----w C:\Program Files\Common Files\Symantec Shared
2008-07-06 06:35 --------- d---a-w C:\Documents and Settings\All Users\Data aplikací\TEMP
2008-07-05 10:36 --------- d-----w C:\Program Files\QIP
2008-07-01 11:27 --------- d-----w C:\Program Files\ImTOO
2008-07-01 06:24 --------- d-----w C:\Documents and Settings\Luky\Data aplikací\Sony
2008-07-01 06:23 --------- d-----w C:\Program Files\Sony
2008-07-01 06:21 --------- d-----w C:\Documents and Settings\All Users\Data aplikací\Sony
2008-07-01 06:12 --------- d-----w C:\Program Files\Sony Setup
2008-07-01 06:12 --------- d-----w C:\Documents and Settings\Luky\Data aplikací\Sony Setup
2008-06-29 19:42 --------- d-----w C:\Program Files\WM Converter
2008-06-29 12:11 --------- d-----w C:\Program Files\Skype
2008-06-25 18:08 --------- d-----w C:\Program Files\Plato DVD to PSP Converter
2008-06-24 19:37 --------- d-----w C:\Program Files\Common Files\DVDVideoSoft
2008-06-24 15:26 --------- d-----w C:\Program Files\DVDVideoSoft
2008-06-22 21:18 --------- d-----w C:\Documents and Settings\Milan\Data aplikací\.purple
2008-06-21 17:28 --------- d-----w C:\Documents and Settings\Milan\Data aplikací\XnView
2008-06-21 16:32 796,672 ----a-w C:\WINDOWS\GPInstall.exe
2008-06-21 16:32 --------- d-----w C:\Program Files\DExUS
2008-06-21 10:57 51,752 ----a-w C:\Documents and Settings\Milan\Data aplikací\GDIPFONTCACHEV1.DAT
2008-06-20 13:21 --------- d-----w C:\Documents and Settings\Luky\Data aplikací\Hamachi
2008-06-20 05:58 --------- d-----w C:\Program Files\Garena
2008-06-20 05:31 --------- d-----w C:\Program Files\GamePark
2008-06-18 10:38 --------- d-----w C:\Program Files\Common Files\Stardock
2008-06-18 10:35 --------- d-----w C:\Program Files\Java
2008-06-17 14:47 --------- d-----w C:\Documents and Settings\Luky\Data aplikací\.purple
2008-06-17 14:46 --------- d-----w C:\Documents and Settings\Luky\Data aplikací\gtk-2.0
2008-06-17 14:45 --------- d-----w C:\Program Files\Pidgin
2008-06-17 14:44 --------- d-----w C:\Program Files\Common Files\GTK
2008-06-17 11:57 --------- d-----w C:\Program Files\PhotoFiltre
2008-06-17 11:37 --------- d-----w C:\Program Files\Opanda
2008-06-17 11:09 --------- d-----w C:\Program Files\Common Files\ACD Systems
2008-06-17 11:05 --------- d-----w C:\Program Files\IrfanView
2008-06-17 10:57 --------- d-----w C:\Documents and Settings\Luky\Data aplikací\FastStone
2008-06-17 07:26 52,336 ----a-w C:\Documents and Settings\Luky\Data aplikací\GDIPFONTCACHEV1.DAT
2008-06-16 08:48 --------- d-----w C:\Program Files\Tinynice Software
2008-06-16 08:44 --------- d-----w C:\Program Files\Fx Text Talker
2008-06-16 08:40 --------- d-----w C:\Documents and Settings\All Users\Data aplikací\SongbirdVLC
2008-06-16 08:39 --------- d-----w C:\Documents and Settings\Luky\Data aplikací\Songbird2
2008-06-14 18:00 272,128 ------w C:\WINDOWS\system32\drivers\bthport.sys
2008-06-09 05:20 --------- d-----w C:\Program Files\PPMate
2008-06-08 09:52 --------- d-----w C:\Documents and Settings\Luky\Data aplikací\Ahead
2008-06-08 08:20 --------- d-----w C:\Program Files\i-Sound Pro
2008-06-07 22:06 --------- d-----w C:\Program Files\Crystal Software
2008-06-07 09:09 --------- d-----w C:\Program Files\r2 Studios
2008-06-07 09:07 --------- d-----w C:\Documents and Settings\Luky\Data aplikací\Winamp
2008-06-07 08:53 --------- d-----w C:\Program Files\Winamp
2008-06-06 18:40 --------- d-----w C:\Program Files\ICQLite
2008-06-06 18:40 --------- d-----w C:\Documents and Settings\Luky\Data aplikací\ICQLite
2008-06-04 19:54 --------- d-----w C:\Documents and Settings\Luky\Data aplikací\foobar2000
2008-06-03 16:29 --------- d-----w C:\Documents and Settings\Luky\Data aplikací\Audacity
2008-05-31 19:08 --------- d-----w C:\Program Files\AviSynth 2.5
2008-05-29 15:35 --------- d-----w C:\Program Files\Windows Live
2008-05-29 15:34 --------- dcsh--w C:\Program Files\Common Files\WindowsLiveInstaller
2008-05-29 15:34 --------- d-----w C:\Documents and Settings\All Users\Data aplikací\WLInstaller
2008-05-28 19:09 --------- d-----w C:\Program Files\BitLord
2008-05-28 14:31 --------- d-----w C:\Documents and Settings\Luky\Data aplikací\MEGAUPLOADTOOLBAR
2008-05-27 14:45 --------- d-----w C:\Program Files\MegauploadToolbar
2008-05-25 12:00 --------- d-----w C:\Program Files\RocketDock
2008-05-25 08:45 --------- d-----w C:\Program Files\True Transparency
2008-05-25 07:44 --------- d-----w C:\Program Files\SPMT
2008-05-07 05:16 1,290,240 ----a-w C:\WINDOWS\system32\quartz.dll
2008-04-26 14:14 42,672 ------w C:\WINDOWS\system32\wbsys.dll
2008-04-26 10:58 2,560 ----a-w C:\WINDOWS\system32\bitcometres.dll
2008-04-23 04:16 826,368 ----a-w C:\WINDOWS\system32\wininet.dll
2008-03-19 16:09 234,842 --sh--w C:\WINDOWS\Resources\Themes\DameK UltraBlue\irunin.dat
.

((((((((((((((((((((((((((((( snapshot@2008-07-22_10.14.29.28 )))))))))))))))))))))))))))))))))))))))))
.
+ 2008-07-22 11:47:18 3,128 ----a-r C:\WINDOWS\Installer\{DBC2F22C-B384-41E1-BB71-ECD6151BA346}\ARPPRODUCTICON.exe
+ 2008-07-22 11:47:18 3,128 ----a-r C:\WINDOWS\Installer\{DBC2F22C-B384-41E1-BB71-ECD6151BA346}\PBSDesktop1.exe
+ 2008-07-23 07:54:41 16,384 ----atw C:\WINDOWS\Temp\Perflib_Perfdata_56c.dat
+ 2008-07-23 07:54:16 16,384 ----atw C:\WINDOWS\Temp\Perflib_Perfdata_788.dat
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RocketDock"="C:\Program Files\RocketDock\RocketDock.exe" [2007-09-02 13:58 495616]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-17 15:49 15360]
"ICQ"="D:\Záloha Milan\Luky\Programy\ICQ 6\ICQ6\ICQ.exe" [2008-04-01 12:40 172280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="C:\WINDOWS\System32\NvCpl.dll" [2006-10-22 12:22 7700480]
"NvMediaCenter"="C:\WINDOWS\System32\NvMcTray.dll" [2006-10-22 12:22 86016]
"SpywareTerminator"="C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe" [2007-08-29 16:08 2778112]
"SNPSTD2"="C:\WINDOWS\vsnpstd2.exe" [2004-06-10 11:54 286720]
"NeroFilterCheck"="C:\WINDOWS\system32\NeroCheck.exe" [2001-07-09 11:50 155648]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2007-03-14 19:05 257088]
"RemoteControl"="C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" [2004-11-02 20:24 32768]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2007-06-29 06:24 286720]
"nwiz"="nwiz.exe" [2006-10-22 12:22 1622016 C:\WINDOWS\system32\nwiz.exe]
"SoundMan"="SOUNDMAN.EXE" [2003-08-05 07:59 57344 C:\WINDOWS\SOUNDMAN.EXE]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [2004-08-17 15:49 15360]

C:\Documents and Settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office10\OSA.EXE [2001-02-13 11:01:04 83360]
Service Manager.lnk - C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe [2002-12-17 18:23:32 74308]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon]
"UIHost"="C:\\WINDOWS\\system32\\logonuiX.exe"

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"vidc.iv31"= C:\WINDOWS\system32\ir32_32.dll
"vidc.iv32"= C:\WINDOWS\system32\ir32_32.dll
"VIDC.ACDV"= ACDV.dll

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"C:\\Program Files\\Messenger\\msmsgs.exe"=
"C:\\Program Files\\DC++\\DCPlusPlus.exe"=
"C:\\Program Files\\NetMeeting\\conf.exe"=
"C:\\Program Files\\iTunes\\iTunes.exe"=
"C:\\Program Files\\uTorrent\\utorrent.exe"=
"C:\\WINDOWS\\system32\\dplaysvr.exe"=
"C:\\Program Files\\QIP\\qip.exe"=
"C:\\Program Files\\Mozilla Firefox\\firefox.exe"=
"C:\\Program Files\\Trillian\\trillian.exe"=
"C:\\WINDOWS\\system32\\dpvsetup.exe"=
"C:\\Program Files\\TVAnts\\Tvants.exe"=
"C:\\Program Files\\TVUPlayer\\TVUPlayer.exe"=
"C:\\Program Files\\PPMate\\PPMate\\ppmate.exe"=
"C:\\Program Files\\PPMate\\ppamnet.exe"=
"C:\\Program Files\\SopCast\\SopCast.exe"=
"C:\\Program Files\\SopCast\\adv\\SopAdver.exe"=
"C:\\Program Files\\Azureus\\Azureus.exe"=
"C:\\Program Files\\BitComet\\BitComet.exe"=
"C:\\Program Files\\WIP Miranda IM 1.7.1\\miranda32.exe"=
"C:\\Program Files\\BitLord\\BitLord.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=
"C:\\Program Files\\Microsoft Games\\Age of Empires II\\empires2.exe"=
"C:\\Program Files\\Windows Media Player\\wmplayer.exe"=
"C:\\Program Files\\Sony\\Media Manager for PSP 2.5\\MediaManager.exe"=
"C:\\Program Files\\Skype\\Phone\\Skype.exe"=
"D:\\Záloha Milan\\Luky\\Hry\\Counter Strike 1.6\\cstrike.exe"=
"D:\\Záloha Milan\\Luky\\Programy\\ICQ 6\\ICQ6\\ICQ.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"22270:TCP"= 22270:TCP:BitComet 22270 TCP
"22270:UDP"= 22270:UDP:BitComet 22270 UDP
"1976:UDP"= 1976:UDP:Windows Media Format SDK (wmplayer.exe)
"1977:UDP"= 1977:UDP:Windows Media Format SDK (wmplayer.exe)
"1978:UDP"= 1978:UDP:Windows Media Format SDK (wmplayer.exe)

R0 hotcore;hotcore;C:\WINDOWS\system32\drivers\hotcore.sys [2006-06-20 10:04]
R0 sfdrv01a;StarForce Protection Environment Driver (version 1.x.a);C:\WINDOWS\system32\drivers\sfdrv01a.sys [2006-07-05 14:46]
R0 sfsync03;StarForce Protection Synchronization Driver (version 3.x);C:\WINDOWS\system32\drivers\sfsync03.sys [2005-10-13 15:46]
R1 aswSP;avast! Self Protection;C:\WINDOWS\system32\drivers\aswSP.sys [2008-05-16 01:20]
R1 sp_rsdrv2;Spyware Terminator Driver 2;C:\WINDOWS\system32\drivers\sp_rsdrv2.sys [2007-08-29 16:29]
R2 aswFsBlk;aswFsBlk;C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2008-05-16 01:16]
R3 PSched;Plánovač paketů technologie QoS;C:\WINDOWS\system32\DRIVERS\psched.sys [2004-08-03 23:04]
R3 snpstd2;VideoCAM Look;C:\WINDOWS\system32\DRIVERS\snpstd2.sys [2004-07-28 11:49]
S3 npkycryp;npkycryp;D:\Záloha Milan\Luky\Hry\Gravity\RO\npkycryp.sys []

*Newly Created Service* - CATCHME
.
Contents of the 'Scheduled Tasks' folder
"2008-06-13 15:15:00 C:\WINDOWS\Tasks\1-Click Maintenance.job"
- C:\Program Files\TuneUp Utilities 2006\SystemOptimizer.exe
"2008-07-21 13:54:03 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
"2008-06-20 13:00:00 C:\WINDOWS\Tasks\Norton Security Scan.job"
- C:\Program Files\Norton Security Scan\Nss.exe
.
**************************************************************************

catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-07-23 10:11:33
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
Completion time: 2008-07-23 10:14:32
ComboFix-quarantined-files.txt 2008-07-23 08:14:04
ComboFix2.txt 2008-07-22 08:15:17

Pre-Run: 3,570,454,528
Post-Run: 3,598,954,496

241 --- E O F --- 2008-06-21 10:53:48

Re: Critical Error ve windows 2

Napsal: 23 črc 2008 10:27
od propi
:::::::::::::: a zde je nový HijackThis :::::::::::::::


Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:24:51, on 23.7.2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe
C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Spyware Terminator\sp_rsser.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\QuickTime\QTTask.exe
C:\Program Files\RocketDock\RocketDock.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\notepad.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.atlas.cz/?from=icqhp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://ar.atwola.com/redir/B0/A4MZaGrjo ... _admin.php
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\PROGRA~1\ICQTOO~1\toolbaru.dll
R3 - URLSearchHook: (no name) - {b69a9db4-d0a1-4722-b56b-f20757a29cdf} - (no file)
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: XTTBPos00 - {055FD26D-3A88-4e15-963D-DC8493744B1D} - C:\PROGRA~1\ICQTOO~1\toolbaru.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Megaupload Toolbar - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - C:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLL
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\PROGRA~1\ICQTOO~1\toolbaru.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Megaupload Toolbar - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - C:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLL
O3 - Toolbar: (no name) - {b69a9db4-d0a1-4722-b56b-f20757a29cdf} - (no file)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - (no file)
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [SpywareTerminator] "C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe"
O4 - HKLM\..\Run: [SNPSTD2] C:\WINDOWS\vsnpstd2.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKCU\..\Run: [RocketDock] "C:\Program Files\RocketDock\RocketDock.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [ICQ] "D:\Záloha Milan\Luky\Programy\ICQ 6\ICQ6\ICQ.exe" silent
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Service Manager.lnk = C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
O8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm
O8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - D:\Záloha Milan\Luky\Programy\ICQLite\ICQLite.exe (file missing)
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - D:\Záloha Milan\Luky\Programy\ICQLite\ICQLite.exe (file missing)
O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.2.1.2.dll/206 (file missing)
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - D:\Záloha Milan\Luky\Programy\ICQ 6\ICQ6\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - D:\Záloha Milan\Luky\Programy\ICQ 6\ICQ6\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Capture Device Service - InterVideo Inc. - C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe

--
End of file - 9718 bytes

Re: Critical Error ve windows 2

Napsal: 23 črc 2008 11:40
od propi
hele prosimtě potreboval bych poradit s jednou věcí .... nainstaloval sem si hru kterou sem si stahnul - Pro Beach Soccer , ale nefunguje a chci ji odinstalovat a nikde nemuzu najit např.: uninstall nebo neco podobného , když jsem zkoušel přez Ovládací Panely -> přidat nebo odebrat .... tam jsem tu hru nenašel , nemuzes mi poradit jak ji odinstalovat ?