prosím o kontrolu logu z Hijackthis Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
adidass
Level 3
Level 3
Příspěvky: 471
Registrován: leden 09
Pohlaví: Muž
Stav:
Offline

Re: prosi o kontrolu logu z Hijackthis

Příspěvekod adidass » 06 bře 2010 08:19

All processes killed
========== OTL ==========
No active process named explorer.exe was found!
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\{855F3B16-6D32-4fe6-8A56-BBB695989046} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{855F3B16-6D32-4fe6-8A56-BBB695989046}\ not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Search Page| /E : value set successfully!
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
Registry value HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\\{AEB6717E-7E19-11d0-97EE-00C04FD91972} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AEB6717E-7E19-11d0-97EE-00C04FD91972}\ not found.
========== FILES ==========
C:\Windows\msdownld.tmp folder moved successfully.
File\Folder C:\Windows\System32\*.tmp not found.
File\Folder C:\Recycled not found.
C:\Windows\tasks\SA.DAT moved successfully.
C:\Windows\MEMORY.DMP moved successfully.
C:\Windows\diagwrn.xml moved successfully.
C:\Windows\diagerr.xml moved successfully.
C:\$RECYCLE.BIN\S-1-5-21-411705913-1685533206-113458850-1000\$RM7XTSZ.eu] folder moved successfully.
C:\$RECYCLE.BIN\S-1-5-21-411705913-1685533206-113458850-1000\$R1X7HZT\Counter-Strike Source shortcuts\links folder moved successfully.
C:\$RECYCLE.BIN\S-1-5-21-411705913-1685533206-113458850-1000\$R1X7HZT\Counter-Strike Source shortcuts folder moved successfully.
C:\$RECYCLE.BIN\S-1-5-21-411705913-1685533206-113458850-1000\$R1X7HZT folder moved successfully.
C:\$RECYCLE.BIN\S-1-5-21-411705913-1685533206-113458850-1000 folder moved successfully.
C:\$RECYCLE.BIN folder moved successfully.
C:\$WINDOWS.~LS\Sources\36e6eb2a-8487-41db-8965-4a7d5ab397c2 folder moved successfully.
C:\$WINDOWS.~LS\Sources folder moved successfully.
C:\$WINDOWS.~LS\SetupTemp folder moved successfully.
C:\$WINDOWS.~LS folder moved successfully.
C:\$WINDOWS.~BT\Sources\spinstall\cs-cz folder moved successfully.
C:\$WINDOWS.~BT\Sources\spinstall folder moved successfully.
C:\$WINDOWS.~BT\Sources\servicingstackmisc folder moved successfully.
C:\$WINDOWS.~BT\Sources\servicing\0.0.0.1 folder moved successfully.
C:\$WINDOWS.~BT\Sources\servicing folder moved successfully.
C:\$WINDOWS.~BT\Sources\Panther\setup.exe folder moved successfully.
C:\$WINDOWS.~BT\Sources\Panther folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\_default\ultimaten folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\_default\ultimate folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\_default\starter folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\_default\homepremiumn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\_default\homepremium folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\_default\homebasicn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\_default\homebasic folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\_default\enterprisen folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\_default\enterprise folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\_default\businessn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\_default\business folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\_default folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\oem\ultimaten folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\oem\ultimate folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\oem\starter folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\oem\homepremiumn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\oem\homepremium folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\oem\homebasicn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\oem\homebasic folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\oem\enterprisen folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\oem\enterprise folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\oem\businessn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\oem\business folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\oem folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\eval\ultimaten folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\eval\ultimate folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\eval\starter folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\eval\homepremiumn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\eval\homepremium folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\eval\homebasicn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\eval\homebasic folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\eval\enterprisen folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\eval\enterprise folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\eval\businessn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\eval\business folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\eval folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\_default\ultimaten folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\_default\ultimate folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\_default\starter folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\_default\homepremiumn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\_default\homepremium folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\_default\homebasicn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\_default\homebasic folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\_default\enterprisen folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\_default\enterprise folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\_default\businessn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\_default\business folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\_default folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\oem\ultimaten folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\oem\ultimate folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\oem\starter folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\oem\homepremiumn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\oem\homepremium folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\oem\homebasicn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\oem\homebasic folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\oem\enterprisen folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\oem\enterprise folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\oem\businessn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\oem\business folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\oem folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\eval\ultimaten folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\eval\ultimate folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\eval\starter folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\eval\homepremiumn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\eval\homepremium folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\eval\homebasicn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\eval\homebasic folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\eval\enterprisen folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\eval\enterprise folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\eval\businessn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\eval\business folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\eval folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz folder moved successfully.
C:\$WINDOWS.~BT\Sources\license folder moved successfully.
C:\$WINDOWS.~BT\Sources\inf folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\networking-mpssvc-svc folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-wmi-core folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-winsock-core-infrastructure-upgrade folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-unimodem-config folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-uddi folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-textservicesframework-migration-dl folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-terminalservices-licenseserver folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-tapisetup folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-sxs folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-storagemigration\cs-cz folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-storagemigration folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-shmig-dl folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-rasserver-migplugin folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-rasconnectionmanager folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-rasapi folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-performancecounterinfrastructureconsumer-dl folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-performancecounterinfrastructure-dl folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-offlinefiles-dl folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-networkloadbalancing-core folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-networkbridge folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-ndis folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-msmq-messagingcoreservice folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-mediaplayer-drm-dl folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-mediaplayer folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-internet-naming-service-runtime folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-international-core-dl folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-iis-dl folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-ie-esc folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-ie-clientnetworkprotocolimplementation folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-iasserver-migplugin folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-gameuxmig-dl folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-directoryservices-adam-dl folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-dhcpservermigplugin-dl folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-com-dtc-setup-dl folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-com-complus-setup-dl folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-bluetooth-config folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-adfs-dl folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\bitsextensions-server folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests folder moved successfully.
C:\$WINDOWS.~BT\Sources\cs-cz folder moved successfully.
C:\$WINDOWS.~BT\Sources\adprep\cs-cz folder moved successfully.
C:\$WINDOWS.~BT\Sources\adprep folder moved successfully.
C:\$WINDOWS.~BT\Sources\6.0.6000.16386_x86\cs-cz folder moved successfully.
C:\$WINDOWS.~BT\Sources\6.0.6000.16386_x86 folder moved successfully.
C:\$WINDOWS.~BT\Sources folder moved successfully.
C:\$WINDOWS.~BT folder moved successfully.
========== REGISTRY ==========
========== COMMANDS ==========
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Public
->Temp folder emptied: 0 bytes

User: vasek
->Temp folder emptied: 35450 bytes
->Temporary Internet Files folder emptied: 6896865 bytes
->Flash cache emptied: 11914 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 44424300 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 49,00 mb


[EMPTYFLASH]

User: All Users

User: Default

User: Default User

User: Public

User: vasek
->Flash cache emptied: 0 bytes

Total Flash Files Cleaned = 0,00 mb


OTL by OldTimer - Version 3.1.34.0 log created on 03062010_081219

Files\Folders moved on Reboot...

Registry entries deleted on Reboot...
Gigabyte ga-870a-usb3 / Kingston 8GB KIT DDR3 1333MHz / AMD Phenom II X4 965 /
Sapphire HD 5750 1GB / Windwos 7 64bit / OCZ ModXStream Pro 600W / Akasa Freedom Xone

Reklama
Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: prosím o kontrolu logu z Hijackthis

Příspěvekod Damned » 06 bře 2010 12:01

To máš nějaký cracklý Windows?

Vlož mi sem ještě nový log z Hijackthis.
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner

Uživatelský avatar
adidass
Level 3
Level 3
Příspěvky: 471
Registrován: leden 09
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu logu z Hijackthis

Příspěvekod adidass » 06 bře 2010 13:24

windows mam originalni vistu

log z HJT

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:00:57, on 27.2.2010
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18385)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Windows\MHotKey.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\HKExt3.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Windows\ChiFuncExt.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\D-Link\D-Link AirPlus G+ Wireless Adapter Utility\DWLGTI.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\utorrent\utorrent.exe
C:\Program Files\QIP\qip.exe
C:\Program Files\Opera\opera.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [LchDrvKey] LchDrvKey.exe
O4 - HKLM\..\Run: [HKExt3] HKExt3.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [Skytel] Skytel.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Global Startup: D-Link AirPlus G+ Wireless Adapter Utility.lnk = C:\Program Files\D-Link\D-Link AirPlus G+ Wireless Adapter Utility\DWLGTI.EXE
O13 - Gopher Prefix:
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe

--
End of file - 3479 bytes
Gigabyte ga-870a-usb3 / Kingston 8GB KIT DDR3 1333MHz / AMD Phenom II X4 965 /
Sapphire HD 5750 1GB / Windwos 7 64bit / OCZ ModXStream Pro 600W / Akasa Freedom Xone

Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: prosím o kontrolu logu z Hijackthis

Příspěvekod Damned » 06 bře 2010 14:07

windows mam originalni vistu

log z HJT

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:00:57, on 27.2.2010


Smaž starý logy z HJT a vyrob pro mne nový, ju? :newmail:
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner

Uživatelský avatar
adidass
Level 3
Level 3
Příspěvky: 471
Registrován: leden 09
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu logu z Hijackthis

Příspěvekod adidass » 06 bře 2010 15:06

no nevim jak to myslis ale to nad tim je novy tady mas jeste jednou log z HJT


normlane zpustim HJT a dam Do a system scan and save a logfile
neco mi to nacte a pak normalni poznamkovy blog a vnem je ten log

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:00:57, on 27.2.2010
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18385)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Windows\MHotKey.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\HKExt3.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Windows\ChiFuncExt.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\D-Link\D-Link AirPlus G+ Wireless Adapter Utility\DWLGTI.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\utorrent\utorrent.exe
C:\Program Files\QIP\qip.exe
C:\Program Files\Opera\opera.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [LchDrvKey] LchDrvKey.exe
O4 - HKLM\..\Run: [HKExt3] HKExt3.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [Skytel] Skytel.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Global Startup: D-Link AirPlus G+ Wireless Adapter Utility.lnk = C:\Program Files\D-Link\D-Link AirPlus G+ Wireless Adapter Utility\DWLGTI.EXE
O13 - Gopher Prefix:
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe

--
End of file - 3479 bytes
Gigabyte ga-870a-usb3 / Kingston 8GB KIT DDR3 1333MHz / AMD Phenom II X4 965 /
Sapphire HD 5750 1GB / Windwos 7 64bit / OCZ ModXStream Pro 600W / Akasa Freedom Xone

Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: prosím o kontrolu logu z Hijackthis

Příspěvekod Damned » 06 bře 2010 15:30

Dej jen sken, bez ukládání a pak zmáčkni "Save log". Předím si dej vyhledat "hiajckthis.log" a všechy nalezené smaž do koše a ten vysysp.

Podle hlavičky poznáš datum:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at *22:00:57, on *27.2.2010
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18385)
Boot mode: Normal


*Čas a datum
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner

Uživatelský avatar
adidass
Level 3
Level 3
Příspěvky: 471
Registrován: leden 09
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu logu z Hijackthis

Příspěvekod adidass » 07 bře 2010 15:10

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:58:08, on 6.3.2010
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18385)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Windows\HKExt3.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\ICQ7.0\ICQ.exe
C:\Program Files\D-Link\D-Link AirPlus G+ Wireless Adapter Utility\DWLGTI.EXE
C:\Program Files\Hamachi\hamachi.exe
C:\Windows\System32\mobsync.exe
C:\Program Files\Rockstar Games\Rockstar Games Social Club\1_1_3_0\RGSC.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\system32\conime.exe
C:\Program Files\Opera\opera.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [LchDrvKey] LchDrvKey.exe
O4 - HKLM\..\Run: [HKExt3] HKExt3.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [Skytel] Skytel.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKCU\..\Run: [RGSC] C:\Program Files\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent
O4 - HKCU\..\Run: [ICQ] "C:\Program Files\ICQ7.0\ICQ.exe" silent loginmode=4
O4 - Startup: hamachi.lnk = C:\Program Files\Hamachi\hamachi.exe
O4 - Global Startup: D-Link AirPlus G+ Wireless Adapter Utility.lnk = C:\Program Files\D-Link\D-Link AirPlus G+ Wireless Adapter Utility\DWLGTI.EXE
O9 - Extra button: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files\ICQ7.0\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files\ICQ7.0\ICQ.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: TeamViewer 5 (TeamViewer5) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe

--
End of file - 3277 bytes
Gigabyte ga-870a-usb3 / Kingston 8GB KIT DDR3 1333MHz / AMD Phenom II X4 965 /
Sapphire HD 5750 1GB / Windwos 7 64bit / OCZ ModXStream Pro 600W / Akasa Freedom Xone

Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: prosím o kontrolu logu z Hijackthis

Příspěvekod Damned » 07 bře 2010 15:19

Smaž složku C:\_OTL


Stáhni si ToolsCleaner2 (by de A.Rothstein & Dj Quiou) na Plochu a spusť ho.

Klikni na Pt. Restauration (obnova) a poté na OK.
Klikni na Corbeille (koš) a poté na OK.
Klikni na Fichiers temp (temp složky) a poté na OK.
Klikni na Recherche (hledání) a nech Cleaner pracovat. Může se během čištění zastavit , ale nech ho pokračovat.
Když program skončí , klikni na Suppression (odstranění) a odstraň nalezené.
Zavři a smaž program.


Kdyby se něco zase objevilo, tak se zastav.
Označ topic za vyřešený (zelená fajfka) a měj se. :bigups:
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner

Uživatelský avatar
adidass
Level 3
Level 3
Příspěvky: 471
Registrován: leden 09
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu logu z Hijackthis

Příspěvekod adidass » 08 bře 2010 07:16

jo diky uz se to sekan o neco min ale jak to tak vypada problem bude v procesesoru na Viste mate na boku ty miniaplikace no a ja tam mam CPU to meri vytizeni CPU no prave kolecko je kolem 34% ale to leve je treba 35% pak to klesne na 01% a pak na 00% a potom se to sekne
Gigabyte ga-870a-usb3 / Kingston 8GB KIT DDR3 1333MHz / AMD Phenom II X4 965 /
Sapphire HD 5750 1GB / Windwos 7 64bit / OCZ ModXStream Pro 600W / Akasa Freedom Xone

Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: prosím o kontrolu logu z Hijackthis

Příspěvekod Damned » 08 bře 2010 07:28

Co si měl v PC šmejdy, ty sme odstranily. Můžeš ještě zkusit:

Stáhni si :Dr. Web CureIt nebo z http://www.majorgeeks.com/Dr.Web_CureIT_d4783.html dej update , po aktualizaci dej start.

Tlačítky dole můzeš soubor léčit, smazat, přesunout nebo přejmenovat.Pak napiš výsledek. Sken může trvat dlouho. Nalezenou infekci nejdříve léčit, potom teprve smazat. Pokud něco najde ve složce System Volume Information, tak smazat.
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner

Uživatelský avatar
adidass
Level 3
Level 3
Příspěvky: 471
Registrován: leden 09
Pohlaví: Muž
Stav:
Offline

Re: prosím o kontrolu logu z Hijackthis

Příspěvekod adidass » 08 bře 2010 14:22

ok nic to nenaslo
Gigabyte ga-870a-usb3 / Kingston 8GB KIT DDR3 1333MHz / AMD Phenom II X4 965 /
Sapphire HD 5750 1GB / Windwos 7 64bit / OCZ ModXStream Pro 600W / Akasa Freedom Xone

Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: prosím o kontrolu logu z Hijackthis

Příspěvekod Damned » 08 bře 2010 14:30

PC máš bez virů, viděl bych to možná na konflikt aplikací, nebo špatnej měřák. Nebo na CPU, ale to ti poradí spíše kluci v sekci Hardware
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 102 hostů