Prosím o kontrolu logu - opět zpomalený internet Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
Travis
Level 4
Level 4
Příspěvky: 1063
Registrován: leden 13
Bydliště: Kladno
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - opět zpomalený internet

Příspěvekod Travis » 26 srp 2013 18:43

Memtest proběhl v pohodě přes dvě hodiny a žádná chyba.
Intel i5-3350P@3,7GHz / ASUS P8Z77-V / Patriot Viper 16GB (2x8GB) DDR3 1600 / EVGA GeForce GTX 780 Classified 3GB / Be quiet! Dark Power Pro 10 650W /
SSD OCZ Vertex 4 - 256GB / HDD Seagate SV35.5 - 1TB / Win10 / Corsair 600T Graphite Series bílá / WD My Book Essential 2TB

Reklama
Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - opět zpomalený internet

Příspěvekod jaro3 » 27 srp 2013 10:35

Poklepej na ikonu OTL na ploše.Ujisti se , že máš všechny ostatní aplikace a prohlížeče zavřeny.
Pod Vlastní skenování/opravy do okénka vlož následující text, zobrazený zeleně:

Kód: Vybrat vše

:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
DRV:64bit: - (DIRECTIO) -- C:\Program Files\PerformanceTest\DirectIo64.sys File not found
IE:64bit: - HKLM\..\SearchScopes,DefaultScope =
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE:64bit: - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search
IE - HKCU\..\SearchScopes,DefaultScope =
IE - HKCU\..\SearchScopes\{01AC94AE-9FCA-406F-87DD-FC03D39082DB}: "URL" = http://www.zbozi.cz/?q={searchTerms}&r=campmoz&sourceid=QuickSearch_13415
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE10SR
IE - HKCU\..\SearchScopes\{1D574B34-E936-49E3-9A21-7CDD58AF4BB4}: "URL" = http://www.mapy.cz/?query={searchTerms}&sourceid=QuickSearch_13415
IE - HKCU\..\SearchScopes\{36A9522E-913A-4163-96AB-237E09704EA9}: "URL" = http://www.novinky.cz/hledej?w={searchTerms}&sourceid=QuickSearch_13415
IE - HKCU\..\SearchScopes\{3D8A9C11-6D8D-4A6A-8362-CEA026722EEF}: "URL" = http://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_13415
IE - HKCU\..\SearchScopes\{3E134EFB-6A1A-4365-8EB5-64E4E55AED49}: "URL" = http://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_13415
IE - HKCU\..\SearchScopes\{6779B3BF-8D2E-4DB2-9CF2-BD901B9272CB}: "URL" = http://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_13415
IE - HKCU\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search
IE - HKCU\..\SearchScopes\{9883D170-89B0-48DA-86F0-FC60929BF315}: "URL" = http://www.firmy.cz/?q={searchTerms}&sourceid=QuickSearch_13415
IE - HKCU\..\SearchScopes\{AC137E8F-2CCF-403D-9A39-DB22931B43EC}: "URL" = http://search.yahoo.com/search?fr=chr-g ... =714647&p={searchTerms}
IE - HKCU\..\SearchScopes\{B59D0A6A-F81A-498A-8F3C-2780187781E6}: "URL" = http://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_13415
FF - prefs.js..extensions.enabledAddons: %7Bea614400-e918-4741-9a97-7a972ff7c30b%7D:2.5.15
FF - prefs.js..extensions.enabledAddons: %7B195A3098-0BD5-4e90-AE22-BA1C540AFD1E%7D:4.0.4
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}:6.0.17
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: {20a82645-c095-46ed-80e3-08825760534b}:0.0.0
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.12
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
[2013.02.02 00:25:18 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Travis\AppData\Roaming\Mozilla\Extensions
[2013.08.24 23:00:12 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions
[2013.03.29 13:27:16 | 000,000,000 | ---D | M] (Seznam lištička) -- C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
[2013.08.24 23:00:10 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\mozapps\extensions
[2013.05.03 00:06:20 | 001,976,559 | ---- | M] () (No name found) -- C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\ecolo@loic.com.xpi
[2013.08.08 13:31:59 | 002,601,249 | ---- | M] () (No name found) -- C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\nasanightlaunch@example.com.xpi
[2013.07.26 23:07:46 | 000,791,540 | ---- | M] () (No name found) -- C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\{080955ad-b8bb-4500-806f-d2b9ad73d72e}.xpi
[2013.07.26 23:07:47 | 000,810,024 | ---- | M] () (No name found) -- C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\{5A170DD3-63CA-4c58-93B7-DE9FF536C2FF}.xpi
[2013.08.01 00:51:23 | 000,824,302 | ---- | M] () (No name found) -- C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
[2013.08.17 12:20:08 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\Extensions
[2013.08.17 12:20:08 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O8:64bit: - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_6CE5017F567343CA.dll/cmsidewiki.html File not found
O8 - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_6CE5017F567343CA.dll/cmsidewiki.html File not found
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
[2013.08.26 12:24:38 | 000,668,866 | ---- | M] () -- C:\Windows\SysNative\perfh005.dat
[2013.08.26 12:24:38 | 000,654,254 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2013.08.26 12:24:38 | 000,141,526 | ---- | M] () -- C:\Windows\SysNative\perfc005.dat
[2013.08.26 12:24:38 | 000,122,126 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat

:Files
C:\WINDOWS\System32\*.tmp
C:\WINDOWS\*.tmp
C:\WINDOWS\system32\*.tmp.dll
C:\WINDOWS\System32\dllcache\*.tmp
C:\WINDOWS\system32\SET*.tmp
C:\WINDOWS\system32\DUMP*.tmp
c:\windows\Tasks\*.job /s
C:\*.tmp
C:\WINDOWS\System32\drivers\*.tmp
C:\Documents and Settings\All Users\Data aplikací\*.tmp
C:\Windows\SysNative\drivers\*.tmp
C:\Windows\SysWow64\drivers\*.tmp
C:\Program Files (x86)\*.tmp
C:\Windows\SysWow64\*.tmp
C:\Windows\SysNative\*.tmp
ipconfig /flushall /c

:Reg
:Commands
[resethosts]
[purity]
[emptytemp]
[EMPTYFLASH]
[start explorer]
[Reboot]

Poté klikni nahoře na Opravit. Nech program nerušeně běžet, na konci se provede restart PC.
Po restartu se objeví log , prosím zkopíruj sem celý jeho obsah.

V možnostech složky si povol zobrazování skrytých souborů a složek+ odškrtni zatržítko skrýt chráněné soubory operačního systému

Toto otestuj na Virustotal
C:\Windows\SysWow64\WDPABKP.dat
C:\Windows\Launcher.exe
C:\Windows\PE_Rom.dll

Klikni vpravo od okénka na Vybrat a v Exploreru najdi požadovaný soubor v Tvém PC. Označ ho myší a klikni na Otevřít , poté klikni na Send File. Pokud už byl soubor testován , objeví se okno ve kterém klikni na Reanalyze. Soubor se začne postupně testovat více antivirovými programy. Až skončí test posledního antiviru , objeví se nahoře result a červeně počet nákaz , např. 0/43 , nebo 1/43. Pak zkopíruj myší odkaz na tuto stránku a vlož ji do svého příspěvku.

Nebo na:
http://www.virscan.org/
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
Travis
Level 4
Level 4
Příspěvky: 1063
Registrován: leden 13
Bydliště: Kladno
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - opět zpomalený internet

Příspěvekod Travis » 27 srp 2013 11:25

All processes killed
========== OTL ==========
No active process named explorer.exe was found!
No active process named firefox.exe was found!
Service DIRECTIO stopped successfully!
Service DIRECTIO deleted successfully!
File C:\Program Files\PerformanceTest\DirectIo64.sys File not found not found.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ not found.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ not found.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{01AC94AE-9FCA-406F-87DD-FC03D39082DB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{01AC94AE-9FCA-406F-87DD-FC03D39082DB}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{1D574B34-E936-49E3-9A21-7CDD58AF4BB4}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1D574B34-E936-49E3-9A21-7CDD58AF4BB4}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{36A9522E-913A-4163-96AB-237E09704EA9}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{36A9522E-913A-4163-96AB-237E09704EA9}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{3D8A9C11-6D8D-4A6A-8362-CEA026722EEF}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3D8A9C11-6D8D-4A6A-8362-CEA026722EEF}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{3E134EFB-6A1A-4365-8EB5-64E4E55AED49}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3E134EFB-6A1A-4365-8EB5-64E4E55AED49}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6779B3BF-8D2E-4DB2-9CF2-BD901B9272CB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6779B3BF-8D2E-4DB2-9CF2-BD901B9272CB}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9883D170-89B0-48DA-86F0-FC60929BF315}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9883D170-89B0-48DA-86F0-FC60929BF315}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AC137E8F-2CCF-403D-9A39-DB22931B43EC}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AC137E8F-2CCF-403D-9A39-DB22931B43EC}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B59D0A6A-F81A-498A-8F3C-2780187781E6}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B59D0A6A-F81A-498A-8F3C-2780187781E6}\ not found.
Prefs.js: %7Bea614400-e918-4741-9a97-7a972ff7c30b%7D:2.5.15 removed from extensions.enabledAddons
Prefs.js: %7B195A3098-0BD5-4e90-AE22-BA1C540AFD1E%7D:4.0.4 removed from extensions.enabledAddons
Prefs.js: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}:6.0.17 removed from extensions.enabledItems
Prefs.js: jqs@sun.com:1.0 removed from extensions.enabledItems
Prefs.js: {20a82645-c095-46ed-80e3-08825760534b}:0.0.0 removed from extensions.enabledItems
Prefs.js: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20 removed from extensions.enabledItems
Prefs.js: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21 removed from extensions.enabledItems
Prefs.js: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22 removed from extensions.enabledItems
Prefs.js: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.12 removed from extensions.enabledItems
64bit-Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@adobe.com/FlashPlayer\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@microsoft.com/GENUINE\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@microsoft.com/GENUINE\ deleted successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Extensions folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}\modules\JAK folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}\modules\components\subclasses\email folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}\modules\components\subclasses folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}\modules\components folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}\modules\classes folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}\modules folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}\META-INF folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}\chrome folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\{c1dffba0-628e-11d9-9669-0800200c9a66}\chrome folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\{c1dffba0-628e-11d9-9669-0800200c9a66} folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\{5b35cb30-16b4-11de-8c30-0800200c9a66}\chrome folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\{5b35cb30-16b4-11de-8c30-0800200c9a66} folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\{241aae70-0022-11de-87af-0800200c9a66}\chrome folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\{241aae70-0022-11de-87af-0800200c9a66} folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\{195A3098-0BD5-4e90-AE22-BA1C540AFD1E}\plugins\GarminGpsControl.plugin\Contents\Resources\English.lproj folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\{195A3098-0BD5-4e90-AE22-BA1C540AFD1E}\plugins\GarminGpsControl.plugin\Contents\Resources folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\{195A3098-0BD5-4e90-AE22-BA1C540AFD1E}\plugins\GarminGpsControl.plugin\Contents\MacOS folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\{195A3098-0BD5-4e90-AE22-BA1C540AFD1E}\plugins\GarminGpsControl.plugin\Contents folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\{195A3098-0BD5-4e90-AE22-BA1C540AFD1E}\plugins\GarminGpsControl.plugin folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\{195A3098-0BD5-4e90-AE22-BA1C540AFD1E}\plugins folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\{195A3098-0BD5-4e90-AE22-BA1C540AFD1E} folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\os_special\XP folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\os_special\mac folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\os_special\linux folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\os_special\aero folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\os_special folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\mozapps\xpinstall folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\mozapps\update folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\mozapps\shared folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\mozapps\profile folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\mozapps\plugins folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\mozapps\places folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\mozapps\passwordmgr folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\mozapps\handling folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\mozapps\extensions folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\mozapps\downloads folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\mozapps folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\global\tree folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\global\toolbar folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\global\throbber folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\global\splitter folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\global\scrollbar folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\global\scale folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\global\radio folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\global\progressmeter folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\global\menu folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\global\media folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\global\icons folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\global\dirListing folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\global\CuteMenus folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\global\console folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\global\checkbox folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\global\button folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\global\arrow folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\global\alerts folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\global folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\communicator folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\browser\tabview folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\browser\tabbrowser folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\browser\preferences\in-content folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\browser\preferences folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\browser\places folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\browser\newtab folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\browser\icons folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\browser\feeds folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\browser\downloads folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\browser\devtools folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\browser folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\app_version\24 folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\app_version\16 folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\app_version folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\info@djzig.com\chrome folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\info@djzig.com folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\djziggy@gmail.com\chrome folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\djziggy@gmail.com folder moved successfully.
C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions folder moved successfully.
Folder C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}\ not found.
Folder C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\NuvolaFF@paenglab.ch\mozapps\extensions\ not found.
File C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\ecolo@loic.com.xpi not found.
File C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\nasanightlaunch@example.com.xpi not found.
File C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\{080955ad-b8bb-4500-806f-d2b9ad73d72e}.xpi not found.
File C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\{5A170DD3-63CA-4c58-93B7-DE9FF536C2FF}.xpi not found.
File C:\Users\Travis\AppData\Roaming\Mozilla\Firefox\Profiles\8l9g52fi.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi not found.
C:\Program Files (x86)\Mozilla Firefox\Extensions folder moved successfully.
C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} folder moved successfully.
C:\Program Files (x86)\Mozilla Firefox\browser\extensions folder moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Restrictions\ deleted successfully.
64bit-Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\WikiKomentáře Google...\ deleted successfully.
Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\WikiKomentáře Google...\ not found.
64bit-Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
C:\Windows\SysNative\perfh005.dat moved successfully.
C:\Windows\SysNative\perfh009.dat moved successfully.
C:\Windows\SysNative\perfc005.dat moved successfully.
C:\Windows\SysNative\perfc009.dat moved successfully.
File sethosts] not found.
File rity] not found.
File ptytemp] not found.
File PTYFLASH] not found.
File art explorer] not found.
File boot] not found.

OTL by OldTimer - Version 3.2.69.0 log created on 08272013_112132

Files\Folders moved on Reboot...

PendingFileRenameOperations files...

Registry entries deleted on Reboot...
Intel i5-3350P@3,7GHz / ASUS P8Z77-V / Patriot Viper 16GB (2x8GB) DDR3 1600 / EVGA GeForce GTX 780 Classified 3GB / Be quiet! Dark Power Pro 10 650W /
SSD OCZ Vertex 4 - 256GB / HDD Seagate SV35.5 - 1TB / Win10 / Corsair 600T Graphite Series bílá / WD My Book Essential 2TB

Uživatelský avatar
Travis
Level 4
Level 4
Příspěvky: 1063
Registrován: leden 13
Bydliště: Kladno
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - opět zpomalený internet

Příspěvekod Travis » 27 srp 2013 11:43

U tohoto C:\Windows\SysWow64\WDPABKP.dat mi to píše že nemám oprávnění k otevření souboru.

https://www.virustotal.com/cs/file/eab5 ... 377596041/

https://www.virustotal.com/cs/file/8fe8 ... 377596202/

Jinak to vypadá že po OTL to teď zas všechno lítá jak má,žádné záseky a prodlevy nepozoruji. :thumbup: :D
Intel i5-3350P@3,7GHz / ASUS P8Z77-V / Patriot Viper 16GB (2x8GB) DDR3 1600 / EVGA GeForce GTX 780 Classified 3GB / Be quiet! Dark Power Pro 10 650W /
SSD OCZ Vertex 4 - 256GB / HDD Seagate SV35.5 - 1TB / Win10 / Corsair 600T Graphite Series bílá / WD My Book Essential 2TB

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - opět zpomalený internet

Příspěvekod jaro3 » 28 srp 2013 09:53

Fajnj , ten soubor může úpatřit k nějaké záloze Western Digital..

Spusť OTL a klikni na Vyčisti.


Pokud nejsou problémy , je to vše a můžeš dát vyřešeno , zelenou fajfku.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
Travis
Level 4
Level 4
Příspěvky: 1063
Registrován: leden 13
Bydliště: Kladno
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - opět zpomalený internet

Příspěvekod Travis » 29 srp 2013 23:05

Super vše je zas jak má být! Mockrát děkuji chlapci! :thumbup: :clap: Za odvahu a statečnost rád lehce podpořím toto forum. :D
Intel i5-3350P@3,7GHz / ASUS P8Z77-V / Patriot Viper 16GB (2x8GB) DDR3 1600 / EVGA GeForce GTX 780 Classified 3GB / Be quiet! Dark Power Pro 10 650W /
SSD OCZ Vertex 4 - 256GB / HDD Seagate SV35.5 - 1TB / Win10 / Corsair 600T Graphite Series bílá / WD My Book Essential 2TB

Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu - opět zpomalený internet  Vyřešeno

Příspěvekod memphisto » 30 srp 2013 13:27

Jsem rádi, že jsme pomohli. Jinak i za jara není zač ;)
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 80 hostů