Prosím o kontrolu logu - vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43296
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod jaro3 » 27 říj 2013 10:19

Poklepej na ikonu OTL na ploše.Ujisti se , že máš všechny ostatní aplikace a prohlížeče zavřeny.
Pod Vlastní skenování/opravy do okénka vlož následující text, zobrazený zeleně:

Kód: Vybrat vše

:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

:Files
C:\Documents and Settings\NetworkService\Application Data\frduefah
C:\Documents and Settings\Gabryš\Application Data\frduerwt
C:\Documents and Settings\Gabryš\Application Data\frdueroo
C:\Documents and Settings\All Users\Application Data\deadbeef
C:\Documents and Settings\Gabryš\Application Data\iqifurwe
C:\Documents and Settings\Gabryš\Application Data\iqifurof
C:\Documents and Settings\Gabryš\Application Data\roasreha
C:\Documents and Settings\Gabryš\Application Data\roasredr
C:\Documents and Settings\Gabryš\Application Data\eiiapytq
C:\Documents and Settings\Gabryš\Application Data\eiiapyui
C:\Documents and Settings\Gabryš\Application Data\fidaigqt
C:\Documents and Settings\Gabryš\Application Data\fidaigao
C:\Documents and Settings\Gabryš\Application Data\eyysdgdt
C:\Documents and Settings\Gabryš\Application Data\eyysdgho
C:\Documents and Settings\Gabryš\Application Data\iyrowhdt
C:\Documents and Settings\Gabryš\Application Data\iyrowhho
C:\Documents and Settings\All Users\Application Data\deadbeef
C:\Documents and Settings\All Users\Application Data\filuri.exe
C:\Documents and Settings\All Users\Application Data\gixyhe.exe
C:\Documents and Settings\Gabryš\Application Data\iqifurwe
C:\Documents and Settings\Gabryš\Application Data\iqifurof
C:\Documents and Settings\All Users\Application Data\bilic.exe
C:\Documents and Settings\Gabryš\Application Data\roasreha
C:\Documents and Settings\Gabryš\Application Data\roasredr
C:\Documents and Settings\All Users\Application Data\xoroke.exe
C:\Documents and Settings\All Users\Application Data\pytyx.exe
C:\Documents and Settings\All Users\Application Data\qozexy.exe
C:\Documents and Settings\All Users\Application Data\xinem.exe
C:\Documents and Settings\Gabryš\Application Data\fidaigqt
C:\Documents and Settings\Gabryš\Application Data\fidaigao
C:\Documents and Settings\Gabryš\Application Data\eyysdgdt
C:\Documents and Settings\Gabryš\Application Data\eyysdgho
C:\Documents and Settings\Gabryš\Application Data\iyrowhdt
C:\Documents and Settings\Gabryš\Application Data\iyrowhho
C:\Documents and Settings\NetworkService\Application Data\frduerwt
C:\Documents and Settings\NetworkService\Application Data\frdueroo
C:\Documents and Settings\Gabryš\My Documents\cc_20130925_194137.reg
C:\Documents and Settings\All Users\Application Data\hesir.exe
C:\Documents and Settings\Gabryš\Application Data\eiiapytq
C:\Documents and Settings\Gabryš\Application Data\eiiapyui
C:\Documents and Settings\All Users\Application Data\1b7d5af6
C:\Documents and Settings\All Users\Application Data\995d1850
C:\Documents and Settings\All Users\Application Data\da6d39a3
C:\Documents and Settings\Gabryš\Application Data\frduerwt
C:\Documents and Settings\Gabryš\Application Data\frdueroo
C:\Documents and Settings\Gabryš\Application Data\cYo

:Reg
:Commands
[purity]
[emptytemp]
[start explorer]
[Reboot]

Poté klikni nahoře na Opravit. Nech program nerušeně běžet, na konci se provede restart PC.
Po restartu se objeví log , prosím zkopíruj sem celý jeho obsah.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Reklama
Gabryš
nováček
Příspěvky: 35
Registrován: srpen 13
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Gabryš » 27 říj 2013 11:33

All processes killed
========== OTL ==========
No active process named explorer.exe was found!
No active process named firefox.exe was found!
========== FILES ==========
C:\Documents and Settings\NetworkService\Application Data\frduefah folder moved successfully.
C:\Documents and Settings\Gabryš\Application Data\frduerwt moved successfully.
C:\Documents and Settings\Gabryš\Application Data\frdueroo moved successfully.
C:\Documents and Settings\All Users\Application Data\deadbeef moved successfully.
C:\Documents and Settings\Gabryš\Application Data\iqifurwe moved successfully.
C:\Documents and Settings\Gabryš\Application Data\iqifurof moved successfully.
C:\Documents and Settings\Gabryš\Application Data\roasreha moved successfully.
C:\Documents and Settings\Gabryš\Application Data\roasredr moved successfully.
C:\Documents and Settings\Gabryš\Application Data\eiiapytq moved successfully.
C:\Documents and Settings\Gabryš\Application Data\eiiapyui moved successfully.
C:\Documents and Settings\Gabryš\Application Data\fidaigqt moved successfully.
C:\Documents and Settings\Gabryš\Application Data\fidaigao moved successfully.
C:\Documents and Settings\Gabryš\Application Data\eyysdgdt moved successfully.
C:\Documents and Settings\Gabryš\Application Data\eyysdgho moved successfully.
C:\Documents and Settings\Gabryš\Application Data\iyrowhdt moved successfully.
C:\Documents and Settings\Gabryš\Application Data\iyrowhho moved successfully.
File\Folder C:\Documents and Settings\All Users\Application Data\deadbeef not found.
C:\Documents and Settings\All Users\Application Data\filuri.exe moved successfully.
C:\Documents and Settings\All Users\Application Data\gixyhe.exe moved successfully.
File\Folder C:\Documents and Settings\Gabryš\Application Data\iqifurwe not found.
File\Folder C:\Documents and Settings\Gabryš\Application Data\iqifurof not found.
C:\Documents and Settings\All Users\Application Data\bilic.exe moved successfully.
File\Folder C:\Documents and Settings\Gabryš\Application Data\roasreha not found.
File\Folder C:\Documents and Settings\Gabryš\Application Data\roasredr not found.
C:\Documents and Settings\All Users\Application Data\xoroke.exe moved successfully.
C:\Documents and Settings\All Users\Application Data\pytyx.exe moved successfully.
C:\Documents and Settings\All Users\Application Data\qozexy.exe moved successfully.
C:\Documents and Settings\All Users\Application Data\xinem.exe moved successfully.
File\Folder C:\Documents and Settings\Gabryš\Application Data\fidaigqt not found.
File\Folder C:\Documents and Settings\Gabryš\Application Data\fidaigao not found.
File\Folder C:\Documents and Settings\Gabryš\Application Data\eyysdgdt not found.
File\Folder C:\Documents and Settings\Gabryš\Application Data\eyysdgho not found.
File\Folder C:\Documents and Settings\Gabryš\Application Data\iyrowhdt not found.
File\Folder C:\Documents and Settings\Gabryš\Application Data\iyrowhho not found.
C:\Documents and Settings\NetworkService\Application Data\frduerwt moved successfully.
C:\Documents and Settings\NetworkService\Application Data\frdueroo moved successfully.
File\Folder C:\Documents and Settings\Gabryš\My Documents\cc_20130925_194137.reg not found.
C:\Documents and Settings\All Users\Application Data\hesir.exe moved successfully.
File\Folder C:\Documents and Settings\Gabryš\Application Data\eiiapytq not found.
File\Folder C:\Documents and Settings\Gabryš\Application Data\eiiapyui not found.
C:\Documents and Settings\All Users\Application Data\1b7d5af6 moved successfully.
C:\Documents and Settings\All Users\Application Data\995d1850 moved successfully.
C:\Documents and Settings\All Users\Application Data\da6d39a3 moved successfully.
File\Folder C:\Documents and Settings\Gabryš\Application Data\frduerwt not found.
File\Folder C:\Documents and Settings\Gabryš\Application Data\frdueroo not found.
C:\Documents and Settings\Gabryš\Application Data\cYo\ComicRack\Scripts\.Pending folder moved successfully.
C:\Documents and Settings\Gabryš\Application Data\cYo\ComicRack\Scripts folder moved successfully.
C:\Documents and Settings\Gabryš\Application Data\cYo\ComicRack folder moved successfully.
C:\Documents and Settings\Gabryš\Application Data\cYo folder moved successfully.
========== REGISTRY ==========
========== COMMANDS ==========

[EMPTYTEMP]

User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Java cache emptied: 0 bytes

User: All Users

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: gabrya

User: Gabrys
->Temporary Internet Files folder emptied: 0 bytes

User: Gabryš

User: Gabryš
->Temp folder emptied: 817953 bytes
->Temporary Internet Files folder emptied: 1886775 bytes
->Java cache emptied: 0 bytes
->Google Chrome cache emptied: 0 bytes
->Opera cache emptied: 240 bytes
->Flash cache emptied: 15253 bytes

User: Jurai
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Java cache emptied: 0 bytes
->Google Chrome cache emptied: 0 bytes
->Opera cache emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: UpdatusUser
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 6534 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 17975 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 526688739 bytes

Total Files Cleaned = 505,00 mb


OTL by OldTimer - Version 3.2.69.0 log created on 10272013_112605

Files\Folders moved on Reboot...

PendingFileRenameOperations files...

Registry entries deleted on Reboot...

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43296
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod jaro3 » 28 říj 2013 09:19

Co problémy?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Gabryš
nováček
Příspěvky: 35
Registrován: srpen 13
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Gabryš » 28 říj 2013 12:58

Zdá se, že už žádné nemám :-) . Mnohé díky za tvůj čas a péči !!! odeslán příspěvek na provoz 200,-
Možná bych měl zlikvidovat všechny ty podpůrné programy ? JRT, OTL, HJT, ATF, TFC, TDSS, sc-cleaner, adwcleaner, Malwarebytes .... ???
Nebo můžu některý z nich občas použít ?

Uživatelský avatar
Žbeky
Moderátor
Guru Level 13
Guru Level 13
Příspěvky: 22288
Registrován: květen 08
Bydliště: Vsetín - Pardubice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Žbeky » 28 říj 2013 18:03

Malwarebytes AM a CCleaner můžeš jednou za čas použít, ostatní v klidu smaž. Pokud nejsou problémy, dej vyřešeno
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.

HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 68 hostů