prosím o kontrolu logu z Hijackthis

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

adidass
Level 3
Level 3
Příspěvky: 471
Registrován: 13 led 2009 17:14

Re: prosi o kontrolu logu z Hijackthis

Příspěvek od adidass »

All processes killed
========== OTL ==========
No active process named explorer.exe was found!
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\{855F3B16-6D32-4fe6-8A56-BBB695989046} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{855F3B16-6D32-4fe6-8A56-BBB695989046}\ not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Search Page| /E : value set successfully!
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
Registry value HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\\{AEB6717E-7E19-11d0-97EE-00C04FD91972} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AEB6717E-7E19-11d0-97EE-00C04FD91972}\ not found.
========== FILES ==========
C:\Windows\msdownld.tmp folder moved successfully.
File\Folder C:\Windows\System32\*.tmp not found.
File\Folder C:\Recycled not found.
C:\Windows\tasks\SA.DAT moved successfully.
C:\Windows\MEMORY.DMP moved successfully.
C:\Windows\diagwrn.xml moved successfully.
C:\Windows\diagerr.xml moved successfully.
C:\$RECYCLE.BIN\S-1-5-21-411705913-1685533206-113458850-1000\$RM7XTSZ.eu] folder moved successfully.
C:\$RECYCLE.BIN\S-1-5-21-411705913-1685533206-113458850-1000\$R1X7HZT\Counter-Strike Source shortcuts\links folder moved successfully.
C:\$RECYCLE.BIN\S-1-5-21-411705913-1685533206-113458850-1000\$R1X7HZT\Counter-Strike Source shortcuts folder moved successfully.
C:\$RECYCLE.BIN\S-1-5-21-411705913-1685533206-113458850-1000\$R1X7HZT folder moved successfully.
C:\$RECYCLE.BIN\S-1-5-21-411705913-1685533206-113458850-1000 folder moved successfully.
C:\$RECYCLE.BIN folder moved successfully.
C:\$WINDOWS.~LS\Sources\36e6eb2a-8487-41db-8965-4a7d5ab397c2 folder moved successfully.
C:\$WINDOWS.~LS\Sources folder moved successfully.
C:\$WINDOWS.~LS\SetupTemp folder moved successfully.
C:\$WINDOWS.~LS folder moved successfully.
C:\$WINDOWS.~BT\Sources\spinstall\cs-cz folder moved successfully.
C:\$WINDOWS.~BT\Sources\spinstall folder moved successfully.
C:\$WINDOWS.~BT\Sources\servicingstackmisc folder moved successfully.
C:\$WINDOWS.~BT\Sources\servicing\0.0.0.1 folder moved successfully.
C:\$WINDOWS.~BT\Sources\servicing folder moved successfully.
C:\$WINDOWS.~BT\Sources\Panther\setup.exe folder moved successfully.
C:\$WINDOWS.~BT\Sources\Panther folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\_default\ultimaten folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\_default\ultimate folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\_default\starter folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\_default\homepremiumn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\_default\homepremium folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\_default\homebasicn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\_default\homebasic folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\_default\enterprisen folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\_default\enterprise folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\_default\businessn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\_default\business folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\_default folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\oem\ultimaten folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\oem\ultimate folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\oem\starter folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\oem\homepremiumn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\oem\homepremium folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\oem\homebasicn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\oem\homebasic folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\oem\enterprisen folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\oem\enterprise folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\oem\businessn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\oem\business folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\oem folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\eval\ultimaten folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\eval\ultimate folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\eval\starter folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\eval\homepremiumn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\eval\homepremium folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\eval\homebasicn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\eval\homebasic folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\eval\enterprisen folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\eval\enterprise folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\eval\businessn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\eval\business folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default\eval folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\_default folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\_default\ultimaten folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\_default\ultimate folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\_default\starter folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\_default\homepremiumn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\_default\homepremium folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\_default\homebasicn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\_default\homebasic folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\_default\enterprisen folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\_default\enterprise folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\_default\businessn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\_default\business folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\_default folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\oem\ultimaten folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\oem\ultimate folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\oem\starter folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\oem\homepremiumn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\oem\homepremium folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\oem\homebasicn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\oem\homebasic folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\oem\enterprisen folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\oem\enterprise folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\oem\businessn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\oem\business folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\oem folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\eval\ultimaten folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\eval\ultimate folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\eval\starter folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\eval\homepremiumn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\eval\homepremium folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\eval\homebasicn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\eval\homebasic folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\eval\enterprisen folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\eval\enterprise folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\eval\businessn folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\eval\business folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz\eval folder moved successfully.
C:\$WINDOWS.~BT\Sources\license\cs-cz folder moved successfully.
C:\$WINDOWS.~BT\Sources\license folder moved successfully.
C:\$WINDOWS.~BT\Sources\inf folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\networking-mpssvc-svc folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-wmi-core folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-winsock-core-infrastructure-upgrade folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-unimodem-config folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-uddi folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-textservicesframework-migration-dl folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-terminalservices-licenseserver folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-tapisetup folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-sxs folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-storagemigration\cs-cz folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-storagemigration folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-shmig-dl folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-rasserver-migplugin folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-rasconnectionmanager folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-rasapi folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-performancecounterinfrastructureconsumer-dl folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-performancecounterinfrastructure-dl folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-offlinefiles-dl folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-networkloadbalancing-core folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-networkbridge folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-ndis folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-msmq-messagingcoreservice folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-mediaplayer-drm-dl folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-mediaplayer folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-internet-naming-service-runtime folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-international-core-dl folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-iis-dl folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-ie-esc folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-ie-clientnetworkprotocolimplementation folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-iasserver-migplugin folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-gameuxmig-dl folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-directoryservices-adam-dl folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-dhcpservermigplugin-dl folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-com-dtc-setup-dl folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-com-complus-setup-dl folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-bluetooth-config folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\microsoft-windows-adfs-dl folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests\bitsextensions-server folder moved successfully.
C:\$WINDOWS.~BT\Sources\dlmanifests folder moved successfully.
C:\$WINDOWS.~BT\Sources\cs-cz folder moved successfully.
C:\$WINDOWS.~BT\Sources\adprep\cs-cz folder moved successfully.
C:\$WINDOWS.~BT\Sources\adprep folder moved successfully.
C:\$WINDOWS.~BT\Sources\6.0.6000.16386_x86\cs-cz folder moved successfully.
C:\$WINDOWS.~BT\Sources\6.0.6000.16386_x86 folder moved successfully.
C:\$WINDOWS.~BT\Sources folder moved successfully.
C:\$WINDOWS.~BT folder moved successfully.
========== REGISTRY ==========
========== COMMANDS ==========
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Public
->Temp folder emptied: 0 bytes

User: vasek
->Temp folder emptied: 35450 bytes
->Temporary Internet Files folder emptied: 6896865 bytes
->Flash cache emptied: 11914 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 44424300 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 49,00 mb


[EMPTYFLASH]

User: All Users

User: Default

User: Default User

User: Public

User: vasek
->Flash cache emptied: 0 bytes

Total Flash Files Cleaned = 0,00 mb


OTL by OldTimer - Version 3.1.34.0 log created on 03062010_081219

Files\Folders moved on Reboot...

Registry entries deleted on Reboot...
Gigabyte ga-870a-usb3 / Kingston 8GB KIT DDR3 1333MHz / AMD Phenom II X4 965 /
Sapphire HD 5750 1GB / Windwos 7 64bit / OCZ ModXStream Pro 600W / Akasa Freedom Xone
Uživatelský avatar
Damned
Tvůrce článků
Příspěvky: 8353
Registrován: 05 pro 2006 02:17
Bydliště: Rokycany
Kontaktovat uživatele:

Re: prosím o kontrolu logu z Hijackthis

Příspěvek od Damned »

To máš nějaký cracklý Windows?

Vlož mi sem ještě nový log z Hijackthis.
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
adidass
Level 3
Level 3
Příspěvky: 471
Registrován: 13 led 2009 17:14

Re: prosím o kontrolu logu z Hijackthis

Příspěvek od adidass »

windows mam originalni vistu

log z HJT

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:00:57, on 27.2.2010
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18385)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Windows\MHotKey.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\HKExt3.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Windows\ChiFuncExt.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\D-Link\D-Link AirPlus G+ Wireless Adapter Utility\DWLGTI.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\utorrent\utorrent.exe
C:\Program Files\QIP\qip.exe
C:\Program Files\Opera\opera.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896" onclick="window.open(this.href);return false;
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157" onclick="window.open(this.href);return false;
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157" onclick="window.open(this.href);return false;
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896" onclick="window.open(this.href);return false;
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896" onclick="window.open(this.href);return false;
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157" onclick="window.open(this.href);return false;
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [LchDrvKey] LchDrvKey.exe
O4 - HKLM\..\Run: [HKExt3] HKExt3.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [Skytel] Skytel.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Global Startup: D-Link AirPlus G+ Wireless Adapter Utility.lnk = C:\Program Files\D-Link\D-Link AirPlus G+ Wireless Adapter Utility\DWLGTI.EXE
O13 - Gopher Prefix:
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe

--
End of file - 3479 bytes
Gigabyte ga-870a-usb3 / Kingston 8GB KIT DDR3 1333MHz / AMD Phenom II X4 965 /
Sapphire HD 5750 1GB / Windwos 7 64bit / OCZ ModXStream Pro 600W / Akasa Freedom Xone
Uživatelský avatar
Damned
Tvůrce článků
Příspěvky: 8353
Registrován: 05 pro 2006 02:17
Bydliště: Rokycany
Kontaktovat uživatele:

Re: prosím o kontrolu logu z Hijackthis

Příspěvek od Damned »

windows mam originalni vistu

log z HJT

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:00:57, on 27.2.2010
Smaž starý logy z HJT a vyrob pro mne nový, ju? :newmail:
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
adidass
Level 3
Level 3
Příspěvky: 471
Registrován: 13 led 2009 17:14

Re: prosím o kontrolu logu z Hijackthis

Příspěvek od adidass »

no nevim jak to myslis ale to nad tim je novy tady mas jeste jednou log z HJT


normlane zpustim HJT a dam Do a system scan and save a logfile
neco mi to nacte a pak normalni poznamkovy blog a vnem je ten log

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:00:57, on 27.2.2010
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18385)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Windows\MHotKey.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\HKExt3.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Windows\ChiFuncExt.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\D-Link\D-Link AirPlus G+ Wireless Adapter Utility\DWLGTI.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\utorrent\utorrent.exe
C:\Program Files\QIP\qip.exe
C:\Program Files\Opera\opera.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896" onclick="window.open(this.href);return false;
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157" onclick="window.open(this.href);return false;
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157" onclick="window.open(this.href);return false;
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896" onclick="window.open(this.href);return false;
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896" onclick="window.open(this.href);return false;
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157" onclick="window.open(this.href);return false;
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [LchDrvKey] LchDrvKey.exe
O4 - HKLM\..\Run: [HKExt3] HKExt3.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [Skytel] Skytel.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Global Startup: D-Link AirPlus G+ Wireless Adapter Utility.lnk = C:\Program Files\D-Link\D-Link AirPlus G+ Wireless Adapter Utility\DWLGTI.EXE
O13 - Gopher Prefix:
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe

--
End of file - 3479 bytes
Gigabyte ga-870a-usb3 / Kingston 8GB KIT DDR3 1333MHz / AMD Phenom II X4 965 /
Sapphire HD 5750 1GB / Windwos 7 64bit / OCZ ModXStream Pro 600W / Akasa Freedom Xone
Uživatelský avatar
Damned
Tvůrce článků
Příspěvky: 8353
Registrován: 05 pro 2006 02:17
Bydliště: Rokycany
Kontaktovat uživatele:

Re: prosím o kontrolu logu z Hijackthis

Příspěvek od Damned »

Dej jen sken, bez ukládání a pak zmáčkni "Save log". Předím si dej vyhledat "hiajckthis.log" a všechy nalezené smaž do koše a ten vysysp.

Podle hlavičky poznáš datum:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at *22:00:57, on *27.2.2010
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18385)
Boot mode: Normal
*Čas a datum
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
adidass
Level 3
Level 3
Příspěvky: 471
Registrován: 13 led 2009 17:14

Re: prosím o kontrolu logu z Hijackthis

Příspěvek od adidass »

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:58:08, on 6.3.2010
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18385)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Windows\HKExt3.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\ICQ7.0\ICQ.exe
C:\Program Files\D-Link\D-Link AirPlus G+ Wireless Adapter Utility\DWLGTI.EXE
C:\Program Files\Hamachi\hamachi.exe
C:\Windows\System32\mobsync.exe
C:\Program Files\Rockstar Games\Rockstar Games Social Club\1_1_3_0\RGSC.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\system32\conime.exe
C:\Program Files\Opera\opera.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157" onclick="window.open(this.href);return false;
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896" onclick="window.open(this.href);return false;
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896" onclick="window.open(this.href);return false;
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [LchDrvKey] LchDrvKey.exe
O4 - HKLM\..\Run: [HKExt3] HKExt3.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [Skytel] Skytel.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKCU\..\Run: [RGSC] C:\Program Files\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent
O4 - HKCU\..\Run: [ICQ] "C:\Program Files\ICQ7.0\ICQ.exe" silent loginmode=4
O4 - Startup: hamachi.lnk = C:\Program Files\Hamachi\hamachi.exe
O4 - Global Startup: D-Link AirPlus G+ Wireless Adapter Utility.lnk = C:\Program Files\D-Link\D-Link AirPlus G+ Wireless Adapter Utility\DWLGTI.EXE
O9 - Extra button: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files\ICQ7.0\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files\ICQ7.0\ICQ.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: TeamViewer 5 (TeamViewer5) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe

--
End of file - 3277 bytes
Gigabyte ga-870a-usb3 / Kingston 8GB KIT DDR3 1333MHz / AMD Phenom II X4 965 /
Sapphire HD 5750 1GB / Windwos 7 64bit / OCZ ModXStream Pro 600W / Akasa Freedom Xone
Uživatelský avatar
Damned
Tvůrce článků
Příspěvky: 8353
Registrován: 05 pro 2006 02:17
Bydliště: Rokycany
Kontaktovat uživatele:

Re: prosím o kontrolu logu z Hijackthis

Příspěvek od Damned »

Smaž složku C:\_OTL


Stáhni si ToolsCleaner2 (by de A.Rothstein & Dj Quiou) na Plochu a spusť ho.

Klikni na Pt. Restauration (obnova) a poté na OK.
Klikni na Corbeille (koš) a poté na OK.
Klikni na Fichiers temp (temp složky) a poté na OK.
Klikni na Recherche (hledání) a nech Cleaner pracovat. Může se během čištění zastavit , ale nech ho pokračovat.
Když program skončí , klikni na Suppression (odstranění) a odstraň nalezené.
Zavři a smaž program.


Kdyby se něco zase objevilo, tak se zastav.
Označ topic za vyřešený (zelená fajfka) a měj se. :bigups:
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
adidass
Level 3
Level 3
Příspěvky: 471
Registrován: 13 led 2009 17:14

Re: prosím o kontrolu logu z Hijackthis

Příspěvek od adidass »

jo diky uz se to sekan o neco min ale jak to tak vypada problem bude v procesesoru na Viste mate na boku ty miniaplikace no a ja tam mam CPU to meri vytizeni CPU no prave kolecko je kolem 34% ale to leve je treba 35% pak to klesne na 01% a pak na 00% a potom se to sekne
Gigabyte ga-870a-usb3 / Kingston 8GB KIT DDR3 1333MHz / AMD Phenom II X4 965 /
Sapphire HD 5750 1GB / Windwos 7 64bit / OCZ ModXStream Pro 600W / Akasa Freedom Xone
Uživatelský avatar
Damned
Tvůrce článků
Příspěvky: 8353
Registrován: 05 pro 2006 02:17
Bydliště: Rokycany
Kontaktovat uživatele:

Re: prosím o kontrolu logu z Hijackthis

Příspěvek od Damned »

Co si měl v PC šmejdy, ty sme odstranily. Můžeš ještě zkusit:

Stáhni si :Dr. Web CureIt nebo z http://www.majorgeeks.com/Dr.Web_CureIT_d4783.html" onclick="window.open(this.href);return false; dej update , po aktualizaci dej start.

Tlačítky dole můzeš soubor léčit, smazat, přesunout nebo přejmenovat.Pak napiš výsledek. Sken může trvat dlouho. Nalezenou infekci nejdříve léčit, potom teprve smazat. Pokud něco najde ve složce System Volume Information, tak smazat.
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
adidass
Level 3
Level 3
Příspěvky: 471
Registrován: 13 led 2009 17:14

Re: prosím o kontrolu logu z Hijackthis

Příspěvek od adidass »

ok nic to nenaslo
Gigabyte ga-870a-usb3 / Kingston 8GB KIT DDR3 1333MHz / AMD Phenom II X4 965 /
Sapphire HD 5750 1GB / Windwos 7 64bit / OCZ ModXStream Pro 600W / Akasa Freedom Xone
Uživatelský avatar
Damned
Tvůrce článků
Příspěvky: 8353
Registrován: 05 pro 2006 02:17
Bydliště: Rokycany
Kontaktovat uživatele:

Re: prosím o kontrolu logu z Hijackthis

Příspěvek od Damned »

PC máš bez virů, viděl bych to možná na konflikt aplikací, nebo špatnej měřák. Nebo na CPU, ale to ti poradí spíše kluci v sekci Hardware
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner
Zamčeno

Zpět na „HiJackThis“