Kontrola logu - Zbytky AVG v PC Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
miruska27
Level 3.5
Level 3.5
Příspěvky: 735
Registrován: leden 09
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - Zbytky AVG v PC

Příspěvekod miruska27 » 27 dub 2014 10:05

OTL Extras logfile created on: 27.4.2014 9:53:42 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\PC\Plocha
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

2,50 Gb Total Physical Memory | 1,92 Gb Available Physical Memory | 76,73% Memory free
3,08 Gb Paging File | 2,62 Gb Available in Paging File | 84,80% Paging File free
Paging file location(s): C:\pagefile.sys 756 1512 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 149,04 Gb Total Space | 113,68 Gb Free Space | 76,28% Space Free | Partition Type: NTFS
Drive E: | 368,10 Gb Total Space | 314,52 Gb Free Space | 85,44% Space Free | Partition Type: NTFS
Drive F: | 97,65 Gb Total Space | 88,76 Gb Free Space | 90,90% Space Free | Partition Type: NTFS

Computer Name: PC-7C45B7D3D4B1 | User Name: PC | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l

[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = htmlfile] -- Reg Error: Key error. File not found

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
"DoNotAllowExceptions" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"C:\WINDOWS\system32\mmc.exe" = C:\WINDOWS\system32\mmc.exe:*:Enabled:Konzola Microsoft Management Console -- (Microsoft Corporation)
"C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe" = C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe:*:Enabled:Daemonu.exe -- (NVIDIA Corporation)
"C:\Program Files\Mozilla Firefox\plugin-container.exe" = C:\Program Files\Mozilla Firefox\plugin-container.exe:*:Enabled:Plugin Container for Firefox -- (Mozilla Corporation)
"C:\Program Files\Skype\Phone\Skype.exe" = C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype -- (Skype Technologies S.A.)


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0A0CADCF-78DA-33C4-A350-CD51849B9702}" = Microsoft .NET Framework 4 Extended
"{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser
"{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{26A24AE4-039D-4CA4-87B4-2F83217055FF}" = Java 7 Update 55
"{28E82311-8616-11E1-BEB0-B8AC6F97B88E}" = Google Earth
"{29373274-977E-413C-A4DE-DC0F8E80C429}" = Nokia Connectivity Cable Driver
"{2D9F8079-7D50-3EFD-B3BD-ED642E4EE756}" = Microsoft Visual Basic PowerPacks 10.0
"{350C9405-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{3F4EC965-28EF-45C3-B063-04B25D4E9679}" = WIDCOMM Bluetooth Software
"{4412F224-3849-4461-A3E9-DEEF8D252790}" = Visual Studio C++ 10.0 Runtime
"{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{52793F88-BF4D-4AA6-8696-80E72CE758B1}" = Adobe Flash Player 12 ActiveX
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{6D01D1B1-17BD-4F10-BB11-F08F0C47D42B}" = PC Connectivity Solution
"{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2
"{6EA3A8A6-4B6B-4288-B8FB-3EB11A403ED3}" = Eye 312
"{7036A6F4-5DAD-3908-956D-1752CD7F7E5A}" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7130468A-F53F-4698-8C09-A339EA3B05E6}" = Nokia Software Updater
"{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}" = Skype™ 6.14
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{86924253-1BCC-4BF5-B995-33C1DB7EECAE}" = 32 Bit HP CIO Components Installer
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A708DD8-A5E6-11D4-A706-000629E95E20}" = Intel(R) Graphics Media Accelerator Driver
"{90110405-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003
"{90120000-0020-0405-0000-0000000FF1CE}" = Sada Compatibility Pack pro systém Office 2007
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{91B33C97-0FBA-74AE-E802-D782F5C8AA89}_is1" = Ashampoo Burning Studio 2013 v.11.0.6
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}" = Visual Studio 2012 x86 Redistributables
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9B34CC4C-E7FF-4AC8-B771-1D09612D6430}" = Broadcom NetXtreme-I Netlink Driver and Management Installer
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A2DE62D8-EF1B-36CB-B461-B1E221ED8608}" = Microsoft .NET Framework 4 Extended CSY Language Pack
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A5457401-D56A-43F2-9524-78E54A7FC07A}" = SlimDrivers
"{AC76BA86-7AD7-1029-7B44-AB0000000001}" = Adobe Reader XI (11.0.06) - Czech
"{AE2DB6F2-8A3C-4935-BB59-795A06960356}" = Alcor Micro USB Card Reader
"{AF111648-99A1-453E-81DD-80DBBF6DAD0D}" = MSVC90_x86
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Ovládací panel NVIDIA 307.74
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView" = NVIDIA nView 136.53
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizace NVIDIA 1.10.8
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components
"{BAF78226-3200-4DB4-BE33-4D922A799840}" = Windows Presentation Foundation
"{BB406CEB-6207-4512-9BB2-89950DC9D6B6}_is1" = ConvertXtoDVD 2.2.3.258
"{C02C7F3B-BC9C-4DF5-852F-A9FDF58A7E18}" = Alcor Micro USB Card Reader
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{CD95F661-A5C4-44F5-A6AA-ECDD91C240B8}" = WinZip 12.1
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{DEDB47A3-C988-4A43-A645-E2CEA571E680}" = Epson Easy Photo Print 2
"{E3B64CC5-C011-40C0-92BC-7316CD5E5688}" = Microsoft_VC100_CRT_SP1_x86
"{EDB188F5-D8E8-42EE-89E0-F212DA48CB81}" = Nokia Suite
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"17D063A0A9F5D5A225B76B1D9BCB5ADBE85C8382" = Balíček ovladače systému Windows - Nokia pccsmcfd “LegacyDriver” (05/31/2012 7.1.2.0)
"Adobe Flash Player Plugin" = Adobe Flash Player 13 Plugin
"AmUStor" = Alcor Micro USB Card Reader
"BitDefender Gonzales" = Bitdefender Antivirus Free Edition
"CCleaner" = CCleaner
"CDex" = CDex - Open Source Digital Audio CD Extractor
"DVDFab 9_is1" = DVDFab 9.1.3.6 (20/03/2014)
"EPSON SX100 Series" = EPSON SX100 Series Printer Uninstall
"HDMI" = Intel(R) Graphics Media Accelerator Driver
"ie8" = Windows Internet Explorer 8
"InstallShield_{C02C7F3B-BC9C-4DF5-852F-A9FDF58A7E18}" = Alcor Micro USB Card Reader
"KLiteCodecPack_is1" = K-Lite Mega Codec Pack 9.1.0
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware verze 1.75.0.1300
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile CSY Language Pack" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Microsoft .NET Framework 4 Extended CSY Language Pack" = Microsoft .NET Framework 4 Extended CSY Language Pack
"Mozilla Firefox 28.0 (x86 cs)" = Mozilla Firefox 28.0 (x86 cs)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"MyDriveConnect" = MyDriveConnect 3.3.0.1342
"Nokia Suite" = Nokia Suite
"Revo Uninstaller" = Revo Uninstaller 1.95
"VLC media player" = VLC media player 2.1.3
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows Media Player" = Windows Media Player 11
"XpsEPSC" = XML Paper Specification Shared Components Pack 1.0

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Google Chrome" = Google Chrome
"Kdo je kdo 2.3.1" = Kdo je kdo 2.3.1

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 22.4.2014 16:58:22 | Computer Name = PC-7C45B7D3D4B1 | Source = crypt32 | ID = 131080
Description = Načtení automatické aktualizace pořadového čísla kořenového seznamu
jiného výrobce z: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
se nezdařilo. Chyba: Takové síťové připojení neexistuje.

Error - 23.4.2014 5:11:06 | Computer Name = PC-7C45B7D3D4B1 | Source = crypt32 | ID = 131080
Description = Načtení automatické aktualizace pořadového čísla kořenového seznamu
jiného výrobce z: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
se nezdařilo. Chyba: A connection with the server could not be established

Error - 23.4.2014 5:11:41 | Computer Name = PC-7C45B7D3D4B1 | Source = crypt32 | ID = 131080
Description = Načtení automatické aktualizace pořadového čísla kořenového seznamu
jiného výrobce z: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
se nezdařilo. Chyba: A connection with the server could not be established

Error - 23.4.2014 5:11:42 | Computer Name = PC-7C45B7D3D4B1 | Source = crypt32 | ID = 131080
Description = Načtení automatické aktualizace pořadového čísla kořenového seznamu
jiného výrobce z: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
se nezdařilo. Chyba: A connection with the server could not be established

Error - 23.4.2014 5:13:12 | Computer Name = PC-7C45B7D3D4B1 | Source = crypt32 | ID = 131080
Description = Načtení automatické aktualizace pořadového čísla kořenového seznamu
jiného výrobce z: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
se nezdařilo. Chyba: A connection with the server could not be established

Error - 23.4.2014 5:13:12 | Computer Name = PC-7C45B7D3D4B1 | Source = crypt32 | ID = 131080
Description = Načtení automatické aktualizace pořadového čísla kořenového seznamu
jiného výrobce z: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
se nezdařilo. Chyba: Takové síťové připojení neexistuje.

Error - 23.4.2014 5:13:13 | Computer Name = PC-7C45B7D3D4B1 | Source = crypt32 | ID = 131080
Description = Načtení automatické aktualizace pořadového čísla kořenového seznamu
jiného výrobce z: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
se nezdařilo. Chyba: Takové síťové připojení neexistuje.

Error - 24.4.2014 5:17:49 | Computer Name = PC-7C45B7D3D4B1 | Source = MsiInstaller | ID = 11706
Description = Produkt: MusicJet - Chyba 1706 Instalační balíček pro produkt MusicJet
nebyl nalezen. Spusťte instalaci znovu pomocí platného instalačního balíčku MusicJet-Setup.msi.

Error - 24.4.2014 5:20:24 | Computer Name = PC-7C45B7D3D4B1 | Source = MsiInstaller | ID = 11706
Description = Produkt: MusicJet - Chyba 1706 Instalační balíček pro produkt MusicJet
nebyl nalezen. Spusťte instalaci znovu pomocí platného instalačního balíčku MusicJet-Setup.msi.

Error - 26.4.2014 10:08:30 | Computer Name = PC-7C45B7D3D4B1 | Source = MsiInstaller | ID = 11706
Description = Produkt: MusicJet - Chyba 1706 Instalační balíček pro produkt MusicJet
nebyl nalezen. Spusťte instalaci znovu pomocí platného instalačního balíčku MusicJet-Setup.msi.

[ System Events ]
Error - 22.4.2014 16:54:07 | Computer Name = PC-7C45B7D3D4B1 | Source = Service Control Manager | ID = 7034
Description = Služba Služba brány aplikačního rozhraní byla neočekávaně ukončena.
Tento stav nastal již 1krát.

Error - 23.4.2014 5:08:35 | Computer Name = PC-7C45B7D3D4B1 | Source = Service Control Manager | ID = 7034
Description = Služba Adaptér výkonu služby WMI byla neočekávaně ukončena. Tento
stav nastal již 1krát.

Error - 23.4.2014 5:08:35 | Computer Name = PC-7C45B7D3D4B1 | Source = Service Control Manager | ID = 7034
Description = Služba Zařazování tisku byla neočekávaně ukončena. Tento stav nastal
již 1krát.

Error - 23.4.2014 5:08:35 | Computer Name = PC-7C45B7D3D4B1 | Source = Service Control Manager | ID = 7034
Description = Služba NVIDIA Update Service Daemon byla neočekávaně ukončena. Tento
stav nastal již 1krát.

Error - 23.4.2014 5:08:35 | Computer Name = PC-7C45B7D3D4B1 | Source = Service Control Manager | ID = 7034
Description = Služba Služba brány aplikačního rozhraní byla neočekávaně ukončena.
Tento stav nastal již 1krát.

Error - 23.4.2014 5:08:35 | Computer Name = PC-7C45B7D3D4B1 | Source = Service Control Manager | ID = 7034
Description = Služba Java Quick Starter byla neočekávaně ukončena. Tento stav nastal
již 1krát.

Error - 25.4.2014 6:10:38 | Computer Name = PC-7C45B7D3D4B1 | Source = Service Control Manager | ID = 7034
Description = Služba Java Quick Starter byla neočekávaně ukončena. Tento stav nastal
již 1krát.

Error - 25.4.2014 13:18:59 | Computer Name = PC-7C45B7D3D4B1 | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1084 při pokusu o spuštění služby EventSystem
s argumenty za účelem spuštění serveru: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 25.4.2014 13:19:42 | Computer Name = PC-7C45B7D3D4B1 | Source = Service Control Manager | ID = 7026
Description = Zavedení následujícího ovladače pro spouštění počítače nebo systému
se nezdařilo: Fips intelppm

Error - 25.4.2014 13:32:04 | Computer Name = PC-7C45B7D3D4B1 | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1084 při pokusu o spuštění služby EventSystem
s argumenty za účelem spuštění serveru: {1BE1F766-5536-11D1-B726-00C04FB926AF}


< End of report >

Reklama
Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43061
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - Zbytky AVG v PC

Příspěvekod jaro3 » 28 dub 2014 09:41

Poklepej na ikonu OTL na ploše.Ujisti se , že máš všechny ostatní aplikace a prohlížeče zavřeny.
Pod Vlastní skenování/opravy do okénka vlož následující text, zobrazený zeleně:

Kód: Vybrat vše

:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
DRV - (WDICA) -- File not found
DRV - (PDRFRAME) -- File not found
DRV - (PDRELI) -- File not found
DRV - (PDFRAME) -- File not found
DRV - (PDCOMP) -- File not found
DRV - (PCIDump) -- File not found
DRV - (lbrtfdc) -- File not found
DRV - (i2omgmt) -- File not found
DRV - (Changer) -- File not found
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{1297C514-1A64-4C43-9157-30F75774184F}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
IE - HKCU\..\SearchScopes,DefaultScope =
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKCU\..\SearchScopes\{1297C514-1A64-4C43-9157-30F75774184F}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
IE - HKCU\..\SearchScopes\{43F7A00F-51B7-4018-83DB-03415025C6D7}: "URL" = http://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_14875
IE - HKCU\..\SearchScopes\{95581BBD-E50C-4232-9C7F-6A5906DD87AA}: "URL" = http://search.yahoo.com/search?fr=chr-g ... =443898&p={searchTerms}
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:28.0
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll File not found
[2012.08.28 11:26:03 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\PC\Data aplikací\Mozilla\Extensions
[2014.03.29 11:17:18 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\browser\extensions
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present

:Files
C:\WINDOWS\System32\*.tmp
C:\WINDOWS\*.tmp
C:\WINDOWS\system32\*.tmp.dll
C:\WINDOWS\System32\dllcache\*.tmp
C:\WINDOWS\system32\SET*.tmp
C:\WINDOWS\system32\DUMP*.tmp
c:\windows\Tasks\*.job /s
C:\*.tmp
C:\WINDOWS\System32\drivers\*.tmp
C:\Program Files\*.tmp
C:\Documents and Settings\All Users\Data aplikací\*.tmp
C:\Documents and Settings\PC\Data aplikací\28770
C:\Documents and Settings\All Users\Plocha\MusicJet.lnk
C:\Documents and Settings\PC\Data aplikací\inst.exe
C:\Documents and Settings\All Users\Data aplikací\AVAST Software
C:\Documents and Settings\All Users\Data aplikací\AVG
C:\Documents and Settings\PC\Data aplikací\23332
C:\Documents and Settings\PC\Data aplikací\23413
C:\Documents and Settings\PC\Data aplikací\23810
C:\Documents and Settings\PC\Data aplikací\24071
C:\Documents and Settings\PC\Data aplikací\25845
C:\Documents and Settings\PC\Data aplikací\28770
C:\Documents and Settings\PC\Data aplikací\30188
C:\Documents and Settings\PC\Data aplikací\AVG
C:\Documents and Settings\PC\Data aplikací\ESET

:Reg
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\MusicJet]
[-HKEY_CURRENT_USER\Software\Classes\MusicJet]
[-HKEY_CURRENT_USER\Software\Classes\MusicJet]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\1B5133860E86B1A4397905C9E39B112D]
"ProductName"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\1B5133860E86B1A4397905C9E39B112D\SourceList]
"PackageName"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Documents and Settings\All Users\Nabídka Start\Programy\MusicJet\"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\33ED3E31286A28D4885B189ACCAC82A5]
"1B5133860E86B1A4397905C9E39B112D"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\35AC8D92ABD1D8540BAAC687DE55DB41]
"1B5133860E86B1A4397905C9E39B112D"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\42182D298F576F1419DE5B8A16F45FCF]
"1B5133860E86B1A4397905C9E39B112D"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\534D62D788B457C49999A04AF10157C3]
"1B5133860E86B1A4397905C9E39B112D"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\64D62278AB8B215439BFCA06248591CE]
"1B5133860E86B1A4397905C9E39B112D"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\69D49F601061F794CA6D8FAE03A0279E]
"1B5133860E86B1A4397905C9E39B112D"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6BC10AEA13C1CF34F8CDD020B93790CB]
"1B5133860E86B1A4397905C9E39B112D"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\998B953ED00A17E46B931A61D9A2D26B]
"1B5133860E86B1A4397905C9E39B112D"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A596F7A7BC47C5143AD6C1F9EAF2CC21]
"1B5133860E86B1A4397905C9E39B112D"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E939CC06F7F54A44987603CAAEC080FA]
"1B5133860E86B1A4397905C9E39B112D"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FD4E0306683F1544CA7C215BCF610155]
"1B5133860E86B1A4397905C9E39B112D"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1B5133860E86B1A4397905C9E39B112D\InstallProperties]
"InstallLocation"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1B5133860E86B1A4397905C9E39B112D\InstallProperties]
"Publisher"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1B5133860E86B1A4397905C9E39B112D\InstallProperties]
"DisplayName"=-
[HKEY_USERS\S-1-5-21-2556010890-1905990878-1114169745-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\MusicJet]
[-HKEY_USERS\S-1-5-21-2556010890-1905990878-1114169745-1003\Software\Classes\MusicJet]
[-HKEY_USERS\S-1-5-21-2556010890-1905990878-1114169745-1003\Software\Classes\MusicJet]
[-HKEY_USERS\S-1-5-21-2556010890-1905990878-1114169745-1003_Classes\MusicJet]
[-HKEY_USERS\S-1-5-21-2556010890-1905990878-1114169745-1003_Classes\MusicJet]

:Commands
[purity]
[emptytemp]
[start explorer]
[Reboot]


Poté klikni nahoře na Opravit. Nech program nerušeně běžet, na konci se provede restart PC.
Po restartu se objeví log , prosím zkopíruj sem celý jeho obsah.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
miruska27
Level 3.5
Level 3.5
Příspěvky: 735
Registrován: leden 09
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - Zbytky AVG v PC

Příspěvekod miruska27 » 28 dub 2014 10:53

Hezký den všem a děkuji Jaro.... :-) Tady je log.

All processes killed
========== OTL ==========
No active process named explorer.exe was found!
No active process named firefox.exe was found!
Service WDICA stopped successfully!
Service WDICA deleted successfully!
File File not found not found.
Service PDRFRAME stopped successfully!
Service PDRFRAME deleted successfully!
File File not found not found.
Service PDRELI stopped successfully!
Service PDRELI deleted successfully!
File File not found not found.
Service PDFRAME stopped successfully!
Service PDFRAME deleted successfully!
File File not found not found.
Service PDCOMP stopped successfully!
Service PDCOMP deleted successfully!
File File not found not found.
Service PCIDump stopped successfully!
Service PCIDump deleted successfully!
File File not found not found.
Service lbrtfdc stopped successfully!
Service lbrtfdc deleted successfully!
File File not found not found.
Service i2omgmt stopped successfully!
Service i2omgmt deleted successfully!
File File not found not found.
Service Changer stopped successfully!
Service Changer deleted successfully!
File File not found not found.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{1297C514-1A64-4C43-9157-30F75774184F}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1297C514-1A64-4C43-9157-30F75774184F}\ not found.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{1297C514-1A64-4C43-9157-30F75774184F}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1297C514-1A64-4C43-9157-30F75774184F}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{43F7A00F-51B7-4018-83DB-03415025C6D7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{43F7A00F-51B7-4018-83DB-03415025C6D7}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{95581BBD-E50C-4232-9C7F-6A5906DD87AA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{95581BBD-E50C-4232-9C7F-6A5906DD87AA}\ not found.
Prefs.js: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:28.0 removed from extensions.enabledAddons
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@tools.google.com/Google Update;version=3\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@tools.google.com/Google Update;version=9\ deleted successfully.
C:\Documents and Settings\PC\Data aplikací\Mozilla\Extensions folder moved successfully.
C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} folder moved successfully.
C:\Program Files\Mozilla Firefox\browser\extensions folder moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Restrictions\ deleted successfully.
Registry key HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer\Control Panel\ deleted successfully.
File KEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\MusicJet] not found.
File KEY_CURRENT_USER\Software\Classes\MusicJet] not found.
File KEY_CURRENT_USER\Software\Classes\MusicJet] not found.
Folder EY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\1B5133860E86B1A4397905C9E39B112D]\ not found.
Folder EY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\1B5133860E86B1A4397905C9E39B112D\SourceList]\ not found.
File EY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] not found.
Folder EY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\33ED3E31286A28D4885B189ACCAC82A5]\ not found.
Folder EY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\35AC8D92ABD1D8540BAAC687DE55DB41]\ not found.
Folder EY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\42182D298F576F1419DE5B8A16F45FCF]\ not found.
Folder EY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\534D62D788B457C49999A04AF10157C3]\ not found.
Folder EY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\64D62278AB8B215439BFCA06248591CE]\ not found.
Folder EY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\69D49F601061F794CA6D8FAE03A0279E]\ not found.
Folder EY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6BC10AEA13C1CF34F8CDD020B93790CB]\ not found.
Folder EY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\998B953ED00A17E46B931A61D9A2D26B]\ not found.
Folder EY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A596F7A7BC47C5143AD6C1F9EAF2CC21]\ not found.
Folder EY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E939CC06F7F54A44987603CAAEC080FA]\ not found.
Folder EY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FD4E0306683F1544CA7C215BCF610155]\ not found.
Folder EY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1B5133860E86B1A4397905C9E39B112D\InstallProperties]\ not found.
Folder EY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1B5133860E86B1A4397905C9E39B112D\InstallProperties]\ not found.
Folder EY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1B5133860E86B1A4397905C9E39B112D\InstallProperties]\ not found.
File EY_USERS\S-1-5-21-2556010890-1905990878-1114169745-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\MusicJet] not found.
File KEY_USERS\S-1-5-21-2556010890-1905990878-1114169745-1003\Software\Classes\MusicJet] not found.
File KEY_USERS\S-1-5-21-2556010890-1905990878-1114169745-1003\Software\Classes\MusicJet] not found.
File KEY_USERS\S-1-5-21-2556010890-1905990878-1114169745-1003_Classes\MusicJet] not found.
File KEY_USERS\S-1-5-21-2556010890-1905990878-1114169745-1003_Classes\MusicJet] not found.
File rity] not found.
File ptytemp] not found.
File art explorer] not found.
File boot] not found.

OTL by OldTimer - Version 3.2.69.0 log created on 04282014_104853

Files\Folders moved on Reboot...

PendingFileRenameOperations files...

Registry entries deleted on Reboot...

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43061
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - Zbytky AVG v PC

Příspěvekod jaro3 » 28 dub 2014 19:01

Poklepej na ikonu OTL na ploše.Ujisti se , že máš všechny ostatní aplikace a prohlížeče zavřeny.
Pod Vlastní skenování/opravy do okénka vlož následující text, zobrazený zeleně:

Kód: Vybrat vše

:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

:Files

:Reg
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\MusicJet]
[-HKEY_CURRENT_USER\Software\Classes\MusicJet]
[-HKEY_CURRENT_USER\Software\Classes\MusicJet]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\1B5133860E86B1A4397905C9E39B112D]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\1B5133860E86B1A4397905C9E39B112D\SourceList]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\Documents and Settings\All Users\Nabídka Start\Programy\MusicJet\"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\33ED3E31286A28D4885B189ACCAC82A5]
"1B5133860E86B1A4397905C9E39B112D"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\35AC8D92ABD1D8540BAAC687DE55DB41]
"1B5133860E86B1A4397905C9E39B112D"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\42182D298F576F1419DE5B8A16F45FCF]
"1B5133860E86B1A4397905C9E39B112D"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\534D62D788B457C49999A04AF10157C3]
"1B5133860E86B1A4397905C9E39B112D"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\64D62278AB8B215439BFCA06248591CE]
"1B5133860E86B1A4397905C9E39B112D"=- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\69D49F601061F794CA6D8FAE03A0279E]
"1B5133860E86B1A4397905C9E39B112D"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6BC10AEA13C1CF34F8CDD020B93790CB]
"1B5133860E86B1A4397905C9E39B112D"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\998B953ED00A17E46B931A61D9A2D26B]
"1B5133860E86B1A4397905C9E39B112D"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A596F7A7BC47C5143AD6C1F9EAF2CC21]
"1B5133860E86B1A4397905C9E39B112D"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E939CC06F7F54A44987603CAAEC080FA]
"1B5133860E86B1A4397905C9E39B112D"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FD4E0306683F1544CA7C215BCF610155]
"1B5133860E86B1A4397905C9E39B112D"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1B5133860E86B1A4397905C9E39B112D\InstallProperties]
"InstallLocation"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1B5133860E86B1A4397905C9E39B112D\InstallProperties]
"Publisher"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1B5133860E86B1A4397905C9E39B112D\InstallProperties]
"DisplayName"=-
[-HKEY_USERS\S-1-5-21-2556010890-1905990878-1114169745-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\MusicJet]
[-HKEY_USERS\S-1-5-21-2556010890-1905990878-1114169745-1003\Software\Classes\MusicJet]
[-HKEY_USERS\S-1-5-21-2556010890-1905990878-1114169745-1003\Software\Classes\MusicJet]
[-HKEY_USERS\S-1-5-21-2556010890-1905990878-1114169745-1003_Classes\MusicJet]
[-HKEY_USERS\S-1-5-21-2556010890-1905990878-1114169745-1003_Classes\MusicJet]

:Commands
[purity]
[emptytemp]
[start explorer]
[Reboot]


Poté klikni nahoře na Opravit. Nech program nerušeně běžet, na konci se provede restart PC.
Po restartu se objeví log , prosím zkopíruj sem celý jeho obsah.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
miruska27
Level 3.5
Level 3.5
Příspěvky: 735
Registrován: leden 09
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - Zbytky AVG v PC

Příspěvekod miruska27 » 28 dub 2014 19:07

Děkuji,tady je to........

All processes killed
========== OTL ==========
No active process named explorer.exe was found!
No active process named firefox.exe was found!
File KEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\MusicJet] not found.
File KEY_CURRENT_USER\Software\Classes\MusicJet] not found.
File KEY_CURRENT_USER\Software\Classes\MusicJet] not found.
Folder KEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\1B5133860E86B1A4397905C9E39B112D]\ not found.
Folder KEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\1B5133860E86B1A4397905C9E39B112D\SourceList]\ not found.
File EY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] not found.
Folder EY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\33ED3E31286A28D4885B189ACCAC82A5]\ not found.
Folder EY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\35AC8D92ABD1D8540BAAC687DE55DB41]\ not found.
Folder EY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\42182D298F576F1419DE5B8A16F45FCF]\ not found.
Folder EY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\534D62D788B457C49999A04AF10157C3]\ not found.
Folder EY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\64D62278AB8B215439BFCA06248591CE]\ not found.
Folder EY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6BC10AEA13C1CF34F8CDD020B93790CB]\ not found.
Folder EY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\998B953ED00A17E46B931A61D9A2D26B]\ not found.
Folder EY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A596F7A7BC47C5143AD6C1F9EAF2CC21]\ not found.
Folder EY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E939CC06F7F54A44987603CAAEC080FA]\ not found.
Folder EY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FD4E0306683F1544CA7C215BCF610155]\ not found.
Folder EY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1B5133860E86B1A4397905C9E39B112D\InstallProperties]\ not found.
Folder EY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1B5133860E86B1A4397905C9E39B112D\InstallProperties]\ not found.
Folder EY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1B5133860E86B1A4397905C9E39B112D\InstallProperties]\ not found.
File KEY_USERS\S-1-5-21-2556010890-1905990878-1114169745-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\MusicJet] not found.
File KEY_USERS\S-1-5-21-2556010890-1905990878-1114169745-1003\Software\Classes\MusicJet] not found.
File KEY_USERS\S-1-5-21-2556010890-1905990878-1114169745-1003\Software\Classes\MusicJet] not found.
File KEY_USERS\S-1-5-21-2556010890-1905990878-1114169745-1003_Classes\MusicJet] not found.
File KEY_USERS\S-1-5-21-2556010890-1905990878-1114169745-1003_Classes\MusicJet] not found.
File rity] not found.
File ptytemp] not found.
File art explorer] not found.
File boot] not found.

OTL by OldTimer - Version 3.2.69.0 log created on 04282014_190433

Files\Folders moved on Reboot...

PendingFileRenameOperations files...

Registry entries deleted on Reboot...

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43061
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - Zbytky AVG v PC

Příspěvekod jaro3 » 28 dub 2014 19:19

Mě se zdá , že to ty klíče neumí najít.

Ještě se někde MusicJet ukazuje?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
miruska27
Level 3.5
Level 3.5
Příspěvky: 735
Registrován: leden 09
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - Zbytky AVG v PC

Příspěvekod miruska27 » 28 dub 2014 19:24

Jaro je to tak,jak to bylo :( Na ploše je zástupce,nevidí ho Revo,vidí ho Přidat a odebrat programy a CCleaner....

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43061
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - Zbytky AVG v PC

Příspěvekod jaro3 » 29 dub 2014 09:50

Udělej ještě jednou SystemLook , s tímto scriptem:

Kód: Vybrat vše

:filefind
MusicJet

:dir
MusicJet

:regfind
MusicJet

:folderfind
MusicJet
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
miruska27
Level 3.5
Level 3.5
Příspěvky: 735
Registrován: leden 09
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - Zbytky AVG v PC

Příspěvekod miruska27 » 29 dub 2014 11:46

Díky Jaro,tady je to.......

SystemLook 30.07.11 by jpshortstuff
Log created at 11:40 on 29/04/2014 by PC
Administrator - Elevation successful

========== filefind ==========

Searching for "MusicJet"
No files found.

========== dir ==========

MusicJet - Unable to find folder.

========== regfind ==========

Searching for "MusicJet"
[HKEY_CURRENT_USER\Software\Classes\MusicJet]
[HKEY_CURRENT_USER\Software\Classes\MusicJet]
@="musicjet:Protocol Handler"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\1B5133860E86B1A4397905C9E39B112D]
"ProductName"="MusicJet"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\1B5133860E86B1A4397905C9E39B112D\SourceList]
"PackageName"="MusicJet-Setup.msi"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\33ED3E31286A28D4885B189ACCAC82A5]
"1B5133860E86B1A4397905C9E39B112D"="C:\Program Files\MusicJet\MusicJet.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\35AC8D92ABD1D8540BAAC687DE55DB41]
"1B5133860E86B1A4397905C9E39B112D"="C:\Program Files\MusicJet\version.txt"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\42182D298F576F1419DE5B8A16F45FCF]
"1B5133860E86B1A4397905C9E39B112D"="C:\Program Files\MusicJet\channel.txt"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\534D62D788B457C49999A04AF10157C3]
"1B5133860E86B1A4397905C9E39B112D"="C:\Program Files\MusicJet\Icons\Icon.ico"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\64D62278AB8B215439BFCA06248591CE]
"1B5133860E86B1A4397905C9E39B112D"="C:\Documents and Settings\All Users\Nabídka Start\Programy\MusicJet\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\69D49F601061F794CA6D8FAE03A0279E]
"1B5133860E86B1A4397905C9E39B112D"="C:\Program Files\MusicJet\Microsoft.DirectX.DirectSound.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6BC10AEA13C1CF34F8CDD020B93790CB]
"1B5133860E86B1A4397905C9E39B112D"="C:\Program Files\MusicJet\MusicJet.exe.config"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\998B953ED00A17E46B931A61D9A2D26B]
"1B5133860E86B1A4397905C9E39B112D"="C:\Documents and Settings\All Users\Nabídka Start\Programy\MusicJet\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A596F7A7BC47C5143AD6C1F9EAF2CC21]
"1B5133860E86B1A4397905C9E39B112D"="C:\Program Files\MusicJet\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E939CC06F7F54A44987603CAAEC080FA]
"1B5133860E86B1A4397905C9E39B112D"="C:\Program Files\MusicJet\Microsoft.DirectX.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FD4E0306683F1544CA7C215BCF610155]
"1B5133860E86B1A4397905C9E39B112D"="C:\Program Files\MusicJet\TgPlayOgg_vorbisfile.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1B5133860E86B1A4397905C9E39B112D\InstallProperties]
"InstallLocation"="C:\Program Files\MusicJet"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1B5133860E86B1A4397905C9E39B112D\InstallProperties]
"Publisher"="MusicJet"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1B5133860E86B1A4397905C9E39B112D\InstallProperties]
"DisplayName"="MusicJet"
[HKEY_USERS\S-1-5-21-2556010890-1905990878-1114169745-1003\Software\Classes\MusicJet]
[HKEY_USERS\S-1-5-21-2556010890-1905990878-1114169745-1003\Software\Classes\MusicJet]
@="musicjet:Protocol Handler"
[HKEY_USERS\S-1-5-21-2556010890-1905990878-1114169745-1003_Classes\MusicJet]
[HKEY_USERS\S-1-5-21-2556010890-1905990878-1114169745-1003_Classes\MusicJet]
@="musicjet:Protocol Handler"

========== folderfind ==========

Searching for "MusicJet"
No folders found.

-= EOF =-

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43061
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - Zbytky AVG v PC

Příspěvekod jaro3 » 29 dub 2014 18:35

Máš ještě zástupce MusicJet na ploše? Jde smazat?

C:\Documents and Settings\All Users\Nabídka Start\Programy\MusicJet
C:\Program Files\MusicJet

Pokud najdeš tyto složky , smaž je.


Start-spustit , a napiš do okénka :
regedit
dej OK


Nahoře--úpravy--najít.
do okénka napiš:
MusicJet
a klikni na "najít další"
začně sken.

Vlevo ve stromovém adresáři se objeví složka s názvem MusicJet, kterou smaž. Pokračuj dál a vždy složku smaž.

Pak zavři regedit a udělej znovu SystemLook.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
miruska27
Level 3.5
Level 3.5
Příspěvky: 735
Registrován: leden 09
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - Zbytky AVG v PC

Příspěvekod miruska27 » 29 dub 2014 18:52

Jaro díky, snad jsem to podle Tvého návodu všechno "vystřílel" a tady je log.....

SystemLook 30.07.11 by jpshortstuff
Log created at 18:50 on 29/04/2014 by PC
Administrator - Elevation successful

========== filefind ==========

Searching for "MusicJet"
No files found.

========== dir ==========

MusicJet - Unable to find folder.

========== regfind ==========

Searching for "MusicJet"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\69D49F601061F794CA6D8FAE03A0279E]
"1B5133860E86B1A4397905C9E39B112D"="C:\Program Files\MusicJet\Microsoft.DirectX.DirectSound.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6BC10AEA13C1CF34F8CDD020B93790CB]
"1B5133860E86B1A4397905C9E39B112D"="C:\Program Files\MusicJet\MusicJet.exe.config"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\998B953ED00A17E46B931A61D9A2D26B]
"1B5133860E86B1A4397905C9E39B112D"="C:\Documents and Settings\All Users\Nabídka Start\Programy\MusicJet\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A596F7A7BC47C5143AD6C1F9EAF2CC21]
"1B5133860E86B1A4397905C9E39B112D"="C:\Program Files\MusicJet\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E939CC06F7F54A44987603CAAEC080FA]
"1B5133860E86B1A4397905C9E39B112D"="C:\Program Files\MusicJet\Microsoft.DirectX.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FD4E0306683F1544CA7C215BCF610155]
"1B5133860E86B1A4397905C9E39B112D"="C:\Program Files\MusicJet\TgPlayOgg_vorbisfile.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1B5133860E86B1A4397905C9E39B112D\InstallProperties]
"InstallLocation"="C:\Program Files\MusicJet"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1B5133860E86B1A4397905C9E39B112D\InstallProperties]
"Publisher"="MusicJet"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1B5133860E86B1A4397905C9E39B112D\InstallProperties]
"DisplayName"="MusicJet"

========== folderfind ==========

Searching for "MusicJet"
No folders found.

-= EOF =-

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43061
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - Zbytky AVG v PC

Příspěvekod jaro3 » 30 dub 2014 10:01

Ještě najdi a smaž tento podklíč:

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\69D49F601061F794CA6D8FAE03A0279E]
"1B5133860E86B1A4397905C9E39B112D -- ten smaž
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Majestic-12 [Bot] a 22 hostů