Jump to content

Процесора се товари на 100%


Препоръчан пост

Моля, прикачете log-файла от последното сканиране с Malwarebytes' Anti-Malware.

 

Кога се появи въпросният проблем? За каква операционна система става въпрос?

Link to comment
Сподели другаде

Изтеглете OTL

  • Запазете файла на Вашия десктоп.
  • Стартирайте инструмента.
  • Уверете се, че процесът на сканиране няма да бъде прекъснат.
  • В главния прозорец на програмата сложете отметка пред Scan All Users.
  • В полето Standart Registry изберете All.
  • Сложете отметки пред LOP Check и Purity Check.
  • От падащото меню File Age изберете 90 days.
  • Уверете се, че има отметкa пред Skip Microsoft Files.
  • В полето Custom Scans/Fixes поставете следния текст:

netsvcs
msconfig
safebootminimal
safebootnetwork
activex
drivers32
%SYSTEMDRIVE%\*.*
%USERPROFILE%\*.*
%USERPROFILE%\Application Data\*.*
%USERPROFILE%\Application Data\*.
%USERPROFILE%\Local Settings\*.*
%USERPROFILE%\Local Settings\temp\*.exe
%USERPROFILE%\Local Settings\Temporary Internet Files\*.exe
%USERPROFILE%\Local Settings\Application Data\*.*
%AllUsersProfile%\*.*
%AllUsersProfile%\Application Data\*.*
%AllUsersProfile%\Application Data\*.
%AllUsersProfile%\Application Data\Local Settings\*.*
%AllUsersProfile%\Application Data\Local Settings\Temp\*.exe
%ALLUSERSPROFILE%\Documents\My Music\*.exe
%ALLUSERSPROFILE%\Documents\My Pictures\*.exe
%ALLUSERSPROFILE%\Documents\My Videos\*.exe
%ALLUSERSPROFILE%\Documents\*.exe
%USERPROFILE%\My Documents\*.*
%CommonProgramFiles%\*.*
%CommonProgramFiles%\ComObjects*.*
%PROGRAMFILES%\*.*
%PROGRAMFILES%\*.
%systemroot%\system32\config\systemprofile\*.*
%systemroot%\system32\config\systemprofile\Application Data\*.*
%systemroot%\system32\config\systemprofile\\Local Settings\*.*
%systemroot%\system32\config\systemprofile\\Local Settings\Application Data\*.*
%systemroot%\system32\config\systemprofile\\Local Settings\Temp\*.exe
%systemroot%\system32\config\systemprofile\\Local Settings\Temporary Internet Files\*.exe
C:\Documents and Settings\LocalService\Application Data\*.*
C:\Documents and Settings\LocalService\Local Settings\Application Data\*.*
C:\Documents and Settings\LocalService\Local Settings\temp\*.exe
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\*.exe
C:\Documents and Settings\LocalService\Local Settings\*.*
C:\Documents and Settings\LocalService\*.*
C:\Documents and Settings\NetworkService\Application Data\*.*
C:\Documents and Settings\NetworkService\Local Settings\Application Data\*.*
C:\Documents and Settings\NetworkService\Local Settings\temp\*.exe
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\*.exe
C:\Documents and Settings\NetworkService\Local Settings\*.*
C:\Documents and Settings\NetworkService\*.*
%windir%\temp\*.exe
%windir%\minidump\*.*
%windir%\*.
%windir%\installer\*.
%windir%\system32\*.
%Temp%\smtmp\1\*.*
%Temp%\smtmp\2\*.*
%Temp%\smtmp\3\*.*
%Temp%\smtmp\4\*.*
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /90
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\system32\Spool\prtprocs\w32x86\*.dll
%systemroot%\*. /rp /s
%systemroot%\assembly\tmp\*.* /S /MD5
%systemroot%\assembly\temp\*.* /S /MD5
%systemroot%\assembly\GAC\*.ini
%systemroot%\assembly\GAC_32\*.ini
%SystemRoot%\assembly\GAC_MSIL\*.ini
wsSystemRoot|l,n,u,@;True;False;True;$,{ /fn
%systemdrive%\$Recycle.Bin|@;true;true;true /fp
HKEY_CLASSES_ROOT\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24} /s
HKEY_CLASSES_ROOT\CLSID\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1} /s
HKEY_CURRENT_USER\Software\Classes\CLSID\{42aedc87-2188-41fd-b9a3-0c966feabec1} /s
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1} /s
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42aedc87-2188-41fd-b9a3-0c966feabec1} /s
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a2a9545d-a0c2-42b4-9708-a0b2badd77c8} /s
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24} /s
HKEY_CLASSES_ROOT\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F} /s
HKEY_CLASSES_ROOT\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9} /s
HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9} /s
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5839FCA9-774D-42A1-ACDA-D6A79037F57F} /s
HKEY_CURRENT_USER\Software\MSOLoad /s
c:\system volume information|_REGISTRY_MACHINE_SYSTEM;true;true;true /FP
c:\system volume information|_REGISTRY_MACHINE_SOFTWARE;true;true;true /FP
restorepoints
type c:\boot.ini >> test.txt /c
type C:\Windows\ntbtlog.txt >> text.txt /c
>C:\commands.txt echo list vol /raw /hide /c
/wait
>C:\DiskReport.txt diskpart /s C:\commands.txt /raw /hide /c
/wait
type c:\diskreport.txt /c
/wait
erase c:\commands.txt /hide /c
/wait
erase c:\diskreport.txt /hide /c
/md5start
eventlog.dll
scecli.dll
netlogon.dll
cngaudit.dll
sceclt.dll
ntelogon.dll
logevent.dll
consrv.dll
services.exe
svchost.exe
explorer.exe
userinit.exe
winlogon.exe
smss.exe
lsass.exe
atapi.sys
iaStor.sys
serial.sys
disk.sys
volsnap.sys
redbook.sys
i8042prt.sys
afd.sys
netbt.sys
tcpip.sys
ipsec.sys
hlp.dat
str.sys
crexv.ocx
/md5stop

 

Копирайте кода точно както е даден. Уверете се, че всяка от командите е на нов ред, както е в полето.

 

Натиснете бутона Run Scan. Ще започне сканиране, което няма да продължи дълго.Когато сканирането приключи автоматично ще се отворят два Notepad лог-файла - OTL.txt и Extras.txt.

 

Моля, прикачете тези два файла към следващия Ви коментар.

Link to comment
Сподели другаде

Сканира се поне 15 минути това нормално ли е.

Спрях процеса от таск менажера защото не мога нито да тегля отл нито да го задеиствам

OTL.Txt

Extras.Txt

Link to comment
Сподели другаде

Колегата го няма нещо, така че ще го заместя.

 

Изтегли прясно/актуално копие на OTL и замени старото.

 

Стартирай отново OTL. В празното поле "Custom Scans/Fixes" (в долната част на програмата) постави следния текст (маркирай го, натисни Ctrl+C и после в полето на OTL натисни Ctrl+V):

 

:OTL
SRV - File not found [Auto | Stopped] -- C:\WINDOWS\system32\jdatkfpf.dll -- (ymofza)
SRV - File not found [Auto | Stopped] -- C:\WINDOWS\system32\jdatkfpf.dll -- (ymbuyumsk)
SRV - File not found [Auto | Stopped] -- C:\WINDOWS\system32\jdatkfpf.dll -- (yhlmk)
SRV - File not found [Auto | Stopped] -- C:\WINDOWS\system32\jdatkfpf.dll -- (xwijhptk)
SRV - File not found [Auto | Stopped] -- C:\WINDOWS\system32\jdatkfpf.dll -- (vztyo)
SRV - File not found [Auto | Stopped] -- C:\Documents and Settings\User\Application Data\jdatkfpf.dll -- (ulwarqrvv)
SRV - File not found [Auto | Stopped] -- C:\Program Files\Movie Maker\jdatkfpf.dll -- (szptfrrdp)
SRV - File not found [Auto | Stopped] -- C:\WINDOWS\TEMP\\jdatkfpf.dll -- (sxdmysio)
SRV - File not found [Auto | Stopped] -- C:\WINDOWS\system32\jdatkfpf.dll -- (slbeqgx)
SRV - File not found [Auto | Stopped] -- C:\WINDOWS\system32\jdatkfpf.dll -- (qmaqrk)
SRV - File not found [Auto | Stopped] -- C:\WINDOWS\system32\jdatkfpf.dll -- (omqtoxls)
SRV - File not found [Auto | Stopped] -- C:\WINDOWS\system32\jdatkfpf.dll -- (mxkws)
SRV - File not found [Auto | Stopped] -- C:\Documents and Settings\User\Application Data\jdatkfpf.dll -- (muswctj)
SRV - File not found [Auto | Stopped] -- C:\Program Files\Internet Explorer\jdatkfpf.dll -- (kytomfk)
SRV - File not found [Auto | Stopped] -- C:\WINDOWS\TEMP\\jdatkfpf.dll -- (kizvy)
SRV - File not found [Auto | Stopped] -- C:\WINDOWS\system32\jdatkfpf.dll -- (jbubwe)
SRV - File not found [Disabled | Stopped] -- %SystemRoot%\System32\hidserv.dll -- (HidServ)
SRV - File not found [Auto | Stopped] -- C:\Documents and Settings\User\Application Data\jdatkfpf.dll -- (gpazrco)
SRV - File not found [Auto | Stopped] -- C:\Program Files\Internet Explorer\jdatkfpf.dll -- (bptwz)
SRV - File not found [Auto | Stopped] -- C:\Documents and Settings\User\Application Data\jdatkfpf.dll -- (awdniufk)
SRV - File not found [Auto | Stopped] -- C:\Program Files\Movie Maker\jdatkfpf.dll -- (agaojwdq)
DRV - File not found [Kernel | Boot | Stopped] --  -- (Tki31)
IE - HKU\S-1-5-21-746137067-1417001333-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>
O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
O4 - HKLM..\RunOnce: [LexmarkUninstallRan]  File not found
O4 - HKLM..\RunOnce: [Malwarebytes Anti-Malware (cleanup)] rundll32.exe "C:\Documents and Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\cleanup.dll",ProcessCleanupScript File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: DisableLocalMachineRunOnce = 1
O33 - MountPoints2\{196f5002-e6d9-11dd-a53b-001bb9b75745}\Shell\AutoRun\command - "" = fwbhxc.exe
O33 - MountPoints2\{196f5002-e6d9-11dd-a53b-001bb9b75745}\Shell\explore\Command - "" = fwbhxc.exe
O33 - MountPoints2\{196f5002-e6d9-11dd-a53b-001bb9b75745}\Shell\open\Command - "" = fwbhxc.exe
O33 - MountPoints2\{2dd7ea26-7b43-11de-806a-001bb9b75745}\Shell - "" = AutoRun
O33 - MountPoints2\{2dd7ea26-7b43-11de-806a-001bb9b75745}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RuNdLl32.EXE      .\RECYCLER\S-5-3-42-2819952290-8240758988-879315005-3665\jwgkvsq.vmx,ahaezedrn
O33 - MountPoints2\{3dc3d186-05c5-11df-817b-001bb9b75745}\Shell\AutoRun\command - "" = G:\Launcher.exe
O33 - MountPoints2\{466a4d82-6f45-11dd-a415-b83759f530dd}\Shell - "" = AutoRun
O33 - MountPoints2\{466a4d82-6f45-11dd-a415-b83759f530dd}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{466a4d82-6f45-11dd-a415-b83759f530dd}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL wscript.exe uc.vbs
O33 - MountPoints2\{59cf0e1e-0451-11e0-82f7-001bb9b75745}\Shell\AutoRun\command - "" = G:\Launcher.exe
O33 - MountPoints2\{75b7f5db-5427-11de-8014-001bb9b75745}\Shell\auTOpLay\cOmmaNd - "" = G:\cfru.pif
O33 - MountPoints2\{75b7f5db-5427-11de-8014-001bb9b75745}\Shell\AutoRun\command - "" = G:\cfru.pif
O33 - MountPoints2\{75b7f5db-5427-11de-8014-001bb9b75745}\Shell\ExplorE\COMManD - "" = G:\cfru.pif
O33 - MountPoints2\{75b7f5db-5427-11de-8014-001bb9b75745}\Shell\oPen\CommANd - "" = G:\cfru.pif
O33 - MountPoints2\{75b7f5dc-5427-11de-8014-001bb9b75745}\Shell\autoplAy\CoMMand - "" = I:\rdfu.pif
O33 - MountPoints2\{75b7f5dc-5427-11de-8014-001bb9b75745}\Shell\AutoRun\command - "" = I:\rdfu.pif
O33 - MountPoints2\{75b7f5dc-5427-11de-8014-001bb9b75745}\Shell\eXplore\ComMaND - "" = I:\rdfu.pif
O33 - MountPoints2\{75b7f5dc-5427-11de-8014-001bb9b75745}\Shell\OpEn\ComMand - "" = I:\rdfu.pif
O33 - MountPoints2\{81395b61-11b8-11e1-8499-001bb9b75745}\Shell\autoplAy\cOmmand - "" = H:\iwegc.pif
O33 - MountPoints2\{81395b61-11b8-11e1-8499-001bb9b75745}\Shell\AutoRun\command - "" = H:\iwegc.pif
O33 - MountPoints2\{81395b61-11b8-11e1-8499-001bb9b75745}\Shell\explore\COmMANd - "" = H:\iwegc.pif
O33 - MountPoints2\{81395b61-11b8-11e1-8499-001bb9b75745}\Shell\OpeN\ComMaNd - "" = H:\iwegc.pif
O33 - MountPoints2\{84ef4254-171f-11e0-8311-001bb9b75745}\Shell\AutoRun\command - "" = RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\ise32.exe
O33 - MountPoints2\{84ef4254-171f-11e0-8311-001bb9b75745}\Shell\open\command - "" = RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\ise32.exe
O33 - MountPoints2\{993919b0-95aa-11e0-83ba-001bb9b75745}\Shell\AutoRun\command - "" = G:\ydsakugovf.bat
O33 - MountPoints2\{993919b0-95aa-11e0-83ba-001bb9b75745}\Shell\explore\Command - "" = G:\qzsesgwithcqdb.bat _
O33 - MountPoints2\{993919b0-95aa-11e0-83ba-001bb9b75745}\Shell\open\Command - "" = G:\qxoykwkudpiu.bat _
O33 - MountPoints2\{99a62d71-c54a-11de-80d9-001bb9b75745}\Shell - "" = AutoRun
O33 - MountPoints2\{99a62d71-c54a-11de-80d9-001bb9b75745}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RuNdLl32.EXE      .\RECYCLER\S-5-3-42-2819952290-8240758988-879315005-3665\jwgkvsq.vmx,ahaezedrn
O33 - MountPoints2\{9d2bbbb5-e9af-11e0-8458-001bb9b75745}\Shell\AutoRun\command - "" = J:\12gn6id2.exe
O33 - MountPoints2\{9d2bbbb5-e9af-11e0-8458-001bb9b75745}\Shell\open\Command - "" = J:\12gn6id2.exe
O33 - MountPoints2\{c15af007-22f7-11e0-8330-f216c44c0424}\Shell - "" = AutoRun
O33 - MountPoints2\{c15af007-22f7-11e0-8330-f216c44c0424}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RuNdLl32.EXE      .\RECYCLER\S-5-3-42-2819952290-8240758988-879315005-3665\jwgkvsq.vmx,ahaezedrn
O33 - MountPoints2\{e84f0fb4-6faa-11de-804d-001bb9b75745}\Shell\AutoRun\command - "" = G:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\ise32.exe
O33 - MountPoints2\{e84f0fb4-6faa-11de-804d-001bb9b75745}\Shell\open\command - "" = G:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\ise32.exe
O33 - MountPoints2\{e84f0fb5-6faa-11de-804d-001bb9b75745}\Shell\AutoRun\command - "" = H:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\ise32.exe
O33 - MountPoints2\{e84f0fb5-6faa-11de-804d-001bb9b75745}\Shell\open\command - "" = H:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\ise32.exe
O33 - MountPoints2\{f7c0caa8-15bc-11dd-a35b-001bb9b75745}\Shell\AUTOplay\cOMmaNd - "" = G:\iqyhvb.exe
O33 - MountPoints2\{f7c0caa8-15bc-11dd-a35b-001bb9b75745}\Shell\AutoRun\command - "" = G:\iqyhvb.exe
O33 - MountPoints2\{f7c0caa8-15bc-11dd-a35b-001bb9b75745}\Shell\EXPLORe\ComMaNd - "" = G:\iqyhvb.exe
O33 - MountPoints2\{f7c0caa8-15bc-11dd-a35b-001bb9b75745}\Shell\opeN\cOMmAnd - "" = G:\iqyhvb.exe
NetSvcs: ymbuyumsk - C:\WINDOWS\system32\jdatkfpf.dll File not found
NetSvcs: agaojwdq - C:\Program Files\Movie Maker\jdatkfpf.dll File not found
NetSvcs: ymofza - C:\WINDOWS\system32\jdatkfpf.dll File not found
NetSvcs: muswctj - C:\Documents and Settings\User\Application Data\jdatkfpf.dll File not found
NetSvcs: ulwarqrvv - C:\Documents and Settings\User\Application Data\jdatkfpf.dll File not found
NetSvcs: bptwz - C:\Program Files\Internet Explorer\jdatkfpf.dll File not found
NetSvcs: kizvy - C:\WINDOWS\TEMP\\jdatkfpf.dll File not found
NetSvcs: awdniufk - C:\Documents and Settings\User\Application Data\jdatkfpf.dll File not found
NetSvcs: omqtoxls - C:\WINDOWS\system32\jdatkfpf.dll File not found
NetSvcs: kytomfk - C:\Program Files\Internet Explorer\jdatkfpf.dll File not found
NetSvcs: szptfrrdp - C:\Program Files\Movie Maker\jdatkfpf.dll File not found
NetSvcs: gpazrco - C:\Documents and Settings\User\Application Data\jdatkfpf.dll File not found
NetSvcs: sxdmysio - C:\WINDOWS\TEMP\\jdatkfpf.dll File not found
NetSvcs: mxkws - C:\WINDOWS\system32\jdatkfpf.dll File not found
NetSvcs: qmaqrk - C:\WINDOWS\system32\jdatkfpf.dll File not found
NetSvcs: xwijhptk - C:\WINDOWS\system32\jdatkfpf.dll File not found
NetSvcs: yhlmk - C:\WINDOWS\system32\jdatkfpf.dll File not found
NetSvcs: jbubwe - C:\WINDOWS\system32\jdatkfpf.dll File not found
NetSvcs: slbeqgx - C:\WINDOWS\system32\jdatkfpf.dll File not found
NetSvcs: vztyo - C:\WINDOWS\system32\jdatkfpf.dll File not found
@Alternate Data Stream - 112 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:D1B5B4F1
:Reg
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"3070:TCP"=-
:Commands
[emptytemp]
[reboot]

Копирай текста точно както е в полето. Внимавай да не изтървеш началното двуеточие и всяка команда да е на отделен ред, както е в полето.

 

Кликни бутон Run Fix. Потвърди с OK на съобщението, че е нужен рестарт на системата.

 

След рестарта ще се появи текстов дневник/лог. Същият файл се намира в C:\_OTL\MovedFiles. Моля, прикачи го към следващия си коментар.

 

Кажи как е положението.

Link to comment
Сподели другаде

Koмпютара е на работа ще мога да направя сканирането утре.

Използвах Process explorer и видях че го товари dhcp client и го изключих и сега работи доста по добре( правилно ли постъпих )

Link to comment
Сподели другаде

DHCP услугата го включих и си работи нормално преди сканирването,след сканирването пак си работи нормално

За какво е тази услуга

 

All processes killed

========== OTL ==========

Error: No service named ymofza was found to stop!

Service\Driver key ymofza not found.

File C:\WINDOWS\system32\jdatkfpf.dll not found.

Error: No service named ymbuyumsk was found to stop!

Service\Driver key ymbuyumsk not found.

File C:\WINDOWS\system32\jdatkfpf.dll not found.

Error: No service named yhlmk was found to stop!

Service\Driver key yhlmk not found.

File C:\WINDOWS\system32\jdatkfpf.dll not found.

Error: No service named xwijhptk was found to stop!

Service\Driver key xwijhptk not found.

File C:\WINDOWS\system32\jdatkfpf.dll not found.

Error: No service named vztyo was found to stop!

Service\Driver key vztyo not found.

File C:\WINDOWS\system32\jdatkfpf.dll not found.

Error: No service named ulwarqrvv was found to stop!

Service\Driver key ulwarqrvv not found.

File C:\Documents and Settings\User\Application Data\jdatkfpf.dll not found.

Error: No service named szptfrrdp was found to stop!

Service\Driver key szptfrrdp not found.

File C:\Program Files\Movie Maker\jdatkfpf.dll not found.

Error: No service named sxdmysio was found to stop!

Service\Driver key sxdmysio not found.

File C:\WINDOWS\TEMP\\jdatkfpf.dll not found.

Error: No service named slbeqgx was found to stop!

Service\Driver key slbeqgx not found.

File C:\WINDOWS\system32\jdatkfpf.dll not found.

Error: No service named qmaqrk was found to stop!

Service\Driver key qmaqrk not found.

File C:\WINDOWS\system32\jdatkfpf.dll not found.

Error: No service named omqtoxls was found to stop!

Service\Driver key omqtoxls not found.

File C:\WINDOWS\system32\jdatkfpf.dll not found.

Error: No service named mxkws was found to stop!

Service\Driver key mxkws not found.

File C:\WINDOWS\system32\jdatkfpf.dll not found.

Error: No service named muswctj was found to stop!

Service\Driver key muswctj not found.

File C:\Documents and Settings\User\Application Data\jdatkfpf.dll not found.

Error: No service named kytomfk was found to stop!

Service\Driver key kytomfk not found.

File C:\Program Files\Internet Explorer\jdatkfpf.dll not found.

Error: No service named kizvy was found to stop!

Service\Driver key kizvy not found.

File C:\WINDOWS\TEMP\\jdatkfpf.dll not found.

Error: No service named jbubwe was found to stop!

Service\Driver key jbubwe not found.

File C:\WINDOWS\system32\jdatkfpf.dll not found.

Error: No service named HidServ was found to stop!

Service\Driver key HidServ not found.

File %SystemRoot%\System32\hidserv.dll not found.

Error: No service named gpazrco was found to stop!

Service\Driver key gpazrco not found.

File C:\Documents and Settings\User\Application Data\jdatkfpf.dll not found.

Error: No service named bptwz was found to stop!

Service\Driver key bptwz not found.

File C:\Program Files\Internet Explorer\jdatkfpf.dll not found.

Error: No service named awdniufk was found to stop!

Service\Driver key awdniufk not found.

File C:\Documents and Settings\User\Application Data\jdatkfpf.dll not found.

Error: No service named agaojwdq was found to stop!

Service\Driver key agaojwdq not found.

File C:\Program Files\Movie Maker\jdatkfpf.dll not found.

Service Tki31 stopped successfully!

Service Tki31 deleted successfully!

HKU\S-1-5-21-746137067-1417001333-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyOverride| /E : value set successfully!

Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\10 not found.

Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce\\LexmarkUninstallRan not found.

Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Malwarebytes Anti-Malware (cleanup) not found.

Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\DisableLocalMachineRunOnce not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{196f5002-e6d9-11dd-a53b-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{196f5002-e6d9-11dd-a53b-001bb9b75745}\ not found.

File fwbhxc.exe not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{196f5002-e6d9-11dd-a53b-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{196f5002-e6d9-11dd-a53b-001bb9b75745}\ not found.

File fwbhxc.exe not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{196f5002-e6d9-11dd-a53b-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{196f5002-e6d9-11dd-a53b-001bb9b75745}\ not found.

File fwbhxc.exe not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{2dd7ea26-7b43-11de-806a-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2dd7ea26-7b43-11de-806a-001bb9b75745}\ not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{2dd7ea26-7b43-11de-806a-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2dd7ea26-7b43-11de-806a-001bb9b75745}\ not found.

File C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RuNdLl32.EXE .\RECYCLER\S-5-3-42-2819952290-8240758988-879315005-3665\jwgkvsq.vmx,ahaezedrn not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{3dc3d186-05c5-11df-817b-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3dc3d186-05c5-11df-817b-001bb9b75745}\ not found.

File G:\Launcher.exe not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{466a4d82-6f45-11dd-a415-b83759f530dd}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{466a4d82-6f45-11dd-a415-b83759f530dd}\ not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{466a4d82-6f45-11dd-a415-b83759f530dd}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{466a4d82-6f45-11dd-a415-b83759f530dd}\ not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{466a4d82-6f45-11dd-a415-b83759f530dd}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{466a4d82-6f45-11dd-a415-b83759f530dd}\ not found.

File C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL wscript.exe uc.vbs not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{59cf0e1e-0451-11e0-82f7-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59cf0e1e-0451-11e0-82f7-001bb9b75745}\ not found.

File G:\Launcher.exe not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{75b7f5db-5427-11de-8014-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75b7f5db-5427-11de-8014-001bb9b75745}\ not found.

File G:\cfru.pif not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{75b7f5db-5427-11de-8014-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75b7f5db-5427-11de-8014-001bb9b75745}\ not found.

File G:\cfru.pif not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{75b7f5db-5427-11de-8014-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75b7f5db-5427-11de-8014-001bb9b75745}\ not found.

File G:\cfru.pif not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{75b7f5db-5427-11de-8014-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75b7f5db-5427-11de-8014-001bb9b75745}\ not found.

File G:\cfru.pif not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{75b7f5dc-5427-11de-8014-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75b7f5dc-5427-11de-8014-001bb9b75745}\ not found.

File I:\rdfu.pif not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{75b7f5dc-5427-11de-8014-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75b7f5dc-5427-11de-8014-001bb9b75745}\ not found.

File I:\rdfu.pif not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{75b7f5dc-5427-11de-8014-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75b7f5dc-5427-11de-8014-001bb9b75745}\ not found.

File I:\rdfu.pif not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{75b7f5dc-5427-11de-8014-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75b7f5dc-5427-11de-8014-001bb9b75745}\ not found.

File I:\rdfu.pif not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{81395b61-11b8-11e1-8499-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{81395b61-11b8-11e1-8499-001bb9b75745}\ not found.

File H:\iwegc.pif not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{81395b61-11b8-11e1-8499-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{81395b61-11b8-11e1-8499-001bb9b75745}\ not found.

File H:\iwegc.pif not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{81395b61-11b8-11e1-8499-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{81395b61-11b8-11e1-8499-001bb9b75745}\ not found.

File H:\iwegc.pif not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{81395b61-11b8-11e1-8499-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{81395b61-11b8-11e1-8499-001bb9b75745}\ not found.

File H:\iwegc.pif not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{84ef4254-171f-11e0-8311-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{84ef4254-171f-11e0-8311-001bb9b75745}\ not found.

File C:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\ise32.exe not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{84ef4254-171f-11e0-8311-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{84ef4254-171f-11e0-8311-001bb9b75745}\ not found.

File C:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\ise32.exe not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{993919b0-95aa-11e0-83ba-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{993919b0-95aa-11e0-83ba-001bb9b75745}\ not found.

File G:\ydsakugovf.bat not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{993919b0-95aa-11e0-83ba-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{993919b0-95aa-11e0-83ba-001bb9b75745}\ not found.

File G:\qzsesgwithcqdb.bat _ not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{993919b0-95aa-11e0-83ba-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{993919b0-95aa-11e0-83ba-001bb9b75745}\ not found.

File G:\qxoykwkudpiu.bat _ not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{99a62d71-c54a-11de-80d9-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99a62d71-c54a-11de-80d9-001bb9b75745}\ not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{99a62d71-c54a-11de-80d9-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99a62d71-c54a-11de-80d9-001bb9b75745}\ not found.

File C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RuNdLl32.EXE .\RECYCLER\S-5-3-42-2819952290-8240758988-879315005-3665\jwgkvsq.vmx,ahaezedrn not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9d2bbbb5-e9af-11e0-8458-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9d2bbbb5-e9af-11e0-8458-001bb9b75745}\ not found.

File J:\12gn6id2.exe not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9d2bbbb5-e9af-11e0-8458-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9d2bbbb5-e9af-11e0-8458-001bb9b75745}\ not found.

File J:\12gn6id2.exe not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c15af007-22f7-11e0-8330-f216c44c0424}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c15af007-22f7-11e0-8330-f216c44c0424}\ not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c15af007-22f7-11e0-8330-f216c44c0424}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{c15af007-22f7-11e0-8330-f216c44c0424}\ not found.

File C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RuNdLl32.EXE .\RECYCLER\S-5-3-42-2819952290-8240758988-879315005-3665\jwgkvsq.vmx,ahaezedrn not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e84f0fb4-6faa-11de-804d-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e84f0fb4-6faa-11de-804d-001bb9b75745}\ not found.

File G:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\ise32.exe not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e84f0fb4-6faa-11de-804d-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e84f0fb4-6faa-11de-804d-001bb9b75745}\ not found.

File G:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\ise32.exe not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e84f0fb5-6faa-11de-804d-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e84f0fb5-6faa-11de-804d-001bb9b75745}\ not found.

File H:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\ise32.exe not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e84f0fb5-6faa-11de-804d-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e84f0fb5-6faa-11de-804d-001bb9b75745}\ not found.

File H:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\ise32.exe not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{f7c0caa8-15bc-11dd-a35b-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f7c0caa8-15bc-11dd-a35b-001bb9b75745}\ not found.

File G:\iqyhvb.exe not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{f7c0caa8-15bc-11dd-a35b-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f7c0caa8-15bc-11dd-a35b-001bb9b75745}\ not found.

File G:\iqyhvb.exe not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{f7c0caa8-15bc-11dd-a35b-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f7c0caa8-15bc-11dd-a35b-001bb9b75745}\ not found.

File G:\iqyhvb.exe not found.

Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{f7c0caa8-15bc-11dd-a35b-001bb9b75745}\ not found.

Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f7c0caa8-15bc-11dd-a35b-001bb9b75745}\ not found.

File G:\iqyhvb.exe not found.

ymbuyumsk removed from NetSvcs value successfully!

agaojwdq removed from NetSvcs value successfully!

ymofza removed from NetSvcs value successfully!

muswctj removed from NetSvcs value successfully!

ulwarqrvv removed from NetSvcs value successfully!

bptwz removed from NetSvcs value successfully!

kizvy removed from NetSvcs value successfully!

awdniufk removed from NetSvcs value successfully!

omqtoxls removed from NetSvcs value successfully!

kytomfk removed from NetSvcs value successfully!

szptfrrdp removed from NetSvcs value successfully!

gpazrco removed from NetSvcs value successfully!

sxdmysio removed from NetSvcs value successfully!

mxkws removed from NetSvcs value successfully!

qmaqrk removed from NetSvcs value successfully!

xwijhptk removed from NetSvcs value successfully!

yhlmk removed from NetSvcs value successfully!

jbubwe removed from NetSvcs value successfully!

slbeqgx removed from NetSvcs value successfully!

vztyo removed from NetSvcs value successfully!

Unable to delete ADS C:\Documents and Settings\All Users\Application Data\TEMP:D1B5B4F1 .

========== REGISTRY ==========

Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List\\3070:TCP deleted successfully.

========== COMMANDS ==========

 

[EMPTYTEMP]

 

User: Administrator

->Temp folder emptied: 0 bytes

->Temporary Internet Files folder emptied: 0 bytes

 

User: All Users

 

User: Default User

->Temp folder emptied: 0 bytes

->Temporary Internet Files folder emptied: 0 bytes

 

User: LocalService

->Temp folder emptied: 0 bytes

->Temporary Internet Files folder emptied: 32902 bytes

 

User: NetworkService

->Temp folder emptied: 0 bytes

->Temporary Internet Files folder emptied: 0 bytes

 

User: User

->Temp folder emptied: 0 bytes

->Temporary Internet Files folder emptied: 33170 bytes

->FireFox cache emptied: 337549270 bytes

->Google Chrome cache emptied: 6536395 bytes

->Flash cache emptied: 2792217 bytes

 

%systemdrive% .tmp files removed: 0 bytes

%systemroot% .tmp files removed: 4285428 bytes

%systemroot%\System32 .tmp files removed: 27182 bytes

%systemroot%\System32\dllcache .tmp files removed: 0 bytes

%systemroot%\System32\drivers .tmp files removed: 0 bytes

Windows Temp folder emptied: 56551859 bytes

%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 134257837 bytes

%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33170 bytes

RecycleBin emptied: 143393210 bytes

 

Total Files Cleaned = 654,00 mb

 

 

OTL by OldTimer - Version 3.2.69.0 log created on 10082012_092153

 

Files\Folders moved on Reboot...

 

PendingFileRenameOperations files...

 

Registry entries deleted on Reboot...

Link to comment
Сподели другаде

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Гост
Отговори на тази тема

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   Не можете да качите директно снимка. Качете или добавете изображението от линк (URL)

Loading...
×
×
  • Създай ново...