Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Proces systém - kolísání

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Pyromania
Návštěvník
Návštěvník
Příspěvky: 7
Registrován: 13 čer 2012 20:06

Proces systém - kolísání

#1 Příspěvek od Pyromania »

Hezký den přeji, v posledních několika dnech se mi stala nepříjemná věc. Tou věcí je to, že se mi samovolně (kdykoliv... když mám počítač v klidu, nebo když hraji či když brouzdám na netu) zvyšuje využití CPU procesu System (vytěžuje cca mezi 10% - 30% CPU). Snažil sem se to vygooglit, bohužel mi vyběhlo spoustu možných logů a spousty různorodých řešení z čehož sem ani většinu nepochopil :)

Zde přikládám log:


Logfile of random's system information tool 1.09 (written by random/random)
Run by Uživatel at 2012-06-13 21:10:29
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 23 GB (15%) free of 146 GB
Total RAM: 2046 MB (45% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:10:52, on 13.6.2012
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal

Running processes:
C:\Windows\Explorer.EXE
C:\Windows\PLFSetI.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Logitech\SetPointP\SetPoint.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\ProgramData\Anti-phishing Domain Advisor\visicom_antiphishing.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\Genius\TVGo DVB-T02PRO\DetectTray.exe
D:\Steam\steam.exe
C:\Program Files\IObit\Advanced SystemCare 5\ASCTray.exe
C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.EXE
C:\Program Files\Logitech\SetPointG\SetPointII.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\IObit\Game Booster 3\gbtray.exe
C:\Windows\system32\conime.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Users\Uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\rundll32.exe
C:\Users\Uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\Taskmgr.exe
C:\Users\Uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Uživatel\Downloads\RSIT.exe
C:\Program Files\trend micro\Uživatel.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://blekko.com/ws/?source=c3348dd4&t ... p=homepage
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://start.facemoods.com/?a=bf2&s={searchTerms}&f=4
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: facemoods Helper - {64182481-4F71-486b-A045-B233BD0DA8FC} - C:\Program Files\facemoods.com\facemoods\1.4.17.10\bh\facemoods.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll
O2 - BHO: blekko search bar - {8769adce-dba5-48e9-afb5-67b12cdf2e61} - C:\Program Files\blekkotb_031\blekkotb_019X.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll
O2 - BHO: Yontoo Layers - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files\Yontoo\YontooIEClient.dll
O3 - Toolbar: facemoods Toolbar - {DB4E9724-F518-4dfd-9C7C-78B52103CAB9} - C:\Program Files\facemoods.com\facemoods\1.4.17.10\facemoodsTlbr.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: blekko search bar - {8769adce-dba5-48e9-afb5-67b12cdf2e61} - C:\Program Files\blekkotb_031\blekkotb_019X.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [PLFSetI] C:\Windows\PLFSetI.exe
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [facemoods] "C:\Program Files\facemoods.com\facemoods\1.4.17.10\facemoodssrv.exe" /md I
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [EvtMgr6] C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Anti-phishing Domain Advisor] "C:\ProgramData\Anti-phishing Domain Advisor\visicom_antiphishing.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Users\Uživatel\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [DetectTray] C:\Program Files\Genius\TVGo DVB-T02PRO\DetectTray.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [Steam] "D:\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [Advanced SystemCare 5] "C:\Program Files\IObit\Advanced SystemCare 5\ASCTray.exe" /AutoStart
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-3908276883-2646373536-34234631-1001\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-3908276883-2646373536-34234631-1001\..\Run: [DetectTray] C:\Program Files\Genius\TVGo DVB-T02PRO\DetectTray.exe (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-3908276883-2646373536-34234631-1001\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-3908276883-2646373536-34234631-1001\..\Run: [Steam] "D:\Steam\steam.exe" -silent (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-3908276883-2646373536-34234631-1001\..\Run: [Advanced SystemCare 5] "C:\Program Files\IObit\Advanced SystemCare 5\ASCTray.exe" /AutoStart (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-3908276883-2646373536-34234631-1001\..\Run: [AdobeBridge] (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-3908276883-2646373536-34234631-1001\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-3908276883-2646373536-34234631-1001\..\RunOnce: [blekkotb] reg.exe delete "HKCU\Software\AppDataLow\Software\blekkotb" /f (User 'UpdatusUser')
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Quick-Launching Area - {10954C80-4F0F-11d3-B17C-00C0DFE39736} - C:\Program Files\Acer\Acer Bio Protection\PwdBank.exe
O9 - Extra 'Tools' menuitem: Quick-Launching Area - {10954C80-4F0F-11d3-B17C-00C0DFE39736} - C:\Program Files\Acer\Acer Bio Protection\PwdBank.exe
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{25B05390-C70D-4202-8173-811AD604207F}: NameServer = 212.158.128.2,212.158.128.3
O17 - HKLM\System\CS2\Services\Tcpip\..\{25B05390-C70D-4202-8173-811AD604207F}: NameServer = 77.48.100.254,77.48.254.254
O17 - HKLM\System\CS3\Services\Tcpip\..\{25B05390-C70D-4202-8173-811AD604207F}: NameServer = 77.48.100.254,77.48.254.254
O17 - HKLM\System\CS4\Services\Tcpip\..\{25B05390-C70D-4202-8173-811AD604207F}: NameServer = 77.48.100.254,77.48.254.254
O17 - HKLM\System\CS5\Services\Tcpip\..\{25B05390-C70D-4202-8173-811AD604207F}: NameServer = 77.48.100.254,77.48.254.254
O17 - HKLM\System\CS6\Services\Tcpip\..\{25B05390-C70D-4202-8173-811AD604207F}: NameServer = 77.48.100.254,77.48.254.254
O17 - HKLM\System\CS7\Services\Tcpip\..\{25B05390-C70D-4202-8173-811AD604207F}: NameServer = 77.48.100.254,77.48.254.254
O17 - HKLM\System\CS8\Services\Tcpip\..\{25B05390-C70D-4202-8173-811AD604207F}: NameServer = 77.48.100.254,77.48.254.254
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O20 - Winlogon Notify: AWinNotifyVitaKey MC3000 - C:\Program Files\Acer\Acer Bio Protection\WinNotify.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Advanced SystemCare Service 5 (AdvancedSystemCareService5) - IObit - C:\Program Files\IObit\Advanced SystemCare 5\ASCService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Dragon Age: Prameny - aktualizace obsahu (DAUpdaterSvc) - BioWare - D:\games\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe
O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: Validity Fingerprint Service (vfsFPService) - Validity Sensors, Inc. - C:\Windows\system32\vfsFPService.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 13990 bytes

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3908276883-2646373536-34234631-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3908276883-2646373536-34234631-1000UA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-04-04 63912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{64182481-4F71-486b-A045-B233BD0DA8FC}]
CescrtHlpr Object - C:\Program Files\facemoods.com\facemoods\1.4.17.10\bh\facemoods.dll [2011-05-23 265944]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll [2012-04-04 453504]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8769adce-dba5-48e9-afb5-67b12cdf2e61}]
blekko search bar - C:\Program Files\blekkotb_031\blekkotb_019X.dll [2012-05-18 85288]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2011-11-28 809040]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-10-10 3834016]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll [2012-04-04 157576]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}]
Yontoo - C:\Program Files\Yontoo\YontooIEClient.dll [2011-12-09 194848]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{DB4E9724-F518-4dfd-9C7C-78B52103CAB9} - facemoods Toolbar - C:\Program Files\facemoods.com\facemoods\1.4.17.10\facemoodsTlbr.dll [2011-05-23 220888]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2011-11-28 809040]
{8769adce-dba5-48e9-afb5-67b12cdf2e61} - blekko search bar - C:\Program Files\blekkotb_031\blekkotb_019X.dll [2012-05-18 85288]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
"PLFSetI"=C:\Windows\PLFSetI.exe [2007-10-23 200704]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [2007-10-24 178712]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-03 843712]
"facemoods"=C:\Program Files\facemoods.com\facemoods\1.4.17.10\facemoodssrv.exe [2011-05-23 329432]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2011-11-28 3744552]
"EvtMgr6"=C:\Program Files\Logitech\SetPointP\SetPoint.exe [2011-10-07 1387288]
"LogMeIn Hamachi Ui"=C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe [2012-02-28 1987976]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2012-03-26 931200]
"AdobeAAMUpdater-1.0"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]
"SwitchBoard"=C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS6ServiceManager"=C:\Program Files\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2012-03-09 1073312]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-01-17 252296]
"Anti-phishing Domain Advisor"=C:\ProgramData\Anti-phishing Domain Advisor\visicom_antiphishing.exe [2012-05-03 217256]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\Uživatel\AppData\Local\Google\Update\GoogleUpdate.exe [2011-02-16 136176]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\daemon.exe [2008-07-24 490952]
"DetectTray"=C:\Program Files\Genius\TVGo DVB-T02PRO\DetectTray.exe [2007-09-21 131072]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2011-10-13 17351304]
"Steam"=D:\Steam\steam.exe [2011-12-24 1242448]
"Advanced SystemCare 5"=C:\Program Files\IObit\Advanced SystemCare 5\ASCTray.exe [2012-03-06 574296]
"AdobeBridge"= []
"ISUSPM"=C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [2006-05-17 213936]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ZPdtWzdVitaKey MC3000]
c:\program files\acer\acer bio protection\pdtwzd.exe [2011-02-16 3642368]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AWinNotifyVitaKey MC3000]
C:\Program Files\Acer\Acer Bio Protection\WinNotify.dll [2011-02-16 3024384]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
C:\Program Files\Acer\Acer Bio Protection\PwdFilter

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"EnableLUA"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"VIDC.IV41"=IR41_32.AX
"VIDC.FPS1"=frapsvid.dll
"vidc.XVID"=xvidvfw.dll
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2012-06-13 21:10:30 ----D---- C:\Program Files\trend micro
2012-06-13 21:10:29 ----D---- C:\rsit
2012-06-08 15:13:12 ----A---- C:\Windows\system32\WavesLib.dll
2012-06-08 15:13:12 ----A---- C:\Windows\system32\WavesGUILib.dll
2012-06-08 15:13:12 ----A---- C:\Windows\system32\tosade.dll
2012-06-08 15:13:12 ----A---- C:\Windows\system32\TepeqAPO.dll
2012-06-08 15:13:12 ----A---- C:\Windows\system32\tadefxapo2.dll
2012-06-08 15:13:12 ----A---- C:\Windows\system32\tadefxapo.dll
2012-06-08 15:13:12 ----A---- C:\Windows\system32\SRSWOW.dll
2012-06-08 15:13:12 ----A---- C:\Windows\system32\SRSTSXT.dll
2012-06-08 15:13:12 ----A---- C:\Windows\system32\SRSTSHD.dll
2012-06-08 15:13:12 ----A---- C:\Windows\system32\SRSHP360.dll
2012-06-08 15:13:11 ----A---- C:\Windows\system32\SFSS_APO.dll
2012-06-08 15:13:11 ----A---- C:\Windows\system32\SFNHK.dll
2012-06-08 15:13:11 ----A---- C:\Windows\system32\SFCOM.dll
2012-06-08 15:13:11 ----A---- C:\Windows\system32\SFAPO.dll
2012-06-08 15:13:10 ----A---- C:\Windows\system32\RtkPgExt.dll
2012-06-08 15:13:10 ----A---- C:\Windows\system32\RtkCoLDR.dll
2012-06-08 15:13:10 ----A---- C:\Windows\system32\RtkCoInstII.dll
2012-06-08 15:13:10 ----A---- C:\Windows\system32\RtkApoApi.dll
2012-06-08 15:13:10 ----A---- C:\Windows\system32\RtkAPO.dll
2012-06-08 15:13:10 ----A---- C:\Windows\system32\drivers\RTKVHDA.sys
2012-06-08 15:13:09 ----A---- C:\Windows\system32\RTEEP32A.dll
2012-06-08 15:13:09 ----A---- C:\Windows\system32\RTEEL32A.dll
2012-06-08 15:13:09 ----A---- C:\Windows\system32\RTEEG32A.dll
2012-06-08 15:13:09 ----A---- C:\Windows\system32\RTEED32A.dll
2012-06-08 15:13:09 ----A---- C:\Windows\system32\RP3DHT32.dll
2012-06-08 15:13:09 ----A---- C:\Windows\system32\RP3DAA32.dll
2012-06-08 15:13:09 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2012-06-08 15:13:08 ----A---- C:\Windows\system32\RCoRes.dat
2012-06-08 15:13:08 ----A---- C:\Windows\system32\R4EEP32A.dll
2012-06-08 15:13:08 ----A---- C:\Windows\system32\R4EEL32A.dll
2012-06-08 15:13:08 ----A---- C:\Windows\system32\R4EEG32A.dll
2012-06-08 15:13:08 ----A---- C:\Windows\system32\R4EED32A.dll
2012-06-08 15:13:08 ----A---- C:\Windows\system32\R4EEA32A.dll
2012-06-08 15:13:08 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2012-06-08 15:13:08 ----A---- C:\Windows\system32\MaxxAudioRealtek2.dll
2012-06-08 15:13:07 ----A---- C:\Windows\system32\MaxxAudioRealtek.dll
2012-06-08 15:13:07 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2012-06-08 15:13:07 ----A---- C:\Windows\system32\MaxxAudioAPOShell.dll
2012-06-08 15:13:07 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2012-06-08 15:13:07 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2012-06-08 15:13:07 ----A---- C:\Windows\system32\MaxxAudioAPO.dll
2012-06-08 15:13:07 ----A---- C:\Windows\system32\KAAPORT.dll
2012-06-08 15:13:00 ----A---- C:\Windows\system32\FMAPO.dll
2012-06-08 15:13:00 ----A---- C:\Windows\system32\DTSVoiceClarityDLL.dll
2012-06-08 15:13:00 ----A---- C:\Windows\system32\DTSU2PREC32.dll
2012-06-08 15:13:00 ----A---- C:\Windows\system32\DTSU2PLFX32.dll
2012-06-08 15:13:00 ----A---- C:\Windows\system32\DTSU2PGFX32.dll
2012-06-08 15:13:00 ----A---- C:\Windows\system32\DTSSymmetryDLL.dll
2012-06-08 15:13:00 ----A---- C:\Windows\system32\DTSS2SpeakerDLL.dll
2012-06-08 15:13:00 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL.dll
2012-06-08 15:13:00 ----A---- C:\Windows\system32\DTSNeoPCDLL.dll
2012-06-08 15:13:00 ----A---- C:\Windows\system32\DTSLimiterDLL.dll
2012-06-08 15:13:00 ----A---- C:\Windows\system32\DTSLFXAPO.dll
2012-06-08 15:13:00 ----A---- C:\Windows\system32\DTSGFXAPONS.dll
2012-06-08 15:13:00 ----A---- C:\Windows\system32\DTSGFXAPO.dll
2012-06-08 15:13:00 ----A---- C:\Windows\system32\DTSGainCompensatorDLL.dll
2012-06-08 15:13:00 ----A---- C:\Windows\system32\DTSBoostDLL.dll
2012-06-08 15:13:00 ----A---- C:\Windows\system32\DTSBassEnhancementDLL.dll
2012-06-08 15:12:59 ----D---- C:\Program Files\Realtek
2012-06-08 15:12:59 ----A---- C:\Windows\system32\AERTARen.dll
2012-06-08 15:12:59 ----A---- C:\Windows\system32\AERTACap.dll
2012-06-08 15:12:56 ----HD---- C:\Program Files\Temp
2012-06-08 15:12:55 ----A---- C:\Windows\RtlExUpd.dll
2012-06-08 15:10:13 ----D---- C:\ProgramData\blekko toolbars
2012-06-08 15:10:02 ----D---- C:\Program Files\blekkotb_031
2012-06-08 15:09:58 ----D---- C:\ProgramData\Anti-phishing Domain Advisor
2012-06-04 18:22:58 ----D---- C:\ProgramData\NVIDIA
2012-06-04 18:22:42 ----A---- C:\Windows\system32\nvvsvc.exe
2012-06-04 18:22:42 ----A---- C:\Windows\system32\nvsvcr.dll
2012-06-04 18:22:42 ----A---- C:\Windows\system32\nvsvc.dll
2012-06-04 18:22:42 ----A---- C:\Windows\system32\nvshext.dll
2012-06-04 18:22:42 ----A---- C:\Windows\system32\nvhotkey.dll
2012-06-04 18:22:41 ----A---- C:\Windows\system32\nvmctray.dll
2012-06-04 18:22:41 ----A---- C:\Windows\system32\nvcpl.dll
2012-06-04 18:22:35 ----A---- C:\Windows\system32\easyupdatusapiu.dll
2012-06-04 18:22:12 ----D---- C:\ProgramData\NVIDIA Corporation
2012-06-04 18:19:46 ----A---- C:\Windows\system32\OpenCL.dll
2012-06-04 18:19:46 ----A---- C:\Windows\system32\nvwgf2um.dll
2012-06-04 18:19:45 ----A---- C:\Windows\system32\nvoglv32.dll
2012-06-04 18:19:45 ----A---- C:\Windows\system32\nvgenco32.dll
2012-06-04 18:19:45 ----A---- C:\Windows\system32\nvdispco32.dll
2012-06-04 18:19:45 ----A---- C:\Windows\system32\nvd3dum.dll
2012-06-04 18:19:45 ----A---- C:\Windows\system32\nvcuvid.dll
2012-06-04 18:19:45 ----A---- C:\Windows\system32\nvcuvenc.dll
2012-06-04 18:19:45 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2012-06-04 18:19:44 ----A---- C:\Windows\system32\nvcuda.dll
2012-06-04 18:19:44 ----A---- C:\Windows\system32\nvcompiler.dll
2012-06-04 18:19:44 ----A---- C:\Windows\system32\nvapi.dll
2012-06-01 15:24:19 ----D---- C:\Program Files\Common Files\Java
2012-06-01 15:23:42 ----D---- C:\Program Files\Oracle
2012-06-01 15:23:21 ----A---- C:\Windows\system32\npDeployJava1.dll
2012-06-01 15:23:21 ----A---- C:\Windows\system32\javaws.exe
2012-06-01 15:22:56 ----A---- C:\Windows\system32\javaw.exe
2012-06-01 15:22:56 ----A---- C:\Windows\system32\java.exe
2012-05-28 19:02:51 ----D---- C:\Program Files\Valvesoftware
2012-05-25 14:32:20 ----D---- C:\ProgramData\Age of Empires 3
2012-05-25 14:24:45 ----D---- C:\Program Files\Common Files\Microsoft Games
2012-05-22 08:40:48 ----D---- C:\Users\Uživatel\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
2012-05-22 07:46:33 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2012-05-19 17:52:36 ----D---- C:\ProgramData\TamoSoft
2012-05-19 17:51:32 ----D---- C:\Program Files\Wifi nastroje
2012-05-17 20:51:25 ----D---- C:\Program Files\Mplayer
2012-05-17 20:48:07 ----D---- C:\Program Files\Quake III Arena
2012-05-17 20:47:59 ----A---- C:\Windows\IsUninst.exe
2012-05-17 20:43:14 ----A---- C:\Windows\QIII.INI

======List of files/folders modified in the last 1 month======

2012-06-13 21:10:30 ----RD---- C:\Program Files
2012-06-13 21:00:21 ----D---- C:\Users\Uživatel\AppData\Roaming\Skype
2012-06-13 20:46:43 ----D---- C:\Windows\system32\drivers
2012-06-13 19:01:12 ----D---- C:\Windows\Temp
2012-06-13 16:45:50 ----D---- C:\Windows\Minidump
2012-06-13 16:45:50 ----D---- C:\Windows\Debug
2012-06-13 16:45:50 ----D---- C:\Windows
2012-06-13 16:44:52 ----D---- C:\Users\Uživatel\AppData\Roaming\uTorrent
2012-06-13 16:33:49 ----SHD---- C:\System Volume Information
2012-06-13 15:30:21 ----SHD---- C:\Windows\Installer
2012-06-13 15:10:09 ----RSD---- C:\Windows\assembly
2012-06-12 23:22:29 ----HD---- C:\Program Files\InstallShield Installation Information
2012-06-12 23:01:12 ----D---- C:\Fraps
2012-06-12 19:44:02 ----D---- C:\Windows\Prefetch
2012-06-11 23:51:00 ----A---- C:\Windows\level.ini
2012-06-11 22:44:21 ----A---- C:\Windows\tmp2Level.ini
2012-06-11 21:13:57 ----D---- C:\Windows\inf
2012-06-11 21:13:57 ----AD---- C:\Windows\System32
2012-06-11 21:13:57 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-06-11 07:01:08 ----A---- C:\Windows\BlendSettings.ini
2012-06-10 23:57:22 ----D---- C:\Users\Uživatel\AppData\Roaming\Vso
2012-06-10 23:50:53 ----D---- C:\Users\Uživatel\AppData\Roaming\NVIDIA
2012-06-08 23:58:50 ----D---- C:\ProgramData\Skype
2012-06-08 16:12:29 ----A---- C:\Windows\DIFxAPI.dll
2012-06-08 15:14:49 ----D---- C:\Windows\system32\RTCOM
2012-06-08 15:14:40 ----D---- C:\Windows\system32\catroot
2012-06-08 15:14:39 ----D---- C:\Windows\system32\catroot2
2012-06-08 15:10:13 ----HD---- C:\ProgramData
2012-06-04 18:23:43 ----D---- C:\Program Files\NVIDIA Corporation
2012-06-04 18:23:03 ----RD---- C:\Users
2012-06-04 18:22:33 ----D---- C:\Windows\Help
2012-06-04 18:03:17 ----D---- C:\Windows\system32\Tasks
2012-06-03 12:24:01 ----D---- C:\Program Files\JDownloader
2012-06-01 21:04:27 ----RSD---- C:\Windows\Fonts
2012-06-01 15:24:19 ----D---- C:\Program Files\Common Files
2012-06-01 15:22:21 ----D---- C:\Program Files\Java
2012-05-30 16:59:10 ----D---- C:\Users\Uživatel\AppData\Roaming\Adobe
2012-05-29 19:27:08 ----A---- C:\typhoon_assert.txt
2012-05-22 16:53:17 ----D---- C:\Program Files\Common Files\Steam
2012-05-22 08:59:29 ----D---- C:\Users\Uživatel\AppData\Roaming\gtk-2.0
2012-05-22 08:21:46 ----D---- C:\ProgramData\Adobe
2012-05-22 07:45:02 ----D---- C:\Program Files\Adobe
2012-05-22 07:44:06 ----D---- C:\Program Files\Common Files\Adobe
2012-05-22 07:39:20 ----D---- C:\Windows\winsxs
2012-05-21 23:59:32 ----D---- C:\Program Files\Microsoft Games
2012-05-20 18:56:47 ----D---- C:\Program Files\Microsoft Silverlight
2012-05-20 16:26:13 ----D---- C:\Users\Uživatel\AppData\Roaming\DarknessII
2012-05-16 18:27:25 ----D---- C:\Windows\system32\config
2012-05-14 15:54:43 ----A---- C:\Windows\system32\PnkBstrB.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 AlfaFF;AlfaFF File System mini-filter; C:\Windows\system32\Drivers\AlfaFF.sys [2011-02-16 43184]
R0 giveio;giveio; C:\Windows\system32\giveio.sys [1996-04-03 5248]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2007-09-30 308248]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2012-03-20 171064]
R0 SmartDefragDriver;SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [2010-11-26 15672]
R0 speedfan;speedfan; C:\Windows\system32\speedfan.sys [2011-03-18 25240]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2011-02-17 717296]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2011-11-28 34392]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2011-11-28 435032]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2011-11-28 314456]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2011-11-28 52952]
R1 TsLwWfF;WiFi Capture Driver; C:\Windows\system32\DRIVERS\TsLwWfF.sys [2012-03-26 22632]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2011-11-28 20568]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2011-11-28 55128]
R2 Int15;Int 15; \??\C:\Windows\System32\drivers\int15.sys [2007-01-26 69632]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672]
R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2007-10-18 8704]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 26176]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2007-11-01 985600]
R3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2007-11-01 208896]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2012-03-27 3204200]
R3 itecir;ITECIR Infrared Receiver; C:\Windows\system32\DRIVERS\itecir.sys [2007-12-18 54784]
R3 L1E;NDIS Miniport Driver for Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1E60x86.sys [2009-08-05 48640]
R3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LHidFilt.Sys [2011-09-02 41240]
R3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouFilt.Sys [2011-09-02 39192]
R3 NETwLv32; Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETwLv32.sys [2010-10-07 6639616]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2011-10-15 10327360]
R3 usbvideo;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016]
R3 vfs101x;vfs101x; C:\Windows\system32\drivers\vfs101x.sys [2008-02-15 40752]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2007-11-01 661504]
S1 MpKslcc401b61;MpKslcc401b61; C:\Windows\system32\drivers\MpKslcc401b61.sys []
S3 ax8vmwsb;ax8vmwsb; C:\Windows\system32\drivers\ax8vmwsb.sys []
S3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-11 22528]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-21 92160]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2011-04-21 508416]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2009-06-17 30208]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2007-03-30 79664]
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\drivers\btwavdt.sys [2007-02-27 81200]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2007-02-27 16432]
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 EagleNT;EagleNT; C:\Windows\system32\drivers\EagleNT.sys []
S3 EC168BDA;TVGo DVB-T02PRO; C:\Windows\system32\DRIVERS\EC168BDA.sys [2007-05-18 67968]
S3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2009-04-11 236544]
S3 injectDLL;injectDLL; C:\Windows\system32\drivers\injectDLL.sys []
S3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys [2008-03-13 80912]
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 NETw5v32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw5v32.sys [2008-11-17 3668480]
S3 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2012-03-20 74112]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmb.sys [2011-11-01 18176]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbo.sys [2011-11-01 23168]
S3 PcaSp60;Rawether NDIS 6.X SPR Protocol Driver; C:\Windows\system32\DRIVERS\PcaSp60.sys [2010-05-19 28672]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-11 148992]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2011-11-01 8192]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-21 35328]
S3 usbser;Nokia USB Serial Port Driver ; C:\Windows\system32\DRIVERS\usbser.sys [2009-04-11 27648]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2011-11-01 8192]
S3 WinRing0_1_2_0;WinRing0_1_2_0; \??\C:\Program Files\IObit\Game Booster 3\Driver\WinRing0.sys [2010-11-01 14416]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2009-04-11 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-01-03 63928]
R2 AdvancedSystemCareService5;Advanced SystemCare Service 5; C:\Program Files\IObit\Advanced SystemCare 5\ASCService.exe [2012-03-14 913752]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2011-11-28 44768]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 EvtEng;Intel® PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2008-10-16 860160]
R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [2012-02-28 1373576]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2007-10-24 358936]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2012-03-26 11552]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2011-10-15 1136448]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-10-15 2253120]
R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2012-05-02 75136]
R2 RegSrvc;Intel® PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2008-10-16 466944]
R2 vfsFPService;Validity Fingerprint Service; C:\Windows\system32\vfsFPService.exe [2008-02-15 595248]
R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2007-10-18 386560]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 DAUpdaterSvc;Dragon Age: Prameny - aktualizace obsahu; D:\games\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe [2009-07-26 25832]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe [2011-09-27 295192]
S3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2012-03-26 214952]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2011-11-30 718888]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2012-05-19 529232]
S3 SwitchBoard;SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 WPFFontCache_v0400;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118194
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Proces systém - kolísání

#2 Příspěvek od Rudy »

Zdarvím!
Poprosím o log ComboFix.
Stahnete a ulozte nejlepe na plochu ComboFix: http://download.bleepingcomputer.com/sUBs/ComboFix.exe

pote spustte aplikaci pod uctem s administratorskym opravnenim

hned po startu se zobrazi obrazovka s licencnimi podminkami, pokracujte kliknutim na tlacitko Ano.

v klidu si postavte na kafe (cela akce trva cca. 5-10 minut, nekdy i dele - dle toho, o jak rychly stroj se

jedna a kolika soubory se skener bude muset prodirat), behem skenu se nepokousejte spoustet zadne jine

aplikace ani nic jineho

behem skenovani nepropadejte panice, vas stroj muze byt restartovan (predevsim pri prvni aplikaci skeneru)

upozorneni: pokud pouzivate antispyware s rezidentnim stitem, prepnete jeho rezidentni stit do Install Mode,

pripadne jej po dobu skenu uplne deaktivujte, protoze dochazi pri skenu a vymazu pripadneho malware k

nezadoucim kolizim s rezidentem antispyware
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Pyromania
Návštěvník
Návštěvník
Příspěvky: 7
Registrován: 13 čer 2012 20:06

Re: Proces systém - kolísání

#3 Příspěvek od Pyromania »

ještě než sem spustil combofix zkusil sem různé věci jako promazání registrů (advance system care) , ale to zřejmě nemá vliv.

Log z ComboFixu (sken trval možná přes půl hodiny, takže kdyby v tom bylo i něco jiného co není příliš dobré byl bych rád když mi to řekneš :-) )
--------------------------------------------------------------------------------------


ComboFix 12-06-13.04 - Uživatel 13.06.2012 22:33:21.1.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.420.1029.18.2046.1285 [GMT 2:00]
Spuštěný z: c:\users\U×ivatel\Desktop\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
AV: Microsoft Security Essentials *Disabled/Updated* {9765EA51-0D3C-7DFB-6091-10E4E1F341F6}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Microsoft Security Essentials *Disabled/Updated* {2C040BB5-2B06-7275-5A21-2B969A740B4B}
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
ADS - system32: deleted 12 bytes in 1 streams.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files\Acer\Acer Bio Protection\PwdFilter.dll
c:\program files\facemoods.com
c:\program files\facemoods.com\facemoods\1.4.17.10\bh\facemoods.dll
c:\program files\facemoods.com\facemoods\1.4.17.10\facemoods.crx
c:\program files\facemoods.com\facemoods\1.4.17.10\facemoods.png
c:\program files\facemoods.com\facemoods\1.4.17.10\facemoodsApp.dll
c:\program files\facemoods.com\facemoods\1.4.17.10\facemoodsEng.dll
c:\program files\facemoods.com\facemoods\1.4.17.10\facemoodssrv.exe
c:\program files\facemoods.com\facemoods\1.4.17.10\facemoodsTlbr.dll
c:\program files\facemoods.com\facemoods\1.4.17.10\uninstall.exe
c:\program files\facemoods.com\sqlite3.dll
c:\programdata\Roaming
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-05-13 do 2012-06-13 )))))))))))))))))))))))))))))))
.
.
2012-06-13 20:44 . 2012-06-13 20:57 -------- d-----w- c:\users\Uživatel\AppData\Local\temp
2012-06-13 20:44 . 2012-06-13 20:44 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-06-13 19:10 . 2012-06-13 19:10 -------- d-----w- c:\program files\trend micro
2012-06-13 19:10 . 2012-06-13 19:11 -------- d-----w- C:\rsit
2012-06-13 14:38 . 2012-05-08 16:40 6737808 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{3960102E-5D56-4C00-A5AD-E237FF83AA95}\mpengine.dll
2012-06-12 20:40 . 2012-05-08 16:40 6737808 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2012-06-11 21:13 . 2012-06-11 21:17 -------- d-----w- c:\users\Uživatel\AppData\Local\Two Worlds II
2012-06-08 13:12 . 2012-06-08 13:12 -------- d-----w- c:\program files\Realtek
2012-06-08 13:12 . 2012-03-08 09:47 95840 ----a-w- c:\windows\system32\AERTARen.dll
2012-06-08 13:12 . 2012-03-08 09:47 176736 ----a-w- c:\windows\system32\AERTACap.dll
2012-06-08 13:12 . 2012-06-08 13:15 -------- d--h--w- c:\program files\Temp
2012-06-08 13:12 . 2011-12-13 09:01 1698408 ----a-w- c:\windows\RtlExUpd.dll
2012-06-08 13:10 . 2012-06-08 13:10 -------- d-----w- c:\programdata\blekko toolbars
2012-06-08 13:10 . 2012-06-08 13:10 -------- d-----w- c:\program files\blekkotb_031
2012-06-08 13:10 . 2012-06-08 13:10 -------- d-----w- c:\users\Uživatel\AppData\Local\blekkotb_031
2012-06-08 13:09 . 2012-06-08 13:10 -------- d-----w- c:\programdata\Anti-phishing Domain Advisor
2012-06-04 16:23 . 2012-06-04 16:23 -------- d-----w- c:\users\UpdatusUser
2012-06-04 16:22 . 2012-06-04 16:23 -------- d-----w- c:\programdata\NVIDIA
2012-06-04 16:22 . 2011-10-15 08:53 487232 ----a-w- c:\windows\system32\nvhotkey.dll
2012-06-04 16:22 . 2011-10-15 08:53 3840320 ----a-w- c:\windows\system32\nvsvc.dll
2012-06-04 16:22 . 2011-10-15 08:53 3074368 ----a-w- c:\windows\system32\nvsvcr.dll
2012-06-04 16:22 . 2011-10-15 08:53 123712 ----a-w- c:\windows\system32\nvshext.dll
2012-06-04 16:22 . 2011-10-15 08:53 1136448 ----a-w- c:\windows\system32\nvvsvc.exe
2012-06-04 16:22 . 2011-10-15 08:53 6350144 ----a-w- c:\windows\system32\nvcpl.dll
2012-06-04 16:22 . 2011-10-15 08:53 203072 ----a-w- c:\windows\system32\nvmctray.dll
2012-06-04 16:22 . 2011-10-15 08:53 602432 ----a-w- c:\windows\system32\easyupdatusapiu.dll
2012-06-04 16:22 . 2012-06-04 16:22 -------- d-----w- c:\programdata\NVIDIA Corporation
2012-06-04 16:19 . 2011-10-15 08:53 7041856 ----a-w- c:\windows\system32\nvwgf2um.dll
2012-06-04 16:19 . 2011-10-15 08:53 61248 ----a-w- c:\windows\system32\OpenCL.dll
2012-06-04 16:19 . 2011-10-15 08:53 919872 ----a-w- c:\windows\system32\nvdispco32.dll
2012-06-04 16:19 . 2011-10-15 08:53 877376 ----a-w- c:\windows\system32\nvgenco32.dll
2012-06-04 16:19 . 2011-10-15 08:53 2401088 ----a-w- c:\windows\system32\nvcuvid.dll
2012-06-04 16:19 . 2011-10-15 08:53 2099520 ----a-w- c:\windows\system32\nvcuvenc.dll
2012-06-04 16:19 . 2011-10-15 08:53 18871616 ----a-w- c:\windows\system32\nvoglv32.dll
2012-06-04 16:19 . 2011-10-15 08:53 13205312 ----a-w- c:\windows\system32\nvd3dum.dll
2012-06-04 16:19 . 2011-10-15 08:53 10327360 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys
2012-06-04 16:19 . 2011-10-15 08:53 5578560 ----a-w- c:\windows\system32\nvcuda.dll
2012-06-04 16:19 . 2011-10-15 08:53 2458432 ----a-w- c:\windows\system32\nvapi.dll
2012-06-04 16:19 . 2011-10-15 08:53 17248576 ----a-w- c:\windows\system32\nvcompiler.dll
2012-06-01 13:24 . 2012-06-01 13:24 -------- d-----w- c:\program files\Common Files\Java
2012-06-01 13:23 . 2012-06-01 13:23 -------- d-----w- c:\program files\Oracle
2012-06-01 13:23 . 2012-04-04 16:47 772504 ----a-w- c:\windows\system32\npDeployJava1.dll
2012-05-29 18:33 . 2012-05-29 18:33 -------- d-----w- c:\users\Uživatel\TYPHOON
2012-05-28 17:02 . 2012-05-28 17:08 -------- d-----w- c:\program files\Valvesoftware
2012-05-25 12:32 . 2012-05-25 12:32 -------- d-----w- c:\programdata\Age of Empires 3
2012-05-25 12:24 . 2012-05-25 12:24 -------- d-----w- c:\program files\Common Files\Microsoft Games
2012-05-22 06:40 . 2012-05-22 06:40 -------- d-----w- c:\users\Uživatel\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
2012-05-22 05:46 . 2012-05-22 05:46 -------- d-----w- c:\programdata\regid.1986-12.com.adobe
2012-05-19 15:52 . 2012-05-19 17:10 -------- d-----w- c:\programdata\TamoSoft
2012-05-19 15:51 . 2012-05-20 13:43 -------- d-----w- c:\program files\Wifi nastroje
2012-05-17 18:51 . 2012-05-17 18:51 -------- d-----w- c:\program files\Mplayer
2012-05-17 18:48 . 2012-05-17 18:59 -------- d-----w- c:\program files\Quake III Arena
2012-05-17 18:47 . 1999-10-09 15:30 305152 ----a-w- c:\windows\IsUninst.exe
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-06-08 14:12 . 2011-02-16 14:27 319456 ----a-w- c:\windows\DIFxAPI.dll
2012-05-14 13:55 . 2011-04-07 19:02 139080 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2012-05-14 13:54 . 2011-11-17 21:44 270240 ----a-w- c:\windows\system32\PnkBstrB.xtr
2012-05-14 13:54 . 2011-04-07 19:01 270240 ----a-w- c:\windows\system32\PnkBstrB.exe
2012-05-03 21:10 . 2011-04-07 19:01 270240 ----a-w- c:\windows\system32\PnkBstrB.ex0
2012-05-02 12:45 . 2011-04-07 19:02 138056 ----a-w- c:\users\Uživatel\AppData\Roaming\PnkBstrK.sys
2012-05-02 12:45 . 2011-04-07 19:02 138056 ----a-w- c:\users\Uživatel\AppData\Roaming\PnkBstrK.sys
2012-05-02 12:44 . 2011-04-07 19:01 75136 ----a-w- c:\windows\system32\PnkBstrA.exe
2012-04-04 16:47 . 2011-04-02 18:11 687504 ----a-w- c:\windows\system32\deployJava1.dll
2012-04-03 08:16 . 2012-05-11 20:51 3602816 ----a-w- c:\windows\system32\ntkrnlpa.exe
2012-04-03 08:16 . 2012-05-11 20:51 3550080 ----a-w- c:\windows\system32\ntoskrnl.exe
2012-04-02 13:36 . 2012-05-11 20:51 2044928 ----a-w- c:\windows\system32\win32k.sys
2012-03-30 12:39 . 2012-05-11 20:51 914304 ----a-w- c:\windows\system32\drivers\tcpip.sys
2012-03-29 13:39 . 2012-05-11 20:51 31232 ----a-w- c:\windows\system32\drivers\tcpipreg.sys
2012-03-26 16:56 . 2009-10-16 11:03 22632 ----a-w- c:\windows\system32\drivers\TsLwWfF.sys
2012-03-20 23:28 . 2012-05-11 20:51 53120 ----a-w- c:\windows\system32\drivers\partmgr.sys
2012-03-20 18:44 . 2010-10-24 20:25 74112 ----a-w- c:\windows\system32\drivers\NisDrvWFP.sys
2012-03-20 18:44 . 2010-10-24 20:25 171064 ----a-w- c:\windows\system32\drivers\MpFilter.sys
2012-03-19 19:48 . 2012-03-16 17:18 16400 ----a-w- c:\windows\system32\drivers\LNonPnP.sys
2012-03-16 17:18 . 2012-03-16 17:18 53248 ----a-r- c:\users\Uživatel\AppData\Roaming\Microsoft\Installer\{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}\ARPPRODUCTICON.exe
2012-03-16 17:18 . 2012-03-16 17:18 53248 ----a-r- c:\users\Uživatel\AppData\Roaming\Microsoft\Installer\{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}\ARPPRODUCTICON.exe
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{8769adce-dba5-48e9-afb5-67b12cdf2e61}]
2012-05-18 19:44 85288 ----a-w- c:\program files\blekkotb_031\blekkotb_019X.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{8769adce-dba5-48e9-afb5-67b12cdf2e61}"= "c:\program files\blekkotb_031\blekkotb_019X.dll" [2012-05-18 85288]
.
[HKEY_CLASSES_ROOT\clsid\{8769adce-dba5-48e9-afb5-67b12cdf2e61}]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2011-11-28 18:01 122512 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\daemon.exe" [2008-07-24 490952]
"DetectTray"="c:\program files\Genius\TVGo DVB-T02PRO\DetectTray.exe" [2007-09-21 131072]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2011-10-13 17351304]
"Steam"="d:\steam\steam.exe" [2011-12-24 1242448]
"Advanced SystemCare 5"="c:\program files\IObit\Advanced SystemCare 5\ASCTray.exe" [2012-03-06 574296]
"ISUSPM"="c:\program files\Common Files\InstallShield\UpdateService\ISUSPM.exe" [2006-05-16 213936]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"PLFSetI"="c:\windows\PLFSetI.exe" [2007-10-23 200704]
"IAAnotif"="c:\program files\Intel\Intel Matrix Storage Manager\iaanotif.exe" [2007-10-24 178712]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2011-11-28 3744552]
"EvtMgr6"="c:\program files\Logitech\SetPointP\SetPoint.exe" [2011-10-07 1387288]
"LogMeIn Hamachi Ui"="c:\program files\LogMeIn Hamachi\hamachi-2-ui.exe" [2012-02-28 1987976]
"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2012-03-26 931200]
"AdobeAAMUpdater-1.0"="c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2012-04-04 446392]
"SwitchBoard"="c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [2010-02-19 517096]
"AdobeCS6ServiceManager"="c:\program files\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" [2012-03-09 1073312]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2012-01-17 252296]
"Anti-phishing Domain Advisor"="c:\programdata\Anti-phishing Domain Advisor\visicom_antiphishing.exe" [2012-05-03 217256]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2007-4-24 723760]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\AWinNotifyVitaKey MC3000]
2011-02-16 14:35 3024384 ----a-w- c:\program files\Acer\Acer Bio Protection\WinNotify.dll
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ZPdtWzdVitaKey MC3000]
2011-02-16 14:35 3642368 ----a-w- c:\program files\Acer\Acer Bio Protection\PdtWzd.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-3908276883-2646373536-34234631-1000]
"EnableNotificationsRef"=dword:00000001
.
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-01-03 63928]
S2 AdvancedSystemCareService5;Advanced SystemCare Service 5;c:\program files\IObit\Advanced SystemCare 5\ASCService.exe [2012-03-14 913752]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - WS2IFSL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs REG_MULTI_SZ BthServ
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
Obsah adresáře 'Naplánované úlohy'
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://blekko.com/ws/?source=c3348dd4&toolbarid=blekkotb_031&u=199386D7364F7DBC65937C4FD1F962DB&tbp=homepage
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
IE: Send image to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: Send page to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
TCP: Interfaces\{25B05390-C70D-4202-8173-811AD604207F}: NameServer = 212.158.128.2,212.158.128.3
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
HKCU-Run-AdobeBridge - (no file)
HKLM-Run-facemoods - c:\program files\facemoods.com\facemoods\1.4.17.10\facemoodssrv.exe
AddRemove-facemoods - c:\program files\facemoods.com\facemoods\1.4.17.10\uninstall.exe
AddRemove-UnityWebPlayer - c:\users\Uživatel\AppData\Local\Unity\WebPlayer\Uninstall.exe
.
.
.
**************************************************************************
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory:
.
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-3908276883-2646373536-34234631-1000\Software\SecuROM\License information*]
"datasecu"=hex:0d,53,79,95,ed,cf,06,92,97,55,c4,c3,2d,3b,83,99,ae,2a,45,20,86,
a5,54,6b,01,70,ba,e2,69,a8,10,e7,c7,43,f2,9a,14,92,3f,3f,13,77,c3,de,cd,59,\
"rkeysecu"=hex:4e,da,6a,4f,51,ea,30,60,38,25,f4,f3,24,b2,95,7b
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'Explorer.exe'(4156)
c:\programdata\Anti-phishing Domain Advisor\visicom_antiphishing.dll
c:\windows\system32\btmmhook.dll
c:\windows\system32\btncopy.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\nvvsvc.exe
c:\program files\Microsoft Security Client\MsMpEng.exe
c:\program files\NVIDIA Corporation\Display\nvxdsync.exe
c:\windows\system32\nvvsvc.exe
c:\windows\system32\vfsFPService.exe
c:\program files\Acer\Acer Bio Protection\CompPtcVUI.exe
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\windows\system32\WLANExt.exe
c:\program files\NVIDIA Corporation\Display\nvtray.exe
c:\program files\Intel\WiFi\bin\EvtEng.exe
c:\program files\LogMeIn Hamachi\hamachi-2.exe
c:\program files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
c:\windows\system32\PnkBstrA.exe
c:\program files\Common Files\Intel\WirelessCommon\RegSrvc.exe
c:\windows\system32\DRIVERS\xaudio.exe
c:\windows\system32\wbem\unsecapp.exe
c:\program files\Common Files\LogiShrd\KHAL3\KHALMNPR.EXE
c:\program files\Logitech\SetPointG\SetPointII.exe
c:\program files\Windows Media Player\wmpnscfg.exe
c:\program files\Windows Media Player\wmpnetwk.exe
c:\program files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
c:\windows\system32\conime.exe
.
**************************************************************************
.
Celkový čas: 2012-06-13 23:05:42 - počítač byl restartován
ComboFix-quarantined-files.txt 2012-06-13 21:05
.
Před spuštěním: Volných bajtů: 27 085 709 312
Po spuštění: Volných bajtů: 27 465 220 096
.
- - End Of File - - C1E409F904E2FCC7E322D1C6EA6E683E

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118194
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Proces systém - kolísání

#4 Příspěvek od Rudy »

Ještě dočistíme. Otevřte poznámkový blok a zkopírujte do něj:
KillAll::

Folder::
c:\programdata\blekko toolbars
c:\program files\blekkotb_031
c:\users\Uživatel\AppData\Local\blekkotb_031

Registry::
[-HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{8769adce-dba5-48e9-afb5-67b12cdf2e61}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
[-HKEY_CLASSES_ROOT\clsid\{8769adce-dba5-48e9-afb5-67b12cdf2e61}]

Regnull::
[HKEY_USERS\S-1-5-21-3908276883-2646373536-34234631-1000\Software\SecuROM\License information*]

RegLock::
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
Uložte na plochu jako CFScript.txt. Pak jej myší přetáhněte nad ikonu ComboFix a pusťte. CF se spustí a vykoná příkazy ze skriptu.

Obrázek
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Pyromania
Návštěvník
Návštěvník
Příspěvky: 7
Registrován: 13 čer 2012 20:06

Re: Proces systém - kolísání

#5 Příspěvek od Pyromania »

Udělal sem co si říkal, spustilo se znova skenování, restartoval se počítač a poté mi to hodilo za sebou tři hlášky že je chybě zadaný registr či co... no a pak se to dodělalo, hodilo to log a objevila se mi blue screen :)

No a log se samozřejmě neuložil :)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118194
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Proces systém - kolísání

#6 Příspěvek od Rudy »

Dejte tedy nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Pyromania
Návštěvník
Návštěvník
Příspěvky: 7
Registrován: 13 čer 2012 20:06

Re: Proces systém - kolísání

#7 Příspěvek od Pyromania »

Logfile of random's system information tool 1.09 (written by random/random)
Run by Uživatel at 2012-06-14 12:55:52
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 22 GB (15%) free of 146 GB
Total RAM: 2046 MB (44% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:56:07, on 14.6.2012
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal

Running processes:
C:\Windows\Explorer.EXE
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Windows\PLFSetI.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Logitech\SetPointP\SetPoint.exe
C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\ProgramData\Anti-phishing Domain Advisor\visicom_antiphishing.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\Genius\TVGo DVB-T02PRO\DetectTray.exe
C:\Program Files\Skype\Phone\Skype.exe
D:\Steam\steam.exe
C:\Program Files\IObit\Advanced SystemCare 5\ASCTray.exe
C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.EXE
C:\Program Files\Logitech\SetPointG\SetPointII.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\system32\Taskmgr.exe
C:\Users\Uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\rundll32.exe
C:\Users\Uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Uživatel\Desktop\Koberec\RSIT.exe
C:\Users\Uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Uživatel.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://blekko.com/ws/?source=c3348dd4&t ... p=homepage
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll
O4 - HKLM\..\Run: [PLFSetI] C:\Windows\PLFSetI.exe
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [EvtMgr6] C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming
O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Anti-phishing Domain Advisor] "C:\ProgramData\Anti-phishing Domain Advisor\visicom_antiphishing.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [DetectTray] C:\Program Files\Genius\TVGo DVB-T02PRO\DetectTray.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [Steam] "D:\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [Advanced SystemCare 5] "C:\Program Files\IObit\Advanced SystemCare 5\ASCTray.exe" /AutoStart
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - HKUS\S-1-5-21-3908276883-2646373536-34234631-1001\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-3908276883-2646373536-34234631-1001\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-3908276883-2646373536-34234631-1001\..\Run: [Google Update] "C:\Users\Uživatel\AppData\Local\Google\Update\GoogleUpdate.exe" /c (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-3908276883-2646373536-34234631-1001\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-3908276883-2646373536-34234631-1001\..\Run: [DetectTray] C:\Program Files\Genius\TVGo DVB-T02PRO\DetectTray.exe (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-3908276883-2646373536-34234631-1001\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-3908276883-2646373536-34234631-1001\..\Run: [Steam] "D:\Steam\steam.exe" -silent (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-3908276883-2646373536-34234631-1001\..\Run: [Advanced SystemCare 5] "C:\Program Files\IObit\Advanced SystemCare 5\ASCTray.exe" /AutoStart (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-3908276883-2646373536-34234631-1001\..\Run: [AdobeBridge] (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-3908276883-2646373536-34234631-1001\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-3908276883-2646373536-34234631-1001\..\RunOnce: [blekkotb] reg.exe delete "HKCU\Software\AppDataLow\Software\blekkotb" /f (User 'UpdatusUser')
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Quick-Launching Area - {10954C80-4F0F-11d3-B17C-00C0DFE39736} - C:\Program Files\Acer\Acer Bio Protection\PwdBank.exe
O9 - Extra 'Tools' menuitem: Quick-Launching Area - {10954C80-4F0F-11d3-B17C-00C0DFE39736} - C:\Program Files\Acer\Acer Bio Protection\PwdBank.exe
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{25B05390-C70D-4202-8173-811AD604207F}: NameServer = 212.158.128.2,212.158.128.3
O17 - HKLM\System\CS2\Services\Tcpip\..\{25B05390-C70D-4202-8173-811AD604207F}: NameServer = 77.48.100.254,77.48.254.254
O17 - HKLM\System\CS3\Services\Tcpip\..\{25B05390-C70D-4202-8173-811AD604207F}: NameServer = 77.48.100.254,77.48.254.254
O17 - HKLM\System\CS4\Services\Tcpip\..\{25B05390-C70D-4202-8173-811AD604207F}: NameServer = 77.48.100.254,77.48.254.254
O17 - HKLM\System\CS5\Services\Tcpip\..\{25B05390-C70D-4202-8173-811AD604207F}: NameServer = 77.48.100.254,77.48.254.254
O17 - HKLM\System\CS6\Services\Tcpip\..\{25B05390-C70D-4202-8173-811AD604207F}: NameServer = 77.48.100.254,77.48.254.254
O17 - HKLM\System\CS7\Services\Tcpip\..\{25B05390-C70D-4202-8173-811AD604207F}: NameServer = 77.48.100.254,77.48.254.254
O17 - HKLM\System\CS8\Services\Tcpip\..\{25B05390-C70D-4202-8173-811AD604207F}: NameServer = 77.48.100.254,77.48.254.254
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O20 - Winlogon Notify: AWinNotifyVitaKey MC3000 - C:\Program Files\Acer\Acer Bio Protection\WinNotify.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Advanced SystemCare Service 5 (AdvancedSystemCareService5) - IObit - C:\Program Files\IObit\Advanced SystemCare 5\ASCService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Dragon Age: Prameny - aktualizace obsahu (DAUpdaterSvc) - BioWare - D:\games\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe
O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: Validity Fingerprint Service (vfsFPService) - Validity Sensors, Inc. - C:\Windows\system32\vfsFPService.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 12365 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-04-04 63912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll [2012-04-04 453504]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2011-11-28 809040]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-10-10 3834016]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll [2012-04-04 157576]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"PLFSetI"=C:\Windows\PLFSetI.exe [2007-10-23 200704]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [2007-10-24 178712]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-03 843712]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2011-11-28 3744552]
"EvtMgr6"=C:\Program Files\Logitech\SetPointP\SetPoint.exe [2011-10-07 1387288]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2012-03-26 931200]
"AdobeAAMUpdater-1.0"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]
"SwitchBoard"=C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS6ServiceManager"=C:\Program Files\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2012-03-09 1073312]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-01-17 252296]
"Anti-phishing Domain Advisor"=C:\ProgramData\Anti-phishing Domain Advisor\visicom_antiphishing.exe [2012-05-03 217256]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\daemon.exe [2008-07-24 490952]
"DetectTray"=C:\Program Files\Genius\TVGo DVB-T02PRO\DetectTray.exe [2007-09-21 131072]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2011-10-13 17351304]
"Steam"=D:\Steam\steam.exe [2011-12-24 1242448]
"Advanced SystemCare 5"=C:\Program Files\IObit\Advanced SystemCare 5\ASCTray.exe [2012-03-06 574296]
"ISUSPM"=C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [2006-05-17 213936]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogMeIn Hamachi Ui]
C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe [2012-02-28 1987976]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ZPdtWzdVitaKey MC3000]
c:\program files\acer\acer bio protection\pdtwzd.exe [2011-02-16 3642368]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AWinNotifyVitaKey MC3000]
C:\Program Files\Acer\Acer Bio Protection\WinNotify.dll [2011-02-16 3024384]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"EnableLUA"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=0
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"VIDC.IV41"=IR41_32.AX
"VIDC.FPS1"=frapsvid.dll
"vidc.XVID"=xvidvfw.dll
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2012-06-13 23:47:27 ----A---- C:\ComboFix.txt
2012-06-13 23:45:25 ----SHD---- C:\$RECYCLE.BIN
2012-06-13 23:37:23 ----D---- C:\Windows\temp
2012-06-13 23:21:50 ----D---- C:\ComboFix
2012-06-13 22:29:19 ----A---- C:\Windows\zip.exe
2012-06-13 22:29:19 ----A---- C:\Windows\SWSC.exe
2012-06-13 22:29:19 ----A---- C:\Windows\SWREG.exe
2012-06-13 22:29:19 ----A---- C:\Windows\sed.exe
2012-06-13 22:29:19 ----A---- C:\Windows\PEV.exe
2012-06-13 22:29:19 ----A---- C:\Windows\NIRCMD.exe
2012-06-13 22:29:19 ----A---- C:\Windows\MBR.exe
2012-06-13 22:29:19 ----A---- C:\Windows\grep.exe
2012-06-13 22:29:11 ----D---- C:\Windows\ERDNT
2012-06-13 22:28:39 ----D---- C:\Qoobox
2012-06-13 21:10:30 ----D---- C:\Program Files\trend micro
2012-06-13 21:10:29 ----D---- C:\rsit
2012-06-08 15:13:12 ----A---- C:\Windows\system32\WavesLib.dll
2012-06-08 15:13:12 ----A---- C:\Windows\system32\WavesGUILib.dll
2012-06-08 15:13:12 ----A---- C:\Windows\system32\tosade.dll
2012-06-08 15:13:12 ----A---- C:\Windows\system32\TepeqAPO.dll
2012-06-08 15:13:12 ----A---- C:\Windows\system32\tadefxapo2.dll
2012-06-08 15:13:12 ----A---- C:\Windows\system32\tadefxapo.dll
2012-06-08 15:13:12 ----A---- C:\Windows\system32\SRSWOW.dll
2012-06-08 15:13:12 ----A---- C:\Windows\system32\SRSTSXT.dll
2012-06-08 15:13:12 ----A---- C:\Windows\system32\SRSTSHD.dll
2012-06-08 15:13:12 ----A---- C:\Windows\system32\SRSHP360.dll
2012-06-08 15:13:11 ----A---- C:\Windows\system32\SFSS_APO.dll
2012-06-08 15:13:11 ----A---- C:\Windows\system32\SFNHK.dll
2012-06-08 15:13:11 ----A---- C:\Windows\system32\SFCOM.dll
2012-06-08 15:13:11 ----A---- C:\Windows\system32\SFAPO.dll
2012-06-08 15:13:10 ----A---- C:\Windows\system32\RtkPgExt.dll
2012-06-08 15:13:10 ----A---- C:\Windows\system32\RtkCoLDR.dll
2012-06-08 15:13:10 ----A---- C:\Windows\system32\RtkCoInstII.dll
2012-06-08 15:13:10 ----A---- C:\Windows\system32\RtkApoApi.dll
2012-06-08 15:13:10 ----A---- C:\Windows\system32\RtkAPO.dll
2012-06-08 15:13:10 ----A---- C:\Windows\system32\drivers\RTKVHDA.sys
2012-06-08 15:13:09 ----A---- C:\Windows\system32\RTEEP32A.dll
2012-06-08 15:13:09 ----A---- C:\Windows\system32\RTEEL32A.dll
2012-06-08 15:13:09 ----A---- C:\Windows\system32\RTEEG32A.dll
2012-06-08 15:13:09 ----A---- C:\Windows\system32\RTEED32A.dll
2012-06-08 15:13:09 ----A---- C:\Windows\system32\RP3DHT32.dll
2012-06-08 15:13:09 ----A---- C:\Windows\system32\RP3DAA32.dll
2012-06-08 15:13:09 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2012-06-08 15:13:08 ----A---- C:\Windows\system32\RCoRes.dat
2012-06-08 15:13:08 ----A---- C:\Windows\system32\R4EEP32A.dll
2012-06-08 15:13:08 ----A---- C:\Windows\system32\R4EEL32A.dll
2012-06-08 15:13:08 ----A---- C:\Windows\system32\R4EEG32A.dll
2012-06-08 15:13:08 ----A---- C:\Windows\system32\R4EED32A.dll
2012-06-08 15:13:08 ----A---- C:\Windows\system32\R4EEA32A.dll
2012-06-08 15:13:08 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2012-06-08 15:13:08 ----A---- C:\Windows\system32\MaxxAudioRealtek2.dll
2012-06-08 15:13:07 ----A---- C:\Windows\system32\MaxxAudioRealtek.dll
2012-06-08 15:13:07 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2012-06-08 15:13:07 ----A---- C:\Windows\system32\MaxxAudioAPOShell.dll
2012-06-08 15:13:07 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2012-06-08 15:13:07 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2012-06-08 15:13:07 ----A---- C:\Windows\system32\MaxxAudioAPO.dll
2012-06-08 15:13:07 ----A---- C:\Windows\system32\KAAPORT.dll
2012-06-08 15:13:00 ----A---- C:\Windows\system32\FMAPO.dll
2012-06-08 15:13:00 ----A---- C:\Windows\system32\DTSVoiceClarityDLL.dll
2012-06-08 15:13:00 ----A---- C:\Windows\system32\DTSU2PREC32.dll
2012-06-08 15:13:00 ----A---- C:\Windows\system32\DTSU2PLFX32.dll
2012-06-08 15:13:00 ----A---- C:\Windows\system32\DTSU2PGFX32.dll
2012-06-08 15:13:00 ----A---- C:\Windows\system32\DTSSymmetryDLL.dll
2012-06-08 15:13:00 ----A---- C:\Windows\system32\DTSS2SpeakerDLL.dll
2012-06-08 15:13:00 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL.dll
2012-06-08 15:13:00 ----A---- C:\Windows\system32\DTSNeoPCDLL.dll
2012-06-08 15:13:00 ----A---- C:\Windows\system32\DTSLimiterDLL.dll
2012-06-08 15:13:00 ----A---- C:\Windows\system32\DTSLFXAPO.dll
2012-06-08 15:13:00 ----A---- C:\Windows\system32\DTSGFXAPONS.dll
2012-06-08 15:13:00 ----A---- C:\Windows\system32\DTSGFXAPO.dll
2012-06-08 15:13:00 ----A---- C:\Windows\system32\DTSGainCompensatorDLL.dll
2012-06-08 15:13:00 ----A---- C:\Windows\system32\DTSBoostDLL.dll
2012-06-08 15:13:00 ----A---- C:\Windows\system32\DTSBassEnhancementDLL.dll
2012-06-08 15:12:59 ----D---- C:\Program Files\Realtek
2012-06-08 15:12:59 ----A---- C:\Windows\system32\AERTARen.dll
2012-06-08 15:12:59 ----A---- C:\Windows\system32\AERTACap.dll
2012-06-08 15:12:56 ----HD---- C:\Program Files\Temp
2012-06-08 15:12:55 ----A---- C:\Windows\RtlExUpd.dll
2012-06-08 15:09:58 ----D---- C:\ProgramData\Anti-phishing Domain Advisor
2012-06-04 18:22:58 ----D---- C:\ProgramData\NVIDIA
2012-06-04 18:22:42 ----A---- C:\Windows\system32\nvvsvc.exe
2012-06-04 18:22:42 ----A---- C:\Windows\system32\nvsvcr.dll
2012-06-04 18:22:42 ----A---- C:\Windows\system32\nvsvc.dll
2012-06-04 18:22:42 ----A---- C:\Windows\system32\nvshext.dll
2012-06-04 18:22:42 ----A---- C:\Windows\system32\nvhotkey.dll
2012-06-04 18:22:41 ----A---- C:\Windows\system32\nvmctray.dll
2012-06-04 18:22:41 ----A---- C:\Windows\system32\nvcpl.dll
2012-06-04 18:22:35 ----A---- C:\Windows\system32\easyupdatusapiu.dll
2012-06-04 18:22:12 ----D---- C:\ProgramData\NVIDIA Corporation
2012-06-04 18:19:46 ----A---- C:\Windows\system32\OpenCL.dll
2012-06-04 18:19:46 ----A---- C:\Windows\system32\nvwgf2um.dll
2012-06-04 18:19:45 ----A---- C:\Windows\system32\nvoglv32.dll
2012-06-04 18:19:45 ----A---- C:\Windows\system32\nvgenco32.dll
2012-06-04 18:19:45 ----A---- C:\Windows\system32\nvdispco32.dll
2012-06-04 18:19:45 ----A---- C:\Windows\system32\nvd3dum.dll
2012-06-04 18:19:45 ----A---- C:\Windows\system32\nvcuvid.dll
2012-06-04 18:19:45 ----A---- C:\Windows\system32\nvcuvenc.dll
2012-06-04 18:19:45 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2012-06-04 18:19:44 ----A---- C:\Windows\system32\nvcuda.dll
2012-06-04 18:19:44 ----A---- C:\Windows\system32\nvcompiler.dll
2012-06-04 18:19:44 ----A---- C:\Windows\system32\nvapi.dll
2012-06-01 15:24:19 ----D---- C:\Program Files\Common Files\Java
2012-06-01 15:23:42 ----D---- C:\Program Files\Oracle
2012-06-01 15:23:21 ----A---- C:\Windows\system32\npDeployJava1.dll
2012-06-01 15:23:21 ----A---- C:\Windows\system32\javaws.exe
2012-06-01 15:22:56 ----A---- C:\Windows\system32\javaw.exe
2012-06-01 15:22:56 ----A---- C:\Windows\system32\java.exe
2012-05-28 19:02:51 ----D---- C:\Program Files\Valvesoftware
2012-05-25 14:32:20 ----D---- C:\ProgramData\Age of Empires 3
2012-05-25 14:24:45 ----D---- C:\Program Files\Common Files\Microsoft Games
2012-05-22 08:40:48 ----D---- C:\Users\Uživatel\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
2012-05-22 07:46:33 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2012-05-19 17:52:36 ----D---- C:\ProgramData\TamoSoft
2012-05-19 17:51:32 ----D---- C:\Program Files\Wifi nastroje
2012-05-17 20:51:25 ----D---- C:\Program Files\Mplayer
2012-05-17 20:48:07 ----D---- C:\Program Files\Quake III Arena
2012-05-17 20:47:59 ----A---- C:\Windows\IsUninst.exe
2012-05-17 20:43:14 ----A---- C:\Windows\QIII.INI

======List of files/folders modified in the last 1 month======

2012-06-14 12:56:05 ----D---- C:\Windows\Prefetch
2012-06-14 12:51:40 ----D---- C:\Users\Uživatel\AppData\Roaming\Skype
2012-06-13 23:50:16 ----D---- C:\Windows\Minidump
2012-06-13 23:50:12 ----D---- C:\Windows
2012-06-13 23:47:37 ----D---- C:\Windows\system32\drivers
2012-06-13 23:40:52 ----A---- C:\Windows\system.ini
2012-06-13 23:39:59 ----D---- C:\Windows\system32\drivers\etc
2012-06-13 23:36:35 ----RD---- C:\Program Files
2012-06-13 23:36:35 ----D---- C:\ProgramData
2012-06-13 23:30:45 ----D---- C:\Windows\AppPatch
2012-06-13 23:30:45 ----AD---- C:\Windows\System32
2012-06-13 23:30:42 ----D---- C:\Program Files\Common Files
2012-06-13 23:02:42 ----D---- C:\Windows\Tasks
2012-06-13 22:45:02 ----D---- C:\Windows\system32\config
2012-06-13 16:45:50 ----D---- C:\Windows\Debug
2012-06-13 16:44:52 ----D---- C:\Users\Uživatel\AppData\Roaming\uTorrent
2012-06-13 16:33:49 ----SHD---- C:\System Volume Information
2012-06-13 15:30:21 ----SHD---- C:\Windows\Installer
2012-06-13 15:10:09 ----RSD---- C:\Windows\assembly
2012-06-12 23:22:29 ----HD---- C:\Program Files\InstallShield Installation Information
2012-06-12 23:01:12 ----D---- C:\Fraps
2012-06-11 23:51:00 ----A---- C:\Windows\level.ini
2012-06-11 22:44:21 ----A---- C:\Windows\tmp2Level.ini
2012-06-11 21:13:57 ----D---- C:\Windows\inf
2012-06-11 21:13:57 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-06-11 07:01:08 ----A---- C:\Windows\BlendSettings.ini
2012-06-10 23:57:22 ----D---- C:\Users\Uživatel\AppData\Roaming\Vso
2012-06-10 23:50:53 ----D---- C:\Users\Uživatel\AppData\Roaming\NVIDIA
2012-06-08 23:58:50 ----D---- C:\ProgramData\Skype
2012-06-08 16:12:29 ----A---- C:\Windows\DIFxAPI.dll
2012-06-08 15:14:49 ----D---- C:\Windows\system32\RTCOM
2012-06-08 15:14:40 ----D---- C:\Windows\system32\catroot
2012-06-08 15:14:39 ----D---- C:\Windows\system32\catroot2
2012-06-04 18:23:43 ----D---- C:\Program Files\NVIDIA Corporation
2012-06-04 18:23:03 ----RD---- C:\Users
2012-06-04 18:22:33 ----D---- C:\Windows\Help
2012-06-04 18:03:17 ----D---- C:\Windows\system32\Tasks
2012-06-03 12:24:01 ----D---- C:\Program Files\JDownloader
2012-06-01 21:04:27 ----RSD---- C:\Windows\Fonts
2012-06-01 15:22:21 ----D---- C:\Program Files\Java
2012-05-30 16:59:10 ----D---- C:\Users\Uživatel\AppData\Roaming\Adobe
2012-05-29 19:27:08 ----A---- C:\typhoon_assert.txt
2012-05-22 16:53:17 ----D---- C:\Program Files\Common Files\Steam
2012-05-22 08:59:29 ----D---- C:\Users\Uživatel\AppData\Roaming\gtk-2.0
2012-05-22 08:21:46 ----D---- C:\ProgramData\Adobe
2012-05-22 07:45:02 ----D---- C:\Program Files\Adobe
2012-05-22 07:44:06 ----D---- C:\Program Files\Common Files\Adobe
2012-05-22 07:39:20 ----D---- C:\Windows\winsxs
2012-05-21 23:59:32 ----D---- C:\Program Files\Microsoft Games
2012-05-20 18:56:47 ----D---- C:\Program Files\Microsoft Silverlight
2012-05-20 16:26:13 ----D---- C:\Users\Uživatel\AppData\Roaming\DarknessII

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 AlfaFF;AlfaFF File System mini-filter; C:\Windows\system32\Drivers\AlfaFF.sys [2011-02-16 43184]
R0 giveio;giveio; C:\Windows\system32\giveio.sys [1996-04-03 5248]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2007-09-30 308248]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2012-03-20 171064]
R0 SmartDefragDriver;SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [2010-11-26 15672]
R0 speedfan;speedfan; C:\Windows\system32\speedfan.sys [2011-03-18 25240]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2011-02-17 717296]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2011-11-28 34392]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2011-11-28 435032]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2011-11-28 314456]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2011-11-28 52952]
R1 TsLwWfF;WiFi Capture Driver; C:\Windows\system32\DRIVERS\TsLwWfF.sys [2012-03-26 22632]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2011-11-28 20568]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2011-11-28 55128]
R2 Int15;Int 15; \??\C:\Windows\System32\drivers\int15.sys [2007-01-26 69632]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672]
R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2007-10-18 8704]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 26176]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2007-11-01 985600]
R3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2007-11-01 208896]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2012-03-27 3204200]
R3 itecir;ITECIR Infrared Receiver; C:\Windows\system32\DRIVERS\itecir.sys [2007-12-18 54784]
R3 L1E;NDIS Miniport Driver for Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1E60x86.sys [2009-08-05 48640]
R3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LHidFilt.Sys [2011-09-02 41240]
R3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouFilt.Sys [2011-09-02 39192]
R3 NETwLv32; Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETwLv32.sys [2010-10-07 6639616]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2011-10-15 10327360]
R3 usbvideo;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016]
R3 vfs101x;vfs101x; C:\Windows\system32\drivers\vfs101x.sys [2008-02-15 40752]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2007-11-01 661504]
S1 MpKslcc401b61;MpKslcc401b61; C:\Windows\system32\drivers\MpKslcc401b61.sys []
S3 aipissyu;aipissyu; C:\Windows\system32\drivers\aipissyu.sys []
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-04-11 93696]
S3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-11 22528]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-21 92160]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2011-04-21 508416]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2009-06-17 30208]
S3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2007-03-30 79664]
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\drivers\btwavdt.sys [2007-02-27 81200]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2007-02-27 16432]
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 EagleNT;EagleNT; C:\Windows\system32\drivers\EagleNT.sys []
S3 EC168BDA;TVGo DVB-T02PRO; C:\Windows\system32\DRIVERS\EC168BDA.sys [2007-05-18 67968]
S3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2009-04-11 236544]
S3 injectDLL;injectDLL; C:\Windows\system32\drivers\injectDLL.sys []
S3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys [2008-03-13 80912]
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 NETw5v32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw5v32.sys [2008-11-17 3668480]
S3 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2012-03-20 74112]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmb.sys [2011-11-01 18176]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbo.sys [2011-11-01 23168]
S3 PcaSp60;Rawether NDIS 6.X SPR Protocol Driver; C:\Windows\system32\DRIVERS\PcaSp60.sys [2010-05-19 28672]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-11 148992]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2011-11-01 8192]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-21 35328]
S3 usbser;Nokia USB Serial Port Driver ; C:\Windows\system32\DRIVERS\usbser.sys [2009-04-11 27648]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2011-11-01 8192]
S3 WinRing0_1_2_0;WinRing0_1_2_0; \??\C:\Program Files\IObit\Game Booster 3\Driver\WinRing0.sys [2010-11-01 14416]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2009-04-11 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-01-03 63928]
R2 AdvancedSystemCareService5;Advanced SystemCare Service 5; C:\Program Files\IObit\Advanced SystemCare 5\ASCService.exe [2012-03-14 913752]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2011-11-28 44768]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 EvtEng;Intel® PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2008-10-16 860160]
R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [2012-02-28 1373576]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2007-10-24 358936]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2012-03-26 11552]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2011-10-15 1136448]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-10-15 2253120]
R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2012-05-02 75136]
R2 RegSrvc;Intel® PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2008-10-16 466944]
R2 vfsFPService;Validity Fingerprint Service; C:\Windows\system32\vfsFPService.exe [2008-02-15 595248]
R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2007-10-18 386560]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 DAUpdaterSvc;Dragon Age: Prameny - aktualizace obsahu; D:\games\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe [2009-07-26 25832]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe [2011-09-27 295192]
S3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2012-03-26 214952]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2011-11-30 718888]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2012-05-19 529232]
S3 SwitchBoard;SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 WPFFontCache_v0400;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118194
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Proces systém - kolísání

#8 Příspěvek od Rudy »

Stáhněte Avenger: http://forum.viry.cz/viewtopic.php?f=11&t=19832 , spusťte a do bílého okna zkopírujte:
Folders to delete:
C:\Program Files\Skype\Toolbars

Registry keys to delete:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
a klikněte na >Execute<. PC bude restartován.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Pyromania
Návštěvník
Návštěvník
Příspěvky: 7
Registrován: 13 čer 2012 20:06

Re: Proces systém - kolísání

#9 Příspěvek od Pyromania »

hotovo, dále jsem defragmentoval disk, projel to dvouma antivirama, poté advance system cleanerem a uniblue registry boostrem a pořád nic. Skoro bych řek že se to ještě zhoršilo. Dále sem ze zoufalosti zkoušel přeinstalovat OS .... (notebook acer) .... zkratka alt + F10 nefungovala (ano,v BIOsu to povoleno mám) ... takže nevím co si počít... Hry které by měl můj počítač zvládat nestíhají ani na nejmenší možné detaily. (respektivě stíhá... ale s málo FPS)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118194
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Proces systém - kolísání

#10 Příspěvek od Rudy »

Koukněte ještě do ovl. panely>system>hardware>správce zařízení>řadče IDE/ATA. Rozklikněte a na jednotlivých kanálech pravým myšítkem>vlastnosti>upřesnit nastavení zkontrolujte, zda máte nastaven DMA režim. Pokud ne, nastavte, nastavení uložte a restartujte PC.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Pyromania
Návštěvník
Návštěvník
Příspěvky: 7
Registrován: 13 čer 2012 20:06

Re: Proces systém - kolísání

#11 Příspěvek od Pyromania »

nene..tohle mám v pořádku :/

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118194
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Proces systém - kolísání

#12 Příspěvek od Rudy »

Co jste instaloval těsně před tím, než se problém objevil?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Pyromania
Návštěvník
Návštěvník
Příspěvky: 7
Registrován: 13 čer 2012 20:06

Re: Proces systém - kolísání

#13 Příspěvek od Pyromania »

Hmmmmmmm.... aktualizace pro TES: Skyrim, hru Battlefield: Bad Company 2 a nejnovější verzi Realteku.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118194
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Proces systém - kolísání

#14 Příspěvek od Rudy »

Zkuste odinstalovat. Jinak mne nenapadá nic, kde by mohl ještě být problém.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět