STDRT.exe

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz


Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Zpráva
Autor
Avatar uživatele
vyosek
VIP
VIP
Příspěvky: 56365
Registrován: 07 Lis 2006 15:24
Místo/Bydliště: Šalingrad - Brno

Re: STDRT.exe

#16 Příspěvek od vyosek »

:arrow: Ke spouste cracku a keygenu asi netreba nic dodavat ze :thumbsdown:

:arrow: Spustte znovu OTL
  • Pokud pouzivate Win Vista ci W7, kliknete na OTL pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do spodniho okenka Vlastni skenovani/opravy vlozte skript nize
  • Kód: Vybrat vše

    :otl
    SRV - [2011.08.08 22:03:20 | 003,542,616 | ---- | M] () [Auto | Running] -- c:\Program Files\Common Files\Akamai\netsession_win_2da1ebd.dll -- (Akamai)
    IE - HKU\S-1-5-21-2419579696-3991638777-3736419961-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://start.icq.com/
    IE - HKU\S-1-5-21-2419579696-3991638777-3736419961-1000\..\URLSearchHook: - Reg Error: Key error. File not found
    FF - prefs.js..browser.search.defaultenginename: "ICQ Search"
    FF - prefs.js..browser.search.selectedEngine: "ICQ Search"
    FF - prefs.js..browser.startup.homepage: "http://start.icq.com/"
    FF - prefs.js..keyword.URL: "http://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.1.9&q="
    FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
    [2011.03.28 20:40:28 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- C:\Users\uživatel\AppData\Roaming\Mozilla\Firefox\Profiles\n8cubmmw.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
    [2011.08.02 18:10:50 | 000,001,056 | ---- | M] () -- C:\Users\uživatel\AppData\Roaming\Mozilla\Firefox\Profiles\n8cubmmw.default\searchplugins\icqplugin.xml
    O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
    O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
    [2011.09.04 19:04:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy
    [2011.09.04 19:04:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Spybot - Search & Destroy
    [2011.09.04 19:04:29 | 000,000,000 | ---D | C] -- C:\Program Files\Spybot - Search & Destroy
    [2011.09.04 19:04:33 | 000,001,220 | ---- | C] () -- C:\Users\uživatel\Desktop\Spybot - Search & Destroy.lnk
    [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
    [6 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
    [1 C:\Windows\Installer\*.tmp files -> C:\Windows\Installer\*.tmp -> ]
    [1 C:\Windows\SoftwareDistribution\AuthCabs\7971f918-a847-4430-9279-4a52d1efe18d\*.tmp files -> C:\Windows\SoftwareDistribution\AuthCabs\7971f918-a847-4430-9279-4a52d1efe18d\*.tmp -> ]
    [1 C:\Windows\SoftwareDistribution\Download\dc5785e9c8b3c9af476ade166b57dd6e\*.tmp files -> C:\Windows\SoftwareDistribution\Download\dc5785e9c8b3c9af476ade166b57dd6e\*.tmp -> ]
    [1 C:\Windows\SoftwareDistribution\Download\f1172ec065789780f3e853c2a63ff94c\*.tmp files -> C:\Windows\SoftwareDistribution\Download\f1172ec065789780f3e853c2a63ff94c\*.tmp -> ]
    [3 C:\Windows\temp\*.tmp files -> C:\Windows\temp\*.tmp -> ]
    [2011.03.12 20:30:39 | 000,008,275 | RHS- | M] () -- \Downloads\DS2CRACKFIX-FLT_EPIDEMZ.NET.rar.torrent
    [2011.07.02 15:39:34 | 015,531,749 | ---- | M] () -- \Downloads\Fable III Crack & Update ONLY-SKIDROW.rar
    [2011.07.02 15:36:49 | 000,010,177 | RHS- | M] () -- \Downloads\Fable III Crack & Update ONLY-SKIDROW.rar.torrent
    [2011.05.15 20:19:02 | 4205,696,685 | ---- | M] () -- \Downloads\[PC GAME MULTI] - Gran Theft Auto San Andreas + Crack NoCD - (Perfect DVD Version) - (Eng-Ita-Deu-Fra-Esp) - (By G-ADLVR_R7.rar
    [2011.05.15 19:00:00 | 000,020,598 | RHS- | M] () -- \Downloads\[PC GAME MULTI] - Gran Theft Auto San Andreas + Crack NoCD - (Perfect DVD Version) - (Eng-Ita-Deu-Fra-Esp) - (By G-ADLVR_R7.rar.torrent
    [2011.06.26 13:11:37 | 000,005,561 | RHS- | M] () -- \Downloads\Alice.Madness.Returns.Crackfix-SKIDROW\Alice.Madness.Returns.Crackfix-SKIDROW.torrent
    [2011.04.25 14:27:41 | 000,002,745 | RHS- | M] () -- \Downloads\Portal.2.Crack.Fix-SKIDROW\Portal.2.Crack.Fix-SKIDROW.torrent
    [2011.05.23 15:23:17 | 038,445,769 | ---- | M] () -- \Downloads\software\Virtual DJ v7.0 PRO + Crack [ChattChitto RG]\Virtual DJ v7.0 PRO + Crack [ChattChitto RG].exe
    [2011.05.23 15:21:32 | 000,012,611 | RHS- | M] () -- \Downloads\software\Virtual DJ v7.0 PRO + Crack [ChattChitto RG]\Virtual DJ v7.0 PRO + Crack [ChattChitto RG].torrent
    [2010.09.22 00:49:32 | 000,013,312 | ---- | M] () -- \HRY\ZSZC SRO\crackloader.exe
    [2011.04.25 14:27:41 | 000,002,745 | ---- | M] () -- \Users\uživatel\AppData\Roaming\FlashGet\v3\dat\torrent\11864172_Portal_2_Crack_Fix-SKIDROW.6331819.TPB.torrent
    [2011.05.15 19:00:00 | 000,020,598 | ---- | M] () -- \Users\uživatel\AppData\Roaming\FlashGet\v3\dat\torrent\30189531_GTA_San_Andreas_full_game_pc___with_crack__.3649668.TPB.torrent
    [2011.03.12 20:30:39 | 000,008,275 | ---- | M] () -- \Users\uživatel\AppData\Roaming\FlashGet\v3\dat\torrent\31672664_Dead_Space_2_Crack_Fix_FTL.6136922.TPB.torrent
    [2011.02.07 20:04:28 | 000,032,981 | ---- | M] () -- \Users\uživatel\AppData\Roaming\FlashGet\v3\dat\torrent\42967948_Call_of_Duty_4_Keygen_and_Crack.3889893.TPB.torrent
    [2011.07.02 15:36:49 | 000,010,177 | ---- | M] () -- \Users\uživatel\AppData\Roaming\FlashGet\v3\dat\torrent\54539119_Fable.III.Crack._.Update.ONLY-SKIDROW.6403413.TPB.torrent
    [2011.05.23 15:21:32 | 000,012,611 | ---- | M] () -- \Users\uživatel\AppData\Roaming\FlashGet\v3\dat\torrent\6181180_Virtual_DJ_v7.0_PRO___Crack_[ChattChitto_RG].5888476.TPB.torrent
    [2011.06.26 13:11:37 | 000,005,561 | ---- | M] () -- \Users\uživatel\AppData\Roaming\FlashGet\v3\dat\torrent\6558172_Alice_Madness_Returns_Crackfix-SKIDROW.6478009.TPB.torrent
    [2011.06.26 13:11:37 | 000,005,561 | ---- | M] () -- \Users\uživatel\Downloads\Alice_Madness_Returns_Crackfix-SKIDROW.6478009.TPB.torrent
    [2011.08.11 17:24:59 | 000,006,389 | ---- | M] () -- \Users\uživatel\Downloads\Audio4Fun_AV_Voice_Changer_Diamond_7.0.29___Crack_[RH].5930251.TPB.torrent
    [2011.06.11 12:25:24 | 001,554,735 | ---- | M] () -- \Users\uživatel\Downloads\db_Bot_v1.3a + crack (1).rar
    [2011.06.10 13:46:49 | 001,554,735 | ---- | M] () -- \Users\uživatel\Downloads\db_Bot_v1.3a + crack.rar
    [2011.07.02 15:36:49 | 000,010,177 | ---- | M] () -- \Users\uživatel\Downloads\Fable.III.Crack._.Update.ONLY-SKIDROW.6403413.TPB.torrent
    [2011.05.15 19:00:00 | 000,020,598 | ---- | M] () -- \Users\uživatel\Downloads\GTA_San_Andreas_full_game_pc___with_crack__.3649668.TPB.torrent
    [2011.08.03 19:21:52 | 1005,787,049 | ---- | M] () -- \Users\uživatel\Downloads\multiplayer-crack-dlc.rar
    [2011.04.25 14:27:41 | 000,002,745 | ---- | M] () -- \Users\uživatel\Downloads\Portal_2_Crack_Fix-SKIDROW.6331819.TPB.torrent
    [2011.06.02 15:22:08 | 000,101,210 | ---- | M] () -- \Users\uživatel\Downloads\RORCRACK10A.ZIP
    [2011.05.23 15:21:32 | 000,012,611 | ---- | M] () -- \Users\uživatel\Downloads\Virtual_DJ_v7.0_PRO___Crack_[ChattChitto_RG].5888476.TPB.torrent
    [2011.01.30 19:13:23 | 000,012,246 | ---- | M] () -- \Users\uživatel\AppData\Roaming\FlashGet\v3\dat\torrent\29330418_Sony_Vegas_Movie_Studio_HD_Platinum_10.0.179___Keygen_[RH].5723041.TPB.torrent
    [2011.02.07 20:04:28 | 000,032,981 | ---- | M] () -- \Users\uživatel\AppData\Roaming\FlashGet\v3\dat\torrent\42967948_Call_of_Duty_4_Keygen_and_Crack.3889893.TPB.torrent
    
    :reg
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "AdobeAAMUpdater-1.0"=-
    "SwitchBoard"=-
    "SunJavaUpdateSched"=-
    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "DAEMON Tools Lite"=-
    "msnmsgr"=-
    "Steam"=-
    "Skype"=-
    
    :files
    c:\windows\system32\mrvcl32.exe
    C:\Windows\Temp\mrt389C.tmp\stdrt.exe
    C:\Program Files\Common Files\Akamai
    C:\Program Files\ICQ6Toolbar
    C:\Windows\Temp
    %windir%\system32\*.tmp.dll /s
    %windir%\system32\SET*.tmp /s
    %windir%\*.tmp
    
    :commands
    [RESETHOSTS]
    [EMPTYTEMP]
    [EMPTYFLASH]
  • Nasledne kliknete na Opravit
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Druzdak
Návštěvník
Návštěvník
Příspěvky: 43
Registrován: 22 Dub 2010 09:23

Re: STDRT.exe

#17 Příspěvek od Druzdak »

Máte pravdu máte pravdu.. smazal jsem 60 gb těch downloadů ^_^ stejně byly k ničemu.
Po startu už se nezapl, vypadá to že jste bůh :) Přikládám log.


All processes killed
========== OTL ==========
Service Akamai stopped successfully!
Service Akamai deleted successfully!
c:\Program Files\Common Files\Akamai\netsession_win_2da1ebd.dll moved successfully.
HKU\S-1-5-21-2419579696-3991638777-3736419961-1000\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
Registry value HKEY_USERS\S-1-5-21-2419579696-3991638777-3736419961-1000\Software\Microsoft\Internet Explorer\URLSearchHooks\\ deleted successfully.
Prefs.js: "ICQ Search" removed from browser.search.defaultenginename
Prefs.js: "ICQ Search" removed from browser.search.selectedEngine
Prefs.js: "http://start.icq.com/" removed from browser.startup.homepage
Prefs.js: "http://search.icq.com/search/afe_result ... r=1.1.9&q=" removed from keyword.URL
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@microsoft.com/GENUINE\ deleted successfully.
C:\Users\uživatel\AppData\Roaming\Mozilla\Firefox\Profiles\n8cubmmw.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\search_engine folder moved successfully.
C:\Users\uživatel\AppData\Roaming\Mozilla\Firefox\Profiles\n8cubmmw.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\META-INF folder moved successfully.
C:\Users\uživatel\AppData\Roaming\Mozilla\Firefox\Profiles\n8cubmmw.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\defaults\preferences folder moved successfully.
C:\Users\uživatel\AppData\Roaming\Mozilla\Firefox\Profiles\n8cubmmw.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\defaults folder moved successfully.
C:\Users\uživatel\AppData\Roaming\Mozilla\Firefox\Profiles\n8cubmmw.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\components folder moved successfully.
C:\Users\uživatel\AppData\Roaming\Mozilla\Firefox\Profiles\n8cubmmw.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\skin folder moved successfully.
C:\Users\uživatel\AppData\Roaming\Mozilla\Firefox\Profiles\n8cubmmw.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\tr folder moved successfully.
C:\Users\uživatel\AppData\Roaming\Mozilla\Firefox\Profiles\n8cubmmw.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\sk folder moved successfully.
C:\Users\uživatel\AppData\Roaming\Mozilla\Firefox\Profiles\n8cubmmw.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\ru folder moved successfully.
C:\Users\uživatel\AppData\Roaming\Mozilla\Firefox\Profiles\n8cubmmw.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\it folder moved successfully.
C:\Users\uživatel\AppData\Roaming\Mozilla\Firefox\Profiles\n8cubmmw.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\he folder moved successfully.
C:\Users\uživatel\AppData\Roaming\Mozilla\Firefox\Profiles\n8cubmmw.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\fr folder moved successfully.
C:\Users\uživatel\AppData\Roaming\Mozilla\Firefox\Profiles\n8cubmmw.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\es folder moved successfully.
C:\Users\uživatel\AppData\Roaming\Mozilla\Firefox\Profiles\n8cubmmw.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\en-US folder moved successfully.
C:\Users\uživatel\AppData\Roaming\Mozilla\Firefox\Profiles\n8cubmmw.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\de folder moved successfully.
C:\Users\uživatel\AppData\Roaming\Mozilla\Firefox\Profiles\n8cubmmw.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\cs folder moved successfully.
C:\Users\uživatel\AppData\Roaming\Mozilla\Firefox\Profiles\n8cubmmw.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\bg folder moved successfully.
C:\Users\uživatel\AppData\Roaming\Mozilla\Firefox\Profiles\n8cubmmw.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale folder moved successfully.
C:\Users\uživatel\AppData\Roaming\Mozilla\Firefox\Profiles\n8cubmmw.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\content\img folder moved successfully.
C:\Users\uživatel\AppData\Roaming\Mozilla\Firefox\Profiles\n8cubmmw.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\content folder moved successfully.
Folder move failed. C:\Users\uživatel\AppData\Roaming\Mozilla\Firefox\Profiles\n8cubmmw.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome scheduled to be moved on reboot.
Folder move failed. C:\Users\uživatel\AppData\Roaming\Mozilla\Firefox\Profiles\n8cubmmw.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07} scheduled to be moved on reboot.
C:\Users\uživatel\AppData\Roaming\Mozilla\Firefox\Profiles\n8cubmmw.default\searchplugins\icqplugin.xml moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Restrictions\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\VMApplet:/pagefile deleted successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy folder moved successfully.
C:\ProgramData\Spybot - Search & Destroy\Snapshots2 folder moved successfully.
C:\ProgramData\Spybot - Search & Destroy\Snapshots folder moved successfully.
C:\ProgramData\Spybot - Search & Destroy\Recovery folder moved successfully.
C:\ProgramData\Spybot - Search & Destroy\Logs folder moved successfully.
C:\ProgramData\Spybot - Search & Destroy\Excludes folder moved successfully.
C:\ProgramData\Spybot - Search & Destroy\Backups folder moved successfully.
C:\ProgramData\Spybot - Search & Destroy folder moved successfully.
C:\Program Files\Spybot - Search & Destroy\Updates folder moved successfully.
C:\Program Files\Spybot - Search & Destroy\Skins folder moved successfully.
C:\Program Files\Spybot - Search & Destroy\Plugins folder moved successfully.
C:\Program Files\Spybot - Search & Destroy\Languages folder moved successfully.
C:\Program Files\Spybot - Search & Destroy\Includes folder moved successfully.
C:\Program Files\Spybot - Search & Destroy\Help folder moved successfully.
C:\Program Files\Spybot - Search & Destroy\Dummies folder moved successfully.
C:\Program Files\Spybot - Search & Destroy folder moved successfully.
C:\Users\uživatel\Desktop\Spybot - Search & Destroy.lnk moved successfully.
C:\Windows\msdownld.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP409.tmp\Microsoft.VisualC.dll deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP409.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP5E64.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP8545.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAP8C69.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAPE496.tmp folder deleted successfully.
C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\ZAPEA6E.tmp folder deleted successfully.
C:\Windows\Installer\MSI1FF3.tmp deleted successfully.
C:\Windows\SoftwareDistribution\AuthCabs\7971f918-a847-4430-9279-4a52d1efe18d\wltDD2A.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\dc5785e9c8b3c9af476ade166b57dd6e\BIT964B.tmp deleted successfully.
C:\Windows\SoftwareDistribution\Download\f1172ec065789780f3e853c2a63ff94c\BIT9707.tmp deleted successfully.
C:\Windows\temp\Cab2857.tmp deleted successfully.
C:\Windows\temp\mrt7444.tmp\aviflt.ift deleted successfully.
C:\Windows\temp\mrt7444.tmp\bmpFlt.ift deleted successfully.
C:\Windows\temp\mrt7444.tmp\fliFlt.ift deleted successfully.
C:\Windows\temp\mrt7444.tmp\Get.mfx deleted successfully.
C:\Windows\temp\mrt7444.tmp\gifFlt.ift deleted successfully.
C:\Windows\temp\mrt7444.tmp\jpgFlt.ift deleted successfully.
C:\Windows\temp\mrt7444.tmp\KcActiveX.mfx deleted successfully.
C:\Windows\temp\mrt7444.tmp\kcedit.mfx deleted successfully.
C:\Windows\temp\mrt7444.tmp\kcfile.mfx deleted successfully.
C:\Windows\temp\mrt7444.tmp\kclist.mfx deleted successfully.
C:\Windows\temp\mrt7444.tmp\KcWebX.mfx deleted successfully.
C:\Windows\temp\mrt7444.tmp\mmfs2.dll deleted successfully.
C:\Windows\temp\mrt7444.tmp\pcxFlt.ift deleted successfully.
C:\Windows\temp\mrt7444.tmp\pngFlt.ift deleted successfully.
C:\Windows\temp\mrt7444.tmp\Registry2.mfx deleted successfully.
C:\Windows\temp\mrt7444.tmp\stdrt.exe deleted successfully.
C:\Windows\temp\mrt7444.tmp\tgaflt.ift deleted successfully.
C:\Windows\temp\mrt7444.tmp\volume.mfx deleted successfully.
C:\Windows\temp\mrt7444.tmp folder deleted successfully.
C:\Windows\temp\Tar2867.tmp deleted successfully.
File move failed. \Downloads\DS2CRACKFIX-FLT_EPIDEMZ.NET.rar.torrent scheduled to be moved on reboot.
File move failed. \Downloads\Fable III Crack & Update ONLY-SKIDROW.rar scheduled to be moved on reboot.
File move failed. \Downloads\Fable III Crack & Update ONLY-SKIDROW.rar.torrent scheduled to be moved on reboot.
File move failed. \Downloads\[PC GAME MULTI] - Gran Theft Auto San Andreas + Crack NoCD - (Perfect DVD Version) - (Eng-Ita-Deu-Fra-Esp) - (By G-ADLVR_R7.rar scheduled to be moved on reboot.
File move failed. \Downloads\[PC GAME MULTI] - Gran Theft Auto San Andreas + Crack NoCD - (Perfect DVD Version) - (Eng-Ita-Deu-Fra-Esp) - (By G-ADLVR_R7.rar.torrent scheduled to be moved on reboot.
File move failed. \Downloads\Alice.Madness.Returns.Crackfix-SKIDROW\Alice.Madness.Returns.Crackfix-SKIDROW.torrent scheduled to be moved on reboot.
File move failed. \Downloads\Portal.2.Crack.Fix-SKIDROW\Portal.2.Crack.Fix-SKIDROW.torrent scheduled to be moved on reboot.
File move failed. \Downloads\software\Virtual DJ v7.0 PRO + Crack [ChattChitto RG]\Virtual DJ v7.0 PRO + Crack [ChattChitto RG].exe scheduled to be moved on reboot.
File move failed. \Downloads\software\Virtual DJ v7.0 PRO + Crack [ChattChitto RG]\Virtual DJ v7.0 PRO + Crack [ChattChitto RG].torrent scheduled to be moved on reboot.
File move failed. \HRY\ZSZC SRO\crackloader.exe scheduled to be moved on reboot.
File move failed. \Users\uživatel\AppData\Roaming\FlashGet\v3\dat\torrent\11864172_Portal_2_Crack_Fix-SKIDROW.6331819.TPB.torrent scheduled to be moved on reboot.
File move failed. \Users\uživatel\AppData\Roaming\FlashGet\v3\dat\torrent\30189531_GTA_San_Andreas_full_game_pc___with_crack__.3649668.TPB.torrent scheduled to be moved on reboot.
File move failed. \Users\uživatel\AppData\Roaming\FlashGet\v3\dat\torrent\31672664_Dead_Space_2_Crack_Fix_FTL.6136922.TPB.torrent scheduled to be moved on reboot.
File move failed. \Users\uživatel\AppData\Roaming\FlashGet\v3\dat\torrent\42967948_Call_of_Duty_4_Keygen_and_Crack.3889893.TPB.torrent scheduled to be moved on reboot.
File move failed. \Users\uživatel\AppData\Roaming\FlashGet\v3\dat\torrent\54539119_Fable.III.Crack._.Update.ONLY-SKIDROW.6403413.TPB.torrent scheduled to be moved on reboot.
File move failed. \Users\uživatel\AppData\Roaming\FlashGet\v3\dat\torrent\6181180_Virtual_DJ_v7.0_PRO___Crack_[ChattChitto_RG].5888476.TPB.torrent scheduled to be moved on reboot.
File move failed. \Users\uživatel\AppData\Roaming\FlashGet\v3\dat\torrent\6558172_Alice_Madness_Returns_Crackfix-SKIDROW.6478009.TPB.torrent scheduled to be moved on reboot.
File move failed. \Users\uživatel\Downloads\Alice_Madness_Returns_Crackfix-SKIDROW.6478009.TPB.torrent scheduled to be moved on reboot.
File move failed. \Users\uživatel\Downloads\Audio4Fun_AV_Voice_Changer_Diamond_7.0.29___Crack_[RH].5930251.TPB.torrent scheduled to be moved on reboot.
File move failed. \Users\uživatel\Downloads\db_Bot_v1.3a + crack (1).rar scheduled to be moved on reboot.
File move failed. \Users\uživatel\Downloads\db_Bot_v1.3a + crack.rar scheduled to be moved on reboot.
File move failed. \Users\uživatel\Downloads\Fable.III.Crack._.Update.ONLY-SKIDROW.6403413.TPB.torrent scheduled to be moved on reboot.
File move failed. \Users\uživatel\Downloads\GTA_San_Andreas_full_game_pc___with_crack__.3649668.TPB.torrent scheduled to be moved on reboot.
File move failed. \Users\uživatel\Downloads\multiplayer-crack-dlc.rar scheduled to be moved on reboot.
File move failed. \Users\uživatel\Downloads\Portal_2_Crack_Fix-SKIDROW.6331819.TPB.torrent scheduled to be moved on reboot.
File move failed. \Users\uživatel\Downloads\RORCRACK10A.ZIP scheduled to be moved on reboot.
File move failed. \Users\uživatel\Downloads\Virtual_DJ_v7.0_PRO___Crack_[ChattChitto_RG].5888476.TPB.torrent scheduled to be moved on reboot.
File move failed. \Users\uživatel\AppData\Roaming\FlashGet\v3\dat\torrent\29330418_Sony_Vegas_Movie_Studio_HD_Platinum_10.0.179___Keygen_[RH].5723041.TPB.torrent scheduled to be moved on reboot.
File move failed. \Users\uživatel\AppData\Roaming\FlashGet\v3\dat\torrent\42967948_Call_of_Duty_4_Keygen_and_Crack.3889893.TPB.torrent scheduled to be moved on reboot.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\AdobeAAMUpdater-1.0 deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\SwitchBoard deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched deleted successfully.
Registry value HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite deleted successfully.
Registry value HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\msnmsgr deleted successfully.
Registry value HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\Steam not found.
Registry value HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\Skype deleted successfully.
========== FILES ==========
c:\windows\system32\mrvcl32.exe moved successfully.
File\Folder C:\Windows\Temp\mrt389C.tmp\stdrt.exe not found.
C:\Program Files\Common Files\Akamai\Logs\dump folder moved successfully.
C:\Program Files\Common Files\Akamai\Logs folder moved successfully.
C:\Program Files\Common Files\Akamai\Languages folder moved successfully.
C:\Program Files\Common Files\Akamai\Cache\download.joymax.com\property\silkroad folder moved successfully.
C:\Program Files\Common Files\Akamai\Cache\download.joymax.com\property folder moved successfully.
C:\Program Files\Common Files\Akamai\Cache\download.joymax.com folder moved successfully.
C:\Program Files\Common Files\Akamai\Cache\c\4 folder moved successfully.
C:\Program Files\Common Files\Akamai\Cache\c folder moved successfully.
C:\Program Files\Common Files\Akamai\Cache\a\6 folder moved successfully.
C:\Program Files\Common Files\Akamai\Cache\a folder moved successfully.
C:\Program Files\Common Files\Akamai\Cache\0\6 folder moved successfully.
C:\Program Files\Common Files\Akamai\Cache\0 folder moved successfully.
C:\Program Files\Common Files\Akamai\Cache folder moved successfully.
C:\Program Files\Common Files\Akamai folder moved successfully.
C:\Program Files\ICQ6Toolbar folder moved successfully.
Folder move failed. C:\Windows\temp\_avast_ scheduled to be moved on reboot.
C:\Windows\temp\Temporary Internet Files\Content.IE5\TNCNSZC0 folder moved successfully.
C:\Windows\temp\Temporary Internet Files\Content.IE5\S9YIQLCW folder moved successfully.
C:\Windows\temp\Temporary Internet Files\Content.IE5\O0PLP61T folder moved successfully.
C:\Windows\temp\Temporary Internet Files\Content.IE5\GNETBC4N folder moved successfully.
C:\Windows\temp\Temporary Internet Files\Content.IE5 folder moved successfully.
C:\Windows\temp\Temporary Internet Files folder moved successfully.
C:\Windows\temp\History\History.IE5 folder moved successfully.
C:\Windows\temp\History folder moved successfully.
C:\Windows\temp\Cookies folder moved successfully.
Folder move failed. C:\Windows\temp scheduled to be moved on reboot.
File/Folder C:\Windows\system32\*.tmp.dll not found.
File/Folder C:\Windows\system32\SET*.tmp not found.
File/Folder C:\Windows\*.tmp not found.
========== COMMANDS ==========
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes
->Flash cache emptied: 41620 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Public
->Temp folder emptied: 0 bytes

User: uživatel
->Temp folder emptied: 11553533 bytes
->Temporary Internet Files folder emptied: 5548093 bytes
->Java cache emptied: 2214545 bytes
->FireFox cache emptied: 45359950 bytes
->Google Chrome cache emptied: 369250977 bytes
->Flash cache emptied: 1729 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 3512 bytes
RecycleBin emptied: 33998680 bytes

Total Files Cleaned = 446,00 mb


[EMPTYFLASH]

User: All Users

User: Default
->Flash cache emptied: 0 bytes

User: Default User
->Flash cache emptied: 0 bytes

User: Public

User: uživatel
->Flash cache emptied: 0 bytes

Total Flash Files Cleaned = 0,00 mb


OTL by OldTimer - Version 3.2.27.0 log created on 09052011_170658

Files\Folders moved on Reboot...
C:\Users\uživatel\AppData\Roaming\Mozilla\Firefox\Profiles\n8cubmmw.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome folder moved successfully.
C:\Users\uživatel\AppData\Roaming\Mozilla\Firefox\Profiles\n8cubmmw.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07} folder moved successfully.
File move failed. \Downloads\DS2CRACKFIX-FLT_EPIDEMZ.NET.rar.torrent scheduled to be moved on reboot.
File move failed. \Downloads\Fable III Crack & Update ONLY-SKIDROW.rar scheduled to be moved on reboot.
File move failed. \Downloads\Fable III Crack & Update ONLY-SKIDROW.rar.torrent scheduled to be moved on reboot.
File move failed. \Downloads\[PC GAME MULTI] - Gran Theft Auto San Andreas + Crack NoCD - (Perfect DVD Version) - (Eng-Ita-Deu-Fra-Esp) - (By G-ADLVR_R7.rar scheduled to be moved on reboot.
File move failed. \Downloads\[PC GAME MULTI] - Gran Theft Auto San Andreas + Crack NoCD - (Perfect DVD Version) - (Eng-Ita-Deu-Fra-Esp) - (By G-ADLVR_R7.rar.torrent scheduled to be moved on reboot.
File move failed. \Downloads\Alice.Madness.Returns.Crackfix-SKIDROW\Alice.Madness.Returns.Crackfix-SKIDROW.torrent scheduled to be moved on reboot.
File move failed. \Downloads\Portal.2.Crack.Fix-SKIDROW\Portal.2.Crack.Fix-SKIDROW.torrent scheduled to be moved on reboot.
File move failed. \Downloads\software\Virtual DJ v7.0 PRO + Crack [ChattChitto RG]\Virtual DJ v7.0 PRO + Crack [ChattChitto RG].exe scheduled to be moved on reboot.
File move failed. \Downloads\software\Virtual DJ v7.0 PRO + Crack [ChattChitto RG]\Virtual DJ v7.0 PRO + Crack [ChattChitto RG].torrent scheduled to be moved on reboot.
File move failed. \HRY\ZSZC SRO\crackloader.exe scheduled to be moved on reboot.
File move failed. \Users\uživatel\AppData\Roaming\FlashGet\v3\dat\torrent\11864172_Portal_2_Crack_Fix-SKIDROW.6331819.TPB.torrent scheduled to be moved on reboot.
File move failed. \Users\uživatel\AppData\Roaming\FlashGet\v3\dat\torrent\30189531_GTA_San_Andreas_full_game_pc___with_crack__.3649668.TPB.torrent scheduled to be moved on reboot.
File move failed. \Users\uživatel\AppData\Roaming\FlashGet\v3\dat\torrent\31672664_Dead_Space_2_Crack_Fix_FTL.6136922.TPB.torrent scheduled to be moved on reboot.
File move failed. \Users\uživatel\AppData\Roaming\FlashGet\v3\dat\torrent\42967948_Call_of_Duty_4_Keygen_and_Crack.3889893.TPB.torrent scheduled to be moved on reboot.
File move failed. \Users\uživatel\AppData\Roaming\FlashGet\v3\dat\torrent\54539119_Fable.III.Crack._.Update.ONLY-SKIDROW.6403413.TPB.torrent scheduled to be moved on reboot.
File move failed. \Users\uživatel\AppData\Roaming\FlashGet\v3\dat\torrent\6181180_Virtual_DJ_v7.0_PRO___Crack_[ChattChitto_RG].5888476.TPB.torrent scheduled to be moved on reboot.
File move failed. \Users\uživatel\AppData\Roaming\FlashGet\v3\dat\torrent\6558172_Alice_Madness_Returns_Crackfix-SKIDROW.6478009.TPB.torrent scheduled to be moved on reboot.
File move failed. \Users\uživatel\Downloads\Alice_Madness_Returns_Crackfix-SKIDROW.6478009.TPB.torrent scheduled to be moved on reboot.
File move failed. \Users\uživatel\Downloads\Audio4Fun_AV_Voice_Changer_Diamond_7.0.29___Crack_[RH].5930251.TPB.torrent scheduled to be moved on reboot.
File move failed. \Users\uživatel\Downloads\db_Bot_v1.3a + crack (1).rar scheduled to be moved on reboot.
File move failed. \Users\uživatel\Downloads\db_Bot_v1.3a + crack.rar scheduled to be moved on reboot.
File move failed. \Users\uživatel\Downloads\Fable.III.Crack._.Update.ONLY-SKIDROW.6403413.TPB.torrent scheduled to be moved on reboot.
File move failed. \Users\uživatel\Downloads\GTA_San_Andreas_full_game_pc___with_crack__.3649668.TPB.torrent scheduled to be moved on reboot.
File move failed. \Users\uživatel\Downloads\multiplayer-crack-dlc.rar scheduled to be moved on reboot.
File move failed. \Users\uživatel\Downloads\Portal_2_Crack_Fix-SKIDROW.6331819.TPB.torrent scheduled to be moved on reboot.
File move failed. \Users\uživatel\Downloads\RORCRACK10A.ZIP scheduled to be moved on reboot.
File move failed. \Users\uživatel\Downloads\Virtual_DJ_v7.0_PRO___Crack_[ChattChitto_RG].5888476.TPB.torrent scheduled to be moved on reboot.
File move failed. \Users\uživatel\AppData\Roaming\FlashGet\v3\dat\torrent\29330418_Sony_Vegas_Movie_Studio_HD_Platinum_10.0.179___Keygen_[RH].5723041.TPB.torrent scheduled to be moved on reboot.
Folder move failed. C:\Windows\temp\_avast_ scheduled to be moved on reboot.
Folder move failed. C:\Windows\temp\_avast_ scheduled to be moved on reboot.
Folder move failed. C:\Windows\temp scheduled to be moved on reboot.
File move failed. C:\Windows\temp\_avast_\Webshlock.txt scheduled to be moved on reboot.

Registry entries deleted on Reboot...

Avatar uživatele
vyosek
VIP
VIP
Příspěvky: 56365
Registrován: 07 Lis 2006 15:24
Místo/Bydliště: Šalingrad - Brno

Re: STDRT.exe

#18 Příspěvek od vyosek »

:arrow: OTC http://oldtimer.geekstogo.com/OTC.exe
  • Stahnete a spustte
  • Kliknete na CleanUp a potvrdte YES
  • Program uklidi a restartuje PC

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stahnete a spustte
  • Kliknete na Start a potvrdte OK
  • Program uklidi a restartuje pc
  • Po pouziti utilitu smazte
:arrow: Stahnete Ccleaner (viz muj podpis)
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: Doporucuji provest defragmentaci disku
  • Nejjednodussi (ale nejmene ucinny) zpusob je pomoci utility ve windowsech
    • Kliknete na Tento pocitac, dale na disk kliknete pravym tlacitkem, vyberte Vlastnosti
    • prepnete se do zalozky Nastroje
    • Nyni vidite pomucky Defragmentace - spustte ji kliknutim na Defragmentovat
    • Toto provedte se vsemi disky
  • Dalsi moznosti (a mnou doporucenou) je pres programek Defraggler http://www.stahuj.centrum.cz/utility_a_ ... efraggler/
    • Program stahnete, nainstalujte (dejte fajfku pryc u yahoo toolbaru) a spustte
    • Kliknete na Analyzovat
    • Pokud je ve sloupci Fragmentováno vice jak 5%, doporucuji provest defragmentaci (klik na Defragmentovat)
    • Postup provedte se vsemi disky
  • Posledni moznost je pres jednoduchy programek JKDefrag http://www.stahuj.centrum.cz/utility_a_ ... /jkdefrag/
    • Vyhodou programku je, ze se neinstaluje
    • Staci tedy jen stahnout dle verze vaseho OS a rozbalit
    • Nasledne spustit pomoci souboru JKDefrag pripadne JKDefrag64
    • Probehne analyza disku a nasledne i defragmentace
:arrow: Dejte novy log z RSIT a napiste co PC
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Druzdak
Návštěvník
Návštěvník
Příspěvky: 43
Registrován: 22 Dub 2010 09:23

Re: STDRT.exe

#19 Příspěvek od Druzdak »

Než toto všechno udělám mám 2 otázky. Je defragmentace nutná? A budu se nějak zbavovat ComboFixu? Díky :)

Avatar uživatele
vyosek
VIP
VIP
Příspěvky: 56365
Registrován: 07 Lis 2006 15:24
Místo/Bydliště: Šalingrad - Brno

Re: STDRT.exe

#20 Příspěvek od vyosek »

:arrow: Na CF jsem zapomnel, pardon :oops:

:arrow: Odinstalujte Combofix
  • Prejmenujte ComboFix na Uninstall
  • Spustte jej
  • Tohle smaze Combofix a jeho slozky
:arrow: T-Cleaner http://vyosek.ic.cz/pro_usery/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: Defragmentaci doporucuji, hodne muze pomoci rychlsoti PC
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Druzdak
Návštěvník
Návštěvník
Příspěvky: 43
Registrován: 22 Dub 2010 09:23

Re: STDRT.exe

#21 Příspěvek od Druzdak »

Vůbec se neomlouvejte :) jste můj bůh :D navíc prográmek OTC mě Combofixu už zbavil :) PC už se chová jako dřív a provádím vámi doporučenou defragmentaci (fragmentace 26%) RSIT dal 2 logy : info.txt a log.txt přikládám jen log kdyby byl info potřeba jen napište

Logfile of random's system information tool 1.09 (written by random/random)
Run by uživatel at 2011-09-05 19:32:30
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 803 GB (84%) free of 954 GB
Total RAM: 3319 MB (53% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:32:44, on 5.9.2011
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v8.00 (8.00.7601.17514)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\explorer.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Users\uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\rundll32.exe
C:\Users\uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\Defraggler\Defraggler.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\uživatel\Downloads\RSIT.exe
C:\Program Files\trend micro\uživatel.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: FlashGetBHO - {b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0} - C:\Users\uživatel\AppData\Roaming\FlashGetBHO\FlashGetBHO3.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O4 - HKCU\..\Run: [Aim] "C:\Program Files\AIM\aim.exe" /d locale=en-US
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - Startup: OpenOffice.org 3.3.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O4 - Global Startup: LOLRecorder.lnk = C:\Program Files\LOLReplay\LOLRecorder.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: Download all by FlashGet3 - C:\Users\uživatel\AppData\Roaming\FlashGetBHO\GetAllUrl.htm
O8 - Extra context menu item: Download by FlashGet3 - C:\Users\uživatel\AppData\Roaming\FlashGetBHO\GetUrl.htm
O9 - Extra button: ICQ7.4 - {73C6DCFB-B606-47F3-BDFA-9A4FBF931E37} - C:\Program Files\ICQ7.4\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.4 - {73C6DCFB-B606-47F3-BDFA-9A4FBF931E37} - C:\Program Files\ICQ7.4\ICQ.exe
O9 - Extra button: Click to call with Skype - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Click to call with Skype - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O15 - Trusted Zone: http://software.kuaiche.com
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/pub/s ... wflash.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\Windows\system32\GameMon.des.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TeamViewer 6 (TeamViewer6) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe

--
End of file - 4952 bytes

=========Mozilla firefox=========

ProfilePath - C:\Users\uživatel\AppData\Roaming\Mozilla\Firefox\Profiles\n8cubmmw.default

prefs.js - "browser.startup.homepage" - ""
prefs.js - "extensions.enabledItems" - "{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23, {800b5000-a755-47e1-992b-48a1c1357f07}:1.1.9, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}:6.0.26, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.13"

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files\Google\Picasa3\npPicasa3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll

C:\Program Files\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}

C:\Program Files\Mozilla Firefox\components\
browser.xpt
browserdirprovider.dll
brwsrcmp.dll
components.list
FeedConverter.js
FeedProcessor.js
FeedWriter.js
fuelApplication.js
GPSDGeolocationProvider.js
jsconsole-clhandler.js
NetworkGeolocationProvider.js
nsAddonRepository.js
nsBadCertHandler.js
nsBlocklistService.js
nsBrowserContentHandler.js
nsBrowserGlue.js
nsContentDispatchChooser.js
nsContentPrefService.js
nsDefaultCLH.js
nsDownloadManagerUI.js
nsExtensionManager.js
nsFormAutoComplete.js
nsHandlerService.js
nsHelperAppDlg.js
nsINIProcessor.js
nsLivemarkService.js
nsLoginInfo.js
nsLoginManager.js
nsLoginManagerPrompter.js
nsMicrosummaryService.js
nsPlacesAutoComplete.js
nsPlacesDBFlush.js
nsPlacesTransactionsService.js
nsPrivateBrowsingService.js
nsProxyAutoConfig.js
nsSafebrowsingApplication.js
nsSearchService.js
nsSearchSuggestions.js
nsSessionStartup.js
nsSessionStore.js
nsSetDefaultBrowser.js
nsSidebar.js
nsTaggingService.js
nsTryToClose.js
nsUpdateService.js
nsUpdateServiceStub.js
nsUpdateTimerManager.js
nsUrlClassifierLib.js
nsUrlClassifierListManager.js
nsURLFormatter.js
nsWebHandlerApp.js
pluginGlue.js
storage-Legacy.js
storage-mozStorage.js
txEXSLTRegExFunctions.js
WebContentConverter.js

C:\Program Files\Mozilla Firefox\plugins\
np-mswmp.dll
npdeployJava1.dll
npdnu.dll
npdnu.xpt
npdnupdater2.dll
npdnupdater2.xpt
npnul32.dll
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
jyxo-cz.xml
mall-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-08-16 3942048]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0}]
FlashGetBHO - C:\Users\uživatel\AppData\Roaming\FlashGetBHO\FlashGetBHO3.dll [2009-12-22 157232]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-07-14 42272]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Aim"=C:\Program Files\AIM\aim.exe [2011-01-05 4321112]
"SUPERAntiSpyware"=C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2011-08-12 4603264]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
LOLRecorder.lnk - C:\Program Files\LOLReplay\LOLRecorder.exe

C:\Users\uživatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
OpenOffice.org 3.3.lnk - C:\Program Files\OpenOffice.org 3\program\quickstart.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL [2011-05-04 551296]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2010-11-20 229376]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2011-07-19 113024]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files\FlashGet Network\FlashGet 3\FlashGet3.exe"="C:\Program Files\FlashGet Network\FlashGet 3\FlashGet3.exe:*:Enabled:Flashget3"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"msacm.divxa32"=msaud32_divx.acm
"VIDC.XFR1"=xfcodec.dll
"msacm.siren"=sirenacm.dll
"msacm.vorbis"=vorbis.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2011-09-05 19:32:30 ----D---- C:\rsit
2011-09-05 19:30:56 ----D---- C:\Program Files\Defraggler
2011-09-05 15:35:07 ----D---- C:\Windows\temp
2011-09-05 15:34:40 ----SHD---- C:\$RECYCLE.BIN
2011-09-04 21:09:32 ----D---- C:\Config.Msi
2011-09-04 20:56:02 ----D---- C:\UPM
2011-09-04 20:40:12 ----D---- C:\Users\uživatel\AppData\Roaming\SUPERAntiSpyware.com
2011-09-04 20:39:49 ----D---- C:\ProgramData\SUPERAntiSpyware.com
2011-09-04 20:39:49 ----D---- C:\Program Files\SUPERAntiSpyware
2011-09-04 14:53:00 ----D---- C:\Qoobox
2011-09-04 01:35:01 ----D---- C:\Program Files\trend micro
2011-08-29 17:10:49 ----D---- C:\Users\uživatel\AppData\Roaming\Screaming Bee
2011-08-29 17:10:10 ----D---- C:\ProgramData\Screaming Bee
2011-08-29 01:37:01 ----D---- C:\Program Files\Heroes of Newerth
2011-08-27 18:32:55 ----A---- C:\Windows\system32\tzres.dll
2011-08-13 01:02:53 ----A---- C:\Windows\War3Unin.pif
2011-08-13 01:02:53 ----A---- C:\Windows\War3Unin.exe
2011-08-13 01:02:53 ----A---- C:\Windows\War3Unin.dat
2011-08-10 19:55:54 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2011-08-10 19:55:53 ----A---- C:\Windows\system32\ntoskrnl.exe
2011-08-10 19:55:52 ----A---- C:\Windows\system32\xmllite.dll
2011-08-10 19:55:52 ----A---- C:\Windows\system32\ntkrnlpa.exe
2011-08-10 19:55:47 ----A---- C:\Windows\system32\drivers\tcpip.sys
2011-08-10 19:55:42 ----A---- C:\Windows\system32\iertutil.dll
2011-08-10 19:55:41 ----A---- C:\Windows\system32\mshtml.dll
2011-08-10 19:55:41 ----A---- C:\Windows\system32\ieframe.dll
2011-08-10 19:55:40 ----A---- C:\Windows\system32\wininet.dll
2011-08-10 19:55:40 ----A---- C:\Windows\system32\urlmon.dll
2011-08-10 19:55:40 ----A---- C:\Windows\system32\msfeeds.dll
2011-08-10 19:55:39 ----A---- C:\Windows\system32\url.dll
2011-08-10 19:55:39 ----A---- C:\Windows\system32\mshtmled.dll
2011-08-10 19:55:39 ----A---- C:\Windows\system32\ieui.dll
2011-08-10 19:55:38 ----A---- C:\Windows\system32\jsproxy.dll
2011-08-10 19:55:35 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2011-08-10 19:55:35 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2011-08-10 19:55:35 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2011-08-10 19:55:35 ----A---- C:\Windows\system32\winsrv.dll
2011-08-10 19:55:35 ----A---- C:\Windows\system32\KernelBase.dll
2011-08-10 19:55:35 ----A---- C:\Windows\system32\kernel32.dll
2011-08-10 19:55:35 ----A---- C:\Windows\system32\conhost.exe
2011-08-10 19:55:34 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2011-08-10 19:55:34 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2011-08-10 19:55:34 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2011-08-10 19:55:34 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2011-08-10 19:55:34 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2011-08-10 19:55:34 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2011-08-10 19:55:34 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2011-08-10 19:55:34 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2011-08-10 19:55:34 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2011-08-10 19:55:34 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2011-08-10 19:55:34 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2011-08-10 19:55:34 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2011-08-10 19:55:34 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2011-08-10 19:55:34 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2011-08-10 19:55:34 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2011-08-10 19:55:34 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2011-08-10 19:55:34 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2011-08-10 19:55:34 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2011-08-10 19:55:34 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2011-08-10 19:55:34 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2011-08-10 19:55:34 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2011-08-10 19:55:34 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2011-08-10 19:55:33 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2011-08-10 19:55:33 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2011-08-10 19:55:33 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2011-08-10 19:55:32 ----A---- C:\Windows\system32\odbctrac.dll
2011-08-10 19:55:32 ----A---- C:\Windows\system32\odbcjt32.dll
2011-08-10 19:55:32 ----A---- C:\Windows\system32\odbccu32.dll
2011-08-10 19:55:32 ----A---- C:\Windows\system32\odbccr32.dll
2011-08-10 19:55:32 ----A---- C:\Windows\system32\odbccp32.dll
2011-08-09 08:06:48 ----D---- C:\Users\uživatel\AppData\Roaming\SGTY
2011-08-09 08:01:36 ----D---- C:\Users\uživatel\AppData\Roaming\Realm of the Titans
2011-08-09 08:00:25 ----D---- C:\AeriaGames
2011-08-08 19:54:37 ----A---- C:\Users\uživatel\AppData\Roaming\room_v3.dat
2011-08-08 19:52:32 ----D---- C:\Program Files\Garena
2011-08-07 22:37:46 ----D---- C:\Users\uživatel\AppData\Roaming\Rovio

======List of files/folders modified in the last 1 month======

2011-09-05 19:30:56 ----RD---- C:\Program Files
2011-09-05 19:29:47 ----D---- C:\Windows\Prefetch
2011-09-05 19:29:32 ----D---- C:\Windows
2011-09-05 19:27:08 ----D---- C:\Users\uživatel\AppData\Roaming\Winamp
2011-09-05 19:27:08 ----D---- C:\Users\uživatel\AppData\Roaming\Skype
2011-09-05 19:23:45 ----D---- C:\Windows\system32\config
2011-09-05 19:22:18 ----D---- C:\ProgramData\PMB Files
2011-09-05 17:13:19 ----D---- C:\Downloads
2011-09-05 17:07:16 ----D---- C:\Windows\system32\drivers\etc
2011-09-05 17:07:11 ----D---- C:\Program Files\Common Files
2011-09-05 17:07:10 ----D---- C:\Windows\System32
2011-09-05 17:07:09 ----SHD---- C:\Windows\Installer
2011-09-05 17:07:07 ----D---- C:\ProgramData
2011-09-05 15:57:09 ----SHD---- C:\System Volume Information
2011-09-05 15:35:08 ----D---- C:\Windows\system32\drivers
2011-09-05 15:33:32 ----A---- C:\Windows\system.ini
2011-09-05 15:31:45 ----D---- C:\Windows\AppPatch
2011-09-04 21:34:31 ----D---- C:\Program Files (x86)
2011-09-04 21:29:07 ----D---- C:\Windows\system32\catroot2
2011-09-04 15:03:26 ----D---- C:\Windows\Tasks
2011-09-04 15:03:26 ----D---- C:\Windows\system32\Tasks
2011-09-04 01:32:18 ----D---- C:\Windows\Logs
2011-09-04 01:32:18 ----D---- C:\Windows\debug
2011-09-03 09:02:08 ----RSD---- C:\Windows\assembly
2011-09-03 09:02:08 ----D---- C:\Windows\Microsoft.NET
2011-09-01 22:12:14 ----D---- C:\Windows\inf
2011-09-01 22:12:14 ----A---- C:\Windows\system32\PerfStringBackup.INI
2011-09-01 17:10:37 ----D---- C:\Windows\system32\NDF
2011-09-01 16:12:15 ----D---- C:\Users\uživatel\AppData\Roaming\BITS
2011-09-01 13:46:18 ----SD---- C:\Users\uživatel\AppData\Roaming\Microsoft
2011-09-01 13:46:18 ----SD---- C:\ProgramData\Microsoft
2011-09-01 12:57:01 ----D---- C:\Program Files\Image-Line
2011-08-31 20:24:58 ----D---- C:\Program Files\Silkroad
2011-08-30 18:10:26 ----D---- C:\Windows\rescache
2011-08-29 17:10:22 ----D---- C:\Windows\system32\catroot
2011-08-29 17:10:20 ----D---- C:\Windows\system32\DriverStore
2011-08-28 02:01:50 ----D---- C:\Windows\winsxs
2011-08-28 02:01:40 ----D---- C:\Windows\system32\cs-CZ
2011-08-27 16:53:28 ----RD---- C:\Program Files\Skype
2011-08-27 16:53:24 ----D---- C:\ProgramData\Skype
2011-08-13 01:00:48 ----D---- C:\HRY
2011-08-11 08:18:14 ----D---- C:\Windows\system32\migration
2011-08-11 08:18:14 ----D---- C:\Program Files\Internet Explorer
2011-08-11 00:37:50 ----A---- C:\Windows\system32\MRT.exe
2011-08-09 08:01:33 ----D---- C:\Windows\system32\directx
2011-08-08 18:28:41 ----A---- C:\Windows\system32\PnkBstrB.exe
2011-08-07 22:39:44 ----D---- C:\Program Files\NVIDIA Corporation
2011-08-07 22:39:44 ----D---- C:\Program Files\Common Files\Wise Installation Wizard

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 TPkd;TPkd; C:\Windows\system32\drivers\TPkd.sys [2009-12-23 86016]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2011-07-04 25432]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2011-07-04 441176]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2011-07-04 309848]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2011-07-04 43608]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2011-01-23 218688]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [2011-07-22 12880]
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [2011-07-12 67664]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2011-07-04 19544]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2011-07-04 54104]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2010-09-07 3187816]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2009-03-01 139776]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 EagleNT;EagleNT; \??\C:\Windows\system32\drivers\EagleNT.sys []
S3 EagleXNt;EagleXNt; \??\C:\Windows\system32\drivers\EagleXNt.sys []
S3 GGSAFERDriver;GGSAFER Driver; \??\C:\Program Files\Garena\safedrv.sys []
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 SCREAMINGBDRIVER;Screaming Bee Audio; C:\Windows\system32\drivers\ScreamingBAudio.sys [2010-07-01 34896]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
S3 WinUsb;Ovladač WinUSB; C:\Windows\system32\drivers\WinUSB.sys [2010-11-20 35968]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [2011-08-12 116608]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2011-07-04 42184]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2011-05-07 75136]
R2 TeamViewer6;TeamViewer 6; C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe [2011-01-27 2253688]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 1710464]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2010-08-08 129640]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-02-08 136120]
S3 npggsvc;nProtect GameGuard Service; C:\Windows\system32\GameMon.des [2011-04-24 4303928]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 SwitchBoard;SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-12-31 1343400]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

Avatar uživatele
vyosek
VIP
VIP
Příspěvky: 56365
Registrován: 07 Lis 2006 15:24
Místo/Bydliště: Šalingrad - Brno

Re: STDRT.exe

#22 Příspěvek od vyosek »

Log jiz vypada OK :wink:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Druzdak
Návštěvník
Návštěvník
Příspěvky: 43
Registrován: 22 Dub 2010 09:23

Re: STDRT.exe

#23 Příspěvek od Druzdak »

Moc vám děkuju za pomoc, jste prostě nejlepší ;) obdivuju že se v něčem takovém vyznáte :) přeju pěkný zbytek dne a mnoho úspěchů.

Avatar uživatele
vyosek
VIP
VIP
Příspěvky: 56365
Registrován: 07 Lis 2006 15:24
Místo/Bydliště: Šalingrad - Brno

Re: STDRT.exe

#24 Příspěvek od vyosek »

Nemate zac, rad jsem pomohl :worship: Zase nekdy Obrázek


A na rozloucenou Vam zahraje nase kapela :guitar: :150: :151: :152: :153: :154: :196:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Monty007
Návštěvník
Návštěvník
Příspěvky: 2
Registrován: 19 Zář 2011 21:56

Re: STDRT.exe

#25 Příspěvek od Monty007 »

Dobrý den,
mohli byste, prosím, uvést nějaké univerzální řešení? Mám stejný problém... ode dneška je počítač vytížený na 100%, stahuje o sto šest. Kamarád mi pomohl najít tento program stdrt.exe v seznamu úloh a zabít ho, takže jsem teď byl schopný aspoň otevřít prohlížeč, ale tuším, že po restartu to bude to samé. Zkusil mi i nainstalovat nějaký program tady od vás... ten SystemLook s tím příkazem. Jestli jsme to z toho logu dobře pochopili, tak je tím zamořený celý počítač. Ale nevím, nerozumím tomu, jen se toho chci zbavit. Prosím, poradíte někdo, jak na to?
Děkuji

S pozdravem

Monty

Avatar uživatele
vyosek
VIP
VIP
Příspěvky: 56365
Registrován: 07 Lis 2006 15:24
Místo/Bydliště: Šalingrad - Brno

Re: STDRT.exe

#26 Příspěvek od vyosek »

Zdravim Monty007 a vitam vas u nas :welcome:

:arrow: Prectete si prosim pravidla fora

:arrow: Zalozte si sve nove tema a do predmetu dejte "pro vyosek", ja se toho hned ujmu. vlozte mi tam log z RSIT http://www.viry.cz/forum/viewtopic.php?f=13&t=105895 a i ten ze SystemLooku

:arrow: Tohle tema je ukonceno a jen by se nam to tu pletlo, proto po vas chci nove tema :)

Dekuji za pochopeni :|

Zde :closed:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Zamčeno