Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu logu- spomalenie PC

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Sindy
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 20 lis 2011 22:54

Prosím o kontrolu logu- spomalenie PC

#1 Příspěvek od Sindy »

Logfile of random's system information tool 1.09 (written by random/random)
Run by Maros at 2011-11-20 22:57:39
Systém Microsoft Windows XP Professional Service Pack 3, v.3311
System drive C: has 65 GB (65%) free of 100 GB
Total RAM: 1790 MB (48% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:57:50, on 20.11.2011
Platform: Windows XP SP3, v.3311 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\QipGuard\QipGuard.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\WINDOWS\RTHDCPL.EXE
D:\Winamp\winampa.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\DivX\DivX Update\DivXUpdate.exe
C:\WINDOWS\tsnp325.exe
C:\WINDOWS\vsnp325.exe
C:\Program Files\Belkin\F5D7050v3\Belkinwcui.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Documents and Settings\Maros\Application Data\QipGuard\QipGuard.exe
C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Update\1.3.21.79\GoogleCrashHandler.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Program Files\QIP 2012\qip.exe
C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Maros\Desktop\RSIT.exe
C:\Program Files\trend micro\Maros.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.qip.ru/ie
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.qip.ru
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://qip.ru
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.qip.ru/ie
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 10.17.0.2:8080
R3 - URLSearchHook: QIPBHO Class - {95289393-33EA-4F8D-B952-483415B9C955} - C:\Documents and Settings\Maros\Application Data\Microsoft\Internet Explorer\qipsearchbar.dll
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
O2 - BHO: FastestTube BHO - {3E532CE8-C6D9-4A10-8ACE-4348C96E8B6A} - C:\Program Files\FastestTube\2.0.0\WombatBHO.dll
O2 - BHO: Use the DivX Plus Web Player to watch web videos with less interruptions and smoother playback on supported sites - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
O2 - BHO: QIPBHO - {95289393-33EA-4F8D-B952-483415B9C955} - C:\Documents and Settings\Maros\Application Data\Microsoft\Internet Explorer\qipsearchbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [WinampAgent] D:\Winamp\winampa.exe
O4 - HKLM\..\Run: [amd_dc_opt] C:\Program Files\AMD\Dual-Core Optimizer\amd_dc_opt.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "D:\adobe\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [DivX Download Manager] "C:\Program Files\DivX\DivX Plus Web Player\DDmService.exe" start
O4 - HKLM\..\Run: [tsnp325] C:\WINDOWS\tsnp325.exe
O4 - HKLM\..\Run: [snp325] C:\WINDOWS\vsnp325.exe
O4 - HKLM\..\Run: [F5D7050v3] C:\Program Files\Belkin\F5D7050v3\Belkinwcui.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [QIP Internet Guardian] C:\Documents and Settings\Maros\Application Data\QipGuard\QipGuard.exe /p
O4 - HKCU\..\Run: [Infium] "C:\Program Files\QIP 2012\qip.exe" /autorun
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: ICQ7.1 - {71BFC818-0CED-42D6-9C87-5142918957EE} - D:\icq\ICQ7.1\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.1 - {71BFC818-0CED-42D6-9C87-5142918957EE} - D:\icq\ICQ7.1\ICQ.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0D6709DD-4ED8-40CA-B459-2757AEEF7BEE} (Dldrv2 Control) - http://download.gigabyte.com.tw/object/Dldrv.ocx
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupda ... 4187782765
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microso ... 4249062578
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: QipGuard - QIP.ru - C:\Program Files\QipGuard\QipGuard.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O24 - Desktop Component 0: (no name) - file:///C:/DOCUME~1/Maros/LOCALS~1/Temp/msohtmlclip1/01/clip_image002.jpg

--
End of file - 9819 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-789336058-2049760794-839522115-1003Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-789336058-2049760794-839522115-1003UA.job
C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-789336058-2049760794-839522115-1003.job
C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-789336058-2049760794-839522115-1003.job
C:\WINDOWS\tasks\Updater.job

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\Maros\Application Data\Mozilla\Firefox\Profiles\ccubllh0.default

prefs.js - "browser.startup.homepage" - "http://qip.ru"
prefs.js - "extensions.enabledItems" - "jqs@sun.com:1.0, {23fcfd51-4958-4f00-80a3-ae97e717ed8b}:2.1.0.900, {6904342A-8307-11DF-A508-4AE2DFD72085}:2.1.0.900, {6C8B07BF-0F6D-4EA4-B96F-FF1CCBAAE553}:1.2.8, {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}:6.0.29, {32a1fd71-835e-4b11-8e54-886fda0b4c89}:1.2.1, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.20"
prefs.js - "keyword.URL" - "http://search.qip.ru/search?from=FF&query="

"{23fcfd51-4958-4f00-80a3-ae97e717ed8b}"=C:\Program Files\DivX\DivX Plus Web Player\firefox\html5video
"{6904342A-8307-11DF-A508-4AE2DFD72085}"=C:\Program Files\DivX\DivX Plus Web Player\firefox\wpa
"jqs@sun.com"=C:\Program Files\Java\jre6\lib\deploy\jqs\ff


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0]
"Description"=DivX Plus Web Player
"Path"=C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX OVS Helper,version=1.0.0]
"Description"=DivX OVS Helper Plug-in
"Path"=C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=1.1.5]
"Description"=VLC Multimedia Plugin
"Path"=D:\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=D:\adobe\Reader\AIR\nppdf32.dll

D:\mozilla\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}

D:\mozilla\components\
browser.xpt
browserdirprovider.dll
brwsrcmp.dll
components.list
FeedConverter.js
FeedProcessor.js
FeedWriter.js
fuelApplication.js
GPSDGeolocationProvider.js
jsconsole-clhandler.js
NetworkGeolocationProvider.js
nsAddonRepository.js
nsBadCertHandler.js
nsBlocklistService.js
nsBrowserContentHandler.js
nsBrowserGlue.js
nsContentDispatchChooser.js
nsContentPrefService.js
nsDefaultCLH.js
nsDownloadManagerUI.js
nsExtensionManager.js
nsFormAutoComplete.js
nsHandlerService.js
nsHelperAppDlg.js
nsINIProcessor.js
nsLivemarkService.js
nsLoginInfo.js
nsLoginManager.js
nsLoginManagerPrompter.js
nsMicrosummaryService.js
nsPlacesAutoComplete.js
nsPlacesDBFlush.js
nsPlacesTransactionsService.js
nsPrivateBrowsingService.js
nsProxyAutoConfig.js
nsSafebrowsingApplication.js
nsSearchService.js
nsSearchSuggestions.js
nsSessionStartup.js
nsSessionStore.js
nsSetDefaultBrowser.js
nsSidebar.js
nsTaggingService.js
nsTryToClose.js
nsUpdateService.js
nsUpdateServiceStub.js
nsUpdateTimerManager.js
nsUrlClassifierLib.js
nsUrlClassifierListManager.js
nsURLFormatter.js
nsWebHandlerApp.js
pluginGlue.js
storage-Legacy.js
storage-mozStorage.js
txEXSLTRegExFunctions.js
WebContentConverter.js

D:\mozilla\plugins\
npdeployJava1.dll
npganymedenet.dll
npnul32.dll
nppdf32.dll

D:\mozilla\searchplugins\
atlas-sk.xml
azet-sk.xml
dunaj-sk.xml
eBay.xml
google.xml
slovnik-sk.xml
wikipedia-sk.xml
zoznam-sk.xml

C:\Documents and Settings\Maros\Application Data\Mozilla\Firefox\Profiles\ccubllh0.default\extensions\
{32a1fd71-835e-4b11-8e54-886fda0b4c89}
{6C8B07BF-0F6D-4EA4-B96F-FF1CCBAAE553}

C:\Documents and Settings\Maros\Application Data\Mozilla\Firefox\Profiles\ccubllh0.default\searchplugins\
qip-search.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{326E768D-4182-46FD-9C16-1449A49795F4}]
DivX Plus Web Player HTML5 <video> - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll [2010-12-08 3123072]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3E532CE8-C6D9-4A10-8ACE-4348C96E8B6A}]
FastestTubeBHO Class - C:\Program Files\FastestTube\2.0.0\WombatBHO.dll [2011-10-27 183808]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{593DDEC6-7468-4cdd-90E1-42DADAA222E9}]
DivX HiQ - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll [2010-12-08 3123072]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95289393-33EA-4F8D-B952-483415B9C955}]
QIPBHO Class - C:\Documents and Settings\Maros\Application Data\Microsoft\Internet Explorer\qipsearchbar.dll [2011-10-19 142288]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-10-18 42272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-10-18 79648]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2009-07-29 98304]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2009-11-16 2054360]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2010-02-08 18790432]
"NeroCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"WinampAgent"=D:\Winamp\winampa.exe [2010-07-12 74752]
"amd_dc_opt"=C:\Program Files\AMD\Dual-Core Optimizer\amd_dc_opt.exe [2008-07-22 77824]
"Adobe Reader Speed Launcher"=D:\adobe\Reader\Reader_sl.exe [2011-09-07 37296]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-03-30 937920]
"NPSStartup"= []
"DivXUpdate"=C:\Program Files\DivX\DivX Update\DivXUpdate.exe [2010-12-09 1226608]
"DivX Download Manager"=C:\Program Files\DivX\DivX Plus Web Player\DDmService.exe [2010-12-08 63360]
"tsnp325"=C:\WINDOWS\tsnp325.exe [2007-04-21 270336]
"snp325"=C:\WINDOWS\vsnp325.exe [2007-05-10 835584]
"F5D7050v3"=C:\Program Files\Belkin\F5D7050v3\Belkinwcui.exe [2007-10-30 1654784]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-06-09 254696]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-02-12 15360]
"Google Update"=C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2010-09-23 136176]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2011-10-13 17351304]
"QIP Internet Guardian"=C:\Documents and Settings\Maros\Application Data\QipGuard\QipGuard.exe [2011-10-19 191440]
"Infium"=C:\Program Files\QIP 2012\qip.exe [2011-11-18 7243216]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2009-07-29 155648]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"D:\QIP\QIP Infium JadrisPack\infium.exe"="D:\QIP\QIP Infium JadrisPack\infium.exe:*:Enabled:QIP Infium"
"D:\Ares\Ares.exe"="D:\Ares\Ares.exe:*:Enabled:Ares p2p for windows"
"D:\icq\ICQ7.1\ICQ.exe"="D:\icq\ICQ7.1\ICQ.exe:*:Enabled:ICQ7.1"
"D:\icq\ICQ7.1\aolload.exe"="D:\icq\ICQ7.1\aolload.exe:*:Enabled:aolload.exe"
"D:\CS\hl.exe"="D:\CS\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Program Files\Java\jre6\bin\javaw.exe"="C:\Program Files\Java\jre6\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\WINDOWS\system32\muzapp.exe"="C:\WINDOWS\system32\muzapp.exe:*:Enabled:MUZ AOD APP player"
"C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Chrome\Application\chrome.exe"="C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Chrome\Application\chrome.exe:*:Enabled:Google Chrome"
"D:\Cracked Steam\Steam.exe"="D:\Cracked Steam\Steam.exe:*:Enabled:Steam"
"D:\mobil samsung\npsasvr.exe"="D:\mobil samsung\npsasvr.exe:*:Enabled:KTF MUSIC AoD Server"
"D:\mobil samsung\npsvsvr.exe"="D:\mobil samsung\npsvsvr.exe:*:Enabled:KTF MUSIC VoD Server"
"D:\QIP\QIP Infium\infium.exe"="D:\QIP\QIP Infium\infium.exe:*:Enabled:QIP Infium"
"C:\Program Files\Java\jre6\bin\java.exe"="C:\Program Files\Java\jre6\bin\java.exe:*:Disabled:Java(TM) Platform SE binary"
"C:\Program Files\QIP Infium\infium.exe"="C:\Program Files\QIP Infium\infium.exe:*:Enabled:QIP Infium"
"D:\VLC\vlc.exe"="D:\VLC\vlc.exe:*:Enabled:VLC media player"
"D:\fear 3\F.E.A.R. 3\F.E.A.R. 3.exe"="D:\fear 3\F.E.A.R. 3\F.E.A.R. 3.exe:*:Enabled:F.E.A.R. 3"
"C:\Program Files\QIP 2012\qip.exe"="C:\Program Files\QIP 2012\qip.exe:*:Enabled:QIP 2012"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"D:\icq\ICQ7.1\ICQ.exe"="D:\icq\ICQ7.1\ICQ.exe:*:Enabled:ICQ7.1"
"D:\icq\ICQ7.1\aolload.exe"="D:\icq\ICQ7.1\aolload.exe:*:Enabled:aolload.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"vidc.ffds"=C:\PROGRA~1\COMBIN~1\Filters\FFDShow\ff_vfw.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"vidc.VP60"=C:\WINDOWS\system32\vp6vfw.dll
"vidc.VP61"=C:\WINDOWS\system32\vp6vfw.dll
"vidc.DIVX"=DivX.dll
"vidc.yv12"=yv12vfw.dll
"MSVideo8"=VfWWDM32.dll

======List of files/folders created in the last 1 month======

2011-11-20 22:57:40 ----D---- C:\Program Files\trend micro
2011-11-20 22:57:39 ----D---- C:\rsit
2011-11-20 22:42:25 ----D---- C:\Program Files\Lame for Audacity
2011-11-01 11:34:43 ----D---- C:\Documents and Settings\All Users\Application Data\Sun
2011-11-01 11:34:42 ----D---- C:\Program Files\Common Files\Java
2011-11-01 11:33:58 ----A---- C:\WINDOWS\system32\javaws.exe
2011-11-01 11:33:58 ----A---- C:\WINDOWS\system32\javaw.exe
2011-11-01 11:33:58 ----A---- C:\WINDOWS\system32\java.exe
2011-11-01 11:33:58 ----A---- C:\WINDOWS\system32\deployJava1.dll
2011-10-23 11:59:32 ----D---- C:\Documents and Settings\Maros\Application Data\QIP
2011-10-23 11:58:16 ----D---- C:\Program Files\QipGuard
2011-10-23 11:58:16 ----D---- C:\Documents and Settings\Maros\Application Data\QipGuard

======List of files/folders modified in the last 1 month======

2011-11-20 22:57:45 ----D---- C:\WINDOWS\Prefetch
2011-11-20 22:57:41 ----D---- C:\WINDOWS\Temp
2011-11-20 22:57:40 ----RD---- C:\Program Files
2011-11-20 14:14:33 ----D---- C:\Documents and Settings\Maros\Application Data\Skype
2011-11-20 12:19:55 ----D---- C:\Program Files\QIP 2012
2011-11-19 23:41:52 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-11-14 17:19:12 ----D---- C:\WINDOWS\system32\CatRoot2
2011-11-12 10:48:28 ----D---- C:\WINDOWS
2011-11-08 19:08:00 ----D---- C:\Documents and Settings\Maros\Application Data\FastestTube
2011-11-08 14:08:42 ----D---- C:\Program Files\FastestTube
2011-11-07 20:57:55 ----D---- C:\Documents and Settings\Maros\Application Data\Winamp
2011-11-05 09:44:16 ----D---- C:\Documents and Settings\Maros\Application Data\Media Player Classic
2011-11-05 09:41:12 ----D---- C:\WINDOWS\system32\NtmsData
2011-11-05 09:32:25 ----D---- C:\WINDOWS\repair
2011-11-05 09:32:18 ----D---- C:\WINDOWS\Registration
2011-11-01 11:34:43 ----SHD---- C:\WINDOWS\Installer
2011-11-01 11:34:42 ----D---- C:\Program Files\Common Files
2011-11-01 11:33:58 ----D---- C:\WINDOWS\system32
2011-11-01 11:33:56 ----D---- C:\Program Files\Java
2011-10-31 12:17:40 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-10-30 15:14:03 ----D---- C:\filmy
2011-10-30 14:53:08 ----D---- C:\Documents and Settings\Maros\Application Data\Vso
2011-10-30 12:37:35 ----D---- C:\Documents and Settings\Maros\Application Data\dvdcss
2011-10-29 09:36:15 ----RD---- C:\Program Files\Skype
2011-10-23 14:10:56 ----SHD---- C:\WINDOWS\CSC

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 ohci1394;Texas Instruments OHCI Compliant IEEE 1394 Host Controller; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-02-12 61696]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2010-07-12 45648]
R1 AmdPPM;AMD HwPState Processor Driver; C:\WINDOWS\system32\DRIVERS\AmdPPM.sys [2007-04-16 33792]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2009-11-16 108792]
R1 epfwtdir;epfwtdir; C:\WINDOWS\system32\DRIVERS\epfwtdir.sys [2009-11-16 96408]
R1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-02-12 14592]
R1 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2008-02-12 8832]
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.4.3.0; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2011-08-31 20747]
R2 eamon;eamon; C:\WINDOWS\system32\DRIVERS\eamon.sys [2009-11-16 116520]
R3 AmdLLD;AMD Low Level Device Driver; C:\WINDOWS\system32\DRIVERS\AmdLLD.sys [2007-06-29 34304]
R3 Arp1394;1394 ARP Client Protocol; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-02-12 60800]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2009-07-30 4411392]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2004-03-17 135168]
R3 hidusb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-02-12 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2010-02-08 5860384]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-02-12 61824]
R3 RTHDMIAzAudService;Service for HDMI; C:\WINDOWS\system32\drivers\RtKHDMI.sys [2009-06-25 3734976]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2007-11-22 105088]
R3 SNP325;USB PC Camera (SNPSTD325); C:\WINDOWS\system32\DRIVERS\snp325.sys [2007-07-24 10394624]
R3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-02-12 32128]
R3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-02-12 26368]
S3 Ambfilt;Ambfilt; C:\WINDOWS\system32\drivers\Ambfilt.sys [2009-11-18 1691480]
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-02-12 17024]
S3 FsUsbExDisk;FsUsbExDisk; \??\C:\WINDOWS\system32\FsUsbExDisk.SYS []
S3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2008-10-28 49920]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2008-10-28 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2008-10-28 21568]
S3 Monfilt;Monfilt; C:\WINDOWS\system32\drivers\Monfilt.sys [2009-11-18 1395800]
S3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2006-02-28 12160]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-02-12 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-02-12 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-02-12 10880]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2007-09-17 21632]
S3 RT73;Belkin Wireless 54G USB Network Adapter Driver; C:\WINDOWS\system32\DRIVERS\rt73.sys [2007-10-02 451968]
S3 s116bus;Sony Ericsson Device 116 driver (WDM); C:\WINDOWS\system32\DRIVERS\s116bus.sys [2007-04-03 83336]
S3 s116nd5;Sony Ericsson Device 116 USB Ethernet Emulation SEMC116 (NDIS); C:\WINDOWS\system32\DRIVERS\s116nd5.sys [2007-04-03 23176]
S3 s116unic;Sony Ericsson Device 116 USB Ethernet Emulation SEMC116 (WDM); C:\WINDOWS\system32\DRIVERS\s116unic.sys [2007-04-03 99080]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-02-12 11136]
S3 ss_bbus;SAMSUNG USB Mobile Device (WDM); C:\WINDOWS\system32\DRIVERS\ss_bbus.sys [2010-04-27 98432]
S3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter); C:\WINDOWS\system32\DRIVERS\ss_bmdfl.sys [2010-04-27 14848]
S3 ss_bmdm;SAMSUNG USB Mobile Modem; C:\WINDOWS\system32\DRIVERS\ss_bmdm.sys [2010-04-27 123648]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-02-12 15232]
S3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-02-12 25856]
S3 usbscan;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-02-12 15104]
S3 WpdUsb;WpdUsb; C:\WINDOWS\System32\Drivers\wpdusb.sys [2005-01-28 18944]
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-02-12 19200]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2009-07-29 602112]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2009-11-16 735960]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2011-10-03 153376]
R2 QipGuard;QipGuard; C:\Program Files\QipGuard\QipGuard.exe [2011-10-19 191440]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2005-01-28 38912]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2005-09-23 29896]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2005-09-23 66240]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2009-11-16 20680]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2008-04-07 430592]

-----------------EOF-----------------

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu logu- spomalenie PC

#2 Příspěvek od vyosek »

Zdravim a pekny den preji :)

:arrow: Poprosim i o druhy log z RSIT s nazvem info.txt, je ulozen v c:\rsit

:arrow: Predpokladam, ze ten NOD32 mate, stejne i jako samotne windows, legalni = zakoupena licence :???:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Sindy
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 20 lis 2011 22:54

Re: Prosím o kontrolu logu- spomalenie PC

#3 Příspěvek od Sindy »

windows by mal byt originalny, ten NOD32 neviem, PC zostavoval niekto iny a bolo to v nom, je to potrebne vediet? :)

info.txt logfile of random's system information tool 1.09 2011-11-20 22:57:53

======Uninstall list======

-->MsiExec /X{F9835182-794B-4F24-902A-E2CA9D43380F}
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Flash Player 11 Plugin-->C:\WINDOWS\system32\Macromed\Flash\FlashUtil11c_Plugin.exe -maintain plugin
Adobe Reader 9.4.6-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A94000000001}
Ahead Nero Burning ROM-->D:\nero\nero\uninstall\UNNERO.exe /UNINSTALL
AMD Processor Driver-->C:\Program Files\InstallShield Installation Information\{C151CE54-E7EA-4804-854B-F515368B0798}\setup.exe -runfromtemp -l0x0009 -removeonly
Ares 2.1.2-->"D:\Ares\uninstall.exe"
ATI - Software Uninstall Utility-->C:\Program Files\ATI Technologies\UninstallAll\AtiCimUn.exe
ATI Catalyst Control Center-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{055EE59D-217B-43A7-ABFF-507B966405D8}\setup.exe" -l0x0
ATI Display Driver-->rundll32 C:\WINDOWS\system32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
ATI Parental Control & Encoder-->MsiExec.exe /I{36CDA33B-909B-4719-97D1-C4B99309BDC7}
Belkin 54Mbps Wireless Network Adapter-->C:\Program Files\InstallShield Installation Information\{F3759A9F-7AFA-4FB4-8DF1-53F26B979DEE}\setup.exe -runfromtemp -l0x0009 -removeonly
Borland Delphi 6-->MsiExec.exe /I{B7886D87-ADA4-46A0-8A8D-02AB16B9F95A}
CANYON USB PC Camera-->C:\Program Files\InstallShield Installation Information\{F9466082-90E9-4BE4-92F0-CF0AF195B0CF}\setup.exe -runfromtemp -l0x0009 -removeonly
CCleaner-->"D:\CCleaner\uninst.exe"
Combined Community Codec Pack 2009-09-09-->"C:\Program Files\Combined Community Codec Pack\unins000.exe"
ConvertXtoDVD 4.1.12.352-->"C:\Program Files\VSO\ConvertX\4\unins000.exe"
Counter-Strike 1.6 Non-Steam patch v36-->"D:\CS\valve\unins000.exe"
Counter-Strike 1.6-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{13B792AA-C078-43A4-8A3A-8B12D629940D}\Setup.exe" -l0x19
DivX Setup-->C:\Documents and Settings\All Users\Application Data\DivX\Setup\DivXSetup.exe /uninstall /bundleGroupId divx.com
Dual-Core Optimizer-->MsiExec.exe /X{9FD6F1A8-5550-46AF-8509-271DF0E768B5}
EmoDio-->"C:\Program Files\InstallShield Installation Information\{C20CE592-B0F8-4D20-BF31-0151CA6331A6}\setup.exe" -runfromtemp -l0x0409 -removeonly
EmoDio-->MsiExec.exe /X{C20CE592-B0F8-4D20-BF31-0151CA6331A6}
FastestTube-->"C:\Program Files\FastestTube\2.0.0\uninstall.exe"
FastestTube-1.2.8.7-->"C:\Documents and Settings\Maros\Local Settings\Application Data\FastestTube\unins000.exe"
Free DVD Video Burner version 1.1-->"C:\Program Files\DVDVideoSoft\Free DVD Video Burner\unins000.exe"
Free Video to DVD Converter version 1.1-->"D:\dvd converter\Free Video to DVD Converter\unins000.exe"
GameDesire-Bingo-->D:\Ganymede\bingo_uninstall.exe
GTA San Andreas-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}\setup.exe" -l0x9 -removeonly
High Definition Audio Driver Package - KB835221-->C:\WINDOWS\$NtUninstallKB835221WXP$\spuninst\spuninst.exe
ICQ7.1-->"C:\Program Files\InstallShield Installation Information\{71BFC818-0CED-42D6-9C87-5142918957EE}\ICQ7.exe" -runfromtemp -l0x0009 -removeonly
Java(TM) 6 Update 29-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216015FF}
JDownloader-->D:\JDownloader\uninstall.exe
LAME v3.98.2 for Audacity-->"C:\Program Files\Lame for Audacity\unins000.exe"
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 2.0-->C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.exe
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0015-041B-0000-0000000FF1CE} /uninstall {F69A7281-8297-47E2-B583-36EAA37C89EE}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0016-041B-0000-0000000FF1CE} /uninstall {F69A7281-8297-47E2-B583-36EAA37C89EE}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0018-041B-0000-0000000FF1CE} /uninstall {F69A7281-8297-47E2-B583-36EAA37C89EE}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0019-041B-0000-0000000FF1CE} /uninstall {F69A7281-8297-47E2-B583-36EAA37C89EE}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001A-041B-0000-0000000FF1CE} /uninstall {F69A7281-8297-47E2-B583-36EAA37C89EE}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001B-041B-0000-0000000FF1CE} /uninstall {F69A7281-8297-47E2-B583-36EAA37C89EE}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0044-041B-0000-0000000FF1CE} /uninstall {F69A7281-8297-47E2-B583-36EAA37C89EE}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-006E-041B-0000-0000000FF1CE} /uninstall {8AF3A9EB-FBB9-449F-AC11-94CE39930037}
Microsoft Office Access MUI (Slovak) 2007-->MsiExec.exe /X{90120000-0015-041B-0000-0000000FF1CE}
Microsoft Office Excel MUI (Slovak) 2007-->MsiExec.exe /X{90120000-0016-041B-0000-0000000FF1CE}
Microsoft Office File Validation Add-In-->MsiExec.exe /I{90140000-2005-0000-0000-0000000FF1CE}
Microsoft Office InfoPath MUI (Slovak) 2007-->MsiExec.exe /X{90120000-0044-041B-0000-0000000FF1CE}
Microsoft Office Outlook MUI (Slovak) 2007-->MsiExec.exe /X{90120000-001A-041B-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (Slovak) 2007-->MsiExec.exe /X{90120000-0018-041B-0000-0000000FF1CE}
Microsoft Office Professional Plus 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall PROPLUS /dll OSETUP.DLL
Microsoft Office Professional Plus 2007-->MsiExec.exe /X{90120000-0011-0000-0000-0000000FF1CE}
Microsoft Office Proof (Czech) 2007-->MsiExec.exe /X{90120000-001F-0405-0000-0000000FF1CE}
Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
Microsoft Office Proof (Hungarian) 2007-->MsiExec.exe /X{90120000-001F-040E-0000-0000000FF1CE}
Microsoft Office Proof (Slovak) 2007-->MsiExec.exe /X{90120000-001F-041B-0000-0000000FF1CE}
Microsoft Office Proofing (Slovak) 2007-->MsiExec.exe /X{90120000-002C-041B-0000-0000000FF1CE}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0405-0000-0000000FF1CE} /uninstall {294B4278-CF7B-40B9-86A1-2D3FF0C2C524}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {A0516415-ED61-419A-981D-93596DA74165}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {ABDDE972-355B-4AF1-89A8-DA50B7B5C045}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-040E-0000-0000000FF1CE} /uninstall {573CA1BB-C8A3-46C4-993E-DB4043D9BFCD}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-041B-0000-0000000FF1CE} /uninstall {10EC59E5-9BCE-4884-BB1A-E28627220232}
Microsoft Office Publisher MUI (Slovak) 2007-->MsiExec.exe /X{90120000-0019-041B-0000-0000000FF1CE}
Microsoft Office Shared MUI (Slovak) 2007-->MsiExec.exe /X{90120000-006E-041B-0000-0000000FF1CE}
Microsoft Office Word MUI (Slovak) 2007-->MsiExec.exe /X{90120000-001B-041B-0000-0000000FF1CE}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053-->MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148-->MsiExec.exe /X{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022-->MsiExec.exe /X{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft WSE 3.0 Runtime-->MsiExec.exe /X{E3E71D07-CD27-46CB-8448-16D4FB29AA13}
Mozilla Firefox (3.6.20)-->D:\mozilla\uninstall\helper.exe
NVIDIA PhysX-->MsiExec.exe /X{F9835182-794B-4F24-902A-E2CA9D43380F}
PC Connectivity Solution-->MsiExec.exe /I{AC599724-5755-48C1-ABE7-ABB857652930}
REALTEK GbE & FE Ethernet PCI-E NIC Driver-->C:\Program Files\InstallShield Installation Information\{C9BED750-1211-4480-B1A5-718A3BE15525}\Setup.Exe -runfromtemp -removeonly
Realtek High Definition Audio Driver-->RtkUpd.exe -r -m
SAMSUNG USB Driver for Mobile Phones-->D:\USB Drivers\Uninstall.exe
SamsungConnectivityCableDriver-->MsiExec.exe /X{7E84FAC8-C518-40F9-9807-7455301D6D25}
Security Update for 2007 Microsoft Office System (KB2288621)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {5C497F0B-2061-4CC9-A61C-6B45B867354D}
Security Update for 2007 Microsoft Office System (KB2288931)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {CD769337-C8AC-46DB-A7DC-643E50089263}
Security Update for 2007 Microsoft Office System (KB2345043)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {536FB502-775F-4494-BACE-C02CC90B7A5B}
Security Update for 2007 Microsoft Office System (KB2553074)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {5729F1AE-5895-468F-9165-BAD161C9E982}
Security Update for 2007 Microsoft Office System (KB2553089)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {01D4CA59-7070-4420-9BCC-0EFA7C5D76BE}
Security Update for 2007 Microsoft Office System (KB2553090)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {643C12A2-AF9A-4712-B8BE-3B7650AFE00A}
Security Update for 2007 Microsoft Office System (KB2584063)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {BF3F1CBD-B05C-4644-AE43-6EE0FCC227A4}
Security Update for 2007 Microsoft Office System (KB969559)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {69F52148-9BF6-4CDC-BF76-103DEAF3DD08}
Security Update for 2007 Microsoft Office System (KB976321)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {7F207DCA-3399-40CB-A968-6E5991B1421A}
Security Update for Microsoft Office Access 2007 (KB979440)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {1142CCEC-ACA9-484B-BA90-C3A5CA1988C5}
Security Update for Microsoft Office Access 2007 (KB979440)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {5A4E43D5-858F-49BD-BA72-8F30E1793060}
Security Update for Microsoft Office Excel 2007 (KB2553073)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {65EA4836-B5A3-4C1D-8883-0C35E471003A}
Security Update for Microsoft Office InfoPath 2007 (KB2510061)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {5D930261-AA5B-48D1-931F-425C9D767490}
Security Update for Microsoft Office InfoPath 2007 (KB979441)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {1109D0B3-EFA3-4553-AAED-4C3E9AD130E8}
Security Update for Microsoft Office InfoPath 2007 (KB979441)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {8CCB781A-CF6B-4FCB-B6D8-59C64DF5C6DB}
Security Update for Microsoft Office PowerPoint 2007 (KB2535818)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {8588DD11-6BD7-4400-B55C-DD5AB74B43E1}
Security Update for Microsoft Office PowerPoint Viewer 2007 (KB2464623)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {D75E6D0C-BADF-4F41-98B2-0C0F02C15062}
Security Update for Microsoft Office Publisher 2007 (KB2284697)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {3A4CDE54-2403-483D-8D9A-15E3264410DF}
Security Update for Microsoft Office system 2007 (972581)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {3D019598-7B59-447A-80AE-815B703B84FF}
Security Update for Microsoft Office system 2007 (KB974234)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {FCD742B9-7A55-44BC-A776-F795F21FEDDC}
Security Update for Microsoft Office Visio Viewer 2007 (KB973709)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {71127777-8B2C-4F97-AF7A-6CF8CAC8224D}
Security Update for Microsoft Office Word 2007 (KB2344993)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {7A5B74FA-7A92-4FC9-821A-2DD5D4E73E48}
Skype™ 5.5-->MsiExec.exe /X{AA59DDE4-B672-4621-A016-4C248204957A}
SUPER © Version 2010.bld.38 (May 2, 2010)-->C:\PROGRA~1\ERIGHT~1\SUPER\Setup.exe /remove /q0
The KMPlayer (remove only)-->"C:\Program Files\The KMPlayer\uninstall.exe"
The Sims™ 3-->"C:\Program Files\InstallShield Installation Information\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}\Sims3Setup.exe" -runfromtemp -l0x0005 -removeonly
Uninstall 1.0.0.1-->"C:\Program Files\Common Files\DVDVideoSoft\unins000.exe"
Update for 2007 Microsoft Office System (KB967642)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
Update for Microsoft Office 2007 System (KB2539530)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {0B4CEEAE-AA88-490C-BCB2-AAC3421981A4}
Update for Microsoft Office Outlook 2007 (KB2583910)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {BDC21583-5601-4B2B-88F3-7919F6DE8FB1}
Update for Outlook 2007 Junk Email Filter (KB2596560)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {2964DDE1-4925-4DF1-AF2C-0A36B3442228}
VC80CRTRedist - 8.0.50727.4053-->MsiExec.exe /I{5EE7D259-D137-4438-9A5F-42F432EC0421}
VLC media player 1.1.5-->D:\VLC\uninstall.exe
Winamp-->"D:\Winamp\UninstWA.exe"
Windows Driver Package - Nokia pccsmcfd (10/12/2007 6.85.4.0)-->C:\PROGRA~1\DIFX\270581355A767BF1\dpinst.exe /u C:\WINDOWS\system32\DRVSTORE\pccsmcfd_4A1E30386F4D0DEC8F5DF262CFBD8845EEBAB175\pccsmcfd.inf
Windows Feature Pack for Storage (32-bit) - IMAPI update for Blu-Ray-->"C:\WINDOWS\$NtUninstallKB952011$\spuninst\spuninst.exe"
Windows Internet Explorer 8-->"C:\WINDOWS\ie8\spuninst\spuninst.exe"
Windows Media Format Runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Player 10-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
Windows Media Player Firefox Plugin-->MsiExec.exe /I{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}
Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
WinRAR-->D:\Winrar\uninstall.exe
XnView 1.94-->"C:\Program Files\XnView\unins000.exe"

======Security center information======

AV: ESET NOD32 Antivirus 4.0

======System event log======

Computer Name: VOLF-PC
Event Code: 6009
Message: Microsoft (R) Windows (R) 5.01. 2600 Service Pack 3, v.3311 Multiprocessor Free.

Record Number: 25148
Source Name: EventLog
Time Written: 20111105145030.000000+060
Event Type: informácie
User:

Computer Name: VOLF-PC
Event Code: 6006
Message: Zastavila sa služba Denník udalostí.

Record Number: 25147
Source Name: EventLog
Time Written: 20111105111907.000000+060
Event Type: informácie
User:

Computer Name: VOLF-PC
Event Code: 7036
Message: Služba Ati HotKey Poller vstúpila do stavu Zastavené.

Record Number: 25146
Source Name: Service Control Manager
Time Written: 20111105111857.000000+060
Event Type: informácie
User:

Computer Name: VOLF-PC
Event Code: 7036
Message: Služba MS Software Shadow Copy Provider vstúpila do stavu Zastavené.

Record Number: 25145
Source Name: Service Control Manager
Time Written: 20111105100217.000000+060
Event Type: informácie
User:

Computer Name: VOLF-PC
Event Code: 7036
Message: Služba IMAPI CD-Burning COM Service vstúpila do stavu Zastavené.

Record Number: 25144
Source Name: Service Control Manager
Time Written: 20111105095932.000000+060
Event Type: informácie
User:

=====Application event log=====

Computer Name: VOLF-PC
Event Code: 11728
Message: Produkt: Microsoft Visual C++ 2005 Redistributable -- Konfigurácia sa úspešne dokončila.

Record Number: 432
Source Name: MsiInstaller
Time Written: 20100531170915.000000+120
Event Type: informácie
User: VOLF-PC\Maros

Computer Name: VOLF-PC
Event Code: 11707
Message: Produkt: Microsoft Visual C++ 2005 Redistributable -- Inštalácia sa úspešne dokončila.

Record Number: 431
Source Name: MsiInstaller
Time Written: 20100531170435.000000+120
Event Type: informácie
User: VOLF-PC\Maros

Computer Name: VOLF-PC
Event Code: 1800
Message: Služba Centrum zabezpečenia systému Windows sa spustila.

Record Number: 430
Source Name: SecurityCenter
Time Written: 20100531143626.000000+120
Event Type: informácie
User:

Computer Name: VOLF-PC
Event Code: 1800
Message: Služba Centrum zabezpečenia systému Windows sa spustila.

Record Number: 429
Source Name: SecurityCenter
Time Written: 20100531072007.000000+120
Event Type: informácie
User:

Computer Name: VOLF-PC
Event Code: 1800
Message: Služba Centrum zabezpečenia systému Windows sa spustila.

Record Number: 428
Source Name: SecurityCenter
Time Written: 20100530210337.000000+120
Event Type: informácie
User:

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=C:\Program Files\PC Connectivity Solution\;C:\Program Files\NVIDIA Corporation\PhysX\Common;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\ATI Technologies\ATI.ACE\Core-Static;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727;D:\Delphi6\Bin;D:\Delphi6\Projects\Bpl
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=16
"PROCESSOR_IDENTIFIER"=x86 Family 16 Model 6 Stepping 2, AuthenticAMD
"PROCESSOR_REVISION"=0602
"NUMBER_OF_PROCESSORS"=2
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP

-----------------EOF-----------------

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu logu- spomalenie PC

#4 Příspěvek od vyosek »

:arrow: Jen takovy dotazek, jelikoz nelegalni SW se tu nezabyvame...

:arrow: Tuhle proxy 10.17.0.2:8080 mate nastavenou umyslne :???:

:arrow: Stahnete OTL (viz muj podpis) a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na OTL pravym a dejte Run As Administrator ci Spustit jako spravce
  • Pokud pouzivate 64bitovy OS, zkontrolujte, zda-li je zaskrtnuty ctverecek u Pro 64 bitové OS, pokud ne, zaskrtnete jej
  • Zaskrtnete okenko Pro vsechny uzivatele
  • Zaskrtnete okenko Kontrola na havet "LOP"
  • Zaskrtnete okenko Kontrola na havet "Purity"
  • Stari souboru zmente z 30 dnu na 7 dnu
  • Do spodniho okenka Vlastni skenovani/opravy vlozte skript nize
  • Kód: Vybrat vše

    CREATERESTOREPOINT
    
    netsvcs
    drivers32
    savembr:0
    
    /md5start
    adp3132.sys
    AGP440.sys
    ahcix86.sys
    ahcix86s.sys
    atapi.sys
    autochk.exe
    cdrom.sys
    cngaudit.dll
    cryptsvc.dll
    eNetHook.dll
    eventlog.dll
    explorer.exe
    hal.dll
    Changer.sys
    iaStor.sys
    iastorv.sys
    IdeChnDr.sys
    isapnp.sys
    JakNDis.sys
    KR10N.sys
    logevent.dll
    lsass.exe
    mv61xx.sys
    ndis.sys
    netlogon.dll
    ntelogon.dll
    nvata.sys
    nvatabus.sys
    nvgts.sys
    nvraid.sys
    nvrd32.sys
    nvstor.sys
    nvstor32.sys
    scecli.dll
    sceclt.dll
    smss.exe
    svchost.exe
    symmpi.sys
    tcpip.sys
    userinit.exe
    vaxscsi.sys
    viamraid.sys
    viasraid.sys
    ViPrt.sys
    winlogon.exe
    ws2_32.dll
    /md5stop
    
    %systemroot%*.* /U /s
    %SYSTEMDRIVE%\*.exe
    %ALLUSERSPROFILE%\Application Data\*.
    %ALLUSERSPROFILE%\Application Data\*.exe /s
    %APPDATA%\*.
    %APPDATA%\*.exe /s
    %systemroot%\*. /mp /s
    %systemroot%\system32\*.dll /lockedfiles
    %systemroot%\Tasks\*.job /lockedfiles
    %systemroot%\system32\drivers\*.sys /lockedfiles
    %systemroot%\System32\config\*.sav
    %systemroot%\system32\*.dll /lockedfiles
    %systemroot%\system32\drivers\*.sys /3
    %systemroot%\system32\*.* /3
    %SYSTEMDRIVE%\*.exe
    
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
    reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c
    reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c
    reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c
    
    type c:\boot.ini >> test.txt /c
    %SystemDrive%\PhysicalMBR.bin /md5 
    
    *crack* /s
    *keygen* /s
    *loader* /s
  • Kliknete na tlacitko Prohledat
  • Po dokonceni skenu (cca 10 az 15 min) se objevi logy OTL.txt a Extras.txt, oba sem vlozte
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Sindy
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 20 lis 2011 22:54

Re: Prosím o kontrolu logu- spomalenie PC

#5 Příspěvek od Sindy »

nie je to nastavene umyselne, mam s tym nieco urobit?
log extras.txt sa neobjavil a nemam ho nikde v pc, spravila som nieco zle?

OTL logfile created on: 21.11.2011 19:28:52 - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Documents and Settings\Maros\Desktop
Windows XP Professional Edition Service Pack 3, v.3311 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 0000041B | Country: Slovakia | Language: SKY | Date Format: d.M.yyyy

1,75 Gb Total Physical Memory | 0,38 Gb Available Physical Memory | 21,47% Memory free
3,60 Gb Paging File | 2,24 Gb Available in Paging File | 62,15% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 97,65 Gb Total Space | 63,31 Gb Free Space | 64,83% Space Free | Partition Type: NTFS
Drive D: | 368,10 Gb Total Space | 90,97 Gb Free Space | 24,71% Space Free | Partition Type: NTFS
Drive K: | 7,51 Gb Total Space | 3,44 Gb Free Space | 45,88% Space Free | Partition Type: FAT32

Computer Name: VOLF-PC | User Name: Maros | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 7 Days

NetSvcs: 6to4 - File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found

Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: MSVideo8 - C:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.DIVX - C:\WINDOWS\System32\DivX.dll (DivX, Inc.)
Drivers32: vidc.ffds - C:\Program Files\Combined Community Codec Pack\Filters\FFDShow\ff_vfw.dll ()
Drivers32: VIDC.I420 - C:\WINDOWS\System32\i420vfw.dll (www.helixcommunity.org)
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
Drivers32: vidc.VP60 - C:\WINDOWS\system32\vp6vfw.dll (On2.com)
Drivers32: vidc.VP61 - C:\WINDOWS\system32\vp6vfw.dll (On2.com)
Drivers32: vidc.yv12 - C:\WINDOWS\System32\yv12vfw.dll (www.helixcommunity.org)
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin

========== LOP Check ==========

[2010.05.19 06:33:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ESET
[2010.05.23 10:42:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ICQ
[2010.11.16 19:14:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PC Suite
[2010.11.28 11:18:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Samsung
[2011.09.29 18:50:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\vsosdk
[2011.02.24 13:34:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\WombatUpdater
[2011.09.22 16:12:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\DataCast
[2011.08.14 11:52:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Day 1 Studios
[2011.07.17 17:05:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\DVDVideoSoft
[2010.08.19 11:13:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\GanymedeNet
[2011.07.14 19:59:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\ICQ
[2010.12.25 12:50:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Local
[2010.11.16 19:14:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\PC Suite
[2011.10.23 11:59:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\QIP
[2011.10.23 11:58:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\QipGuard
[2011.01.23 20:31:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Rovio
[2011.05.28 15:15:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Samsung
[2010.10.17 20:34:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Smart FLV Converter Pro
[2011.02.21 13:35:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Software Informer
[2010.05.20 16:19:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Uniblue
[2011.10.30 14:53:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Vso
[2011.03.25 17:08:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\XnView
[2010.06.17 17:15:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Zoner
[2011.11.21 19:27:00 | 000,000,372 | ---- | M] () -- C:\WINDOWS\Tasks\Updater.job

========== Purity Check ==========



========== Custom Scans ==========


< REATERESTOREPOINT >

< >

< >


< MD5 for: AGP440.SYS >
[2006.02.28 13:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:AGP440.sys
[2008.02.12 15:08:38 | 019,997,027 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys
[2008.02.12 15:08:38 | 019,997,027 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:AGP440.sys
[2008.02.12 02:12:18 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=7C4388560DBA30665AEEEA81B1585A16 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008.02.12 02:12:18 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=7C4388560DBA30665AEEEA81B1585A16 -- C:\WINDOWS\system32\dllcache\agp440.sys
[2008.02.12 02:12:18 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=7C4388560DBA30665AEEEA81B1585A16 -- C:\WINDOWS\system32\drivers\agp440.sys

< MD5 for: ATAPI.SYS >
[2006.02.28 13:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2008.02.12 15:08:38 | 019,997,027 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008.02.12 15:08:38 | 019,997,027 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008.02.12 02:13:12 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=7316AFA8EFA110621D6D90722AF3EFE6 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008.02.12 02:13:12 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=7316AFA8EFA110621D6D90722AF3EFE6 -- C:\WINDOWS\system32\drivers\atapi.sys
[2006.02.28 13:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys

< MD5 for: AUTOCHK.EXE >
[2008.02.12 13:59:26 | 000,588,800 | ---- | M] (Microsoft Corporation) MD5=54F16317A4863F55DA696DC6CA8D7BB0 -- C:\WINDOWS\ServicePackFiles\i386\autochk.exe
[2008.02.12 13:59:26 | 000,588,800 | ---- | M] (Microsoft Corporation) MD5=54F16317A4863F55DA696DC6CA8D7BB0 -- C:\WINDOWS\system32\autochk.exe
[2006.02.28 13:00:00 | 000,588,800 | ---- | M] (Microsoft Corporation) MD5=B3415B9D6026F65E43089ABED096C38C -- C:\WINDOWS\$NtServicePackUninstall$\autochk.exe

< MD5 for: CDROM.SYS >
[2006.02.28 13:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys
[2008.02.12 15:08:38 | 019,997,027 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2008.02.12 15:08:38 | 019,997,027 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys
[2010.06.11 01:40:58 | 000,062,592 | ---- | M] (Microsoft Corporation) MD5=7B53584D94E9D8716B2DE91D5F1CB42D -- C:\WINDOWS\system32\dllcache\cdrom.sys
[2006.02.28 13:00:00 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=AF9C19B3100FE010496B1A27181FBF72 -- C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys
[2008.02.12 02:13:28 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=F18AB264458913B1304FE899F5FA68FB -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys
[2008.02.12 02:13:28 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=F18AB264458913B1304FE899F5FA68FB -- C:\WINDOWS\system32\drivers\cdrom.sys

< MD5 for: CRYPTSVC.DLL >
[2006.02.28 13:00:00 | 000,060,416 | ---- | M] (Microsoft Corporation) MD5=10654F9DDCEA9C46CFB77554231BE73B -- C:\WINDOWS\$NtServicePackUninstall$\cryptsvc.dll
[2008.02.12 13:58:48 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=F81F67B1ACA9B7473F3DF67B24A66D61 -- C:\WINDOWS\ServicePackFiles\i386\cryptsvc.dll
[2008.02.12 13:58:48 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=F81F67B1ACA9B7473F3DF67B24A66D61 -- C:\WINDOWS\system32\cryptsvc.dll

< MD5 for: EVENTLOG.DLL >
[2006.02.28 13:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=82B24CB70E5944E6E34662205A2A5B78 -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll
[2008.02.12 13:58:50 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=9FE2545FF4234A165368B6C3EC587E8C -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008.02.12 13:58:50 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=9FE2545FF4234A165368B6C3EC587E8C -- C:\WINDOWS\system32\eventlog.dll

< MD5 for: EXPLORER.EXE >
[2006.02.28 13:00:00 | 001,032,192 | ---- | M] (Microsoft Corporation) MD5=A0732187050030AE399B241436565E64 -- C:\WINDOWS\$NtServicePackUninstall$\explorer.exe
[2008.02.12 13:59:34 | 001,033,728 | ---- | M] (Microsoft Corporation) MD5=CB7C9E2BA846DA0AFABD19DE6B6F2006 -- C:\WINDOWS\explorer.exe
[2008.02.12 13:59:34 | 001,033,728 | ---- | M] (Microsoft Corporation) MD5=CB7C9E2BA846DA0AFABD19DE6B6F2006 -- C:\WINDOWS\ServicePackFiles\i386\explorer.exe

< MD5 for: HAL.DLL >
[2006.02.28 13:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:hal.dll
[2008.02.12 15:08:38 | 019,997,027 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:hal.dll
[2008.02.12 15:08:38 | 019,997,027 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:hal.dll
[2008.02.12 02:05:44 | 000,134,400 | ---- | M] (Microsoft Corporation) MD5=5283653309122BB29E116FFB3FB8468F -- C:\WINDOWS\system32\HAL.DLL
[2008.02.12 02:05:48 | 000,105,344 | ---- | M] (Microsoft Corporation) MD5=738F9684F64821220B5871BDC2952C88 -- C:\WINDOWS\ServicePackFiles\i386\hal.dll
[2006.02.28 13:00:00 | 000,134,400 | ---- | M] (Microsoft Corporation) MD5=DFCE51FD96909D1B97D4A1A72D060D77 -- C:\WINDOWS\$NtServicePackUninstall$\hal.dll

< MD5 for: CHANGER.SYS >
[2006.02.28 13:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:Changer.sys
[2008.02.12 15:08:38 | 019,997,027 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:Changer.sys
[2008.02.12 15:08:38 | 019,997,027 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:Changer.sys
[2008.02.12 02:13:42 | 000,008,192 | ---- | M] (Microsoft Corporation) MD5=66EDBC90E215110619B5A2EEB443B079 -- C:\WINDOWS\ServicePackFiles\i386\changer.sys

< MD5 for: ISAPNP.SYS >
[2008.02.12 15:08:38 | 019,997,027 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:isapnp.sys
[2008.02.12 15:08:38 | 019,997,027 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:isapnp.sys
[2008.02.12 02:12:22 | 000,037,248 | ---- | M] (Microsoft Corporation) MD5=554AC08FFD31A9A4ED4337BA5F2B8702 -- C:\WINDOWS\ServicePackFiles\i386\isapnp.sys
[2008.02.12 02:12:22 | 000,037,248 | ---- | M] (Microsoft Corporation) MD5=554AC08FFD31A9A4ED4337BA5F2B8702 -- C:\WINDOWS\system32\drivers\isapnp.sys
[2006.02.28 13:00:00 | 000,035,840 | ---- | M] (Microsoft Corporation) MD5=E504F706CCB699C2596E9A3DA1596E87 -- C:\WINDOWS\$NtServicePackUninstall$\isapnp.sys

< MD5 for: LSASS.EXE >
[2008.02.12 13:59:40 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=70885577298B92939F3B7AF54D5F8943 -- C:\WINDOWS\ServicePackFiles\i386\lsass.exe
[2008.02.12 13:59:40 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=70885577298B92939F3B7AF54D5F8943 -- C:\WINDOWS\system32\lsass.exe
[2006.02.28 13:00:00 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=84885F9B82F4D55C6146EBF6065D75D2 -- C:\WINDOWS\$NtServicePackUninstall$\lsass.exe

< MD5 for: NDIS.SYS >
[2008.02.12 09:20:42 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=104EFCE994264E4B36C1B6F5A846EB60 -- C:\WINDOWS\ServicePackFiles\i386\ndis.sys
[2008.02.12 09:20:42 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=104EFCE994264E4B36C1B6F5A846EB60 -- C:\WINDOWS\system32\drivers\ndis.sys
[2006.02.28 13:00:00 | 000,182,912 | ---- | M] (Microsoft Corporation) MD5=558635D3AF1C7546D26067D5D9B6959E -- C:\WINDOWS\$NtServicePackUninstall$\ndis.sys

< MD5 for: NETLOGON.DLL >
[2008.02.12 13:59:04 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=77A2F0D267E6158E4AA53D654547A6C6 -- C:\WINDOWS\ServicePackFiles\i386\netlogon.dll
[2008.02.12 13:59:04 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=77A2F0D267E6158E4AA53D654547A6C6 -- C:\WINDOWS\system32\netlogon.dll
[2006.02.28 13:00:00 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=96353FCECBA774BB8DA74A1C6507015A -- C:\WINDOWS\$NtServicePackUninstall$\netlogon.dll

< MD5 for: SCECLI.DLL >
[2006.02.28 13:00:00 | 000,180,224 | ---- | M] (Microsoft Corporation) MD5=0F78E27F563F2AAF74B91A49E2ABF19A -- C:\WINDOWS\$NtServicePackUninstall$\scecli.dll
[2008.02.12 13:59:10 | 000,181,248 | ---- | M] (Microsoft Corporation) MD5=1FC0B879C83F7E6E5D975617F7A85C5F -- C:\WINDOWS\ServicePackFiles\i386\scecli.dll
[2008.02.12 13:59:10 | 000,181,248 | ---- | M] (Microsoft Corporation) MD5=1FC0B879C83F7E6E5D975617F7A85C5F -- C:\WINDOWS\system32\scecli.dll

< MD5 for: SMSS.EXE >
[2008.02.12 13:59:54 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=A6A6E04496E41962384ACDD9D026F20C -- C:\WINDOWS\ServicePackFiles\i386\smss.exe
[2008.02.12 13:59:54 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=A6A6E04496E41962384ACDD9D026F20C -- C:\WINDOWS\system32\smss.exe
[2006.02.28 13:00:00 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=BD7FB0957C716F1A60333AEE04DE2178 -- C:\WINDOWS\$NtServicePackUninstall$\smss.exe

< MD5 for: SVCHOST.EXE >
[2008.02.12 13:59:56 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=0C54D685CFA1D5054F59F08ADAF71248 -- C:\WINDOWS\ServicePackFiles\i386\svchost.exe
[2008.02.12 13:59:56 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=0C54D685CFA1D5054F59F08ADAF71248 -- C:\WINDOWS\system32\svchost.exe
[2006.02.28 13:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=8F078AE4ED187AAABC0A305146DE6716 -- C:\WINDOWS\$NtServicePackUninstall$\svchost.exe

< MD5 for: TCPIP.SYS >
[2006.02.28 13:00:00 | 000,359,040 | ---- | M] (Microsoft Corporation) MD5=9F4B36614A0FC234525BA224957DE55C -- C:\WINDOWS\$NtServicePackUninstall$\tcpip.sys
[2008.02.12 09:20:06 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=AD075303568EC3B139CEC4C22BAAECD1 -- C:\WINDOWS\ServicePackFiles\i386\tcpip.sys
[2008.02.12 09:20:06 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=AD075303568EC3B139CEC4C22BAAECD1 -- C:\WINDOWS\system32\drivers\tcpip.sys

< MD5 for: USERINIT.EXE >
[2006.02.28 13:00:00 | 000,024,576 | ---- | M] (Microsoft Corporation) MD5=39B1FFB03C2296323832ACBAE50D2AFF -- C:\WINDOWS\$NtServicePackUninstall$\userinit.exe
[2008.02.12 13:59:58 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=E7FA45622EA5F16C9BC7379591262B25 -- C:\WINDOWS\ServicePackFiles\i386\userinit.exe
[2008.02.12 13:59:58 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=E7FA45622EA5F16C9BC7379591262B25 -- C:\WINDOWS\system32\userinit.exe

< MD5 for: WINLOGON.EXE >
[2006.02.28 13:00:00 | 000,502,272 | ---- | M] (Microsoft Corporation) MD5=01C3346C241652F43AED8E2149881BFE -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
[2008.02.12 14:00:00 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=57021A062C8E266C0A2A636450364B43 -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008.02.12 14:00:00 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=57021A062C8E266C0A2A636450364B43 -- C:\WINDOWS\system32\winlogon.exe

< MD5 for: WS2_32.DLL >
[2006.02.28 13:00:00 | 000,082,944 | ---- | M] (Microsoft Corporation) MD5=2ED0B7F12A60F90092081C50FA0EC2B2 -- C:\WINDOWS\$NtServicePackUninstall$\ws2_32.dll
[2008.02.12 13:59:22 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=96163A36BFB5D8D66190FA6066A4A84C -- C:\WINDOWS\ServicePackFiles\i386\ws2_32.dll
[2008.02.12 13:59:22 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=96163A36BFB5D8D66190FA6066A4A84C -- C:\WINDOWS\system32\ws2_32.dll

< >

< %systemroot%*.* /U /s >
[6 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\CSC\*.tmp files -> C:\WINDOWS\CSC\*.tmp -> ]
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
[28 C:\WINDOWS\Temp\*.tmp files -> C:\WINDOWS\Temp\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >
[2007.02.12 20:10:44 | 002,705,744 | ---- | M] (Microsoft Corporation) -- C:\VCREDI~3.EXE

< %ALLUSERSPROFILE%\Application Data\*. >
[2010.10.08 23:08:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Adobe
[2010.05.18 13:52:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ATI
[2011.01.06 14:37:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DivX
[2010.05.19 06:33:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ESET
[2010.05.23 10:42:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ICQ
[2011.11.20 23:14:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2010.08.27 19:52:35 | 000,000,000 | --SD | M] -- C:\Documents and Settings\All Users\Application Data\Microsoft
[2011.10.13 07:15:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Microsoft Help
[2010.11.16 19:14:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PC Suite
[2010.10.24 12:15:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Real
[2010.11.28 11:18:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Samsung
[2011.08.31 22:35:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Skype
[2011.11.01 11:34:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Sun
[2011.09.29 18:50:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\vsosdk
[2010.05.18 14:15:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
[2011.02.24 13:34:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\WombatUpdater

< %ALLUSERSPROFILE%\Application Data\*.exe /s >
[2011.01.06 14:35:42 | 000,056,969 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\ASPEncoder\Uninstaller.exe
[2010.12.25 12:50:42 | 000,057,591 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\ControlPanel\Uninstaller.exe
[2011.01.06 14:35:46 | 000,054,128 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\Converter\Uninstaller.exe
[2011.01.06 14:35:46 | 000,054,153 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\DFXPlugin\Uninstaller.exe
[2011.01.06 14:35:47 | 000,056,458 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\DivXDecoderShortcut\Uninstaller.exe
[2011.01.06 14:36:13 | 000,064,957 | ---- | M] (DivX, LLC) -- C:\Documents and Settings\All Users\Application Data\DivX\DivXPlusShortcuts\Uninstaller.exe
[2011.01.06 14:35:47 | 000,054,174 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\DSAACDecoder\Uninstaller.exe
[2011.01.06 14:35:48 | 000,057,532 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\DSASPDecoder\Uninstaller.exe
[2011.01.06 14:35:48 | 000,054,166 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\DSAVCDecoder\Uninstaller.exe
[2011.01.06 14:35:48 | 000,057,054 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\DSDesktopComponents\Uninstaller.exe
[2011.01.06 14:35:42 | 000,054,101 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\MPEG2Plugin\Uninstaller.exe
[2010.12.25 12:50:42 | 000,052,963 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\MSVC80CRTRedist\Uninstaller.exe
[2010.12.25 12:50:43 | 000,062,952 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\OVSHelper\Uninstaller.exe
[2011.01.06 14:36:12 | 000,057,736 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\Player\Uninstaller.exe
[2010.12.25 12:50:38 | 000,054,073 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\Qt4.5\Uninstaller.exe
[2010.11.02 17:08:15 | 000,144,696 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\DivX\RunAsUser\RUNASUSERPROCESS.exe
[2011.01.06 14:28:22 | 000,903,520 | ---- | M] (DivX, LLC) -- C:\Documents and Settings\All Users\Application Data\DivX\Setup\DivXSetup.exe
[2011.01.06 14:35:45 | 000,054,644 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\TranscodeEngine\Uninstaller.exe
[2011.01.06 14:35:52 | 000,084,038 | ---- | M] (DivX, Inc.) -- C:\Documents and Settings\All Users\Application Data\DivX\TransferWizard\Uninstaller.exe
[2010.12.25 12:50:43 | 000,061,792 | ---- | M] (DivX, LLC) -- C:\Documents and Settings\All Users\Application Data\DivX\Update\Uninstaller.exe
[2010.12.25 12:50:47 | 000,066,282 | ---- | M] (DivX, LLC) -- C:\Documents and Settings\All Users\Application Data\DivX\WebPlayer\Uninstaller.exe
[2010.12.30 10:26:24 | 000,079,872 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\WombatUpdater\WombatUpdater.exe

< %APPDATA%\*. >
[2011.01.16 12:44:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Adobe
[2010.05.19 08:35:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\AdobeUM
[2010.06.20 00:06:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Ahead
[2010.05.18 13:52:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\ATI
[2011.09.22 16:12:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\DataCast
[2011.08.14 11:52:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Day 1 Studios
[2010.06.04 15:03:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\DivX
[2011.10.30 12:37:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\dvdcss
[2011.07.17 17:05:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\DVDVideoSoft
[2010.08.19 11:13:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\GanymedeNet
[2010.11.23 17:37:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Help
[2011.07.14 19:59:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\ICQ
[2010.05.18 13:29:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Identities
[2010.05.18 13:52:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\InstallShield
[2010.12.25 12:50:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Local
[2010.05.19 16:17:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Macromedia
[2011.11.20 23:15:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Malwarebytes
[2011.11.05 09:44:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Media Player Classic
[2011.07.17 15:26:10 | 000,000,000 | --SD | M] -- C:\Documents and Settings\Maros\Application Data\Microsoft
[2011.11.20 23:55:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Mozilla
[2011.08.11 12:33:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\NVIDIA 3D Vision Video Player
[2010.11.16 19:14:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\PC Suite
[2011.10.23 11:59:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\QIP
[2011.10.23 11:58:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\QipGuard
[2011.06.01 18:29:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Real
[2011.01.23 20:31:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Rovio
[2011.05.28 15:15:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Samsung
[2011.11.21 19:29:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Skype
[2010.10.17 20:34:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Smart FLV Converter Pro
[2011.02.21 13:35:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Software Informer
[2010.06.03 21:59:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Sun
[2010.05.20 16:19:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Uniblue
[2011.05.18 21:03:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\vlc
[2011.10.30 14:53:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Vso
[2011.11.07 20:57:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Winamp
[2010.05.26 17:32:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\WinRAR
[2011.03.25 17:08:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\XnView
[2010.06.17 17:15:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Zoner

< %APPDATA%\*.exe /s >
[2011.09.29 17:49:44 | 000,087,608 | ---- | M] () -- C:\Documents and Settings\Maros\Application Data\inst.exe
[2010.08.27 19:52:35 | 000,010,134 | R--- | M] () -- C:\Documents and Settings\Maros\Application Data\Microsoft\Installer\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}\ARPPRODUCTICON.exe
[2011.10.19 19:01:34 | 000,191,440 | ---- | M] (QIP.ru) -- C:\Documents and Settings\Maros\Application Data\QipGuard\QipGuard.exe
[2011.05.23 21:18:11 | 000,308,864 | ---- | M] (RealNetworks, Inc.) -- C:\Documents and Settings\Maros\Application Data\Real\Update\UpgradeHelper\RealPlayer\8.01\rnupgagent.exe
[2011.05.28 11:54:58 | 025,824,400 | ---- | M] (RealNetworks, Inc.) -- C:\Documents and Settings\Maros\Application Data\Real\Update\UpgradeHelper\RealPlayer\8.01\stub_data\RealPlayer.exe
[2011.05.24 09:13:46 | 000,675,088 | ---- | M] (RealNetworks, Inc.) -- C:\Documents and Settings\Maros\Application Data\Real\Update\UpgradeHelper\RealPlayer\8.01\stub_exe\RealPlayer.exe

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

< %systemroot%\Tasks\*.job /lockedfiles >

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< %systemroot%\System32\config\*.sav >
[2010.05.18 15:15:35 | 000,094,208 | ---- | M] () -- C:\WINDOWS\System32\config\default.sav
[2010.05.18 15:15:35 | 000,659,456 | ---- | M] () -- C:\WINDOWS\System32\config\software.sav
[2010.05.18 15:15:35 | 000,905,216 | ---- | M] () -- C:\WINDOWS\System32\config\system.sav

< %systemroot%\system32\*.dll /lockedfiles >
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

< %systemroot%\system32\drivers\*.sys /3 >

< %systemroot%\system32\*.* /3 >
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >
[2007.02.12 20:10:44 | 002,705,744 | ---- | M] (Microsoft Corporation) -- C:\VCREDI~3.EXE

< >

< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"ctfmon.exe" = C:\WINDOWS\system32\ctfmon.exe -- [2008.02.12 13:59:30 | 000,015,360 | ---- | M] (Microsoft Corporation)
"Google Update" = "C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c -- [2010.09.23 16:49:41 | 000,136,176 | ---- | M] (Google Inc.)
"Skype" = "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized -- [2011.10.13 08:27:14 | 017,351,304 | R--- | M] (Skype Technologies S.A.)
"Infium" = "C:\Program Files\QIP 2012\qip.exe" /autorun -- [2011.11.18 00:04:36 | 007,243,216 | ---- | M] (QIP)

< reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WUAUSERV
IMAGEPATH REG_EXPAND_SZ %systemroot%\system32\svchost.exe -k netsvcs

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\BITS
IMAGEPATH REG_EXPAND_SZ %SystemRoot%\system32\svchost.exe -k netsvcs

< >

< type c:\boot.ini >> test.txt /c >
[boot loader]
timeout=30
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect /usepmtimer

< %SystemDrive%\PhysicalMBR.bin /md5 >
[2011.11.21 19:28:55 | 000,000,512 | ---- | M] () MD5=3297E6A2A5F0A5E472033B0F9FA2CD35 -- C:\PhysicalMBR.bin

< >

< *crack* /s >
[2010.10.29 19:59:37 | 000,000,497 | ---- | M] () -- \Documents and Settings\Maros\Start Menu\Programs\Cracked Steam\Update Cracked Steam.lnk
[2010.10.29 19:59:37 | 000,000,508 | ---- | M] () -- \Documents and Settings\Maros\Start Menu\Programs\Cracked Steam\Additionally\Cracked Steam on the Web.lnk
[2010.10.29 19:59:37 | 000,000,692 | ---- | M] () -- \Documents and Settings\Maros\Start Menu\Programs\Cracked Steam\Additionally\Launch Cracked Steam with default settings.lnk
[2003.12.05 13:52:40 | 000,000,796 | ---- | M] () -- \Program Files\Rockstar Games\GTA San Andreas\data\Decision\Craig\crack1.ped

< *keygen* /s >

< *loader* /s >
[2011.02.21 13:34:21 | 000,187,105 | ---- | M] () -- \Documents and Settings\Maros\Application Data\Software Informer\cache\icons\JDownloader.ico
[40 \Documents and Settings\Maros\Application Data\Software Informer\cache\icons\*.tmp files -> \Documents and Settings\Maros\Application Data\Software Informer\cache\icons\*.tmp -> ]
[2010.06.03 22:00:46 | 000,000,546 | ---- | M] () -- \Documents and Settings\Maros\Desktop\JDownloader.lnk
[2011.09.24 18:13:56 | 003,907,712 | ---- | M] () -- \Documents and Settings\Maros\Desktop\oslava mp3\4.Hi-Def & DJ Wich - Another Chance feat. Gigi Garbor www.gordon.uploader.sk.mp3
[2010.06.03 22:00:46 | 000,000,320 | ---- | M] () -- \Documents and Settings\Maros\Start Menu\Programs\JDownloader\JDownloader Support.lnk
[2010.06.03 22:00:46 | 000,000,594 | ---- | M] () -- \Documents and Settings\Maros\Start Menu\Programs\JDownloader\JDownloader.lnk
[2010.06.03 22:00:48 | 000,000,588 | ---- | M] () -- \Documents and Settings\Maros\Start Menu\Programs\JDownloader\Uninstall JDownloader.lnk
[2006.10.26 12:40:34 | 000,057,344 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VS7DEBUG\coloader.dll
[2006.10.26 12:40:34 | 000,005,120 | ---- | M] () -- \Program Files\Common Files\Microsoft Shared\VS7DEBUG\coloader.tlb
[2011.02.15 11:01:22 | 000,000,814 | ---- | M] () -- \Program Files\FastestTube\1.2.8\script_loader.js
[2009.05.31 02:21:00 | 000,071,008 | ---- | M] () -- \Program Files\NVIDIA Corporation\PhysX\Common\PhysXLoader.dll
[2008.02.25 07:05:22 | 000,856,064 | ---- | M] () -- \Program Files\The KMPlayer\ImLoader.dll
[2009.10.08 13:23:34 | 000,528,896 | ---- | M] () -- \RECYCLER\S-1-5-21-789336058-2049760794-839522115-1003\Dc32\EmoDio\LoaderDll.dll
[2006.02.28 13:00:00 | 000,035,840 | ---- | M] () -- \WINDOWS\$NtServicePackUninstall$\dmloader.dll
[2002.02.01 18:25:22 | 000,009,728 | ---- | M] () -- \WINDOWS\mui\FALLBACK\041b\osloader.exe.mui
[2008.02.12 13:58:48 | 000,035,840 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\dmloader.dll
[2008.02.12 02:06:06 | 000,230,400 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\osloader.exe
[2008.02.12 02:06:06 | 000,278,016 | ---- | M] () -- \WINDOWS\ServicePackFiles\i386\osloader.ntd
[2008.02.12 13:58:48 | 000,035,840 | ---- | M] () -- \WINDOWS\system32\dmloader.dll
[1 \WINDOWS\system32\*.tmp files -> \WINDOWS\system32\*.tmp -> ]
[2008.02.12 13:58:48 | 000,035,840 | ---- | M] () -- \WINDOWS\system32\dllcache\dmloader.dll

< End of report >

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu logu- spomalenie PC

#6 Příspěvek od vyosek »

vy mate OTL anglicky ze...dala jste scan?
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Sindy
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 20 lis 2011 22:54

Re: Prosím o kontrolu logu- spomalenie PC

#7 Příspěvek od Sindy »

hej, run scan

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu logu- spomalenie PC

#8 Příspěvek od vyosek »

Udelejte jeste jednou Scan ale nedavejte dolu ten skript - log pak sem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Sindy
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 20 lis 2011 22:54

Re: Prosím o kontrolu logu- spomalenie PC

#9 Příspěvek od Sindy »

stale mi ukazuje len OTL.text, extras zas nikde


OTL logfile created on: 21.11.2011 21:39:37 - Run 2
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Documents and Settings\Maros\Desktop
Windows XP Professional Edition Service Pack 3, v.3311 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 0000041B | Country: Slovakia | Language: SKY | Date Format: d.M.yyyy

1,75 Gb Total Physical Memory | 0,68 Gb Available Physical Memory | 38,87% Memory free
3,60 Gb Paging File | 2,52 Gb Available in Paging File | 69,99% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 97,65 Gb Total Space | 63,37 Gb Free Space | 64,89% Space Free | Partition Type: NTFS
Drive D: | 368,10 Gb Total Space | 90,97 Gb Free Space | 24,71% Space Free | Partition Type: NTFS
Drive K: | 7,51 Gb Total Space | 3,44 Gb Free Space | 45,88% Space Free | Partition Type: FAT32

Computer Name: VOLF-PC | User Name: Maros | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 7 Days

========== Processes (SafeList) ==========

PRC - [2011.11.21 19:22:32 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Maros\Desktop\OTL.exe
PRC - [2011.11.18 00:04:36 | 007,243,216 | ---- | M] (QIP) -- C:\Program Files\QIP 2012\qip.exe
PRC - [2011.11.15 06:39:56 | 001,036,344 | ---- | M] (Google Inc.) -- C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
PRC - [2011.10.27 12:27:25 | 000,140,952 | ---- | M] (Google Inc.) -- C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Update\1.3.21.79\GoogleCrashHandler.exe
PRC - [2010.12.09 20:28:24 | 001,226,608 | ---- | M] () -- C:\Program Files\DivX\DivX Update\DivXUpdate.exe
PRC - [2010.07.12 17:33:54 | 001,592,672 | ---- | M] (Nullsoft, Inc.) -- D:\Winamp\winamp.exe
PRC - [2010.07.12 17:32:48 | 000,074,752 | ---- | M] (Nullsoft, Inc.) -- D:\Winamp\winampa.exe
PRC - [2009.11.16 08:04:30 | 000,735,960 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
PRC - [2009.11.16 08:03:32 | 002,054,360 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
PRC - [2008.02.12 13:59:34 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2007.05.10 12:18:10 | 000,835,584 | ---- | M] () -- C:\WINDOWS\vsnp325.exe
PRC - [2007.04.21 08:30:54 | 000,270,336 | ---- | M] () -- C:\WINDOWS\tsnp325.exe


========== Modules (No Company Name) ==========

MOD - [2011.11.18 00:05:14 | 000,058,832 | ---- | M] () -- C:\Program Files\QIP 2012\Plugins\Win7Helper\Win7Helper.dll
MOD - [2011.11.18 00:05:12 | 000,058,320 | ---- | M] () -- C:\Program Files\QIP 2012\Plugins\cards\cards.dll
MOD - [2011.11.18 00:05:00 | 000,908,752 | ---- | M] () -- C:\Program Files\QIP 2012\Protos\Social\Social.dll
MOD - [2011.11.18 00:04:56 | 001,638,352 | ---- | M] () -- C:\Program Files\QIP 2012\Protos\MRA\mra.dll
MOD - [2011.11.18 00:04:56 | 000,049,104 | ---- | M] () -- C:\Program Files\QIP 2012\Protos\MRA\pics.dll
MOD - [2011.11.18 00:04:48 | 002,516,432 | ---- | M] () -- C:\Program Files\QIP 2012\Protos\InfICQ\inficq.dll
MOD - [2011.11.18 00:04:38 | 004,659,664 | ---- | M] () -- C:\Program Files\QIP 2012\Core\voip.dll
MOD - [2011.11.15 06:39:54 | 000,420,920 | ---- | M] () -- C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Chrome\Application\15.0.874.121\ppgooglenaclpluginchrome.dll
MOD - [2011.11.15 06:39:53 | 003,702,840 | ---- | M] () -- C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Chrome\Application\15.0.874.121\pdf.dll
MOD - [2011.11.15 06:38:16 | 000,122,952 | ---- | M] () -- C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Chrome\Application\15.0.874.121\avutil-51.dll
MOD - [2011.11.15 06:38:15 | 000,222,280 | ---- | M] () -- C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Chrome\Application\15.0.874.121\avformat-53.dll
MOD - [2011.11.15 06:38:14 | 001,746,504 | ---- | M] () -- C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Chrome\Application\15.0.874.121\avcodec-53.dll
MOD - [2011.11.15 03:36:18 | 008,593,056 | ---- | M] () -- C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Chrome\Application\15.0.874.121\gcswf32.dll
MOD - [2010.12.09 20:29:16 | 000,096,112 | ---- | M] () -- C:\Program Files\DivX\DivX Update\DivXUpdateCheck.dll
MOD - [2010.12.09 20:28:24 | 001,226,608 | ---- | M] () -- C:\Program Files\DivX\DivX Update\DivXUpdate.exe
MOD - [2010.08.16 12:30:28 | 000,623,104 | ---- | M] () -- D:\Winamp\System\jnetlib.w5s
MOD - [2010.08.16 12:30:28 | 000,291,328 | ---- | M] () -- D:\Winamp\Plugins\ml_local.dll
MOD - [2010.08.16 12:30:28 | 000,237,056 | ---- | M] () -- D:\Winamp\System\aacPlusDecoder.w5s
MOD - [2010.08.16 12:30:28 | 000,214,528 | ---- | M] () -- D:\Winamp\Plugins\ml_pmp.dll
MOD - [2010.08.16 12:30:28 | 000,174,080 | ---- | M] () -- D:\Winamp\System\auth.w5s
MOD - [2010.08.16 12:30:28 | 000,154,624 | ---- | M] () -- D:\Winamp\System\jpeg.w5s
MOD - [2010.08.16 12:30:28 | 000,135,680 | ---- | M] () -- D:\Winamp\Plugins\pmp_ipod.dll
MOD - [2010.08.16 12:30:28 | 000,125,952 | ---- | M] () -- D:\Winamp\Plugins\ml_online.dll
MOD - [2010.08.16 12:30:28 | 000,115,200 | ---- | M] () -- D:\Winamp\Plugins\pmp_p4s.dll
MOD - [2010.08.16 12:30:28 | 000,090,112 | ---- | M] () -- D:\Winamp\System\xml.w5s
MOD - [2010.08.16 12:30:28 | 000,086,528 | ---- | M] () -- D:\Winamp\System\png.w5s
MOD - [2010.08.16 12:30:28 | 000,084,992 | ---- | M] () -- D:\Winamp\System\playlist.w5s
MOD - [2010.08.16 12:30:28 | 000,083,968 | ---- | M] () -- D:\Winamp\tataki.dll
MOD - [2010.08.16 12:30:28 | 000,082,944 | ---- | M] () -- D:\Winamp\Plugins\ml_playlists.dll
MOD - [2010.08.16 12:30:28 | 000,061,952 | ---- | M] () -- D:\Winamp\Plugins\ml_plg.dll
MOD - [2010.08.16 12:30:28 | 000,056,320 | ---- | M] () -- D:\Winamp\Plugins\ml_impex.dll
MOD - [2010.08.16 12:30:28 | 000,052,224 | ---- | M] () -- D:\Winamp\Plugins\ml_history.dll
MOD - [2010.08.16 12:30:28 | 000,051,200 | ---- | M] () -- D:\Winamp\Plugins\pmp_android.dll
MOD - [2010.08.16 12:30:28 | 000,051,200 | ---- | M] () -- D:\Winamp\Plugins\out_ds.dll
MOD - [2010.08.16 12:30:28 | 000,047,616 | ---- | M] () -- D:\Winamp\zlib.dll
MOD - [2010.08.16 12:30:28 | 000,047,104 | ---- | M] () -- D:\Winamp\Plugins\pmp_usb.dll
MOD - [2010.08.16 12:30:28 | 000,035,840 | ---- | M] () -- D:\Winamp\System\timer.w5s
MOD - [2010.08.16 12:30:28 | 000,033,792 | ---- | M] () -- D:\Winamp\Plugins\ml_rg.dll
MOD - [2010.08.16 12:30:28 | 000,031,232 | ---- | M] () -- D:\Winamp\Plugins\ml_transcode.dll
MOD - [2010.08.16 12:30:28 | 000,022,528 | ---- | M] () -- D:\Winamp\Plugins\out_disk.dll
MOD - [2010.08.16 12:30:28 | 000,021,504 | ---- | M] () -- D:\Winamp\System\tagz.w5s
MOD - [2010.08.16 12:30:28 | 000,020,992 | ---- | M] () -- D:\Winamp\Plugins\pmp_njb.dll
MOD - [2010.08.16 12:30:28 | 000,019,456 | ---- | M] () -- D:\Winamp\System\gif.w5s
MOD - [2010.08.16 12:30:28 | 000,019,456 | ---- | M] () -- D:\Winamp\System\bmp.w5s
MOD - [2010.08.16 12:30:28 | 000,018,432 | ---- | M] () -- D:\Winamp\Plugins\out_wave.dll
MOD - [2010.08.16 12:30:28 | 000,016,896 | ---- | M] () -- D:\Winamp\System\dlmgr.w5s
MOD - [2010.08.16 12:30:28 | 000,016,384 | ---- | M] () -- D:\Winamp\System\gracenote.w5s
MOD - [2010.08.16 12:30:28 | 000,014,336 | ---- | M] () -- D:\Winamp\System\filereader.w5s
MOD - [2010.08.16 12:30:28 | 000,013,824 | ---- | M] () -- D:\Winamp\System\primo.w5s
MOD - [2010.08.16 12:30:27 | 001,735,680 | ---- | M] () -- D:\Winamp\Plugins\gen_ff.dll
MOD - [2010.08.16 12:30:27 | 000,340,992 | ---- | M] () -- D:\Winamp\Plugins\freeform\wacs\freetype\freetype.wac
MOD - [2010.08.16 12:30:27 | 000,312,320 | ---- | M] () -- D:\Winamp\Plugins\in_wm.dll
MOD - [2010.08.16 12:30:27 | 000,306,176 | ---- | M] () -- D:\Winamp\Plugins\gen_ml.dll
MOD - [2010.08.16 12:30:27 | 000,285,184 | ---- | M] () -- D:\Winamp\Plugins\in_mp3.dll
MOD - [2010.08.16 12:30:27 | 000,252,928 | ---- | M] () -- D:\Winamp\libsndfile.dll
MOD - [2010.08.16 12:30:27 | 000,216,576 | ---- | M] () -- D:\Winamp\Plugins\in_vorbis.dll
MOD - [2010.08.16 12:30:27 | 000,199,680 | ---- | M] () -- D:\Winamp\Plugins\ml_disc.dll
MOD - [2010.08.16 12:30:27 | 000,183,808 | ---- | M] () -- D:\Winamp\Plugins\gen_jumpex.dll
MOD - [2010.08.16 12:30:27 | 000,164,352 | ---- | M] () -- D:\Winamp\Plugins\in_mod.dll
MOD - [2010.08.16 12:30:27 | 000,109,568 | ---- | M] () -- D:\Winamp\Plugins\in_midi.dll
MOD - [2010.08.16 12:30:27 | 000,102,400 | ---- | M] () -- D:\Winamp\Plugins\in_cdda.dll
MOD - [2010.08.16 12:30:27 | 000,075,776 | ---- | M] () -- D:\Winamp\nde.dll
MOD - [2010.08.16 12:30:27 | 000,074,752 | ---- | M] () -- D:\Winamp\Plugins\in_nsv.dll
MOD - [2010.08.16 12:30:27 | 000,072,192 | ---- | M] () -- D:\Winamp\Plugins\in_dshow.dll
MOD - [2010.08.16 12:30:27 | 000,068,096 | ---- | M] () -- D:\Winamp\Plugins\in_avi.dll
MOD - [2010.08.16 12:30:27 | 000,059,904 | ---- | M] () -- D:\Winamp\Plugins\in_flac.dll
MOD - [2010.08.16 12:30:27 | 000,057,344 | ---- | M] () -- D:\Winamp\Plugins\gen_orgler.dll
MOD - [2010.08.16 12:30:27 | 000,053,248 | ---- | M] () -- D:\Winamp\nsutil.dll
MOD - [2010.08.16 12:30:27 | 000,050,176 | ---- | M] () -- D:\Winamp\Plugins\in_mp4.dll
MOD - [2010.08.16 12:30:27 | 000,049,152 | ---- | M] () -- D:\Winamp\Plugins\in_mkv.dll
MOD - [2010.08.16 12:30:27 | 000,043,008 | ---- | M] () -- D:\Winamp\Plugins\in_flv.dll
MOD - [2010.08.16 12:30:27 | 000,028,672 | ---- | M] () -- D:\Winamp\Plugins\ml_autotag.dll
MOD - [2010.08.16 12:30:27 | 000,027,648 | ---- | M] () -- D:\Winamp\Plugins\ml_bookmarks.dll
MOD - [2010.08.16 12:30:27 | 000,027,648 | ---- | M] () -- D:\Winamp\Plugins\gen_hotkeys.dll
MOD - [2010.08.16 12:30:27 | 000,025,600 | ---- | M] () -- D:\Winamp\Plugins\gen_tray.dll
MOD - [2010.08.16 12:30:27 | 000,023,552 | ---- | M] () -- D:\Winamp\Plugins\in_swf.dll
MOD - [2010.08.16 12:30:27 | 000,016,896 | ---- | M] () -- D:\Winamp\Plugins\in_wave.dll
MOD - [2010.08.16 12:30:27 | 000,007,168 | ---- | M] () -- D:\Winamp\Plugins\in_linein.dll
MOD - [2010.05.19 06:56:55 | 011,808,768 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web\7aa78faf3f04ea408fcd68d5a00aa912\System.Web.ni.dll
MOD - [2010.05.19 06:56:42 | 000,962,560 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuration\1a6368c192d0e74f886e89de1e82b3d5\System.Configuration.ni.dll
MOD - [2010.05.19 06:56:36 | 000,026,624 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Accessibility\fc3bd4ef9cb4c741b56b041e994510de\Accessibility.ni.dll
MOD - [2010.05.18 13:50:41 | 001,732,608 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DisplaysManager.Graphics.Wizard\2.0.3497.43021__90ba9c70f846762e\CLI.Aspect.DisplaysManager.Graphics.Wizard.dll
MOD - [2010.05.18 13:50:41 | 000,360,448 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.Graphics.Runtime\2.0.3497.43002__90ba9c70f846762e\CLI.Caste.Graphics.Runtime.dll
MOD - [2010.05.18 13:50:41 | 000,204,800 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.InfoCentre.Graphics.Wizard\2.0.3497.43023__90ba9c70f846762e\CLI.Aspect.InfoCentre.Graphics.Wizard.dll
MOD - [2010.05.18 13:50:41 | 000,077,824 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceTV.Graphics.Runtime\2.0.3497.43077__90ba9c70f846762e\CLI.Aspect.DeviceTV.Graphics.Runtime.dll
MOD - [2010.05.18 13:50:41 | 000,040,960 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.Graphics.Wizard\2.0.3497.43017__90ba9c70f846762e\CLI.Caste.Graphics.Wizard.dll
MOD - [2010.05.18 13:50:41 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.HotkeysHandling.Graphics.Runtime\2.0.3497.43011__90ba9c70f846762e\CLI.Aspect.HotkeysHandling.Graphics.Runtime.dll
MOD - [2010.05.18 13:50:40 | 000,491,520 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.TransCode.Graphics.Wizard\2.0.3497.43097__90ba9c70f846762e\CLI.Aspect.TransCode.Graphics.Wizard.dll
MOD - [2010.05.18 13:50:40 | 000,331,776 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.Radeon3D.Graphics.Dashboard\2.0.3497.43062__90ba9c70f846762e\CLI.Aspect.Radeon3D.Graphics.Dashboard.dll
MOD - [2010.05.18 13:50:40 | 000,094,208 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.Radeon3D.Graphics.Wizard\2.0.3497.43063__90ba9c70f846762e\CLI.Aspect.Radeon3D.Graphics.Wizard.dll
MOD - [2010.05.18 13:50:40 | 000,073,728 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.Graphics.Dashboard\2.0.3497.43011__90ba9c70f846762e\CLI.Caste.Graphics.Dashboard.dll
MOD - [2010.05.18 13:50:40 | 000,065,536 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceCV.Graphics.Runtime\2.0.3497.43057__90ba9c70f846762e\CLI.Aspect.DeviceCV.Graphics.Runtime.dll
MOD - [2010.05.18 13:50:40 | 000,061,440 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.Radeon3D.Graphics.Runtime\2.0.3497.43062__90ba9c70f846762e\CLI.Aspect.Radeon3D.Graphics.Runtime.dll
MOD - [2010.05.18 13:50:40 | 000,045,056 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.Welcome.Graphics.Dashboard\2.0.3497.43098__90ba9c70f846762e\CLI.Aspect.Welcome.Graphics.Dashboard.dll
MOD - [2010.05.18 13:50:40 | 000,036,864 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceProperty.Graphics.Runtime\2.0.3497.43047__90ba9c70f846762e\CLI.Aspect.DeviceProperty.Graphics.Runtime.dll
MOD - [2010.05.18 13:50:39 | 000,798,720 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.MMVideo.Graphics.Dashboard\2.0.3497.43050__90ba9c70f846762e\CLI.Aspect.MMVideo.Graphics.Dashboard.dll
MOD - [2010.05.18 13:50:39 | 000,409,600 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.MMVideo.Graphics.Wizard\2.0.3497.43071__90ba9c70f846762e\CLI.Aspect.MMVideo.Graphics.Wizard.dll
MOD - [2010.05.18 13:50:39 | 000,196,608 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.InfoCentre.Graphics.Dashboard\2.0.3497.43023__90ba9c70f846762e\CLI.Aspect.InfoCentre.Graphics.Dashboard.dll
MOD - [2010.05.18 13:50:39 | 000,094,208 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DisplaysOptions.Graphics.Dashboard\2.0.3497.43054__90ba9c70f846762e\CLI.Aspect.DisplaysOptions.Graphics.Dashboard.dll
MOD - [2010.05.18 13:50:39 | 000,090,112 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.MMVideo.Graphics.Runtime\2.0.3497.43049__90ba9c70f846762e\CLI.Aspect.MMVideo.Graphics.Runtime.dll
MOD - [2010.05.18 13:50:38 | 000,573,440 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DisplaysColour2.Graphics.Dashboard\2.0.3497.43024__90ba9c70f846762e\CLI.Aspect.DisplaysColour2.Graphics.Dashboard.dll
MOD - [2010.05.18 13:50:38 | 000,409,600 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DisplaysManager.Graphics.Dashboard\2.0.3497.43012__90ba9c70f846762e\CLI.Aspect.DisplaysManager.Graphics.Dashboard.dll
MOD - [2010.05.18 13:50:38 | 000,393,216 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceCRT.Graphics.Dashboard\2.0.3497.43048__90ba9c70f846762e\CLI.Aspect.DeviceCRT.Graphics.Dashboard.dll
MOD - [2010.05.18 13:50:38 | 000,360,448 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceDFP.Graphics.Dashboard\2.0.3497.43043__90ba9c70f846762e\CLI.Aspect.DeviceDFP.Graphics.Dashboard.dll
MOD - [2010.05.18 13:50:38 | 000,270,336 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.CrossDisplay.Graphics.Dashboard\1.0.0.0__90ba9c70f846762e\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll
MOD - [2010.05.18 13:50:38 | 000,061,440 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceDFP.Graphics.Runtime\2.0.3497.43048__90ba9c70f846762e\CLI.Aspect.DeviceDFP.Graphics.Runtime.dll
MOD - [2010.05.18 13:50:38 | 000,040,960 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DisplaysOptions.Graphics.Runtime\2.0.3497.43054__90ba9c70f846762e\CLI.Aspect.DisplaysOptions.Graphics.Runtime.dll
MOD - [2010.05.18 13:50:38 | 000,040,960 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DisplaysColour2.Graphics.Runtime\2.0.3497.43028__90ba9c70f846762e\CLI.Aspect.DisplaysColour2.Graphics.Runtime.dll
MOD - [2010.05.18 13:50:38 | 000,040,960 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceCRT.Graphics.Runtime\2.0.3497.43048__90ba9c70f846762e\CLI.Aspect.DeviceCRT.Graphics.Runtime.dll
MOD - [2010.05.18 13:50:38 | 000,032,768 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceLCD.Graphics.Runtime\2.0.3497.43055__90ba9c70f846762e\CLI.Aspect.DeviceLCD.Graphics.Runtime.dll
MOD - [2010.05.18 13:50:38 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Plugin.Hotkeys.Shared\2.0.3496.37256__90ba9c70f846762e\AEM.Plugin.Hotkeys.Shared.dll
MOD - [2010.05.18 13:50:38 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Actions.CCAA.Shared\2.0.3496.37255__90ba9c70f846762e\AEM.Actions.CCAA.Shared.dll
MOD - [2010.05.18 13:50:38 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Plugin.WinMessages.Shared\2.0.3496.37269__90ba9c70f846762e\AEM.Plugin.WinMessages.Shared.dll
MOD - [2010.05.18 13:50:38 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Plugin.REG.Shared\2.0.3496.37313__90ba9c70f846762e\AEM.Plugin.REG.Shared.dll
MOD - [2010.05.18 13:50:38 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Plugin.GD.Shared\2.0.3496.37309__90ba9c70f846762e\AEM.Plugin.GD.Shared.dll
MOD - [2010.05.18 13:50:38 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Plugin.EEU.Shared\2.0.3496.37267__90ba9c70f846762e\AEM.Plugin.EEU.Shared.dll
MOD - [2010.05.18 13:50:38 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Plugin.DPPE.Shared\2.0.3496.37309__90ba9c70f846762e\AEM.Plugin.DPPE.Shared.dll
MOD - [2010.05.18 13:50:38 | 000,007,168 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\atixclib\1.0.0.0__90ba9c70f846762e\atixclib.dll
MOD - [2010.05.18 13:50:37 | 000,135,168 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.Graphics.Shared\2.0.3496.37259__90ba9c70f846762e\CLI.Caste.Graphics.Shared.dll
MOD - [2010.05.18 13:50:37 | 000,094,208 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Foundation\2.0.3496.37252__90ba9c70f846762e\CLI.Foundation.dll
MOD - [2010.05.18 13:50:37 | 000,065,536 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceTV.Graphics.Shared\2.0.3496.37286__90ba9c70f846762e\CLI.Aspect.DeviceTV.Graphics.Shared.dll
MOD - [2010.05.18 13:50:37 | 000,057,344 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.MMVideo.Graphics.Shared\2.0.3496.37283__90ba9c70f846762e\CLI.Aspect.MMVideo.Graphics.Shared.dll
MOD - [2010.05.18 13:50:37 | 000,053,248 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.Radeon3D.Graphics.Shared\2.0.3496.37286__90ba9c70f846762e\CLI.Aspect.Radeon3D.Graphics.Shared.dll
MOD - [2010.05.18 13:50:37 | 000,053,248 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceCRT.Graphics.Shared\2.0.3496.37283__90ba9c70f846762e\CLI.Aspect.DeviceCRT.Graphics.Shared.dll
MOD - [2010.05.18 13:50:37 | 000,049,152 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceDFP.Graphics.Shared\2.0.3496.37283__90ba9c70f846762e\CLI.Aspect.DeviceDFP.Graphics.Shared.dll
MOD - [2010.05.18 13:50:37 | 000,045,056 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\DEM.Graphics.I0601\2.0.2573.17685__90ba9c70f846762e\DEM.Graphics.I0601.dll
MOD - [2010.05.18 13:50:37 | 000,040,960 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.TransCode.Graphics.Shared\2.0.3496.37303__90ba9c70f846762e\CLI.Aspect.TransCode.Graphics.Shared.dll
MOD - [2010.05.18 13:50:37 | 000,040,960 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceCV.Graphics.Shared\2.0.3496.37286__90ba9c70f846762e\CLI.Aspect.DeviceCV.Graphics.Shared.dll
MOD - [2010.05.18 13:50:37 | 000,032,768 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\LOG.Foundation\2.0.3496.37251__90ba9c70f846762e\LOG.Foundation.dll
MOD - [2010.05.18 13:50:37 | 000,032,768 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceProperty.Graphics.Shared\2.0.3496.37269__90ba9c70f846762e\CLI.Aspect.DeviceProperty.Graphics.Shared.dll
MOD - [2010.05.18 13:50:37 | 000,028,672 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\NEWAEM.Foundation\2.0.3496.37252__90ba9c70f846762e\NEWAEM.Foundation.dll
MOD - [2010.05.18 13:50:37 | 000,028,672 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Foundation.XManifest\2.0.3496.37369__90ba9c70f846762e\CLI.Foundation.XManifest.dll
MOD - [2010.05.18 13:50:37 | 000,028,672 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DisplaysColour2.Graphics.Shared\2.0.3496.37282__90ba9c70f846762e\CLI.Aspect.DisplaysColour2.Graphics.Shared.dll
MOD - [2010.05.18 13:50:37 | 000,028,672 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceLCD.Graphics.Shared\2.0.3496.37279__90ba9c70f846762e\CLI.Aspect.DeviceLCD.Graphics.Shared.dll
MOD - [2010.05.18 13:50:37 | 000,024,576 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Dashboard.Shared\2.0.3496.37258__90ba9c70f846762e\CLI.Component.Dashboard.Shared.dll
MOD - [2010.05.18 13:50:37 | 000,024,576 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DisplaysOptions.Graphics.Shared\2.0.3496.37284__90ba9c70f846762e\CLI.Aspect.DisplaysOptions.Graphics.Shared.dll
MOD - [2010.05.18 13:50:37 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Wizard.Shared\2.0.3496.37258__90ba9c70f846762e\CLI.Component.Wizard.Shared.dll
MOD - [2010.05.18 13:50:37 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Client.Shared\2.0.3496.37253__90ba9c70f846762e\CLI.Component.Client.Shared.dll
MOD - [2010.05.18 13:50:37 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.HotkeysHandling.Graphics.Shared\2.0.3496.37267__90ba9c70f846762e\CLI.Aspect.HotkeysHandling.Graphics.Shared.dll
MOD - [2010.05.18 13:50:37 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\MOM.Foundation\2.0.3496.37264__90ba9c70f846762e\MOM.Foundation.dll
MOD - [2010.05.18 13:50:37 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\DEM.Graphics.I0706\2.0.2743.23304__90ba9c70f846762e\DEM.Graphics.I0706.dll
MOD - [2010.05.18 13:50:37 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\DEM.Graphics\2.0.3496.37279__90ba9c70f846762e\DEM.Graphics.dll
MOD - [2010.05.18 13:50:37 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\DEM.Foundation\2.0.2573.17684__90ba9c70f846762e\DEM.Foundation.dll
MOD - [2010.05.18 13:50:37 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Runtime.Shared\2.0.3496.37260__90ba9c70f846762e\CLI.Component.Runtime.Shared.dll
MOD - [2010.05.18 13:50:37 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.Graphics.Wizard.Shared\2.0.3496.37281__90ba9c70f846762e\CLI.Caste.Graphics.Wizard.Shared.dll
MOD - [2010.05.18 13:50:37 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.Graphics.Dashboard.Shared\2.0.3496.37261__90ba9c70f846762e\CLI.Caste.Graphics.Dashboard.Shared.dll
MOD - [2010.05.18 13:50:36 | 000,651,264 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\ResourceManagement.Foundation.Implementation\2.0.3497.43122__90ba9c70f846762e\ResourceManagement.Foundation.Implementation.dll
MOD - [2010.05.18 13:50:36 | 000,405,504 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Wizard\2.0.3497.43017__90ba9c70f846762e\CLI.Component.Wizard.dll
MOD - [2010.05.18 13:50:36 | 000,106,496 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\MOM.Implementation\2.0.3497.43091__90ba9c70f846762e\MOM.Implementation.dll
MOD - [2010.05.18 13:50:36 | 000,065,536 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\LOG.Foundation.Implementation\2.0.3497.43090__90ba9c70f846762e\LOG.Foundation.Implementation.dll
MOD - [2010.05.18 13:50:36 | 000,045,056 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Plugin.Source.Kit.Server\2.0.3497.43102__90ba9c70f846762e\AEM.Plugin.Source.Kit.Server.dll
MOD - [2010.05.18 13:50:36 | 000,040,960 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Foundation.Private\2.0.3496.37253__90ba9c70f846762e\CLI.Foundation.Private.dll
MOD - [2010.05.18 13:50:36 | 000,036,864 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\LOG.Foundation.Private\2.0.3496.37254__90ba9c70f846762e\LOG.Foundation.Private.dll
MOD - [2010.05.18 13:50:36 | 000,028,672 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.CustomFormats.Graphics.Shared\2.0.3496.37265__90ba9c70f846762e\CLI.Aspect.CustomFormats.Graphics.Shared.dll
MOD - [2010.05.18 13:50:36 | 000,024,576 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Wizard.Shared.Private\2.0.3496.37263__90ba9c70f846762e\CLI.Component.Wizard.Shared.Private.dll
MOD - [2010.05.18 13:50:36 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\ResourceManagement.Foundation.Private\2.0.3496.37255__90ba9c70f846762e\ResourceManagement.Foundation.Private.dll
MOD - [2010.05.18 13:50:36 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\LOG.Foundation.Implementation.Private\2.0.3496.37262__90ba9c70f846762e\LOG.Foundation.Implementation.Private.dll
MOD - [2010.05.18 13:50:36 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\APM.Foundation\2.0.3496.37266__90ba9c70f846762e\APM.Foundation.dll
MOD - [2010.05.18 13:50:36 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Server.Shared\2.0.3496.37257__90ba9c70f846762e\AEM.Server.Shared.dll
MOD - [2010.05.18 13:50:36 | 000,014,848 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AxInterop.WBOCXLib\1.0.0.0__90ba9c70f846762e\AxInterop.WBOCXLib.dll
MOD - [2010.05.18 13:50:36 | 000,013,312 | ---- | M] () -- C:\WINDOWS\assembly\GAC\Interop.WBOCXLib\1.0.0.0__90ba9c70f846762e\Interop.WBOCXLib.dll
MOD - [2010.05.18 13:50:36 | 000,007,168 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Runtime.Extension.EEU\2.0.3497.42999__90ba9c70f846762e\CLI.Component.Runtime.Extension.EEU.dll
MOD - [2010.05.18 13:50:35 | 001,212,416 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Dashboard\2.0.3497.43007__90ba9c70f846762e\CLI.Component.Dashboard.dll
MOD - [2010.05.18 13:50:35 | 000,552,960 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Systemtray\2.0.3497.43086__90ba9c70f846762e\CLI.Component.Systemtray.dll
MOD - [2010.05.18 13:50:35 | 000,061,440 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\APM.Server\2.0.3497.42997__90ba9c70f846762e\APM.Server.dll
MOD - [2010.05.18 13:50:35 | 000,057,344 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.SkinFactory\2.0.3497.43001__90ba9c70f846762e\CLI.Component.SkinFactory.dll
MOD - [2010.05.18 13:50:35 | 000,057,344 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Runtime\2.0.3497.43000__90ba9c70f846762e\CLI.Component.Runtime.dll
MOD - [2010.05.18 13:50:35 | 000,045,056 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Runtime.Shared.Private\2.0.3496.37261__90ba9c70f846762e\CLI.Component.Runtime.Shared.Private.dll
MOD - [2010.05.18 13:50:35 | 000,045,056 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Server\2.0.3497.42998__90ba9c70f846762e\AEM.Server.dll
MOD - [2010.05.18 13:50:35 | 000,040,960 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Client.Shared.Private\2.0.3496.37258__90ba9c70f846762e\CLI.Component.Client.Shared.Private.dll
MOD - [2010.05.18 13:50:35 | 000,032,768 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\ATICCCom\2.0.0.0__90ba9c70f846762e\ATICCCom.dll
MOD - [2010.05.18 13:50:35 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Dashboard.Shared.Private\2.0.3496.37264__90ba9c70f846762e\CLI.Component.Dashboard.Shared.Private.dll
MOD - [2010.05.18 13:50:35 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.Graphics.Runtime.Shared.Private\2.0.3496.37287__90ba9c70f846762e\CLI.Caste.Graphics.Runtime.Shared.Private.dll
MOD - [2010.05.18 13:50:35 | 000,019,456 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CCC.Implementation\2.0.3497.43091__90ba9c70f846762e\CCC.Implementation.dll
MOD - [2010.05.18 13:49:30 | 005,640,192 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml\22d73fb564acb14baa842e99e2665d5c\System.Xml.ni.dll
MOD - [2010.05.18 13:49:27 | 013,107,200 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c8ff2189674e8f458997a7943280be54\System.Windows.Forms.ni.dll
MOD - [2010.05.18 13:49:21 | 001,626,112 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing\097aaa311f339140a985ac908069842c\System.Drawing.ni.dll
MOD - [2010.05.18 13:49:19 | 008,093,696 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\9dc7544bbb87bf4dbe427a037603a96a\System.ni.dll
MOD - [2010.05.18 13:49:11 | 011,415,552 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\37975d8dd7755d42aea76930d155896e\mscorlib.ni.dll
MOD - [2010.05.18 13:48:57 | 000,299,008 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
MOD - [2010.02.17 23:49:10 | 000,323,584 | ---- | M] () -- D:\Winrar\rarlng.dll
MOD - [2010.02.10 17:10:12 | 000,141,824 | ---- | M] () -- D:\Winrar\RarExt.dll
MOD - [2008.02.12 13:59:08 | 001,288,192 | ---- | M] () -- C:\WINDOWS\system32\quartz.dll
MOD - [2008.02.12 13:59:08 | 000,192,512 | ---- | M] () -- C:\WINDOWS\system32\qcap.dll
MOD - [2008.02.12 13:59:00 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll
MOD - [2008.02.12 13:58:48 | 000,059,904 | ---- | M] () -- C:\WINDOWS\system32\devenum.dll
MOD - [2007.05.10 12:18:10 | 000,835,584 | ---- | M] () -- C:\WINDOWS\vsnp325.exe
MOD - [2007.04.21 08:30:54 | 000,270,336 | ---- | M] () -- C:\WINDOWS\tsnp325.exe


========== Win32 Services (SafeList) ==========

SRV - [2009.11.16 08:12:54 | 000,020,680 | ---- | M] (ESET) [On_Demand | Stopped] -- C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe -- (EhttpSrv)
SRV - [2009.11.16 08:04:30 | 000,735,960 | ---- | M] (ESET) [Auto | Running] -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe -- (ekrn)
SRV - [2008.04.07 09:17:30 | 000,430,592 | ---- | M] (Nokia.) [On_Demand | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)


========== Driver Services (SafeList) ==========

DRV - [2010.06.14 01:32:54 | 000,036,608 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\FsUsbExDisk.Sys -- (FsUsbExDisk)
DRV - [2010.04.27 03:25:16 | 000,123,648 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bmdm.sys -- (ss_bmdm)
DRV - [2010.04.27 03:25:16 | 000,098,432 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bbus.sys -- (ss_bbus) SAMSUNG USB Mobile Device (WDM)
DRV - [2010.04.27 03:25:16 | 000,014,848 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bmdfl.sys -- (ss_bmdfl) SAMSUNG USB Mobile Modem (Filter)
DRV - [2010.02.08 17:15:44 | 005,860,384 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2009.11.18 06:17:00 | 001,395,800 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Monfilt.sys -- (Monfilt)
DRV - [2009.11.18 06:16:00 | 001,691,480 | ---- | M] (Creative) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Ambfilt.sys -- (Ambfilt)
DRV - [2009.11.16 08:06:50 | 000,096,408 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\epfwtdir.sys -- (epfwtdir)
DRV - [2009.11.16 08:03:36 | 000,108,792 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ehdrv.sys -- (ehdrv)
DRV - [2009.11.16 07:56:12 | 000,116,520 | ---- | M] (ESET) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\eamon.sys -- (eamon)
DRV - [2009.07.30 02:22:44 | 004,411,392 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2009.06.25 02:24:00 | 003,734,976 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtKHDMI.sys -- (RTHDMIAzAudService)
DRV - [2007.11.22 14:55:52 | 000,105,088 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp)
DRV - [2007.10.02 03:06:40 | 000,451,968 | ---- | M] (Ralink Technology, Corp.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\rt73.sys -- (RT73)
DRV - [2007.09.17 15:53:26 | 000,021,632 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2007.07.24 09:21:44 | 010,394,624 | ---- | M] (Sonix Co. Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\snp325.sys -- (SNP325) USB PC Camera (SNPSTD325)
DRV - [2007.06.29 13:47:34 | 000,034,304 | ---- | M] (AMD, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AmdLLD.sys -- (AmdLLD)
DRV - [2007.04.16 15:46:34 | 000,033,792 | ---- | M] (Advanced Micro Devices) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AmdPPM.sys -- (AmdPPM)
DRV - [2007.04.03 13:57:52 | 000,023,176 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s116nd5.sys -- (s116nd5) Sony Ericsson Device 116 USB Ethernet Emulation SEMC116 (NDIS)
DRV - [2007.04.03 12:57:54 | 000,099,080 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s116unic.sys -- (s116unic) Sony Ericsson Device 116 USB Ethernet Emulation SEMC116 (WDM)
DRV - [2007.04.03 12:57:42 | 000,083,336 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s116bus.sys -- (s116bus) Sony Ericsson Device 116 driver (WDM)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========



IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-789336058-2049760794-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qip.ru
IE - HKU\S-1-5-21-789336058-2049760794-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.qip.ru
IE - HKU\S-1-5-21-789336058-2049760794-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://search.qip.ru/ie
IE - HKU\S-1-5-21-789336058-2049760794-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://search.qip.ru
IE - HKU\S-1-5-21-789336058-2049760794-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = [binary data]
IE - HKU\S-1-5-21-789336058-2049760794-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://qip.ru
IE - HKU\S-1-5-21-789336058-2049760794-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKU\S-1-5-21-789336058-2049760794-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.qip.ru/ie
IE - HKU\S-1-5-21-789336058-2049760794-839522115-1003\..\URLSearchHook: - No CLSID value found
IE - HKU\S-1-5-21-789336058-2049760794-839522115-1003\..\URLSearchHook: {95289393-33EA-4F8D-B952-483415B9C955} - C:\Documents and Settings\Maros\Application Data\Microsoft\Internet Explorer\qipsearchbar.dll (qip.ru)
IE - HKU\S-1-5-21-789336058-2049760794-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-789336058-2049760794-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = 10.17.0.2:8080

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX OVS Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=1.1.5: D:\VLC\npvlc.dll (the VideoLAN Team)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: D:\adobe\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files\DivX\DivX Plus Web Player\firefox\html5video [2010.12.25 12:50:44 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{6904342A-8307-11DF-A508-4AE2DFD72085}: C:\Program Files\DivX\DivX Plus Web Player\firefox\wpa [2010.12.25 12:50:44 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2010.05.19 06:33:28 | 000,000,000 | ---D | M]


========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Shockwave Flash (Enabled) = C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Chrome\Application\15.0.874.121\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
CHR - plugin: Java Deployment Toolkit 6.0.150.3 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npdeploytk.dll
CHR - plugin: Java(TM) Platform SE 6 U15 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Adobe Acrobat (Disabled) = D:\adobe\Reader\Browser\nppdf32.dll
CHR - plugin: Silverlight Plug-In (Enabled) = C:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll
CHR - plugin: DivX Web Player (Enabled) = C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = C:\Program Files\Windows Media Player\npdsplay.dll
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Chrome\Application\15.0.874.121\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Chrome\Application\15.0.874.121\pdf.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll
CHR - plugin: GanymedeNet.Detector (Enabled) = D:\mozilla\plugins\npganymedenet.dll
CHR - plugin: Winamp Application Detector (Enabled) = D:\mozilla\plugins\npwachk.dll
CHR - plugin: Google Update (Enabled) = C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Update\1.3.21.69\npGoogleUpdate3.dll
CHR - plugin: DivX OVS Helper Plug-in (Enabled) = C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll
CHR - plugin: Picasa (Enabled) = D:\Picasa3\npPicasa3.dll
CHR - plugin: VLC Multimedia Plug-in (Enabled) = D:\VLC\npvlc.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: Listhings = C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aooobeadnfddkmlcfcmjhjldpbefmnjf\2.1_0\
CHR - Extension: YouTube = C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.2_0\
CHR - Extension: DivX HiQ = C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\fnjbmmemklcjgepojigaapkoodmkgbae\2.1.0.900_0\
CHR - Extension: All Angry Birds Games = C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\ljfnfdpdhodljeiddhcagbflgjidhhhf\1.3.2_0\
CHR - Extension: DivX Plus Web Player HTML5 \u003Cvideo\u003E = C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.0.900_0\
CHR - Extension: Gmail = C:\Documents and Settings\Maros\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\6.1.4_0\

O1 HOSTS File: ([2006.02.28 13:00:00 | 000,000,734 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
O2 - BHO: (DivX HiQ) - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
O2 - BHO: (QIPBHO Class) - {95289393-33EA-4F8D-B952-483415B9C955} - C:\Documents and Settings\Maros\Application Data\Microsoft\Internet Explorer\qipsearchbar.dll (qip.ru)
O3 - HKU\S-1-5-21-789336058-2049760794-839522115-1003\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.
O4 - HKLM..\Run: [Adobe Reader Speed Launcher] D:\adobe\Reader\Reader_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [amd_dc_opt] C:\Program Files\AMD\Dual-Core Optimizer\amd_dc_opt.exe (AMD)
O4 - HKLM..\Run: [DivX Download Manager] C:\Program Files\DivX\DivX Plus Web Player\DDmService.exe (DivX, LLC)
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [egui] C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ESET)
O4 - HKLM..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe (Ahead Software Gmbh)
O4 - HKLM..\Run: [NPSStartup] File not found
O4 - HKLM..\Run: [snp325] C:\WINDOWS\vsnp325.exe ()
O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [tsnp325] C:\WINDOWS\tsnp325.exe ()
O4 - HKLM..\Run: [WinampAgent] D:\Winamp\winampa.exe (Nullsoft, Inc.)
O4 - HKU\S-1-5-21-789336058-2049760794-839522115-1003..\Run: [Infium] C:\Program Files\QIP 2012\qip.exe (QIP)
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-789336058-2049760794-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O9 - Extra Button: ICQ7.1 - {71BFC818-0CED-42D6-9C87-5142918957EE} - D:\icq\ICQ7.1\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ7.1 - {71BFC818-0CED-42D6-9C87-5142918957EE} - D:\icq\ICQ7.1\ICQ.exe (ICQ, LLC.)
O16 - DPF: {0D6709DD-4ED8-40CA-B459-2757AEEF7BEE} http://download.gigabyte.com.tw/object/Dldrv.ocx (Dldrv2 Control)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://download.microsoft.com/download/ ... ontrol.cab (Windows Genuine Advantage Validation Tool)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://update.microsoft.com/windowsupda ... 4187782765 (WUWebControl Class)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://www.update.microsoft.com/microso ... 4249062578 (MUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{C1E2D1EC-D8C8-45A9-9546-F1FF9058B2B1}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{E632E4E2-C00B-4A50-BC3C-DAB64FD601A4}: DhcpNameServer = 192.168.1.1
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) -C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O24 - Desktop Components:0 () - file:///C:/DOCUME~1/Maros/LOCALS~1/Temp/msohtmlclip1/01/clip_image002.jpg
O24 - Desktop Components:1 (My Current Home Page) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\Maros\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Maros\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010.05.18 13:26:24 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 7 Days ==========

[2011.11.21 19:22:27 | 000,584,192 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Maros\Desktop\OTL.exe
[2011.11.20 23:15:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Maros\Application Data\Malwarebytes
[2011.11.20 23:14:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2011.11.20 22:57:40 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2011.11.20 22:57:39 | 000,000,000 | ---D | C] -- C:\rsit
[2011.11.20 22:42:25 | 000,000,000 | ---D | C] -- C:\Program Files\Lame for Audacity
[2011.09.29 17:44:16 | 000,047,360 | ---- | C] (VSO Software) -- C:\Documents and Settings\Maros\Application Data\pcouffin.sys
[2011.06.26 09:06:23 | 000,053,248 | ---- | C] ( ) -- C:\WINDOWS\System32\csnp325.dll
[2011.06.26 09:06:22 | 000,147,456 | ---- | C] ( ) -- C:\WINDOWS\System32\rsnp325.dll
[2011.06.26 09:06:22 | 000,057,344 | ---- | C] ( ) -- C:\WINDOWS\System32\vsnp325.dll
[6 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files - Modified Within 7 Days ==========

[2011.11.21 21:32:00 | 000,001,016 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-789336058-2049760794-839522115-1003UA.job
[2011.11.21 21:27:00 | 000,000,372 | ---- | M] () -- C:\WINDOWS\tasks\Updater.job
[2011.11.21 19:28:55 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2011.11.21 19:22:32 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Maros\Desktop\OTL.exe
[2011.11.21 15:55:32 | 000,000,278 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-789336058-2049760794-839522115-1003.job
[2011.11.21 15:55:31 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2011.11.21 15:55:30 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011.11.21 00:01:44 | 008,650,752 | -H-- | M] () -- C:\Documents and Settings\Maros\NTUSER.DAT
[2011.11.21 00:01:44 | 000,000,178 | -HS- | M] () -- C:\Documents and Settings\Maros\ntuser.ini
[2011.11.20 23:43:28 | 000,002,283 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Skype.lnk
[2011.11.20 22:57:33 | 000,781,383 | ---- | M] () -- C:\Documents and Settings\Maros\Desktop\RSIT.exe
[2011.11.20 22:56:10 | 734,660,608 | ---- | M] () -- C:\Documents and Settings\Maros\Desktop\izba-1408-cz(2).avi
[2011.11.20 22:45:56 | 000,000,651 | ---- | M] () -- C:\Documents and Settings\Maros\Desktop\Odkaz na audacity.lnk
[2011.11.20 22:43:09 | 004,985,901 | ---- | M] () -- C:\Documents and Settings\Maros\Desktop\19 Nový člověk.mp3
[2011.11.20 21:07:23 | 000,002,565 | ---- | M] () -- C:\Documents and Settings\Maros\Desktop\Microsoft Office Word 2007.lnk
[2011.11.20 20:58:51 | 000,002,284 | ---- | M] () -- C:\Documents and Settings\Maros\Desktop\Google Chrome.lnk
[2011.11.20 15:48:16 | 000,173,568 | ---- | M] () -- C:\Documents and Settings\Maros\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.11.20 13:32:00 | 000,000,964 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-789336058-2049760794-839522115-1003Core.job
[2011.11.20 12:20:03 | 000,000,749 | ---- | M] () -- C:\Documents and Settings\Maros\Application Data\Microsoft\Internet Explorer\Quick Launch\QIP 2012.lnk
[2011.11.20 12:20:03 | 000,000,731 | ---- | M] () -- C:\Documents and Settings\Maros\Desktop\QIP 2012.lnk
[2011.11.17 22:17:46 | 000,222,458 | ---- | M] () -- C:\Documents and Settings\Maros\Desktop\fyzika 011.jpg
[2011.11.17 22:17:00 | 000,323,261 | ---- | M] () -- C:\Documents and Settings\Maros\Desktop\fyzika 010.jpg
[2011.11.17 22:16:13 | 000,326,666 | ---- | M] () -- C:\Documents and Settings\Maros\Desktop\fyzika 009.jpg
[2011.11.17 22:15:30 | 000,335,889 | ---- | M] () -- C:\Documents and Settings\Maros\Desktop\fyzika 008.jpg
[2011.11.17 22:14:51 | 000,223,648 | ---- | M] () -- C:\Documents and Settings\Maros\Desktop\fyzika 007.jpg
[2011.11.17 22:14:19 | 000,272,324 | ---- | M] () -- C:\Documents and Settings\Maros\Desktop\fyzika 006.jpg
[2011.11.17 22:13:13 | 000,313,596 | ---- | M] () -- C:\Documents and Settings\Maros\Desktop\fyzika 005.jpg
[2011.11.17 22:12:39 | 000,335,630 | ---- | M] () -- C:\Documents and Settings\Maros\Desktop\fyzika 004.jpg
[2011.11.17 22:12:05 | 000,325,314 | ---- | M] () -- C:\Documents and Settings\Maros\Desktop\fyzika 003.jpg
[2011.11.17 22:11:17 | 000,235,918 | ---- | M] () -- C:\Documents and Settings\Maros\Desktop\fyzika 002.jpg
[2011.11.17 22:10:34 | 000,261,524 | ---- | M] () -- C:\Documents and Settings\Maros\Desktop\fyzika 001.jpg
[2011.11.17 22:09:39 | 000,227,648 | ---- | M] () -- C:\Documents and Settings\Maros\Desktop\fyzika.jpg
[2011.11.17 20:59:35 | 000,105,423 | ---- | M] () -- C:\Documents and Settings\Maros\Desktop\64597_163219400357587_100000085844581_505145_5169486_n.jpg
[2011.11.15 08:01:25 | 000,383,254 | ---- | M] () -- C:\Documents and Settings\Maros\Desktop\geo seminar 004.jpg
[2011.11.15 08:00:43 | 000,416,889 | ---- | M] () -- C:\Documents and Settings\Maros\Desktop\geo seminar 003.jpg
[2011.11.15 07:58:48 | 000,483,282 | ---- | M] () -- C:\Documents and Settings\Maros\Desktop\geo seminar 002.jpg
[2011.11.15 07:58:01 | 000,421,190 | ---- | M] () -- C:\Documents and Settings\Maros\Desktop\geo seminar 001.jpg
[2011.11.15 07:56:40 | 000,355,784 | ---- | M] () -- C:\Documents and Settings\Maros\Desktop\geo seminar.jpg
[2011.11.15 07:54:28 | 000,326,963 | ---- | M] () -- C:\Documents and Settings\Maros\Desktop\chemia.jpg
[2011.11.15 07:53:25 | 000,321,327 | ---- | M] () -- C:\Documents and Settings\Maros\Desktop\chemia (6).jpg
[2011.11.15 07:52:37 | 000,311,060 | ---- | M] () -- C:\Documents and Settings\Maros\Desktop\chemia (5).jpg
[2011.11.15 07:52:04 | 000,347,271 | ---- | M] () -- C:\Documents and Settings\Maros\Desktop\chemia (4).jpg
[2011.11.15 07:51:26 | 000,378,233 | ---- | M] () -- C:\Documents and Settings\Maros\Desktop\chemia (3).jpg
[2011.11.15 07:50:42 | 000,388,925 | ---- | M] () -- C:\Documents and Settings\Maros\Desktop\chemia (2).jpg
[2011.11.15 07:49:31 | 000,337,187 | ---- | M] () -- C:\Documents and Settings\Maros\Desktop\chemia (1).jpg
[6 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011.11.21 19:28:55 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2011.11.20 22:57:30 | 000,781,383 | ---- | C] () -- C:\Documents and Settings\Maros\Desktop\RSIT.exe
[2011.11.20 22:45:56 | 000,000,651 | ---- | C] () -- C:\Documents and Settings\Maros\Desktop\Odkaz na audacity.lnk
[2011.11.20 22:42:44 | 004,985,901 | ---- | C] () -- C:\Documents and Settings\Maros\Desktop\19 Nový člověk.mp3
[2011.11.20 20:38:08 | 734,660,608 | ---- | C] () -- C:\Documents and Settings\Maros\Desktop\izba-1408-cz(2).avi
[2011.11.17 22:17:26 | 000,222,458 | ---- | C] () -- C:\Documents and Settings\Maros\Desktop\fyzika 011.jpg
[2011.11.17 22:16:41 | 000,323,261 | ---- | C] () -- C:\Documents and Settings\Maros\Desktop\fyzika 010.jpg
[2011.11.17 22:15:53 | 000,326,666 | ---- | C] () -- C:\Documents and Settings\Maros\Desktop\fyzika 009.jpg
[2011.11.17 22:15:11 | 000,335,889 | ---- | C] () -- C:\Documents and Settings\Maros\Desktop\fyzika 008.jpg
[2011.11.17 22:14:32 | 000,223,648 | ---- | C] () -- C:\Documents and Settings\Maros\Desktop\fyzika 007.jpg
[2011.11.17 22:13:59 | 000,272,324 | ---- | C] () -- C:\Documents and Settings\Maros\Desktop\fyzika 006.jpg
[2011.11.17 22:12:54 | 000,313,596 | ---- | C] () -- C:\Documents and Settings\Maros\Desktop\fyzika 005.jpg
[2011.11.17 22:12:19 | 000,335,630 | ---- | C] () -- C:\Documents and Settings\Maros\Desktop\fyzika 004.jpg
[2011.11.17 22:11:45 | 000,325,314 | ---- | C] () -- C:\Documents and Settings\Maros\Desktop\fyzika 003.jpg
[2011.11.17 22:10:58 | 000,235,918 | ---- | C] () -- C:\Documents and Settings\Maros\Desktop\fyzika 002.jpg
[2011.11.17 22:10:15 | 000,261,524 | ---- | C] () -- C:\Documents and Settings\Maros\Desktop\fyzika 001.jpg
[2011.11.17 22:09:11 | 000,227,648 | ---- | C] () -- C:\Documents and Settings\Maros\Desktop\fyzika.jpg
[2011.11.17 20:59:35 | 000,105,423 | ---- | C] () -- C:\Documents and Settings\Maros\Desktop\64597_163219400357587_100000085844581_505145_5169486_n.jpg
[2011.11.15 08:01:06 | 000,383,254 | ---- | C] () -- C:\Documents and Settings\Maros\Desktop\geo seminar 004.jpg
[2011.11.15 08:00:24 | 000,416,889 | ---- | C] () -- C:\Documents and Settings\Maros\Desktop\geo seminar 003.jpg
[2011.11.15 07:58:29 | 000,483,282 | ---- | C] () -- C:\Documents and Settings\Maros\Desktop\geo seminar 002.jpg
[2011.11.15 07:57:42 | 000,421,190 | ---- | C] () -- C:\Documents and Settings\Maros\Desktop\geo seminar 001.jpg
[2011.11.15 07:56:21 | 000,355,784 | ---- | C] () -- C:\Documents and Settings\Maros\Desktop\geo seminar.jpg
[2011.11.15 07:54:09 | 000,326,963 | ---- | C] () -- C:\Documents and Settings\Maros\Desktop\chemia.jpg
[2011.11.15 07:53:06 | 000,321,327 | ---- | C] () -- C:\Documents and Settings\Maros\Desktop\chemia (6).jpg
[2011.11.15 07:52:18 | 000,311,060 | ---- | C] () -- C:\Documents and Settings\Maros\Desktop\chemia (5).jpg
[2011.11.15 07:51:45 | 000,347,271 | ---- | C] () -- C:\Documents and Settings\Maros\Desktop\chemia (4).jpg
[2011.11.15 07:51:07 | 000,378,233 | ---- | C] () -- C:\Documents and Settings\Maros\Desktop\chemia (3).jpg
[2011.11.15 07:50:23 | 000,388,925 | ---- | C] () -- C:\Documents and Settings\Maros\Desktop\chemia (2).jpg
[2011.11.15 07:49:04 | 000,337,187 | ---- | C] () -- C:\Documents and Settings\Maros\Desktop\chemia (1).jpg
[2011.09.29 17:44:17 | 000,087,608 | ---- | C] () -- C:\Documents and Settings\Maros\Application Data\inst.exe
[2011.09.29 17:44:17 | 000,007,887 | ---- | C] () -- C:\Documents and Settings\Maros\Application Data\pcouffin.cat
[2011.09.29 17:44:16 | 000,001,144 | ---- | C] () -- C:\Documents and Settings\Maros\Application Data\pcouffin.inf
[2011.09.29 17:40:35 | 000,001,057 | ---- | C] () -- C:\Documents and Settings\Maros\Application Data\vso_ts_preview.xml
[2011.06.26 09:06:30 | 000,835,584 | ---- | C] () -- C:\WINDOWS\vsnp325.exe
[2011.06.26 09:06:29 | 000,270,336 | ---- | C] () -- C:\WINDOWS\tsnp325.exe
[2011.06.26 09:06:29 | 000,015,498 | ---- | C] () -- C:\WINDOWS\snp325.ini
[2011.02.28 20:05:59 | 004,809,094 | -H-- | C] () -- C:\Documents and Settings\Maros\Local Settings\Application Data\IconCache.db
[2011.02.21 13:48:35 | 000,000,065 | ---- | C] () -- C:\WINDOWS\FISHUI.INI
[2011.02.09 18:09:01 | 000,027,648 | ---- | C] () -- C:\WINDOWS\System32\AVSredirect.dll
[2010.11.16 19:13:19 | 000,110,592 | ---- | C] () -- C:\WINDOWS\System32\FsUsbExDevice.Dll
[2010.11.16 19:13:19 | 000,036,608 | ---- | C] () -- C:\WINDOWS\System32\FsUsbExDisk.Sys
[2010.11.16 19:13:12 | 000,002,528 | ---- | C] () -- C:\Documents and Settings\Maros\Application Data\$_hpcst$.hpc
[2010.06.24 13:19:12 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2010.05.19 09:04:17 | 000,173,568 | ---- | C] () -- C:\Documents and Settings\Maros\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.05.18 15:17:18 | 000,474,832 | ---- | C] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2010.05.18 15:17:17 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2010.05.18 15:16:20 | 000,264,616 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010.05.18 13:52:31 | 000,073,728 | R--- | C] () -- C:\WINDOWS\System32\RtNicProp32.dll
[2010.05.18 13:52:08 | 000,069,232 | ---- | C] () -- C:\Documents and Settings\Maros\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
[2010.05.18 13:51:51 | 000,000,000 | ---- | C] () -- C:\WINDOWS\ativpsrm.bin
[2010.05.18 13:48:18 | 000,887,724 | R--- | C] () -- C:\WINDOWS\System32\ativva6x.dat
[2010.05.18 13:48:18 | 000,197,655 | R--- | C] () -- C:\WINDOWS\System32\atiicdxx.dat
[2010.05.18 13:48:18 | 000,000,003 | R--- | C] () -- C:\WINDOWS\System32\ativva5x.dat
[2010.05.18 13:47:07 | 000,207,400 | R--- | C] () -- C:\WINDOWS\GSetup.exe
[2010.05.18 13:47:07 | 000,000,010 | ---- | C] () -- C:\WINDOWS\GSetup.ini
[2010.05.18 13:28:05 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2010.05.18 13:26:24 | 000,000,000 | ---- | C] () -- C:\WINDOWS\control.ini
[2010.05.18 13:25:37 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest
[2010.05.18 13:25:34 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest
[2010.05.18 13:23:55 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2010.05.18 13:23:43 | 000,000,037 | ---- | C] () -- C:\WINDOWS\vbaddin.ini
[2010.05.18 13:23:43 | 000,000,036 | ---- | C] () -- C:\WINDOWS\vb.ini
[2010.05.18 13:23:08 | 000,013,223 | ---- | C] () -- C:\WINDOWS\System32\tslabels.ini
[2010.05.18 13:23:07 | 000,001,931 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.ini
[2009.10.08 13:23:54 | 000,921,600 | ---- | C] () -- C:\WINDOWS\System32\vorbisenc.dll
[2009.10.08 13:23:54 | 000,237,568 | ---- | C] () -- C:\WINDOWS\System32\OggDS.dll
[2009.10.08 13:23:54 | 000,188,416 | ---- | C] () -- C:\WINDOWS\System32\vorbis.dll
[2009.10.08 13:23:54 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\Ogg.dll
[2009.08.21 16:58:40 | 000,122,880 | ---- | C] () -- C:\WINDOWS\System32\AitVirtualComInstall.exe
[2009.07.20 20:10:48 | 000,307,200 | ---- | C] () -- C:\WINDOWS\System32\InstallVCOM.exe
[2009.02.18 06:55:22 | 000,294,912 | ---- | C] () -- C:\WINDOWS\System32\ATIODE.exe
[2009.02.03 09:52:04 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\ATIODCLI.exe
[2008.05.04 17:39:34 | 000,002,560 | ---- | C] () -- C:\WINDOWS\System32\ViaClassCoInstaller.dll_rename
[2007.10.25 17:26:10 | 000,005,632 | ---- | C] () -- C:\WINDOWS\System32\drivers\StarOpen.sys
[2006.02.28 13:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2006.02.28 13:00:00 | 001,288,192 | ---- | C] () -- C:\WINDOWS\System32\quartz.dll
[2006.02.28 13:00:00 | 001,015,477 | ---- | C] () -- C:\WINDOWS\System32\esentprf.ini
[2006.02.28 13:00:00 | 000,733,696 | ---- | C] () -- C:\WINDOWS\System32\qedwipes.dll
[2006.02.28 13:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2006.02.28 13:00:00 | 000,562,176 | ---- | C] () -- C:\WINDOWS\System32\qedit.dll
[2006.02.28 13:00:00 | 000,498,742 | ---- | C] () -- C:\WINDOWS\System32\dxmasf.dll
[2006.02.28 13:00:00 | 000,403,664 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2006.02.28 13:00:00 | 000,386,048 | ---- | C] () -- C:\WINDOWS\System32\qdvd.dll
[2006.02.28 13:00:00 | 000,355,112 | ---- | C] () -- C:\WINDOWS\System32\msjetoledb40.dll
[2006.02.28 13:00:00 | 000,279,040 | ---- | C] () -- C:\WINDOWS\System32\qdv.dll
[2006.02.28 13:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2006.02.28 13:00:00 | 000,270,848 | ---- | C] () -- C:\WINDOWS\System32\sbe.dll
[2006.02.28 13:00:00 | 000,252,928 | ---- | C] () -- C:\WINDOWS\System32\compatui.dll
[2006.02.28 13:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2006.02.28 13:00:00 | 000,199,168 | ---- | C] () -- C:\WINDOWS\System32\ir32_32.dll
[2006.02.28 13:00:00 | 000,192,512 | ---- | C] () -- C:\WINDOWS\System32\qcap.dll
[2006.02.28 13:00:00 | 000,186,880 | ---- | C] () -- C:\WINDOWS\System32\encdec.dll
[2006.02.28 13:00:00 | 000,094,282 | ---- | C] () -- C:\WINDOWS\System32\msencode.dll
[2006.02.28 13:00:00 | 000,070,656 | ---- | C] () -- C:\WINDOWS\System32\amstream.dll
[2006.02.28 13:00:00 | 000,069,886 | ---- | C] () -- C:\WINDOWS\System32\edit.com
[2006.02.28 13:00:00 | 000,063,266 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2006.02.28 13:00:00 | 000,059,904 | ---- | C] () -- C:\WINDOWS\System32\devenum.dll
[2006.02.28 13:00:00 | 000,053,840 | ---- | C] () -- C:\WINDOWS\System32\dosx.exe
[2006.02.28 13:00:00 | 000,053,478 | ---- | C] () -- C:\WINDOWS\System32\tcpmon.ini
[2006.02.28 13:00:00 | 000,050,620 | ---- | C] () -- C:\WINDOWS\System32\command.com
[2006.02.28 13:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2006.02.28 13:00:00 | 000,042,809 | ---- | C] () -- C:\WINDOWS\System32\key01.sys
[2006.02.28 13:00:00 | 000,042,537 | ---- | C] () -- C:\WINDOWS\System32\keyboard.sys
[2006.02.28 13:00:00 | 000,039,274 | ---- | C] () -- C:\WINDOWS\System32\mem.exe
[2006.02.28 13:00:00 | 000,035,648 | ---- | C] () -- C:\WINDOWS\System32\ntio411.sys
[2006.02.28 13:00:00 | 000,035,424 | ---- | C] () -- C:\WINDOWS\System32\ntio412.sys
[2006.02.28 13:00:00 | 000,035,328 | ---- | C] () -- C:\WINDOWS\System32\mciqtz32.dll
[2006.02.28 13:00:00 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\ntio804.sys
[2006.02.28 13:00:00 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\ntio404.sys
[2006.02.28 13:00:00 | 000,033,840 | ---- | C] () -- C:\WINDOWS\System32\ntio.sys
[2006.02.28 13:00:00 | 000,029,370 | ---- | C] () -- C:\WINDOWS\System32\ntdos411.sys
[2006.02.28 13:00:00 | 000,029,274 | ---- | C] () -- C:\WINDOWS\System32\ntdos412.sys
[2006.02.28 13:00:00 | 000,029,146 | ---- | C] () -- C:\WINDOWS\System32\ntdos804.sys
[2006.02.28 13:00:00 | 000,029,146 | ---- | C] () -- C:\WINDOWS\System32\ntdos404.sys
[2006.02.28 13:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2006.02.28 13:00:00 | 000,027,866 | ---- | C] () -- C:\WINDOWS\System32\ntdos.sys
[2006.02.28 13:00:00 | 000,027,097 | ---- | C] () -- C:\WINDOWS\System32\country.sys
[2006.02.28 13:00:00 | 000,020,634 | ---- | C] () -- C:\WINDOWS\System32\debug.exe
[2006.02.28 13:00:00 | 000,019,694 | ---- | C] () -- C:\WINDOWS\System32\graphics.com
[2006.02.28 13:00:00 | 000,015,360 | ---- | C] () -- C:\WINDOWS\System32\tsd32.dll
[2006.02.28 13:00:00 | 000,014,710 | ---- | C] () -- C:\WINDOWS\System32\kb16.com
[2006.02.28 13:00:00 | 000,014,336 | ---- | C] () -- C:\WINDOWS\System32\msdmo.dll
[2006.02.28 13:00:00 | 000,013,312 | ---- | C] () -- C:\WINDOWS\System32\win87em.dll
[2006.02.28 13:00:00 | 000,012,642 | ---- | C] () -- C:\WINDOWS\System32\edlin.exe
[2006.02.28 13:00:00 | 000,012,498 | ---- | C] () -- C:\WINDOWS\System32\append.exe
[2006.02.28 13:00:00 | 000,012,082 | ---- | C] () -- C:\WINDOWS\System32\rsvp.ini
[2006.02.28 13:00:00 | 000,011,753 | ---- | C] () -- C:\WINDOWS\System32\setver.exe
[2006.02.28 13:00:00 | 000,010,240 | ---- | C] () -- C:\WINDOWS\System32\scriptpw.dll
[2006.02.28 13:00:00 | 000,010,110 | ---- | C] () -- C:\WINDOWS\System32\mqperf.ini
[2006.02.28 13:00:00 | 000,009,029 | ---- | C] () -- C:\WINDOWS\System32\ansi.sys
[2006.02.28 13:00:00 | 000,008,424 | ---- | C] () -- C:\WINDOWS\System32\exe2bin.exe
[2006.02.28 13:00:00 | 000,007,052 | ---- | C] () -- C:\WINDOWS\System32\nlsfunc.exe
[2006.02.28 13:00:00 | 000,006,877 | ---- | C] () -- C:\WINDOWS\System32\pschdprf.ini
[2006.02.28 13:00:00 | 000,004,768 | ---- | C] () -- C:\WINDOWS\System32\himem.sys
[2006.02.28 13:00:00 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2006.02.28 13:00:00 | 000,004,461 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2006.02.28 13:00:00 | 000,004,126 | ---- | C] () -- C:\WINDOWS\System32\msdxmlc.dll
[2006.02.28 13:00:00 | 000,003,458 | ---- | C] () -- C:\WINDOWS\System32\rasctrs.ini
[2006.02.28 13:00:00 | 000,003,338 | ---- | C] () -- C:\WINDOWS\System32\redir.exe
[2006.02.28 13:00:00 | 000,003,252 | ---- | C] () -- C:\WINDOWS\System32\nw16.exe
[2006.02.28 13:00:00 | 000,002,891 | ---- | C] () -- C:\WINDOWS\System32\perfci.ini
[2006.02.28 13:00:00 | 000,002,732 | ---- | C] () -- C:\WINDOWS\System32\perfwci.ini
[2006.02.28 13:00:00 | 000,002,656 | ---- | C] () -- C:\WINDOWS\System32\netware.drv
[2006.02.28 13:00:00 | 000,001,788 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2006.02.28 13:00:00 | 000,001,405 | ---- | C] () -- C:\WINDOWS\msdfmap.ini
[2006.02.28 13:00:00 | 000,001,152 | ---- | C] () -- C:\WINDOWS\System32\perffilt.ini
[2006.02.28 13:00:00 | 000,001,131 | ---- | C] () -- C:\WINDOWS\System32\loadfix.com
[2006.02.28 13:00:00 | 000,001,129 | ---- | C] () -- C:\WINDOWS\System32\vwipxspx.exe
[2006.02.28 13:00:00 | 000,000,882 | ---- | C] () -- C:\WINDOWS\System32\share.exe
[2006.02.28 13:00:00 | 000,000,882 | ---- | C] () -- C:\WINDOWS\System32\fastopen.exe
[2006.02.28 13:00:00 | 000,000,817 | ---- | C] () -- C:\WINDOWS\System32\mscdexnt.exe
[2006.02.28 13:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2006.02.28 13:00:00 | 000,000,631 | ---- | C] () -- C:\WINDOWS\win.ini
[2006.02.28 13:00:00 | 000,000,343 | ---- | C] () -- C:\WINDOWS\System32\prodspec.ini
[2006.02.28 13:00:00 | 000,000,231 | ---- | C] () -- C:\WINDOWS\system.ini
[2001.08.17 23:36:42 | 000,055,296 | ---- | C] () -- C:\WINDOWS\System32\dvdplay.exe
[2001.08.17 23:36:28 | 000,157,696 | ---- | C] () -- C:\WINDOWS\System32\paqsp.dll

========== LOP Check ==========

[2010.05.19 06:33:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ESET
[2010.05.23 10:42:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ICQ
[2010.11.16 19:14:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PC Suite
[2010.11.28 11:18:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Samsung
[2011.09.29 18:50:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\vsosdk
[2011.02.24 13:34:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\WombatUpdater
[2011.09.22 16:12:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\DataCast
[2011.08.14 11:52:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Day 1 Studios
[2011.07.17 17:05:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\DVDVideoSoft
[2010.08.19 11:13:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\GanymedeNet
[2011.07.14 19:59:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\ICQ
[2010.12.25 12:50:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Local
[2010.11.16 19:14:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\PC Suite
[2011.10.23 11:59:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\QIP
[2011.10.23 11:58:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\QipGuard
[2011.01.23 20:31:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Rovio
[2011.05.28 15:15:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Samsung
[2010.10.17 20:34:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Smart FLV Converter Pro
[2011.02.21 13:35:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Software Informer
[2010.05.20 16:19:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Uniblue
[2011.10.30 14:53:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Vso
[2011.03.25 17:08:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\XnView
[2010.06.17 17:15:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Maros\Application Data\Zoner
[2011.11.21 21:27:00 | 000,000,372 | ---- | M] () -- C:\WINDOWS\Tasks\Updater.job

========== Purity Check ==========



< End of report >

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu logu- spomalenie PC

#10 Příspěvek od vyosek »

Nic se nedeje, dejte mi par minutek nez napisu opravny skript
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu logu- spomalenie PC

#11 Příspěvek od vyosek »

:arrow: Spustte znovu OTL
  • Pokud pouzivate Win Vista ci W7, kliknete na OTL pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do spodniho okenka Vlastni skenovani/opravy vlozte skript nize
  • Kód: Vybrat vše

    :otl
    IE - HKU\S-1-5-21-789336058-2049760794-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qip.ru
    IE - HKU\S-1-5-21-789336058-2049760794-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.qip.ru
    IE - HKU\S-1-5-21-789336058-2049760794-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://search.qip.ru/ie
    IE - HKU\S-1-5-21-789336058-2049760794-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://search.qip.ru
    IE - HKU\S-1-5-21-789336058-2049760794-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = [binary data]
    IE - HKU\S-1-5-21-789336058-2049760794-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://qip.ru
    IE - HKU\S-1-5-21-789336058-2049760794-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
    IE - HKU\S-1-5-21-789336058-2049760794-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.qip.ru/ie
    IE - HKU\S-1-5-21-789336058-2049760794-839522115-1003\..\URLSearchHook: - No CLSID value found
    IE - HKU\S-1-5-21-789336058-2049760794-839522115-1003\..\URLSearchHook: {95289393-33EA-4F8D-B952-483415B9C955} - C:\Documents and Settings\Maros\Application Data\Microsoft\Internet Explorer\qipsearchbar.dll (qip.ru)
    IE - HKU\S-1-5-21-789336058-2049760794-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = 10.17.0.2:8080
    O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
    O2 - BHO: (DivX HiQ) - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
    O2 - BHO: (QIPBHO Class) - {95289393-33EA-4F8D-B952-483415B9C955} - C:\Documents and Settings\Maros\Application Data\Microsoft\Internet Explorer\qipsearchbar.dll (qip.ru)
    O3 - HKU\S-1-5-21-789336058-2049760794-839522115-1003\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.
    [6 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
    [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
    
    :reg
    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    "NeroCheck"=-
    "WinampAgent"=-
    "Adobe Reader Speed Launcher"=-
    "Adobe ARM"=-
    "NPSStartup"=-
    "DivXUpdate"=-
    "DivX Download Manager"=-
    "SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-06-09 254696]
    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    "Google Update"=-
    "Skype"=-
    "QIP Internet Guardian"=-
    "Infium"=-
    
    :files
    C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-789336058-2049760794-839522115-1003Core.job
    C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-789336058-2049760794-839522115-1003UA.job
    C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-789336058-2049760794-839522115-1003.job
    C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-789336058-2049760794-839522115-1003.job
    C:\WINDOWS\tasks\Updater.job
    %windir%\system32\*.tmp.dll /s
    %windir%\system32\SET*.tmp /s
    %windir%\*.tmp
    
    :commands
    [RESETHOSTS]
    [EMPTYTEMP]
    [EMPTYFLASH]
  • Nasledne kliknete na Run Fix
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Sindy
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 20 lis 2011 22:54

Re: Prosím o kontrolu logu- spomalenie PC

#12 Příspěvek od Sindy »

All processes killed
========== OTL ==========
HKU\S-1-5-21-789336058-2049760794-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Page_URL| /E : value set successfully!
HKU\S-1-5-21-789336058-2049760794-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Search_URL| /E : value set successfully!
HKU\S-1-5-21-789336058-2049760794-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main\\Search Bar| /E : value set successfully!
HKU\S-1-5-21-789336058-2049760794-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main\\Search Page| /E : value set successfully!
HKU\S-1-5-21-789336058-2049760794-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main\\Secondary Start Pages| /E : value set successfully!
HKU\S-1-5-21-789336058-2049760794-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
HKU\S-1-5-21-789336058-2049760794-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Search\\Default_Search_URL| /E : value set successfully!
HKU\S-1-5-21-789336058-2049760794-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Search\\SearchAssistant| /E : value set successfully!
Registry value HKEY_USERS\S-1-5-21-789336058-2049760794-839522115-1003\Software\Microsoft\Internet Explorer\URLSearchHooks\\ deleted successfully.
Registry value HKEY_USERS\S-1-5-21-789336058-2049760794-839522115-1003\Software\Microsoft\Internet Explorer\URLSearchHooks\\{95289393-33EA-4F8D-B952-483415B9C955} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{95289393-33EA-4F8D-B952-483415B9C955}\ deleted successfully.
C:\Documents and Settings\Maros\Application Data\Microsoft\Internet Explorer\qipsearchbar.dll moved successfully.
HKU\S-1-5-21-789336058-2049760794-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{326E768D-4182-46FD-9C16-1449A49795F4}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{326E768D-4182-46FD-9C16-1449A49795F4}\ deleted successfully.
C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{593DDEC6-7468-4cdd-90E1-42DADAA222E9}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{593DDEC6-7468-4cdd-90E1-42DADAA222E9}\ deleted successfully.
File C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95289393-33EA-4F8D-B952-483415B9C955}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{95289393-33EA-4F8D-B952-483415B9C955}\ not found.
File C:\Documents and Settings\Maros\Application Data\Microsoft\Internet Explorer\qipsearchbar.dll not found.
Registry value HKEY_USERS\S-1-5-21-789336058-2049760794-839522115-1003\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ not found.
C:\WINDOWS\002861_.tmp deleted successfully.
C:\WINDOWS\DUMP4371.tmp deleted successfully.
C:\WINDOWS\SET29.tmp deleted successfully.
C:\WINDOWS\SET3.tmp deleted successfully.
C:\WINDOWS\SET4.tmp deleted successfully.
C:\WINDOWS\SET8.tmp deleted successfully.
C:\WINDOWS\System32\CONFIG.TMP deleted successfully.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\NeroCheck deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\WinampAgent deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe Reader Speed Launcher deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\NPSStartup deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\DivXUpdate deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\DivX Download Manager deleted successfully.
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\"SunJavaUpdateSched"|C:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-06-09 254696] /E :invalid edit format. Invalid data type.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\Google Update deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\Skype deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\QIP Internet Guardian not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\Infium deleted successfully.
========== FILES ==========
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-789336058-2049760794-839522115-1003Core.job moved successfully.
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-789336058-2049760794-839522115-1003UA.job moved successfully.
C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-789336058-2049760794-839522115-1003.job moved successfully.
C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-789336058-2049760794-839522115-1003.job moved successfully.
C:\WINDOWS\tasks\Updater.job moved successfully.
File/Folder C:\WINDOWS\system32\*.tmp.dll not found.
File/Folder C:\WINDOWS\system32\SET*.tmp not found.
File/Folder C:\WINDOWS\*.tmp not found.
========== COMMANDS ==========
C:\WINDOWS\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: All Users

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: Maros
->Temp folder emptied: 51069677 bytes
->Temporary Internet Files folder emptied: 25397252 bytes
->Java cache emptied: 120007 bytes
->Google Chrome cache emptied: 382863860 bytes
->Flash cache emptied: 16081 bytes

User: NetworkService
->Temp folder emptied: 3542 bytes
->Temporary Internet Files folder emptied: 1821740 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 307284 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 4168898374 bytes

Total Files Cleaned = 4 416,00 mb


[EMPTYFLASH]

User: All Users

User: Default User

User: LocalService

User: Maros
->Flash cache emptied: 0 bytes

User: NetworkService

Total Flash Files Cleaned = 0,00 mb


OTL by OldTimer - Version 3.2.31.0 log created on 11212011_220023

Files\Folders moved on Reboot...

Registry entries deleted on Reboot...

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu logu- spomalenie PC

#13 Příspěvek od vyosek »

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stahnete a spustte
  • Kliknete na Start a potvrdte OK
  • Program uklidi a restartuje pc
  • Po pouziti utilitu smazte
:arrow: Stahnete Ccleaner (viz muj podpis)
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: Doporucuji provest defragmentaci disku
  • Nejjednodussi (ale nejmene ucinny) zpusob je pomoci utility ve windowsech
    • Kliknete na Tento pocitac, dale na disk kliknete pravym tlacitkem, vyberte Vlastnosti
    • prepnete se do zalozky Nastroje
    • Nyni vidite pomucky Defragmentace - spustte ji kliknutim na Defragmentovat
    • Toto provedte se vsemi disky
  • Dalsi moznosti (a mnou doporucenou) je pres programek Defraggler http://www.stahuj.centrum.cz/utility_a_ ... efraggler/
    • Program stahnete, nainstalujte (dejte fajfku pryc u yahoo toolbaru) a spustte
    • Kliknete na Analyzovat
    • Pokud je ve sloupci Fragmentováno vice jak 5%, doporucuji provest defragmentaci (klik na Defragmentovat)
    • Postup provedte se vsemi disky
  • Posledni moznost je pres jednoduchy programek JKDefrag http://www.stahuj.centrum.cz/utility_a_ ... /jkdefrag/
    • Vyhodou programku je, ze se neinstaluje
    • Staci tedy jen stahnout dle verze vaseho OS a rozbalit
    • Nasledne spustit pomoci souboru JKDefrag pripadne JKDefrag64
    • Probehne analyza disku a nasledne i defragmentace
:arrow: Napiste co PC
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Sindy
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 20 lis 2011 22:54

Re: Prosím o kontrolu logu- spomalenie PC

#14 Příspěvek od Sindy »

Dakujem za pomoc, pc uz fici ako ma, ani sa pomaly nezapina ako predtym. :worship:

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu logu- spomalenie PC

#15 Příspěvek od vyosek »

:arrow: OTC http://oldtimer.geekstogo.com/OTC.exe
  • Stahnete a spustte
  • Kliknete na CleanUp a potvrdte YES
  • Program uklidi a restartuje PC
:arrow: A je to :thumbsup:

Nemate zac, rad jsem pomohl :worship: Zase nekdy Obrázek
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Odpovědět