Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

spomaleny pc, net , mozny virus

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
branco
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 21 lis 2008 18:38

spomaleny pc, net , mozny virus

#1 Příspěvek od branco »

prosim o kontrolu logu z RSIT .


Logfile of random's system information tool 1.09 (written by random/random)
Run by termoinvest at 2011-12-10 18:30:33
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 32 GB (83%) free of 38 GB
Total RAM: 503 MB (39% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:30:44, on 10.12.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Razer\Lachesis\razerhid.exe
C:\Program Files\PowerISO\PWRISOVM.EXE
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Razer\Lachesis\razerofa.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\HP\Digital Imaging\bin\hpqbam08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe
C:\Documents and Settings\termoinvest\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\termoinvest\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\termoinvest\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\termoinvest\Dokumenty\Downloads\RSIT.exe
C:\Program Files\trend micro\termoinvest.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource= ... =CT1750559
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll
O2 - BHO: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [Lachesis] C:\Program Files\Razer\Lachesis\razerhid.exe
O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\termoinvest\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O9 - Extra button: Show or hide HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Realtime Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\avguard.exe

--
End of file - 5442 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-329068152-412668190-1644491937-1003Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-329068152-412668190-1644491937-1003UA.job

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\termoinvest\Data aplikací\Mozilla\Firefox\Profiles\9r2bilyt.default

prefs.js - "extensions.enabledItems" - "{972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.8"

"smartwebprinting@hp.com"=C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll

C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files\Mozilla Firefox\components\
browser.xpt
browserdirprovider.dll
brwsrcmp.dll
components.list
compreg.dat
FeedConverter.js
FeedProcessor.js
FeedWriter.js
fuelApplication.js
GPSDGeolocationProvider.js
jsconsole-clhandler.js
NetworkGeolocationProvider.js
npCouponPrinter.xpt
nsAddonRepository.js
nsBadCertHandler.js
nsBlocklistService.js
nsBrowserContentHandler.js
nsBrowserGlue.js
nsContentDispatchChooser.js
nsContentPrefService.js
nsDefaultCLH.js
nsDownloadManagerUI.js
nsExtensionManager.js
nsFormAutoComplete.js
nsHandlerService.js
nsHelperAppDlg.js
nsINIProcessor.js
nsLivemarkService.js
nsLoginInfo.js
nsLoginManager.js
nsLoginManagerPrompter.js
nsMicrosummaryService.js
nsPlacesAutoComplete.js
nsPlacesDBFlush.js
nsPlacesTransactionsService.js
nsPrivateBrowsingService.js
nsProxyAutoConfig.js
nsSafebrowsingApplication.js
nsSearchService.js
nsSearchSuggestions.js
nsSessionStartup.js
nsSessionStore.js
nsSetDefaultBrowser.js
nsSidebar.js
nsTaggingService.js
nsTryToClose.js
nsUpdateService.js
nsUpdateServiceStub.js
nsUpdateTimerManager.js
nsUrlClassifierLib.js
nsUrlClassifierListManager.js
nsURLFormatter.js
nsWebHandlerApp.js
pluginGlue.js
storage-Legacy.js
storage-mozStorage.js
txEXSLTRegExFunctions.js
WebContentConverter.js
xpti.dat

C:\Program Files\Mozilla Firefox\plugins\
npCouponPrinter.dll
npMozCouponPrinter.dll
npnul32.dll

C:\Program Files\Mozilla Firefox\searchplugins\
atlas-sk.xml
azet-sk.xml
dunaj-sk.xml
eBay.xml
google.xml
slovnik-sk.xml
wikipedia-sk.xml
zoznam-sk.xml

C:\Documents and Settings\termoinvest\Data aplikací\Mozilla\Firefox\Profiles\9r2bilyt.default\extensions\
{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-10-22 328248]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
Conduit Engine - C:\Program Files\ConduitEngine\ConduitEngine.dll [2010-11-29 3908192]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
BS Player Toolbar - C:\Program Files\BS_Player\tbBS_P.dll [2010-11-29 3908192]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-10-22 517688]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - BS Player Toolbar - C:\Program Files\BS_Player\tbBS_P.dll [2010-11-29 3908192]
{30F9B915-B755-4826-820B-08FBA6BD249D} - Conduit Engine - C:\Program Files\ConduitEngine\ConduitEngine.dll [2010-11-29 3908192]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"igfxtray"=C:\WINDOWS\system32\igfxtray.exe [2005-09-20 94208]
"igfxhkcmd"=C:\WINDOWS\system32\hkcmd.exe [2005-09-20 77824]
"igfxpers"=C:\WINDOWS\system32\igfxpers.exe [2005-09-20 114688]
"Lachesis"=C:\Program Files\Razer\Lachesis\razerhid.exe [2008-10-14 172032]
"PWRISOVM.EXE"=C:\Program Files\PowerISO\PWRISOVM.EXE [2010-04-12 180224]
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2009-11-18 54576]
""= []
"avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2011-10-19 258512]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"Google Update"=C:\Documents and Settings\termoinvest\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [2011-12-09 136176]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]

C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2005-09-20 135168]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Vuze\Azureus.exe"="C:\Program Files\Vuze\Azureus.exe:*:Enabled:Azureus / Vuze"
"C:\Program Files\Raptr\raptr.exe"="C:\Program Files\Raptr\raptr.exe:*:Enabled:Raptr Client"
"C:\Program Files\Raptr\raptr_im.exe"="C:\Program Files\Raptr\raptr_im.exe:*:Enabled:Raptr IM"
"C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe:*:Enabled:hpqtra08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe:*:Enabled:hpqste08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hposid01.exe"="C:\Program Files\HP\Digital Imaging\bin\hposid01.exe:*:Enabled:hposid01.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqcopy2.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqcopy2.exe:*:Enabled:hpqcopy2.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe"="C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe:*:Enabled:hpfccopy.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe:*:Enabled:hpoews01.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe:*:Enabled:hpiscnapp.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe:*:Enabled:hpqgplgtupl.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe:*:Enabled:hpqgpc01.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqusgm.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqusgm.exe:*:Enabled:hpqusgm.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqusgh.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqusgh.exe:*:Enabled:hpqusgh.exe"
"C:\Program Files\HP\HP Software Update\hpwucli.exe"="C:\Program Files\HP\HP Software Update\hpwucli.exe:*:Enabled:hpwucli.exe"
"C:\Program Files\HP\Digital Imaging\smart web printing\SmartWebPrintExe.exe"="C:\Program Files\HP\Digital Imaging\smart web printing\SmartWebPrintExe.exe:*:Enabled:smartwebprintexe.exe"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe:*:Enabled:hpqtra08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe:*:Enabled:hpqste08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hposid01.exe"="C:\Program Files\HP\Digital Imaging\bin\hposid01.exe:*:Enabled:hposid01.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqcopy2.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqcopy2.exe:*:Enabled:hpqcopy2.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe"="C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe:*:Enabled:hpfccopy.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe:*:Enabled:hpoews01.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe:*:Enabled:hpiscnapp.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe:*:Enabled:hpqgplgtupl.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe:*:Enabled:hpqgpc01.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqusgm.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqusgm.exe:*:Enabled:hpqusgm.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqusgh.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqusgh.exe:*:Enabled:hpqusgh.exe"
"C:\Program Files\HP\HP Software Update\hpwucli.exe"="C:\Program Files\HP\HP Software Update\hpwucli.exe:*:Enabled:hpwucli.exe"
"C:\Program Files\HP\Digital Imaging\smart web printing\SmartWebPrintExe.exe"="C:\Program Files\HP\Digital Imaging\smart web printing\SmartWebPrintExe.exe:*:Enabled:smartwebprintexe.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv

======List of files/folders created in the last 1 month======

2011-12-10 18:30:34 ----D---- C:\Program Files\trend micro
2011-12-10 18:30:33 ----D---- C:\rsit
2011-12-10 18:24:07 ----D---- C:\Documents and Settings\termoinvest\Data aplikací\Malwarebytes
2011-12-10 18:23:58 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2011-12-10 16:51:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2345886$
2011-12-10 16:50:48 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2011-12-10 16:50:28 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2011-12-10 16:49:04 ----D---- C:\Program Files\MSXML 4.0
2011-12-10 08:53:22 ----A---- C:\WINDOWS\system32\MRT.exe
2011-12-09 22:24:24 ----D---- C:\Documents and Settings\termoinvest\Data aplikací\Avira
2011-12-09 22:18:01 ----A---- C:\WINDOWS\system32\drivers\ssmdrv.sys
2011-12-09 22:17:58 ----A---- C:\WINDOWS\system32\drivers\avkmgr.sys
2011-12-09 22:17:58 ----A---- C:\WINDOWS\system32\drivers\avipbb.sys
2011-12-09 22:17:58 ----A---- C:\WINDOWS\system32\drivers\avgntflt.sys
2011-12-09 22:17:50 ----D---- C:\Program Files\Avira
2011-12-09 22:17:50 ----D---- C:\Documents and Settings\All Users\Data aplikací\Avira
2011-12-09 22:05:55 ----D---- C:\Documents and Settings\termoinvest\Data aplikací\HP
2011-12-09 22:05:55 ----D---- C:\Documents and Settings\All Users\Data aplikací\WEBREG
2011-12-09 22:04:31 ----A---- C:\WINDOWS\system32\hpf3l70v.dll
2011-12-09 22:03:49 ----D---- C:\WINDOWS\Cache
2011-12-09 22:03:49 ----D---- C:\Program Files\Coupons
2011-12-09 22:03:42 ----D---- C:\Program Files\HP Photo Creations
2011-12-09 22:03:42 ----D---- C:\Documents and Settings\All Users\Data aplikací\HP Photo Creations
2011-12-09 22:03:34 ----D---- C:\Documents and Settings\termoinvest\Data aplikací\HpUpdate
2011-12-09 22:02:18 ----D---- C:\Documents and Settings\All Users\Data aplikací\HP Product Assistant
2011-12-09 22:00:55 ----D---- C:\Program Files\Common Files\HP
2011-12-09 22:00:39 ----D---- C:\Program Files\Common Files\Hewlett-Packard
2011-12-09 22:00:21 ----D---- C:\Documents and Settings\All Users\Data aplikací\HP
2011-12-09 21:59:55 ----A---- C:\WINDOWS\system32\hppldcoi.dll
2011-12-09 21:59:55 ----A---- C:\WINDOWS\system32\hposwia_d02c.dll
2011-12-09 21:59:55 ----A---- C:\WINDOWS\system32\hpost_d02c.dll
2011-12-09 21:59:55 ----A---- C:\WINDOWS\system32\hposc_d02a.dll
2011-12-09 21:59:54 ----A---- C:\WINDOWS\system32\drivers\HPZius12.sys
2011-12-09 21:59:54 ----A---- C:\WINDOWS\system32\difxapi.dll
2011-12-09 21:59:53 ----A---- C:\WINDOWS\system32\drivers\HPZipr12.sys
2011-12-09 21:59:52 ----A---- C:\WINDOWS\system32\drivers\HPZid412.sys
2011-12-09 21:59:49 ----A---- C:\WINDOWS\system32\hpzids01.dll
2011-12-09 21:59:32 ----D---- C:\Program Files\HP
2011-12-09 21:59:26 ----A---- C:\WINDOWS\system32\drivers\usbscan.sys
2011-12-09 21:58:47 ----HD---- C:\Config.Msi
2011-12-09 21:58:03 ----A---- C:\WINDOWS\hpoins44.dat
2011-12-09 21:58:02 ----N---- C:\WINDOWS\hpomdl44.dat
2011-12-09 19:40:39 ----D---- C:\Documents and Settings\All Users\Data aplikací\Windows Genuine Advantage
2011-12-09 19:28:42 ----D---- C:\Documents and Settings\termoinvest\Data aplikací\BSplayer
2011-12-09 19:25:18 ----D---- C:\Program Files\Conduit
2011-12-09 19:25:15 ----D---- C:\Program Files\ConduitEngine
2011-12-09 19:25:12 ----D---- C:\Program Files\BS_Player
2011-12-09 19:25:02 ----D---- C:\Program Files\Webteh
2011-12-09 19:25:02 ----D---- C:\Documents and Settings\termoinvest\Data aplikací\BSplayer Pro
2011-12-09 19:15:29 ----D---- C:\Documents and Settings\termoinvest\Data aplikací\WinRAR
2011-12-09 19:15:26 ----D---- C:\Program Files\WinRAR
2011-12-09 19:10:02 ----D---- C:\Documents and Settings\termoinvest\Data aplikací\vlc
2011-12-09 19:08:02 ----D---- C:\Program Files\VideoLAN
2011-12-09 19:04:32 ----D---- C:\Documents and Settings\termoinvest\Data aplikací\Media Player Classic
2011-12-09 19:03:34 ----A---- C:\WINDOWS\system32\unrar.dll
2011-12-09 19:03:25 ----D---- C:\Program Files\K-Lite Codec Pack
2011-12-09 14:54:39 ----D---- C:\Program Files\power iso
2011-12-09 14:41:58 ----D---- C:\Program Files\PowerISO
2011-12-09 14:10:50 ----D---- C:\Documents and Settings\termoinvest\Data aplikací\Raptr
2011-12-09 14:09:51 ----D---- C:\Documents and Settings\termoinvest\Data aplikací\Azureus
2011-12-09 14:06:46 ----D---- C:\Program Files\Vuze
2011-12-09 14:01:46 ----SHD---- C:\RECYCLER
2011-12-09 10:24:54 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2011-12-09 10:24:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2570791$
2011-12-09 10:24:42 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2011-12-09 10:24:35 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2011-12-09 10:24:28 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2011-12-09 10:24:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2387149$
2011-12-09 10:24:12 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2011-12-09 10:24:04 ----HDC---- C:\WINDOWS\$NtUninstallKB2479943$
2011-12-09 10:23:57 ----HDC---- C:\WINDOWS\$NtUninstallKB2567680$
2011-12-09 10:23:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2564958$
2011-12-09 10:23:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2478971$
2011-12-09 10:23:37 ----HDC---- C:\WINDOWS\$NtUninstallKB2544893-v2$
2011-12-09 10:23:30 ----HDC---- C:\WINDOWS\$NtUninstallKB2536276-v2$
2011-12-09 10:23:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2296011$
2011-12-09 10:23:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2011-12-09 10:23:11 ----HDC---- C:\WINDOWS\$NtUninstallKB975558_WM8$
2011-12-09 10:23:05 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2011-12-09 10:22:42 ----HDC---- C:\WINDOWS\$NtUninstallKB2378111_WM9$
2011-12-09 10:22:36 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2011-12-09 10:22:28 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2011-12-09 10:22:21 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2011-12-09 10:22:15 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2011-12-09 10:22:08 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2011-12-09 10:22:01 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2011-12-09 10:21:54 ----HDC---- C:\WINDOWS\$NtUninstallKB2481109$
2011-12-09 10:21:46 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2011-12-09 10:21:40 ----HDC---- C:\WINDOWS\$NtUninstallKB2485663$
2011-12-09 10:21:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2011-12-09 10:21:28 ----HDC---- C:\WINDOWS\$NtUninstallKB982132$
2011-12-09 10:21:21 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2011-12-09 10:21:14 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2011-12-09 10:21:07 ----HDC---- C:\WINDOWS\$NtUninstallKB2507938$
2011-12-09 10:21:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2510581$
2011-12-09 10:20:54 ----HDC---- C:\WINDOWS\$NtUninstallKB2476490$
2011-12-09 10:20:47 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2011-12-09 10:20:41 ----HDC---- C:\WINDOWS\$NtUninstallKB2347290$
2011-12-09 10:20:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2641690$
2011-12-09 10:20:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2483185$
2011-12-09 10:20:11 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2011-12-09 10:20:04 ----HDC---- C:\WINDOWS\$NtUninstallKB2079403$
2011-12-09 10:19:57 ----HDC---- C:\WINDOWS\$NtUninstallKB979687$
2011-12-09 10:19:50 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2011-12-09 10:19:44 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2011-12-09 10:19:36 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2011-12-09 10:19:29 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2011-12-09 10:19:22 ----HDC---- C:\WINDOWS\$NtUninstallKB2567053$
2011-12-09 10:19:16 ----HDC---- C:\WINDOWS\$NtUninstallKB2592799$
2011-12-09 10:19:09 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2011-12-09 10:19:01 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2011-12-09 10:18:55 ----HDC---- C:\WINDOWS\$NtUninstallKB980436$
2011-12-09 10:18:49 ----HDC---- C:\WINDOWS\$NtUninstallKB981322$
2011-12-09 10:18:43 ----HDC---- C:\WINDOWS\$NtUninstallKB2507618$
2011-12-09 10:18:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2419632$
2011-12-09 10:18:26 ----HDC---- C:\WINDOWS\$NtUninstallKB2508429$
2011-12-09 10:18:20 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2011-12-09 10:18:13 ----HDC---- C:\WINDOWS\$NtUninstallKB2506212$
2011-12-09 10:18:05 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2011-12-09 10:17:55 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2011-12-09 10:17:48 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2011-12-09 10:17:42 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2011-12-09 10:17:35 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2011-12-09 10:17:22 ----HDC---- C:\WINDOWS\$NtUninstallKB2586448$
2011-12-09 10:17:14 ----HDC---- C:\WINDOWS\$NtUninstallKB975562$
2011-12-09 10:17:07 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2011-12-09 10:16:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2509553$
2011-12-09 10:16:52 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2011-12-09 10:16:46 ----HDC---- C:\WINDOWS\$NtUninstallKB2541763$
2011-12-09 10:16:40 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2011-12-09 10:16:30 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2011-12-09 10:05:16 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2011-12-09 10:05:01 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2011-12-09 10:04:43 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2011-12-09 10:04:14 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2011-12-09 10:03:47 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2011-12-09 10:03:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2570222$
2011-12-09 10:02:45 ----HDC---- C:\WINDOWS\$NtUninstallKB2535512$
2011-12-09 10:02:29 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2011-12-09 10:02:03 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2011-12-09 10:01:44 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2011-12-09 10:01:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2412687$
2011-12-09 10:01:10 ----HDC---- C:\WINDOWS\$NtUninstallKB978601$
2011-12-09 10:00:54 ----HDC---- C:\WINDOWS\$NtUninstallKB2570947$
2011-12-09 10:00:46 ----HDC---- C:\WINDOWS\$NtUninstallKB2508272$
2011-12-09 10:00:36 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2011-12-09 10:00:21 ----HDC---- C:\WINDOWS\$NtUninstallKB978695_WM9$
2011-12-09 10:00:06 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2011-12-09 09:59:50 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2011-12-09 09:59:16 ----HDC---- C:\WINDOWS\$NtUninstallKB971029$
2011-12-09 09:59:03 ----N---- C:\WINDOWS\system32\drivers\bthport.sys
2011-12-09 09:58:53 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2011-12-09 09:58:32 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2011-12-09 09:58:11 ----HDC---- C:\WINDOWS\$NtUninstallKB979482$
2011-12-09 09:57:44 ----HDC---- C:\WINDOWS\$NtUninstallKB981997$
2011-12-09 09:57:30 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2011-12-09 09:56:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2544521$
2011-12-09 09:55:30 ----HDC---- C:\WINDOWS\$NtUninstallKB2478960$
2011-12-09 09:54:54 ----D---- C:\Documents and Settings\termoinvest\Data aplikací\Macromedia
2011-12-09 09:54:53 ----D---- C:\Documents and Settings\termoinvest\Data aplikací\Adobe
2011-12-09 09:54:30 ----HDC---- C:\WINDOWS\$NtUninstallKB2393802$
2011-12-09 09:53:57 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2011-12-09 09:53:28 ----HDC---- C:\WINDOWS\$NtUninstallKB2566454$
2011-12-09 09:53:11 ----A---- C:\WINDOWS\system32\hidserv.dll
2011-12-09 09:53:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2562937$
2011-12-09 09:52:46 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2011-12-09 09:52:15 ----A---- C:\WINDOWS\system32\drivers\usbprint.sys
2011-12-09 09:51:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2360937$
2011-11-12 15:46:59 ----D---- C:\Documents and Settings\All Users\Data aplikací\Razer
2011-11-12 15:46:34 ----D---- C:\Program Files\Razer
2011-11-12 15:46:23 ----D---- C:\Documents and Settings\termoinvest\Data aplikací\InstallShield
2011-11-12 15:46:10 ----N---- C:\WINDOWS\system32\browserchoice.exe
2011-11-12 15:42:33 ----A---- C:\WINDOWS\system32\drivers\Usbicp.sys
2011-11-12 15:42:30 ----D---- C:\Program Files\DIFX
2011-11-12 15:42:07 ----DC---- C:\WINDOWS\system32\DRVSTORE
2011-11-12 15:42:07 ----A---- C:\WINDOWS\system32\drivers\Lachesis.sys
2011-11-12 15:35:13 ----A---- C:\WINDOWS\nsreg.dat
2011-11-12 15:35:02 ----D---- C:\Documents and Settings\termoinvest\Data aplikací\Mozilla
2011-11-12 15:34:42 ----D---- C:\Program Files\Mozilla Firefox
2011-11-12 15:33:45 ----D---- C:\WINDOWS\system32\PreInstall
2011-11-12 15:33:44 ----N---- C:\WINDOWS\system32\spmsg.dll
2011-11-12 15:33:43 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2011-11-12 15:33:41 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2011-11-12 15:33:41 ----HD---- C:\WINDOWS\$hf_mig$
2011-11-12 15:32:37 ----A---- C:\WINDOWS\system32\drivers\kbdhid.sys
2011-11-12 15:32:21 ----A---- C:\WINDOWS\system32\drivers\usbccgp.sys

======List of files/folders modified in the last 1 month======

2011-12-10 18:30:44 ----D---- C:\WINDOWS\Prefetch
2011-12-10 18:30:36 ----D---- C:\WINDOWS\Temp
2011-12-10 18:30:34 ----RD---- C:\Program Files
2011-12-10 18:29:05 ----D---- C:\WINDOWS\system32\drivers
2011-12-10 18:24:50 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-12-10 18:22:40 ----D---- C:\WINDOWS\system32
2011-12-10 18:22:37 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-12-10 18:21:03 ----D---- C:\WINDOWS
2011-12-10 16:51:05 ----HD---- C:\WINDOWS\inf
2011-12-10 16:51:03 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-12-10 16:50:54 ----A---- C:\WINDOWS\imsins.BAK
2011-12-10 16:49:06 ----SHD---- C:\WINDOWS\Installer
2011-12-10 16:49:05 ----D---- C:\WINDOWS\WinSxS
2011-12-10 08:55:35 ----D---- C:\WINDOWS\system32\CatRoot2
2011-12-10 08:53:39 ----D---- C:\WINDOWS\Debug
2011-12-09 22:17:24 ----D---- C:\Program Files\Common Files\Microsoft Shared
2011-12-09 22:05:35 ----A---- C:\WINDOWS\win.ini
2011-12-09 22:02:34 ----RSD---- C:\WINDOWS\Fonts
2011-12-09 22:00:56 ----D---- C:\WINDOWS\twain_32
2011-12-09 22:00:55 ----D---- C:\Program Files\Common Files
2011-12-09 19:43:57 ----SD---- C:\WINDOWS\Tasks
2011-12-09 11:28:39 ----D---- C:\WINDOWS\AppPatch
2011-12-09 11:28:37 ----D---- C:\WINDOWS\system32\wbem
2011-12-09 10:24:30 ----D---- C:\Program Files\Messenger
2011-12-09 10:17:58 ----D---- C:\Program Files\Outlook Express
2011-12-09 09:57:51 ----D---- C:\Program Files\Movie Maker
2011-11-12 15:46:33 ----HD---- C:\Program Files\InstallShield Installation Information
2011-11-12 15:41:14 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2011-11-12 15:41:06 ----SD---- C:\Documents and Settings\termoinvest\Data aplikací\Microsoft

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2011-10-19 134344]
R1 avkmgr;avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [2011-10-19 36000]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 SCDEmu;SCDEmu; C:\WINDOWS\system32\drivers\SCDEmu.sys [2010-04-12 59388]
R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2010-06-17 28520]
R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2011-10-19 74640]
R3 aeaudio;aeaudio; C:\WINDOWS\system32\drivers\aeaudio.sys [2002-04-01 4816]
R3 E1000;Intel(R) PRO/1000 Adapter Driver; C:\WINDOWS\system32\DRIVERS\e1000325.sys [2003-07-11 121856]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2008-10-29 49920]
R3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2008-10-29 16496]
R3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2008-10-29 21568]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2005-09-20 1302332]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 smwdm;smwdm; C:\WINDOWS\system32\drivers\smwdm.sys [2003-02-28 545024]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
R3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S3 LachesisFltr;Lachesis Mouse Driver; C:\WINDOWS\system32\drivers\Lachesis.sys [2007-08-08 12032]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AntiVirService;Avira Realtime Protection; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2011-10-19 110032]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2011-10-19 86224]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R3 hpqcxs08;hpqcxs08; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119510
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: spomaleny pc, net , mozny virus

#2 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Program Files\ConduitEngine
C:\Program Files\BS_Player\tbBS_P.dll
C:\Documents and Settings\termoinvest\Local Settings\Data aplikací\Google\Update

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
C:\Documents and Settings\termoinvest\Local Settings\Data aplikací\Google\Update
"Google Update"=-

:commands
[Purity]
[Emtytemp]
[Emtyflash]
a klikněte na MoveIt!. PC bude restartován.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

branco
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 21 lis 2008 18:38

Re: spomaleny pc, net , mozny virus

#3 Příspěvek od branco »

diky moc kamo, uz to fici jak ma

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119510
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: spomaleny pc, net , mozny virus

#4 Příspěvek od Rudy »

Spusťte znovu OTM a klikněte na CleanUp. OTM po sobě uklidí. Pak jej můžete smazat. Nemáte zač!
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět