Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Problém s vypadávající odezvou internetu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
pegas10
Návštěvník
Návštěvník
Příspěvky: 3
Registrován: 09 čer 2013 13:58

Problém s vypadávající odezvou internetu

#1 Příspěvek od pegas10 »

Zdravím,
už hodně dlouho se potýkám s jistým problémem. Kdykoliv něco dělám na internetu, stačí pracovat na mailu, nebo hraju například nějakou hru (CS), potýkám se se zvláštními výpadky odezvy. Můj provider si s tím neví rady, signál a vysílače jsou v pořádku. Takže mě napadlo že za tím stojí nějaký vir. Internet vždy vypadne na nějakých 3-5 vteřin a zase tak 10 vteřin jde a pak se to samé opakuje. Ještě před tím vším jsem systém projel antispyware programem a ten mi smazal několik Trojanů a Hidden dragon. Už to nenachází nic.

OBZVLÁŠŤ PŘI HRANÍ JE TO HROZNÉ, KAŽDÝCH 10 VTEŘIN ZÁSEK NA 3-5 SEC.

takto vypadá cmd ping na seznam.cz:
http://imageshack.us/photo/my-images/69/pouzefb.png/

PŘIKLÁDÁM RSIT LOG A POD NÍM JE LOG Z COMBOFIXU.

Moc díky za každou radu.

Tady je můj RSIT log:

Logfile of random's system information tool 1.09 (written by random/random)
Run by PEGAS10 at 2013-06-09 14:59:53
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 13 GB (34%) free of 40 GB
Total RAM: 2047 MB (66% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:00:09, on 9.6.2013
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe
C:\WINDOWS\system32\RunDLL32.exe
C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
D:\Valve\Steam\steam.exe
C:\Program Files\EslWire\service\WireHelperSvc.exe
C:\Program Files\EXPERTool\TBPanel.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\explorer.exe
D:\Valve\Steam\steam.exe
C:\Documents and Settings\PEGAS10\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\PEGAS10\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\PEGAS10\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\PEGAS10\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\PEGAS10\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\PEGAS10\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\PEGAS10\Dokumenty\Downloads\RSIT.exe
C:\Program Files\trend micro\PEGAS10.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.babylon.com/?affID=119816 ... 89A554A2FE
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :0
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.5.4.11.dll
O4 - HKLM\..\Run: [GB_UPDATE] C:\Program Files\Razer\Razer Game Booster\AutoUpdate.exe/AUTORUN
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe 1
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit -login
O4 - HKLM\..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nview\nwiz.exe /installquiet
O4 - HKCU\..\Run: [ESL Wire] "C:\Program Files\EslWire\wire.exe" --tray
O4 - HKCU\..\Run: [Steam] "D:\Valve\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [GAINWARD] C:\Program Files\EXPERTool\TBPanel.exe /A
O4 - HKUS\S-1-5-21-1454471165-1303643608-839522115-1007\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'UpdatusUser')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Stáhnout odkaz s použitím BitCometu - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: Stáhnout všechny odkazy s použitím BitCometu - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.5.4.11.dll/206 (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\System32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: ESL Wire Helper Service (EslWireHelper) - Unknown owner - C:\Program Files\EslWire\service\WireHelperSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe

--
End of file - 5781 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job
C:\WINDOWS\tasks\EPUpdater.job
C:\WINDOWS\tasks\SUPERAntiSpyware Scheduled Task aad2a7e1-04dc-41b9-8bd2-0de5767594f3.job
C:\WINDOWS\tasks\SUPERAntiSpyware Scheduled Task c0610f9a-fa18-4128-9bef-751a664676eb.job

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\PEGAS10\Data aplikací\Mozilla\Firefox\Profiles\q0n3g7b1.default

prefs.js - "browser.startup.homepage" - "http://search.babylon.com/?affID=119816 ... 89A554A2FE"

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.7.700.202 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_7_700_202.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\WINDOWS\system32\Adobe\Director\np32dsw_1200112.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
nsIBitCometAgent.xpt

C:\Program Files\Mozilla Firefox\plugins\
npBitCometAgent.dll
NPOFFICE.DLL

C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

C:\Documents and Settings\PEGAS10\Data aplikací\Mozilla\Firefox\Profiles\q0n3g7b1.default\extensions\
{B042753D-F57E-4e8e-A01B-7379A6D4CEFB}

C:\Documents and Settings\PEGAS10\Data aplikací\Mozilla\Firefox\Profiles\q0n3g7b1.default\searchplugins\
babylon.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{39F7E362-828A-4B5A-BCAF-5B79BFDFEA60}]
BitComet Helper - C:\Program Files\BitComet\tools\BitCometBHO_1.5.4.11.dll [2011-04-11 767280]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"GB_UPDATE"=C:\Program Files\Razer\Razer Game Booster\AutoUpdate.exe [2012-11-13 1171904]
"HDAudDeck"=C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe [2010-08-11 40983152]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2013-03-15 15668512]
"NvMediaCenter"=NvMCTray.dll,NvTaskbarInit -login []
"nwiz"=C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2013-03-15 1982312]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ESL Wire"=C:\Program Files\EslWire\wire.exe [2013-06-03 2589696]
"Steam"=D:\Valve\Steam\steam.exe [2013-06-07 1641896]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2013-03-14 3672640]
"GAINWARD"=C:\Program Files\EXPERTool\TBPanel.exe [2009-05-12 2181672]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SUPERAntiSpyware]
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2013-05-15 4760816]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2013-05-08 115440]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"D:\Program Files\Dead.Island.CZ.Update1.Repack-TiELK\Dead Island CZ\Dead Island\deadislandgame.exe"="D:\Program Files\Dead.Island.CZ.Update1.Repack-TiELK\Dead Island CZ\Dead Island\deadislandgame.exe:*:Enabled:DeadIsland"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\EslWire\wire.exe"="C:\Program Files\EslWire\wire.exe:*:Enabled:ESL Wire Client"
"C:\Program Files\Pinnacle\VideoSpin\Programs\RM.exe"="C:\Program Files\Pinnacle\VideoSpin\Programs\RM.exe:*:Enabled:Render Manager"
"C:\Program Files\Pinnacle\VideoSpin\Programs\umi.exe"="C:\Program Files\Pinnacle\VideoSpin\Programs\umi.exe:*:Enabled:umi"
"C:\Program Files\Pinnacle\VideoSpin\Programs\VideoSpin.exe"="C:\Program Files\Pinnacle\VideoSpin\Programs\VideoSpin.exe:*:Enabled:Pinnacle VideoSpin"
"C:\Documents and Settings\PEGAS10\Data aplikací\uTorrent\uTorrent.exe"="C:\Documents and Settings\PEGAS10\Data aplikací\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"C:\Program Files\BitComet\BitComet.exe"="C:\Program Files\BitComet\BitComet.exe:*:Enabled:BitComet.exe"
"D:\Valve\Steam\SteamApps\pGas\source sdk base 2007\hl2.exe"="D:\Valve\Steam\SteamApps\pGas\source sdk base 2007\hl2.exe:*:Enabled:Source SDK Base 2007"
"D:\Valve\Steam\steam.exe"="D:\Valve\Steam\steam.exe:*:Enabled:Steam Client Bootstrapper (buildbot_winslave04_steam_steam_rel_client_win32@winslave04)"
"C:\Program Files\mIRC\mirc.exe"="C:\Program Files\mIRC\mirc.exe:*:Enabled:mIRC"
"D:\Valve\Steam\SteamApps\common\trackmania nations forever\TmForever.exe"="D:\Valve\Steam\SteamApps\common\trackmania nations forever\TmForever.exe:*:Enabled:TmForever"
"D:\Valve\Steam\SteamApps\common\Half-Life\hl.exe"="D:\Valve\Steam\SteamApps\common\Half-Life\hl.exe:*:Enabled:Counter-Strike"
"D:\Valve\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe"="D:\Valve\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe:*:Enabled:Counter-Strike: Global Offensive"
"D:\Valve\Steam\SteamApps\common\Counter-Strike Global Offensive\bin\SDKLauncher.exe"="D:\Valve\Steam\SteamApps\common\Counter-Strike Global Offensive\bin\SDKLauncher.exe:*:Enabled:Counter-Strike: Global Offensive - SDK"
"C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"="C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe:*:Enabled:Daemonu.exe"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.l3acm"=C:\WINDOWS\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"vidc.mjpg"=pvmjpg30.dll

======List of files/folders created in the last 1 month======

2013-06-09 14:59:54 ----D---- C:\Program Files\trend micro
2013-06-09 14:59:53 ----D---- C:\rsit
2013-06-09 14:18:22 ----D---- C:\WINDOWS\temp
2013-06-09 14:13:12 ----A---- C:\Boot.bak
2013-06-09 14:13:06 ----RASHD---- C:\cmdcons
2013-06-09 14:12:25 ----D---- C:\ComboFix
2013-06-09 13:55:25 ----A---- C:\WINDOWS\zip.exe
2013-06-09 13:55:25 ----A---- C:\WINDOWS\SWXCACLS.exe
2013-06-09 13:55:25 ----A---- C:\WINDOWS\SWSC.exe
2013-06-09 13:55:25 ----A---- C:\WINDOWS\SWREG.exe
2013-06-09 13:55:25 ----A---- C:\WINDOWS\sed.exe
2013-06-09 13:55:25 ----A---- C:\WINDOWS\PEV.exe
2013-06-09 13:55:25 ----A---- C:\WINDOWS\NIRCMD.exe
2013-06-09 13:55:25 ----A---- C:\WINDOWS\MBR.exe
2013-06-09 13:55:25 ----A---- C:\WINDOWS\grep.exe
2013-06-09 13:07:31 ----D---- C:\Qoobox
2013-06-09 13:06:55 ----D---- C:\WINDOWS\erdnt
2013-06-09 12:47:37 ----A---- C:\WINDOWS\system32\MRT.exe
2013-06-07 15:16:24 ----D---- C:\Documents and Settings\PEGAS10\Data aplikací\Leadertech
2013-06-04 17:30:42 ----D---- C:\Documents and Settings\PEGAS10\Data aplikací\SUPERAntiSpyware.com
2013-06-04 17:30:33 ----D---- C:\Program Files\SUPERAntiSpyware
2013-06-04 17:30:33 ----D---- C:\Documents and Settings\All Users\Data aplikací\SUPERAntiSpyware.com
2013-06-04 17:20:09 ----A---- C:\WINDOWS\wininit.ini
2013-06-04 17:14:01 ----D---- C:\Documents and Settings\All Users\Data aplikací\Spybot - Search & Destroy
2013-06-04 12:25:26 ----D---- C:\WINDOWS\system32\LogFiles
2013-06-03 14:42:15 ----D---- C:\WINDOWS\pss
2013-06-01 22:24:27 ----D---- C:\WINDOWS\WBEM
2013-06-01 22:23:20 ----HDC---- C:\WINDOWS\ie8
2013-06-01 22:18:19 ----D---- C:\Documents and Settings\PEGAS10\Data aplikací\Shifters Anticheat
2013-06-01 22:18:10 ----D---- C:\Shifters Anticheat
2013-05-29 13:24:40 ----D---- C:\Documents and Settings\PEGAS10\Data aplikací\SteelSeries
2013-05-28 17:26:24 ----D---- C:\Documents and Settings\All Users\Data aplikací\SteelSeries
2013-05-28 17:25:46 ----A---- C:\WINDOWS\system32\hidserv.dll
2013-05-28 17:25:14 ----D---- C:\Program Files\SteelSeries
2013-05-24 13:17:13 ----D---- C:\Program Files\MSECache
2013-05-24 13:08:42 ----A---- C:\WINDOWS\ODBC.INI
2013-05-24 13:08:38 ----A---- C:\WINDOWS\system32\mdimon.dll
2013-05-24 13:07:59 ----D---- C:\Program Files\Common Files\DESIGNER
2013-05-24 13:07:44 ----D---- C:\WINDOWS\SHELLNEW
2013-05-24 13:07:43 ----D---- C:\Program Files\Microsoft Office
2013-05-24 13:06:32 ----RD---- C:\MSOCache
2013-05-24 13:04:50 ----D---- C:\Documents and Settings\PEGAS10\Data aplikací\BabSolution
2013-05-24 13:04:28 ----D---- C:\Documents and Settings\PEGAS10\Data aplikací\Babylon
2013-05-24 13:04:28 ----D---- C:\Documents and Settings\All Users\Data aplikací\Babylon
2013-05-24 13:04:18 ----A---- C:\WINDOWS\system32\drivers\dtsoftbus01.sys
2013-05-24 13:04:06 ----D---- C:\Documents and Settings\PEGAS10\Data aplikací\DAEMON Tools Lite
2013-05-24 13:04:03 ----D---- C:\Program Files\DAEMON Tools Lite
2013-05-24 13:02:31 ----D---- C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Lite
2013-05-19 12:31:06 ----D---- C:\Program Files\EA Sports
2013-05-18 15:01:40 ----D---- C:\Program Files\Ildefonse
2013-05-12 11:25:48 ----D---- C:\WINDOWS\system32\appmgmt

======List of files/folders modified in the last 1 month======

2013-06-09 14:59:54 ----RD---- C:\Program Files
2013-06-09 14:24:06 ----D---- C:\WINDOWS\system32
2013-06-09 14:24:06 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2013-06-09 14:21:28 ----SD---- C:\WINDOWS\Tasks
2013-06-09 14:21:05 ----D---- C:\WINDOWS\system32\CatRoot2
2013-06-09 14:20:05 ----D---- C:\WINDOWS
2013-06-09 14:20:05 ----A---- C:\WINDOWS\system.ini
2013-06-09 14:19:45 ----D---- C:\WINDOWS\system32\drivers\etc
2013-06-09 14:19:35 ----D---- C:\WINDOWS\system32\drivers
2013-06-09 14:18:49 ----D---- C:\WINDOWS\system32\config
2013-06-09 14:16:55 ----D---- C:\WINDOWS\AppPatch
2013-06-09 14:16:53 ----D---- C:\Program Files\Common Files
2013-06-09 14:13:12 ----RASH---- C:\boot.ini
2013-06-09 14:12:35 ----A---- C:\WINDOWS\SchedLgU.Txt
2013-06-09 14:12:12 ----D---- C:\WINDOWS\Prefetch
2013-06-09 13:54:38 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2013-06-09 13:54:38 ----D---- C:\Program Files\Windows Media Player
2013-06-09 13:54:38 ----D---- C:\Program Files\Mozilla Firefox
2013-06-09 13:54:38 ----D---- C:\Program Files\Internet Explorer
2013-06-09 13:54:35 ----D---- C:\Documents and Settings\PEGAS10\Data aplikací\uTorrent
2013-06-09 12:47:42 ----D---- C:\WINDOWS\Debug
2013-06-08 18:47:08 ----D---- C:\Documents and Settings\PEGAS10\Data aplikací\TS3Client
2013-06-07 15:16:15 ----SHD---- C:\WINDOWS\Installer
2013-06-07 15:16:11 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2013-06-07 15:14:33 ----HD---- C:\WINDOWS\inf
2013-06-07 15:14:15 ----RSD---- C:\WINDOWS\assembly
2013-06-07 15:13:58 ----D---- C:\WINDOWS\system32\DirectX
2013-06-07 13:55:09 ----RSHDC---- C:\WINDOWS\system32\dllcache
2013-06-07 13:55:00 ----D---- C:\Program Files\NVIDIA Corporation
2013-06-04 17:35:06 ----A---- C:\WINDOWS\win.ini
2013-06-04 17:22:44 ----D---- C:\Program Files\EslWire
2013-06-02 11:49:46 ----D---- C:\Documents and Settings\All Users\Data aplikací\TrackMania
2013-06-01 23:16:26 ----D---- C:\WINDOWS\system32\cs-CZ
2013-06-01 23:16:26 ----D---- C:\WINDOWS\Help
2013-06-01 22:24:20 ----D---- C:\WINDOWS\Media
2013-05-29 16:01:59 ----SD---- C:\Documents and Settings\PEGAS10\Data aplikací\Microsoft
2013-05-29 14:08:18 ----D---- C:\WINDOWS\system32\ReinstallBackups
2013-05-24 13:18:29 ----RSD---- C:\WINDOWS\Fonts
2013-05-24 13:18:23 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-05-24 13:07:43 ----D---- C:\Program Files\Microsoft.NET
2013-05-24 13:06:36 ----D---- C:\WINDOWS\system
2013-05-24 13:05:12 ----DC---- C:\WINDOWS\system32\DRVSTORE
2013-05-24 12:56:44 ----D---- C:\Documents and Settings\PEGAS10\Data aplikací\dvdcss
2013-05-16 13:07:56 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 ESLWireAC;ESLWireAC; C:\WINDOWS\system32\drivers\ESLWireACD.sys [2013-06-01 950032]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys [2013-05-24 242240]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\System32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\System32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS []
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS []
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2001-10-25 12032]
R2 TBPanel;TBPanel; C:\WINDOWS\system32\drivers\TBPanel.sys [2007-03-16 12256]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\System32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\System32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 L1c;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\WINDOWS\System32\DRIVERS\l1c51x86.sys [2009-11-30 50176]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2001-10-25 12160]
R3 nv;nv; C:\WINDOWS\System32\DRIVERS\nv4_mini.sys [2013-03-15 10713024]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2008-04-14 20608]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service; C:\WINDOWS\system32\drivers\viahduaa.sys [2010-08-04 2127728]
S3 busenum;SteelBusSvc; C:\WINDOWS\system32\DRIVERS\SteelBus.sys [2013-01-10 111360]
S3 Cardex;Cardex; \??\C:\WINDOWS\system32\drivers\TBPANEL.SYS []
S3 catchme;catchme; \??\C:\DOCUME~1\PEGAS10\LOCALS~1\Temp\catchme.sys []
S3 ESEADriver2;ESEADriver2; \??\C:\DOCUME~1\PEGAS10\LOCALS~1\Temp\ESEADriver2.sys []
S3 ESLvnic1;ESLvnic Virtual Network 32 Bit; C:\WINDOWS\system32\DRIVERS\ESLvnic.sys [2009-09-01 23512]
S3 mbr;mbr; \??\C:\DOCUME~1\PEGAS10\LOCALS~1\Temp\mbr.sys []
S3 SAlphamHid;SteelHIDSvc; C:\WINDOWS\system32\DRIVERS\SAlpham.sys [2013-01-10 34304]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\System32\DRIVERS\usbccgp.sys [2008-04-14 32128]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WinRing0_1_2_0;WinRing0_1_2_0; \??\C:\Program Files\Razer\Razer Game Booster\Driver\WinRing0.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [2013-05-08 119024]
R2 EslWireHelper;ESL Wire Helper Service; C:\Program Files\EslWire\service\WireHelperSvc.exe [2013-06-03 614416]
R2 NVSvc;NVIDIA Driver Helper Service; C:\WINDOWS\system32\nvsvc32.exe [2013-03-15 156960]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-03-15 1266464]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\System32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-05-16 256904]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2007-10-09 36864]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2007-10-11 864256]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-01-16 115608]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2007-10-24 70144]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

Log z COMBOFIXU:

ComboFix 13-06-08.02 - PEGAS10 09.06.2013 14:14:38.1.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.2047.1408 [GMT 2:00]
Spuštěný z: C:\Documents and Settings\PEGAS10\Dokumenty\Downloads\ComboFix.exe


((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))


C:\WINDOWS\msmqinst.log
C:\WINDOWS\svchost.exe


((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Legacy_POWERMANAGER
-------\Service_PowerManager


((((((((((((((((((((((((( Soubory vytvořené od 2013-05-09 do 2013-06-09 )))))))))))))))))))))))))))))))


2013-06-07 13:16:24 . 2013-06-07 13:16:24 -------- d-----w- C:\Documents and Settings\PEGAS10\Data aplikací\Leadertech
2013-06-04 15:30:42 . 2013-06-04 15:30:42 -------- d-----w- C:\Documents and Settings\PEGAS10\Data aplikací\SUPERAntiSpyware.com
2013-06-04 15:30:33 . 2013-06-04 15:30:41 -------- d-----w- C:\Program Files\SUPERAntiSpyware
2013-06-04 15:30:33 . 2013-06-04 15:30:33 -------- d-----w- C:\Documents and Settings\All Users\Data aplikací\SUPERAntiSpyware.com
2013-06-04 15:14:01 . 2013-06-04 15:19:01 -------- d-----w- C:\Documents and Settings\All Users\Data aplikací\Spybot - Search & Destroy
2013-06-04 10:25:26 . 2013-06-04 10:25:26 -------- d-----w- C:\WINDOWS\system32\LogFiles
2013-06-04 09:53:11 . 2013-06-04 09:53:11 -------- d-sh--w- C:\Documents and Settings\NetworkService\IETldCache
2013-06-01 21:16:34 . 2013-06-01 21:16:34 -------- d-sh--w- C:\Documents and Settings\PEGAS10\IETldCache
2013-06-01 20:23:20 . 2013-06-01 20:24:06 -------- dc-h--w- C:\WINDOWS\ie8
2013-06-01 20:18:19 . 2013-06-01 20:18:19 -------- d-----w- C:\Documents and Settings\PEGAS10\Data aplikací\Shifters Anticheat
2013-06-01 20:18:10 . 2013-06-01 20:21:34 -------- d-----w- C:\Shifters Anticheat
2013-05-29 11:24:40 . 2013-05-30 10:14:29 -------- d-----w- C:\Documents and Settings\PEGAS10\Data aplikací\SteelSeries
2013-05-28 15:26:24 . 2013-05-30 10:14:28 -------- d-----w- C:\Documents and Settings\All Users\Data aplikací\SteelSeries
2013-05-28 15:25:46 . 2008-04-14 06:51:44 21504 -c--a-w- C:\WINDOWS\system32\dllcache\hidserv.dll
2013-05-28 15:25:46 . 2008-04-14 06:51:44 21504 ----a-w- C:\WINDOWS\system32\hidserv.dll
2013-05-28 15:25:14 . 2013-05-30 10:14:28 -------- d-----w- C:\Program Files\SteelSeries
2013-05-24 11:17:13 . 2013-05-24 11:17:13 -------- d-----w- C:\Program Files\MSECache
2013-05-24 11:08:38 . 2003-06-18 23:31:48 18944 ----a-w- C:\WINDOWS\system32\Spool\prtprocs\w32x86\mdippr.dll
2013-05-24 11:08:38 . 2003-06-18 23:31:48 17920 ----a-w- C:\WINDOWS\system32\mdimon.dll
2013-05-24 11:07:44 . 2013-05-24 11:08:06 -------- d-----w- C:\WINDOWS\SHELLNEW
2013-05-24 11:06:32 . 2013-05-24 11:06:32 -------- d-----r- C:\MSOCache
2013-05-24 11:04:50 . 2013-05-24 11:04:54 -------- d-----w- C:\Documents and Settings\PEGAS10\Data aplikací\BabSolution
2013-05-24 11:04:28 . 2013-05-24 11:04:28 -------- d-----w- C:\Documents and Settings\PEGAS10\Data aplikací\Babylon
2013-05-24 11:04:28 . 2013-05-24 11:04:28 -------- d-----w- C:\Documents and Settings\All Users\Data aplikací\Babylon
2013-05-24 11:04:18 . 2013-05-24 11:05:12 242240 ----a-w- C:\WINDOWS\system32\drivers\dtsoftbus01.sys
2013-05-24 11:04:06 . 2013-05-24 11:06:24 -------- d-----w- C:\Documents and Settings\PEGAS10\Data aplikací\DAEMON Tools Lite
2013-05-24 11:04:03 . 2013-05-24 11:04:14 -------- d-----w- C:\Program Files\DAEMON Tools Lite
2013-05-24 11:02:31 . 2013-05-24 11:06:30 -------- d-----w- C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Lite
2013-05-19 10:31:06 . 2013-05-19 10:31:06 -------- d-----w- C:\Program Files\EA Sports
2013-05-18 13:01:40 . 2013-05-18 13:07:18 -------- d-----w- C:\Program Files\Ildefonse
.


(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))

2013-06-01 21:19:32 . 2013-02-03 11:57:18 950032 ----a-w- C:\WINDOWS\system32\drivers\ESLWireACD.sys
2013-05-16 11:07:56 . 2013-02-02 13:19:12 728456 ----a-w- C:\WINDOWS\system32\FlashPlayerApp.exe
2013-05-16 11:07:56 . 2013-02-02 13:19:12 71048 ----a-w- C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2013-03-15 05:47:17 . 2013-04-27 09:01:19 892704 ----a-w- C:\WINDOWS\system32\nvdispgenco3231422.dll
2013-03-15 05:47:17 . 2013-04-27 09:01:19 1012512 ----a-w- C:\WINDOWS\system32\nvdispco3231422.dll
2013-03-15 05:47:17 . 2013-04-26 09:21:30 6074368 ----a-w- C:\WINDOWS\system32\nvopencl.dll
2013-03-15 05:47:17 . 2013-04-26 09:21:28 19689472 ----a-w- C:\WINDOWS\system32\nvoglnt.dll
2013-03-15 05:47:17 . 2013-04-26 09:21:27 7745536 ----a-w- C:\WINDOWS\system32\nvcuda.dll
2013-03-15 05:47:17 . 2013-04-26 09:21:27 2733344 ----a-w- C:\WINDOWS\system32\nvcuvid.dll
2013-03-15 05:47:17 . 2013-04-26 09:21:27 1995552 ----a-w- C:\WINDOWS\system32\nvcuvenc.dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi.dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(5).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(4).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(30).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(3).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(29).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(28).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(27).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(26).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(25).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(24).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(23).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(22).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(21).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(20).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(2).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(19).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(18).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(17).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(16).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 17551360 ----a-w- C:\WINDOWS\system32\nvcompiler.dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp.dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(5).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(4).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(30).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(3).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(29).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(28).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(27).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(26).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(25).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(24).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(23).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(22).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(21).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(20).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(2).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(19).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(18).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(17).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(16).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 10713024 ----a-w- C:\WINDOWS\system32\drivers\nv4_mini.sys
2013-03-15 02:59:28 . 2013-04-26 09:22:56 229376 ----a-w- C:\WINDOWS\system32\nvrszhc.dll
2013-03-15 02:59:28 . 2013-04-26 09:22:56 126976 ----a-w- C:\WINDOWS\system32\nvrszht.dll
2013-03-15 02:59:27 . 2013-04-26 09:22:56 258048 ----a-w- C:\WINDOWS\system32\nvrstr.dll
2013-03-15 02:59:27 . 2013-04-26 09:22:56 253952 ----a-w- C:\WINDOWS\system32\nvrsth.dll
2013-03-15 02:59:26 . 2013-04-26 09:22:56 274432 ----a-w- C:\WINDOWS\system32\nvrspt.dll
2013-03-15 02:59:26 . 2013-04-26 09:22:56 270336 ----a-w- C:\WINDOWS\system32\nvrsru.dll
2013-03-15 02:59:26 . 2013-04-26 09:22:56 270336 ----a-w- C:\WINDOWS\system32\nvrsptb.dll
2013-03-15 02:59:26 . 2013-04-26 09:22:56 258048 ----a-w- C:\WINDOWS\system32\nvrssl.dll
2013-03-15 02:59:26 . 2013-04-26 09:22:56 258048 ----a-w- C:\WINDOWS\system32\nvrssk.dll
2013-03-15 02:59:26 . 2013-04-26 09:22:56 253952 ----a-w- C:\WINDOWS\system32\nvrssv.dll
2013-03-15 02:59:25 . 2013-04-26 09:22:56 335872 ----a-w- C:\WINDOWS\system32\nvrshe.dll
2013-03-15 02:59:25 . 2013-04-26 09:22:56 282624 ----a-w- C:\WINDOWS\system32\nvrsit.dll
2013-03-15 02:59:25 . 2013-04-26 09:22:56 274432 ----a-w- C:\WINDOWS\system32\nvrsnl.dll
2013-03-15 02:59:25 . 2013-04-26 09:22:56 274432 ----a-w- C:\WINDOWS\system32\nvrsja.dll
2013-03-15 02:59:25 . 2013-04-26 09:22:56 266240 ----a-w- C:\WINDOWS\system32\nvrsko.dll
2013-03-15 02:59:25 . 2013-04-26 09:22:56 262144 ----a-w- C:\WINDOWS\system32\nvrshu.dll
2013-03-15 02:59:25 . 2013-04-26 09:22:56 258048 ----a-w- C:\WINDOWS\system32\nvrspl.dll
2013-03-15 02:59:25 . 2013-04-26 09:22:56 253952 ----a-w- C:\WINDOWS\system32\nvrsno.dll
2013-03-15 02:59:23 . 2013-04-26 09:22:56 286720 ----a-w- C:\WINDOWS\system32\nvrsfr.dll
2013-03-15 02:59:23 . 2013-04-26 09:22:56 282624 ----a-w- C:\WINDOWS\system32\nvrses.dll
2013-03-15 02:59:23 . 2013-04-26 09:22:56 282624 ----a-w- C:\WINDOWS\system32\nvrsel.dll
2013-03-15 02:59:23 . 2013-04-26 09:22:56 278528 ----a-w- C:\WINDOWS\system32\nvrsde.dll
2013-03-15 02:59:23 . 2013-04-26 09:22:56 274432 ----a-w- C:\WINDOWS\system32\nvrsesm.dll
2013-03-15 02:59:23 . 2013-04-26 09:22:56 253952 ----a-w- C:\WINDOWS\system32\nvrsda.dll
2013-03-15 02:59:23 . 2013-04-26 09:22:56 249856 ----a-w- C:\WINDOWS\system32\nvrsfi.dll
2013-03-15 02:59:23 . 2013-04-26 09:22:56 249856 ----a-w- C:\WINDOWS\system32\nvrseng.dll
2013-03-15 02:59:22 . 2013-04-26 09:22:56 335872 ----a-w- C:\WINDOWS\system32\nvrsar.dll
2013-03-15 02:59:22 . 2013-04-26 09:22:56 249856 ----a-w- C:\WINDOWS\system32\nvrscs.dll
2013-03-15 02:57:16 . 2013-04-26 09:22:49 54272 ----a-w- C:\WINDOWS\system32\nvwddi.dll
2013-03-15 02:57:14 . 2013-04-26 09:22:56 156960 ----a-w- C:\WINDOWS\system32\nvsvc32.exe
2013-03-15 02:57:14 . 2013-04-26 09:22:55 223008 ----a-w- C:\WINDOWS\system32\nvmctray.dll
2013-03-15 02:57:13 . 2013-04-26 09:22:55 15668512 ----a-w- C:\WINDOWS\system32\nvcpl.dll
2013-03-15 02:57:11 . 2013-04-26 09:22:56 144160 ----a-w- C:\WINDOWS\system32\nvcolor.exe
2013-01-16 20:10:14 . 2013-02-02 13:39:02 262552 ----a-w- C:\Program Files\mozilla firefox\components\browsercomps.dll


(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))


*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ESL Wire"="C:\Program Files\EslWire\wire.exe" [2013-06-03 14:42:42 2589696]
"Steam"="D:\Valve\Steam\steam.exe" [2013-06-06 22:06:24 1641896]
"DAEMON Tools Lite"="C:\Program Files\DAEMON Tools Lite\DTLite.exe" [2013-03-14 08:23:30 3672640]
"GAINWARD"="C:\Program Files\EXPERTool\TBPanel.exe" [2009-05-12 14:43:36 2181672]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"GB_UPDATE"="C:\Program Files\Razer\Razer Game Booster\AutoUpdate.exe/AUTORUN" [X]
"HDAudDeck"="C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe" [2010-08-11 03:31:58 40983152]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2013-03-15 02:57:13 15668512]
"NvMediaCenter"="NvMCTray.dll" [2013-03-15 02:57:14 223008]
"nwiz"="C:\Program Files\NVIDIA Corporation\nview\nwiz.exe" [2013-03-15 05:47:17 1982312]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [2008-04-14 07:52:18 15360]

[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "C:\Program Files\SUPERAntiSpyware\SASSEH.DLL" [2013-05-07 22:36:36 115440]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0\0sdnclean.exe

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SUPERAntiSpyware]
2013-05-15 01:08:19 4760816 ----a-w- C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"D:\\Program Files\\Dead.Island.CZ.Update1.Repack-TiELK\\Dead Island CZ\\Dead Island\\deadislandgame.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"C:\\Program Files\\EslWire\\wire.exe"=
"C:\\Program Files\\Pinnacle\\VideoSpin\\Programs\\RM.exe"=
"C:\\Program Files\\Pinnacle\\VideoSpin\\Programs\\umi.exe"=
"C:\\Program Files\\Pinnacle\\VideoSpin\\Programs\\VideoSpin.exe"=
"C:\\Documents and Settings\\PEGAS10\\Data aplikací\\uTorrent\\uTorrent.exe"=
"C:\\Program Files\\BitComet\\BitComet.exe"=
"D:\\Valve\\Steam\\SteamApps\\pGas\\source sdk base 2007\\hl2.exe"=
"D:\\Valve\\Steam\\steam.exe"=
"C:\\Program Files\\mIRC\\mirc.exe"=
"D:\\Valve\\Steam\\SteamApps\\common\\trackmania nations forever\\TmForever.exe"=
"D:\\Valve\\Steam\\SteamApps\\common\\Half-Life\\hl.exe"=
"D:\\Valve\\Steam\\SteamApps\\common\\Counter-Strike Global Offensive\\csgo.exe"=
"D:\\Valve\\Steam\\SteamApps\\common\\Counter-Strike Global Offensive\\bin\\SDKLauncher.exe"=
"C:\\Program Files\\NVIDIA Corporation\\NVIDIA Update Core\\daemonu.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"14466:TCP"= 14466:TCP:BitComet 14466 TCP
"14466:UDP"= 14466:UDP:BitComet 14466 UDP

R0 ESLWireAC;ESLWireAC;C:\WINDOWS\system32\drivers\ESLWireACD.sys [3.2.2013 13:57:18 950032]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;C:\WINDOWS\system32\drivers\dtsoftbus01.sys [24.5.2013 13:04:18 242240]
R1 SASDIFSV;SASDIFSV;C:\Program Files\SUPERAntiSpyware\sasdifsv.sys [22.7.2011 18:27:02 12880]
R1 SASKUTIL;SASKUTIL;C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [12.7.2011 23:55:22 67664]
R2 !SASCORE;SAS Core Service;C:\Program Files\SUPERAntiSpyware\SASCore.exe [8.5.2013 0:36:35 119024]
R2 EslWireHelper;ESL Wire Helper Service;C:\Program Files\EslWire\service\WireHelperSvc.exe [3.2.2013 13:57:22 614416]
R3 L1c;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;C:\WINDOWS\system32\drivers\l1c51x86.sys [2.2.2013 15:12:18 50176]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service;C:\WINDOWS\system32\drivers\viahduaa.sys [2.2.2013 15:13:41 2127728]
S3 busenum;SteelBusSvc;C:\WINDOWS\system32\drivers\SteelBus.sys [10.1.2013 7:46:26 111360]
S3 ESEADriver2;ESEADriver2;\??\C:\DOCUME~1\PEGAS10\LOCALS~1\Temp\ESEADriver2.sys --> C:\DOCUME~1\PEGAS10\LOCALS~1\Temp\ESEADriver2.sys [?]
S3 ESLvnic1;ESLvnic Virtual Network 32 Bit;C:\WINDOWS\system32\drivers\ESLvnic.sys [3.2.2013 13:54:34 23512]
S3 SAlphamHid;SteelHIDSvc;C:\WINDOWS\system32\drivers\SAlpham.sys [10.1.2013 7:46:26 34304]
S3 WinRing0_1_2_0;WinRing0_1_2_0;C:\Program Files\Razer\Razer Game Booster\Driver\WinRing0.sys [13.11.2012 22:53:00 14416]

Obsah adresáře 'Naplánované úlohy'

2013-06-09 C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
- C:\WINDOWS\System32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-02-02 13:19:13 . 2013-05-16 11:07:57]

2013-06-01 C:\WINDOWS\Tasks\EPUpdater.job
- C:\DOCUME~1\PEGAS10\DATAAP~1\BABSOL~1\Shared\BabMaint.exe [2013-05-24 11:04:50 . 2013-05-09 10:34:18]

2013-06-04 C:\WINDOWS\Tasks\SUPERAntiSpyware Scheduled Task aad2a7e1-04dc-41b9-8bd2-0de5767594f3.job
- C:\Program Files\SUPERAntiSpyware\SASTask.exe [2013-05-07 22:37:45 . 2013-05-07 22:37:45]

2013-06-08 C:\WINDOWS\Tasks\SUPERAntiSpyware Scheduled Task c0610f9a-fa18-4128-9bef-751a664676eb.job
- C:\Program Files\SUPERAntiSpyware\SASTask.exe [2013-05-07 22:37:45 . 2013-05-07 22:37:45]


------- Doplňkový sken -------

uStart Page = hxxp://search.babylon.com/?affID=119816&tt=gc_&babsrc=HP_ss_din2g&mntrId=204C8C89A554A2FE
IE: E&xportovat do aplikace Microsoft Office Excel - C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: Stáhnout odkaz s použitím BitCometu - C:\Program Files\BitComet\BitComet.exe/AddLink.htm
IE: Stáhnout všechny odkazy s použitím BitCometu - C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
TCP: DhcpNameServer = 192.168.100.254 192.168.0.1
DPF: DirectAnimation Java Classes - file://C:\WINDOWS\Java\classes\dajava.cab
DPF: Microsoft XML Parser for Java - file://C:\WINDOWS\Java\classes\xmldso.cab
FF - ProfilePath - C:\Documents and Settings\PEGAS10\Data aplikací\Mozilla\Firefox\Profiles\q0n3g7b1.default\
FF - prefs.js: browser.search.selectedEngine - Delta Search
FF - prefs.js: browser.startup.homepage - hxxp://search.babylon.com/?affID=119816&tt=gc_&babsrc=HP_ss_din2g&mntrId=204C8C89A554A2FE

- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -

AddRemove-{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX - C:\Program Files\NVIDIA Corporation\Installer2\installer.{BB06F2AE-E3EF-4ED7-9B1D-CB6C81BE4FA5}\NVI2.DLL

Děkuji mockrát.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119526
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Problém s vypadávající odezvou internetu

#2 Příspěvek od Rudy »

Zdravím!
Proč spouštíte ComboFix, utilitu určenou pouze profesionálům, bez doporučení rádce? Hodláte si zbořit systém. Log RSIT je pak k ničemu, neboť CF odstraní všchny stopy po případném zavirování. Dejte log ComboFix, najdete ho v c:\combofix.txt.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

pegas10
Návštěvník
Návštěvník
Příspěvky: 3
Registrován: 09 čer 2013 13:58

Re: Problém s vypadávající odezvou internetu

#3 Příspěvek od pegas10 »

To jsem nevěděl, no nic. tady je CF log:

Log z COMBOFIXU:

ComboFix 13-06-08.02 - PEGAS10 09.06.2013 14:14:38.1.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.2047.1408 [GMT 2:00]
Spuštěný z: C:\Documents and Settings\PEGAS10\Dokumenty\Downloads\ComboFix.exe


((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))


C:\WINDOWS\msmqinst.log
C:\WINDOWS\svchost.exe


((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Legacy_POWERMANAGER
-------\Service_PowerManager


((((((((((((((((((((((((( Soubory vytvořené od 2013-05-09 do 2013-06-09 )))))))))))))))))))))))))))))))


2013-06-07 13:16:24 . 2013-06-07 13:16:24 -------- d-----w- C:\Documents and Settings\PEGAS10\Data aplikací\Leadertech
2013-06-04 15:30:42 . 2013-06-04 15:30:42 -------- d-----w- C:\Documents and Settings\PEGAS10\Data aplikací\SUPERAntiSpyware.com
2013-06-04 15:30:33 . 2013-06-04 15:30:41 -------- d-----w- C:\Program Files\SUPERAntiSpyware
2013-06-04 15:30:33 . 2013-06-04 15:30:33 -------- d-----w- C:\Documents and Settings\All Users\Data aplikací\SUPERAntiSpyware.com
2013-06-04 15:14:01 . 2013-06-04 15:19:01 -------- d-----w- C:\Documents and Settings\All Users\Data aplikací\Spybot - Search & Destroy
2013-06-04 10:25:26 . 2013-06-04 10:25:26 -------- d-----w- C:\WINDOWS\system32\LogFiles
2013-06-04 09:53:11 . 2013-06-04 09:53:11 -------- d-sh--w- C:\Documents and Settings\NetworkService\IETldCache
2013-06-01 21:16:34 . 2013-06-01 21:16:34 -------- d-sh--w- C:\Documents and Settings\PEGAS10\IETldCache
2013-06-01 20:23:20 . 2013-06-01 20:24:06 -------- dc-h--w- C:\WINDOWS\ie8
2013-06-01 20:18:19 . 2013-06-01 20:18:19 -------- d-----w- C:\Documents and Settings\PEGAS10\Data aplikací\Shifters Anticheat
2013-06-01 20:18:10 . 2013-06-01 20:21:34 -------- d-----w- C:\Shifters Anticheat
2013-05-29 11:24:40 . 2013-05-30 10:14:29 -------- d-----w- C:\Documents and Settings\PEGAS10\Data aplikací\SteelSeries
2013-05-28 15:26:24 . 2013-05-30 10:14:28 -------- d-----w- C:\Documents and Settings\All Users\Data aplikací\SteelSeries
2013-05-28 15:25:46 . 2008-04-14 06:51:44 21504 -c--a-w- C:\WINDOWS\system32\dllcache\hidserv.dll
2013-05-28 15:25:46 . 2008-04-14 06:51:44 21504 ----a-w- C:\WINDOWS\system32\hidserv.dll
2013-05-28 15:25:14 . 2013-05-30 10:14:28 -------- d-----w- C:\Program Files\SteelSeries
2013-05-24 11:17:13 . 2013-05-24 11:17:13 -------- d-----w- C:\Program Files\MSECache
2013-05-24 11:08:38 . 2003-06-18 23:31:48 18944 ----a-w- C:\WINDOWS\system32\Spool\prtprocs\w32x86\mdippr.dll
2013-05-24 11:08:38 . 2003-06-18 23:31:48 17920 ----a-w- C:\WINDOWS\system32\mdimon.dll
2013-05-24 11:07:44 . 2013-05-24 11:08:06 -------- d-----w- C:\WINDOWS\SHELLNEW
2013-05-24 11:06:32 . 2013-05-24 11:06:32 -------- d-----r- C:\MSOCache
2013-05-24 11:04:50 . 2013-05-24 11:04:54 -------- d-----w- C:\Documents and Settings\PEGAS10\Data aplikací\BabSolution
2013-05-24 11:04:28 . 2013-05-24 11:04:28 -------- d-----w- C:\Documents and Settings\PEGAS10\Data aplikací\Babylon
2013-05-24 11:04:28 . 2013-05-24 11:04:28 -------- d-----w- C:\Documents and Settings\All Users\Data aplikací\Babylon
2013-05-24 11:04:18 . 2013-05-24 11:05:12 242240 ----a-w- C:\WINDOWS\system32\drivers\dtsoftbus01.sys
2013-05-24 11:04:06 . 2013-05-24 11:06:24 -------- d-----w- C:\Documents and Settings\PEGAS10\Data aplikací\DAEMON Tools Lite
2013-05-24 11:04:03 . 2013-05-24 11:04:14 -------- d-----w- C:\Program Files\DAEMON Tools Lite
2013-05-24 11:02:31 . 2013-05-24 11:06:30 -------- d-----w- C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Lite
2013-05-19 10:31:06 . 2013-05-19 10:31:06 -------- d-----w- C:\Program Files\EA Sports
2013-05-18 13:01:40 . 2013-05-18 13:07:18 -------- d-----w- C:\Program Files\Ildefonse
.


(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))

2013-06-01 21:19:32 . 2013-02-03 11:57:18 950032 ----a-w- C:\WINDOWS\system32\drivers\ESLWireACD.sys
2013-05-16 11:07:56 . 2013-02-02 13:19:12 728456 ----a-w- C:\WINDOWS\system32\FlashPlayerApp.exe
2013-05-16 11:07:56 . 2013-02-02 13:19:12 71048 ----a-w- C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2013-03-15 05:47:17 . 2013-04-27 09:01:19 892704 ----a-w- C:\WINDOWS\system32\nvdispgenco3231422.dll
2013-03-15 05:47:17 . 2013-04-27 09:01:19 1012512 ----a-w- C:\WINDOWS\system32\nvdispco3231422.dll
2013-03-15 05:47:17 . 2013-04-26 09:21:30 6074368 ----a-w- C:\WINDOWS\system32\nvopencl.dll
2013-03-15 05:47:17 . 2013-04-26 09:21:28 19689472 ----a-w- C:\WINDOWS\system32\nvoglnt.dll
2013-03-15 05:47:17 . 2013-04-26 09:21:27 7745536 ----a-w- C:\WINDOWS\system32\nvcuda.dll
2013-03-15 05:47:17 . 2013-04-26 09:21:27 2733344 ----a-w- C:\WINDOWS\system32\nvcuvid.dll
2013-03-15 05:47:17 . 2013-04-26 09:21:27 1995552 ----a-w- C:\WINDOWS\system32\nvcuvenc.dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi.dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(5).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(4).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(30).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(3).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(29).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(28).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(27).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(26).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(25).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(24).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(23).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(22).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(21).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(20).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(2).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(19).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(18).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(17).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 2490368 ----a-w- C:\WINDOWS\system32\nvapi(16).dll
2013-03-15 05:47:17 . 2013-04-26 09:21:25 17551360 ----a-w- C:\WINDOWS\system32\nvcompiler.dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp.dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(5).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(4).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(30).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(3).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(29).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(28).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(27).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(26).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(25).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(24).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(23).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(22).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(21).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(20).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(2).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(19).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(18).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(17).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 4079104 ----a-w- C:\WINDOWS\system32\nv4_disp(16).dll
2013-03-15 05:47:17 . 2009-07-03 03:11:18 10713024 ----a-w- C:\WINDOWS\system32\drivers\nv4_mini.sys
2013-03-15 02:59:28 . 2013-04-26 09:22:56 229376 ----a-w- C:\WINDOWS\system32\nvrszhc.dll
2013-03-15 02:59:28 . 2013-04-26 09:22:56 126976 ----a-w- C:\WINDOWS\system32\nvrszht.dll
2013-03-15 02:59:27 . 2013-04-26 09:22:56 258048 ----a-w- C:\WINDOWS\system32\nvrstr.dll
2013-03-15 02:59:27 . 2013-04-26 09:22:56 253952 ----a-w- C:\WINDOWS\system32\nvrsth.dll
2013-03-15 02:59:26 . 2013-04-26 09:22:56 274432 ----a-w- C:\WINDOWS\system32\nvrspt.dll
2013-03-15 02:59:26 . 2013-04-26 09:22:56 270336 ----a-w- C:\WINDOWS\system32\nvrsru.dll
2013-03-15 02:59:26 . 2013-04-26 09:22:56 270336 ----a-w- C:\WINDOWS\system32\nvrsptb.dll
2013-03-15 02:59:26 . 2013-04-26 09:22:56 258048 ----a-w- C:\WINDOWS\system32\nvrssl.dll
2013-03-15 02:59:26 . 2013-04-26 09:22:56 258048 ----a-w- C:\WINDOWS\system32\nvrssk.dll
2013-03-15 02:59:26 . 2013-04-26 09:22:56 253952 ----a-w- C:\WINDOWS\system32\nvrssv.dll
2013-03-15 02:59:25 . 2013-04-26 09:22:56 335872 ----a-w- C:\WINDOWS\system32\nvrshe.dll
2013-03-15 02:59:25 . 2013-04-26 09:22:56 282624 ----a-w- C:\WINDOWS\system32\nvrsit.dll
2013-03-15 02:59:25 . 2013-04-26 09:22:56 274432 ----a-w- C:\WINDOWS\system32\nvrsnl.dll
2013-03-15 02:59:25 . 2013-04-26 09:22:56 274432 ----a-w- C:\WINDOWS\system32\nvrsja.dll
2013-03-15 02:59:25 . 2013-04-26 09:22:56 266240 ----a-w- C:\WINDOWS\system32\nvrsko.dll
2013-03-15 02:59:25 . 2013-04-26 09:22:56 262144 ----a-w- C:\WINDOWS\system32\nvrshu.dll
2013-03-15 02:59:25 . 2013-04-26 09:22:56 258048 ----a-w- C:\WINDOWS\system32\nvrspl.dll
2013-03-15 02:59:25 . 2013-04-26 09:22:56 253952 ----a-w- C:\WINDOWS\system32\nvrsno.dll
2013-03-15 02:59:23 . 2013-04-26 09:22:56 286720 ----a-w- C:\WINDOWS\system32\nvrsfr.dll
2013-03-15 02:59:23 . 2013-04-26 09:22:56 282624 ----a-w- C:\WINDOWS\system32\nvrses.dll
2013-03-15 02:59:23 . 2013-04-26 09:22:56 282624 ----a-w- C:\WINDOWS\system32\nvrsel.dll
2013-03-15 02:59:23 . 2013-04-26 09:22:56 278528 ----a-w- C:\WINDOWS\system32\nvrsde.dll
2013-03-15 02:59:23 . 2013-04-26 09:22:56 274432 ----a-w- C:\WINDOWS\system32\nvrsesm.dll
2013-03-15 02:59:23 . 2013-04-26 09:22:56 253952 ----a-w- C:\WINDOWS\system32\nvrsda.dll
2013-03-15 02:59:23 . 2013-04-26 09:22:56 249856 ----a-w- C:\WINDOWS\system32\nvrsfi.dll
2013-03-15 02:59:23 . 2013-04-26 09:22:56 249856 ----a-w- C:\WINDOWS\system32\nvrseng.dll
2013-03-15 02:59:22 . 2013-04-26 09:22:56 335872 ----a-w- C:\WINDOWS\system32\nvrsar.dll
2013-03-15 02:59:22 . 2013-04-26 09:22:56 249856 ----a-w- C:\WINDOWS\system32\nvrscs.dll
2013-03-15 02:57:16 . 2013-04-26 09:22:49 54272 ----a-w- C:\WINDOWS\system32\nvwddi.dll
2013-03-15 02:57:14 . 2013-04-26 09:22:56 156960 ----a-w- C:\WINDOWS\system32\nvsvc32.exe
2013-03-15 02:57:14 . 2013-04-26 09:22:55 223008 ----a-w- C:\WINDOWS\system32\nvmctray.dll
2013-03-15 02:57:13 . 2013-04-26 09:22:55 15668512 ----a-w- C:\WINDOWS\system32\nvcpl.dll
2013-03-15 02:57:11 . 2013-04-26 09:22:56 144160 ----a-w- C:\WINDOWS\system32\nvcolor.exe
2013-01-16 20:10:14 . 2013-02-02 13:39:02 262552 ----a-w- C:\Program Files\mozilla firefox\components\browsercomps.dll


(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))


*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ESL Wire"="C:\Program Files\EslWire\wire.exe" [2013-06-03 14:42:42 2589696]
"Steam"="D:\Valve\Steam\steam.exe" [2013-06-06 22:06:24 1641896]
"DAEMON Tools Lite"="C:\Program Files\DAEMON Tools Lite\DTLite.exe" [2013-03-14 08:23:30 3672640]
"GAINWARD"="C:\Program Files\EXPERTool\TBPanel.exe" [2009-05-12 14:43:36 2181672]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"GB_UPDATE"="C:\Program Files\Razer\Razer Game Booster\AutoUpdate.exe/AUTORUN" [X]
"HDAudDeck"="C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe" [2010-08-11 03:31:58 40983152]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2013-03-15 02:57:13 15668512]
"NvMediaCenter"="NvMCTray.dll" [2013-03-15 02:57:14 223008]
"nwiz"="C:\Program Files\NVIDIA Corporation\nview\nwiz.exe" [2013-03-15 05:47:17 1982312]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [2008-04-14 07:52:18 15360]

[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "C:\Program Files\SUPERAntiSpyware\SASSEH.DLL" [2013-05-07 22:36:36 115440]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0\0sdnclean.exe

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SUPERAntiSpyware]
2013-05-15 01:08:19 4760816 ----a-w- C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"D:\\Program Files\\Dead.Island.CZ.Update1.Repack-TiELK\\Dead Island CZ\\Dead Island\\deadislandgame.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"C:\\Program Files\\EslWire\\wire.exe"=
"C:\\Program Files\\Pinnacle\\VideoSpin\\Programs\\RM.exe"=
"C:\\Program Files\\Pinnacle\\VideoSpin\\Programs\\umi.exe"=
"C:\\Program Files\\Pinnacle\\VideoSpin\\Programs\\VideoSpin.exe"=
"C:\\Documents and Settings\\PEGAS10\\Data aplikací\\uTorrent\\uTorrent.exe"=
"C:\\Program Files\\BitComet\\BitComet.exe"=
"D:\\Valve\\Steam\\SteamApps\\pGas\\source sdk base 2007\\hl2.exe"=
"D:\\Valve\\Steam\\steam.exe"=
"C:\\Program Files\\mIRC\\mirc.exe"=
"D:\\Valve\\Steam\\SteamApps\\common\\trackmania nations forever\\TmForever.exe"=
"D:\\Valve\\Steam\\SteamApps\\common\\Half-Life\\hl.exe"=
"D:\\Valve\\Steam\\SteamApps\\common\\Counter-Strike Global Offensive\\csgo.exe"=
"D:\\Valve\\Steam\\SteamApps\\common\\Counter-Strike Global Offensive\\bin\\SDKLauncher.exe"=
"C:\\Program Files\\NVIDIA Corporation\\NVIDIA Update Core\\daemonu.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"14466:TCP"= 14466:TCP:BitComet 14466 TCP
"14466:UDP"= 14466:UDP:BitComet 14466 UDP

R0 ESLWireAC;ESLWireAC;C:\WINDOWS\system32\drivers\ESLWireACD.sys [3.2.2013 13:57:18 950032]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;C:\WINDOWS\system32\drivers\dtsoftbus01.sys [24.5.2013 13:04:18 242240]
R1 SASDIFSV;SASDIFSV;C:\Program Files\SUPERAntiSpyware\sasdifsv.sys [22.7.2011 18:27:02 12880]
R1 SASKUTIL;SASKUTIL;C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [12.7.2011 23:55:22 67664]
R2 !SASCORE;SAS Core Service;C:\Program Files\SUPERAntiSpyware\SASCore.exe [8.5.2013 0:36:35 119024]
R2 EslWireHelper;ESL Wire Helper Service;C:\Program Files\EslWire\service\WireHelperSvc.exe [3.2.2013 13:57:22 614416]
R3 L1c;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;C:\WINDOWS\system32\drivers\l1c51x86.sys [2.2.2013 15:12:18 50176]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service;C:\WINDOWS\system32\drivers\viahduaa.sys [2.2.2013 15:13:41 2127728]
S3 busenum;SteelBusSvc;C:\WINDOWS\system32\drivers\SteelBus.sys [10.1.2013 7:46:26 111360]
S3 ESEADriver2;ESEADriver2;\??\C:\DOCUME~1\PEGAS10\LOCALS~1\Temp\ESEADriver2.sys --> C:\DOCUME~1\PEGAS10\LOCALS~1\Temp\ESEADriver2.sys [?]
S3 ESLvnic1;ESLvnic Virtual Network 32 Bit;C:\WINDOWS\system32\drivers\ESLvnic.sys [3.2.2013 13:54:34 23512]
S3 SAlphamHid;SteelHIDSvc;C:\WINDOWS\system32\drivers\SAlpham.sys [10.1.2013 7:46:26 34304]
S3 WinRing0_1_2_0;WinRing0_1_2_0;C:\Program Files\Razer\Razer Game Booster\Driver\WinRing0.sys [13.11.2012 22:53:00 14416]

Obsah adresáře 'Naplánované úlohy'

2013-06-09 C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
- C:\WINDOWS\System32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-02-02 13:19:13 . 2013-05-16 11:07:57]

2013-06-01 C:\WINDOWS\Tasks\EPUpdater.job
- C:\DOCUME~1\PEGAS10\DATAAP~1\BABSOL~1\Shared\BabMaint.exe [2013-05-24 11:04:50 . 2013-05-09 10:34:18]

2013-06-04 C:\WINDOWS\Tasks\SUPERAntiSpyware Scheduled Task aad2a7e1-04dc-41b9-8bd2-0de5767594f3.job
- C:\Program Files\SUPERAntiSpyware\SASTask.exe [2013-05-07 22:37:45 . 2013-05-07 22:37:45]

2013-06-08 C:\WINDOWS\Tasks\SUPERAntiSpyware Scheduled Task c0610f9a-fa18-4128-9bef-751a664676eb.job
- C:\Program Files\SUPERAntiSpyware\SASTask.exe [2013-05-07 22:37:45 . 2013-05-07 22:37:45]


------- Doplňkový sken -------

uStart Page = hxxp://search.babylon.com/?affID=119816 ... 89A554A2FE
IE: E&xportovat do aplikace Microsoft Office Excel - C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: Stáhnout odkaz s použitím BitCometu - C:\Program Files\BitComet\BitComet.exe/AddLink.htm
IE: Stáhnout všechny odkazy s použitím BitCometu - C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
TCP: DhcpNameServer = 192.168.100.254 192.168.0.1
DPF: DirectAnimation Java Classes - file://C:\WINDOWS\Java\classes\dajava.cab
DPF: Microsoft XML Parser for Java - file://C:\WINDOWS\Java\classes\xmldso.cab
FF - ProfilePath - C:\Documents and Settings\PEGAS10\Data aplikací\Mozilla\Firefox\Profiles\q0n3g7b1.default\
FF - prefs.js: browser.search.selectedEngine - Delta Search
FF - prefs.js: browser.startup.homepage - hxxp://search.babylon.com/?affID=119816 ... 89A554A2FE

- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -

AddRemove-{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX - C:\Program Files\NVIDIA Corporation\Installer2\installer.{BB06F2AE-E3EF-4ED7-9B1D-CB6C81BE4FA5}\NVI2.DLL

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119526
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Problém s vypadávající odezvou internetu

#4 Příspěvek od Rudy »

Něco CF smazal, zbytek logu vypadá OK. Zkuste použít WinsockFix: http://www.softpedia.com/get/Tweak/Netw ... kFix.shtml . Utilita reinstaluje TCP/IP protokol. Restartujte PC.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

pegas10
Návštěvník
Návštěvník
Příspěvky: 3
Registrován: 09 čer 2013 13:58

Re: Problém s vypadávající odezvou internetu

#5 Příspěvek od pegas10 »

Tak jsem zkusil, program reinstaloval, počítač se restartoval, ale problém je tu stále. Možná už to nevypadává tak často, ale je to strašně nepříjemné.

http://imageshack.us/photo/my-images/827/tosame.png/

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119526
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Problém s vypadávající odezvou internetu

#6 Příspěvek od Rudy »

Občasné výpadky paketů jsou jednoznačně problém připojení. Restartujte modem, příp. další síť. prvek v datové cestě. Pokud to nepomůže, kontaktujte providera.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět