Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

pomalé pomalé pomalé !!!!

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
Musclefish
Návštěvník
Návštěvník
Příspěvky: 50
Registrován: 03 pro 2006 10:06

pomalé pomalé pomalé !!!!

#1 Příspěvek od Musclefish »

Logfile of random's system information tool 1.09 (written by random/random)
Run by moje at 2014-04-20 15:43:54
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 424 GB (89%) free of 477 GB
Total RAM: 2046 MB (61% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:44:18, on 20.4.2014
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Zrychleni Pocitace\PCSUService.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\PopularScreensavers_7i\bar\1.bin\7ibrmon.exe
C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbrmon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Vuze\Azureus.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\moje\Local Settings\Temporary Internet Files\Content.IE5\KDLA88WC\RSIT[1].exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\trend micro\moje.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = www.bing.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTer ... ORM=IE10SR
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: (no name) - {93a3111f-4f74-4ed8-895e-d9708497629e} - (no file)
R3 - URLSearchHook: (no name) - {0953a3a2-9223-4990-a1c9-efb4d4686ef2} - (no file)
O2 - BHO: (no name) - {0709f2cc-d1e6-4b43-9efc-1c0701cb173d} - (no file)
O2 - BHO: (no name) - {312f84fb-8970-4fd3-bddb-7012eac4afc9} - (no file)
O2 - BHO: (no name) - {3a6625a2-591b-4e83-ac3f-8c25eea30ac0} - (no file)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll
O2 - BHO: (no name) - {c547c6c2-561b-4169-a2a5-20ba771ca93b} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit -login
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [EEventManager] C:\PROGRA~1\EPSONS~1\EVENTM~1\EEventManager.exe
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [PopularScreensavers_7i Browser Plugin Loader] C:\Program Files\PopularScreensavers_7i\bar\1.bin\7ibrmon.exe
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [SoundMAX] "C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" /tray
O4 - HKLM\..\Run: [VideoDownloadConverter_4z Browser Plugin Loader] C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbrmon.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [EPSON SX210 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIFDE.EXE /FU "C:\WINDOWS\TEMP\E_S1E8.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [EPSON SX210 Series (kopie 1)] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIFDE.EXE /FU "C:\WINDOWS\TEMP\E_S2D.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [PCSpeedUp] C:\Program Files\Zrychleni Pocitace\PCSUNotifier.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: &Search - http://buttons.videodownloadconverter.c ... 13111&cv=3
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PC Speed Up Service (PCSUService) - Unknown owner - C:\Program Files\Zrychleni Pocitace\PCSUService.exe

--
End of file - 9666 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job
C:\WINDOWS\tasks\avast! Emergency Update.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job
C:\WINDOWS\tasks\PC SpeedUp Service Deactivator.job
C:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{CAC9D9FA-F6E2-43DA-8316-433F1A2312FF}.job

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\moje\Data aplikací\Mozilla\Firefox\Profiles\4orujoor.default

prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"

"{20a82645-c095-46ed-80e3-08825760534b}"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 12.0.0.77 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=]
"Description"=iTunes Detector Plug-in
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=1.0]
"Description"=
"Path"=C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.55.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.55.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@popularscreensavers.com/Plugin]
"Description"=Popular Screensavers Plugin
"Path"=C:\Program Files\PopularScreensavers\NPp5Stub.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@PopularScreensavers_7i.com/Plugin]
"Description"=PopularScreensavers Plugin
"Path"=C:\Program Files\PopularScreensavers_7i\bar\1.bin\NP7iStub.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.23.9\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.23.9\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@VideoDownloadConverter_4z.com/Plugin]
"Description"=VideoDownloadConverter Plugin
"Path"=C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\NP4zStub.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@VideoDownloadConverter_ScriptHelper.com/Plugin]
"Description"=VideoDownloadConverter_ScriptHelper Plugin
"Path"=C:\Program Files\VideoDownloadConverter\npVDCPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


C:\Documents and Settings\moje\Data aplikací\Mozilla\Firefox\Profiles\4orujoor.default\extensions\
{ba14329e-9550-4989-b3f2-9732e92d17cc}
{ea614400-e918-4741-9a97-7a972ff7c30b}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0709f2cc-d1e6-4b43-9efc-1c0701cb173d}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{312f84fb-8970-4fd3-bddb-7012eac4afc9}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3a6625a2-591b-4e83-ac3f-8c25eea30ac0}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-04-20 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-04-01 597816]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9421DD08-935F-4701-A9CA-22DF90AC4EA6}]
Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-04-02 266240]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2014-03-28 194504]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll [2014-01-25 1001936]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{c547c6c2-561b-4169-a2a5-20ba771ca93b}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-04-20 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E99421FB-68DD-40F0-B4AC-B7027CAE2F1A}]
EpsonToolBandKicker Class - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-22 368640]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EE5D279F-081B-4404-994D-C6B60AAEBA6D} - EPSON Web-To-Page - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-22 368640]
{9421DD08-935F-4701-A9CA-22DF90AC4EA6} - Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-04-02 266240]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2014-03-28 194504]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2013-01-31 15517472]
"NvMediaCenter"=NvMCTray.dll,NvTaskbarInit -login []
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-04-01 3854640]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"EEventManager"=C:\PROGRA~1\EPSONS~1\EVENTM~1\EEventManager.exe [2008-12-04 665424]
"BluetoothAuthenticationAgent"=bthprops.cpl,,BluetoothAuthenticationAgent []
"PopularScreensavers_7i Browser Plugin Loader"=C:\Program Files\PopularScreensavers_7i\bar\1.bin\7ibrmon.exe [2014-01-25 61512]
"ISUSPM Startup"=C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe [2004-06-16 221184]
"ISUSScheduler"=C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2004-06-16 81920]
"SoundMAXPnP"=C:\Program Files\Analog Devices\Core\smax4pnp.exe [2006-12-18 868352]
"SoundMAX"=C:\Program Files\Analog Devices\SoundMAX\Smax4.exe [2006-07-13 729088]
"VideoDownloadConverter_4z Browser Plugin Loader"=C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbrmon.exe [2014-01-31 61512]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]
"EPSON SX210 Series"=C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIFDE.EXE [2008-11-06 199680]
"EPSON SX210 Series (kopie 1)"=C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIFDE.EXE [2008-11-06 199680]
"PCSpeedUp"=C:\Program Files\Zrychleni Pocitace\PCSUNotifier.exe [2012-11-07 255856]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"="C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe:*:Enabled:Daemonu.exe"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Program Files\Epson Software\Event Manager\EEventManager.exe"="C:\Program Files\Epson Software\Event Manager\EEventManager.exe:*:Enabled:EEventManager Application"
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour Service"
"C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"C:\Program Files\Vuze\Azureus.exe"="C:\Program Files\Vuze\Azureus.exe:*:Enabled:Azureus / Vuze"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\comupdatus.exe]
"Debugger=""C:\Program Files\Zrychleni Pocitace\PCSUSD.exe" /debugexe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\jabswitch.exe]
"Debugger=""C:\Program Files\Zrychleni Pocitace\PCSUSD.exe" /debugexe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\java-rmi.exe]
"Debugger=""C:\Program Files\Zrychleni Pocitace\PCSUSD.exe" /debugexe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\java.exe]
"Debugger=""C:\Program Files\Zrychleni Pocitace\PCSUSD.exe" /debugexe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\javacpl.exe]
"Debugger=""C:\Program Files\Zrychleni Pocitace\PCSUSD.exe" /debugexe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\javaw.exe]
"Debugger=""C:\Program Files\Zrychleni Pocitace\PCSUSD.exe" /debugexe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\javaws.exe]
"Debugger=""C:\Program Files\Zrychleni Pocitace\PCSUSD.exe" /debugexe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\jp2launcher.exe]
"Debugger=""C:\Program Files\Zrychleni Pocitace\PCSUSD.exe" /debugexe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\keytool.exe]
"Debugger=""C:\Program Files\Zrychleni Pocitace\PCSUSD.exe" /debugexe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\kinit.exe]
"Debugger=""C:\Program Files\Zrychleni Pocitace\PCSUSD.exe" /debugexe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\klist.exe]
"Debugger=""C:\Program Files\Zrychleni Pocitace\PCSUSD.exe" /debugexe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ktab.exe]
"Debugger=""C:\Program Files\Zrychleni Pocitace\PCSUSD.exe" /debugexe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\orbd.exe]
"Debugger=""C:\Program Files\Zrychleni Pocitace\PCSUSD.exe" /debugexe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\pack200.exe]
"Debugger=""C:\Program Files\Zrychleni Pocitace\PCSUSD.exe" /debugexe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\policytool.exe]
"Debugger=""C:\Program Files\Zrychleni Pocitace\PCSUSD.exe" /debugexe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rmid.exe]
"Debugger=""C:\Program Files\Zrychleni Pocitace\PCSUSD.exe" /debugexe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rmiregistry.exe]
"Debugger=""C:\Program Files\Zrychleni Pocitace\PCSUSD.exe" /debugexe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\servertool.exe]
"Debugger=""C:\Program Files\Zrychleni Pocitace\PCSUSD.exe" /debugexe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ssvagent.exe]
"Debugger=""C:\Program Files\Zrychleni Pocitace\PCSUSD.exe" /debugexe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\tnameserv.exe]
"Debugger=""C:\Program Files\Zrychleni Pocitace\PCSUSD.exe" /debugexe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\unpack200.exe]
"Debugger=""C:\Program Files\Zrychleni Pocitace\PCSUSD.exe" /debugexe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\wlmerger.exe]
"Debugger=""C:\Program Files\Zrychleni Pocitace\PCSUSD.exe" /debugexe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=l3codeca.acm
"VIDC.LAGS"=lagarith.dll
"VIDC.X264"=x264vfw.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.FFDS"=ff_vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.lameacm"=lameACM.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.FMVC"=fmcodec.dll

======List of files/folders created in the last 1 month======

2014-04-20 15:43:54 ----D---- C:\rsit
2014-04-20 15:43:54 ----D---- C:\Program Files\trend micro
2014-04-20 12:42:34 ----D---- C:\Documents and Settings\moje\Data aplikací\Azureus
2014-04-20 12:42:31 ----D---- C:\Program Files\Vuze
2014-04-20 12:41:36 ----D---- C:\Program Files\Common Files\Java
2014-04-20 12:41:05 ----A---- C:\WINDOWS\system32\javaws.exe
2014-04-20 12:41:00 ----A---- C:\WINDOWS\system32\WindowsAccessBridge.dll
2014-04-20 12:41:00 ----A---- C:\WINDOWS\system32\javaw.exe
2014-04-20 12:41:00 ----A---- C:\WINDOWS\system32\java.exe
2014-04-09 11:59:48 ----HDC---- C:\WINDOWS\$NtUninstallKB2922229$
2014-04-07 16:09:02 ----A---- C:\WINDOWS\system32\Saver_Log.txt
2014-04-06 10:52:59 ----A---- C:\WINDOWS\ssEasyScreensavers by Hotbar.scr
2014-04-04 19:29:16 ----D---- C:\Program Files\Mozilla Firefox
2014-04-03 17:43:03 ----D---- C:\Program Files\Codyssey
2014-04-01 18:36:28 ----A---- C:\WINDOWS\avastSS.scr
2014-03-30 16:15:23 ----D---- C:\Documents and Settings\moje\Data aplikací\Mozilla
2014-03-30 16:15:14 ----D---- C:\Program Files\Mozilla Maintenance Service
2014-03-30 16:15:14 ----D---- C:\Documents and Settings\All Users\Data aplikací\Mozilla
2014-03-27 12:28:23 ----HDC---- C:\WINDOWS\$NtUninstallKB2934207$
2014-03-27 11:40:35 ----N---- C:\WINDOWS\system32\xp_eos.exe

======List of files/folders modified in the last 1 month======

2014-04-20 15:44:01 ----D---- C:\WINDOWS\Prefetch
2014-04-20 15:43:54 ----RD---- C:\Program Files
2014-04-20 15:30:22 ----D---- C:\WINDOWS\Temp
2014-04-20 14:59:19 ----A---- C:\WINDOWS\SchedLgU.Txt
2014-04-20 14:55:12 ----D---- C:\Program Files\The KMPlayer
2014-04-20 12:43:36 ----SHD---- C:\WINDOWS\Installer
2014-04-20 12:43:35 ----D---- C:\WINDOWS\WinSxS
2014-04-20 12:43:34 ----D---- C:\Program Files\Common Files\Microsoft Shared
2014-04-20 12:41:36 ----D---- C:\Program Files\Common Files
2014-04-20 12:41:05 ----D---- C:\WINDOWS\system32
2014-04-20 12:12:06 ----D---- C:\WINDOWS\Debug
2014-04-20 12:12:06 ----D---- C:\WINDOWS
2014-04-20 11:33:15 ----D---- C:\WINDOWS\SoftwareDistribution
2014-04-20 10:59:55 ----RSHDC---- C:\WINDOWS\system32\dllcache
2014-04-20 10:09:19 ----D---- C:\WINDOWS\system32\CatRoot2
2014-04-20 09:33:48 ----AC---- C:\WINDOWS\system32\PerfStringBackup.INI
2014-04-20 09:30:54 ----D---- C:\Program Files\Zrychleni Pocitace
2014-04-19 14:00:42 ----HD---- C:\WINDOWS\inf
2014-04-19 13:59:38 ----AC---- C:\WINDOWS\system32\FlashPlayerApp.exe
2014-04-17 15:24:33 ----D---- C:\Program Files\Java
2014-04-09 11:59:45 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2014-04-09 11:59:03 ----D---- C:\WINDOWS\system32\MRT
2014-04-09 11:57:18 ----AC---- C:\WINDOWS\system32\MRT.exe
2014-04-09 11:57:08 ----D---- C:\Program Files\Internet Explorer
2014-04-09 11:57:04 ----D---- C:\WINDOWS\ie8updates
2014-04-06 10:52:54 ----RD---- C:\WINDOWS\Web
2014-04-06 10:52:52 ----D---- C:\WINDOWS\SHELLNEW
2014-04-04 19:38:17 ----HD---- C:\Program Files\InstallShield Installation Information
2014-04-04 19:38:17 ----D---- C:\WINDOWS\system32\drivers
2014-04-04 19:38:15 ----D---- C:\Program Files\ASUS
2014-04-03 17:52:54 ----D---- C:\zaloha
2014-04-01 18:36:32 ----SD---- C:\WINDOWS\Tasks
2014-04-01 18:36:28 ----A---- C:\WINDOWS\system32\aswBoot.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2014-04-01 49944]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2014-04-01 180760]
R0 Imagedrv;Imagedrv; C:\WINDOWS\system32\DRIVERS\imagedrv.sys [2002-10-09 80864]
R0 nvata;nvata; C:\WINDOWS\system32\DRIVERS\nvata.sys [2006-08-21 105344]
R1 AsIO;AsIO; C:\WINDOWS\system32\drivers\AsIO.sys [2007-12-17 12400]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2014-04-01 54832]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2014-04-01 776976]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2014-04-01 411552]
R1 aswTdi;aswTdi; C:\WINDOWS\system32\drivers\aswTdi.sys [2014-04-01 57672]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2014-04-01 67824]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\ADIHdAud.sys [2007-01-16 293888]
R3 AEAudio;AE Audio Service; C:\WINDOWS\system32\drivers\AEAudio.sys [2006-08-07 93952]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2008-04-14 17024]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2008-04-14 101120]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2008-04-14 18944]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 26840]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2013-01-31 12648960]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2006-09-11 57856]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2006-09-11 19968]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2008-04-14 59136]
R3 SenFiltService;SenFilt Service; C:\WINDOWS\system32\drivers\Senfilt.sys [2006-03-17 392960]
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
S3 BTHPORT;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2008-06-14 272128]
S3 hhwxcvdw;hhwxcvdw; C:\WINDOWS\system32\drivers\hhwxcvdw.sys []
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-07-03 14976]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2014-01-07 43336]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-04-01 50344]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 390504]
R2 BthServ;Bluetooth Support Service; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 NVSvc;NVIDIA Driver Helper Service; C:\WINDOWS\system32\nvsvc32.exe [2013-01-31 156448]
R2 PCSUService;PC Speed Up Service; C:\Program Files\Zrychleni Pocitace\PCSUService.exe [2012-11-07 312176]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-01-25 116648]
S2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2014-04-20 182696]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-04-19 257712]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-01-25 116648]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2014-01-25 194032]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2014-01-20 553288]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2014-04-04 119408]
S3 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-01-31 1259296]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-07-20 754856]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------


Děkuji za pomoc :)

Uživatelský avatar
cernohous13
VIP in memoriam
VIP in memoriam
Příspěvky: 8721
Registrován: 09 pro 2006 06:19
Bydliště: Jablonec nad Nisou
Kontaktovat uživatele:

Re: pomalé pomalé pomalé !!!!

#2 Příspěvek od cernohous13 »

Zdravím,

:arrow: odinstaluj ten nesmysl C:\Program Files\Zrychleni Pocitace

:arrow: Stáhni Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
Ulož jej na plochu a spusť - zobrazí se licenční podminky -> start libovolnou klávesou.
Bude vytvořena záloha a proběhne skenování.
Vyskočí log (nebo je uložen zde c:\JRT jako JRT.txt) - zkopíruj jej sem

:arrow: Stáhni AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Ulož nejlépe na plochu -> ukonči všechny programy -> spusť AdwCleaner -> klikni na Scan po dokončení na Clean
bude provedena oprava, restartuje se - (případně restartuj) a vypadne log C:\AdwCleaner\AdwCleaner[S?].txt , jeho obsah vložíš sem

:arrow: pravděpodobně budeš nucen vypnout na tu chvíli antivir - je to čisté, prověřeno
vyosek píše: :arrow: Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
  • :arrow: Po spuštění do okna vlozte skript nize

    Kód: Vybrat vše

    srinfo;
    autoclean;
    emptyclsid;
    iedefaults;
    process;
    hijackthis;
    emptyalltemp;
    resethosts;
    
  • Nasledne kliknete na Run Script
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
Log bude zde C:\zoek-results.log
Doporučení:
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím Obrázek

-------------------------------------------------------------------------------------------------
> Podpora fóra <

Musclefish
Návštěvník
Návštěvník
Příspěvky: 50
Registrován: 03 pro 2006 10:06

Re: pomalé pomalé pomalé !!!!

#3 Příspěvek od Musclefish »

tak posílám 1.log
unkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Microsoft Windows XP x86
Ran by moje on ne 20.04.2014 at 20:11:36,91
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values

Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\videodownloadconverter_4z browser plugin loader
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\DisplayName
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\URL



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\popularscreensavers_7i.feedmanager
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\popularscreensavers_7i.feedmanager.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\popularscreensavers_7i.htmlpanel
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\popularscreensavers_7i.htmlpanel.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\popularscreensavers_7i.multiplebutton
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\popularscreensavers_7i.multiplebutton.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\popularscreensavers_7i.pseudotransparentplugin
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\popularscreensavers_7i.pseudotransparentplugin.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\popularscreensavers_7i.radiosettings
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\popularscreensavers_7i.radiosettings.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\popularscreensavers_7i.scriptbutton
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\popularscreensavers_7i.scriptbutton.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\popularscreensavers_7i.thirdpartyinstaller
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\popularscreensavers_7i.thirdpartyinstaller.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\protector_dll.protectorbho
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\protector_dll.protectorbho.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{17B0B148-1491-4668-AD7D-1F39972E03E5}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{406463E6-91B4-4BBE-8182-E41FDCA2B2B3}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{5469582E-6A71-4C2C-AB43-AB183058C88C}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{5C0A85B9-3980-475D-AA36-EA2EF138EC04}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{6833E938-D47A-4BCA-B7D4-A712CD561127}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{7F9BAD37-202C-468D-A046-EBDEF588616D}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{96D0C95F-BFE7-430E-A406-D8E2D33FEE48}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{A9197738-02A5-46EF-BBF9-FDE251C5A631}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{B7C7E5C1-F49C-476A-A7E9-F45E5C85C995}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{BC07C71E-C13B-4E16-B9A4-D954C3F097B6}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{C39937A0-C59D-4506-A9FC-0A0138192287}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{13431DEE-CAD4-403C-BDC2-F36F3F3F0852}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{50CE9C1E-AFA8-494D-98F1-FFEC8965EA0A}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{66376EFC-73B3-41CB-8403-C19EA5A60623}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{A1C4DF97-9F5A-4518-A185-B71B3E2EDFA2}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{A40F7F79-8927-4A4A-B0FC-D41A8BE8C018}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{B956E151-3D90-489F-B109-97D5B4545D36}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{B985332B-07EF-4185-BBFA-805BF2130D59}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{C39937A7-C59D-4506-A9FC-0A0138192287}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{C91E811C-4C64-4705-9C79-6DCF4184CE2C}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{2CF52ECC-9E7E-43D7-8F7F-BBFB10C2D36F}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{32416A28-DAA5-4EE2-A5A1-6E9CB952C19D}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{46A5C277-35A6-4C87-A0D2-D34D30D5A363}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{679DD02B-BFD7-439D-ADFF-20D7ED92FFD4}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{A5F237F3-1DA6-43AF-8CA5-CFD7BE9259A2}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{BBB1A756-C3A5-42CF-8FA3-BA0BD4C6F386}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{C39937A5-C59D-4506-A9FC-0A0138192287}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{CCEC4CA8-9CE0-48E2-B203-C0239AA97A62}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{FD4D02F2-EA24-4809-B0B6-805031110E8C}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\conduit
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\smartbar
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\&search
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.feedmanager
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.feedmanager.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.htmlmenu
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.htmlmenu.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.htmlpanel
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.htmlpanel.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.multiplebutton
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.multiplebutton.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.pseudotransparentplugin
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.pseudotransparentplugin.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.radio
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.radio.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.radiosettings
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.radiosettings.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.scriptbutton
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.scriptbutton.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.thirdpartyinstaller
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\videodownloadconverter_4z.thirdpartyinstaller.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{17B0B148-1491-4668-AD7D-1F39972E03E5}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{406463E6-91B4-4BBE-8182-E41FDCA2B2B3}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7F9BAD37-202C-468D-A046-EBDEF588616D}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{46197f3d-30e7-4905-a14b-02bee3aaeb58}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{46197f3d-30e7-4905-a14b-02bee3aaeb58}



~~~ Files

Successfully deleted: [File] "C:\WINDOWS\system32\roboot.exe"
Successfully deleted: [File] "C:\end"



~~~ Folders

Successfully deleted: [Folder] "C:\Documents and Settings\moje\Data aplikacˇ\newnext.me"
Successfully deleted: [Folder] "C:\Documents and Settings\moje\Data aplikacˇ\popularscreensavers_7i"
Successfully deleted: [Folder] "C:\Documents and Settings\moje\Data aplikacˇ\videodownloadconverter_4z"
Successfully deleted: [Folder] "C:\Program Files\popularscreensavers"
Failed to delete: [Folder] "C:\Program Files\popularscreensavers_7i"
Failed to delete: [Folder] "C:\Program Files\videodownloadconverter_4z"



~~~ FireFox

Successfully deleted: [Folder] C:\Documents and Settings\moje\Data aplikacˇ\mozilla\firefox\profiles\4orujoor.default\extensions\{ba14329e-9550-4989-b3f2-9732e92d17cc}
Successfully deleted the following from C:\Documents and Settings\moje\Data aplikacˇ\mozilla\firefox\profiles\4orujoor.default\prefs.js

user_pref("CT2504091.FF19Solved", "true");
user_pref("CT2504091.UserID", "UN31763563371837479");
user_pref("CT2504091.dum", "2");
user_pref("CT2504091.fullUserID", "UN31763563371837479.IN.20140420124713");
user_pref("CT2504091.installDate", "20/04/2014 12:47:16");
user_pref("CT2504091.installSessionId", "{66B65129-2DBF-4CFA-9DF4-B1F54805D258}");
user_pref("CT2504091.installSp", "FALSE");
user_pref("CT2504091.installerVersion", "1.10.0.6");
user_pref("CT2504091.searchRevert", "false");
user_pref("CT2504091.searchUninstallUserMode", "1");
user_pref("CT2504091.searchUserMode", "1");
user_pref("CT2504091.toolbarInstallDate", "20-04-2014 12:47:13");
user_pref("CT2504091.versionFromInstaller", "10.29.0.20");
user_pref("CT2504091.xpeMode", "1");
user_pref("smartbar.machineId", "YS7LFFPLEWOVOPNHBVC1X6H/RSDSBYGC3QYN+9M86YO61FI8JQQITAPLEXLVS+5Z7GNGKF3SEHWR8F/ABIWUYA");





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on ne 20.04.2014 at 20:18:48,07
End of JRT log
:)

Musclefish
Návštěvník
Návštěvník
Příspěvky: 50
Registrován: 03 pro 2006 10:06

Re: pomalé pomalé pomalé !!!!

#4 Příspěvek od Musclefish »

posílám 2.log

# AdwCleaner v3.023 - Report created 20/04/2014 at 20:29:33
# Updated 01/04/2014 by Xplode
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : moje - MOJE-7B4EED4E0B
# Running from : C:\Documents and Settings\moje\Plocha\adwcleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\Program Files\VideoDownloadConverter
Folder Deleted : C:\Program Files\VideoDownloadConverter_4z
Folder Deleted : C:\Program Files\Vuze
Folder Deleted : C:\Documents and Settings\moje\Local Settings\Data aplikací\genienext
Folder Deleted : C:\Documents and Settings\moje\Local Settings\Data aplikací\iac
Folder Deleted : C:\Documents and Settings\moje\Local Settings\Data aplikací\Mobogenie
File Deleted : C:\WINDOWS\system32\p5PSSavr.scr

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.ToolbarProtector
Key Deleted : HKLM\SOFTWARE\Classes\VideoDownloadConverter_4z.ToolbarProtector.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@VideoDownloadConverter_4z.com/Plugin
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@VideoDownloadConverter_ScriptHelper.com/Plugin
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [PopularScreensavers_7i Browser Plugin Loader]
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1F6F39C1-00A8-4752-A94C-D0EA92D978B6}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2A1260C1-2964-453F-B0BA-FA429472EB5F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{363D5C92-10DC-4287-93E5-1832EECC48EC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3719959C-1CCD-4FA7-8EBB-7D9DED86FCCB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B41BE90-F731-4137-AFF3-2CA951E7F0D9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3D429207-4689-492D-A0E5-CDC5DFBB5005}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4128C64D-F0DD-4811-9405-D22294E8151F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5354D921-3F52-47C5-938D-77A2FB6DEFE7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{69407823-3494-4400-8D49-612549E8F4EE}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6FB5B50A-863D-4C0D-8E84-92A59565D087}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{71144427-1368-4D18-8DC9-2AE3CC4C4F83}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{84B7B98F-E018-4DBB-AB4C-4DDD3DFCB5FB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8FCA5302-6D6D-4645-BF99-D43CF76CE474}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C39937A9-C59D-4506-A9FC-0A0138192287}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DD385519-22E7-4BE2-8A8D-35C66DF4858E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DD55C1D4-CE89-4E93-866E-3F4A4962BD68}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{ED345812-2722-4DCA-9976-D01832DB44EE}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FF48DBA6-5DD8-4D10-9EB0-0FA968502E66}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{1AD2049E-E483-4425-8555-8E0775ACB631}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2D73F2D0-2FAB-458E-977D-2F9050E0ED60}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3E9469AF-E866-4476-B767-810630F1F6E7}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{47700C35-9E3E-4DAD-934C-0CE28A87237C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6E4C89CF-3061-4EE4-B22A-B7A8AAEA5CB3}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{716E443D-7CAA-44F1-866B-F45D00E712CC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{72063D77-7590-4DA9-A7F8-F5ECAF3632C4}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{7FC87AC5-FA93-476E-A32C-A941229DED0B}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A73204A3-4E2A-4924-95DA-D5DF58717368}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B5DB5A94-1E55-4E2E-AA50-49C8C8215D56}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{2D3826A1-F3E8-45D6-94B5-C26D8EC0073B}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{37923200-6887-4B44-95D4-CAE8F83ECFEE}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{3EE17DD1-E28B-4AED-A3B2-9C29CB2C19D6}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{79332472-47F3-4E32-B07F-CF8DF4C58499}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{886F93AD-3CBB-4424-8442-A7340243540F}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{AA289DBC-59B6-40A5-AC7D-C90DF850289C}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{B2E5F9A4-0587-4525-8602-E08E32510243}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{BC153A3C-0BB7-4EED-83AE-28E6E398F56E}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{CA723163-6FAD-43D4-8B93-0D8C52BD9974}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{F1F328EB-F5A5-432B-A54C-05F3EF5B0BD8}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{FE8DBB09-C3D3-4477-80CB-D38914B94BB8}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C547C6C2-561B-4169-A2A5-20BA771CA93B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{48586425-6BB7-4F51-8DC6-38C88E3EBB58}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{93A3111F-4F74-4ED8-895E-D9708497629E}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A86782D8-7B41-452F-A217-1854F72DBA54}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C39937A9-C59D-4506-A9FC-0A0138192287}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C547C6C2-561B-4169-A2A5-20BA771CA93B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DD55C1D4-CE89-4E93-866E-3F4A4962BD68}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{48586425-6BB7-4F51-8DC6-38C88E3EBB58}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1F6F39C1-00A8-4752-A94C-D0EA92D978B6}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5354D921-3F52-47C5-938D-77A2FB6DEFE7}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{71144427-1368-4D18-8DC9-2AE3CC4C4F83}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C39937A9-C59D-4506-A9FC-0A0138192287}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{DD55C1D4-CE89-4E93-866E-3F4A4962BD68}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{ED345812-2722-4DCA-9976-D01832DB44EE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2D6F0AC3-0C2E-4E07-8FDA-11268AB51211}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3D429207-4689-492D-A0E5-CDC5DFBB5005}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8798BBE7-DDF6-448B-AE0E-83C9E28A5598}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F37BCE7B-6055-418C-A301-E715F36F1E79}
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{93A3111F-4F74-4ED8-895E-D9708497629E}]
Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List [C:\Program Files\Vuze\Azureus.exe]
Key Deleted : HKCU\Software\PopularScreensavers
Key Deleted : HKCU\Software\VideoDownloadConverter_4z
Key Deleted : HKLM\Software\PopularScreensavers
Key Deleted : HKLM\Software\VideoDownloadConverter
Key Deleted : HKLM\Software\VideoDownloadConverter_4z
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VideoDownloadConverter
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VideoDownloadConverter_4zbar Uninstall Firefox
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\MyPC Backup

***** [ Browsers ] *****

-\\ Internet Explorer v8.0.6001.18702


-\\ Mozilla Firefox v28.0 (cs)

[ File : C:\Documents and Settings\moje\Data aplikací\Mozilla\Firefox\Profiles\4orujoor.default\prefs.js ]


-\\ Google Chrome v34.0.1847.116

[ File : C:\Documents and Settings\moje\Local Settings\Data aplikací\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [8257 octets] - [20/04/2014 20:27:36]
AdwCleaner[S0].txt - [8354 octets] - [20/04/2014 20:29:33]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [8414 octets] ##########

:)

Musclefish
Návštěvník
Návštěvník
Příspěvky: 50
Registrován: 03 pro 2006 10:06

Re: pomalé pomalé pomalé !!!!

#5 Příspěvek od Musclefish »

a 3.log
Zoek.exe v5.0.0.0 Updated 14-April-2014
Tool run by moje on ne 20.04.2014 at 20:36:05,32.
Systém Microsoft Windows XP Professional 5.1.2600 Service Pack 3 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Documents and Settings\moje\Plocha\zoek.exe [Scan all users] [Quick Scan] [Auto Clean]

==== System Restore Info ======================

20.4.2014 20:36:49 Zoek.exe System Restore Point Created Succesfully.

==== Empty Folders Check ======================

C:\Program Files\MSXML 4.0 deleted successfully
C:\Program Files\VideoLAN deleted successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-343818398-2139871995-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0953a3a2-9223-4990-a1c9-efb4d4686ef2} deleted successfully
HKEY_USERS\S-1-5-21-343818398-2139871995-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0709f2cc-d1e6-4b43-9efc-1c0701cb173d} deleted successfully
HKEY_USERS\S-1-5-21-343818398-2139871995-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3a6625a2-591b-4e83-ac3f-8c25eea30ac0} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0709f2cc-d1e6-4b43-9efc-1c0701cb173d} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3a6625a2-591b-4e83-ac3f-8c25eea30ac0} deleted successfully

==== Deleting CLSID Registry Values ======================

HKEY_USERS\S-1-5-21-343818398-2139871995-682003330-1003\Software\Microsoft\Internet Explorer\URLSearchHooks\{0953a3a2-9223-4990-a1c9-efb4d4686ef2} deleted successfully

==== Deleting Services ======================


==== Deleting Files \ Folders ======================

C:\Program Files\PopularScreensavers_7i deleted
C:\Documents and Settings\moje\daemonprocess.txt deleted
C:\Documents and Settings\moje\.android deleted

==== Files Recently Created / Modified ======================

====== C:\WINDOWS ====
2014-04-06 08:52:59 9B0342CBB008D3D0B61415955186C525 6375064 ----a-w- C:\WINDOWS\ssEasyScreensavers by Hotbar.scr
2014-04-01 16:36:28 E1CBFDE5CAD6C373946A0D2C238E6522 43152 ----a-w- C:\WINDOWS\avastSS.scr
====== C:\DOCUME~1\moje\LOCALS~1\Temp ====
====== Java Cache =====
====== C:\WINDOWS\system32 =====
2014-04-20 10:41:05 7EAB131EBF08F0E9E64C96285BD7D493 264616 ----a-w- C:\WINDOWS\System32\javaws.exe
2014-04-20 10:41:05 5526A2CD667E2C1D3D4EC749B4BA0015 145408 ----a-w- C:\WINDOWS\System32\javacpl.cpl
2014-04-20 10:41:00 EE821103AF3C760358574157881104B1 94632 ----a-w- C:\WINDOWS\System32\WindowsAccessBridge.dll
2014-04-20 10:41:00 479099423E3058D55F1682F3330F9AA8 175016 ----a-w- C:\WINDOWS\System32\java.exe
2014-04-20 10:41:00 26A414A2B7FC8AA5475CADB1189F1D02 175528 ----a-w- C:\WINDOWS\System32\javaw.exe
====== C:\WINDOWS\system32\drivers =====
====== C:\WINDOWS\Tasks ======
2014-03-27 10:40:59 72E99D38AE22441327756F53864548ED 220 ----a-w- C:\WINDOWS\Tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job
2014-03-27 10:40:59 4A0616BDE81378EF0B25751E42132DA2 214 ----a-w- C:\WINDOWS\Tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job
====== C:\WINDOWS\Temp ======
======= C:\Program Files =====
2014-04-20 13:43:54 -------- d-----w- C:\Program Files\trend micro
2014-04-20 10:41:36 -------- d-----w- C:\Program Files\Common Files\Java
2014-04-03 15:43:03 -------- d-----w- C:\Program Files\Codyssey
2014-03-30 14:15:14 -------- d-----w- C:\Program Files\Mozilla Maintenance Service
======= C: =====
====== C:\Documents and Settings\moje\Data aplikací ======
====== C:\Documents and Settings\moje ======
2014-04-20 18:26:57 04B47DEEB298AE90A0C42DEAED71F8BA 1426178 ----a-w- C:\Documents and Settings\moje\Plocha\adwcleaner.exe
2014-04-20 18:10:56 CA630DBADEB5B6101531F986ADFE46C9 1016261 ----a-w- C:\Documents and Settings\moje\Plocha\JRT.exe
2014-04-20 10:43:10 -------- d-----w- C:\Documents and Settings\moje\.swt
2014-04-20 10:12:06 -------- d--h--r- C:\Documents and Settings\moje\Recent

====== C: exe-files ==
2014-04-20 18:26:57 04B47DEEB298AE90A0C42DEAED71F8BA 1426178 ----a-w- C:\Documents and Settings\moje\Plocha\adwcleaner.exe
2014-04-20 18:11:21 2E0323A94915FAAB10A25F3BABF82584 157696 ----a-w- C:\Documents and Settings\moje\Local Settings\Temp\jrt\erunt\ERUNT.EXE
2014-04-20 18:10:56 CA630DBADEB5B6101531F986ADFE46C9 1016261 ----a-w- C:\Documents and Settings\moje\Plocha\JRT.exe
2014-04-20 13:43:54 9A2347903D6EDB84C10F288BC0578C1C 388608 ----a-w- C:\Program Files\trend micro\moje.exe
2014-04-20 13:43:46 69CA82A7482A00D8EE063D2B97FC4338 781383 ----a-w- C:\Documents and Settings\moje\Local Settings\Temporary Internet Files\Content.IE5\KDLA88WC\RSIT[1].exe
2014-04-20 10:51:42 F4C8E7B54DBCA55A44A8EB84E99C17D3 58752264 ----a-w- C:\Documents and Settings\moje\Dokumenty\Vuze Downloads\Zoner Photo Studio 16.0.1.3 Professional (CZ,EN)\zps16_cz13.exe
2014-04-20 10:51:42 BB8F13F88CC646E19D0AEF75B8529679 55609392 ----a-w- C:\Documents and Settings\moje\Dokumenty\Vuze Downloads\Zoner Photo Studio 16.0.1.3 Professional (CZ,EN)\zps16_en.exe
2014-04-20 10:51:42 0AFF91312C67814EE29C68A7B69EC1D0 40005224 ----a-w- C:\Documents and Settings\moje\Dokumenty\Vuze Downloads\Zoner Photo Studio 16.0.1.3 Professional (CZ,EN)\zps16 obálky & rámečky.exe
2014-04-20 10:47:19 6A0F411CA91A97A709B98E114F4052D5 76344 ----a-w- C:\Documents and Settings\moje\Local Settings\Temporary Internet Files\Content.IE5\KDLA88WC\statisticsstub[1].exe
2014-04-20 10:47:19 6A0F411CA91A97A709B98E114F4052D5 76344 ----a-w- C:\Documents and Settings\moje\Local Settings\Temp\ct2504091\statisticsStub.exe
2014-04-20 10:47:07 156ECD5797D5768250003E924BB2360F 2773264 ----a-w- C:\Documents and Settings\moje\Local Settings\Temporary Internet Files\Content.IE5\KDLA88WC\vuze_remote[1].exe
2014-04-20 10:47:03 4AE5F34AB33261FEB8B94F5FFC8E8F19 73543 ----a-w- C:\Documents and Settings\moje\Local Settings\Temporary Internet Files\Content.IE5\P2UVPJ2T\checktbexist[1].exe
2014-04-20 10:47:03 4AE5F34AB33261FEB8B94F5FFC8E8F19 73543 ----a-w- C:\Documents and Settings\moje\Local Settings\Temp\ct2504091\ctbe.exe
2014-04-20 10:47:01 38F9EB9AAD7DBC947C5A55F57F081692 81736 ----a-w- C:\Documents and Settings\moje\Local Settings\Temp\ct2504091\stub.exe
2014-04-20 10:46:44 6C6EA5E02FC8465DF805B96FB490FC55 3769672 ----a-w- C:\Documents and Settings\moje\Data aplikací\Azureus\plugins\aznettor\AzureusTor.exe
2014-04-20 10:45:15 0D429B6C54941F22FC36E45124802580 111824 ----a-w- C:\Documents and Settings\moje\Local Settings\Temporary Internet Files\Content.IE5\ILH8N0BT\ism[1].exe
2014-04-20 10:43:24 5689D43C3B201DD3810FA3BBA4A6476A 4216840 ----a-w- C:\Documents and Settings\moje\Local Settings\Temp\vcredist_x86.exe
2014-04-20 10:43:11 45922155C9628E11441AA869C6287BB7 10372136 ----a-w- C:\Documents and Settings\moje\Local Settings\Temp\BackupSetup.exe
2014-04-20 10:42:23 0D429B6C54941F22FC36E45124802580 111824 ----a-w- C:\Documents and Settings\moje\Local Settings\Temp\ct2504091\ism.exe
2014-04-20 10:41:05 7EAB131EBF08F0E9E64C96285BD7D493 264616 ----a-w- C:\WINDOWS\system32\javaws.exe
2014-04-20 10:41:00 479099423E3058D55F1682F3330F9AA8 175016 ----a-w- C:\WINDOWS\system32\java.exe
2014-04-20 10:41:00 26A414A2B7FC8AA5475CADB1189F1D02 175528 ----a-w- C:\WINDOWS\system32\javaw.exe
2014-04-20 10:40:55 F4DED4130A0104B6A4ED9844208F180F 16296 ----a-w- C:\Program Files\Java\jre7\bin\servertool.exe
2014-04-20 10:40:55 EB80B1148FF046F466D1C671AF75D559 16296 ----a-w- C:\Program Files\Java\jre7\bin\keytool.exe
2014-04-20 10:40:55 E53D6E485A0302A9C7D5E0D4D3E3C8B0 145832 ----a-w- C:\Program Files\Java\jre7\bin\unpack200.exe
2014-04-20 10:40:55 DA6CB7FCDE22F46C2A792F67033AF20D 16296 ----a-w- C:\Program Files\Java\jre7\bin\ktab.exe
2014-04-20 10:40:55 A88ABFD096E23B5560667BDC05917566 16296 ----a-w- C:\Program Files\Java\jre7\bin\rmiregistry.exe
2014-04-20 10:40:55 9E7CB10B1373D7172AE87D597AC58C24 16296 ----a-w- C:\Program Files\Java\jre7\bin\kinit.exe
2014-04-20 10:40:55 971C6733A1AF11192C378CC736F85DCC 49576 ----a-w- C:\Program Files\Java\jre7\bin\ssvagent.exe
2014-04-20 10:40:55 6544D757CC478157D0B1A7752E51FE3B 16296 ----a-w- C:\Program Files\Java\jre7\bin\policytool.exe
2014-04-20 10:40:55 5EBBDE8E4FA26B4DC2477EEFC580BBEC 16808 ----a-w- C:\Program Files\Java\jre7\bin\tnameserv.exe
2014-04-20 10:40:55 45A663489E1A24FE3696F689178C1041 182696 ----a-w- C:\Program Files\Java\jre7\bin\jqs.exe
2014-04-20 10:40:55 2AAB5E6938B562D4A78C8DB5F8923142 16296 ----a-w- C:\Program Files\Java\jre7\bin\rmid.exe
2014-04-20 10:40:55 29869351791BADAC5BF5647F2E3FCA2E 16296 ----a-w- C:\Program Files\Java\jre7\bin\klist.exe
2014-04-20 10:40:55 1D512E4C00DDFC9D0D236E818991EF1B 16296 ----a-w- C:\Program Files\Java\jre7\bin\orbd.exe
2014-04-20 10:40:55 11065E949C9640B42D0DE37CCF55F31C 16296 ----a-w- C:\Program Files\Java\jre7\bin\pack200.exe
2014-04-20 10:40:54 7EAB131EBF08F0E9E64C96285BD7D493 264616 ----a-w- C:\Program Files\Java\jre7\bin\javaws.exe
2014-04-20 10:40:54 76C9EFEA16CF2FAD41F6D6A37707A28B 68008 ----a-w- C:\Program Files\Java\jre7\bin\javacpl.exe
2014-04-20 10:40:54 479099423E3058D55F1682F3330F9AA8 175016 ----a-w- C:\Program Files\Java\jre7\bin\java.exe
2014-04-20 10:40:54 26A414A2B7FC8AA5475CADB1189F1D02 175528 ----a-w- C:\Program Files\Java\jre7\bin\javaw.exe
2014-04-20 10:40:54 068C8B4DD85CA47817BECD77F07110EC 52648 ----a-w- C:\Program Files\Java\jre7\bin\jp2launcher.exe
2014-04-20 10:40:53 F82ACDE93EC413733A4BE85BB34BEC14 16296 ----a-w- C:\Program Files\Java\jre7\bin\java-rmi.exe
2014-04-20 10:40:53 60050CE9D89F59C0FE53C74BC78E6655 48040 ----a-w- C:\Program Files\Java\jre7\bin\jabswitch.exe
2014-04-20 10:39:15 8793EF637AB0EA07973E81BF9515BD09 29164456 ----a-w- C:\Documents and Settings\moje\Local Settings\Temporary Internet Files\Content.IE5\KDLA88WC\Java-Runtime-Environment_7.0_Update_55[1].exe
2014-04-20 10:35:11 23C18AD76A71AB2B755AEB42179CFD02 9102880 ----a-w- C:\Documents and Settings\moje\Local Settings\Temporary Internet Files\Content.IE5\P2UVPJ2T\Vuze_5.0[1].exe
2014-04-20 10:30:10 1666BB475D2A7C9C85CA72B61AA23BBB 10130464 ----a-w- C:\Documents and Settings\moje\Local Settings\Temporary Internet Files\Content.IE5\VZLVT6ZJ\Vuze_Installer32[1].exe
2014-04-20 07:44:12 6D43AA185492628807399A8906D8CD91 72008 ----a-w- C:\RECYCLER\S-1-5-21-343818398-2139871995-682003330-1003\Dc18.exe
2014-04-17 13:23:29 3842C46F2FBC7522EF625F1833530804 145408 ----a-w- C:\Documents and Settings\moje\Data aplikací\Sun\Java\jre1.7.0_55\lzma.exe
=== C: other files ==
2014-04-20 18:11:21 DD1E4D974B1672ABD09EFFB225791C4A 1230 ----a-w- C:\Documents and Settings\moje\Local Settings\Temp\jrt\TDL4.bat
2014-04-20 18:11:21 AD2F52DC72B10AF331692E4A4DD80DFC 18670 ----a-w- C:\Documents and Settings\moje\Local Settings\Temp\jrt\medfos.bat
2014-04-20 18:11:21 A87CD1BAC46CAC0EEEDB571F07077032 8104 ----a-w- C:\Documents and Settings\moje\Local Settings\Temp\jrt\modules.bat
2014-04-20 18:11:21 8E6020C14F982CF11B3FE7DBB0CB8EDE 24738 ----a-w- C:\Documents and Settings\moje\Local Settings\Temp\jrt\searchlnk.bat
2014-04-20 18:11:21 86707BCE5CBB65D9B1C41E249B4423BA 152733 ----a-w- C:\Documents and Settings\moje\Local Settings\Temp\jrt\firefox.bat
2014-04-20 18:11:21 83F691D8398F0E37E71E9355BF730DB9 719 ----a-w- C:\Documents and Settings\moje\Local Settings\Temp\jrt\ev_clear.bat
2014-04-20 18:11:21 7D8282EB94B5D639B7378811C1924A8F 9516 ----a-w- C:\Documents and Settings\moje\Local Settings\Temp\jrt\runvalues.bat
2014-04-20 18:11:21 654E9FE74B930A454EE5BDE165794B65 85 ----a-w- C:\Documents and Settings\moje\Local Settings\Temp\jrt\delorphans.bat
2014-04-20 18:11:21 5B92615B0CEA08D6BA1217C08CBB1443 15919 ----a-w- C:\Documents and Settings\moje\Local Settings\Temp\jrt\get.bat
2014-04-20 18:11:21 5B71358F97544D9DE58A9A0893079506 39458 ----a-w- C:\Documents and Settings\moje\Local Settings\Temp\jrt\prelim.bat
2014-04-20 18:11:21 53B191266B30D57F2F835ABBF54C68C5 13963 ----a-w- C:\Documents and Settings\moje\Local Settings\Temp\jrt\chrome.bat
2014-04-20 18:11:21 3BC04DEBBE9027060D51901133F60101 154678 ----a-w- C:\Documents and Settings\moje\Local Settings\Temp\jrt\misc.bat
2014-04-20 18:11:21 38A0BDF322ACCC968B0A824C38D50157 29635 ----a-w- C:\Documents and Settings\moje\Local Settings\Temp\jrt\ask.bat
2014-04-20 18:11:21 335DFF8F23E5EC02B5426362F0F8509B 31401 ----a-w- C:\Documents and Settings\moje\Local Settings\Temp\jrt\iexplore.bat
2014-04-20 18:11:21 2F80D807DB405C8F6E0F3706B9FED710 10161 ----a-w- C:\Documents and Settings\moje\Local Settings\Temp\jrt\JRT.bat
2014-04-20 18:11:21 0D08FBD2E6F6C6AC6A504712C4CE6CE3 1226 ----a-w- C:\Documents and Settings\moje\Local Settings\Temp\jrt\FWPolicy.bat
2014-04-20 18:11:21 0C4649A62845AB5D5DBCC4998477FF6D 1813 ----a-w- C:\Documents and Settings\moje\Local Settings\Temp\jrt\delfolders.bat
2014-04-20 10:52:17 8AF11EF119BDFC350FBF3786C31C32D8 1606588 ----a-w- C:\Documents and Settings\moje\Data aplikací\Azureus\plugins\aznettor\aznettor_0.6.2.zip
2014-04-20 10:47:59 8AF11EF119BDFC350FBF3786C31C32D8 1606588 ----a-w- C:\Documents and Settings\moje\Local Settings\Temp\aznettor-win32_0.6.2.zip
2014-04-20 10:47:58 B129BC13EEF057EE722D3A3489C392B4 185738 ----a-w- C:\Documents and Settings\moje\Data aplikací\Azureus\plugins\azutp\azutp_0.5.4.zip
2014-04-20 10:47:39 B129BC13EEF057EE722D3A3489C392B4 185738 ----a-w- C:\Documents and Settings\moje\Local Settings\Temp\azutp_0.5.4.zip
2014-04-20 10:44:50 66F5451EE4129B88976D30CD31E90690 26237 ----a-w- C:\Documents and Settings\moje\Local Settings\Temp\azupdater_1.9.1.zip
2014-04-20 10:44:33 8DE2D98D1C5A508C6A1C4CA4C6C9ECD5 9216263 ----a-w- C:\Documents and Settings\moje\Local Settings\Temp\Vuze_5.3.0.0a_win32.zip
2014-04-20 10:40:56 D89A382292CB7F22CD29D6E5D9A41CBF 18714 ----a-w- C:\Program Files\Java\jre7\lib\deploy\ffjcext.zip
2014-04-16 03:35:36 FEA8E6B29BECAAC48C3B7094F0DDAF02 1715300 ----a-w- C:\Documents and Settings\moje\Local Settings\Temp\ct2504091\CT2504091.xpi

==== Startup Registry Enabled ======================

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE"

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE"

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE"

[HKEY_USERS\S-1-5-21-343818398-2139871995-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe"
"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe /background"
"EPSON SX210 Series"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIFDE.EXE /FU C:\WINDOWS\TEMP\E_S1E8.tmp /EF HKCU"
"EPSON SX210 Series (kopie 1)"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIFDE.EXE /FU C:\WINDOWS\TEMP\E_S2D.tmp /EF HKCU"

[HKEY_USERS\S-1-5-21-343818398-2139871995-682003330-1004\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE"

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup"
"NvMediaCenter"="RunDLL32.exe NvMCTray.dll,NvTaskbarInit -login"
"AvastUI.exe"="C:\Program Files\AVAST Software\Avast\AvastUI.exe /nogui"
"Adobe ARM"="C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"EEventManager"="C:\PROGRA~1\EPSONS~1\EVENTM~1\EEventManager.exe"
"BluetoothAuthenticationAgent"="rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent"
"ISUSPM Startup"="C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup"
"ISUSScheduler"="C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe -start"
"SoundMAXPnP"="C:\Program Files\Analog Devices\Core\smax4pnp.exe"
"SoundMAX"="C:\Program Files\Analog Devices\SoundMAX\Smax4.exe /tray"
"SunJavaUpdateSched"="C:\Program Files\Common Files\Java\Java Update\jusched.exe"
"APSDaemon"="C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe"
"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe /background"
"EPSON SX210 Series"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIFDE.EXE /FU C:\WINDOWS\TEMP\E_S1E8.tmp /EF HKCU"
"EPSON SX210 Series (kopie 1)"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIFDE.EXE /FU C:\WINDOWS\TEMP\E_S2D.tmp /EF HKCU"

==== Task Scheduler Jobs ======================

C:\WINDOWS\tasks\Adobe Flash Player Updater.job --a--c--- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [19.04.2014 13:59]
C:\WINDOWS\tasks\avast\Undetermined Task.exe []
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job --a--c--- C:\Program Files\Google\Update\GoogleUpdate.exe [25.01.2014 18:38]
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job --a--c--- C:\Program Files\Google\Update\GoogleUpdate.exe [25.01.2014 18:38]
C:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job [Undetermined Task]
C:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job [Undetermined Task]
C:\WINDOWS\tasks\User_Feed_Synchronization-{CAC9D9FA-F6E2-43DA-8316-433F1A2312FF}.job --ah-c--- C:\WINDOWS\system32\msfeedssync.exe [08.03.2009 05:31]

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [01.04.2014 18:36]

==== Chrome Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[01.04.2014 18:36]

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.seznam.cz/"
"Search Page"="http://www.bing.com/search?q={searchTer ... ORM=IE10SR"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Page"="http://www.seznam.cz/"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE8SRC"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchT ... {startPage}"

==== Empty IE Cache ======================

C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\UpdatusUser\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
C:\Documents and Settings\moje\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot

==== Empty FireFox Cache ======================

No FireFox Profiles found

==== Empty Chrome Cache ======================

No Chrome User Data found

==== Empty All Flash Cache ======================

No Flash Cache Found

==== Empty All Java Cache ======================

No Java Cache Found

==== C:\zoek_backup content ======================

C:\zoek_backup (files=7 folders=4 317710 bytes)

==== Empty Temp Folders ======================

C:\WINDOWS\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\WINDOWS\Temp successfully emptied
C:\DOCUME~1\moje\LOCALS~1\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\RECYCLER successfully emptied

==== Deleting Files / Folders ======================

"C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not found
"C:\Documents and Settings\moje\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not deleted
"C:\Program Files\movie maker" not deleted

==== EOF on ne 20.04.2014 at 20:57:10,81 ======================
:) :)

Uživatelský avatar
cernohous13
VIP in memoriam
VIP in memoriam
Příspěvky: 8721
Registrován: 09 pro 2006 06:19
Bydliště: Jablonec nad Nisou
Kontaktovat uživatele:

Re: pomalé pomalé pomalé !!!!

#6 Příspěvek od cernohous13 »

:arrow: Stáhni a nainstaluj MBAM zde http://www.bleepingcomputer.com/downloa ... i-malware/ verzi 1.75
Spustit -> na 3.záložce "Aktualizace" -> Kontrola aktualizací (možná bude provedeno automaticky)
následně na 1.záložce "Kontrolor" -> Úplná kontrola -> Prohledat
po dokončení scanu vyskočí okno Notepad s výsledkem - obsah zkopíruj do své odpovědi
zatím nic nemazat - počkej na posouzení
Doporučení:
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím Obrázek

-------------------------------------------------------------------------------------------------
> Podpora fóra <

Musclefish
Návštěvník
Návštěvník
Příspěvky: 50
Registrován: 03 pro 2006 10:06

Re: pomalé pomalé pomalé !!!!

#7 Příspěvek od Musclefish »

posílám slíbený soubor

Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org

Verze: v2014.04.21.02

Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
moje :: MOJE-7B4EED4E0B [administrátor]

Ochrana: Povolena

21.4.2014 8:42:47
MBAM-log-2014-04-21 (10-56-28).txt

Typ: Kompletní kontrola (C:\|)
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 350266
Uplynulý čas: 1 hodin, 10 minut, 17 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 23
C:\AdwCleaner\Quarantine\C\Documents and Settings\moje\Local Settings\Data aplikací\Mobogenie\Version\OldVersion\Mobogenie2.2.0.zip.vir (PUP.Optional.NextLive.A) -> Nebyla provedena žádná instrukce.
C:\AdwCleaner\Quarantine\C\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbrstub.dll.vir (PUP.Optional.MindSpark.A) -> Nebyla provedena žádná instrukce.
C:\AdwCleaner\Quarantine\C\Program Files\Vuze\.install4j\user\mism.exe.vir (PUP.Optional.Conduit.A) -> Nebyla provedena žádná instrukce.
C:\Program Files\FormatFactory\FFModules\Package\BaiDu\hao123inst-saudi-forf.exe (PUP.Optional.Hao123.A) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{03AC428F-A65F-411F-AAC1-3B3F8019666E}\RP37\A0009432.exe (PUP.Optional.Spigot.A) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{03AC428F-A65F-411F-AAC1-3B3F8019666E}\RP37\A0010387.dll (PUP.Optional.DefaultTab) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{03AC428F-A65F-411F-AAC1-3B3F8019666E}\RP41\A0023138.exe (PUP.Optional.Hao123.A) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{03AC428F-A65F-411F-AAC1-3B3F8019666E}\RP41\A0023545.exe (PUP.Adware.Gotclip.ScamLotto) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{03AC428F-A65F-411F-AAC1-3B3F8019666E}\RP43\A0023960.exe (PUP.Optional.AudioToAudioToolBar.A) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{03AC428F-A65F-411F-AAC1-3B3F8019666E}\RP43\A0024002.exe (PUP.Optional.Conduit.A) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{03AC428F-A65F-411F-AAC1-3B3F8019666E}\RP89\A0061338.exe (PUP.Optional.AudioToAudioToolBar.A) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{03AC428F-A65F-411F-AAC1-3B3F8019666E}\RP89\A0061350.dll (PUP.Optional.MindSpark.A) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{03AC428F-A65F-411F-AAC1-3B3F8019666E}\RP89\A0061387.exe (PUP.Optional.AudioToAudioToolBar.A) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{03AC428F-A65F-411F-AAC1-3B3F8019666E}\RP89\A0061389.exe (PUP.Optional.MindSpark.A) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{03AC428F-A65F-411F-AAC1-3B3F8019666E}\RP89\A0061400.dll (PUP.Optional.MindSpark.A) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{03AC428F-A65F-411F-AAC1-3B3F8019666E}\RP89\A0061450.dll (PUP.Optional.MindSpark.A) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{03AC428F-A65F-411F-AAC1-3B3F8019666E}\RP90\A0061516.exe (PUP.Optional.MindSpark.A) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{03AC428F-A65F-411F-AAC1-3B3F8019666E}\RP90\A0061517.dll (PUP.Optional.MindSpark.A) -> Nebyla provedena žádná instrukce.
C:\zaloha\WINDOWS\Installer\506eb.msi (PUP.Optional.SweetIM) -> Nebyla provedena žádná instrukce.
C:\zaloha\WINDOWS\Installer\5dfcf.msi (PUP.Optional.SweetIM) -> Nebyla provedena žádná instrukce.
C:\zaloha\WINDOWS\Installer\5dfd4.msi (PUP.Optional.SweetIM) -> Nebyla provedena žádná instrukce.
C:\zoek_backup\C_Program Files_PopularScreensavers_7i\bar\1.bin\7ibrmon.exe (PUP.Optional.MindSpark.A) -> Nebyla provedena žádná instrukce.
C:\zoek_backup\C_Program Files_PopularScreensavers_7i\bar\1.bin\7ibrstub.dll (PUP.Optional.MindSpark.A) -> Nebyla provedena žádná instrukce.

(konec)
:)

Uživatelský avatar
cernohous13
VIP in memoriam
VIP in memoriam
Příspěvky: 8721
Registrován: 09 pro 2006 06:19
Bydliště: Jablonec nad Nisou
Kontaktovat uživatele:

Re: pomalé pomalé pomalé !!!!

#8 Příspěvek od cernohous13 »

:arrow: v MBAM nech Označit vše a pak Odstranit označené
znovu kontrola MBAM - log uvítám

:arrow: přidej aktuální RSIT
Doporučení:
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím Obrázek

-------------------------------------------------------------------------------------------------
> Podpora fóra <

Musclefish
Návštěvník
Návštěvník
Příspěvky: 50
Registrován: 03 pro 2006 10:06

Re: pomalé pomalé pomalé !!!!

#9 Příspěvek od Musclefish »

přikládám ke kontrole

Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org

Verze: v2014.04.21.02

Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
moje :: MOJE-7B4EED4E0B [administrátor]

Ochrana: Povolena

21.4.2014 12:29:05
MBAM-log-2014-04-21 (13-53-59).txt

Typ: Kompletní kontrola (C:\|)
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 351170
Uplynulý čas: 1 hodin, 24 minut, 26 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 4
C:\System Volume Information\_restore{03AC428F-A65F-411F-AAC1-3B3F8019666E}\RP90\A0062572.exe (PUP.Optional.Hao123.A) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{03AC428F-A65F-411F-AAC1-3B3F8019666E}\RP90\A0062573.msi (PUP.Optional.SweetIM) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{03AC428F-A65F-411F-AAC1-3B3F8019666E}\RP90\A0062574.msi (PUP.Optional.SweetIM) -> Nebyla provedena žádná instrukce.
C:\System Volume Information\_restore{03AC428F-A65F-411F-AAC1-3B3F8019666E}\RP90\A0062575.msi (PUP.Optional.SweetIM) -> Nebyla provedena žádná instrukce.

(konec)
:)

Uživatelský avatar
cernohous13
VIP in memoriam
VIP in memoriam
Příspěvky: 8721
Registrován: 09 pro 2006 06:19
Bydliště: Jablonec nad Nisou
Kontaktovat uživatele:

Re: pomalé pomalé pomalé !!!!

#10 Příspěvek od cernohous13 »

Tak ještě ten RSIT :wink:
Doporučení:
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím Obrázek

-------------------------------------------------------------------------------------------------
> Podpora fóra <

Zamčeno