Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Zasekane, zpomalene prace na PC

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
albi91
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 22 čer 2008 14:00

Zasekane, zpomalene prace na PC

#1 Příspěvek od albi91 »

ahoj prokladam RSIT log

Logfile of random's system information tool 1.06 (written by random/random)
Run by Honza a Jindra at 2010-01-30 12:38:15
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 62 GB (56%) free of 111 GB
Total RAM: 1023 MB (49% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:38:30, on 30.1.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\ICQ6Toolbar\ICQ Service.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\program files\relevantknowledge\rlvknlg.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
C:\WINDOWS\system32\wbem\unsecapp.exe
C:\WINDOWS\system32\wuauclt.exe
E:\Program Files\ICQ6.5\ICQ.exe
C:\Documents and Settings\Honza a Jindra\Plocha\Programy na viry atd\RSIT.exe
C:\Program Files\trend micro\Honza a Jindra.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.daemon-search.com/startpage
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O1 - Hosts: 78.46.50.119 L2authd.Lineage2.com
O1 - Hosts: 78.46.50.119 testauthd.lineage2.com
O1 - Hosts: 216.107.250.194 nprotect.lineage2.com
O1 - Hosts: 216.107.250.194 update.nProtect.com
O1 - Hosts: 216.107.250.194 update.nProtect.net
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - E:\BitComet\tools\BitCometBHO_1.3.7.16.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: Ukazatel S-Rank - {EA837F48-5AD1-443E-AE34-FFE03CBF3099} - C:\Program Files\Seznam.cz\core.2.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Lexmark 2200 Series] "C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Advanced SystemCare 3] "E:\Program Files\IObit\Advanced SystemCare 3\AWC.exe" /startup
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: ATI CATALYST System Tray.lnk = C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Stáhnout odkaz s použitím BitCometu - res://E:\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: Stáhnout všechna videa s použitím BitCometu - res://E:\BitComet\BitComet.exe/AddVideo.htm
O8 - Extra context menu item: Stáhnout všechny odkazy s použitím BitCometu - res://E:\BitComet\BitComet.exe/AddAllLink.htm
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://E:\BitComet\tools\BitCometBHO_1.3.7.16.dll/206 (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - E:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - E:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windows ... 0398196703
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Služba Google Update (gupdate1ca8c9df419bec4) (gupdate1ca8c9df419bec4) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe

--
End of file - 8400 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\AppleSoftwareUpdate.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{39F7E362-828A-4B5A-BCAF-5B79BFDFEA60}]
BitComet Helper - E:\BitComet\tools\BitCometBHO_1.3.7.16.dll [2009-07-16 664888]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-01-05 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-01-05 73728]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA837F48-5AD1-443E-AE34-FFE03CBF3099}]
Ukazatel S-Rank - C:\Program Files\Seznam.cz\core.2.dll [2009-11-02 1085080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll [2009-11-24 953800]
{855F3B16-6D32-4fe6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2009-08-16 962808]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ATIPTA"=C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe [2004-11-30 344064]
"ATICCC"=C:\Program Files\ATI Technologies\ATI.ACE\cli.exe [2004-12-01 32768]
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-01-11 39792]
"Lexmark 2200 Series"=C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe [2004-02-13 57344]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2010-01-05 149280]
"avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2009-11-25 81000]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2009-11-10 417792]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"msnmsgr"=C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2009-07-26 3883840]
"Advanced SystemCare 3"=E:\Program Files\IObit\Advanced SystemCare 3\AWC.exe [2009-12-26 2335952]

C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Adobe Gamma Loader.exe.lnk - C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
ATI CATALYST System Tray.lnk - C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2004-12-01 94208]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
"NoResolveSearch"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"E:\Roller Coaster tycoon 1\rct.exe"="E:\Roller Coaster tycoon 1\rct.exe:*:Enabled:rct"
"E:\BitComet\BitComet.exe"="E:\BitComet\BitComet.exe:*:Enabled:BitComet.exe"
"C:\WINDOWS\system32\dpvsetup.exe"="C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\WINDOWS\system32\rundll32.exe"="C:\WINDOWS\system32\rundll32.exe:*:Enabled:Run a DLL as an App"
"E:\starShipTroopers\Starship Troopers\STGame.exe"="E:\starShipTroopers\Starship Troopers\STGame.exe:*:Disabled:Starship Troopers"
"E:\Lineage - Interlude\loader.exe"="E:\Lineage - Interlude\loader.exe:*:Enabled:Coexistens Server AutoUpdater"
"E:\CS1.6\hl.exe"="E:\CS1.6\hl.exe:*:Enabled:Half-Life Launcher"
"E:\CS1.6\hltv.exe"="E:\CS1.6\hltv.exe:*:Enabled:HLTV Launcher"
"E:\Program Files\ICQ6.5\ICQ.exe"="E:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"C:\WINDOWS\system32\LEXPPS.EXE"="C:\WINDOWS\system32\LEXPPS.EXE:*:Enabled:LEXPPS.EXE"
"E:\BrothersInArmsEiB\System\EiB.exe"="E:\BrothersInArmsEiB\System\EiB.exe:*:Enabled:Brothers In Arms Earned In Blood"
"E:\Program Files\Modern Warfare 2\iw4sp.exe"="E:\Program Files\Modern Warfare 2\iw4sp.exe:*:Enabled:iw4sp"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"c:\program files\relevantknowledge\rlvknlg.exe"="c:\program files\relevantknowledge\rlvknlg.exe:*:Enabled:rlvknlg.exe"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"

======List of files/folders created in the last 1 months======

2010-01-30 12:38:16 ----D---- C:\Program Files\trend micro
2010-01-30 12:38:15 ----D---- C:\rsit
2010-01-30 12:07:08 ----D---- C:\Documents and Settings\Honza a Jindra\Data aplikací\IObit
2010-01-30 11:54:25 ----D---- C:\Program Files\CCleaner
2010-01-29 20:49:25 ----HDC---- C:\WINDOWS\$NtUninstallKB961503$
2010-01-29 20:48:16 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2010-01-29 20:44:16 ----SHD---- C:\Config.Msi
2010-01-29 12:31:01 ----A---- C:\WINDOWS\system32\muweb.dll
2010-01-29 12:31:01 ----A---- C:\WINDOWS\system32\mucltui.dll.mui
2010-01-29 12:31:01 ----A---- C:\WINDOWS\system32\mucltui.dll
2010-01-29 11:33:59 ----D---- C:\Program Files\Microsoft
2010-01-29 11:33:38 ----D---- C:\Program Files\Windows Live SkyDrive
2010-01-29 11:33:22 ----D---- C:\Program Files\Windows Live
2010-01-29 11:28:40 ----D---- C:\Program Files\Common Files\Windows Live
2010-01-29 03:05:35 ----D---- C:\WINDOWS\system32\XPSViewer
2010-01-29 03:05:30 ----D---- C:\Program Files\MSBuild
2010-01-29 03:05:27 ----D---- C:\WINDOWS\system32\en-US
2010-01-29 03:05:17 ----D---- C:\Program Files\Reference Assemblies
2010-01-29 03:04:41 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2010-01-29 03:04:41 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2010-01-29 03:04:41 ----N---- C:\WINDOWS\system32\prntvpt.dll
2010-01-28 12:16:19 ----D---- C:\TiskProRadost
2010-01-28 12:15:40 ----D---- C:\Program Files\TiskProRadost
2010-01-28 12:15:39 ----A---- C:\WINDOWS\system32\TiskProRadost_AlbumMaker_uninstaller.exe
2010-01-28 11:15:31 ----A---- C:\WINDOWS\fre.INI
2010-01-26 21:25:12 ----D---- C:\Documents and Settings\Honza a Jindra\Data aplikací\Leadertech
2010-01-26 21:08:02 ----A---- C:\WINDOWS\system32\CmdLineExt.dll
2010-01-13 11:25:33 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-01-10 22:06:03 ----D---- C:\Program Files\QuickTime
2010-01-10 22:06:02 ----D---- C:\Documents and Settings\All Users\Data aplikací\Apple Computer
2010-01-10 22:05:39 ----D---- C:\Program Files\Common Files\Apple
2010-01-10 22:05:24 ----D---- C:\Program Files\Apple Software Update
2010-01-10 22:05:24 ----D---- C:\Documents and Settings\All Users\Data aplikací\Apple
2010-01-08 09:41:44 ----A---- C:\WINDOWS\system32\aswBoot.exe
2010-01-08 09:41:42 ----D---- C:\Program Files\Alwil Software
2010-01-08 09:40:29 ----A---- C:\Program Files\setupcze.exe
2010-01-07 21:08:16 ----A---- C:\WINDOWS\system32\XAudio2_5.dll
2010-01-07 21:08:15 ----A---- C:\WINDOWS\system32\xactengine3_5.dll
2010-01-07 21:08:14 ----A---- C:\WINDOWS\system32\D3DCompiler_42.dll
2010-01-07 21:08:13 ----A---- C:\WINDOWS\system32\d3dx11_42.dll
2010-01-07 21:08:13 ----A---- C:\WINDOWS\system32\d3dx10_42.dll
2010-01-07 21:08:13 ----A---- C:\WINDOWS\system32\d3dcsx_42.dll
2010-01-07 21:08:12 ----A---- C:\WINDOWS\system32\D3DX9_42.dll
2010-01-07 21:08:12 ----A---- C:\WINDOWS\system32\d3dx10_41.dll
2010-01-07 21:08:12 ----A---- C:\WINDOWS\system32\D3DCompiler_41.dll
2010-01-07 21:08:11 ----A---- C:\WINDOWS\system32\XAudio2_4.dll
2010-01-07 21:08:11 ----A---- C:\WINDOWS\system32\XAPOFX1_3.dll
2010-01-07 21:08:11 ----A---- C:\WINDOWS\system32\D3DX9_41.dll
2010-01-07 21:08:10 ----A---- C:\WINDOWS\system32\xactengine3_4.dll
2010-01-07 21:08:10 ----A---- C:\WINDOWS\system32\X3DAudio1_6.dll
2010-01-07 21:08:09 ----A---- C:\WINDOWS\system32\D3DX9_40.dll
2010-01-07 21:08:09 ----A---- C:\WINDOWS\system32\d3dx10_40.dll
2010-01-07 21:08:09 ----A---- C:\WINDOWS\system32\D3DCompiler_40.dll
2010-01-07 21:08:08 ----A---- C:\WINDOWS\system32\XAudio2_3.dll
2010-01-07 21:08:08 ----A---- C:\WINDOWS\system32\XAPOFX1_2.dll
2010-01-07 21:08:08 ----A---- C:\WINDOWS\system32\xactengine3_3.dll
2010-01-07 21:08:07 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
2010-01-07 21:08:07 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
2010-01-07 21:08:07 ----A---- C:\WINDOWS\system32\xactengine3_2.dll
2010-01-07 21:08:07 ----A---- C:\WINDOWS\system32\X3DAudio1_5.dll
2010-01-07 21:08:06 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
2010-01-07 21:08:06 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
2010-01-07 21:08:06 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
2010-01-07 21:08:05 ----A---- C:\WINDOWS\system32\XAudio2_1.dll
2010-01-07 21:08:05 ----A---- C:\WINDOWS\system32\XAPOFX1_0.dll
2010-01-07 21:08:04 ----A---- C:\WINDOWS\system32\xactengine3_1.dll
2010-01-07 21:08:04 ----A---- C:\WINDOWS\system32\X3DAudio1_4.dll
2010-01-07 21:08:03 ----A---- C:\WINDOWS\system32\D3DX9_38.dll
2010-01-07 21:08:03 ----A---- C:\WINDOWS\system32\d3dx10_38.dll
2010-01-07 21:08:03 ----A---- C:\WINDOWS\system32\D3DCompiler_38.dll
2010-01-07 21:08:02 ----A---- C:\WINDOWS\system32\XAudio2_0.dll
2010-01-07 21:08:02 ----A---- C:\WINDOWS\system32\xactengine3_0.dll
2010-01-07 21:08:02 ----A---- C:\WINDOWS\system32\X3DAudio1_3.dll
2010-01-07 21:08:01 ----A---- C:\WINDOWS\system32\d3dx10_37.dll
2010-01-07 21:08:01 ----A---- C:\WINDOWS\system32\D3DCompiler_37.dll
2010-01-07 21:08:00 ----A---- C:\WINDOWS\system32\D3DX9_37.dll
2010-01-07 21:07:59 ----A---- C:\WINDOWS\system32\xactengine2_10.dll
2010-01-07 21:07:58 ----A---- C:\WINDOWS\system32\d3dx9_36.dll
2010-01-07 21:07:58 ----A---- C:\WINDOWS\system32\d3dx10_36.dll
2010-01-07 21:07:58 ----A---- C:\WINDOWS\system32\D3DCompiler_36.dll
2010-01-07 21:07:57 ----A---- C:\WINDOWS\system32\xactengine2_9.dll
2010-01-07 21:07:56 ----A---- C:\WINDOWS\system32\d3dx9_35.dll
2010-01-07 21:07:56 ----A---- C:\WINDOWS\system32\d3dx10_35.dll
2010-01-07 21:07:56 ----A---- C:\WINDOWS\system32\D3DCompiler_35.dll
2010-01-07 21:07:55 ----A---- C:\WINDOWS\system32\xactengine2_8.dll
2010-01-07 21:07:55 ----A---- C:\WINDOWS\system32\X3DAudio1_2.dll
2010-01-07 21:07:55 ----A---- C:\WINDOWS\system32\d3dx10_34.dll
2010-01-07 21:07:55 ----A---- C:\WINDOWS\system32\D3DCompiler_34.dll
2010-01-07 21:07:54 ----A---- C:\WINDOWS\system32\xinput1_3.dll
2010-01-07 21:07:54 ----A---- C:\WINDOWS\system32\xactengine2_7.dll
2010-01-07 21:07:54 ----A---- C:\WINDOWS\system32\d3dx9_34.dll
2010-01-07 21:07:53 ----A---- C:\WINDOWS\system32\d3dx10_33.dll
2010-01-07 21:07:53 ----A---- C:\WINDOWS\system32\D3DCompiler_33.dll
2010-01-07 21:07:42 ----A---- C:\WINDOWS\system32\xactengine2_6.dll
2010-01-07 21:07:42 ----A---- C:\WINDOWS\system32\xactengine2_5.dll
2010-01-07 21:07:42 ----A---- C:\WINDOWS\system32\d3dx9_33.dll
2010-01-07 21:07:41 ----A---- C:\WINDOWS\system32\xactengine2_4.dll
2010-01-07 21:07:41 ----A---- C:\WINDOWS\system32\x3daudio1_1.dll
2010-01-07 21:07:40 ----A---- C:\WINDOWS\system32\xinput1_2.dll
2010-01-07 21:07:40 ----A---- C:\WINDOWS\system32\xactengine2_3.dll
2010-01-07 21:07:39 ----A---- C:\WINDOWS\system32\xinput1_1.dll
2010-01-07 21:07:39 ----A---- C:\WINDOWS\system32\xactengine2_2.dll
2010-01-07 21:07:39 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
2010-01-07 21:07:26 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2010-01-07 21:07:25 ----A---- C:\WINDOWS\system32\xactengine2_0.dll
2010-01-07 21:07:25 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
2010-01-07 21:07:25 ----A---- C:\WINDOWS\system32\d3dx9_29.dll
2010-01-07 21:07:24 ----A---- C:\WINDOWS\system32\xinput9_1_0.dll
2010-01-07 21:07:24 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2010-01-07 21:07:23 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2010-01-07 21:07:23 ----A---- C:\WINDOWS\system32\d3dx9_26.dll
2010-01-07 21:07:22 ----A---- C:\WINDOWS\system32\d3dx9_25.dll
2010-01-07 21:07:21 ----A---- C:\WINDOWS\system32\d3dx9_24.dll
2010-01-07 19:54:33 ----D---- C:\Program Files\Winamp
2010-01-07 19:52:38 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2010-01-07 19:52:34 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
2010-01-07 19:52:22 ----D---- C:\WINDOWS\Logs
2010-01-07 09:23:35 ----D---- C:\Program Files\AviSynth 2.5
2010-01-07 09:23:12 ----D---- C:\Program Files\Avi2Dvd
2010-01-07 09:21:22 ----D---- C:\Program Files\Any Video Converter
2010-01-07 09:10:58 ----D---- C:\Program Files\PhotoFiltre
2010-01-06 13:14:46 ----D---- C:\Program Files\PhotoScape
2010-01-06 13:13:39 ----A---- C:\Program Files\PhotoScapeSetup_V3.4.exe
2010-01-06 10:04:16 ----D---- C:\Program Files\WaveL Pic2Pic Pro
2010-01-06 10:02:37 ----N---- C:\Program Files\readme.txt
2010-01-06 10:01:48 ----N---- C:\readme.txt
2010-01-06 10:01:48 ----A---- C:\setup.exe
2010-01-06 07:53:12 ----A---- C:\WINDOWS\unvise32.exe
2010-01-05 21:29:10 ----A---- C:\WINDOWS\system32\javaws.exe
2010-01-05 21:29:10 ----A---- C:\WINDOWS\system32\javaw.exe
2010-01-05 21:29:10 ----A---- C:\WINDOWS\system32\java.exe
2010-01-05 21:29:10 ----A---- C:\WINDOWS\system32\deploytk.dll
2010-01-05 21:28:59 ----D---- C:\Program Files\Java
2010-01-05 21:27:38 ----D---- C:\Documents and Settings\Honza a Jindra\Data aplikací\Sun
2010-01-05 21:03:40 ----D---- C:\Program Files\Photo Art Studio
2010-01-05 20:38:24 ----D---- C:\Program Files\Driver Checker
2010-01-05 20:33:20 ----D---- C:\Program Files\WinX DVD Player 3.0
2010-01-04 19:22:25 ----D---- C:\Program Files\DAEMON Tools Lite
2010-01-04 13:16:59 ----A---- C:\WINDOWS\lexstat.ini
2010-01-04 13:16:33 ----A---- C:\WINDOWS\system32\lxbvvs.dll
2010-01-04 13:16:33 ----A---- C:\WINDOWS\system32\lxbvpwr.dll
2010-01-04 13:16:33 ----A---- C:\WINDOWS\system32\LXBVCUR.DLL
2010-01-04 13:16:33 ----A---- C:\WINDOWS\system32\LXBVCU.DLL
2010-01-04 13:16:33 ----A---- C:\WINDOWS\system32\LEXPPS.EXE
2010-01-04 13:16:33 ----A---- C:\WINDOWS\system32\LEXPING.EXE
2010-01-04 13:16:33 ----A---- C:\WINDOWS\system32\LEXP2P32.DLL
2010-01-04 13:16:33 ----A---- C:\WINDOWS\system32\lexlmpm.dll
2010-01-04 13:16:33 ----A---- C:\WINDOWS\system32\LEXBCES.EXE
2010-01-04 13:16:33 ----A---- C:\WINDOWS\system32\LEXBCE.DLL
2010-01-04 13:16:33 ----A---- C:\WINDOWS\system32\LEX2KUSB.DLL
2010-01-04 13:16:33 ----A---- C:\WINDOWS\system32\INSTMON.EXE
2010-01-04 13:16:20 ----A---- C:\WINDOWS\system32\wiafbdrv.dll
2010-01-04 13:16:15 ----A---- C:\WINDOWS\system32\LXBVUTIL.DLL
2010-01-04 13:16:15 ----A---- C:\WINDOWS\system32\lxbvscin.dll
2010-01-04 13:16:15 ----A---- C:\WINDOWS\system32\LXBVGF.DLL
2010-01-04 13:16:15 ----A---- C:\WINDOWS\system32\lxbvcoin.ini
2010-01-04 13:16:14 ----D---- C:\Program Files\Lexmark 2200 Series
2010-01-04 13:16:14 ----A---- C:\WINDOWS\system32\LXBVJSWR.DLL
2010-01-04 13:16:14 ----A---- C:\WINDOWS\system32\lxbvcoin.dll
2010-01-04 13:16:14 ----A---- C:\WINDOWS\system32\lxbvcinf.dll
2010-01-04 13:16:00 ----A---- C:\WINDOWS\unin0405.exe
2010-01-04 13:15:38 ----D---- C:\Lxk2200
2010-01-04 00:32:32 ----D---- C:\Documents and Settings\Honza a Jindra\Data aplikací\DivX
2010-01-03 19:01:06 ----H---- C:\Documents and Settings\Honza a Jindra\Data aplikací\swk.ini
2010-01-03 19:00:08 ----A---- C:\WINDOWS\iun6002.exe
2010-01-03 19:00:05 ----D---- C:\Program Files\Codec Pack - All In 1
2010-01-03 18:56:32 ----N---- C:\WINDOWS\system32\vxblock.dll
2010-01-03 18:56:32 ----N---- C:\WINDOWS\system32\pxwave.dll
2010-01-03 18:56:32 ----N---- C:\WINDOWS\system32\pxsfs.dll
2010-01-03 18:56:32 ----N---- C:\WINDOWS\system32\pxmas.dll
2010-01-03 18:56:32 ----N---- C:\WINDOWS\system32\pxinsi64.exe
2010-01-03 18:56:32 ----N---- C:\WINDOWS\system32\pxinsa64.exe
2010-01-03 18:56:32 ----N---- C:\WINDOWS\system32\pxhpinst.exe
2010-01-03 18:56:32 ----N---- C:\WINDOWS\system32\pxdrv.dll
2010-01-03 18:56:32 ----N---- C:\WINDOWS\system32\pxcpyi64.exe
2010-01-03 18:56:32 ----N---- C:\WINDOWS\system32\pxcpya64.exe
2010-01-03 18:56:32 ----N---- C:\WINDOWS\system32\pxafs.dll
2010-01-03 18:56:32 ----N---- C:\WINDOWS\system32\px.dll
2010-01-03 18:55:17 ----D---- C:\Program Files\Google
2010-01-03 18:55:17 ----D---- C:\Program Files\Common Files\DivX Shared
2010-01-03 18:55:16 ----D---- C:\Program Files\DivX
2010-01-03 17:21:48 ----D---- C:\Program Files\ICQ6Toolbar
2010-01-03 17:21:46 ----D---- C:\Documents and Settings\All Users\Data aplikací\ICQ
2010-01-03 17:20:57 ----D---- C:\Documents and Settings\Honza a Jindra\Data aplikací\ICQ
2010-01-01 16:15:36 ----A---- C:\WINDOWS\system32\ADVAPI16.dll
2009-12-31 08:34:14 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2009-12-31 08:33:59 ----HDC---- C:\WINDOWS\$NtUninstallKB929399$
2009-12-31 08:33:45 ----HDC---- C:\WINDOWS\$NtUninstallKB939683$
2009-12-31 08:33:15 ----HDC---- C:\WINDOWS\$NtUninstallKB954154_WM11$

======List of files/folders modified in the last 1 months======

2010-01-30 12:38:16 ----D---- C:\Program Files
2010-01-30 12:27:51 ----RSD---- C:\WINDOWS\assembly
2010-01-30 12:23:20 ----D---- C:\WINDOWS\Microsoft.NET
2010-01-30 12:13:21 ----SHD---- C:\System Volume Information
2010-01-30 12:13:21 ----D---- C:\WINDOWS\system32\Restore
2010-01-30 12:13:05 ----D---- C:\WINDOWS\Prefetch
2010-01-30 12:11:16 ----D---- C:\WINDOWS\Temp
2010-01-30 12:10:05 ----D---- C:\WINDOWS\Debug
2010-01-30 12:10:05 ----D---- C:\WINDOWS
2010-01-29 21:25:50 ----D---- C:\WINDOWS\system32
2010-01-29 21:09:08 ----AD---- C:\Documents and Settings\All Users\Data aplikací\TEMP
2010-01-29 21:07:00 ----A---- C:\WINDOWS\NeroDigital.ini
2010-01-29 21:05:06 ----A---- C:\WINDOWS\ULEAD32.INI
2010-01-29 20:53:00 ----SHD---- C:\WINDOWS\Installer
2010-01-29 20:52:41 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-01-29 20:52:10 ----D---- C:\WINDOWS\WinSxS
2010-01-29 20:49:53 ----D---- C:\WINDOWS\system32\CatRoot
2010-01-29 20:49:29 ----HD---- C:\WINDOWS\inf
2010-01-29 20:49:28 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-01-29 20:49:05 ----D---- C:\WINDOWS\system32\CatRoot2
2010-01-29 20:46:44 ----A---- C:\WINDOWS\win.ini
2010-01-29 20:45:40 ----D---- C:\Program Files\Microsoft Works
2010-01-29 20:45:34 ----RSD---- C:\WINDOWS\Fonts
2010-01-29 20:44:56 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-01-29 19:08:00 ----N---- C:\WINDOWS\SchedLgU.Txt
2010-01-29 12:38:28 ----HD---- C:\WINDOWS\$hf_mig$
2010-01-29 11:52:29 ----SD---- C:\Documents and Settings\Honza a Jindra\Data aplikací\Microsoft
2010-01-29 11:33:44 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2010-01-29 11:28:40 ----D---- C:\Program Files\Common Files
2010-01-29 03:05:01 ----D---- C:\WINDOWS\system32\spool
2010-01-29 03:03:05 ----D---- C:\Program Files\Internet Explorer
2010-01-29 02:16:57 ----D---- C:\Downloads
2010-01-28 11:50:59 ----HD---- C:\Program Files\InstallShield Installation Information
2010-01-26 21:32:34 ----D---- C:\WINDOWS\system32\DirectX
2010-01-24 16:19:22 ----D---- C:\Documents and Settings\Honza a Jindra\Data aplikací\Ventrilo
2010-01-23 03:00:50 ----D---- C:\WINDOWS\ie8updates
2010-01-17 13:10:55 ----D---- C:\WINDOWS\system32\config
2010-01-10 22:05:29 ----SD---- C:\WINDOWS\Tasks
2010-01-08 09:42:07 ----D---- C:\WINDOWS\system32\drivers
2010-01-08 09:31:02 ----D---- C:\WINDOWS\system
2010-01-08 08:00:03 ----D---- C:\Documents and Settings\Honza a Jindra\Data aplikací\AVG7
2010-01-07 19:40:37 ----D---- C:\Documents and Settings\Honza a Jindra\Data aplikací\Gearbox Software
2010-01-06 18:27:28 ----D---- C:\Documents and Settings\Honza a Jindra\Data aplikací\Adobe
2010-01-06 10:03:03 ----D---- C:\Program Files\Windows Media Connect 2
2010-01-05 20:36:20 ----D---- C:\Documents and Settings\All Users\Data aplikací\Norton
2010-01-05 20:36:17 ----D---- C:\Program Files\Common Files\Symantec Shared
2010-01-05 01:17:46 ----A---- C:\WINDOWS\system32\MRT.exe
2010-01-04 23:02:13 ----D---- C:\Documents and Settings\Honza a Jindra\Data aplikací\DAEMON Tools Lite
2010-01-04 19:24:28 ----D---- C:\Program Files\DAEMON Tools Toolbar
2010-01-04 19:22:21 ----D---- C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Lite

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2009-11-25 27408]
R1 aswSP;avast! Self Protection; C:\WINDOWS\system32\drivers\aswSP.sys [2009-09-15 114768]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2009-11-25 48560]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2009-09-15 20560]
R2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys [2009-09-15 94160]
R3 aeaudio;aeaudio; C:\WINDOWS\system32\drivers\aeaudio.sys [2002-04-01 4816]
R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2009-11-25 23120]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2004-12-01 928256]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 rtl8139;Realtek RTL8139/810x Family Fast Ethernet NIC NT Driver; C:\WINDOWS\system32\DRIVERS\R8139n51.SYS [2003-07-31 46976]
R3 smwdm;smwdm; C:\WINDOWS\system32\drivers\smwdm.sys [2003-08-29 578304]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Rozbočovač umožnující USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S3 a50f73yl;a50f73yl; C:\WINDOWS\system32\drivers\a50f73yl.sys []
S3 amb6luhd;amb6luhd; C:\WINDOWS\system32\drivers\amb6luhd.sys []
S3 npkcrypt;npkcrypt; \??\E:\Lineage - Interlude\system\npkcrypt.sys []
S3 PsSdk40;PsSdk40; \??\C:\WINDOWS\system32\Drivers\pssdk40.sys []
S3 PsSdkLBF;PsSdkLBF; \??\C:\WINDOWS\system32\Drivers\pssdklbf.sys []
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2009-11-25 18752]
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2004-12-01 425984]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2009-11-25 138680]
R2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2009-08-16 222968]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-01-05 153376]
R2 LexBceS;LexBce Server; C:\WINDOWS\system32\LEXBCES.EXE [2004-01-14 311296]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 SoundMAX Agent Service (default);SoundMAX Agent Service; C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe [2002-09-20 45056]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2009-11-25 254040]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2009-11-25 352920]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2004-11-30 516096]
S2 gupdate1ca8c9df419bec4;Služba Google Update (gupdate1ca8c9df419bec4); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-01-03 133104]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13399
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: Zasekane, zpomalene prace na PC

#2 Příspěvek od Roli »

Zdravím, tohle fixni v HJT :

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.daemon-search.com/startpage
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: ATI CATALYST System Tray.lnk = C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe


HJT najdeš zde :

C:\Program Files\trend micro\Honza a Jindra

Fix znamená že spustíš HJT Obrázek

v okně které se ti otevře klikneš na Do a system scan only

v dalším okně najdeš řádky které jsem ti vypsal,

vedle nich je čtvereček do kterého uděláš zatržítko,

pak klikneš na Fix checked které je vlevo dole,

program se ti zeptá zda opravdu ANO s tím samozřejmě souhlasíš a je hotovo.


Přes Start >> Ovládací panely >> Přidat nebo odebrat odinstaluj ICQ6Toolbar


Smaž nepotřebné soubory

pomocí CCleaneru

návod :

Čistič - tady vyčistíš PC od nepotřebných souborů a vysypeš Koš

Registry - tady vyčistíš registry (před použitím doporučuji udělat jejich zálohu kterou CCleaner nabízí)

Čištění registru je třeba několikrát zopakovat !

Zrychlení startu PC a programů pomůžeš také defragmentací disku buď integrovaným windows nástrojem,

nebo jinou aplikací, například Defragglerem


Nakonec použij Mbam z mého podpisu.
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

albi91
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 22 čer 2008 14:00

Re: Zasekane, zpomalene prace na PC

#3 Příspěvek od albi91 »

ok vsechno sem udelal tak jak jsme mel ..

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13399
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: Zasekane, zpomalene prace na PC

#4 Příspěvek od Roli »

albi91 píše:ok vsechno sem udelal tak jak jsme mel ..
No a kde je ten log z Mbam který si sem měl podle návodu dát ?
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

albi91
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 22 čer 2008 14:00

Re: Zasekane, zpomalene prace na PC

#5 Příspěvek od albi91 »

promin omlouvam se, zapomnel jsem .........................


Malwarebytes' Anti-Malware 1.44
Verze databáze: 3696
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702

6.2.2010 10:08:22
mbam-log-2010-02-06 (10-08-07).txt

Typ kontroly: Rychlá kontrola
Zkontrolované objekty: 135355
Uplynulý čas: 13 minute(s), 40 second(s)

Infikované procesy v paměti: 0
Infikované moduly v paměti: 0
Infikované klíče registru: 2
Infikované hodnoty registru: 0
Infikované datové položky registru: 0
Infikované adresáře: 2
Infikované soubory: 9

Infikované procesy v paměti:
(Nebyly nalezeny žádné škodlivé položky)

Infikované moduly v paměti:
(Nebyly nalezeny žádné škodlivé položky)

Infikované klíče registru:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\setup.exe (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{d08d9f98-1c78-4704-87e6-368b0023d831} (Adware.RelevantKnowledge) -> No action taken.

Infikované hodnoty registru:
(Nebyly nalezeny žádné škodlivé položky)

Infikované datové položky registru:
(Nebyly nalezeny žádné škodlivé položky)

Infikované adresáře:
C:\Program Files\RelevantKnowledge (Spyware.MarketScore) -> No action taken.
C:\Documents and Settings\All Users\Nabídka Start\Programy\RelevantKnowledge (Spyware.MarketScore) -> No action taken.

Infikované soubory:
C:\Program Files\RelevantKnowledge\rlls.dll (Spyware.MarketScore) -> No action taken.
C:\Program Files\RelevantKnowledge\rloci.bin (Spyware.MarketScore) -> No action taken.
C:\Program Files\RelevantKnowledge\rlservice.exe (Spyware.MarketScore) -> No action taken.
C:\Program Files\RelevantKnowledge\rlvknlg.exe (Spyware.MarketScore) -> No action taken.
C:\Documents and Settings\All Users\Nabídka Start\Programy\RelevantKnowledge\About RelevantKnowledge.lnk (Spyware.MarketScore) -> No action taken.
C:\Documents and Settings\All Users\Nabídka Start\Programy\RelevantKnowledge\Privacy Policy and User License Agreement.lnk (Spyware.MarketScore) -> No action taken.
C:\Documents and Settings\All Users\Nabídka Start\Programy\RelevantKnowledge\Support.lnk (Spyware.MarketScore) -> No action taken.
C:\Documents and Settings\All Users\Nabídka Start\Programy\RelevantKnowledge\Uninstall Instructions.lnk (Spyware.MarketScore) -> No action taken.
C:\setup.exe (Trojan.Agent) -> No action taken.

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13399
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: Zasekane, zpomalene prace na PC

#6 Příspěvek od Roli »

Vše co Mbam našel nech smazat.


Stáhni a ulož na plochu ComboFix,

spusť aplikaci pod účtem s administrátorským oprávněním a povol instalaci Konzole pro zotavení - Recovery Console.

Poté se zobrazí okno s licenčními podmínkami které potvrdíš kliknutím na ANO,

pak ještě jednou klik na ANO a už to jede.

Celá akce trvá okolo 10 minut ale může i déle, během skenu se nepokoušej spouštět nic jiného.

Při skenovaní může být PC i restartováno nelekat se.

Upozornění: po dobu skenu vypni rezidentní štít Antiviru a AntiSpy programu,

protože Combofix se pokouší napadené soubory smazat a tyto programy mu můžou bránit.

Po dokončení skenu nebo následném restartu aplikace vytvoří log, uložený na C:/Combofix.txt

(při opakovaném použití jsou logy číslovány Combofix2.txt atd.), jeho obsah zkopíruj sem.
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

Odpovědět