Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Po naběhnutí OS nefunguje TouchPad

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
das
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 109
Registrován: 19 čer 2006 12:35

Po naběhnutí OS nefunguje TouchPad

#1 Příspěvek od das »

Kód: Vybrat vše

Zdravím, mám podezření na vir. Při naběhnutí OS se na Notebooku zasekne TouchPad. V přihlašovací obrazovce ale funguje, i v nouzovém režimu...

Předem děkuji

Logfile of random's system information tool 1.06 (written by random/random)
Run by ASUS at 2010-02-10 11:33:20
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 134 GB (56%) free of 238 GB
Total RAM: 3582 MB (60% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:34:05, on 10.2.2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18882)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Program files\P4G\BatteryLife.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\ASUS\SmartLogon\sensorsrv.exe
C:\Windows\system32\conime.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files\Elantech\ETDCtrl.exe
C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe
C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe
C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\ASUS\ATK Media\DMedia.exe
C:\Program Files\ASUS\ASUS Data Security Manager\ADSMTray.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\F-Secure Internet Security\Common\FSM32.EXE
C:\Program Files\SRS Labs\SRS Premium Sound\SRSPremiumSoundBig_Small.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\ICQ6.5\ICQ.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\F-Secure Internet Security\FSGUI\fsguidll.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\system32\SearchFilterHost.exe
F:\RSIT.exe
C:\Program Files\trend micro\ASUS.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.daemon-search.com/startpage
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.5.4723.1820\swg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [DisableS3S4] c:\DisableS3S4.cmd
O4 - HKLM\..\Run: [UpdateLBPShortCut] "C:\Program Files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
O4 - HKLM\..\Run: [CLMLServer] "C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe"
O4 - HKLM\..\Run: [UpdateP2GoShortCut] "C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKLM\..\Run: [ETDWare] C:\Program Files\Elantech\ETDCtrl.exe
O4 - HKLM\..\Run: [AmIcoSinglun] C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
O4 - HKLM\..\Run: [Wireless Console 3] C:\Program Files\ASUS\Wireless Console 3\wcourier.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files\ASUS\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [ASUS Camera ScreenSaver] C:\Windows\AsScrProlog.exe
O4 - HKLM\..\Run: [ADSMTray] C:\Program Files\ASUS\ASUS Data Security Manager\ADSMTray.exe
O4 - HKLM\..\Run: [ACMON] C:\Program Files\ASUS\Splendid\ACMON.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Skytel] C:\Program Files\Realtek\Audio\HDA\Skytel.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Windows\system32\NeroCheck.exe
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\F-Secure Internet Security\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\F-Secure Internet Security\FSGUI\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [SRS Premium Sound] "C:\Program Files\SRS Labs\SRS Premium Sound\SRSPremiumSoundBig_Small.exe" /hideme
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [ICQ] "C:\Program Files\ICQ6.5\ICQ.exe" silent
O4 - HKCU\..\Run: [Google Update] "C:\Users\ASUS\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Global Startup: FancyStart daemon.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
O9 - Extra button: Rodičovský... - {200DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\F-Secure Internet Security\FSPC\fspcmsie.dll
O9 - Extra button: (no name) - {200DB664-75B5-47c0-8B45-A44ACCF73F01} - C:\Program Files\F-Secure Internet Security\FSPC\fspcmsie.dll
O9 - Extra 'Tools' menuitem: Rodičovský... - {200DB664-75B5-47c0-8B45-A44ACCF73F01} - C:\Program Files\F-Secure Internet Security\FSPC\fspcmsie.dll
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O13 - Gopher Prefix:
O17 - HKLM\System\CCS\Services\Tcpip\..\{45E2E45C-3009-462C-906F-D5DF40E3DEA1}: NameServer = 10.12.0.1,10.6.0.1
O23 - Service: ADSM Service (ADSMService) - ASUSTek Computer Inc. - C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe
O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files\ASUS\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - F-Secure Corporation - C:\Program Files\F-Secure Internet Security\Anti-Virus\fsgk32st.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: F-Secure Automatic Update Agent (FSAUA) - F-Secure Corporation - C:\Program Files\F-Secure Internet Security\FSAUA\program\fsaua.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\F-Secure Internet Security\FWES\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\F-Secure Internet Security\Common\FSMA32.EXE
O23 - Service: F-Secure ORSP Client (FSORSPClient) - F-Secure Corporation - C:\Program Files\F-Secure Internet Security\ORSP Client\fsorsp.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: Norton Internet Security - Unknown owner - C:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccSvcHst.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Remote Procedure Call (RPC) Net (rpcnet) - Absolute Software Corp. - C:\Windows\system32\rpcnet.exe
O23 - Service: SRS Volume Sync Service (SRS_VolSync_Service) - SRS Labs, Inc. - C:\Program Files\SRS Labs\SRS Premium Sound\SRS_VolSync.exe

--
End of file - 11394 bytes

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2122222039-1107514653-1836651307-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2122222039-1107514653-1836651307-1000UA.job
C:\Windows\tasks\User_Feed_Synchronization-{41D9556F-8214-4A03-9A7C-A98EA888BC07}.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2010-01-30 279664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.5.4723.1820\swg.dll [2010-01-30 812528]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-01-16 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2008-12-08 1067352]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2008-12-08 1067352]
{855F3B16-6D32-4fe6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2009-08-16 962808]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll [2009-11-24 953800]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2010-01-30 279664]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
"DisableS3S4"=c:\DisableS3S4.cmd []
"UpdateLBPShortCut"=C:\Program Files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"CLMLServer"=C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe [2008-07-19 104936]
"UpdateP2GoShortCut"=C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [2008-12-04 218408]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2009-03-30 424864]
"AmIcoSinglun"=C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe [2008-09-30 237568]
"HControlUser"=C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe [2008-08-18 98304]
"ATKOSD2"=C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe [2009-03-04 8392704]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2009-03-24 7289376]
"Wireless Console 3"=C:\Program Files\ASUS\Wireless Console 3\wcourier.exe [2009-02-07 1593344]
"ATKMEDIA"=C:\Program Files\ASUS\ATK Media\DMedia.exe [2009-04-07 159744]
"ASUS Camera ScreenSaver"=C:\Windows\AsScrProlog.exe [2009-08-27 47672]
"ADSMTray"=C:\Program Files\ASUS\ASUS Data Security Manager\ADSMTray.exe [2008-04-01 266240]
"ACMON"=C:\Program Files\ASUS\Splendid\ACMON.exe [2008-10-01 851968]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-12-03 35184]
"Skytel"=C:\Program Files\Realtek\Audio\HDA\Skytel.exe [2009-03-24 1833504]
"NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2009-07-02 13789728]
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2006-12-10 49152]
"NeroFilterCheck"=C:\Windows\system32\NeroCheck.exe [2001-07-09 155648]
"F-Secure Manager"=C:\Program Files\F-Secure Internet Security\Common\FSM32.EXE [2008-10-14 182936]
"F-Secure TNB"=C:\Program Files\F-Secure Internet Security\FSGUI\TNBUtil.exe [2008-10-14 957024]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe []

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-10 1233920]
"SRS Premium Sound"=C:\Program Files\SRS Labs\SRS Premium Sound\SRSPremiumSoundBig_Small.exe [2009-04-07 3405048]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2009-12-04 39408]
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-21 125952]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2009-10-30 369200]
"ICQ"=C:\Program Files\ICQ6.5\ICQ.exe [2009-11-16 172792]
"Google Update"=C:\Users\ASUS\AppData\Local\Google\Update\GoogleUpdate.exe [2010-01-20 135664]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
FancyStart daemon.lnk - C:\Windows\Installer\{A9FEB6D7-9C52-49FC-B956-7AB275B78890}\_5598CE641C54B66A23693F.exe
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
C:\Program Files\ASUS\ASUS Data Security Manager\ASPWDFLT

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{df912847-92bd-11de-95b6-806e6f6e6963}]
shell\AutoRun\command - E:\setup.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{e5532e9f-e428-11de-ae79-90e6ba125504}]
shell\AutoRun\command - G:\setup.exe


======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2010-02-10 09:53:46 ----D---- C:\Program Files\trend micro
2010-02-10 09:53:45 ----D---- C:\rsit
2010-02-10 09:33:16 ----A---- C:\Windows\ntbtlog.txt
2010-02-09 10:30:07 ----D---- C:\Users\ASUS\AppData\Roaming\MySQL
2010-02-05 19:15:18 ----A---- C:\Windows\system32\MediaIO1.dll
2010-02-05 19:15:17 ----A---- C:\Windows\system32\MioPlayer2.dll
2010-01-22 07:52:48 ----A---- C:\Windows\system32\mshtml.dll
2010-01-22 07:52:47 ----A---- C:\Windows\system32\ieframe.dll
2010-01-22 07:52:45 ----A---- C:\Windows\system32\urlmon.dll
2010-01-22 07:52:45 ----A---- C:\Windows\system32\iertutil.dll
2010-01-22 07:52:44 ----A---- C:\Windows\system32\wininet.dll
2010-01-22 07:52:44 ----A---- C:\Windows\system32\occache.dll
2010-01-22 07:52:44 ----A---- C:\Windows\system32\msfeeds.dll
2010-01-22 07:52:44 ----A---- C:\Windows\system32\iedkcs32.dll
2010-01-22 07:52:43 ----A---- C:\Windows\system32\ieui.dll
2010-01-22 07:52:43 ----A---- C:\Windows\system32\iepeers.dll
2010-01-22 07:52:42 ----A---- C:\Windows\system32\msfeedssync.exe
2010-01-22 07:52:42 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-01-22 07:52:42 ----A---- C:\Windows\system32\jsproxy.dll
2010-01-22 07:52:42 ----A---- C:\Windows\system32\ieUnatt.exe
2010-01-22 07:52:42 ----A---- C:\Windows\system32\iesysprep.dll
2010-01-22 07:52:42 ----A---- C:\Windows\system32\iesetup.dll
2010-01-22 07:52:42 ----A---- C:\Windows\system32\iernonce.dll
2010-01-22 07:52:42 ----A---- C:\Windows\system32\ie4uinit.exe
2010-01-20 21:34:19 ----D---- C:\Program Files\ChessBase
2010-01-20 21:23:12 ----D---- C:\Users\ASUS\AppData\Roaming\ChessBase
2010-01-20 21:22:53 ----D---- C:\Program Files\Talk
2010-01-20 21:22:36 ----D---- C:\Engines
2010-01-20 21:22:35 ----D---- C:\Program Files\Common Files\ChessBase
2010-01-20 21:22:13 ----D---- C:\Music
2010-01-20 21:21:34 ----D---- C:\Devices
2010-01-20 21:21:33 ----D---- C:\Program Files\Messages
2010-01-20 21:21:33 ----D---- C:\Program Files\Chatter
2010-01-20 21:21:33 ----D---- C:\Program Files\gif
2010-01-20 21:21:33 ----D---- C:\Default.cko
2010-01-20 21:21:32 ----D---- C:\Program Files\HTML
2010-01-20 21:21:32 ----D---- C:\Program Files\Bitmaps
2010-01-20 21:20:00 ----D---- C:\Training
2010-01-20 21:20:00 ----D---- C:\3D
2010-01-20 21:19:58 ----D---- C:\Sounds
2010-01-20 21:19:58 ----A---- C:\Program Files\ode.dll
2010-01-20 21:19:58 ----A---- C:\Program Files\Fritz Chess Benchmark.exe
2010-01-20 21:19:55 ----A---- C:\Program Files\Textures2Net.dll
2010-01-20 21:19:51 ----A---- C:\Program Files\TBAccessNet.dll
2010-01-20 21:19:50 ----A---- C:\Program Files\SViewNet.dll
2010-01-20 21:19:50 ----A---- C:\Program Files\IUPgrade.exe
2010-01-20 21:19:49 ----A---- C:\Program Files\ChessResNet.dll
2010-01-20 21:19:49 ----A---- C:\Program Files\FrameResNet.dll
2010-01-20 21:19:49 ----A---- C:\Program Files\Device32.dll
2010-01-20 21:19:44 ----A---- C:\Program Files\ChessProgram11.exe
2010-01-20 21:19:44 ----A---- C:\Program Files\Chess32.dll
2010-01-20 16:15:59 ----D---- C:\Users\ASUS\AppData\Roaming\Transcend
2010-01-16 12:15:50 ----D---- C:\Program Files\sges-v3
2010-01-16 12:03:54 ----D---- C:\Program Files\NetBeans 6.8
2010-01-16 11:45:24 ----D---- C:\Program Files\Sun
2010-01-16 11:00:22 ----A---- C:\Windows\system32\javaws.exe
2010-01-16 11:00:22 ----A---- C:\Windows\system32\javaw.exe
2010-01-16 11:00:22 ----A---- C:\Windows\system32\java.exe
2010-01-16 10:51:31 ----D---- C:\ProgramData\Sun
2010-01-16 10:51:29 ----D---- C:\Program Files\Common Files\Java
2010-01-16 10:51:09 ----D---- C:\Program Files\Java
2010-01-14 10:51:36 ----A---- C:\Windows\system32\t2embed.dll
2010-01-14 10:51:35 ----A---- C:\Windows\system32\fontsub.dll
2010-01-11 19:11:16 ----D---- C:\Users\ASUS\AppData\Roaming\F-Secure
2010-01-11 16:06:46 ----A---- C:\Windows\system32\msvcp50.dll
2010-01-11 16:05:39 ----D---- C:\Program Files\F-Secure Internet Security
2010-01-11 16:05:01 ----D---- C:\ProgramData\fssg
2010-01-11 16:03:55 ----D---- C:\ProgramData\f-secure

======List of files/folders modified in the last 1 months======

2010-02-10 11:33:53 ----D---- C:\Windows\Temp
2010-02-10 11:33:34 ----D---- C:\Windows\System32
2010-02-10 11:33:34 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-02-10 11:33:33 ----D---- C:\Windows\inf
2010-02-10 11:32:00 ----A---- C:\Windows\system32\rpcnetp.exe
2010-02-10 09:53:46 ----RD---- C:\Program Files
2010-02-10 09:36:43 ----HD---- C:\ASUS.DAT
2010-02-10 09:36:03 ----A---- C:\Windows\system32\rpcnetp.dll
2010-02-10 09:36:03 ----A---- C:\Windows\system32\rpcnet.dll
2010-02-10 09:33:16 ----D---- C:\Windows
2010-02-09 23:23:01 ----D---- C:\Users\ASUS\AppData\Roaming\vlc
2010-02-09 20:20:46 ----A---- C:\Windows\system32\acovcnt.exe
2010-02-09 15:02:27 ----SHD---- C:\System Volume Information
2010-02-05 19:18:19 ----SHD---- C:\Windows\Installer
2010-02-05 19:18:19 ----RSD---- C:\Windows\Fonts
2010-02-05 19:18:19 ----HD---- C:\Config.Msi
2010-02-05 19:15:36 ----SD---- C:\Users\ASUS\AppData\Roaming\Microsoft
2010-02-05 13:17:49 ----D---- C:\Windows\system32\Tasks
2010-02-02 23:32:03 ----D---- C:\Users\ASUS\AppData\Roaming\ICQ
2010-02-02 20:06:30 ----D---- C:\Users\ASUS\AppData\Roaming\dvdcss
2010-02-01 21:18:46 ----D---- C:\Windows\system32\catroot2
2010-01-30 12:57:58 ----D---- C:\Windows\Tasks
2010-01-30 12:57:48 ----D---- C:\Program Files\Google
2010-01-30 12:23:20 ----D---- C:\Windows\winsxs
2010-01-30 12:23:20 ----D---- C:\Program Files\Internet Explorer
2010-01-30 12:20:11 ----D---- C:\Windows\Prefetch
2010-01-28 11:38:15 ----D---- C:\Windows\system32\catroot
2010-01-22 20:08:29 ----D---- C:\Windows\system32\migration
2010-01-21 19:27:03 ----D---- C:\Windows\system32\drivers
2010-01-20 21:34:39 ----A---- C:\Windows\win.ini
2010-01-20 21:34:15 ----HD---- C:\Program Files\InstallShield Installation Information
2010-01-20 21:24:09 ----RSD---- C:\Windows\assembly
2010-01-20 21:22:35 ----D---- C:\Program Files\Common Files
2010-01-16 15:39:17 ----D---- C:\Program Files\ICQ6.5
2010-01-16 10:51:31 ----HD---- C:\ProgramData
2010-01-16 10:51:12 ----A---- C:\Windows\system32\deploytk.dll
2010-01-15 03:03:08 ----D---- C:\ProgramData\Microsoft Help
2010-01-15 03:02:31 ----D---- C:\Program Files\Windows Mail
2010-01-14 11:12:06 ----N---- C:\Windows\system32\MpSigStub.exe
2010-01-13 23:26:20 ----D---- C:\Users\ASUS\AppData\Roaming\CyberLink
2010-01-12 23:37:10 ----A---- C:\Windows\ATKPF.ini
2010-01-12 17:19:50 ----D---- C:\Users\ASUS\AppData\Roaming\Image Zone Express
2010-01-11 16:37:32 ----D---- C:\Windows\system32\WDI

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 F-Secure HIPS;F-Secure HIPS Driver; \??\C:\Program Files\F-Secure Internet Security\HIPS\drivers\fshs.sys [2008-10-14 66720]
R1 FSES;F-Secure Email Scanning Driver; C:\Windows\System32\drivers\fses.sys [2008-10-14 35552]
R1 FSFW;F-Secure Firewall Driver; C:\Windows\System32\drivers\fsdfw.sys [2008-10-14 70944]
R1 fsvista;F-Secure Vista Support Driver; \??\C:\Program Files\F-Secure Internet Security\Anti-Virus\minifilter\fsvista.sys [2008-10-14 12384]
R2 ASMMAP;ASMMAP; \??\C:\Program Files\ATKGFNEX\ASMMAP.sys [2007-07-24 13880]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2009-09-05 1183744]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-21 14208]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2009-03-30 129536]
R3 F-Secure Gatekeeper;F-Secure Gatekeeper; \??\C:\Program Files\F-Secure Internet Security\Anti-Virus\minifilter\fsgk.sys [2010-01-11 107104]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2009-03-24 2346016]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2008-11-03 13880]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATKACPI.sys [2006-12-14 7680]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2009-07-02 9786752]
R3 nvsmu;nvsmu; C:\Windows\system32\DRIVERS\nvsmu.sys [2008-08-25 15872]
R3 RTL8169;Realtek 8169 NT Driver; C:\Windows\system32\DRIVERS\Rtlh86.sys [2008-11-27 135680]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2008-08-11 1752704]
R3 SRS_PremiumSound_Service;SRS Labs Premium Sound; C:\Windows\system32\drivers\srs_PremiumSound_i386.sys [2009-04-01 233128]
R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-21 11264]
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]
S1 SRTSP;SRTSP; \??\C:\Windows\system32\drivers\NIS\1000000.07D\SRTSP.SYS []
S1 SRTSPX;SRTSPX; \??\C:\Windows\system32\drivers\NIS\1000000.07D\SRTSPX.SYS []
S3 a8yb13jd;a8yb13jd; C:\Windows\system32\drivers\a8yb13jd.sys []
S3 Dot4;Ovladač MS IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4.sys [2008-01-21 131584]
S3 Dot4Print;Ovladač třídy tiskárny standardu IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2008-01-21 16384]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2008-01-21 36864]
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2008-12-08 55264]
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 NAVENG;NAVENG; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20080829.024\NAVENG.SYS []
S3 NAVEX15;NAVEX15; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20080829.024\NAVEX15.SYS []
S3 smserial;smserial; C:\Windows\system32\DRIVERS\smserial.sys [2006-11-02 1010560]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-21 35328]
S3 usbvideo;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller; C:\Windows\system32\DRIVERS\yk60x86.sys [2006-11-02 194048]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 F-Secure Filter;F-Secure File System Filter; \??\C:\Program Files\F-Secure Internet Security\Anti-Virus\Win2K\FSfilter.sys [2008-10-14 39776]
S4 F-Secure Recognizer;F-Secure File System Recognizer; \??\C:\Program Files\F-Secure Internet Security\Anti-Virus\Win2K\FSrec.sys [2008-10-14 25184]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]
S4 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2008-01-21 88576]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ADSMService;ADSM Service; C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe [2008-03-31 225280]
R2 ASLDRService;ASLDR Service; C:\Program Files\ASUS\ATK Hotkey\ASLDRSrv.exe [2008-08-14 100920]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [2007-08-08 94208]
R2 Bonjour Service;##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762##; C:\Program Files\Bonjour\mDNSResponder.exe [2006-02-28 229376]
R2 F-Secure Gatekeeper Handler Starter;FSGKHS; C:\Program Files\F-Secure Internet Security\Anti-Virus\fsgk32st.exe [2008-10-14 215648]
R2 FSMA;F-Secure Management Agent; C:\Program Files\F-Secure Internet Security\Common\FSMA32.EXE [2008-10-14 117400]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2009-08-16 222968]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2009-07-02 211488]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-21 21504]
R2 rpcnet;Remote Procedure Call (RPC) Net; C:\Windows\system32\rpcnet.exe [2009-12-01 56680]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-05-19 240512]
R2 SRS_VolSync_Service;SRS Volume Sync Service; C:\Program Files\SRS Labs\SRS Premium Sound\SRS_VolSync.exe [2009-04-07 70880]
R3 FSAUA;F-Secure Automatic Update Agent; C:\Program Files\F-Secure Internet Security\FSAUA\program\fsaua.exe [2008-10-14 490080]
R3 FSDFWD;F-Secure Anti-Virus Firewall Daemon; C:\Program Files\F-Secure Internet Security\FWES\Program\fsdfwd.exe [2008-10-14 510560]
R3 FSORSPClient;F-Secure ORSP Client; C:\Program Files\F-Secure Internet Security\ORSP Client\fsorsp.exe [2008-10-14 55904]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2008-01-21 21504]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-01-30 135664]
S2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-21 21504]
S2 Norton Internet Security;Norton Internet Security; C:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccSvcHst.exe /s Norton Internet Security /m C:\Program Files\Norton Internet Security\Engine\16.0.0.125\diMaster.dll /prefetch:1 []
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2009-12-09 654848]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
S3 fsssvc;Windows Live Zabezpečení rodiny; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2008-12-08 533344]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-12-04 182768]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]

-----------------EOF-----------------

das
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 109
Registrován: 19 čer 2006 12:35

Re: Po naběhnutí OS nefunguje TouchPad

#2 Příspěvek od das »

Kouknete mi někdo prosím na log z RSIT? :o

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Po naběhnutí OS nefunguje TouchPad

#3 Příspěvek od motji »

Dobrý večer :)
Vydržte chvilku, než to přelouskám :)
:arrow: Tento soubor znáte?
c:\DisableS3S4.cmd
Pokud ne, klikněte na něj pravým - otevřít v notepadu , a text sem vložte :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Po naběhnutí OS nefunguje TouchPad

#4 Příspěvek od motji »

Omlouvám se, ted vidím, že soubor už tam není :roll: .

:arrow: Stáhněte na plochu, ukončete všechna aktivní okna a spusťte ComboFix - http://download.bleepingcomputer.com/sUBs/ComboFix.exe


- ComboFix je třeba spustit pod účtem s právy administrátora

- Před použitím vypněte všechny rezidentní bezpečnostní programy - antiviry, firewally, antispywary

- Po spuštění se zobrazí podmínky užití, potvrďte je stiskem tlačítka Ano

- Dále postupujte dle pokynů, během aplikování ComboFixu neklikejte do zobrazujícího se okna :!:

- Po dokončení skenování, trvajícího maximálně 10 minut, by měl program vytvořit log - C:\ComboFix.txt, zkopírujte celý jeho obsah sem
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

das
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 109
Registrován: 19 čer 2006 12:35

Re: Po naběhnutí OS nefunguje TouchPad

#5 Příspěvek od das »

Kód: Vybrat vše

Zdravím. Tak jsem to spustil ComboFix a po restartu TouchPad začal fungovat.. Avšak pro dalším restartu opět nefungoval. Přidávám tedy log. Předem děkuji

ComboFix 10-02-10.04 - ASUS 11.02.2010 12:36:47.1.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.420.1029.18.3582.2551 [GMT 1:00]
Spuštěný z: c:\users\ASUS\Desktop\ComboFix.exe
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}

.

((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\program files\ICQ6.5\ICQLRun.exe
c:\program files\temp
c:\windows\system32\twain_32.dll
D:\install.exe

.
((((((((((((((((((((((((( Soubory vytvořené od 2010-01-11 do 2010-02-11 )))))))))))))))))))))))))))))))
.

2010-02-11 11:46 . 2010-02-11 12:39 -------- d-----w- c:\users\ASUS\AppData\Local\temp
2010-02-10 08:53 . 2010-02-10 10:34 -------- d-----w- c:\program files\trend micro
2010-02-10 08:53 . 2010-02-10 08:53 -------- d-----w- C:\rsit
2010-02-09 09:30 . 2010-02-09 09:30 -------- d-----w- c:\users\ASUS\AppData\Roaming\MySQL
2010-02-05 18:15 . 2008-07-03 13:26 6294528 ----a-w- c:\windows\system32\MediaIO1.dll
2010-02-05 18:15 . 2008-07-03 13:42 9974784 ----a-w- c:\windows\system32\MioPlayer2.dll
2010-01-30 11:21 . 2010-01-30 11:21 509552 ----a-w- c:\programdata\Google\Google Toolbar\Update\gtbF171.tmp.exe
2010-01-20 20:37 . 2010-01-20 20:37 -------- d-----w- c:\users\ASUS\AppData\Local\ChessBase
2010-01-20 20:34 . 2010-01-20 20:34 -------- d-----w- c:\program files\ChessBase
2010-01-20 20:23 . 2010-01-20 20:53 -------- d-----w- c:\users\ASUS\AppData\Roaming\ChessBase
2010-01-20 20:22 . 2010-01-20 20:22 -------- d-----w- c:\program files\Talk
2010-01-20 20:22 . 2010-01-20 20:22 -------- d-----w- C:\Engines
2010-01-20 20:22 . 2010-01-20 20:22 -------- d-----w- c:\program files\Common Files\ChessBase
2010-01-20 20:22 . 2010-01-20 20:22 -------- d-----w- C:\Music
2010-01-20 20:21 . 2010-01-20 20:21 -------- d-----w- C:\Devices
2010-01-20 20:21 . 2010-01-20 20:21 -------- d-----w- C:\Default.cko
2010-01-20 20:21 . 2010-01-20 20:21 -------- d-----w- c:\program files\Messages
2010-01-20 20:21 . 2010-01-20 20:21 -------- d-----w- c:\program files\Chatter
2010-01-20 20:21 . 2010-01-20 20:21 -------- d-----w- c:\program files\gif
2010-01-20 20:21 . 2010-01-20 20:21 -------- d-----w- c:\program files\HTML
2010-01-20 20:21 . 2010-01-20 20:21 -------- d-----w- c:\program files\Bitmaps
2010-01-20 20:20 . 2010-01-20 20:20 -------- d-----w- C:\3D
2010-01-20 20:20 . 2010-01-20 20:20 -------- d-----w- C:\Training
2010-01-20 20:19 . 2010-01-20 20:21 -------- d-----w- C:\Sounds
2010-01-20 20:19 . 2007-12-17 14:49 577536 ----a-w- c:\program files\ode.dll
2010-01-20 20:19 . 2005-11-06 19:43 462848 ----a-w- c:\program files\Fritz Chess Benchmark.exe
2010-01-20 20:19 . 2007-12-17 14:48 7254016 ----a-w- c:\program files\Textures2Net.dll
2010-01-20 20:19 . 2007-12-17 14:49 667648 ----a-w- c:\program files\TBAccessNet.dll
2010-01-20 20:19 . 2008-01-16 20:22 946176 ----a-w- c:\program files\SViewNet.dll
2010-01-20 20:19 . 2007-11-19 09:32 84992 ----a-w- c:\program files\IUPgrade.exe
2010-01-20 20:19 . 2008-01-08 19:40 4091904 ----a-w- c:\program files\FrameResNet.dll
2010-01-20 20:19 . 2007-12-17 14:49 73728 ----a-w- c:\program files\Device32.dll
2010-01-20 20:19 . 2007-12-17 14:47 651264 ----a-w- c:\program files\ChessResNet.dll
2010-01-20 20:19 . 2008-01-18 08:50 11009536 ----a-w- c:\program files\ChessProgram11.exe
2010-01-20 20:19 . 2007-12-17 14:47 143360 ----a-w- c:\program files\Chess32.dll
2010-01-20 15:15 . 2010-01-20 15:15 -------- d-----w- c:\users\ASUS\AppData\Roaming\Transcend
2010-01-20 10:39 . 2010-01-20 10:39 -------- d-----w- c:\users\ASUS\AppData\Local\Apps
2010-01-20 10:39 . 2010-01-20 10:40 -------- d-----w- c:\users\ASUS\AppData\Local\Deployment
2010-01-16 11:25 . 2010-01-16 11:25 -------- d-----w- c:\users\ASUS\.netbeans-derby
2010-01-16 11:16 . 2010-01-16 11:23 -------- d-----w- c:\users\ASUS\.netbeans
2010-01-16 11:16 . 2010-01-16 11:16 -------- d-----w- c:\users\ASUS\.netbeans-registration
2010-01-16 11:15 . 2010-01-16 11:16 -------- d-----w- c:\program files\sges-v3
2010-01-16 11:11 . 2010-01-16 11:11 -------- d-----w- c:\users\ASUS\bluej
2010-01-16 11:03 . 2010-01-16 11:15 -------- d-----w- c:\program files\NetBeans 6.8
2010-01-16 10:45 . 2010-01-16 10:45 -------- d-----w- c:\program files\Sun
2010-01-16 10:01 . 2010-01-16 11:18 -------- d-----w- c:\users\ASUS\.nbi
2010-01-16 09:51 . 2010-01-16 09:51 -------- d-----w- c:\program files\Common Files\Java
2010-01-16 09:51 . 2010-01-16 10:43 -------- d-----w- c:\program files\Java
2010-01-14 09:51 . 2009-10-19 13:38 156672 ----a-w- c:\windows\system32\t2embed.dll
2010-01-14 09:51 . 2009-10-19 13:35 72704 ----a-w- c:\windows\system32\fontsub.dll

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-02-11 12:39 . 2009-08-27 03:59 48032 ----a-w- c:\programdata\nvModes.dat
2010-02-11 12:39 . 2009-08-27 04:09 45056 ----a-w- c:\windows\system32\acovcnt.exe
2010-02-11 12:29 . 2009-08-27 03:11 17408 ----a-w- c:\windows\system32\rpcnetp.exe
2010-02-11 11:53 . 2008-04-17 10:34 605960 ----a-w- c:\windows\system32\perfh005.dat
2010-02-11 11:53 . 2008-04-17 10:34 118236 ----a-w- c:\windows\system32\perfc005.dat
2010-02-11 11:48 . 2009-12-01 09:02 56680 ----a-w- c:\windows\system32\rpcnet.dll
2010-02-11 11:46 . 2009-12-07 18:19 -------- d-----w- c:\program files\ICQ6.5
2010-02-11 11:10 . 2009-12-05 10:00 -------- d-----w- c:\users\ASUS\AppData\Roaming\vlc
2010-02-11 10:41 . 2010-01-11 15:05 -------- d-----w- c:\program files\F-Secure Internet Security
2010-02-10 19:05 . 2009-12-07 18:19 -------- d-----w- c:\users\ASUS\AppData\Roaming\ICQ
2010-02-10 18:54 . 2009-08-27 03:14 17408 ----a-w- c:\windows\system32\rpcnetp.dll
2010-02-05 22:30 . 2009-12-01 07:52 105360 ----a-w- c:\users\ASUS\AppData\Local\GDIPFONTCACHEV1.DAT
2010-02-02 19:06 . 2009-12-06 18:24 -------- d-----w- c:\users\ASUS\AppData\Roaming\dvdcss
2010-01-30 11:57 . 2009-08-27 03:42 -------- d-----w- c:\program files\Google
2010-01-21 18:27 . 2010-01-21 18:27 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdMtpDr_01_07_00.Wdf
2010-01-20 20:53 . 2010-01-20 20:23 -------- d-----w- c:\users\ASUS\AppData\Roaming\ChessBase
2010-01-20 20:34 . 2010-01-20 20:34 -------- d-----w- c:\program files\ChessBase
2010-01-20 20:34 . 2009-08-27 03:38 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-01-20 20:22 . 2010-01-20 20:22 -------- d-----w- c:\program files\Common Files\ChessBase
2010-01-16 09:51 . 2009-12-04 14:05 411368 ----a-w- c:\windows\system32\deploytk.dll
2010-01-15 02:03 . 2009-08-27 03:24 -------- d-----w- c:\programdata\Microsoft Help
2010-01-15 02:02 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail
2010-01-14 10:12 . 2009-12-01 09:18 181120 ------w- c:\windows\system32\MpSigStub.exe
2010-01-13 22:26 . 2009-12-05 09:13 -------- d-----w- c:\users\ASUS\AppData\Roaming\CyberLink
2010-01-12 16:19 . 2009-12-04 17:30 -------- d-----w- c:\users\ASUS\AppData\Roaming\Image Zone Express
2010-01-11 18:21 . 2010-01-11 18:21 33920 ----a-w- c:\windows\system32\drivers\fsbts.sys
2010-01-11 18:11 . 2010-01-11 18:11 -------- d-----w- c:\users\ASUS\AppData\Roaming\F-Secure
2010-01-11 15:06 . 2010-01-11 15:03 -------- d-----w- c:\programdata\f-secure
2010-01-11 15:05 . 2010-01-11 15:05 -------- d-----w- c:\programdata\fssg
2010-01-02 06:38 . 2010-01-22 06:52 916480 ----a-w- c:\windows\system32\wininet.dll
2010-01-02 06:32 . 2010-01-22 06:52 71680 ----a-w- c:\windows\system32\iesetup.dll
2010-01-02 06:32 . 2010-01-22 06:52 109056 ----a-w- c:\windows\system32\iesysprep.dll
2010-01-02 04:57 . 2010-01-22 06:52 133632 ----a-w- c:\windows\system32\ieUnatt.exe
2009-12-24 11:16 . 2009-12-24 11:16 -------- d-----w- c:\programdata\KONAMI
2009-12-19 15:39 . 2009-12-19 15:39 515848 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2009-12-13 16:06 . 2009-12-13 16:06 -------- d-----w- c:\users\ASUS\AppData\Roaming\PeerNetworking
2009-12-08 18:35 . 2009-12-08 18:35 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2009-12-05 08:31 . 2009-12-05 08:31 484976 ----a-w- c:\programdata\Google\Google Toolbar\Update\gtb4F3A.tmp.exe
2009-12-03 10:41 . 2009-12-03 10:10 146152 ----a-w- c:\windows\hpoins12.dat
2009-12-01 09:42 . 2006-11-02 10:25 665600 ----a-w- c:\windows\inf\drvindex.dat
2009-12-01 09:01 . 2009-12-01 09:02 56680 ----a-w- c:\windows\system32\rpcnet.exe
2009-11-30 17:02 . 2009-11-30 17:02 171144 ----a-w- c:\windows\system32\xliveinstall.dll
2009-11-30 17:02 . 2009-11-30 17:02 72840 ----a-w- c:\windows\system32\xliveinstallhost.exe
2009-11-24 15:39 . 2009-11-24 15:39 1093064 ----a-w- c:\users\ASUS\AppData\Roaming\Mozilla\Firefox\Profiles\etpam2tl.default\extensions\DTToolbar@toolbarnet.com\components\DTToolbarFF.dll
2008-01-18 09:03 . 2010-01-20 20:21 2526983 ----a-w- c:\program files\Eng-Playchess.chm
2007-11-12 11:34 . 2010-01-20 20:21 3763174 ----a-w- c:\program files\eng.chm
2007-10-31 12:58 . 2010-01-20 20:23 421 ----a-w- c:\program files\Fritz11Version.xml
2004-11-08 11:12 . 2010-01-20 20:21 2608790 ----a-w- c:\program files\Eco.cbcod
2001-11-08 16:48 . 2010-01-20 20:22 1567052 ----a-w- c:\program files\Lakes.cbw
2001-10-29 14:55 . 2010-01-20 20:22 30705644 ----a-w- c:\program files\extra0.cbw
2001-10-29 11:46 . 2010-01-20 20:22 13371204 ----a-w- c:\program files\BuiltupArea.cbw
2001-08-19 18:00 . 2010-01-20 20:22 1220448 ----a-w- c:\program files\World.cbw
1999-09-19 14:40 . 2010-01-20 20:21 3101 ----a-w- c:\program files\fritzlogo.gif
1996-09-10 13:22 . 2010-01-20 20:21 1244016 ----a-w- c:\program files\WorldEx.cbw
2009-08-27 03:35 . 2009-08-27 03:35 8192 --sha-w- c:\windows\Users\Default\NTUSER.DAT
.

(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ADSMOverlayIcon1]
@="{A8D448F4-0431-45AC-9F5E-E1B434AB2249}"
[HKEY_CLASSES_ROOT\CLSID\{A8D448F4-0431-45AC-9F5E-E1B434AB2249}]
2007-06-02 00:08 143360 ----a-w- c:\program files\ASUS\ASUS Data Security Manager\ShlExt\x86\OverlayIconShlExt1.dll

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-04-10 1233920]
"SRS Premium Sound"="c:\program files\SRS Labs\SRS Premium Sound\SRSPremiumSoundBig_Small.exe" [2009-04-07 3405048]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-12-04 39408]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-21 125952]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2009-10-30 369200]
"ICQ"="c:\program files\ICQ6.5\ICQ.exe" [2009-11-16 172792]
"Google Update"="c:\users\ASUS\AppData\Local\Google\Update\GoogleUpdate.exe" [2010-01-20 135664]
"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-21 202240]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2008-01-21 1008184]
"UpdateLBPShortCut"="c:\program files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" [2009-05-20 222504]
"CLMLServer"="c:\program files\CyberLink\Power2Go\CLMLSvc.exe" [2008-07-19 104936]
"UpdateP2GoShortCut"="c:\program files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" [2008-12-04 218408]
"ETDWare"="c:\program files\Elantech\ETDCtrl.exe" [2009-03-30 424864]
"AmIcoSinglun"="c:\program files\AmIcoSingLun\AmIcoSinglun.exe" [2008-09-30 237568]
"HControlUser"="c:\program files\ASUS\ATK Hotkey\HControlUser.exe" [2008-08-18 98304]
"ATKOSD2"="c:\program files\ASUS\ATKOSD2\ATKOSD2.exe" [2009-03-04 8392704]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2009-03-24 7289376]
"Wireless Console 3"="c:\program files\ASUS\Wireless Console 3\wcourier.exe" [2009-02-06 1593344]
"ATKMEDIA"="c:\program files\ASUS\ATK Media\DMedia.exe" [2009-04-07 159744]
"ASUS Camera ScreenSaver"="c:\windows\AsScrProlog.exe" [2009-08-27 47672]
"ADSMTray"="c:\program files\ASUS\ASUS Data Security Manager\ADSMTray.exe" [2008-04-01 266240]
"ACMON"="c:\program files\ASUS\Splendid\ACMON.exe" [2008-10-01 851968]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2008-12-03 35184]
"Skytel"="c:\program files\Realtek\Audio\HDA\Skytel.exe" [2009-03-24 1833504]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-07-02 13789728]
"HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2006-12-10 49152]
"NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
"F-Secure Manager"="c:\program files\F-Secure Internet Security\Common\FSM32.EXE" [2008-10-14 182936]
"F-Secure TNB"="c:\program files\F-Secure Internet Security\FSGUI\TNBUtil.exe" [2008-10-14 957024]

c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
FancyStart daemon.lnk - c:\windows\Installer\{A9FEB6D7-9C52-49FC-B956-7AB275B78890}\_5598CE641C54B66A23693F.exe [2009-8-27 12862]
HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2007-1-2 210520]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"VistaSp2"=hex(b):80,1f,75,2d,62,72,ca,01

R0 fsbts;fsbts;c:\windows\System32\drivers\fsbts.sys [11.1.2010 19:21 33920]
R1 F-Secure HIPS;F-Secure HIPS Driver;c:\program files\F-Secure Internet Security\HIPS\drivers\fshs.sys [11.1.2010 16:06 66720]
R1 FSES;F-Secure Email Scanning Driver;c:\windows\System32\drivers\fses.sys [11.1.2010 16:06 35552]
R1 FSFW;F-Secure Firewall Driver;c:\windows\System32\drivers\fsdfw.sys [11.1.2010 16:06 70944]
R1 fsvista;F-Secure Vista Support Driver;c:\program files\F-Secure Internet Security\Anti-Virus\minifilter\fsvista.sys [11.1.2010 16:05 12384]
R2 ICQ Service;ICQ Service;c:\program files\ICQ6Toolbar\ICQ Service.exe [7.12.2009 19:20 222968]
R2 SRS_VolSync_Service;SRS Volume Sync Service;c:\program files\SRS Labs\SRS Premium Sound\SRS_VolSync.exe [7.4.2009 18:04 70880]
R3 ETD;ELAN PS/2 Port Input Device;c:\windows\System32\drivers\ETD.sys [30.3.2009 8:33 129536]
R3 F-Secure Gatekeeper;F-Secure Gatekeeper;c:\program files\F-Secure Internet Security\Anti-Virus\minifilter\fsgk.sys [11.1.2010 16:05 107104]
R3 FSORSPClient;F-Secure ORSP Client;c:\program files\F-Secure Internet Security\ORSP Client\fsorsp.exe [11.1.2010 16:06 55904]
R3 SRS_PremiumSound_Service;SRS Labs Premium Sound;c:\windows\System32\drivers\SRS_PremiumSound_i386.sys [27.8.2009 5:07 233128]
S2 gupdate;Služba Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [30.1.2010 12:57 135664]
S2 Norton Internet Security;Norton Internet Security;"c:\program files\Norton Internet Security\Engine\16.0.0.125\ccSvcHst.exe" /s "Norton Internet Security" /m "c:\program files\Norton Internet Security\Engine\16.0.0.125\diMaster.dll" /prefetch:1 --> c:\program files\Norton Internet Security\Engine\16.0.0.125\ccSvcHst.exe [?]
S3 FontCache;Mezipaměť písem Windows;c:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation [21.1.2008 3:23 21504]
S3 fssfltr;FssFltr;c:\windows\System32\drivers\fssfltr.sys [1.12.2009 8:59 55264]
S3 fsssvc;Windows Live Zabezpečení rodiny;c:\program files\Windows Live\Family Safety\fsssvc.exe [8.12.2008 17:01 533344]
S4 F-Secure Filter;F-Secure File System Filter;c:\program files\F-Secure Internet Security\Anti-Virus\win2k\fsfilter.sys [11.1.2010 16:05 39776]
S4 F-Secure Recognizer;F-Secure File System Recognizer;c:\program files\F-Secure Internet Security\Anti-Virus\win2k\fsrec.sys [11.1.2010 16:05 25184]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
.
Obsah adresáře 'Naplánované úlohy'

2010-02-11 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-01-30 11:57]

2010-02-11 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-01-30 11:57]

2010-02-11 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2122222039-1107514653-1836651307-1000Core.job
- c:\users\ASUS\AppData\Local\Google\Update\GoogleUpdate.exe [2010-01-20 10:40]

2010-02-11 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2122222039-1107514653-1836651307-1000UA.job
- c:\users\ASUS\AppData\Local\Google\Update\GoogleUpdate.exe [2010-01-20 10:40]

2010-02-11 c:\windows\Tasks\User_Feed_Synchronization-{41D9556F-8214-4A03-9A7C-A98EA888BC07}.job
- c:\windows\system32\msfeedssync.exe [2010-01-22 04:56]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.daemon-search.com/startpage
uInternet Settings,ProxyOverride = *.local
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: WikiKomentáře Google... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
LSP: c:\program files\F-Secure Internet Security\FSPS\program\FSLSP.DLL
TCP: {45E2E45C-3009-462C-906F-D5DF40E3DEA1} = 10.12.0.1,10.6.0.1
FF - ProfilePath - c:\users\ASUS\AppData\Roaming\Mozilla\Firefox\Profiles\etpam2tl.default\
FF - prefs.js: browser.search.selectedEngine - DAEMON Search
FF - prefs.js: browser.startup.homepage - hxxp://www.daemon-search.com/startpage|http://start.icq.com/
FF - prefs.js: keyword.URL - hxxp://search.icq.com/search/afe_results.php?ch_id=afex&q=
FF - component: c:\users\ASUS\AppData\Roaming\Mozilla\Firefox\Profiles\etpam2tl.default\extensions\DTToolbar@toolbarnet.com\components\DTToolbarFF.dll
FF - plugin: c:\program files\Google\Picasa3\npPicasa3.dll
FF - plugin: c:\program files\Microsoft\Office Live\npOLW.dll
FF - plugin: c:\program files\Windows Live\Photo Gallery\NPWLPG.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\

---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -

HKLM-Run-DisableS3S4 - c:\DisableS3S4.cmd
HKLM-Run-SunJavaUpdateSched - c:\program files\Java\jre6\bin\jusched.exe



**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-02-11 13:39
Windows 6.0.6002 Service Pack 2 NTFS

skenování skrytých procesů ...

skenování skrytých položek 'Po spuštění' ...

HKCU\Software\Microsoft\Windows\CurrentVersion\Run
Sidebar = c:\program files\Windows Sidebar\sidebar.exe /autoRun?????????????????????????? ??????????????????????x?????????????????l?%Program

skenování skrytých souborů ...


C:\ADSM_PData_0150

sken byl úspešně dokončen
skryté soubory: 1

**************************************************************************

Stealth MBR rootkit/Mebroot/Sinowal detector 0.3.7 by Gmer, http://www.gmer.net

device: opened successfully
user: MBR read successfully
called modules: ntkrnlpa.exe CLASSPNP.SYS disk.sys acpi.sys hal.dll >>UNKNOWN [0x854A61F8]<<
kernel: MBR read successfully
detected MBR rootkit hooks:
\Driver\Disk -> CLASSPNP.SYS @ 0x8b9b1d24
\Driver\ACPI -> acpi.sys @ 0x807b4d68
\Driver\atapi -> 0x854a41f8
IoDeviceObjectType ->\Device\Harddisk0\DR0 ->Warning: possible MBR rootkit infection !
user & kernel MBR OK
copy of MBR has been found in sector 61 !
copy of MBR has been found in sector 62 !

**************************************************************************

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Norton Internet Security]
"ImagePath"="\"c:\program files\Norton Internet Security\Engine\16.0.0.125\ccSvcHst.exe\" /s \"Norton Internet Security\" /m \"c:\program files\Norton Internet Security\Engine\16.0.0.125\diMaster.dll\" /prefetch:1"
.
--------------------- Knihovny navázané na běžící procesy ---------------------

- - - - - - - > 'winlogon.exe'(1300)
c:\program files\F-Secure Internet Security\FWES\Program\fsdc32.dll

- - - - - - - > 'lsass.exe'(664)
c:\program files\F-Secure Internet Security\FWES\Program\fsdc32.dll

- - - - - - - > 'Explorer.exe'(276)
c:\program files\ASUS\ASUS Data Security Manager\ShlExt\x86\OverlayIconShlExt.dll
c:\program files\ASUS\ASUS Data Security Manager\ShlExt\x86\OverlayIconShlExt1.dll

- - - - - - - > 'csrss.exe'(548)
c:\program files\F-Secure Internet Security\FWES\Program\fsdc32.dll

- - - - - - - > 'csrss.exe'(620)
c:\program files\F-Secure Internet Security\FWES\Program\fsdc32.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\nvvsvc.exe
c:\windows\system32\nvvsvc.exe
c:\program files\ASUS\ASUS Data Security Manager\ADSMSrv.exe
c:\program files\ASUS\ATK Hotkey\ASLDRSrv.exe
c:\program files\ATKGFNEX\GFNEXSrv.exe
c:\windows\system32\WLANExt.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\F-Secure Internet Security\Anti-Virus\fsgk32st.exe
c:\program files\F-Secure Internet Security\Common\FSMA32.EXE
c:\program files\F-Secure Internet Security\Anti-Virus\FSGK32.EXE
c:\program files\F-Secure Internet Security\Common\FSMB32.EXE
c:\windows\system32\rpcnet.exe
c:\program files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
c:\program files\F-Secure Internet Security\Common\FCH32.EXE
c:\program files\F-Secure Internet Security\Anti-Virus\fsqh.exe
c:\program files\F-Secure Internet Security\Common\FAMEH32.EXE
c:\program files\F-Secure Internet Security\FSPC\fspc.exe
c:\program files\F-Secure Internet Security\Anti-Virus\fssm32.exe
c:\program files\F-Secure Internet Security\FSAUA\program\fsaua.exe
c:\program files\F-Secure Internet Security\FWES\Program\fsdfwd.exe
c:\program files\F-Secure Internet Security\FSAUA\program\fsus.exe
c:\program files\F-Secure Internet Security\Anti-Virus\fsav32.exe
c:\program files\P4G\BatteryLife.exe
c:\program files\ASUS\SmartLogon\sensorsrv.exe
c:\windows\system32\conime.exe
c:\program files\ASUS\ATK Hotkey\MsgTranAgt.exe
c:\program files\ASUS\ATK Hotkey\HControl.exe
c:\program files\ASUS\ATK Hotkey\ATKOSD.exe
c:\program files\ASUS\ATK Hotkey\KBFiltr.exe
c:\program files\ASUS\ATK Hotkey\WDC.exe
c:\windows\System32\ACEngSvr.exe
.
**************************************************************************
.
Celkový čas: 2010-02-11 13:45:39 - počítač byl restartován
ComboFix-quarantined-files.txt 2010-02-11 12:45

Před spuštěním: Volných bajtů: 139 639 562 240
Po spuštění: Volných bajtů: 139 945 398 272

- - End Of File - - 20955E3BD2912FDC5231DC89F180CEC6

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Po naběhnutí OS nefunguje TouchPad

#6 Příspěvek od motji »

:arrow: odinstalujte všechny virtuální jednotky (Daemon nebo alcohol)

:arrow: Stáhněte SPTD http://www.duplexsecure.com/en/downloads
-vyberte verzi podle svého operačního systému. SPTD for Windows (32 bit) nebo (64b)
-uložte na plochu a spusťte
- zvolte možnost Uninstall
- restart PC
- spusťte gmer


:arrow: Stáhněte Gmer http://www.viry.cz/forum/viewtopic.php?f=29&t=62878
- rozbalte a spusťte
-proběhne sken, po skončení se otevře okno s výsledky, kliknete na Save a tím si uložíte log,který sem vložíte

-Podle návodu v odkazu proveďte druhý sken a log sem také vložte.

:arrow: stáhněte MBR
http://www2.gmer.net/mbr/mbr.exe
-uložte ho na plochu


:arrow: start-spustit
do okénka zkopírujte

Kód: Vybrat vše

"%userprofile%\plocha\mbr" -t
ok

:arrow: vytvoří se log s názvem mbr.log, vložte ho zde
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Po naběhnutí OS nefunguje TouchPad

#7 Příspěvek od motji »

Jak to tu vypadá? :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Odpovědět