Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Problém s schvhost vytezuje PC na 100% kratce po startu..

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
PajaZ
Návštěvník
Návštěvník
Příspěvky: 139
Registrován: 03 bře 2010 19:56

Re: Problém s schvhost vytezuje PC na 100% kratce po startu.

#61 Příspěvek od PajaZ »

Tak mám opet problem s timto PC, avast zahlasil že blokuje asi 20 souborů, po té se PC zpomalilo a " neznámý proces " vytezoval PC na 100%. Po nekolika resetech do nouzového rezimu se podarilo obnoveni systemu. Prosim o kontrolu logu, nejak to odrachlo avast, tak se jej ted pokousim reinstalovat. Obnoveni ho vratilo asi pred registraci a ted je datum po registraci. :-)

Díky moc.

Logfile of random's system information tool 1.06 (written by random/random)
Run by Zdenek at 2010-04-06 17:39:19
Systém Microsoft Windows XP Professional Service Pack 2
System drive D: has 28 GB (53%) free of 52 GB
Total RAM: 1023 MB (57% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:39:23, on 6.4.2010
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\system32\spoolsv.exe
D:\WINDOWS\Explorer.EXE
D:\Software\Aplikace\Motherboard Monitor 5\MBM5.EXE
D:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe
D:\WINDOWS\TBPanel.exe
D:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
D:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe
D:\Program Files\iTunes\iTunesHelper.exe
D:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
D:\Program Files\Common Files\Java\Java Update\jusched.exe
D:\Program Files\Bonjour\mDNSResponder.exe
D:\Program Files\SweetIM\Messenger\SweetIM.exe
D:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
D:\Program Files\Java\jre6\bin\jqs.exe
D:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
D:\WINDOWS\system32\ctfmon.exe
D:\Program Files\MICROSTAR\Bluetooth Software\BTTray.exe
D:\Program Files\Logitech Touch Mouse Server\iTouch-Server-Win.exe
D:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
D:\WINDOWS\system32\nvsvc32.exe
D:\WINDOWS\System32\svchost.exe
D:\Program Files\Canon\CAL\CALMAIN.exe
D:\Program Files\MICROSTAR\Bluetooth Software\btsendto_explorer.exe
D:\Software\Aplikace\Sysmetrix\SysMetrix.exe
D:\Program Files\iPod\bin\iPodService.exe
D:\Documents and Settings\Zdenek.ZDENEK-JG362RMG\Plocha\RSIT.exe
D:\Program Files\trend micro\Zdenek.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://tea-earth.net/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - D:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: IeCatch5 Class - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - D:\PROGRA~1\FlashGet\jccatch.dll
O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - D:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - D:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - D:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - D:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - D:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: gFlash Class - {F156768E-81EF-470C-9057-481BA8380DBA} - D:\PROGRA~1\FlashGet\getflash.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - D:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - D:\PROGRA~1\FlashGet\fgiebar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - D:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [MBM 5] "D:\Software\Aplikace\Motherboard Monitor 5\MBM5.EXE"
O4 - HKLM\..\Run: [LogonStudio] "D:\Software\Aplikace\LogonStudio\logonstudio.exe" /RANDOM
O4 - HKLM\..\Run: [PinnacleDriverCheck] D:\WINDOWS\System32\PSDrvCheck.exe -CheckReg
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] D:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb09.exe
O4 - HKLM\..\Run: [SSBkgdUpdate] "D:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "D:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [IMJPMIG8.1] "D:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] D:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] D:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] D:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [Gainward] D:\WINDOWS\TBPanel.exe /A
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE D:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE D:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [Google Desktop Search] "D:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [AppleSyncNotifier] D:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [QuickTime Task] "D:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "D:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "D:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [SweetIM] D:\Program Files\SweetIM\Messenger\SweetIM.exe
O4 - HKLM\..\Run: [NeroFilterCheck] D:\WINDOWS\system32\NeroCheck.exe
O4 - HKCU\..\Run: [Google Update] "D:\Documents and Settings\Zdenek.ZDENEK-JG362RMG\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [RocketDock] "D:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe"
O4 - HKCU\..\Run: [swg] "D:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [ctfmon.exe] D:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] D:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [RunNarrator] Narrator.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] D:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [RunNarrator] Narrator.exe (User 'Default user')
O4 - Startup: Logitech Touch Mouse Server.lnk = D:\Program Files\Logitech Touch Mouse Server\iTouch-Server-Win.exe
O4 - Startup: RocketDock.lnk = D:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
O4 - Global Startup: BTTray.lnk = ?
O8 - Extra context menu item: &ICQ Toolbar Search - res://D:\Program Files\ICQToolbar\toolbaru.dll/SEARCH.HTML
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://D:\Software\Aplikace\OFFICE~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint - Náhled - res://D:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html
O8 - Extra context menu item: Easy-WebPrint - Přidat na seznam k tisku - res://D:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint - Tisk - res://D:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint - Vysokorychlostní tisk - res://D:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html
O8 - Extra context menu item: Stáhnout pomocí FlashGet - D:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: Stáhnout vše pomocí FlashGet - D:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: WikiKomentáře Google... - res://D:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - D:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Bonjour - {7F9DB11C-E358-4ca6-A83D-ACC663939424} - D:\Program Files\Bonjour\ExplorerPlugin.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\Software\Aplikace\OFFICE~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - D:\Program Files\ICQLite\ICQLite.exe (file missing)
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - D:\Program Files\ICQLite\ICQLite.exe (file missing)
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - D:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - D:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - D:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - D:\Program Files\ICQ6.5\ICQ.exe
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - D:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: avgrsstarter - D:\WINDOWS\SYSTEM32\avgrsstx.dll
O23 - Service: Adobe Active File Monitor V6 (AdobeActiveFileMonitor6.0) - Unknown owner - D:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe
O23 - Service: Apple Mobile Device - Apple Inc. - D:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: AVG Free E-mail Scanner (avg9emc) - Unknown owner - D:\Program Files\AVG\AVG9\avgemc.exe (file missing)
O23 - Service: AVG Free WatchDog (avg9wd) - Unknown owner - D:\Program Files\AVG\AVG9\avgwdsvc.exe (file missing)
O23 - Service: Bonjour Service - Apple Inc. - D:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - D:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - D:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Desktop Manager 5.9.911.3589 (GoogleDesktopManager-110309-193829) - Google - D:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Update Service (gupdate1c99e7bd27b9410) (gupdate1c99e7bd27b9410) - Google Inc. - D:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - D:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPod Service - Apple Inc. - D:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - D:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - D:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - D:\WINDOWS\system32\nvsvc32.exe

--
End of file - 11196 bytes

======Scheduled tasks folder======

D:\WINDOWS\tasks\AppleSoftwareUpdate.job
D:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
D:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
D:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-484763869-343818398-839522115-1003Core.job
D:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-484763869-343818398-839522115-1003UA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - D:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
Skype add-on (mastermind) - D:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2009-05-26 1088296]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2F364306-AA45-47B5-9F9D-39A8B94E7EF7}]
IeCatch5 Class - D:\PROGRA~1\FlashGet\jccatch.dll [2006-05-16 81920]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{68F9551E-0411-48E4-9AAF-4BC42A6A46BE}]
EWPBrowseObject Class - D:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll [2006-04-18 34304]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - D:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2010-01-01 263280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - D:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll [2010-01-01 764912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - D:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-02-19 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - D:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-02-19 79648]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F156768E-81EF-470C-9057-481BA8380DBA}]
gFlash Class - D:\PROGRA~1\FlashGet\getflash.dll [2006-09-12 126976]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{327C2873-E90D-4c37-AA9D-10AC9BABA46C} - Easy-WebPrint - D:\Program Files\Canon\Easy-WebPrint\Toolband.dll [2006-04-18 552960]
{E0E899AB-F487-11D5-8D29-0050BA6940E3} - FlashGet Bar - D:\PROGRA~1\FlashGet\fgiebar.dll [2005-06-07 86016]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - D:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2010-01-01 263280]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"MBM 5"=D:\Software\Aplikace\Motherboard Monitor 5\MBM5.EXE [2003-01-08 577536]
"LogonStudio"=D:\Software\Aplikace\LogonStudio\logonstudio.exe [2002-09-03 987187]
"PinnacleDriverCheck"=D:\WINDOWS\System32\PSDrvCheck.exe [2004-03-10 406016]
"HPDJ Taskbar Utility"=D:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb09.exe [2003-07-28 188416]
"SSBkgdUpdate"=D:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [2003-09-30 155648]
"OpwareSE4"=D:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe [2006-03-21 69632]
"IMJPMIG8.1"=D:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE [2004-08-03 208952]
"MSPY2002"=D:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe [2004-08-03 59392]
"PHIME2002ASync"=D:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2004-08-03 455168]
"PHIME2002A"=D:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2004-08-03 455168]
"Gainward"=D:\WINDOWS\TBPanel.exe [2007-04-23 2173744]
"NvCplDaemon"=D:\WINDOWS\system32\NvCpl.dll [2007-04-19 7700480]
"nwiz"=nwiz.exe /install []
"NvMediaCenter"=D:\WINDOWS\system32\NvMcTray.dll [2007-04-19 86016]
"Google Desktop Search"=D:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2010-02-04 30192]
"AppleSyncNotifier"=D:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe [2009-08-13 177440]
"QuickTime Task"=D:\Program Files\QuickTime\qttask.exe [2009-09-05 417792]
"iTunesHelper"=D:\Program Files\iTunes\iTunesHelper.exe [2009-09-08 305440]
"SunJavaUpdateSched"=D:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-02-18 248040]
"SweetIM"=D:\Program Files\SweetIM\Messenger\SweetIM.exe [2009-10-20 111928]
"NeroFilterCheck"=D:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=D:\Documents and Settings\Zdenek.ZDENEK-JG362RMG\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [2009-08-06 133104]
"RocketDock"=D:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe [2007-03-19 630784]
"swg"=D:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2010-01-01 39408]
"ctfmon.exe"=D:\WINDOWS\system32\ctfmon.exe [2004-08-17 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Photo Downloader]
D:\Program Files\Adobe\Photoshop Elements 6.0\apdproxy.exe [2007-09-11 67488]

D:\Documents and Settings\All Users.WINDOWS\Nabídka Start\Programy\Po spuštění
BTTray.lnk - D:\Program Files\MICROSTAR\Bluetooth Software\BTTray.exe

D:\Documents and Settings\Zdenek.ZDENEK-JG362RMG\Nabídka Start\Programy\Po spuštění
Logitech Touch Mouse Server.lnk - D:\Program Files\Logitech Touch Mouse Server\iTouch-Server-Win.exe
RocketDock.lnk - D:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\avgrsstarter]
D:\WINDOWS\system32\avgrsstx.dll [2009-10-28 12464]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"D:\Program Files\Sony\Vegas 6.0\VegSrv60.exe"="D:\Program Files\Sony\Vegas 6.0\VegSrv60.exe:*:Enabled:Sony Vegas Network Render Service Control"
"D:\Program Files\Mozilla Firefox\firefox.exe"="D:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Firefox"
"D:\wincmd\WINCMD32.EXE"="D:\wincmd\WINCMD32.EXE:*:Enabled:Windows Commander 32 bit international version, file manager replacement for Windows"
"D:\WINDOWS\system32\dpvsetup.exe"="D:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"D:\Program Files\Ubisoft\Crytek\Far Cry\Bin32\FarCry.exe"="D:\Program Files\Ubisoft\Crytek\Far Cry\Bin32\FarCry.exe:*:Disabled:Far Cry"
"D:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe"="D:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe:*:Enabled:Google Desktop"
"D:\Program Files\B!Soft\RSS Builder\RSSBuilder.exe"="D:\Program Files\B!Soft\RSS Builder\RSSBuilder.exe:*:Enabled:RSS Builder"
"D:\Program Files\KompoZer 0.7.10\kompozer.exe"="D:\Program Files\KompoZer 0.7.10\kompozer.exe:*:Enabled:Composer"
"D:\Program Files\ICQ6.5\ICQ.exe"="D:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"D:\Program Files\Bonjour\mDNSResponder.exe"="D:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour"
"D:\Software\Games\UT\UnrealTournament\System\UnrealTournament.exe"="D:\Software\Games\UT\UnrealTournament\System\UnrealTournament.exe:*:Enabled:UnrealTournament"
"D:\Program Files\iPhone Tunnel Suite\iTunnel\iTunnel.exe"="D:\Program Files\iPhone Tunnel Suite\iTunnel\iTunnel.exe:*:Enabled:iTunnel"
"D:\Program Files\iTunes\iTunes.exe"="D:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"D:\Program Files\Ripdev\JuiceDrop\JuiceDrop.exe"="D:\Program Files\Ripdev\JuiceDrop\JuiceDrop.exe:*:Enabled:JuiceDrop"
"D:\Program Files\Java\jre6\launch4j-tmp\frd.exe"="D:\Program Files\Java\jre6\launch4j-tmp\frd.exe:*:Enabled:Java(TM) Platform SE binary"
"D:\Program Files\Opera\opera.exe"="D:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"D:\Program Files\Logitech Touch Mouse Server\iTouch-Server-Win.exe"="D:\Program Files\Logitech Touch Mouse Server\iTouch-Server-Win.exe:*:Enabled:Logitech"
"D:\Program Files\Kooperativa\KalkZiv\Kalk_Ziv.exe"="D:\Program Files\Kooperativa\KalkZiv\Kalk_Ziv.exe:*:Enabled:Kalk_Ziv"
"D:\Program Files\TVAnts\Tvants.exe"="D:\Program Files\TVAnts\Tvants.exe:*:Enabled:TVAnts"
"D:\Program Files\TeamViewer\Version5\TeamViewer.exe"="D:\Program Files\TeamViewer\Version5\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application"
"D:\Program Files\Skype\Phone\Skype.exe"="D:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype. Take a deep breath "

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

======List of files/folders created in the last 1 months======

2010-04-06 15:43:47 ----A---- D:\WINDOWS\ntbtlog.txt
2010-04-05 14:11:09 ----A---- D:\huadio.tmp
2010-04-01 20:33:39 ----D---- D:\Documents and Settings\Zdenek.ZDENEK-JG362RMG\Data aplikací\Thunderbird
2010-04-01 20:33:05 ----D---- D:\Program Files\Mozilla Thunderbird(2)
2010-03-18 22:30:29 ----D---- D:\iTunes_Control
2010-03-18 22:07:11 ----D---- D:\Program Files\MediaMonkey
2010-03-12 16:15:57 ----D---- D:\Documents and Settings\All Users.WINDOWS\Data aplikací\Sun
2010-03-12 16:15:45 ----A---- D:\WINDOWS\system32\javaws.exe
2010-03-12 16:15:45 ----A---- D:\WINDOWS\system32\javaw.exe
2010-03-12 16:15:45 ----A---- D:\WINDOWS\system32\java.exe
2010-03-11 22:44:50 ----D---- D:\Documents and Settings\Zdenek.ZDENEK-JG362RMG\Data aplikací\TeamViewer
2010-03-11 22:44:13 ----D---- D:\Program Files\TeamViewer

======List of files/folders modified in the last 1 months======

2010-04-06 17:39:20 ----D---- D:\Program Files\Trend Micro
2010-04-06 17:37:27 ----D---- D:\WINDOWS\Temp
2010-04-06 17:37:13 ----AD---- D:\WINDOWS\system32
2010-04-06 17:37:13 ----A---- D:\WINDOWS\system32\logonuiX.exe
2010-04-06 17:36:54 ----A---- D:\WINDOWS\DFC.INI
2010-04-06 17:36:32 ----A---- D:\WINDOWS\LogonStudio.ini
2010-04-06 17:34:46 ----A---- D:\WINDOWS\SchedLgU.Txt
2010-04-06 17:31:15 ----D---- D:\Documents and Settings\All Users.WINDOWS\Data aplikací\Alwil Software
2010-04-06 17:31:12 ----D---- D:\WINDOWS\system32\drivers
2010-04-06 17:30:55 ----AC---- D:\WINDOWS\system32\PerfStringBackup.INI
2010-04-06 15:49:53 ----D---- D:\WINDOWS\system32\config
2010-04-06 15:49:34 ----D---- D:\WINDOWS\system32\wbem
2010-04-06 15:49:32 ----D---- D:\WINDOWS\Registration
2010-04-06 15:48:42 ----D---- D:\Documents and Settings\Zdenek.ZDENEK-JG362RMG\Data aplikací\dvdcss
2010-04-06 15:47:40 ----RD---- D:\Program Files
2010-04-06 15:45:31 ----RSHDC---- D:\WINDOWS\system32\dllcache
2010-04-06 15:45:30 ----D---- D:\Program Files\RivaTuner v2.0 RC 16
2010-04-06 15:43:47 ----D---- D:\WINDOWS
2010-04-06 15:39:02 ----D---- D:\WINDOWS\system32\CatRoot2
2010-04-06 15:07:56 ----D---- D:\WINDOWS\Prefetch
2010-04-06 14:45:31 ----D---- D:\Program Files\EurotelSMS
2010-04-05 12:57:50 ----D---- D:\Documents and Settings\Zdenek.ZDENEK-JG362RMG\Data aplikací\vlc
2010-04-02 15:51:56 ----D---- D:\Documents and Settings\Zdenek.ZDENEK-JG362RMG\Data aplikací\Canon
2010-04-02 11:58:25 ----HD---- D:\WINDOWS\inf
2010-03-27 19:49:00 ----SHD---- D:\WINDOWS\Installer
2010-03-27 19:48:59 ----D---- D:\Config.Msi
2010-03-27 16:34:27 ----D---- D:\Documents and Settings\Zdenek.ZDENEK-JG362RMG\Data aplikací\Skype
2010-03-27 11:39:54 ----D---- D:\Documents and Settings\Zdenek.ZDENEK-JG362RMG\Data aplikací\skypePM
2010-03-25 21:23:57 ----A---- D:\WINDOWS\wincmd.ini
2010-03-25 19:57:49 ----D---- D:\WINDOWS\Minidump
2010-03-24 18:05:00 ----A---- D:\WINDOWS\winamp.ini
2010-03-24 16:49:24 ----A---- D:\WINDOWS\wcx_ftp.ini
2010-03-22 20:31:16 ----A---- D:\WINDOWS\NeroDigital.ini
2010-03-18 20:53:15 ----SD---- D:\WINDOWS\Tasks
2010-03-15 20:34:50 ----D---- D:\Program Files\Kooperativa
2010-03-12 16:15:55 ----D---- D:\Program Files\Common Files\Java
2010-03-12 16:15:43 ----D---- D:\Program Files\Java
2010-03-08 18:54:09 ----A---- D:\WINDOWS\ModemLog_Bluetooth Null Modem.txt
2010-03-08 18:54:09 ----A---- D:\WINDOWS\ModemLog_Bluetooth Modem.txt
2010-03-08 18:54:09 ----A---- D:\WINDOWS\ModemLog_Bluetooth Fax Modem.txt

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 AmdK7;Ovladač procesoru AMD K7; D:\WINDOWS\System32\DRIVERS\amdk7.sys [2004-08-17 41216]
R1 ATITool;ATITool Overclocking Utility; D:\WINDOWS\system32\DRIVERS\ATITool.sys [2005-12-30 24064]
R1 AvgLdx86;AVG Free AVI Loader Driver x86; D:\WINDOWS\System32\Drivers\avgldx86.sys [2009-10-28 333192]
R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86; D:\WINDOWS\System32\Drivers\avgmfx86.sys [2009-10-28 28424]
R1 AvgTdiX;AVG Free Network Redirector; D:\WINDOWS\System32\Drivers\avgtdix.sys [2009-11-10 360584]
R1 kbdhid;Ovladač klávesnice standardu HID; D:\WINDOWS\system32\DRIVERS\kbdhid.sys [2004-08-17 14848]
R1 mbmiodrvr;mbmiodrvr; \??\D:\WINDOWS\System32\mbmiodrvr.sys []
R1 PQNTDrv;PQNTDrv; D:\WINDOWS\system32\drivers\PQNTDrv.sys [2002-09-16 4228]
R1 Tcpip6;Ovladač protokolu Microsoft IPv6; D:\WINDOWS\System32\DRIVERS\tcpip6.sys [2004-08-03 223616]
R2 Angelnt;Angelnt; D:\WINDOWS\System32\Drivers\ANGELNT.SYS [2004-05-27 31936]
R2 Aspi32;Aspi32; D:\WINDOWS\System32\drivers\aspi32.sys [2002-07-17 16877]
R2 BT848;WinFast TV2000 XP WDM Video Capture; D:\WINDOWS\system32\drivers\wf2kvcap.sys [2002-06-24 81356]
R2 BTSERIAL;Bluetooth Serial Driver; \??\D:\WINDOWS\system32\drivers\btserial.sys []
R2 BTSLBCSP;Bluetooth Port Client Driver; \??\D:\WINDOWS\system32\drivers\btslbcsp.sys []
R2 Dev_CBIDDRV;Dev_CBIDDRV; \??\D:\WINDOWS\System32\Drivers\CBID.SYS []
R2 PStrip;PStrip; D:\WINDOWS\system32\drivers\PStrip.sys [2004-11-10 21968]
R2 TBPanel;TBPanel; D:\WINDOWS\system32\drivers\TBPanel.sys [2007-03-16 12256]
R2 tv2ktunr;WinFast TV2000 XP WDM TVTuner; D:\WINDOWS\system32\drivers\wf2ktunr.sys [2002-06-24 39182]
R2 Tv2kXbar;WinFast TV2000 XP WDM Crossbar; D:\WINDOWS\system32\drivers\wf2kxbar.sys [2002-06-24 9804]
R3 Arp1394;Protokol 1394 ARP Client; D:\WINDOWS\System32\DRIVERS\arp1394.sys [2004-08-03 60800]
R3 ASAPIW2k;ASAPIW2K; D:\WINDOWS\system32\drivers\ASAPIW2k.sys [2004-03-10 11264]
R3 BtAudio;Bluetooth Audio; D:\WINDOWS\System32\DRIVERS\btaudio.sys [2003-01-16 21701]
R3 BTDriver;Bluetooth Virtual Communications Driver; D:\WINDOWS\System32\DRIVERS\btport.sys [2003-01-16 30043]
R3 BTWDNDIS;Bluetooth LAN Access Server; D:\WINDOWS\System32\DRIVERS\btwdndis.sys [2003-01-16 144608]
R3 cmuda;C-Media WDM Audio Interface; D:\WINDOWS\system32\drivers\cmuda.sys [2003-07-01 733248]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; D:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2009-05-18 26600]
R3 hidusb;Ovladač třídy standardu HID; D:\WINDOWS\System32\DRIVERS\hidusb.sys [2001-10-25 9600]
R3 mouhid;Ovladač myši standardu HID; D:\WINDOWS\System32\DRIVERS\mouhid.sys [2001-10-25 12160]
R3 ms_mpu401;Microsoft MPU-401 MIDI UART Driver; D:\WINDOWS\system32\drivers\msmpu401.sys [2001-08-18 2944]
R3 NIC1394;1394 Net Driver; D:\WINDOWS\System32\DRIVERS\nic1394.sys [2004-08-03 61824]
R3 nv;nv; D:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2007-04-19 3988384]
R3 NVENET;NVIDIA nForce MCP Networking Controller Driver; D:\WINDOWS\System32\DRIVERS\NVENET.sys [2002-11-27 80896]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; D:\WINDOWS\System32\Drivers\RootMdm.sys [2001-10-25 5888]
R3 SKYNET;TechniSat DVB-PC TV Star PCI; D:\WINDOWS\system32\DRIVERS\SkyNET.SYS [2004-10-13 462212]
R3 tunmp;Microsoft Tun Miniport Adapter Driver; D:\WINDOWS\system32\DRIVERS\tunmp.sys [2004-08-03 12416]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; D:\WINDOWS\System32\DRIVERS\usbccgp.sys [2004-08-04 31616]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; D:\WINDOWS\System32\DRIVERS\usbehci.sys [2004-08-03 26624]
R3 usbhub;Ovladač standardního rozbočovače USB; D:\WINDOWS\System32\DRIVERS\usbhub.sys [2004-08-03 57600]
R3 usbohci;Ovladač Miniport otevřeného hostitelského řadiče Microsoft USB; D:\WINDOWS\System32\DRIVERS\usbohci.sys [2004-08-03 17024]
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; D:\WINDOWS\System32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
R3 wanlink;wanlink; D:\WINDOWS\System32\DRIVERS\wanlink.sys [2002-06-24 47968]
S1 SysTool;SysTool Overclocking Utility; D:\WINDOWS\system32\DRIVERS\SysTool.sys [2005-12-30 24064]
S3 Bridge;Most MAC; D:\WINDOWS\System32\DRIVERS\bridge.sys [2004-08-03 71552]
S3 BridgeMP;Miniport mostu MAC; D:\WINDOWS\System32\DRIVERS\bridge.sys [2004-08-03 71552]
S3 BTWUSB;WIDCOMM USB Bluetooth Driver; D:\WINDOWS\System32\Drivers\btwusb.sys [2003-01-16 65076]
S3 Cardex;Cardex; \??\D:\WINDOWS\system32\drivers\TBPANEL.SYS []
S3 CCDECODE;Dekodér Closed Caption; D:\WINDOWS\System32\DRIVERS\CCDECODE.sys [2004-08-03 17024]
S3 CV2K1;CommView Network Monitor; D:\WINDOWS\system32\DRIVERS\cv2k1.sys []
S3 dtscsi;dtscsi; D:\WINDOWS\System32\Drivers\dtscsi.sys [2006-08-16 223128]
S3 ENTECH;ENTECH; \??\D:\WINDOWS\System32\DRIVERS\ENTECH.SYS []
S3 GMSIPCI;GMSIPCI; \??\H:\INSTALL\GMSIPCI.SYS []
S3 HidBatt;Ovladač baterie zdroje UPS standardu HID; D:\WINDOWS\System32\DRIVERS\HidBatt.sys [2001-08-17 19200]
S3 hidgame;Microsoft Hid to Joystick Port Enabler; D:\WINDOWS\System32\DRIVERS\hidgame.sys [2001-08-17 8576]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; D:\WINDOWS\system32\drivers\MSTEE.sys [2004-08-03 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; D:\WINDOWS\System32\DRIVERS\NABTSFEC.sys [2004-08-03 85376]
S3 NdisIP;Microsoft TV/Video Connection; D:\WINDOWS\System32\DRIVERS\NdisIP.sys [2004-08-03 10880]
S3 Netaapl;Apple Mobile Device Ethernet Service; D:\WINDOWS\system32\DRIVERS\netaapl.sys [2009-06-05 17408]
S3 nm;Ovladač programu Sledování sítě; D:\WINDOWS\System32\DRIVERS\NMnt.sys [2004-08-03 40320]
S3 RivaTuner32;RivaTuner32; \??\D:\Program Files\RivaTuner v2.0 RC 16\RivaTuner32.sys []
S3 rtl8139;Realtek RTL8139/810x Family Fast Ethernet NIC NT Driver; D:\WINDOWS\System32\DRIVERS\R8139n51.SYS [2003-02-19 46976]
S3 SLIP;BDA Slip De-Framer; D:\WINDOWS\System32\DRIVERS\SLIP.sys [2004-08-03 11136]
S3 streamip;BDA IPSink; D:\WINDOWS\System32\DRIVERS\StreamIP.sys [2004-08-03 15360]
S3 TVicHW32;TVicHW32; \??\D:\WINDOWS\System32\DRIVERS\TVicHW32.SYS []
S3 USBAAPL;Apple Mobile USB Driver; D:\WINDOWS\System32\Drivers\usbaapl.sys [2009-08-28 40448]
S3 usbprint;Třída USB Printer; D:\WINDOWS\System32\DRIVERS\usbprint.sys [2004-08-03 25856]
S3 usbscan;Ovladač skeneru USB; D:\WINDOWS\System32\DRIVERS\usbscan.sys [2004-08-03 15104]
S3 Wdf01000;Wdf01000; D:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2006-11-02 492000]
S3 WSTCODEC;Dálnopisný kodek světového standardu; D:\WINDOWS\System32\DRIVERS\WSTCODEC.SYS [2004-08-03 19328]
S4 IntelIde;IntelIde; D:\WINDOWS\system32\drivers\IntelIde.sys []
S4 sptd;sptd; D:\WINDOWS\System32\Drivers\sptd.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 6to4;Pomocná služba protokolu IPv6; D:\WINDOWS\system32\svchost.exe [2004-08-17 14336]
R2 AdobeActiveFileMonitor6.0;Adobe Active File Monitor V6; D:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe [2007-09-11 124832]
R2 Apple Mobile Device;Apple Mobile Device; D:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2009-06-05 144712]
R2 Bonjour Service;Bonjour Service; D:\Program Files\Bonjour\mDNSResponder.exe [2008-12-12 238888]
R2 CCALib8;Canon Camera Access Library 8; D:\Program Files\Canon\CAL\CALMAIN.exe [2006-03-30 96341]
R2 JavaQuickStarterService;Java Quick Starter; D:\Program Files\Java\jre6\bin\jqs.exe [2009-12-17 153376]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; D:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-07-20 935208]
R2 NVSvc;NVIDIA Display Driver Service; D:\WINDOWS\system32\nvsvc32.exe [2007-04-19 159810]
R2 UMWdf;Windows User Mode Driver Framework; D:\WINDOWS\system32\wdfmgr.exe [2005-01-28 38912]
R3 iPod Service;iPod Service; D:\Program Files\iPod\bin\iPodService.exe [2009-09-08 545568]
S2 avg9emc;AVG Free E-mail Scanner; D:\Program Files\AVG\AVG9\avgemc.exe []
S2 avg9wd;AVG Free WatchDog; D:\Program Files\AVG\AVG9\avgwdsvc.exe []
S2 gupdate1c99e7bd27b9410;Google Update Service (gupdate1c99e7bd27b9410); D:\Program Files\Google\Update\GoogleUpdate.exe [2009-03-06 133104]
S3 aspnet_state;ASP.NET State Service; D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2005-09-23 29896]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2005-09-23 66240]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; D:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2008-09-04 654848]
S3 GoogleDesktopManager-110309-193829;Google Desktop Manager 5.9.911.3589; D:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2010-02-04 30192]
S3 gusvc;Google Software Updater; D:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2010-01-01 182768]
S3 MSSQL$SONY_MEDIAMGR;MSSQL$SONY_MEDIAMGR; D:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [2002-12-17 7520337]
S3 MSSQLServerADHelper;MSSQLServerADHelper; D:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqladhlp.exe [2002-12-17 66112]
S3 ose;Office Source Engine; D:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 SQLAgent$SONY_MEDIAMGR;SQLAgent$SONY_MEDIAMGR; D:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlagent.EXE [2002-12-17 311872]

-----------------EOF-----------------

Uživatelský avatar
Caroprd111
VIP
VIP
Příspěvky: 13492
Registrován: 22 bře 2009 20:48
Bydliště: Třebíč
Kontaktovat uživatele:

Re: Problém s schvhost vytezuje PC na 100% kratce po startu.

#62 Příspěvek od Caroprd111 »

Obrázek Stáhněte a uložte, nejlépe na plochu http://download.bleepingcomputer.com/sUBs/ComboFix.exe
  • Vypněte všechny rezidentní bezpečnostní programy - firewally, antiviry, antispywary
  • Spusťte aplikaci pod účtem s oprávněním Administrátora (Správce), ihned po startu se zobrazí stránka s licenčními podmínkami, pokračujte stisknutím tlačítka "Ano"
  • Dále postupujte dle pokynů, během scanu nespouštějte jiné aplikace a neklikejte do zobrazujícího se okna :!:
  • Scan by měl trvat okolo 5 - 10 minut, po dokončení Combofix zobrazí log C:\ComboFix.txt , který sem vložte.
  • Během skenování může být počítač restartován.
Obrázek

PajaZ
Návštěvník
Návštěvník
Příspěvky: 139
Registrován: 03 bře 2010 19:56

Re: Problém s schvhost vytezuje PC na 100% kratce po startu.

#63 Příspěvek od PajaZ »

Takze tam opravdu neco je? :(
Zkusim to zitra, akorat vypinam PC rano brzy vstavam...

Uživatelský avatar
Caroprd111
VIP
VIP
Příspěvky: 13492
Registrován: 22 bře 2009 20:48
Bydliště: Třebíč
Kontaktovat uživatele:

Re: Problém s schvhost vytezuje PC na 100% kratce po startu.

#64 Příspěvek od Caroprd111 »

Určitě tam něco bude. Já už také odcházím.
Obrázek

PajaZ
Návštěvník
Návštěvník
Příspěvky: 139
Registrován: 03 bře 2010 19:56

Re: Problém s schvhost vytezuje PC na 100% kratce po startu.

#65 Příspěvek od PajaZ »

Ok, ted už se to po tom obnoveni systemu chova naprosto korektne, nerad bych to nejak zbortil, ale jestli to je nutné tak to zitra zkusím...

Uživatelský avatar
Caroprd111
VIP
VIP
Příspěvky: 13492
Registrován: 22 bře 2009 20:48
Bydliště: Třebíč
Kontaktovat uživatele:

Re: Problém s schvhost vytezuje PC na 100% kratce po startu.

#66 Příspěvek od Caroprd111 »

Pokračujte podle návodu, aby tam nebylo ještě něco schovaného. :)
Obrázek

PajaZ
Návštěvník
Návštěvník
Příspěvky: 139
Registrován: 03 bře 2010 19:56

Re: Problém s schvhost vytezuje PC na 100% kratce po startu.

#67 Příspěvek od PajaZ »

Už pouštim combofix, neco tam opravdu je oper vytizeni na 100% a opet schvhost. AKorat od te doby pouzivam avast, a ted combofix pise že mi bezi rezidentni stit avg, koukam do taskmanageru a nikde ho nevidim, asi zbytkovy soubor jelikož je odninstalovan 2 mesice nebo jak dlouho. Takze jsem dal pokracovat a už to jede az to dokonči hodim sem opet log. :-
Zatim moc diky.

PajaZ
Návštěvník
Návštěvník
Příspěvky: 139
Registrován: 03 bře 2010 19:56

Re: Problém s schvhost vytezuje PC na 100% kratce po startu.

#68 Příspěvek od PajaZ »

Tady je log, PC nebyl restartovan a vytizeni je stale 100% u schvhost. :(
Mam jeste jednou combofix?

ComboFix 10-04-06.03 - Zdenek 07.04.2010 13:19:19.2.1 - x86
Systém Microsoft Windows XP Professional 5.1.2600.2.1250.420.1029.18.1023.346 [GMT 2:00]
Spuštěný z: d:\documents and settings\Zdenek.ZDENEK-JG362RMG\Plocha\ComboFix.exe
AV: avast! Antivirus *On-access scanning disabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
AV: AVG Anti-Virus Free *On-access scanning enabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
.

((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.

d:\documents and settings\Zdenek.ZDENEK-JG362RMG\Dokumenty\cc_20100303_220122.reg
d:\windows\eSellerateEngine.dll
d:\windows\system32\fjhdyfhsn.bat

.
((((((((((((((((((((((((( Soubory vytvořené od 2010-03-07 do 2010-04-07 )))))))))))))))))))))))))))))))
.

2010-04-06 15:48 . 2010-03-09 10:12 46672 ----a-w- d:\windows\system32\drivers\aswTdi.sys
2010-04-06 15:48 . 2010-03-09 10:12 162640 ----a-w- d:\windows\system32\drivers\aswSP.sys
2010-04-06 15:48 . 2010-03-09 10:09 23376 ----a-w- d:\windows\system32\drivers\aswRdr.sys
2010-04-06 15:48 . 2010-03-09 10:08 100432 ----a-w- d:\windows\system32\drivers\aswmon2.sys
2010-04-06 15:48 . 2010-03-09 10:08 94800 ----a-w- d:\windows\system32\drivers\aswmon.sys
2010-04-06 15:48 . 2010-03-09 10:08 19024 ----a-w- d:\windows\system32\drivers\aswFsBlk.sys
2010-04-06 15:48 . 2010-03-09 10:08 28880 ----a-w- d:\windows\system32\drivers\aavmker4.sys
2010-04-06 15:48 . 2010-03-09 10:24 38848 ----a-w- d:\windows\system32\avastSS.scr
2010-04-06 15:48 . 2010-03-09 10:24 153184 ----a-w- d:\windows\system32\aswBoot.exe
2010-04-06 13:49 . 2010-04-06 13:49 -------- d-----w- d:\windows\system32\wbem\Repository
2010-04-01 18:33 . 2010-04-06 13:47 -------- d-----w- d:\program files\Mozilla Thunderbird(2)
2010-03-18 20:30 . 2010-03-18 20:30 -------- d-----w- D:\iTunes_Control
2010-03-18 20:07 . 2010-03-19 20:43 -------- d-----w- d:\program files\MediaMonkey
2010-03-13 18:20 . 2010-03-13 18:20 -------- d-----w- d:\documents and settings\Zdenek.ZDENEK-JG362RMG\temp
2010-03-11 20:44 . 2010-03-13 18:20 -------- d-----w- d:\program files\TeamViewer

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-04-07 10:58 . 2001-10-25 14:00 82222 ----a-w- d:\windows\system32\perfc005.dat
2010-04-07 10:58 . 2001-10-25 14:00 419884 ----a-w- d:\windows\system32\perfh005.dat
2010-04-07 10:55 . 2002-09-20 18:05 19483648 ----a-w- d:\windows\system32\logonuiX.exe
2010-04-06 15:39 . 2010-03-03 11:37 -------- d-----w- d:\program files\Trend Micro
2010-04-06 13:45 . 2006-09-06 19:18 -------- d-----w- d:\program files\RivaTuner v2.0 RC 16
2010-04-06 12:45 . 2007-09-04 18:25 -------- d-----w- d:\program files\EurotelSMS
2010-04-05 12:11 . 2010-04-05 12:11 5789 ----a-w- D:\huadio.tmp
2010-03-15 18:34 . 2010-02-22 15:07 -------- d-----w- d:\program files\Kooperativa
2010-03-12 14:15 . 2007-09-25 19:11 -------- d-----w- d:\program files\Common Files\Java
2010-03-12 14:15 . 2007-09-25 19:20 -------- d-----w- d:\program files\Java
2010-03-05 20:54 . 2009-09-11 21:58 43464 ---ha-w- d:\windows\system32\mlfcache.dat
2010-03-04 22:07 . 2007-08-29 15:11 -------- d-----w- d:\program files\FlashGet
2010-03-04 20:43 . 2010-03-04 20:43 -------- d-----w- d:\program files\Alwil Software
2010-03-04 19:36 . 2010-03-04 19:36 -------- d-----w- d:\program files\VS Revo Group
2010-03-03 21:36 . 2010-02-14 13:03 -------- d-----w- d:\program files\Opera
2010-03-03 20:58 . 2010-03-03 20:58 -------- d-----w- d:\program files\CCleaner
2010-03-03 19:20 . 2010-03-03 12:18 -------- d-----w- d:\program files\Spybot - Search & Destroy
2010-03-02 15:51 . 2009-08-29 19:27 -------- d-----w- d:\program files\MrKrax URL Submitter
2010-02-24 21:07 . 2010-02-24 21:05 -------- d-----w- d:\program files\TVAnts
2010-02-22 15:07 . 2010-02-22 15:07 -------- d-----w- d:\program files\Borland
2010-02-15 18:44 . 2010-02-15 18:44 -------- d-----w- d:\program files\Logitech Touch Mouse Server
2010-02-09 15:35 . 2004-03-27 20:36 -------- d-----w- d:\program files\Zoner
2007-10-10 17:29 . 2007-10-12 15:12 536064 -c--a-w- d:\program files\GIFAnimator.exe
2004-10-01 14:00 . 2009-11-26 11:47 40960 ----a-w- d:\program files\Uninstall_CDS.exe
2010-02-04 18:51 . 2008-10-06 13:14 119808 ----a-w- d:\program files\mozilla firefox\components\GoogleDesktopMozilla.dll
.

------- Sigcheck -------

[-] 2004-08-17 . 4D32D7FFC2F583FE21EF0A4F99EABB12 . 974848 . . [6.00.2900.2180] . . d:\windows\explorer.exe
[-] 2004-08-17 . 4D32D7FFC2F583FE21EF0A4F99EABB12 . 974848 . . [6.00.2900.2180] . . d:\windows\ServicePackFiles\i386\explorer.exe
[-] 2002-09-20 . 11D80755545CFB5EB9659EE88440EAE2 . 1004544 . . [6.00.2800.1106] . . d:\windows\$NtServicePackUninstall$\explorer.exe
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Google Update"="d:\documents and settings\Zdenek.ZDENEK-JG362RMG\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" [2009-08-06 133104]
"RocketDock"="d:\windows\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe" [2007-03-18 630784]
"swg"="d:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2010-01-01 39408]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MBM 5"="d:\software\Aplikace\Motherboard Monitor 5\MBM5.EXE" [2003-01-08 577536]
"LogonStudio"="d:\software\Aplikace\LogonStudio\logonstudio.exe" [2002-09-03 987187]
"PinnacleDriverCheck"="d:\windows\System32\PSDrvCheck.exe" [2004-03-10 406016]
"HPDJ Taskbar Utility"="d:\windows\System32\spool\drivers\w32x86\3\hpztsb09.exe" [2003-07-28 188416]
"SSBkgdUpdate"="d:\program files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2003-09-29 155648]
"OpwareSE4"="d:\program files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe" [2006-03-21 69632]
"IMJPMIG8.1"="d:\windows\IME\imjp8_1\IMJPMIG.EXE" [2004-08-03 208952]
"MSPY2002"="d:\windows\system32\IME\PINTLGNT\ImScInst.exe" [2004-08-03 59392]
"PHIME2002ASync"="d:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2004-08-03 455168]
"PHIME2002A"="d:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2004-08-03 455168]
"Gainward"="d:\windows\TBPanel.exe" [2007-04-23 2173744]
"NvCplDaemon"="d:\windows\system32\NvCpl.dll" [2007-04-19 7700480]
"nwiz"="nwiz.exe" [2007-04-19 1626112]
"NvMediaCenter"="d:\windows\system32\NvMcTray.dll" [2007-04-19 86016]
"Google Desktop Search"="d:\program files\Google\Google Desktop Search\GoogleDesktop.exe" [2010-02-04 30192]
"AppleSyncNotifier"="d:\program files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe" [2009-08-13 177440]
"QuickTime Task"="d:\program files\QuickTime\qttask.exe" [2009-09-04 417792]
"iTunesHelper"="d:\program files\iTunes\iTunesHelper.exe" [2009-09-08 305440]
"SunJavaUpdateSched"="d:\program files\Common Files\Java\Java Update\jusched.exe" [2010-02-18 248040]
"SweetIM"="d:\program files\SweetIM\Messenger\SweetIM.exe" [2009-10-20 111928]
"NeroFilterCheck"="d:\windows\system32\NeroCheck.exe" [2001-07-09 155648]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="d:\windows\System32\CTFMON.EXE" [2004-08-17 15360]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"RunNarrator"="Narrator.exe" [2004-08-17 54784]

d:\documents and settings\Zdenek.ZDENEK-JG362RMG\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Logitech Touch Mouse Server.lnk - d:\program files\Logitech Touch Mouse Server\iTouch-Server-Win.exe [2009-10-23 228352]
RocketDock.lnk - d:\windows\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe [2007-3-19 630784]
syspck32.exe [2004-8-17 30720]

d:\documents and settings\All Users.WINDOWS\Nabˇdka Start\Programy\Po spuçtŘnˇ\
BTTray.lnk - d:\program files\MICROSTAR\Bluetooth Software\BTTray.exe [2003-1-16 360509]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon]
"UIHost"="d:\windows\system32\logonuiX.exe"

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgrsstarter]
2009-10-28 17:39 12464 ----a-w- d:\windows\system32\avgrsstx.dll

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Photo Downloader]
2007-09-10 22:43 67488 -c--a-w- d:\program files\Adobe\Photoshop Elements 6.0\apdproxy.exe

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"d:\\Program Files\\Sony\\Vegas 6.0\\VegSrv60.exe"=
"d:\\Program Files\\Mozilla Firefox\\firefox.exe"=
"d:\\wincmd\\WINCMD32.EXE"=
"d:\\WINDOWS\\system32\\dpvsetup.exe"=
"d:\\Program Files\\Ubisoft\\Crytek\\Far Cry\\Bin32\\FarCry.exe"=
"d:\\Program Files\\Google\\Google Desktop Search\\GoogleDesktop.exe"=
"d:\\Program Files\\B!Soft\\RSS Builder\\RSSBuilder.exe"=
"d:\\Program Files\\KompoZer 0.7.10\\kompozer.exe"=
"d:\\Program Files\\ICQ6.5\\ICQ.exe"=
"d:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"d:\\Software\\Games\\UT\\UnrealTournament\\System\\UnrealTournament.exe"=
"d:\\Program Files\\iPhone Tunnel Suite\\iTunnel\\iTunnel.exe"=
"d:\\Program Files\\iTunes\\iTunes.exe"=
"d:\\Program Files\\Ripdev\\JuiceDrop\\JuiceDrop.exe"=
"d:\\Program Files\\Java\\jre6\\launch4j-tmp\\frd.exe"=
"d:\\Program Files\\Opera\\opera.exe"=
"d:\\Program Files\\Logitech Touch Mouse Server\\iTouch-Server-Win.exe"=
"d:\\Program Files\\Kooperativa\\KalkZiv\\Kalk_Ziv.exe"=
"d:\\Program Files\\TVAnts\\Tvants.exe"=
"d:\\Program Files\\TeamViewer\\Version5\\TeamViewer.exe"=
"d:\\Program Files\\Skype\\Phone\\Skype.exe"=

R0 isdnlink;isdnlink;d:\windows\system32\drivers\linkisdn.sys [27.4.2004 10:25 610403]
R0 si3112r;Silicon Image SiI 3112 SATARaid Controller;d:\windows\system32\drivers\SI3112r.sys [26.3.2003 18:44 85265]
R0 SiWinAcc;SiWinAcc;d:\windows\system32\drivers\SiWinAcc.sys [26.3.2003 18:44 9600]
R1 aswSP;aswSP;d:\windows\system32\drivers\aswSP.sys [6.4.2010 17:48 162640]
R1 AvgLdx86;AVG Free AVI Loader Driver x86;d:\windows\system32\drivers\avgldx86.sys [28.10.2009 19:39 333192]
R1 AvgTdiX;AVG Free Network Redirector;d:\windows\system32\drivers\avgtdix.sys [28.10.2009 19:39 360584]
R2 Angelnt;Angelnt;d:\windows\system32\drivers\ANGELNT.SYS [9.5.2004 14:24 31936]
R2 aswFsBlk;aswFsBlk;d:\windows\system32\drivers\aswFsBlk.sys [6.4.2010 17:48 19024]
R2 BT848;WinFast TV2000 XP WDM Video Capture;d:\windows\system32\drivers\wf2kvcap.sys [27.4.2004 10:31 81356]
R2 Dev_CBIDDRV;Dev_CBIDDRV;d:\windows\system32\drivers\CBID.SYS [17.10.2004 21:10 2656]
R2 PStrip;PStrip;d:\windows\system32\drivers\PStrip.sys [10.11.2004 0:32 21968]
R2 tv2ktunr;WinFast TV2000 XP WDM TVTuner;d:\windows\system32\drivers\wf2ktunr.sys [27.4.2004 10:31 39182]
R2 Tv2kXbar;WinFast TV2000 XP WDM Crossbar;d:\windows\system32\drivers\wf2kXbar.sys [27.4.2004 10:31 9804]
R3 SKYNET;TechniSat DVB-PC TV Star PCI;d:\windows\system32\drivers\SkyNET.sys [27.4.2004 10:15 462212]
R3 wanlink;wanlink;d:\windows\system32\drivers\wanlink.sys [27.4.2004 10:25 47968]
S0 ffozeks;ffozeks; [x]
S0 MPRIFL;MPRIFL;d:\windows\system32\DRIVERS\MPRIFL.SYS --> d:\windows\system32\DRIVERS\MPRIFL.SYS [?]
S1 SysTool;SysTool Overclocking Utility;d:\windows\system32\drivers\SysTool.sys [30.12.2005 1:04 24064]
S3 CV2K1;CommView Network Monitor;d:\windows\system32\DRIVERS\cv2k1.sys --> d:\windows\system32\DRIVERS\cv2k1.sys [?]
S3 Netaapl;Apple Mobile Device Ethernet Service;d:\windows\system32\drivers\netaapl.sys [17.6.2009 9:43 17408]
S3 TVicHW32;TVicHW32;d:\windows\system32\drivers\TVicHW32.sys [17.10.2004 20:57 24656]
S4 sptd;sptd;d:\windows\system32\Drivers\sptd.sys --> d:\windows\system32\Drivers\sptd.sys [?]
.
Obsah adresáře 'Naplánované úlohy'

2009-03-27 d:\windows\Tasks\AppleSoftwareUpdate.job
- d:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 11:34]

2010-04-07 d:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- d:\program files\Google\Update\GoogleUpdate.exe [2009-03-06 16:51]

2010-04-07 d:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- d:\program files\Google\Update\GoogleUpdate.exe [2009-03-06 16:51]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://tea-earth.net/
uInternet Connection Wizard,ShellNext = iexplore
uInternet Settings,ProxyOverride = *.local
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: &ICQ Toolbar Search - d:\program files\ICQToolbar\toolbaru.dll/SEARCH.HTML
IE: E&xportovat do aplikace Microsoft Office Excel - d:\software\Aplikace\OFFICE~1\OFFICE11\EXCEL.EXE/3000
IE: Easy-WebPrint - Náhled - d:\program files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html
IE: Easy-WebPrint - Přidat na seznam k tisku - d:\program files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html
IE: Easy-WebPrint - Tisk - d:\program files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html
IE: Easy-WebPrint - Vysokorychlostní tisk - d:\program files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html
IE: Stáhnout pomocí FlashGet - d:\program files\FlashGet\jc_link.htm
IE: Stáhnout vše pomocí FlashGet - d:\program files\FlashGet\jc_all.htm
IE: WikiKomentáře Google... - d:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
DPF: DirectAnimation Java Classes - file://d:\windows\Java\classes\dajava.cab
DPF: Microsoft XML Parser for Java - file://d:\windows\Java\classes\xmldso.cab
FF - ProfilePath - d:\documents and settings\Zdenek.ZDENEK-JG362RMG\Data aplikací\Mozilla\Firefox\Profiles\tumuhuqj.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www.yodl.de/href.php?hrefname=FF-splug_google&q=
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz
FF - prefs.js: keyword.URL - hxxp://search.sweetim.com/search.asp?src=2&q=
FF - plugin: d:\program files\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: d:\program files\Google\Update\1.2.183.23\npGoogleOneClick8.dll
FF - plugin: d:\program files\Mozilla Firefox\plugins\np-mswmp.dll

---- NASTAVENÍ FIREFOXU ----
d:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.debug", false);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
d:\program files\Mozilla Firefox\greprefs\all.js - pref("html5.enable", false);
d:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
d:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
d:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
d:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
d:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-04-07 13:33
Windows 5.1.2600 Service Pack 2 NTFS

skenování skrytých procesů ...

skenování skrytých položek 'Po spuštění' ...

skenování skrytých souborů ...

sken byl úspešně dokončen
skryté soubory: 0

**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------

[HKEY_LOCAL_MACHINE\software\Classes\.application\bootstrap]
@DACL=(02 0000)
@="bootstrap.application.1"
.
Celkový čas: 2010-04-07 13:41:38
ComboFix-quarantined-files.txt 2010-04-07 11:41

Před spuštěním: Volných bajtů: 28 505 620 480
Po spuštění: Volných bajtů: 28 930 068 480

WindowsXP-KB310994-SP2-Pro-BootDisk-CSY.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(1)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(1)partition(1)\WINDOWS="Microsoft Windows XP Professional" /fastdetect /NoExecute=OptIn
C:\="Microsoft Windows"

Current=4 Default=4 Failed=3 LastKnownGood=5 Sets=1,2,3,4,5
- - End Of File - - 344BEFC3D3E2CCDC8A4699A5BD6D0CE9

PajaZ
Návštěvník
Návštěvník
Příspěvky: 139
Registrován: 03 bře 2010 19:56

Re: Problém s schvhost vytezuje PC na 100% kratce po startu.

#69 Příspěvek od PajaZ »

Tak po resetu se to zda byt dobre. Jinak mam podezreni na javaupdate, vždy když mi do tray skočí ta ikonka tak začnou problemy, nevim jeslti to ma souvislost. Hlavne nechapu proč to stale vidi AVG že bezi když je odinstalované :(

PajaZ
Návštěvník
Návštěvník
Příspěvky: 139
Registrován: 03 bře 2010 19:56

Re: Problém s schvhost vytezuje PC na 100% kratce po startu.

#70 Příspěvek od PajaZ »

Jo tak prd :-) Po 5 min opet vytizení na 100% :(

Uživatelský avatar
Caroprd111
VIP
VIP
Příspěvky: 13492
Registrován: 22 bře 2009 20:48
Bydliště: Třebíč
Kontaktovat uživatele:

Re: Problém s schvhost vytezuje PC na 100% kratce po startu.

#71 Příspěvek od Caroprd111 »

Obrázek Pokud nemáte, přesuňte Combofix na plochu
  • Otevřete si Poznámkový blok a zkopírujte do něj text z bílého okénka.

Kód: Vybrat vše

File::
D:\Documents and Settings\Zdenek.ZDENEK-JG362RMG\Nabídka Start\Programy\Po spuštění\syspck32.exe

Driver::
ffozeks

RegLock::
[HKEY_LOCAL_MACHINE\software\Classes\.application\bootstrap]

Registry::
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=-
  • Uložte Vámi vytvořený TXT soubor jako CFScript.txt na plochu
  • Po uložení uchopte vámi vytvořený skript levým myšítkem a přesuňte ho nad ikonu Combofixu, kde ho upustíte:

    Obrázek
  • Po aplikaci na Vás vypadne další log,vložte ho sem

Obrázek Tohle otestujte na http://www.virustotal.com/cs/
d:\windows\explorer.exe

(Soubor nehledejte, jenom vložíte tučně označenou cestu, v případě hlášky "Soubor již byl testován" dejte otestovat znovu. Výsledek analýzy sem v podobě odkazu vložte.)
Obrázek

PajaZ
Návštěvník
Návštěvník
Příspěvky: 139
Registrován: 03 bře 2010 19:56

Re: Problém s schvhost vytezuje PC na 100% kratce po startu.

#72 Příspěvek od PajaZ »

Takze vysledek toho virust total a jdu na ten combo fix. :-)
Antivirus Verze Poslední aktualizace Výsledek
a-squared 4.5.0.50 2010.04.07 -
AhnLab-V3 5.0.0.2 2010.04.06 -
AntiVir 7.10.6.39 2010.04.07 -
Antiy-AVL 2.0.3.7 2010.04.07 -
Authentium 5.2.0.5 2010.04.07 -
Avast 4.8.1351.0 2010.04.07 -
Avast5 5.0.332.0 2010.04.07 -
AVG 9.0.0.787 2010.04.07 -
BitDefender 7.2 2010.04.07 -
CAT-QuickHeal 10.00 2010.04.07 -
ClamAV 0.96.0.3-git 2010.04.07 -
Comodo 4528 2010.04.07 -
DrWeb 5.0.2.03300 2010.04.07 -
eSafe 7.0.17.0 2010.04.06 -
eTrust-Vet 35.2.7412 2010.04.07 -
F-Prot 4.5.1.85 2010.04.06 -
F-Secure 9.0.15370.0 2010.04.07 -
Fortinet 4.0.14.0 2010.04.07 -
GData 19 2010.04.07 -
Ikarus T3.1.1.80.0 2010.04.07 -
Jiangmin 13.0.900 2010.04.07 -
Kaspersky 7.0.0.125 2010.04.07 -
McAfee-GW-Edition 6.8.5 2010.04.07 -
Microsoft 1.5605 2010.04.07 -
NOD32 5006 2010.04.07 -
Norman 6.04.11 2010.04.07 -
nProtect 2009.1.8.0 2010.04.06 -
Panda 10.0.2.2 2010.04.06 -
PCTools 7.0.3.5 2010.04.07 -
Prevx 3.0 2010.04.07 -
Rising 22.42.02.03 2010.04.07 -
Sophos 4.52.0 2010.04.07 -
Sunbelt 6147 2010.04.07 -
Symantec 20091.2.0.41 2010.04.07 -
TheHacker 6.5.2.0.256 2010.04.07 -
TrendMicro 9.120.0.1004 2010.04.07 -
VBA32 3.12.12.4 2010.04.05 -
ViRobot 2010.4.7.2265 2010.04.07 -
VirusBuster 5.0.27.0 2010.04.07 -

Uživatelský avatar
Caroprd111
VIP
VIP
Příspěvky: 13492
Registrován: 22 bře 2009 20:48
Bydliště: Třebíč
Kontaktovat uživatele:

Re: Problém s schvhost vytezuje PC na 100% kratce po startu.

#73 Příspěvek od Caroprd111 »

OK :)
Obrázek

PajaZ
Návštěvník
Návštěvník
Příspěvky: 139
Registrován: 03 bře 2010 19:56

Re: Problém s schvhost vytezuje PC na 100% kratce po startu.

#74 Příspěvek od PajaZ »

Ted pri combofixu se mi objevi win hlaska že v aplikaci PEV.exe doslo k problemu a je treba ji zavrit, radeji to sem pisu aby jsme to meli komplet combofix hodne dlouho trva už sem u faze 50.

Uživatelský avatar
Caroprd111
VIP
VIP
Příspěvky: 13492
Registrován: 22 bře 2009 20:48
Bydliště: Třebíč
Kontaktovat uživatele:

Re: Problém s schvhost vytezuje PC na 100% kratce po startu.

#75 Příspěvek od Caroprd111 »

Ok, ještě cca. 10 minut vydržte.
Obrázek

Odpovědět