Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu logu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
SIMIR11
Návštěvník
Návštěvník
Příspěvky: 1
Registrován: 15 dub 2010 12:33

Prosím o kontrolu logu

#1 Příspěvek od SIMIR11 »

    Pří zapnutí počítač zamrzne,nereaguje na nic.Musím ho natvrdo vypnout,při následujícím zapnutí je už vše v pohodě.Nedělá to po každém zapnutí.


    ComboFix 10-04-14.01 - Dalibor 15.04.2010 12:30:42.1.2 - x86
    Microsoft® Windows Vista™ Business 6.0.6001.1.1250.420.1029.18.1974.1196 [GMT 2:00]
    Spuštěný z: c:\users\Dalibor\Downloads\ComboFix.exe
    * Vytvořen nový Bod Obnovení
    .

    ((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
    .

    c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
    c:\windows\system32\Thumbs.db
    Q:\Autorun.inf
    S:\Autorun.inf

    .
    ((((((((((((((((((((((((( Soubory vytvořené od 2010-03-15 do 2010-04-15 )))))))))))))))))))))))))))))))
    .

    2010-04-15 10:36 . 2010-04-15 10:38 -------- d-----w- c:\users\Dalibor\AppData\Local\temp
    2010-04-15 10:36 . 2010-04-15 10:36 -------- d-----w- c:\users\Default\AppData\Local\temp
    2010-04-15 10:25 . 2010-04-15 10:25 -------- d-----w- c:\program files\Trend Micro
    2010-04-15 07:11 . 2010-04-15 07:11 -------- d--h--we C:\A
    2010-04-13 19:15 . 2010-04-13 19:15 -------- d-----w- c:\users\Dalibor\AppData\Roaming\Malwarebytes
    2010-04-13 19:14 . 2010-04-13 19:14 -------- d-----w- c:\programdata\Malwarebytes
    2010-04-13 18:38 . 2010-04-13 18:38 -------- d-----w- c:\windows\SQL9_KB970892_ENU
    2010-04-13 18:32 . 2010-02-18 17:36 3600776 begin_of_the_skype_highlighting              36 3600776      end_of_the_skype_highlighting ----a-w- c:\windows\system32\ntkrnlpa.exe
    2010-04-13 18:32 . 2010-02-18 17:36 3548560 ----a-w- c:\windows\system32\ntoskrnl.exe
    2010-04-13 18:32 . 2010-02-23 11:32 212992 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
    2010-04-13 18:32 . 2010-02-23 11:32 78848 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
    2010-04-13 18:32 . 2010-02-23 11:32 105984 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
    2010-04-13 18:32 . 2010-03-05 14:01 420352 ----a-w- c:\windows\system32\vbscript.dll
    2010-04-13 18:32 . 2010-02-18 14:49 898952 ----a-w- c:\windows\system32\drivers\tcpip.sys
    2010-04-13 18:32 . 2010-02-18 14:11 190464 ----a-w- c:\windows\system32\iphlpsvc.dll
    2010-04-13 18:32 . 2010-02-18 11:52 25088 ----a-w- c:\windows\system32\drivers\tunnel.sys
    2010-04-13 18:32 . 2009-12-23 12:43 171520 ----a-w- c:\windows\system32\wintrust.dll
    2010-04-13 18:31 . 2010-01-15 00:04 98304 ----a-w- c:\windows\system32\cabview.dll
    2010-04-13 18:12 . 2010-02-24 08:16 181632 ------w- c:\windows\system32\MpSigStub.exe
    2010-04-11 19:41 . 2010-04-11 19:45 -------- d-----w- c:\program files\Vistumbler
    2010-04-11 09:36 . 2010-04-11 09:36 -------- d-----w- c:\users\Dalibor\AppData\Local\Apps
    2010-04-10 15:46 . 2010-04-10 15:46 -------- d-----w- c:\users\Dalibor\AppData\Roaming\InterVideo
    2010-04-10 11:48 . 2010-04-10 11:48 -------- d-----w- c:\windows\Sun
    2010-04-07 12:36 . 2010-04-07 12:36 -------- d-----w- c:\programdata\ATI
    2010-03-27 10:34 . 2010-03-28 14:34 -------- d-----w- c:\users\Dalibor\AppData\Roaming\skypePM
    2010-03-27 10:34 . 2010-03-27 10:34 56 ---ha-w- c:\windows\system32\ezsidmv.dat
    2010-03-27 10:33 . 2010-03-28 18:10 -------- d-----w- c:\users\Dalibor\AppData\Roaming\Skype
    2010-03-27 10:32 . 2010-03-27 10:32 -------- d-----w- c:\program files\Common Files\Skype
    2010-03-27 10:32 . 2010-03-27 10:33 -------- d-----r- c:\program files\Skype
    2010-03-27 10:32 . 2010-03-27 10:32 -------- d-----w- c:\programdata\Skype
    2010-03-22 13:52 . 2008-07-17 05:47 89088 ----a-w- c:\windows\system32\drivers\sdbus.sys
    2010-03-22 13:52 . 2008-09-24 23:49 31680 ----a-w- c:\windows\system32\drivers\psadd.sys
    2010-03-22 13:51 . 2010-03-22 13:51 -------- d-----w- c:\users\Dalibor\AppData\Roaming\CachedFiles
    2010-03-22 13:46 . 2008-08-08 07:51 597504 ----a-w- c:\windows\system32\schedsvc.dll
    2010-03-22 13:36 . 2010-03-22 13:36 -------- d-----w- c:\programdata\Intel
    2010-03-22 13:36 . 2010-03-22 13:36 -------- d-----w- c:\program files\Cisco
    2010-03-22 13:36 . 2010-03-22 13:36 -------- d-----w- c:\program files\Common Files\Intel
    2010-03-22 13:35 . 2010-03-22 13:35 -------- d-----w- c:\users\Dalibor\AppData\Roaming\Intel
    2010-03-22 13:34 . 2008-07-09 03:20 574976 ----a-w- c:\windows\system32\sysmain.dll
    2010-03-22 13:33 . 2008-07-29 03:31 128000 ----a-w- c:\windows\system32\dhcpcsvc6.dll
    2010-03-22 13:33 . 2008-07-29 03:31 10240 ----a-w- c:\windows\system32\dhcpcmonitor.dll
    2010-03-22 13:30 . 2009-04-29 11:39 560640 ----a-w- c:\windows\system32\drivers\hdaudbus.sys
    2010-03-22 13:29 . 2008-11-06 13:00 108296 ----a-w- c:\windows\system32\drivers\ataport.sys
    2010-03-22 13:29 . 2008-11-06 13:00 27400 ----a-w- c:\windows\system32\drivers\Dumpata.sys
    2010-03-22 13:29 . 2008-11-06 13:00 19720 ----a-w- c:\windows\system32\drivers\atapi.sys
    2010-03-22 13:28 . 2008-09-18 02:31 195584 ----a-w- c:\windows\system32\drivers\usbhub.sys
    2010-03-22 13:28 . 2008-09-18 02:31 225792 ----a-w- c:\windows\system32\drivers\usbport.sys
    2010-03-22 13:28 . 2008-09-18 02:31 39936 ----a-w- c:\windows\system32\drivers\usbehci.sys
    2010-03-22 13:28 . 2008-09-18 02:31 23552 ----a-w- c:\windows\system32\drivers\usbuhci.sys
    2010-03-22 13:28 . 2008-09-18 02:31 5888 ----a-w- c:\windows\system32\drivers\usbd.sys
    2010-03-22 13:28 . 2008-09-18 02:31 73216 ----a-w- c:\windows\system32\drivers\usbccgp.sys
    2010-03-22 13:26 . 2008-04-02 00:52 408064 ----a-w- c:\windows\system32\msinfo32.exe
    2010-03-22 13:23 . 2009-02-06 09:42 196608 ----a-w- c:\windows\system32\fsquirt.exe
    2010-03-22 13:23 . 2009-02-06 09:42 507392 ----a-w- c:\windows\system32\drivers\bthport.sys
    2010-03-22 13:23 . 2009-02-06 09:42 23040 ----a-w- c:\windows\system32\drivers\bthenum.sys
    2010-03-22 13:23 . 2009-02-06 09:42 30208 ----a-w- c:\windows\system32\drivers\BTHUSB.SYS
    2010-03-19 10:05 . 2009-03-08 11:33 18944 ----a-w- c:\windows\system32\corpol.dll
    2010-03-19 09:59 . 2009-08-14 16:29 104960 ----a-w- c:\windows\system32\netiohlp.dll
    2010-03-19 09:59 . 2009-08-14 14:16 9728 ----a-w- c:\windows\system32\TCPSVCS.EXE
    2010-03-19 09:59 . 2009-08-14 14:16 27136 ----a-w- c:\windows\system32\NETSTAT.EXE
    2010-03-19 09:59 . 2009-08-14 14:16 19968 ----a-w- c:\windows\system32\ARP.EXE
    2010-03-19 09:59 . 2009-08-14 14:16 8704 ----a-w- c:\windows\system32\HOSTNAME.EXE
    2010-03-19 09:59 . 2009-08-14 14:16 10240 ----a-w- c:\windows\system32\finger.exe
    2010-03-19 09:58 . 2009-08-14 14:16 17920 ----a-w- c:\windows\system32\ROUTE.EXE
    2010-03-19 09:58 . 2009-08-14 14:16 11264 ----a-w- c:\windows\system32\MRINFO.EXE
    2010-03-19 09:58 . 2009-08-14 16:29 17920 ----a-w- c:\windows\system32\netevent.dll
    2010-03-19 09:58 . 2009-09-10 17:30 213504 ----a-w- c:\windows\system32\msv1_0.dll
    2010-03-19 09:58 . 2009-10-19 14:27 156672 ----a-w- c:\windows\system32\t2embed.dll
    2010-03-19 09:58 . 2009-10-19 14:24 72704 ----a-w- c:\windows\system32\fontsub.dll
    2010-03-19 09:58 . 2009-06-15 15:20 10240 ----a-w- c:\windows\system32\dciman32.dll
    2010-03-19 09:58 . 2009-06-15 12:52 289792 ----a-w- c:\windows\system32\atmfd.dll
    2010-03-19 09:58 . 2009-04-23 12:43 784896 ----a-w- c:\windows\system32\rpcrt4.dll
    2010-03-19 09:58 . 2009-07-17 14:35 71680 ----a-w- c:\windows\system32\atl.dll
    2010-03-19 09:57 . 2009-07-14 13:00 313344 ----a-w- c:\windows\system32\wmpdxm.dll
    2010-03-19 09:57 . 2009-07-14 12:58 7680 ----a-w- c:\windows\system32\spwmp.dll
    2010-03-19 09:57 . 2009-07-14 12:59 4096 ----a-w- c:\windows\system32\dxmasf.dll
    2010-03-19 09:57 . 2009-07-14 10:59 8147456 ----a-w- c:\windows\system32\wmploc.DLL
    2010-03-19 09:57 . 2009-07-11 19:32 293376 ----a-w- c:\windows\system32\wlanmsm.dll
    2010-03-19 09:57 . 2009-07-11 19:29 127488 ----a-w- c:\windows\system32\L2SecHC.dll
    2010-03-19 09:57 . 2009-07-11 19:32 513024 ----a-w- c:\windows\system32\wlansvc.dll
    2010-03-19 09:57 . 2009-07-11 19:32 302592 ----a-w- c:\windows\system32\wlansec.dll
    2010-03-19 09:57 . 2009-08-14 13:46 2036224 ----a-w- c:\windows\system32\win32k.sys
    2010-03-19 09:57 . 2009-04-23 12:42 636928 ----a-w- c:\windows\system32\localspl.dll
    2010-03-19 09:54 . 2009-08-10 13:05 351232 ----a-w- c:\windows\system32\WSDApi.dll
    2010-03-19 09:54 . 2009-10-07 12:41 244224 ----a-w- c:\windows\system32\rastls.dll
    2010-03-19 09:54 . 2009-10-07 12:41 281600 ----a-w- c:\windows\system32\raschap.dll
    2010-03-17 12:39 . 2008-07-11 09:47 48192 ----a-w- c:\windows\system32\drivers\tvtumon.sys
    2010-03-16 15:23 . 2010-03-16 15:23 -------- d-----w- c:\program files\CCleaner

    .
    (((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2010-04-15 10:36 . 2008-08-16 12:59 12 ----a-w- c:\windows\bthservsdp.dat
    2010-04-15 10:17 . 2008-08-16 12:42 645592 ----a-w- c:\windows\system32\perfh005.dat
    2010-04-15 10:17 . 2008-08-16 12:42 132514 ----a-w- c:\windows\system32\perfc005.dat
    2010-04-13 18:41 . 2008-08-16 13:36 -------- d-----w- c:\programdata\Microsoft Help
    2010-04-13 18:39 . 2008-08-16 13:39 -------- d-----w- c:\program files\Microsoft SQL Server
    2010-04-07 12:32 . 2010-04-07 12:32 10134 ----a-r- c:\users\Dalibor\AppData\Roaming\Microsoft\Installer\{A02153E8-8DF8-42E6-B7BF-D88EEA33565F}\ARPPRODUCTICON.exe
    2010-04-07 12:31 . 2008-08-16 13:10 -------- d-----w- c:\program files\ATI Technologies
    2010-04-07 12:29 . 2010-04-07 12:29 10134 ----a-r- c:\users\Dalibor\AppData\Roaming\Microsoft\Installer\{E415FC0B-E5C5-CD0D-8C6F-955B5CEB4C6B}\ARPPRODUCTICON.exe
    2010-04-07 10:52 . 2008-08-16 13:22 -------- d-----w- c:\program files\Common Files\Java
    2010-04-07 10:52 . 2008-08-16 13:22 -------- d-----w- c:\program files\Java
    2010-04-03 14:28 . 2010-03-09 17:13 -------- d-----w- c:\program files\ICQ7.0
    2010-04-03 14:28 . 2010-03-09 17:13 -------- d-----w- c:\users\Dalibor\AppData\Roaming\ICQ
    2010-04-01 13:59 . 2010-04-01 13:59 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdMtpDr_01_00_00.Wdf
    2010-03-22 13:54 . 2008-08-16 13:16 -------- d-----w- c:\program files\Lenovo Fingerprint Software
    2010-03-22 13:53 . 2006-11-02 10:25 665600 ----a-w- c:\windows\inf\drvindex.dat
    2010-03-17 12:39 . 2008-08-16 13:18 -------- d-----w- c:\program files\Common Files\Lenovo
    2010-03-17 12:36 . 2010-03-03 16:50 -------- d-----w- c:\program files\Mozilla Thunderbird
    2010-03-15 08:28 . 2008-08-16 13:19 -------- d-----w- c:\programdata\Lenovo
    2010-03-15 08:28 . 2008-08-16 13:04 -------- d-----w- c:\program files\Lenovo
    2010-03-15 08:28 . 2010-03-15 08:28 -------- d-----w- c:\users\Dalibor\AppData\Roaming\Downloaded Installations
    2010-03-14 11:40 . 2010-03-14 11:40 -------- d-----w- c:\program files\MSXML 4.0
    2010-03-11 14:18 . 2010-03-11 13:55 -------- d-----w- c:\users\Dalibor\AppData\Roaming\LangSoft
    2010-03-11 14:18 . 2010-03-11 13:57 520192 ----a-w- c:\programdata\LangSoft\WebIE.dll
    2010-03-11 14:18 . 2010-03-11 13:57 299008 ----a-w- c:\programdata\LangSoft\TrnWord.dll
    2010-03-11 14:18 . 2010-03-11 13:57 356352 ----a-w- c:\programdata\LangSoft\TrnOutl.dll
    2010-03-11 14:18 . 2010-03-11 13:55 -------- d-----w- c:\programdata\LangSoft
    2010-03-11 14:15 . 2010-03-11 14:14 -------- d-----w- c:\program files\The KMPlayer
    2010-03-11 13:53 . 2010-03-11 13:53 -------- d-----w- c:\users\Dalibor\AppData\Roaming\Ashampoo
    2010-03-11 13:52 . 2010-03-11 13:52 -------- d-----w- c:\programdata\ashampoo
    2010-03-11 13:52 . 2010-03-11 13:52 -------- d-----w- c:\program files\Ashampoo
    2010-03-09 17:13 . 2010-03-09 17:13 -------- d-----w- c:\program files\ICQ6Toolbar
    2010-03-09 17:13 . 2010-03-09 17:13 -------- d-----w- c:\programdata\ICQ
    2010-03-09 17:13 . 2008-08-16 13:07 -------- d--h--w- c:\program files\InstallShield Installation Information
    2010-03-09 02:28 . 2010-03-03 15:45 411368 ----a-w- c:\windows\system32\deploytk.dll
    2010-03-07 10:30 . 2010-03-07 10:30 -------- d-----w- c:\users\Dalibor\AppData\Roaming\Foxit
    2010-03-07 10:30 . 2010-03-07 10:30 -------- d-----w- c:\program files\Foxit Software
    2010-03-03 17:12 . 2010-03-03 17:10 -------- d-----w- c:\program files\ESET
    2010-03-03 16:50 . 2010-03-03 16:50 0 ----a-w- c:\windows\nsreg.dat
    2010-03-03 16:50 . 2010-03-03 16:50 -------- d-----w- c:\users\Dalibor\AppData\Roaming\Thunderbird
    2010-03-03 16:32 . 2010-03-03 16:31 -------- d-----w- c:\program files\MozBackup
    2010-03-03 16:26 . 2010-03-03 16:26 -------- d-----w- c:\users\Dalibor\AppData\Roaming\GHISLER
    2010-03-03 15:39 . 2010-03-03 15:39 -------- d-----w- c:\users\Dalibor\AppData\Roaming\Lenovo
    2010-03-03 15:39 . 2010-03-03 15:39 -------- d-----w- c:\users\Dalibor\AppData\Roaming\ATI
    2010-03-03 15:39 . 2010-03-03 15:39 -------- d-----w- c:\program files\Windows Live Toolbar
    2010-03-03 15:39 . 2010-03-03 15:39 99864 ----a-w- c:\users\Dalibor\AppData\Local\GDIPFONTCACHEV1.DAT
    2010-03-03 15:39 . 2008-08-16 13:04 100 ----a-w- c:\windows\system32\drivers\Lenovo_2732_32G.MRK
    2010-02-20 23:39 . 2010-03-14 11:44 24064 ----a-w- c:\windows\system32\nshhttp.dll
    2010-02-20 23:37 . 2010-03-14 11:44 31232 ----a-w- c:\windows\system32\httpapi.dll
    2010-02-20 21:18 . 2010-03-14 11:44 411136 ----a-w- c:\windows\system32\drivers\http.sys
    2010-02-12 10:48 . 2010-03-14 11:40 293376 ----a-w- c:\windows\system32\browserchoice.exe
    2010-01-23 09:44 . 2010-03-14 11:44 2048 ----a-w- c:\windows\system32\tzres.dll
    2008-08-16 12:44 . 2008-08-16 12:42 8192 --sha-w- c:\windows\Users\Default\NTUSER.DAT
    .

    (((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    *Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
    REGEDIT4

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2008-01-21 1233920]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "FingerPrintSoftware"="c:\program files\Lenovo Fingerprint Software\fpapp.exe \s" [X]
    "Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2008-01-21 1008184]
    "TPFNF7"="c:\program files\Lenovo\NPDIRECT\TPFNF7SP.exe" [2008-07-30 60192]
    "TpShocks"="TpShocks.exe" [2008-06-07 181536]
    "TPHOTKEY"="c:\program files\Lenovo\HOTKEY\TPOSDSVC.exe" [2008-03-24 68464]
    "EZEJMNAP"="c:\progra~1\ThinkPad\UTILIT~1\EzEjMnAp.Exe" [2008-06-04 242976]
    "TVT Scheduler Proxy"="c:\program files\Common Files\Lenovo\Scheduler\scheduler_proxy.exe" [2008-05-24 487424]
    "LPManager"="c:\progra~1\THINKV~1\PrdCtr\LPMGR.exe" [2008-06-08 165208]
    "LPMailChecker"="c:\progra~1\THINKV~1\PrdCtr\LPMLCHK.exe" [2008-06-08 124248]
    "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-02-18 248040]
    "PWMTRV"="c:\progra~1\ThinkPad\UTILIT~1\PWMTR32V.DLL" [2008-07-28 632096]
    "BLOG"="c:\progra~1\ThinkPad\UTILIT~1\BTVLogEx.DLL" [2008-07-28 214576]
    "ACTray"="c:\program files\ThinkPad\ConnectUtilities\ACTray.exe" [2008-07-30 431392]
    "ACWlIcon"="c:\program files\ThinkPad\ConnectUtilities\ACWlIcon.exe" [2008-07-30 148768]
    "cssauth"="c:\program files\Lenovo\Client Security Solution\cssauth.exe" [2008-06-25 3077432]
    "DDNIUser"="c:\program files\DDNI\SBITS\DDNIUSER.EXE" [2007-09-28 227816]
    "egui"="c:\program files\ESET\ESET NOD32 Antivirus\egui.exe" [2009-11-16 2054360]
    "Message Center Plus"="c:\program files\LENOVO\Message Center Plus\MCPLaunch.exe" [2009-05-27 49976]
    "StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2008-08-29 61440]

    c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
    Digital Line Detect.lnk - c:\program files\Digital Line Detect\DLG.exe [2008-8-16 50688]

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
    "EnableLUA"= 0 (0x0)
    "EnableUIADesktopToggle"= 0 (0x0)
    "DisableCAD"= 1 (0x1)

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
    @="Service"

    R1 tvtumon;tvtumon;c:\windows\system32\DRIVERS\tvtumon.sys [2008-07-11 48192]
    R2 TVT_UpdateMonitor;TVT Windows Update Monitor;c:\program files\Lenovo\Rescue and Recovery\UpdateMonitor.exe [2008-10-09 360448]
    R3 ADMonitor;AD Monitor;c:\windows\system32\ADMonitor.exe [2009-03-19 106496]
    R3 ATSwpWDF;AuthenTec TruePrint USB WDF Driver;c:\windows\system32\Drivers\ATSwpWDF.sys [2009-03-19 482176]
    R3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys [2008-01-29 29736]
    S0 TPDIGIMN;TPDIGIMN;c:\windows\System32\DRIVERS\ApsHM86.sys [2008-05-14 19496]
    S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [2009-11-16 108792]
    S1 lenovo.smi;Lenovo System Interface Driver;c:\windows\system32\DRIVERS\smiif32.sys [2008-05-12 13480]
    S2 ApRunSvc;Alps Application Launcher Service;c:\program files\Apoint2K\ApRunSvc.exe [2007-07-23 36864]
    S2 ATService;AuthenTec Fingerprint Service;c:\windows\system32\AtService.exe [2009-03-19 1680632]
    S2 DDNIOEMService;DDNIOEMService;c:\program files\DDNI\SBITS\DDNIOEMService.exe [2007-09-28 162280]
    S2 dtsvc;Data Transfer Service;c:\windows\system32\DTS.exe [2009-03-19 98304]
    S2 ekrn;ESET Service;c:\program files\ESET\ESET NOD32 Antivirus\ekrn.exe [2009-11-16 735960]
    S2 epfwwfpr;epfwwfpr;c:\windows\system32\DRIVERS\epfwwfpr.sys [2009-12-18 95896]
    S2 ICQ Service;ICQ Service;c:\program files\ICQ6Toolbar\ICQ Service.exe [2010-01-03 246520]
    S2 Power Manager DBC Service;Power Manager DBC Service;c:\program files\ThinkPad\Utilities\PWMDBSVC.EXE [2008-07-28 66848]
    S2 TPHKSVC;On Screen Display;c:\program files\LENOVO\HOTKEY\TPHKSVC.exe [2008-03-27 58736]
    S2 TVT Backup Protection Service;TVT Backup Protection Service;c:\program files\Lenovo\Rescue and Recovery\rrpservice.exe [2008-05-24 520192]
    S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\b57nd60x.sys [2007-11-29 181760]
    S3 NETw5v32;Ovladač adaptéru Intel(R) Wireless WiFi Link pro systém Windows Vista 32 Bit;c:\windows\system32\DRIVERS\NETw5v32.sys [2009-09-15 6000640]
    S3 TVTI2C;Lenovo SM bus driver;c:\windows\system32\DRIVERS\Tvti2c.sys [2008-02-22 37312]


    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
    LocalServiceNoNetwork REG_MULTI_SZ PLA DPS BFE mpssvc
    bthsvcs REG_MULTI_SZ BthServ
    .
    Obsah adresáře 'Naplánované úlohy'

    2010-04-15 c:\windows\Tasks\Check Updates for Windows Live Toolbar.job
    - c:\program files\Windows Live Toolbar\MSNTBUP.EXE [2007-02-12 14:54]
    .
    .
    ------- Doplňkový sken -------
    .
    uStart Page = hxxp://start.icq.com/
    uSearchURL,(Default) = hxxp://g.msn.co.uk/0SEENGB/SAOS01?FORM=TOOLBR
    IE: &Windows Live Search - c:\program files\Windows Live Toolbar\msntb.dll/search.htm
    IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~1\Office12\EXCEL.EXE/3000
    IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~1\Office12\EXCEL.EXE/3000
    IE: {{88EB38EF-4D2C-436D-ABD3-56B232674062} - c:\program files\ICQ7.0\ICQ.exe
    IE: {{7E6A20FB-153F-402c-A84B-1A64E1955D3D} - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - c:\programdata\LangSoft\WebIE.dll
    IE: {{CC963627-B1DC-40E0-B52A-CF21EE748449} - {CC963627-B1DC-40E0-B52A-CF21EE748449} - c:\programdata\LangSoft\WebIE.dll
    IE: {{CC963627-B1DC-40E0-B52A-CF21EE748450} - {CC963627-B1DC-40E0-B52A-CF21EE748450} - c:\programdata\LangSoft\WebIE.dll
    IE: {{CC963627-B1DC-40E0-B52A-CF21EE748451} - {CC963627-B1DC-40E0-B52A-CF21EE748451} - c:\programdata\LangSoft\WebIE.dll
    IE: {{CC963627-B1DC-40E0-B52A-CF21EE748452} - {CC963627-B1DC-40E0-B52A-CF21EE748452} - c:\programdata\LangSoft\WebIE.dll
    FF - ProfilePath - c:\users\Dalibor\AppData\Roaming\Mozilla\Firefox\Profiles\pffft25t.default\
    FF - prefs.js: browser.search.selectedEngine - Google
    FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz
    FF - prefs.js: keyword.URL - hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=2.0.0.1&q=
    FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
    FF - plugin: c:\program files\Mozilla Firefox\plugins\npFoxitReaderPlugin.dll
    FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\

    ---- NASTAVENÍ FIREFOXU ----
    FF - user.js: network.proxy.type - 0
    FF - user.js: network.proxy.http -
    user_pref(network.proxy.http_port,);
    FF - user.js: network.proxy.no_proxies_on -
    c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.debug", false);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref("html5.enable", false);
    c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
    c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
    c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
    c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
    c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
    c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
    c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
    c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
    .
    - - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -

    HKCU-Run-OEXPRESS - (no file)



    **************************************************************************
    skenování skrytých procesů ...

    skenování skrytých položek 'Po spuštění' ...

    skenování skrytých souborů ...

    sken byl úspešně dokončen
    skryté soubory:

    **************************************************************************
    .
    --------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
    @Denied: (A) (Users)
    @Denied: (A) (Everyone)
    @Allowed: (B 1 2 3 4 5) (S-1-5-20)
    "BlindDial"=dword:00000000
    .
    --------------------- Knihovny navázané na běžící procesy ---------------------

    - - - - - - - > 'Explorer.exe'(4116)
    c:\windows\system32\btncopy.dll
    .
    ------------------------ Jiné spuštené procesy ------------------------
    .
    c:\windows\system32\ibmpmsvc.exe
    c:\windows\system32\Ati2evxx.exe
    c:\windows\system32\Ati2evxx.exe
    c:\windows\system32\WLANExt.exe
    c:\program files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe
    c:\program files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe
    c:\program files\ThinkPad\Bluetooth Software\bin\btwdins.exe
    c:\program files\Intel\WiFi\bin\EvtEng.exe
    c:\program files\Common Files\InterVideo\RegMgr\iviRegMgr.exe
    c:\program files\Common Files\Intel\WirelessCommon\RegSrvc.exe
    c:\program files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
    c:\program files\Microsoft SQL Server\90\Shared\sqlwriter.exe
    c:\windows\System32\TPHDEXLG.exe
    c:\program files\Lenovo\Client Security Solution\tvttcsd.exe
    c:\program files\Lenovo\Rescue and Recovery\rrservice.exe
    c:\program files\Common Files\Lenovo\Scheduler\tvtsched.exe
    c:\windows\system32\DRIVERS\xaudio.exe
    c:\program files\ThinkPad\ConnectUtilities\AcSvc.exe
    c:\program files\Lenovo\System Update\SUService.exe
    c:\windows\system32\wbem\unsecapp.exe
    c:\program files\Apoint2K\Apoint.exe
    c:\windows\servicing\TrustedInstaller.exe
    c:\program files\Apoint2K\ApMsgFwd.exe
    c:\program files\Apoint2K\Apntex.exe
    c:\windows\system32\conime.exe
    c:\program files\ThinkPad\ConnectUtilities\SvcGuiHlpr.exe
    c:\windows\System32\TpShocks.exe
    c:\program files\ThinkPad\Utilities\EZEJMNAP.EXE
    c:\program files\ThinkVantage\PrdCtr\LPMGR.EXE
    c:\program files\Lenovo\HOTKEY\TPONSCR.exe
    c:\program files\ThinkVantage\PrdCtr\LPMLCHK.EXE
    c:\program files\Lenovo\Zoom\TpScrex.exe
    c:\windows\System32\rundll32.exe
    c:\program files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
    c:\program files\Windows Media Player\wmpnscfg.exe
    c:\program files\Windows Media Player\wmpnetwk.exe
    c:\program files\Common Files\Lenovo\tvt_reg_monitor_svc.exe
    c:\progra~1\ThinkPad\UTILIT~1\PWMUIAux.exe
    c:\\?\c:\windows\system32\wbem\WMIADAP.EXE
    .
    **************************************************************************
    .
    Celkový čas: 2010-04-15 12:44:14 - počítač byl restartován
    ComboFix-quarantined-files.txt 2010-04-15 10:44

    Před spuštěním: Volných bajtů: 95 212 974 080
    Po spuštění: Volných bajtů: 95 232 126 976

    - - End Of File - - 4F779EC14A9E292C3200D52DD5D20833





    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 12:28:17, on 15.4.2010
    Platform: Windows Vista SP1 (WinNT 6.00.1905)
    MSIE: Internet Explorer v8.00 (8.00.6001.18882)
    Boot mode: Normal

    Running processes:
    C:\Windows\system32\taskeng.exe
    C:\Windows\system32\Dwm.exe
    C:\Windows\Explorer.EXE
    C:\Program Files\Lenovo\NPDIRECT\tpfnf7sp.exe
    C:\Windows\System32\TpShocks.exe
    C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe
    C:\Program Files\ThinkPad\Utilities\EZEJMNAP.EXE
    C:\Program Files\Common Files\Lenovo\Scheduler\scheduler_proxy.exe
    C:\Program Files\ThinkVantage\PrdCtr\LPMGR.EXE
    C:\Program Files\ThinkVantage\PrdCtr\LPMLCHK.EXE
    C:\Program Files\Common Files\Java\Java Update\jusched.exe
    C:\Windows\System32\rundll32.exe
    C:\Program Files\ThinkPad\ConnectUtilities\ACTray.exe
    C:\Program Files\Lenovo\HOTKEY\TPONSCR.exe
    C:\Program Files\ThinkPad\ConnectUtilities\ACWLIcon.exe
    C:\Program Files\Lenovo\Client Security Solution\cssauth.exe
    C:\Program Files\Lenovo\Zoom\TpScrex.exe
    C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
    C:\Program Files\Lenovo\Message Center Plus\MCPLaunch.exe
    C:\Program Files\Windows Sidebar\sidebar.exe
    C:\Program Files\ThinkPad\Bluetooth Software\BTTray.exe
    C:\Program Files\Digital Line Detect\DLG.exe
    C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
    C:\Program Files\Windows Sidebar\sidebar.exe
    C:\Program Files\Windows Media Player\wmpnscfg.exe
    C:\Program Files\ThinkPad\ConnectUtilities\ACGadgetWrapper.exe
    C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
    C:\PROGRA~1\ThinkPad\UTILIT~1\PWMUIAux.exe
    C:\Program Files\Skype\Toolbars\Shared\SkypeNames2.exe
    C:\totalcmd\TOTALCMD.EXE
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo.live.com
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.co.uk/0SEENGB/SAOS01?FORM=TOOLBR
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.co.uk/0SEENGB/SAOS01?FORM=TOOLBR
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.icq.com/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.co.uk/0SEENGB/SAOS01?FORM=TOOLBR
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
    R3 - URLSearchHook: (no name) - - (no file)
    O1 - Hosts: ::1 localhost
    O2 - BHO: WebTransBHO Class - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - C:\ProgramData\LangSoft\WebIE.dll
    O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
    O2 - BHO: Password Manager Browser Helper Object - {BF468356-BB7E-42D7-9F15-4F3B9BCFCED2} - C:\Program Files\Lenovo\Client Security Solution\tvtpwm_ie_com.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
    O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
    O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
    O3 - Toolbar: WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\ProgramData\LangSoft\WebIE.dll
    O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
    O4 - HKLM\..\Run: [TPFNF7] C:\Program Files\Lenovo\NPDIRECT\TPFNF7SP.exe /r
    O4 - HKLM\..\Run: [TpShocks] TpShocks.exe
    O4 - HKLM\..\Run: [TPHOTKEY] C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe
    O4 - HKLM\..\Run: [EZEJMNAP] C:\PROGRA~1\ThinkPad\UTILIT~1\EzEjMnAp.Exe
    O4 - HKLM\..\Run: [TVT Scheduler Proxy] C:\Program Files\Common Files\Lenovo\Scheduler\scheduler_proxy.exe
    O4 - HKLM\..\Run: [LPManager] C:\PROGRA~1\THINKV~1\PrdCtr\LPMGR.exe
    O4 - HKLM\..\Run: [LPMailChecker] C:\PROGRA~1\THINKV~1\PrdCtr\LPMLCHK.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
    O4 - HKLM\..\Run: [PWMTRV] rundll32 C:\PROGRA~1\ThinkPad\UTILIT~1\PWMTR32V.DLL,PwrMgrBkGndMonitor
    O4 - HKLM\..\Run: [BLOG] rundll32 C:\PROGRA~1\ThinkPad\UTILIT~1\BTVLogEx.DLL,StartBattLog
    O4 - HKLM\..\Run: [ACTray] C:\Program Files\ThinkPad\ConnectUtilities\ACTray.exe
    O4 - HKLM\..\Run: [ACWlIcon] C:\Program Files\ThinkPad\ConnectUtilities\ACWlIcon.exe
    O4 - HKLM\..\Run: [cssauth] "C:\Program Files\Lenovo\Client Security Solution\cssauth.exe" silent
    O4 - HKLM\..\Run: [DDNIUser] C:\Program Files\DDNI\SBITS\DDNIUSER.EXE
    O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
    O4 - HKLM\..\Run: [Message Center Plus] C:\Program Files\LENOVO\Message Center Plus\MCPLaunch.exe /start
    O4 - HKLM\..\Run: [FingerPrintSoftware] "C:\Program Files\Lenovo Fingerprint Software\fpapp.exe" \s
    O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
    O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
    O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
    O4 - Global Startup: Bluetooth.lnk = ?
    O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe
    O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
    O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
    O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\ProgramData\LangSoft\WebIE.dll
    O9 - Extra button: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files\ICQ7.0\ICQ.exe
    O9 - Extra 'Tools' menuitem: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files\ICQ7.0\ICQ.exe
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
    O9 - Extra button: (no name) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - (no file)
    O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\ProgramData\LangSoft\WebIE.dll
    O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\ProgramData\LangSoft\WebIE.dll
    O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\ProgramData\LangSoft\WebIE.dll
    O9 - Extra 'Tools' menuitem: &Slovník - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\ProgramData\LangSoft\WebIE.dll
    O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\ProgramData\LangSoft\WebIE.dll
    O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\ProgramData\LangSoft\WebIE.dll
    O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\ProgramData\LangSoft\WebIE.dll
    O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\ProgramData\LangSoft\WebIE.dll
    O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\ThinkPad\Bluetooth Software\btsendto_ie.htm
    O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\ThinkPad\Bluetooth Software\btsendto_ie.htm
    O9 - Extra button: (no name) - {F4F55DC8-0B69-4DFE-BA94-CB677B88B2A3} - C:\Program Files\Lenovo\Client Security Solution\tvtpwm_ie_com.dll
    O9 - Extra 'Tools' menuitem: Lenovo Password Manager... - {F4F55DC8-0B69-4DFE-BA94-CB677B88B2A3} - C:\Program Files\Lenovo\Client Security Solution\tvtpwm_ie_com.dll
    O13 - Gopher Prefix:
    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
    O23 - Service: Ac Profile Manager Service (AcPrfMgrSvc) - Lenovo - C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe
    O23 - Service: Access Connections Main Service (AcSvc) - Lenovo - C:\Program Files\ThinkPad\ConnectUtilities\AcSvc.exe
    O23 - Service: AD Monitor (ADMonitor) - Unknown owner - C:\Windows\system32\ADMonitor.exe
    O23 - Service: Alps Application Launcher Service (ApRunSvc) - Unknown owner - C:\Program Files\Apoint2K\ApRunSvc.exe
    O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
    O23 - Service: AuthenTec Fingerprint Service (ATService) - AuthenTec, Inc. - C:\Windows\system32\AtService.exe
    O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\ThinkPad\Bluetooth Software\bin\btwdins.exe
    O23 - Service: DDNIOEMService - Digital Delivery Networks, Inc. - C:\Program Files\DDNI\SBITS\DDNIOEMService.exe
    O23 - Service: Data Transfer Service (dtsvc) - Unknown owner - C:\Windows\system32\DTS.exe
    O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
    O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
    O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
    O23 - Service: ThinkPad PM Service (IBMPMSVC) - Lenovo - C:\Windows\system32\ibmpmsvc.exe
    O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
    O23 - Service: IviRegMgr - InterVideo - C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe
    O23 - Service: Power Manager DBC Service - Lenovo - C:\Program Files\ThinkPad\Utilities\PWMDBSVC.EXE
    O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
    O23 - Service: System Update (SUService) - Lenovo Group Limited - C:\Program Files\Lenovo\System Update\SUService.exe
    O23 - Service: ThinkVantage Registry Monitor Service - Lenovo Group Limited - c:\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe
    O23 - Service: ThinkPad HDD APS Logging Service (TPHDEXLGSVC) - Lenovo. - C:\Windows\System32\TPHDEXLG.exe
    O23 - Service: On Screen Display (TPHKSVC) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe
    O23 - Service: TSS Core Service (TSSCoreService) - Lenovo - C:\Program Files\Lenovo\Client Security Solution\tvttcsd.exe
    O23 - Service: TVT Backup Protection Service - Unknown owner - C:\Program Files\Lenovo\Rescue and Recovery\rrpservice.exe
    O23 - Service: TVT Backup Service - Lenovo Group Limited - C:\Program Files\Lenovo\Rescue and Recovery\rrservice.exe
    O23 - Service: TVT Scheduler - Lenovo Group Limited - c:\Program Files\Common Files\Lenovo\Scheduler\tvtsched.exe
    O23 - Service: TVT Windows Update Monitor (TVT_UpdateMonitor) - Lenovo Group Limited - C:\Program Files\Lenovo\Rescue and Recovery\UpdateMonitor.exe
    O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

    --
    End of file - 12018 bytes

      Uživatelský avatar
      Rudy
      Site Admin
      Site Admin
      Příspěvky: 119405
      Registrován: 30 říj 2003 13:42
      Bydliště: Plzeň
      Kontaktovat uživatele:

      Re: Prosím o kontrolu logu

      #2 Příspěvek od Rudy »

      CF smazal 4 položky. Zbytek logů vypadá čistý. Zkuste obnovu systému k dastu, kdy korektně fungoval.
      Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

      Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

      Navštivte: Obrázek

      e-mail: rudy(zavináč)forum.viry.cz

      Varování:
      Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


      Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

      Odpovědět