Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

spomalnie PC

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Uživatelský avatar
Zionello
Návštěvník
Návštěvník
Příspěvky: 85
Registrován: 09 úno 2011 20:46

spomalnie PC

#1 Příspěvek od Zionello »

Ahoj, velmi sa nevyznam do veci okolo virusov a takychto veci ale kamarat Devilsvkkalnet ma sem odporucil, precital som si nejake temy ohladne spomalenia PC atd, stiahol som RSIT spravil log. Mám nový notebook asus, problem je taky že sa my pomaly zapina a v hre mam sekania a strasne my skace fps(hra je World of warcraft) hravam to na 1600x900 fair/good quality. Mával som fps stále okolo 60 v rusnych lokaciach a 90 mimo miest s vela hracmi, odkedy som si do notebooku daval od ucitelky uciva a tak zo skoly programi ako alltenfingers my avast zacal hadzat vyrusi v zlozkach prvy krat ked som dal skontrolovat ntb my vyhodilo zhruba 500 najdenych podozrivych suborov, vela červou a trojanov len zopar, +cookie, to vsetko avast premazal, vela ludi my vravelo ze to nieje dobry antyvirus tak som si stiahol pandu a superantyspivare, ktore my nasli dalsie infikovane subory. Chcel by som sa tychto problemov zbavit a neprísť tak o žiadne dôležité subory tykajuce sa školy atď. NTB som skusil prečistit troška vymazat zbytočne programy a veci ktore nepotrebujem. avšak nepomohlo to. prosim o pomoc, tento isty problem mam na pevnom PC. :hmm: ..prepačte za gramatiku :D

Tu je log z RSIT:

Logfile of random's system information tool 1.08 (written by random/random)
Run by KocerhaN at 2011-02-09 21:40:32
Microsoft Windows 7 Ultimate
System drive C: has 378 GB (79%) free of 477 GB
Total RAM: 3053 MB (65% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:40:51, on 9. 2. 2011
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\ASUS\Wireless Console 3\wcourier.exe
C:\Program Files\ASUS\ASUS Live Update\ALU.exe
C:\Program Files\ASUS\ControlDeck\ControlDeckStartUp.exe
C:\Program Files\ASUS\Splendid\ACMON.exe
C:\Program Files\ASUS\Net4Switch\Net4Switch.exe
C:\Program Files\P4G\BatteryLife.exe
C:\Program Files\ASUS\SmartLogon\sensorsrv.exe
C:\Program Files\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
C:\Program Files\IDT\WDM\sttray.exe
C:\Program Files\Elantech\ETDCtrl.exe
C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Panda Security\Panda Cloud Antivirus\PSUNMain.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files\Elantech\ETDCtrlHelper.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files\ASUS\ASUS Data Security Manager\ADSMTray.exe
C:\Windows\AsScrPro.exe
C:\Windows\System32\ACEngSvr.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Users\KocerhaN\Desktop\RSIT.exe
C:\Program Files\trend micro\KocerhaN.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GR469A~1.DLL
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdm2.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray.exe
O4 - HKLM\..\Run: [ETDWare] %ProgramFiles%\Elantech\ETDCtrl.exe
O4 - HKLM\..\Run: [AmIcoSinglun] C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe
O4 - HKLM\..\Run: [UfSeAgnt.exe] "C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [AdobeCS4ServiceManager] "C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [PSUNMain] "C:\Program Files\Panda Security\Panda Cloud Antivirus\PSUNMain.exe" /Traybar
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: FancyStart daemon.lnk = ?
O8 - Extra context menu item: Download all with Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Download selected with Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Download video with Free Download Manager - file://C:\Program Files\Free Download Manager\dlfvideo.htm
O8 - Extra context menu item: Download with Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GRA32A~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: ADSM Service (ADSMService) - ASUSTek Computer Inc. - C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe
O23 - Service: AFBAgent - ASUSTeK Computer Inc. - C:\Windows\system32\FBAgent.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Panda Cloud Antivirus Service (NanoServiceMain) - Panda Security, S.L. - C:\Program Files\Panda Security\Panda Cloud Antivirus\PSANHost.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Trend Micro Central Control Component (SfCtlCom) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe
O23 - Service: spmgr - Unknown owner - C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_63b9aeb0b2db5e8b\STacSV.exe
O23 - Service: Trend Micro Unauthorized Change Prevention Service (TMBMServer) - Trend Micro Inc. - C:\Program Files\Trend Micro\BM\TMBMSRV.exe
O23 - Service: Trend Micro Proxy Service (TmProxy) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\TmProxy.exe
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe

--
End of file - 9610 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office12\GR469A~1.DLL [2006-10-26 2210608]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC59E0F9-7E43-44FA-9FAA-8377850BF205}]
FDMIECookiesBHO Class - C:\Program Files\Free Download Manager\iefdm2.dll [2008-12-30 98304]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll [2010-03-25 968000]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-01-22 98304]
"ATKOSD2"=C:\Program Files\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2009-10-26 6998656]
"ATKMEDIA"=C:\Program Files\ASUS\ATK Package\ATK Media\DMedia.exe [2009-08-19 170624]
"HControlUser"=C:\Program Files\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray.exe [2009-11-27 495715]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2010-01-13 509320]
"AmIcoSinglun"=C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe [2009-09-01 233472]
"UfSeAgnt.exe"=C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe [2009-09-29 1024368]
"NeroFilterCheck"=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2007-03-01 153136]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-26 31016]
"AdobeAAMUpdater-1.0"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
"AdobeCS5ServiceManager"=C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-07-22 402432]
"AdobeCS4ServiceManager"=C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [2008-08-14 611712]
"WinampAgent"=C:\Program Files\Winamp\winampa.exe [2010-12-09 74752]
"PSUNMain"=C:\Program Files\Panda Security\Panda Cloud Antivirus\PSUNMain.exe [2010-12-16 423232]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [2007-06-27 152872]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2010-04-01 357696]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-07-14 1173504]
"SUPERAntiSpyware"=C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2011-01-13 2424560]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-12-03 35184]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ADSMTray]
C:\Program Files\ASUS\ASUS Data Security Manager\ADSMTray.exe [2009-06-24 272952]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\AsScrPro.exe [2010-09-10 3054136]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
FancyStart daemon.lnk - C:\Windows\Installer\{2B81872B-A054-48DA-BE3B-FA5C164C303A}\_C4A2FC3E3722966204FDD8.exe

C:\Users\KocerhaN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office12\GR469A~1.DLL [2006-10-26 2210608]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
C:\Program Files\ASUS\ASUS Data Security Manager\ASPWDFLT

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - "C:\Program Files\Adobe\Adobe Dreamweaver CS4\Dreamweaver.exe","%1"

======List of files/folders created in the last 1 months======

2011-02-09 21:40:32 ----D---- C:\rsit
2011-02-07 02:38:16 ----D---- C:\ProgramData\Blizzard Entertainment
2011-02-07 00:36:55 ----D---- C:\Program Files\World of Warcraft
2011-02-06 23:58:28 ----D---- C:\Users\KocerhaN\AppData\Roaming\SUPERAntiSpyware.com
2011-02-06 23:58:28 ----D---- C:\ProgramData\SUPERAntiSpyware.com
2011-02-06 23:58:14 ----D---- C:\Program Files\SUPERAntiSpyware
2011-01-26 18:53:33 ----D---- C:\Users\KocerhaN\AppData\Roaming\Hamachi
2011-01-26 18:53:20 ----A---- C:\Windows\system32\drivers\hamachi.sys
2011-01-25 09:58:33 ----D---- C:\Users\KocerhaN\AppData\Roaming\Panda Security
2011-01-25 09:53:24 ----D---- C:\Users\KocerhaN\AppData\Roaming\SurfSecret Privacy Suite
2011-01-25 09:53:02 ----A---- C:\Windows\system32\temp.txt
2011-01-25 09:52:37 ----D---- C:\ProgramData\Panda Security
2011-01-25 09:52:37 ----D---- C:\Program Files\Panda Security
2011-01-15 00:58:15 ----D---- C:\Program Files\ReflexiveArcade
2011-01-12 20:42:22 ----D---- C:\Program Files\Winamp Detect
2011-01-12 20:42:04 ----D---- C:\Program Files\Common Files\PX Storage Engine
2011-01-12 20:42:01 ----D---- C:\Users\KocerhaN\AppData\Roaming\Winamp
2011-01-12 20:42:01 ----D---- C:\Program Files\Winamp

======List of files/folders modified in the last 1 months======

2011-02-09 21:40:51 ----D---- C:\Program Files\Trend Micro
2011-02-09 21:28:48 ----D---- C:\Users\KocerhaN\AppData\Roaming\Skype
2011-02-09 20:42:05 ----D---- C:\Windows\Temp
2011-02-09 20:23:51 ----D---- C:\Users\KocerhaN\AppData\Roaming\skypePM
2011-02-09 20:23:23 ----D---- C:\Windows\system32\Tasks
2011-02-09 20:21:47 ----A---- C:\Windows\system32\log.txt
2011-02-09 08:59:49 ----D---- C:\Windows\system32\drivers
2011-02-07 02:38:16 ----HD---- C:\ProgramData
2011-02-07 02:34:26 ----RD---- C:\Program Files
2011-02-07 02:34:19 ----D---- C:\Program Files\Internet Explorer
2011-02-07 00:09:49 ----A---- C:\Windows\system32\AutoRunFilter.ini
2011-02-06 23:46:05 ----D---- C:\Windows\System32
2011-02-06 23:46:05 ----D---- C:\Program Files\Common Files\Blizzard Entertainment
2011-02-06 23:29:01 ----HD---- C:\Program Files\InstallShield Installation Information
2011-02-06 23:28:56 ----SHD---- C:\System Volume Information
2011-02-06 23:26:23 ----D---- C:\Program Files\Electronic Arts
2011-02-06 23:21:01 ----D---- C:\Windows\Tasks
2011-02-06 23:16:55 ----SHD---- C:\Windows\Installer
2011-02-06 23:16:35 ----D---- C:\ProgramData\Macromedia
2011-02-06 23:16:21 ----D---- C:\Program Files\Common Files
2011-02-06 23:13:49 ----D---- C:\Program Files\Macromedia
2011-02-06 23:12:25 ----D---- C:\Program Files\FlatOut2
2011-02-06 23:11:09 ----D---- C:\Program Files\Valve
2011-02-06 23:10:38 ----D---- C:\Windows\system32\catroot2
2011-02-06 13:04:44 ----D---- C:\Windows
2011-02-02 10:11:28 ----RSD---- C:\Windows\assembly
2011-02-01 13:17:40 ----D---- C:\Program Files\TmUnitedForever
2011-01-28 10:20:20 ----D---- C:\Windows\system32\GroupPolicy
2011-01-27 20:23:42 ----D---- C:\Program Files\EA GAMES
2011-01-25 22:15:22 ----A---- C:\AUTOEXEC.BAT
2011-01-25 17:44:41 ----A---- C:\Windows\system32\ServiceFilter.ini
2011-01-25 09:39:13 ----D---- C:\Program Files\Mozilla Firefox
2011-01-25 09:28:47 ----D---- C:\ProgramData\Alwil Software
2011-01-20 19:06:01 ----D---- C:\Windows\inf
2011-01-20 19:06:01 ----A---- C:\Windows\system32\PerfStringBackup.INI
2011-01-17 22:07:30 ----D---- C:\Windows\system32\NDF
2011-01-15 18:33:47 ----D---- C:\Windows\system32\config
2011-01-14 17:41:30 ----RSD---- C:\Windows\Fonts
2011-01-13 09:01:45 ----D---- C:\Program Files\Adobe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 AsDsm;AsDsm; C:\Windows\system32\drivers\AsDsm.sys [2010-09-10 30264]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-08-06 330264]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 173648]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-09-10 691696]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 387584]
R1 PSINKNC;PSINKNC; C:\Windows\system32\DRIVERS\psinknc.sys [2010-12-16 126536]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [2010-02-17 12872]
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [2010-05-10 67656]
R1 tmtdi;Trend Micro TDI Driver; C:\Windows\system32\DRIVERS\tmtdi.sys [2009-09-29 89872]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 ASMMAP;ASMMAP; \??\C:\Program Files\ASUS\ATK Package\ATKGFNEX\ASMMAP.sys [2009-07-02 13880]
R2 ghaio;ghaio; \??\C:\Program Files\ASUS\NB Probe\SPM\ghaio.sys [2007-08-03 20936]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2010-10-01 25416]
R2 PSINAflt;PSINAflt; C:\Windows\system32\DRIVERS\PSINAflt.sys [2010-12-16 141384]
R2 PSINFile;PSINFile; C:\Windows\system32\DRIVERS\PSINFile.sys [2010-12-16 99400]
R2 PSINProc;PSINProc; C:\Windows\system32\DRIVERS\PSINProc.sys [2010-12-16 111176]
R2 PSINProt;PSINProt; C:\Windows\system32\DRIVERS\PSINProt.sys [2010-12-16 113736]
R2 tmcomm;tmcomm; C:\Windows\system32\DRIVERS\tmcomm.sys [2009-09-29 158224]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atipmdag.sys [2010-01-22 5191680]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-01-22 125440]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2009-10-05 1221632]
R3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\AtiHdmi.sys [2009-09-30 104976]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2010-01-18 102400]
R3 HECI;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECI.sys [2009-09-17 41088]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 13880]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1C62x86.sys [2009-11-13 58368]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATKACPI.sys [2009-05-13 14392]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2009-08-12 1759872]
R3 STHDA;IDT High Definition Audio CODEC; C:\Windows\system32\DRIVERS\stwrt.sys [2009-11-27 422912]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 14336]
S2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2010-10-01 278728]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 a06d47ue;a06d47ue; C:\Windows\system32\drivers\a06d47ue.sys []
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\DRIVERS\amdagp.sys [2009-07-14 53312]
S3 AmUStor;AM USB Stroage Driver; C:\Windows\system32\drivers\AmUStor.SYS [2009-08-21 27136]
S3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-01-22 5191680]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 EagleXNt;EagleXNt; \??\C:\Windows\system32\drivers\EagleXNt.sys []
S3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2011-01-26 25280]
S3 ipswuio;ipswuio; C:\Windows\System32\DRIVERS\ipswuio.sys []
S3 KMWDFILTERx86;HIDServiceDesc; C:\Windows\system32\DRIVERS\KMWDFILTER.sys [2009-04-29 25088]
S3 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12368]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2009-07-14 133120]
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 5632]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\DRIVERS\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 28224]
S3 tmactmon;tmactmon; C:\Windows\system32\DRIVERS\tmactmon.sys [2009-09-29 59920]
S3 tmevtmgr;tmevtmgr; C:\Windows\system32\DRIVERS\tmevtmgr.sys [2009-09-29 50704]
S3 tmpreflt;tmpreflt; C:\Windows\system32\DRIVERS\tmpreflt.sys [2009-09-29 36368]
S3 tmxpflt;tmxpflt; C:\Windows\system32\DRIVERS\tmxpflt.sys [2009-09-29 225808]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\DRIVERS\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 175824]
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 17920]
S3 vsapint;vsapint; C:\Windows\system32\DRIVERS\vsapint.sys [2009-09-29 1224056]
S3 WimFltr;WimFltr; C:\Windows\system32\DRIVERS\wimfltr.sys [2008-05-23 131000]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 34944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2009-12-07 303744]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2010-01-22 172032]
R2 ASLDRService;ASLDR Service; C:\Program Files\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2009-06-15 84536]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2009-11-09 96896]
R2 Bonjour Service;##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762##; C:\Program Files\Bonjour\mDNSResponder.exe [2006-02-28 229376]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2009-09-30 262144]
R2 NanoServiceMain;Panda Cloud Antivirus Service; C:\Program Files\Panda Security\Panda Cloud Antivirus\PSANHost.exe [2010-12-16 140608]
R2 PSI_SVC_2;Protexis Licensing V2; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [2007-07-24 185632]
R2 SfCtlCom;Trend Micro Central Control Component; C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe [2009-09-29 715368]
R2 STacSV;Audio Service; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_63b9aeb0b2db5e8b\STacSV.exe [2009-11-27 229465]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-09-30 2314240]
R3 ADSMService;ADSM Service; C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe [2008-03-31 225280]
R3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2007-06-27 279848]
R3 spmgr;spmgr; C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe [2007-08-03 125496]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-09-25 655624]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-26 65824]
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-06-29 800040]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 TMBMServer;Trend Micro Unauthorized Change Prevention Service; C:\Program Files\Trend Micro\BM\TMBMSRV.exe [2009-09-29 345352]
S3 TmProxy;Trend Micro Proxy Service; C:\Program Files\Trend Micro\Internet Security\TmProxy.exe [2009-09-29 689416]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]

-----------------EOF-----------------
Nie je káva ako káva...

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13399
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: spomalnie PC

#2 Příspěvek od Roli »

Zdravím, odinstaluj Trend Micro Internet Security a Panda Cloud Antivirus a vrať Avast 5.

Tohle fixni v HJT :

O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [AdobeCS4ServiceManager] "C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE


HJT najdeš zde :

C:\Program Files\trend micro\KocerhaN.exe

Fix znamená že spustíš HJT Obrázek jako admin

v okně které se ti otevře klikneš na Do a system scan only

v dalším okně najdeš řádky které jsem ti vypsal,

vedle nich je čtvereček do kterého uděláš zatržítko,

pak klikneš na Fix checked které je vlevo dole,

program se ti zeptá zda opravdu ANO s tím samozřejmě souhlasíš a je hotovo.


Přes Start >> Všechny programy >> Příslušenství >> Spustit >> napiš - services.msc >> Enter. Najdi službu :

NBService - Nero AG

NMIndexingService - Nero AG


klikni na ni pravým myšítkem, zvol vlastnosti, na další kartě nejprve službu zastav tlačítkem Zastavit a u položky Typ spouštění zvol Zakázáno.


Stáhni a ulož na plochu ComboFix,

spusť aplikaci jako Administrátor a povol instalaci Konzole pro zotavení - Recovery Console.

Poté se zobrazí okno s licenčními podmínkami které potvrdíš kliknutím na ANO,

pak ještě jednou klik na ANO a už to jede.

Celá akce trvá okolo 10 minut ale může i déle, během skenu se nepokoušej spouštět nic jiného.

Při skenovaní může být PC i restartováno nelekat se.

Upozornění: po dobu skenu vypni rezidentní štít Antiviru a AntiSpy programu,

protože Combofix se pokouší napadené soubory smazat a tyto programy mu můžou bránit.

Po dokončení skenu nebo následném restartu aplikace vytvoří log, uložený na C:/Combofix.txt

(při opakovaném použití jsou logy číslovány Combofix2.txt atd.), jeho obsah zkopíruj sem.


V případě nejasností je ZDE obrázkový návod.
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

Uživatelský avatar
Zionello
Návštěvník
Návštěvník
Příspěvky: 85
Registrován: 09 úno 2011 20:46

Re: spomalnie PC

#3 Příspěvek od Zionello »

tak a jeto , trvalo my to kus dlhšie kedže nemam ešte skusenoti :)
TUJE LOG:

ComboFix 11-02-09.02 - KocerhaN . 02. 2011 22:50:10.1.4 - x86
Microsoft Windows 7 Ultimate 6.1.7600.0.1250.421.1029.18.3053.2223 [GMT 1:00]
Running from: c:\users\KocerhaN\Desktop\ComboFix.exe
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Created a new restore point
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\windows\ST6UNST.000
c:\windows\system32\service
c:\windows\system32\service\05112010_TIS17_SfFniAU.log
c:\windows\system32\service\08102010_TIS17_SfFniAU.log

.
((((((((((((((((((((((((( Files Created from 2011-01-09 to 2011-02-09 )))))))))))))))))))))))))))))))
.

2011-02-09 21:55 . 2011-02-09 21:55 -------- d-----w- c:\users\KocerhaN\AppData\Local\temp
2011-02-09 21:55 . 2011-02-09 21:55 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-02-09 21:37 . 2011-02-09 21:37 70 ----a-w- c:\windows\RAVTC.TMP
2011-02-09 20:40 . 2011-02-09 20:40 -------- d-----w- C:\rsit
2011-02-07 01:38 . 2011-02-07 01:38 -------- d-----w- c:\programdata\Blizzard Entertainment
2011-02-06 23:36 . 2011-02-09 19:26 -------- d-----w- c:\program files\World of Warcraft
2011-02-06 22:58 . 2011-02-06 22:58 -------- d-----w- c:\users\KocerhaN\AppData\Roaming\SUPERAntiSpyware.com
2011-02-06 22:58 . 2011-02-06 22:58 -------- d-----w- c:\programdata\SUPERAntiSpyware.com
2011-02-06 22:58 . 2011-02-06 22:58 -------- d-----w- c:\program files\SUPERAntiSpyware
2011-01-26 17:53 . 2011-02-06 22:08 -------- d-----w- c:\users\KocerhaN\AppData\Roaming\Hamachi
2011-01-26 17:53 . 2011-01-26 17:53 25280 ----a-w- c:\windows\system32\drivers\hamachi.sys
2011-01-25 08:58 . 2011-01-25 08:58 -------- d-----w- c:\users\KocerhaN\AppData\Roaming\Panda Security
2011-01-25 08:53 . 2011-01-25 08:53 -------- d-----w- c:\users\KocerhaN\AppData\Roaming\SurfSecret Privacy Suite
2011-01-25 08:53 . 2011-01-25 08:58 -------- d-----w- c:\users\KocerhaN\AppData\Local\panda2_0dn
2011-01-25 08:52 . 2011-02-02 09:11 -------- d-----w- c:\program files\Panda Security
2011-01-25 08:52 . 2011-01-25 08:52 -------- d-----w- c:\programdata\Panda Security
2011-01-25 08:39 . 2010-10-07 07:50 428352 ----a-w- c:\program files\Mozilla Firefox\StubInstaller.exe
2011-01-24 10:55 . 2004-10-22 01:18 749568 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iKernel.dll
2011-01-24 10:55 . 2004-10-22 01:17 69715 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\ctor.dll
2011-01-24 10:55 . 2004-10-22 01:17 274432 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iscript.dll
2011-01-24 10:55 . 2004-10-22 01:16 180224 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iuser.dll
2011-01-24 10:55 . 2004-10-22 01:16 5632 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\DotNetInstaller.exe
2011-01-24 10:55 . 2011-01-24 10:55 192644 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iGdi.dll
2011-01-24 10:55 . 2011-01-24 10:55 323716 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\setup.dll
2011-01-14 23:58 . 2011-01-14 23:58 -------- d-----w- c:\program files\ReflexiveArcade
2011-01-12 19:42 . 2011-01-12 19:42 -------- d-----w- c:\program files\Winamp Detect
2011-01-12 19:42 . 2011-01-12 19:42 -------- d-----w- c:\program files\Common Files\PX Storage Engine
2011-01-12 19:42 . 2011-01-12 20:02 -------- d-----w- c:\users\KocerhaN\AppData\Roaming\Winamp
2011-01-12 19:42 . 2011-01-12 19:42 -------- d-----w- c:\program files\Winamp

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-12-17 09:45 . 2010-12-17 09:22 2829 ----a-w- c:\windows\War3Unin.pif
2010-12-17 09:45 . 2010-12-17 09:22 139264 ----a-w- c:\windows\War3Unin.exe
2010-12-13 08:43 . 2010-09-11 13:03 2828 --sha-w- c:\programdata\KGyGaAvL.sys
2010-11-24 06:31 . 2010-10-05 14:35 45056 ----a-w- c:\windows\system32\acovcnt.exe
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ADSMOverlayIcon1]
@="{A8D448F4-0431-45AC-9F5E-E1B434AB2249}"
[HKEY_CLASSES_ROOT\CLSID\{A8D448F4-0431-45AC-9F5E-E1B434AB2249}]
2007-06-01 15:08 143360 ----a-w- c:\program files\ASUS\ASUS Data Security Manager\ShlExt\x86\OverlayIconShlExt1.dll

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2010-04-01 357696]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-07-14 1173504]
"SUPERAntiSpyware"="c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2011-01-13 2424560]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2010-01-22 98304]
"ATKOSD2"="c:\program files\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe" [2009-10-26 6998656]
"ATKMEDIA"="c:\program files\ASUS\ATK Package\ATK Media\DMedia.exe" [2009-08-19 170624]
"HControlUser"="c:\program files\ASUS\ATK Package\ATK Hotkey\HControlUser.exe" [2009-06-19 105016]
"SysTrayApp"="c:\program files\IDT\WDM\sttray.exe" [2009-11-27 495715]
"AmIcoSinglun"="c:\program files\AmIcoSingLun\AmIcoSinglun.exe" [2009-09-01 233472]

c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
FancyStart daemon.lnk - c:\windows\Installer\{2B81872B-A054-48DA-BE3B-FA5C164C303A}\_C4A2FC3E3722966204FDD8.exe [2010-9-10 12862]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Notification Packages REG_MULTI_SZ scecli c:\program files\ASUS\ASUS Data Security Manager\ASPWDFLT

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2008-12-03 00:34 35184 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ADSMTray]
2009-06-24 10:30 272952 ----a-w- c:\program files\ASUS\ASUS Data Security Manager\ADSMTray.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
2010-09-10 01:29 3054136 ----a-w- c:\windows\AsScrPro.exe

R3 AmUStor;AM USB Stroage Driver;c:\windows\system32\drivers\AmUStor.SYS [2009-08-21 27136]
R3 EagleXNt;EagleXNt;c:\windows\system32\drivers\EagleXNt.sys [x]
R3 ipswuio;ipswuio;c:\windows\system32\DRIVERS\ipswuio.sys [x]
R3 KMWDFILTERx86;HIDServiceDesc;c:\windows\system32\DRIVERS\KMWDFILTER.sys [2009-04-29 25088]
S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2010-09-10 691696]
S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV.SYS [2010-02-17 12872]
S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [2010-05-10 67656]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-13 48128]
S2 AFBAgent;AFBAgent;c:\windows\system32\FBAgent.exe [2009-12-07 303744]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2010-01-22 172032]
S2 UNS;Intel(R) Management & Security Application User Notification Service;c:\program files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-09-30 2314240]
S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atipmdag.sys [2010-01-22 5191680]
S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [2010-01-22 125440]
S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys [2010-01-18 102400]
S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x86.sys [2009-11-13 58368]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [2009-07-13 14336]


--- Other Services/Drivers In Memory ---

*Deregistered* - PSINAflt
*Deregistered* - PSINKNC
*Deregistered* - PSINProt
.
.
------- Supplementary Scan -------
.
uInternet Settings,ProxyOverride = *.local
IE: Download all with Free Download Manager - file://c:\program files\Free Download Manager\dlall.htm
IE: Download selected with Free Download Manager - file://c:\program files\Free Download Manager\dlselected.htm
IE: Download video with Free Download Manager - file://c:\program files\Free Download Manager\dlfvideo.htm
IE: Download with Free Download Manager - file://c:\program files\Free Download Manager\dllink.htm
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
FF - ProfilePath - c:\users\KocerhaN\AppData\Roaming\Mozilla\Firefox\Profiles\gxn3y2af.default\
FF - prefs.js: keyword.URL - hxxp://search.yahoo.com/search?fr=panda&type=PCAFSI1190&p=
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
.
- - - - ORPHANS REMOVED - - - -

HKLM-Run-ETDWare - %ProgramFiles%\Elantech\ETDCtrl.exe


.
--------------------- LOCKED REGISTRY KEYS ---------------------

[HKEY_USERS\S-1-5-21-1636211972-4284083847-1550192416-1000\Software\SecuROM\License information*]
"datasecu"=hex:2e,ce,e0,5a,82,15,2d,b0,be,bd,59,5a,04,9a,33,55,64,68,02,31,00,
19,b7,a7,00,c9,61,3c,ff,6d,dc,c0,49,bc,1a,14,46,69,fb,4a,c8,37,e3,c7,27,6f,\
"rkeysecu"=hex:5b,52,9c,a1,98,8c,57,6e,71,84,29,13,75,db,37,ea

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
--------------------- DLLs Loaded Under Running Processes ---------------------

- - - - - - - > 'lsass.exe'(716)
c:\program files\ASUS\ASUS Data Security Manager\ASPWDFLT.DLL
.
Completion time: 2011-02-09 22:56:31
ComboFix-quarantined-files.txt 2011-02-09 21:56

Pre-Run: Volných bajtů: 397 482 254 336
Post-Run: Volných bajtů: 399 106 867 200

- - End Of File - - BF0671CA80214263A5B6B69D185DE250
Nie je káva ako káva...

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13399
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: spomalnie PC

#4 Příspěvek od Roli »

Pokud jsi tak ještě neučinil, přesuň Combofix na plochu

otevři si Poznámkový blok

do něj zkopíruj skript z následujícího okna:

Kód: Vybrat vše

File::  
c:\windows\RAVTC.TMP

Folder::
c:\users\KocerhaN\AppData\Roaming\Panda Security
c:\users\KocerhaN\AppData\Roaming\SurfSecret Privacy Suite
c:\users\KocerhaN\AppData\Local\panda2_0dn
c:\program files\Panda Security
c:\programdata\Panda Security

RegLock::
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
ulož Tebou vytvořený TXT soubor jako CFScript.txt na plochu,

po uložení uchop vytvořený skript levým myšítkem a přesuň ho nad ikonu Combofixu, kde ho upustíš:

Obrázek

Po aplikaci na Tebe vypadne další log, zkopíruj ho sem

Upozornění : může se stát, že po aplikaci skriptu a restartu Windows nenaběhnou,

v tom případě znovu restartuj a přitom mačkej F8 poté zvol Poslední známou funkční konfiguraci
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

Uživatelský avatar
Zionello
Návštěvník
Návštěvník
Příspěvky: 85
Registrován: 09 úno 2011 20:46

Re: spomalnie PC

#5 Příspěvek od Zionello »

Tuto je log ktory my to spravilo idem restartovat....
EDIT: Windows po restarte nabehol normalne.

ComboFix 11-02-09.05 - KocerhaN . 02. 2011 1:19.2.4 - x86
Microsoft Windows 7 Ultimate 6.1.7600.0.1250.421.1029.18.3053.2131 [GMT 1:00]
Running from: c:\users\KocerhaN\Desktop\ComboFix.exe
Command switches used :: c:\users\KocerhaN\Desktop\CFScript.txt
AV: avast! Antivirus *Disabled/Updated* {C37D8F93-0602-E43C-40AA-47DAD597F308}
SP: avast! Antivirus *Disabled/Updated* {781C6E77-2038-EBB2-7A1A-7CA8AE10B9B5}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

FILE ::
"c:\windows\RAVTC.TMP"
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\program files\Panda Security
c:\programdata\Panda Security
c:\users\KocerhaN\AppData\Local\panda2_0dn
c:\users\KocerhaN\AppData\Local\panda2_0dn\catalog.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202063821-f.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202070547-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202070547-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202080646-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202080646-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202081857-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202081857-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202083844-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202083844-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202085828-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202085828-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202114124-f.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202121216-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202121216-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202121804-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202121804-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202124227-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202124227-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202131314-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202131314-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202131755-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202131755-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202134327-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202134327-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202135858-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202135858-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202141429-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202141429-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202141807-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202141807-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202143802-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202143802-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202145755-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202145755-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202151545-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202151545-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202151816-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202151816-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202153809-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202153809-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202161639-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202161639-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202161804-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202161804-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202163756-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202163756-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202164656-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202164656-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202165812-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202165812-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202171703-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202171703-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202171828-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202171828-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202173825-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202173825-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202181757-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202181757-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202183756-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202183756-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202184803-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202184803-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202185811-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202185811-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202191803-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202191803-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202191928-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202191928-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202195014-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202195014-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202201854-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202201854-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202202018-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202202018-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202203800-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202203800-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202205200-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202205200-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202205816-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202205816-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202211750-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202211750-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202212451-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202212451-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202213816-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202213816-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202215504-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202215504-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202222016-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202222016-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202222557-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202222557-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202232029-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202232029-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202232719-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202232719-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202234036-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110202234036-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203002011-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203002011-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203002823-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203002823-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203004038-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203004038-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203010027-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203010027-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203012014-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203012014-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203013018-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203013018-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203020058-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203020058-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203022111-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203022111-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203024058-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203024058-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203030043-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203030043-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203030205-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203030205-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203032045-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203032045-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203034034-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203034034-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203040335-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203040335-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203042115-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203042115-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203044102-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203044102-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203050505-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203050505-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203052035-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203052035-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203054126-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203054126-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203060643-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203060643-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203062105-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203062105-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203063738-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203063738-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203064114-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203064114-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203070840-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203070840-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203072056-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203072056-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203081002-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203081002-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203082113-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203082113-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203084100-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203084100-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203090052-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203090052-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203091122-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203091122-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203092129-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203092129-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203094118-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203094118-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203101312-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203101312-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203102107-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203102107-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203104055-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203104055-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203104324-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203104324-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203110101-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203110101-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203111418-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203111418-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203112106-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203112106-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203114055-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203114055-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203114428-l.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\110203114428-m.list
c:\users\KocerhaN\AppData\Local\panda2_0dn\data\temp.zip
c:\users\KocerhaN\AppData\Roaming\Panda Security
c:\users\KocerhaN\AppData\Roaming\Panda Security\Panda Cloud Antivirus\PSUNUser.cfg
c:\users\KocerhaN\AppData\Roaming\SurfSecret Privacy Suite
c:\users\KocerhaN\AppData\Roaming\SurfSecret Privacy Suite\RegAppLog.txt

.
((((((((((((((((((((((((( Files Created from 2011-01-11 to 2011-02-11 )))))))))))))))))))))))))))))))
.

2011-02-11 00:26 . 2011-02-11 00:26 -------- d-----w- c:\users\KocerhaN\AppData\Local\temp
2011-02-11 00:26 . 2011-02-11 00:26 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-02-10 00:41 . 2011-01-13 08:41 294608 ----a-w- c:\windows\system32\drivers\aswSP.sys
2011-02-10 00:41 . 2011-01-13 08:37 17744 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2011-02-10 00:41 . 2011-01-13 08:37 23632 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2011-02-10 00:41 . 2011-01-13 08:40 47440 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2011-02-10 00:41 . 2011-01-13 08:37 51280 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2011-02-10 00:41 . 2011-01-13 08:47 38848 ----a-w- c:\windows\avastSS.scr
2011-02-10 00:41 . 2011-01-13 08:47 188216 ----a-w- c:\windows\system32\aswBoot.exe
2011-02-09 20:40 . 2011-02-09 20:40 -------- d-----w- C:\rsit
2011-02-07 01:38 . 2011-02-07 01:38 -------- d-----w- c:\programdata\Blizzard Entertainment
2011-02-06 23:36 . 2011-02-10 22:17 -------- d-----w- c:\program files\World of Warcraft
2011-02-06 22:58 . 2011-02-06 22:58 -------- d-----w- c:\users\KocerhaN\AppData\Roaming\SUPERAntiSpyware.com
2011-02-06 22:58 . 2011-02-06 22:58 -------- d-----w- c:\programdata\SUPERAntiSpyware.com
2011-02-06 22:58 . 2011-02-06 22:58 -------- d-----w- c:\program files\SUPERAntiSpyware
2011-01-26 17:53 . 2011-02-06 22:08 -------- d-----w- c:\users\KocerhaN\AppData\Roaming\Hamachi
2011-01-26 17:53 . 2011-01-26 17:53 25280 ----a-w- c:\windows\system32\drivers\hamachi.sys
2011-01-25 08:39 . 2010-10-07 07:50 428352 ----a-w- c:\program files\Mozilla Firefox\StubInstaller.exe
2011-01-24 10:55 . 2004-10-22 01:18 749568 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iKernel.dll
2011-01-24 10:55 . 2004-10-22 01:17 69715 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\ctor.dll
2011-01-24 10:55 . 2004-10-22 01:17 274432 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iscript.dll
2011-01-24 10:55 . 2004-10-22 01:16 180224 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iuser.dll
2011-01-24 10:55 . 2004-10-22 01:16 5632 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\DotNetInstaller.exe
2011-01-24 10:55 . 2011-01-24 10:55 192644 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iGdi.dll
2011-01-24 10:55 . 2011-01-24 10:55 323716 ----a-w- c:\program files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\setup.dll
2011-01-14 23:58 . 2011-01-14 23:58 -------- d-----w- c:\program files\ReflexiveArcade
2011-01-12 19:42 . 2011-01-12 19:42 -------- d-----w- c:\program files\Winamp Detect
2011-01-12 19:42 . 2011-01-12 19:42 -------- d-----w- c:\program files\Common Files\PX Storage Engine
2011-01-12 19:42 . 2011-01-12 20:02 -------- d-----w- c:\users\KocerhaN\AppData\Roaming\Winamp
2011-01-12 19:42 . 2011-01-12 19:42 -------- d-----w- c:\program files\Winamp

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-12-17 09:45 . 2010-12-17 09:22 2829 ----a-w- c:\windows\War3Unin.pif
2010-12-17 09:45 . 2010-12-17 09:22 139264 ----a-w- c:\windows\War3Unin.exe
2010-12-13 08:43 . 2010-09-11 13:03 2828 --sha-w- c:\programdata\KGyGaAvL.sys
2010-11-24 06:31 . 2010-10-05 14:35 45056 ----a-w- c:\windows\system32\acovcnt.exe
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ADSMOverlayIcon1]
@="{A8D448F4-0431-45AC-9F5E-E1B434AB2249}"
[HKEY_CLASSES_ROOT\CLSID\{A8D448F4-0431-45AC-9F5E-E1B434AB2249}]
2007-06-01 15:08 143360 ----a-w- c:\program files\ASUS\ASUS Data Security Manager\ShlExt\x86\OverlayIconShlExt1.dll

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2010-04-01 357696]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-07-14 1173504]
"SUPERAntiSpyware"="c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2011-01-13 2424560]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2010-01-22 98304]
"ATKOSD2"="c:\program files\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe" [2009-10-26 6998656]
"ATKMEDIA"="c:\program files\ASUS\ATK Package\ATK Media\DMedia.exe" [2009-08-19 170624]
"HControlUser"="c:\program files\ASUS\ATK Package\ATK Hotkey\HControlUser.exe" [2009-06-19 105016]
"SysTrayApp"="c:\program files\IDT\WDM\sttray.exe" [2009-11-27 495715]
"AmIcoSinglun"="c:\program files\AmIcoSingLun\AmIcoSinglun.exe" [2009-09-01 233472]
"avast5"="c:\program files\Alwil Software\Avast5\avastUI.exe" [2011-01-13 3396624]

c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
FancyStart daemon.lnk - c:\windows\Installer\{2B81872B-A054-48DA-BE3B-FA5C164C303A}\_C4A2FC3E3722966204FDD8.exe [2010-9-10 12862]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Notification Packages REG_MULTI_SZ scecli c:\program files\ASUS\ASUS Data Security Manager\ASPWDFLT

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2008-12-03 00:34 35184 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ADSMTray]
2009-06-24 10:30 272952 ----a-w- c:\program files\ASUS\ASUS Data Security Manager\ADSMTray.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
2010-09-10 01:29 3054136 ----a-w- c:\windows\AsScrPro.exe

R3 AmUStor;AM USB Stroage Driver;c:\windows\system32\drivers\AmUStor.SYS [2009-08-21 27136]
R3 EagleXNt;EagleXNt;c:\windows\system32\drivers\EagleXNt.sys [x]
R3 ipswuio;ipswuio;c:\windows\system32\DRIVERS\ipswuio.sys [x]
R3 KMWDFILTERx86;HIDServiceDesc;c:\windows\system32\DRIVERS\KMWDFILTER.sys [2009-04-29 25088]
S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2010-09-10 691696]
S1 aswSP;aswSP; [x]
S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV.SYS [2010-02-17 12872]
S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [2010-05-10 67656]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-13 48128]
S2 AFBAgent;AFBAgent;c:\windows\system32\FBAgent.exe [2009-12-07 303744]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2010-01-22 172032]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2011-01-13 51280]
S2 UNS;Intel(R) Management & Security Application User Notification Service;c:\program files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-09-30 2314240]
S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atipmdag.sys [2010-01-22 5191680]
S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [2010-01-22 125440]
S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys [2010-01-18 102400]
S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x86.sys [2009-11-13 58368]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [2009-07-13 14336]

.
.
------- Supplementary Scan -------
.
uInternet Settings,ProxyOverride = *.local
IE: Download all with Free Download Manager - file://c:\program files\Free Download Manager\dlall.htm
IE: Download selected with Free Download Manager - file://c:\program files\Free Download Manager\dlselected.htm
IE: Download video with Free Download Manager - file://c:\program files\Free Download Manager\dlfvideo.htm
IE: Download with Free Download Manager - file://c:\program files\Free Download Manager\dllink.htm
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
FF - ProfilePath - c:\users\KocerhaN\AppData\Roaming\Mozilla\Firefox\Profiles\gxn3y2af.default\
FF - prefs.js: keyword.URL - hxxp://search.yahoo.com/search?fr=panda&type=PCAFSI1190&p=
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------

[HKEY_USERS\S-1-5-21-1636211972-4284083847-1550192416-1000\Software\SecuROM\License information*]
"datasecu"=hex:2e,ce,e0,5a,82,15,2d,b0,be,bd,59,5a,04,9a,33,55,64,68,02,31,00,
19,b7,a7,00,c9,61,3c,ff,6d,dc,c0,49,bc,1a,14,46,69,fb,4a,c8,37,e3,c7,27,6f,\
"rkeysecu"=hex:5b,52,9c,a1,98,8c,57,6e,71,84,29,13,75,db,37,ea
.
--------------------- DLLs Loaded Under Running Processes ---------------------

- - - - - - - > 'lsass.exe'(604)
c:\program files\ASUS\ASUS Data Security Manager\ASPWDFLT.DLL
.
Completion time: 2011-02-11 01:27:31
ComboFix-quarantined-files.txt 2011-02-11 00:27
ComboFix2.txt 2011-02-09 21:56

Pre-Run: Volných bajtů: 396 657 336 320
Post-Run: Volných bajtů: 397 092 864 000

- - End Of File - - D8FEE299B02EDA2ED7DE1ADF36D701E1
Nie je káva ako káva...

Uživatelský avatar
Zionello
Návštěvník
Návštěvník
Příspěvky: 85
Registrován: 09 úno 2011 20:46

Re: spomalnie PC

#6 Příspěvek od Zionello »

Takze mam dalsi problem ,neviem ci zato moze virus alebo je to nejaka chyba ntbku ale nejde my nijako vypnut touchpad, skusal som touchfreez, aj ovladacie panely aje fn+f9, ale vobec to nereaguje.. prikladam aj screen
Obrázek
Nie je káva ako káva...

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13399
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: spomalnie PC

#7 Příspěvek od Roli »

Přes Start >> Spustit zkopíruj do okna:

ComboFix /Uninstall

a stiskni Enter

To odinstaluje ComboFix a smaže s ním související soubory a složky.


K tomu touchpad, odinstaluj Touch Freeze a původní ovladač přeinstaluj.

Pak dej vědět jaký je stav.
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

Uživatelský avatar
Zionello
Návštěvník
Návštěvník
Příspěvky: 85
Registrován: 09 úno 2011 20:46

Re: spomalnie PC

#8 Příspěvek od Zionello »

:) Dakujem za pomoc vyzera to v poriadku, windows sa zapina rychlejsie v hre mam sice dost male fps ale ziadne lagy a seky, ale tie fps nechapem.Touchpad som pozrel v ovladacom panely skusil som aktualizovat ovladač, reštartol som ntb a fachčí to , dakujem velmi pekne za pomoc :).. mám sem hodit este nejaky log na kontrolu?
Nie je káva ako káva...

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13399
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: spomalnie PC

#9 Příspěvek od Roli »

Spusť skener Cure It podle TOHOTO návodu

po skončení skenu chci sem výsledky.

(Upozornění je úchylně pomalý a je zapotřebí ho sledovat občas se na něco ptá)


Smaž nepotřebné soubory

pomocí CCleaneru

návod :

Čistič - tady vyčistíš PC od nepotřebných souborů a vysypeš Koš

Registry - tady vyčistíš registry (před použitím doporučuji udělat jejich zálohu kterou CCleaner nabízí)

čištění registru je třeba několikrát zopakovat !

Nástroje - tady lze odinstalovat programy, upravit co se spustí po Startu systému a obnovit systém


Případně defragmentuj disk buď integrovaným windows nástrojem,

nebo jinou aplikací, například Defragglerem
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

Uživatelský avatar
Zionello
Návštěvník
Návštěvník
Příspěvky: 85
Registrován: 09 úno 2011 20:46

Re: spomalnie PC

#10 Příspěvek od Zionello »

cure it nenašiel nic, Ccleanerom som vsetko precistil :-) dakujem za pomoc windows beží ako má hra tiež internet tak isto. Dakujem problem je vyriešený :worship:
Nie je káva ako káva...

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13399
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: spomalnie PC

#11 Příspěvek od Roli »

Není zač.
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

Odpovědět