Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

pomalé odesílání dat

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Andrea
Návštěvník
Návštěvník
Příspěvky: 66
Registrován: 29 dub 2004 20:16
Bydliště: Studénka

Re: pomalé odesílání dat

#16 Příspěvek od Andrea »

ComboFix 14-10-29.01 - An 05.11.2014 16:10:24.2.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.3000.2136 [GMT 1:00]
Spuštěný z: c:\documents and settings\An\Plocha\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2014-10-05 do 2014-11-05 )))))))))))))))))))))))))))))))
.
.
2014-11-03 19:13 . 2014-11-03 19:13 -------- d-----w- c:\users\k\AppData\Local\Temp
2014-11-03 19:13 . 2014-11-03 18:46 24064 ----a-w- c:\winxp\zoek-delete.exe
2014-11-03 19:12 . 2014-11-03 19:12 -------- d-----w- c:\users\k\AppData\Local\Data aplikacŢ
2014-11-03 19:03 . 2014-11-03 19:17 -------- d-----w- C:\zoek
2014-10-27 13:10 . 2014-10-27 13:10 -------- d-----w- c:\documents and settings\All Users.WINXP\Data aplikací\Doctor Web
2014-10-27 12:24 . 2014-10-27 17:53 -------- d-----w- c:\documents and settings\An\Doctor Web
2014-10-18 19:06 . 2014-10-18 19:06 -------- d-----w- c:\documents and settings\An\Local Settings\Data aplikací\Locktime
2014-10-18 19:01 . 2014-10-18 19:01 -------- d-----w- c:\documents and settings\All Users.WINXP\Data aplikací\Locktime
2014-10-18 19:01 . 2014-10-18 19:01 -------- d-----w- c:\program files\NetLimiter 3
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-09-10 16:05 . 2013-12-01 10:08 71344 ----a-w- c:\winxp\system32\FlashPlayerCPLApp.cpl
2014-09-10 16:05 . 2013-12-01 10:08 701104 ----a-w- c:\winxp\system32\FlashPlayerApp.exe
2014-09-10 16:05 . 2014-05-14 08:05 10036224 ----a-w- c:\winxp\system32\FlashPlayerInstaller.exe
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2014-07-17 07:40 578240 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\documents and settings\An\Data aplikací\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\documents and settings\An\Data aplikací\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\documents and settings\An\Data aplikací\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\documents and settings\An\Data aplikací\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Xvid"="c:\program files\Xvid\CheckUpdate.exe" [2011-01-17 8192]
"Svátky a výročí"="c:\program files\OKsoftware\Svátky a výročí\Vyroci.exe" [2004-12-12 960512]
"uTorrent"="c:\documents and settings\An\Data aplikací\uTorrent\uTorrent.exe" [2014-11-01 1385808]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2014-10-01 22067296]
"NetLimiter"="c:\program files\NetLimiter 3\NLClientApp.exe" [2010-08-30 1781760]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"hpWirelessAssistant"="c:\program files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" [2010-05-20 500792]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2009-07-29 1545512]
"QlbCtrl.exe"="c:\program files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" [2010-02-25 287800]
"IntelZeroConfig"="c:\program files\Intel\WiFi\bin\ZCfgSvc.exe" [2010-07-19 1400832]
"IntelWireless"="c:\program files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" [2010-07-19 1206544]
"IgfxTray"="c:\winxp\system32\igfxtray.exe" [2011-08-23 136472]
"HotKeysCmds"="c:\winxp\system32\hkcmd.exe" [2011-08-23 170264]
"Persistence"="c:\winxp\system32\igfxpers.exe" [2011-08-23 145688]
"pdfFactory Pro Dispatcher v2"="c:\winxp\System32\spool\DRIVERS\W32X86\3\fppdis2a.exe" [2004-01-24 393216]
"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2008-12-11 1044480]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2014-07-29 4085896]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-09-23 926896]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\winxp\system32\CTFMON.EXE" [2008-04-14 15360]
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\ASUS\\RT-N10E Wireless Router Utilities\\Discovery.exe"=
"c:\\Program Files\\ASUS\\RT-N10E Wireless Router Utilities\\Rescue.exe"=
"c:\\Program Files\\ASUS\\RT-N10E Wireless Router Utilities\\LiveUpdate.exe"=
"c:\\Program Files\\ASUS\\RT-N10E Wireless Router Utilities\\QISWizard.exe"=
"c:\\Users\\An\\Data aplikací\\Dropbox\\bin\\Dropbox.exe"=
"c:\\Program Files\\Google\\Chrome\\Application\\chrome.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Users\\An\\Data aplikací\\uTorrent\\uTorrent.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"1723:TCP"= 1723:TCP:@xpsp2res.dll,-22015
"1701:UDP"= 1701:UDP:@xpsp2res.dll,-22016
"500:UDP"= 500:UDP:@xpsp2res.dll,-22017
.
R0 aswRvrt;avast! Revert;c:\winxp\system32\drivers\aswRvrt.sys [30.11.2013 15:52 49944]
R0 aswVmm;avast! VM Monitor;c:\winxp\system32\drivers\aswVmm.sys [30.11.2013 15:52 192352]
R0 SFAUDIO;Sonic Focus DSP Driver;c:\winxp\system32\drivers\sfaudio.sys [28.3.2008 10:14 24064]
R1 aswSnx;aswSnx;c:\winxp\system32\drivers\aswsnx.sys [30.11.2013 15:52 779536]
R1 aswSP;aswSP;c:\winxp\system32\drivers\aswsp.sys [30.11.2013 15:52 414520]
R1 nltdi;nltdi;c:\program files\NetLimiter 3\nltdi.sys [30.8.2010 13:24 5281672]
R2 aswHwid;avast! HardwareID;c:\winxp\system32\drivers\aswHwid.sys [3.5.2014 13:41 24184]
R2 aswMonFlt;aswMonFlt;c:\winxp\system32\drivers\aswmonflt.sys [30.11.2013 15:52 67824]
R3 Com4QLBEx;Com4QLBEx;c:\program files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [4.6.2011 17:21 227896]
R3 IFXTPM;IFXTPM;c:\winxp\system32\drivers\ifxtpm.sys [23.7.2008 11:31 44800]
R3 NETwNx32;___ Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows XP 32 Bit;c:\winxp\system32\drivers\NETwNx32.sys [26.11.2013 23:11 6650752]
R3 NLNdisMP;NLNdisMP;c:\winxp\system32\drivers\nlndis.sys [30.8.2010 13:24 5230088]
R3 rismc32;RICOH Smart Card Reader;c:\winxp\system32\drivers\rismc32.sys [26.11.2013 20:52 49152]
S2 Skype C2C Service;Skype C2C Service;c:\documents and settings\All Users.WINXP\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe [9.10.2013 10:58 3275136]
S2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [3.4.2014 19:21 315008]
S3 e1yexpress;Intel(R) Gigabit Network Connections Driver;c:\winxp\system32\drivers\e1y5132.sys [26.11.2013 21:36 241880]
S3 NLNdisPT;NetLimiter Ndis Protocol Service;c:\winxp\system32\drivers\nlndis.sys [30.8.2010 13:24 5230088]
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - WS2IFSL
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-10-29 15:44 1089352 ----a-w- c:\program files\Google\Chrome\Application\38.0.2125.111\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2014-11-05 c:\winxp\Tasks\Adobe Flash Player Updater.job
- c:\winxp\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-01 16:05]
.
2014-11-04 c:\winxp\Tasks\avast! Emergency Update.job
- c:\program files\AVAST Software\Avast\AvastEmUpdate.exe [2014-07-17 07:40]
.
2014-11-04 c:\winxp\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2014-07-12 11:28]
.
2014-11-05 c:\winxp\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2014-07-12 11:28]
.
2014-10-18 c:\winxp\Tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job
- c:\winxp\system32\xp_eos.exe [2014-06-10 23:28]
.
2014-11-04 c:\winxp\Tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job
- c:\winxp\system32\xp_eos.exe [2014-06-10 23:28]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.1.1
FF - ProfilePath - c:\documents and settings\An\Data aplikací\Mozilla\Firefox\Profiles\oov9j4be.default-1393233160812\
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
AddRemove-McAfee Security Scan - c:\program files\McAfee Security Scan\uninstall.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2014-11-05 16:20
Windows 5.1.2600 Service Pack 3 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'winlogon.exe'(1020)
c:\winxp\system32\netprovcredman.dll
.
- - - - - - - > 'explorer.exe'(5008)
c:\documents and settings\An\Data aplikací\Dropbox\bin\DropboxExt.22.dll
.
Celkový čas: 2014-11-05 16:21:53
ComboFix-quarantined-files.txt 2014-11-05 15:21
ComboFix2.txt 2014-11-04 18:29
.
Před spuštěním: Volných bajtů: 140 374 642 688
Po spuštění: Volných bajtů: 140 371 857 408
.
- - End Of File - - 87D3FBDD5DF69E4FB41B4F5D433B5850
413FC2A0C716421B3158746D63736515

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: pomalé odesílání dat

#17 Příspěvek od Márty84 »

Program nemazal. Jela jste podle navodu? Podle logu nebyl pouzity skript. Zkuste to znovu.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Andrea
Návštěvník
Návštěvník
Příspěvky: 66
Registrován: 29 dub 2004 20:16
Bydliště: Studénka

Re: pomalé odesílání dat

#18 Příspěvek od Andrea »

vyyzkoušela jsem to tedy ještě jednou...
combofix je na ploše, soubor txt s názvem CFScript s obsahem zkopírovaným z vašeho okna taky.
vypnutý antivir. k restartu nedošlo...

ComboFix 14-10-29.01 - An 05.11.2014 20:52:55.3.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.3000.2294 [GMT 1:00]
Spuštěný z: c:\documents and settings\An\Plocha\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2014-10-05 do 2014-11-05 )))))))))))))))))))))))))))))))
.
.
2014-11-03 19:13 . 2014-11-03 19:13 -------- d-----w- c:\users\k\AppData\Local\Temp
2014-11-03 19:13 . 2014-11-03 18:46 24064 ----a-w- c:\winxp\zoek-delete.exe
2014-11-03 19:12 . 2014-11-03 19:12 -------- d-----w- c:\users\k\AppData\Local\Data aplikacŢ
2014-11-03 19:03 . 2014-11-03 19:17 -------- d-----w- C:\zoek
2014-10-27 13:10 . 2014-10-27 13:10 -------- d-----w- c:\documents and settings\All Users.WINXP\Data aplikací\Doctor Web
2014-10-27 12:24 . 2014-10-27 17:53 -------- d-----w- c:\documents and settings\An\Doctor Web
2014-10-18 19:06 . 2014-10-18 19:06 -------- d-----w- c:\documents and settings\An\Local Settings\Data aplikací\Locktime
2014-10-18 19:01 . 2014-10-18 19:01 -------- d-----w- c:\documents and settings\All Users.WINXP\Data aplikací\Locktime
2014-10-18 19:01 . 2014-10-18 19:01 -------- d-----w- c:\program files\NetLimiter 3
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-09-10 16:05 . 2013-12-01 10:08 71344 ----a-w- c:\winxp\system32\FlashPlayerCPLApp.cpl
2014-09-10 16:05 . 2013-12-01 10:08 701104 ----a-w- c:\winxp\system32\FlashPlayerApp.exe
2014-09-10 16:05 . 2014-05-14 08:05 10036224 ----a-w- c:\winxp\system32\FlashPlayerInstaller.exe
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2014-07-17 07:40 578240 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\documents and settings\An\Data aplikací\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\documents and settings\An\Data aplikací\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\documents and settings\An\Data aplikací\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\documents and settings\An\Data aplikací\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Xvid"="c:\program files\Xvid\CheckUpdate.exe" [2011-01-17 8192]
"Svátky a výročí"="c:\program files\OKsoftware\Svátky a výročí\Vyroci.exe" [2004-12-12 960512]
"uTorrent"="c:\documents and settings\An\Data aplikací\uTorrent\uTorrent.exe" [2014-11-01 1385808]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2014-10-01 22067296]
"NetLimiter"="c:\program files\NetLimiter 3\NLClientApp.exe" [2010-08-30 1781760]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"hpWirelessAssistant"="c:\program files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" [2010-05-20 500792]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2009-07-29 1545512]
"QlbCtrl.exe"="c:\program files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" [2010-02-25 287800]
"IntelZeroConfig"="c:\program files\Intel\WiFi\bin\ZCfgSvc.exe" [2010-07-19 1400832]
"IntelWireless"="c:\program files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" [2010-07-19 1206544]
"IgfxTray"="c:\winxp\system32\igfxtray.exe" [2011-08-23 136472]
"HotKeysCmds"="c:\winxp\system32\hkcmd.exe" [2011-08-23 170264]
"Persistence"="c:\winxp\system32\igfxpers.exe" [2011-08-23 145688]
"pdfFactory Pro Dispatcher v2"="c:\winxp\System32\spool\DRIVERS\W32X86\3\fppdis2a.exe" [2004-01-24 393216]
"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2008-12-11 1044480]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2014-07-29 4085896]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-09-23 926896]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\winxp\system32\CTFMON.EXE" [2008-04-14 15360]
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\ASUS\\RT-N10E Wireless Router Utilities\\Discovery.exe"=
"c:\\Program Files\\ASUS\\RT-N10E Wireless Router Utilities\\Rescue.exe"=
"c:\\Program Files\\ASUS\\RT-N10E Wireless Router Utilities\\LiveUpdate.exe"=
"c:\\Program Files\\ASUS\\RT-N10E Wireless Router Utilities\\QISWizard.exe"=
"c:\\Users\\An\\Data aplikací\\Dropbox\\bin\\Dropbox.exe"=
"c:\\Program Files\\Google\\Chrome\\Application\\chrome.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Users\\An\\Data aplikací\\uTorrent\\uTorrent.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"1723:TCP"= 1723:TCP:@xpsp2res.dll,-22015
"1701:UDP"= 1701:UDP:@xpsp2res.dll,-22016
"500:UDP"= 500:UDP:@xpsp2res.dll,-22017
.
R0 aswRvrt;avast! Revert;c:\winxp\system32\drivers\aswRvrt.sys [30.11.2013 15:52 49944]
R0 aswVmm;avast! VM Monitor;c:\winxp\system32\drivers\aswVmm.sys [30.11.2013 15:52 192352]
R0 SFAUDIO;Sonic Focus DSP Driver;c:\winxp\system32\drivers\sfaudio.sys [28.3.2008 10:14 24064]
R1 aswSnx;aswSnx;c:\winxp\system32\drivers\aswsnx.sys [30.11.2013 15:52 779536]
R1 aswSP;aswSP;c:\winxp\system32\drivers\aswsp.sys [30.11.2013 15:52 414520]
R1 nltdi;nltdi;c:\program files\NetLimiter 3\nltdi.sys [30.8.2010 13:24 5281672]
R2 aswHwid;avast! HardwareID;c:\winxp\system32\drivers\aswHwid.sys [3.5.2014 13:41 24184]
R2 aswMonFlt;aswMonFlt;c:\winxp\system32\drivers\aswmonflt.sys [30.11.2013 15:52 67824]
R3 Com4QLBEx;Com4QLBEx;c:\program files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [4.6.2011 17:21 227896]
R3 IFXTPM;IFXTPM;c:\winxp\system32\drivers\ifxtpm.sys [23.7.2008 11:31 44800]
R3 NETwNx32;___ Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows XP 32 Bit;c:\winxp\system32\drivers\NETwNx32.sys [26.11.2013 23:11 6650752]
R3 NLNdisMP;NLNdisMP;c:\winxp\system32\drivers\nlndis.sys [30.8.2010 13:24 5230088]
R3 rismc32;RICOH Smart Card Reader;c:\winxp\system32\drivers\rismc32.sys [26.11.2013 20:52 49152]
S2 Skype C2C Service;Skype C2C Service;c:\documents and settings\All Users.WINXP\Data aplikací\Skype\Toolbars\Skype C2C Service\c2c_service.exe [9.10.2013 10:58 3275136]
S2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [3.4.2014 19:21 315008]
S3 e1yexpress;Intel(R) Gigabit Network Connections Driver;c:\winxp\system32\drivers\e1y5132.sys [26.11.2013 21:36 241880]
S3 NLNdisPT;NetLimiter Ndis Protocol Service;c:\winxp\system32\drivers\nlndis.sys [30.8.2010 13:24 5230088]
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - WS2IFSL
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-10-29 15:44 1089352 ----a-w- c:\program files\Google\Chrome\Application\38.0.2125.111\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2014-11-05 c:\winxp\Tasks\Adobe Flash Player Updater.job
- c:\winxp\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-01 16:05]
.
2014-11-04 c:\winxp\Tasks\avast! Emergency Update.job
- c:\program files\AVAST Software\Avast\AvastEmUpdate.exe [2014-07-17 07:40]
.
2014-11-04 c:\winxp\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2014-07-12 11:28]
.
2014-11-05 c:\winxp\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2014-07-12 11:28]
.
2014-10-18 c:\winxp\Tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job
- c:\winxp\system32\xp_eos.exe [2014-06-10 23:28]
.
2014-11-04 c:\winxp\Tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job
- c:\winxp\system32\xp_eos.exe [2014-06-10 23:28]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.1.1
FF - ProfilePath - c:\documents and settings\An\Data aplikací\Mozilla\Firefox\Profiles\oov9j4be.default-1393233160812\
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2014-11-05 21:03
Windows 5.1.2600 Service Pack 3 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'winlogon.exe'(1020)
c:\winxp\system32\netprovcredman.dll
.
- - - - - - - > 'explorer.exe'(4676)
c:\documents and settings\An\Data aplikací\Dropbox\bin\DropboxExt.22.dll
.
Celkový čas: 2014-11-05 21:04:22
ComboFix-quarantined-files.txt 2014-11-05 20:04
ComboFix2.txt 2014-11-05 15:21
ComboFix3.txt 2014-11-04 18:29
.
Před spuštěním: Volných bajtů: 139 420 807 168
Po spuštění: Volných bajtů: 139 419 303 936
.
- - End Of File - - CFC2F6ED748B1F9E967397481E934D58
413FC2A0C716421B3158746D63736515

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: pomalé odesílání dat

#19 Příspěvek od Márty84 »

A nespoustite ComboFix normalne dvojklikem?

Musite ho spustit pomoci skriptu, jak se pise v navodu. Uchopit do mysi a pretahnout nad ikonu ComboFixu Obrázek
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Andrea
Návštěvník
Návštěvník
Příspěvky: 66
Registrován: 29 dub 2004 20:16
Bydliště: Studénka

Re: pomalé odesílání dat

#20 Příspěvek od Andrea »

jsem já to ale blondýna :134: :D hlavně že jsem ty ikony měla pěkně nad sebou srovnané :D

tak už jsem to spustila správně :)


ComboFix 14-10-29.01 - An 06.11.2014 18:33:21.5.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.3000.2284 [GMT 1:00]
Spuštěný z: c:\documents and settings\An\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\An\Plocha\CFScript.txt
AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
FILE ::
"c:\documents and settings\All Users.WINXP\Nabídka Start\Programy\Po spuštění\McAfee Security Scan Plus.lnk"
"c:\winxp\zoek-delete.exe"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\zoek
c:\zoek\in\WINDOWSTEMP\History\History.IE5\desktop.ini
c:\zoek\in\WINDOWSTEMP\InstallHelp\SecurityScanner32.dll
c:\zoek\in\WINDOWSTEMP\Low\MSI\SkypeToolbars.msi
c:\zoek\in\WINDOWSTEMP\NDP1.1sp1-KB2833941-X86\NDP1.1sp1-KB2833941-X86-msi.0.log
c:\zoek\in\WINDOWSTEMP\NDP1.1sp1-KB2833941-X86\NDP1.1sp1-KB2833941-X86-wrapper.log
c:\zoek\in\WINDOWSTEMP\Temporary Internet Files\Content.IE5\9R9DI35Q\desktop.ini
c:\zoek\in\WINDOWSTEMP\Temporary Internet Files\Content.IE5\desktop.ini
c:\zoek\in\WINDOWSTEMP\Temporary Internet Files\Content.IE5\J3S6S7MT\desktop.ini
c:\zoek\in\WINDOWSTEMP\Temporary Internet Files\Content.IE5\L7KZBRDS\desktop.ini
c:\zoek\in\WINDOWSTEMP\Temporary Internet Files\Content.IE5\W12VWPU7\desktop.ini
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_SKYPEUPDATE
-------\Legacy_SKYPE_C2C_SERVICE
-------\Service_Skype C2C Service
-------\Service_SkypeUpdate
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2014-10-06 do 2014-11-06 )))))))))))))))))))))))))))))))
.
.
2014-11-03 19:13 . 2014-11-03 19:13 -------- d-----w- c:\users\k\AppData\Local\Temp
2014-11-03 19:13 . 2014-11-03 18:46 24064 ----a-w- c:\winxp\zoek-delete.exe
2014-11-03 19:12 . 2014-11-03 19:12 -------- d-----w- c:\users\k\AppData\Local\Data aplikacŢ
2014-10-27 13:10 . 2014-10-27 13:10 -------- d-----w- c:\documents and settings\All Users.WINXP\Data aplikací\Doctor Web
2014-10-27 12:24 . 2014-10-27 17:53 -------- d-----w- c:\documents and settings\An\Doctor Web
2014-10-18 19:06 . 2014-10-18 19:06 -------- d-----w- c:\documents and settings\An\Local Settings\Data aplikací\Locktime
2014-10-18 19:01 . 2014-10-18 19:01 -------- d-----w- c:\documents and settings\All Users.WINXP\Data aplikací\Locktime
2014-10-18 19:01 . 2014-10-18 19:01 -------- d-----w- c:\program files\NetLimiter 3
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-09-10 16:05 . 2013-12-01 10:08 71344 ----a-w- c:\winxp\system32\FlashPlayerCPLApp.cpl
2014-09-10 16:05 . 2013-12-01 10:08 701104 ----a-w- c:\winxp\system32\FlashPlayerApp.exe
2014-09-10 16:05 . 2014-05-14 08:05 10036224 ----a-w- c:\winxp\system32\FlashPlayerInstaller.exe
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2014-07-17 07:40 578240 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\documents and settings\An\Data aplikací\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\documents and settings\An\Data aplikací\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\documents and settings\An\Data aplikací\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\documents and settings\An\Data aplikací\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Svátky a výročí"="c:\program files\OKsoftware\Svátky a výročí\Vyroci.exe" [2004-12-12 960512]
"NetLimiter"="c:\program files\NetLimiter 3\NLClientApp.exe" [2010-08-30 1781760]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"hpWirelessAssistant"="c:\program files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" [2010-05-20 500792]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2009-07-29 1545512]
"QlbCtrl.exe"="c:\program files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" [2010-02-25 287800]
"IntelZeroConfig"="c:\program files\Intel\WiFi\bin\ZCfgSvc.exe" [2010-07-19 1400832]
"IntelWireless"="c:\program files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" [2010-07-19 1206544]
"IgfxTray"="c:\winxp\system32\igfxtray.exe" [2011-08-23 136472]
"HotKeysCmds"="c:\winxp\system32\hkcmd.exe" [2011-08-23 170264]
"Persistence"="c:\winxp\system32\igfxpers.exe" [2011-08-23 145688]
"pdfFactory Pro Dispatcher v2"="c:\winxp\System32\spool\DRIVERS\W32X86\3\fppdis2a.exe" [2004-01-24 393216]
"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2008-12-11 1044480]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2014-07-29 4085896]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\winxp\system32\CTFMON.EXE" [2008-04-14 15360]
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\ASUS\\RT-N10E Wireless Router Utilities\\Discovery.exe"=
"c:\\Program Files\\ASUS\\RT-N10E Wireless Router Utilities\\Rescue.exe"=
"c:\\Program Files\\ASUS\\RT-N10E Wireless Router Utilities\\LiveUpdate.exe"=
"c:\\Program Files\\ASUS\\RT-N10E Wireless Router Utilities\\QISWizard.exe"=
"c:\\Users\\An\\Data aplikací\\Dropbox\\bin\\Dropbox.exe"=
"c:\\Program Files\\Google\\Chrome\\Application\\chrome.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Users\\An\\Data aplikací\\uTorrent\\uTorrent.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"1723:TCP"= 1723:TCP:@xpsp2res.dll,-22015
"1701:UDP"= 1701:UDP:@xpsp2res.dll,-22016
"500:UDP"= 500:UDP:@xpsp2res.dll,-22017
.
R0 aswRvrt;avast! Revert;c:\winxp\system32\drivers\aswRvrt.sys [30.11.2013 15:52 49944]
R0 aswVmm;avast! VM Monitor;c:\winxp\system32\drivers\aswVmm.sys [30.11.2013 15:52 192352]
R0 SFAUDIO;Sonic Focus DSP Driver;c:\winxp\system32\drivers\sfaudio.sys [28.3.2008 10:14 24064]
R1 aswSnx;aswSnx;c:\winxp\system32\drivers\aswsnx.sys [30.11.2013 15:52 779536]
R1 aswSP;aswSP;c:\winxp\system32\drivers\aswsp.sys [30.11.2013 15:52 414520]
R1 nltdi;nltdi;c:\program files\NetLimiter 3\nltdi.sys [30.8.2010 13:24 5281672]
R2 aswHwid;avast! HardwareID;c:\winxp\system32\drivers\aswHwid.sys [3.5.2014 13:41 24184]
R2 aswMonFlt;aswMonFlt;c:\winxp\system32\drivers\aswmonflt.sys [30.11.2013 15:52 67824]
R3 Com4QLBEx;Com4QLBEx;c:\program files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [4.6.2011 17:21 227896]
R3 IFXTPM;IFXTPM;c:\winxp\system32\drivers\ifxtpm.sys [23.7.2008 11:31 44800]
R3 NETwNx32;___ Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows XP 32 Bit;c:\winxp\system32\drivers\NETwNx32.sys [26.11.2013 23:11 6650752]
R3 NLNdisMP;NLNdisMP;c:\winxp\system32\drivers\nlndis.sys [30.8.2010 13:24 5230088]
R3 rismc32;RICOH Smart Card Reader;c:\winxp\system32\drivers\rismc32.sys [26.11.2013 20:52 49152]
S3 e1yexpress;Intel(R) Gigabit Network Connections Driver;c:\winxp\system32\drivers\e1y5132.sys [26.11.2013 21:36 241880]
S3 NLNdisPT;NetLimiter Ndis Protocol Service;c:\winxp\system32\drivers\nlndis.sys [30.8.2010 13:24 5230088]
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-10-29 15:44 1089352 ----a-w- c:\program files\Google\Chrome\Application\38.0.2125.111\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2014-11-05 c:\winxp\Tasks\Adobe Flash Player Updater.job
- c:\winxp\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-01 16:05]
.
2014-11-06 c:\winxp\Tasks\avast! Emergency Update.job
- c:\program files\AVAST Software\Avast\AvastEmUpdate.exe [2014-07-17 07:40]
.
2014-11-06 c:\winxp\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2014-07-12 11:28]
.
2014-11-06 c:\winxp\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2014-07-12 11:28]
.
2014-10-18 c:\winxp\Tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job
- c:\winxp\system32\xp_eos.exe [2014-06-10 23:28]
.
2014-11-06 c:\winxp\Tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job
- c:\winxp\system32\xp_eos.exe [2014-06-10 23:28]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.1.1
FF - ProfilePath - c:\documents and settings\An\Data aplikací\Mozilla\Firefox\Profiles\oov9j4be.default-1393233160812\
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2014-11-06 18:44
Windows 5.1.2600 Service Pack 3 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'winlogon.exe'(1020)
c:\winxp\system32\netprovcredman.dll
.
- - - - - - - > 'explorer.exe'(3348)
c:\documents and settings\An\Data aplikací\Dropbox\bin\DropboxExt.22.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\Intel\WiFi\bin\S24EvMon.exe
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\winxp\System32\SCardSvr.exe
c:\program files\Intel\WiFi\bin\EvtEng.exe
c:\program files\NetLimiter 3\nlsvc.exe
c:\program files\Common Files\Intel\WirelessCommon\RegSrvc.exe
c:\winxp\System32\snmp.exe
c:\winxp\system32\spupdsvc.exe
c:\winxp\system32\wbem\unsecapp.exe
c:\winxp\system32\rundll32.exe
c:\program files\Hewlett-Packard\Shared\hpqwmiex.exe
c:\program files\OKsoftware\Svátky a výroc:\winxp\system32\wbem\unsecapp.exe
c:\program files\Hewlett-Packard\Shared\hpqToaster.exe
.
**************************************************************************
.
Celkový čas: 2014-11-06 18:47:26 - počítač byl restartován
ComboFix-quarantined-files.txt 2014-11-06 17:47
ComboFix2.txt 2014-11-05 20:18
ComboFix3.txt 2014-11-05 20:04
ComboFix4.txt 2014-11-05 15:21
ComboFix5.txt 2014-11-06 17:32
.
Před spuštěním: Volných bajtů: 138 429 722 624
Po spuštění: Volných bajtů: 138 484 776 960
.
- - End Of File - - B45E98BA023C8466707BDCC2A0334638
413FC2A0C716421B3158746D63736515

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: pomalé odesílání dat

#21 Příspěvek od Márty84 »

:-) ale povedlo se a to je hlavni ;-)


:arrow: Zkuste, jaka je rychlost netu v nouzovem rezimu s praci v siti.

:arrow: Pak dejte z normalniho rezimu novy log z RSIT.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Andrea
Návštěvník
Návštěvník
Příspěvky: 66
Registrován: 29 dub 2004 20:16
Bydliště: Studénka

Re: pomalé odesílání dat

#22 Příspěvek od Andrea »

:-)
tak rychlost odesílání už je jak má být :| a to i v normálním režimu... moc děkuji :) a posílám ještě ten log
Logfile of random's system information tool 1.10 (written by random/random)
Run by An at 2014-11-07 16:37:13
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 132 GB (28%) free of 477 GB
Total RAM: 3000 MB (60% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:37:17, on 7.11.2014
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINXP\System32\smss.exe
C:\WINXP\system32\csrss.exe
C:\WINXP\system32\winlogon.exe
C:\WINXP\system32\services.exe
C:\WINXP\system32\lsass.exe
C:\WINXP\system32\svchost.exe
C:\WINXP\system32\svchost.exe
C:\WINXP\System32\svchost.exe
C:\Program Files\Intel\WiFi\bin\S24EvMon.exe
C:\WINXP\system32\svchost.exe
C:\WINXP\system32\svchost.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\WINXP\system32\spoolsv.exe
C:\WINXP\System32\SCardSvr.exe
C:\WINXP\system32\svchost.exe
C:\Program Files\Intel\WiFi\bin\EvtEng.exe
C:\Program Files\NetLimiter 3\nlsvc.exe
C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
C:\WINXP\System32\snmp.exe
C:\WINXP\system32\spupdsvc.exe
C:\WINXP\system32\svchost.exe
C:\WINXP\system32\wbem\unsecapp.exe
C:\WINXP\system32\wbem\wmiprvse.exe
C:\WINXP\system32\svchost.exe
C:\WINXP\System32\alg.exe
C:\WINXP\system32\wbem\wmiprvse.exe
C:\WINXP\system32\rundll32.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe
C:\Program Files\Intel\WiFi\bin\ZCfgSvc.exe
C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
C:\WINXP\system32\hkcmd.exe
C:\WINXP\system32\igfxpers.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
C:\WINXP\System32\spool\DRIVERS\W32X86\3\fppdis2a.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\OKsoftware\Svátky a výročí\Vyroci.exe
C:\WINXP\system32\wbem\unsecapp.exe
C:\Program Files\NetLimiter 3\NLClientApp.exe
C:\Program Files\Hewlett-Packard\Shared\hpqToaster.exe
C:\WINXP\explorer.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\FastStone Capture\FSCapture.exe
C:\Documents and Settings\An\Dokumenty\Stažené soubory\RSIT.exe
C:\Program Files\trend micro\An.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\WiFi\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" /tf Intel Wireless Tray
O4 - HKLM\..\Run: [IgfxTray] C:\WINXP\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINXP\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINXP\system32\igfxpers.exe
O4 - HKLM\..\Run: [pdfFactory Pro Dispatcher v2] C:\WINXP\System32\spool\DRIVERS\W32X86\3\fppdis2a.exe
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [Svátky a výročí] C:\Program Files\OKsoftware\Svátky a výročí\Vyroci.exe
O4 - HKCU\..\Run: [NetLimiter] C:\Program Files\NetLimiter 3\NLClientApp.exe /tray
O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] C:\WINXP\system32\Macromed\Flash\FlashUtil32_15_0_0_152_Plugin.exe -update plugin
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINXP\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINXP\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINXP\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINXP\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINXP\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINXP\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINXP\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: NetLimiter 3 Service (nlsvc) - Locktime Software - C:\Program Files\NetLimiter 3\nlsvc.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: Intel(R) PROSet/Wireless WiFi Service (S24EventMonitor) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\S24EvMon.exe

--
End of file - 7082 bytes

======Scheduled tasks folder======

C:\WINXP\tasks\Adobe Flash Player Updater.job - C:\WINXP\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINXP\tasks\avast! Emergency Update.job - C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
C:\WINXP\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\WINXP\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINXP\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job - C:\WINXP\system32\xp_eos.exe
C:\WINXP\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job - C:\WINXP\system32\xp_eos.exe -c

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\An\Data aplikací\Mozilla\Firefox\Profiles\oov9j4be.default-1393233160812

prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"

"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
"{20a82645-c095-46ed-80e3-08825760534b}"=c:\WINXP\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 15.0.0.152 Plugin
"Path"=C:\WINXP\system32\Macromed\Flash\NPSWF32_15_0_0_152.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\WINXP\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.25.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.25.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23 60568]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"hpWirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2010-05-20 500792]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-07-29 1545512]
"QlbCtrl.exe"=C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2010-02-25 287800]
"IntelZeroConfig"=C:\Program Files\Intel\WiFi\bin\ZCfgSvc.exe [2010-07-19 1400832]
"IntelWireless"=C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [2010-07-19 1206544]
"IgfxTray"=C:\WINXP\system32\igfxtray.exe [2011-08-23 136472]
"HotKeysCmds"=C:\WINXP\system32\hkcmd.exe [2011-08-23 170264]
"Persistence"=C:\WINXP\system32\igfxpers.exe [2011-08-23 145688]
"pdfFactory Pro Dispatcher v2"=C:\WINXP\System32\spool\DRIVERS\W32X86\3\fppdis2a.exe [2004-01-24 393216]
"SoundMAXPnP"=C:\Program Files\Analog Devices\Core\smax4pnp.exe [2008-12-11 1044480]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-07-29 4085896]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Svátky a výročí"=C:\Program Files\OKsoftware\Svátky a výročí\Vyroci.exe [2004-12-12 960512]
"NetLimiter"=C:\Program Files\NetLimiter 3\NLClientApp.exe [2010-08-30 1781760]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"FlashPlayerUpdate"=C:\WINXP\system32\Macromed\Flash\FlashUtil32_15_0_0_152_Plugin.exe [2014-09-10 854192]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINXP\system32\igfxdev.dll [2011-04-22 214016]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\ASUS\RT-N10E Wireless Router Utilities\Discovery.exe"="C:\Program Files\ASUS\RT-N10E Wireless Router Utilities\Discovery.exe:*:Enabled:ASUS Device Discovery Application"
"C:\Program Files\ASUS\RT-N10E Wireless Router Utilities\Rescue.exe"="C:\Program Files\ASUS\RT-N10E Wireless Router Utilities\Rescue.exe:*:Enabled:ASUS Firmware Restoration Application"
"C:\Program Files\ASUS\RT-N10E Wireless Router Utilities\LiveUpdate.exe"="C:\Program Files\ASUS\RT-N10E Wireless Router Utilities\LiveUpdate.exe:*:Enabled:ASUS LiveUpdate Application"
"C:\Program Files\ASUS\RT-N10E Wireless Router Utilities\QISWizard.exe"="C:\Program Files\ASUS\RT-N10E Wireless Router Utilities\QISWizard.exe:*:Enabled:ASUS Router Setup Wizard Application"
"C:\Users\An\Data aplikací\Dropbox\bin\Dropbox.exe"="C:\Users\An\Data aplikací\Dropbox\bin\Dropbox.exe:*:Enabled:Dropbox"
"C:\Program Files\Google\Chrome\Application\chrome.exe"="C:\Program Files\Google\Chrome\Application\chrome.exe:*:Enabled:Google Chrome"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Users\An\Data aplikací\uTorrent\uTorrent.exe"="C:\Users\An\Data aplikací\uTorrent\uTorrent.exe:*:Enabled:µTorrent"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINXP\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.LAGS"=lagarith.dll
"VIDC.X264"=x264vfw.dll
"VIDC.XVID"=xvidvfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.lameacm"=lameACM.acm
"VIDC.FFDS"=ff_vfw.dll

======List of files/folders created in the last 1 month======

2014-11-07 16:35:07 ----SHD---- C:\RECYCLER
2014-11-06 18:47:29 ----A---- C:\ComboFix.txt
2014-11-04 16:45:13 ----A---- C:\Boot.bak
2014-11-04 16:45:08 ----RASHD---- C:\cmdcons
2014-11-04 16:41:11 ----A---- C:\WINXP\zip.exe
2014-11-04 16:41:11 ----A---- C:\WINXP\SWXCACLS.exe
2014-11-04 16:41:11 ----A---- C:\WINXP\SWSC.exe
2014-11-04 16:41:11 ----A---- C:\WINXP\SWREG.exe
2014-11-04 16:41:11 ----A---- C:\WINXP\sed.exe
2014-11-04 16:41:11 ----A---- C:\WINXP\PEV.exe
2014-11-04 16:41:11 ----A---- C:\WINXP\NIRCMD.exe
2014-11-04 16:41:11 ----A---- C:\WINXP\MBR.exe
2014-11-04 16:41:11 ----A---- C:\WINXP\grep.exe
2014-11-04 16:40:27 ----D---- C:\Qoobox
2014-11-04 16:40:09 ----D---- C:\WINXP\erdnt
2014-11-03 20:13:44 ----A---- C:\WINXP\zoek-delete.exe
2014-11-03 20:13:36 ----D---- C:\WINXP\Temp
2014-10-27 14:10:07 ----D---- C:\Documents and Settings\All Users.WINXP\Data aplikací\Doctor Web
2014-10-18 20:01:55 ----D---- C:\Documents and Settings\All Users.WINXP\Data aplikací\Locktime
2014-10-18 20:01:47 ----D---- C:\Program Files\NetLimiter 3
2014-10-10 07:32:38 ----HDC---- C:\WINXP\$NtUninstallKB2922229$
2014-10-10 07:30:52 ----HDC---- C:\WINXP\$NtUninstallKB2934207$
2014-10-10 07:28:47 ----HDC---- C:\WINXP\$NtUninstallKB2898715$
2014-10-10 07:28:42 ----HDC---- C:\WINXP\$NtUninstallKB2929961$
2014-10-10 07:28:25 ----HDC---- C:\WINXP\$NtUninstallKB2909212$
2014-10-10 07:28:00 ----HDC---- C:\WINXP\$NtUninstallKB2930275$
2014-10-10 07:27:51 ----HDC---- C:\WINXP\$NtUninstallKB2936068$
2014-10-10 07:27:40 ----HDC---- C:\WINXP\$NtUninstallKB2964358$

======List of files/folders modified in the last 1 month======

2014-11-07 16:37:17 ----D---- C:\Program Files\trend micro
2014-11-07 16:36:45 ----D---- C:\WINXP\Prefetch
2014-11-07 16:23:11 ----D---- C:\Program Files\Mozilla Firefox
2014-11-06 18:47:34 ----D---- C:\WINXP\system32\drivers
2014-11-06 18:45:24 ----A---- C:\Documents and Settings\All Users.WINXP\Data aplikací\HPWALog.txt
2014-11-06 18:44:13 ----D---- C:\WINXP
2014-11-06 18:44:13 ----A---- C:\WINXP\system.ini
2014-11-06 18:44:03 ----D---- C:\WINXP\system32\drivers\etc
2014-11-06 18:43:38 ----RD---- C:\Users
2014-11-06 18:42:16 ----D---- C:\WINXP\system32\config
2014-11-06 18:38:44 ----D---- C:\WINXP\system32
2014-11-06 18:38:44 ----D---- C:\WINXP\AppPatch
2014-11-06 18:38:40 ----D---- C:\Program Files\Common Files
2014-11-06 18:32:28 ----A---- C:\WINXP\SchedLgU.Txt
2014-11-06 18:27:11 ----D---- C:\Documents and Settings\An\Data aplikací\Skype
2014-11-05 18:59:36 ----D---- C:\Documents and Settings\An\Data aplikací\AVI ReComp
2014-11-05 16:07:40 ----D---- C:\Documents and Settings\An\Data aplikací\uTorrent
2014-11-05 16:06:15 ----D---- C:\Program Files
2014-11-04 19:28:33 ----D---- C:\WINXP\system32\CatRoot2
2014-11-04 19:13:54 ----RSHDC---- C:\WINXP\system32\dllcache
2014-11-04 16:45:13 ----RASH---- C:\boot.ini
2014-11-04 15:55:20 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2014-11-03 21:34:50 ----D---- C:\Program Files\Malwarebytes Anti-Malware
2014-11-03 20:17:31 ----D---- C:\WINXP\system32\ias
2014-11-03 20:04:25 ----D---- C:\zoek_backup
2014-11-03 19:35:30 ----A---- C:\WINXP\system32\PerfStringBackup.INI
2014-11-03 19:29:16 ----D---- C:\AdwCleaner
2014-11-01 21:08:02 ----D---- C:\WINXP\system32\MRT
2014-11-01 21:02:17 ----D---- C:\WINXP\Debug
2014-10-29 17:40:56 ----D---- C:\Program Files\rajce
2014-10-21 19:41:57 ----D---- C:\Documents and Settings\An\Data aplikací\Media Player Classic
2014-10-21 15:19:09 ----SHD---- C:\WINXP\Installer
2014-10-21 15:19:09 ----D---- C:\Documents and Settings\All Users.WINXP\Data aplikací\Skype
2014-10-21 15:19:03 ----RD---- C:\Program Files\Skype
2014-10-19 08:39:04 ----SD---- C:\WINXP\Tasks
2014-10-18 20:02:54 ----RSD---- C:\WINXP\assembly
2014-10-18 20:02:18 ----HD---- C:\WINXP\inf
2014-10-10 07:41:49 ----D---- C:\WINXP\Microsoft.NET
2014-10-10 07:30:21 ----D---- C:\WINXP\WinSxS
2014-10-08 19:38:36 ----SD---- C:\WINXP\Downloaded Program Files

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\WINXP\system32\drivers\aswRvrt.sys [2014-07-17 49944]
R0 aswVmm;avast! VM Monitor; C:\WINXP\system32\drivers\aswVmm.sys [2014-07-17 192352]
R0 hpdskflt;HP Disk Filter Driver; C:\WINXP\system32\DRIVERS\hpdskflt.sys [2008-05-23 24624]
R0 ohci1394;Hostitelský řadič IEEE 1394 dle standardu OHCI; C:\WINXP\system32\DRIVERS\ohci1394.sys [2008-04-14 61696]
R0 SFAUDIO;Sonic Focus DSP Driver; C:\WINXP\system32\drivers\sfaudio.sys [2008-03-28 24064]
R1 AswRdr;aswRdr; C:\WINXP\system32\drivers\aswRdr.sys [2014-07-17 55112]
R1 aswSnx;aswSnx; C:\WINXP\system32\drivers\aswSnx.sys [2014-07-17 779536]
R1 aswSP;aswSP; C:\WINXP\system32\drivers\aswSP.sys [2014-07-17 414520]
R1 aswTdi;aswTdi; C:\WINXP\system32\drivers\aswTdi.sys [2014-07-17 57800]
R1 intelppm;Řadič procesoru Intel; C:\WINXP\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 nltdi;nltdi; \??\C:\Program Files\NetLimiter 3\nltdi.sys []
R1 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\WINXP\system32\DRIVERS\wmiacpi.sys [2008-04-14 8832]
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINXP\System32\drivers\ws2ifsl.sys [2004-10-02 12032]
R2 aswHwid;avast! HardwareID; C:\WINXP\system32\drivers\aswHwid.sys [2014-07-17 24184]
R2 aswMonFlt;aswMonFlt; C:\WINXP\system32\drivers\aswMonFlt.sys [2014-07-17 67824]
R2 rimmptsk;rimmptsk; C:\WINXP\system32\DRIVERS\rimmptsk.sys [2009-06-25 48128]
R2 s24trans;WLAN Transport; C:\WINXP\system32\DRIVERS\s24trans.sys [2010-05-19 13952]
R3 Accelerometer;HP Accelerometer; C:\WINXP\system32\DRIVERS\Accelerometer.sys [2008-05-23 28592]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\WINXP\system32\drivers\ADIHdAud.sys [2008-12-11 338944]
R3 AEAudio;AE Audio Service; C:\WINXP\system32\drivers\AEAudio.sys [2007-07-13 94976]
R3 Arp1394;Protokol 1394 ARP Client; C:\WINXP\system32\DRIVERS\arp1394.sys [2008-04-14 60800]
R3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINXP\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 ialm;ialm; C:\WINXP\system32\DRIVERS\igxpmp32.sys [2011-04-22 2016704]
R3 IFXTPM;IFXTPM; C:\WINXP\system32\DRIVERS\IFXTPM.SYS [2008-07-23 44800]
R3 NETwNx32;___ Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows XP 32 Bit; C:\WINXP\system32\DRIVERS\NETwNx32.sys [2010-07-14 6650752]
R3 NIC1394;1394 Net Driver; C:\WINXP\system32\DRIVERS\nic1394.sys [2008-04-14 61824]
R3 NLNdisMP;NLNdisMP; C:\WINXP\system32\DRIVERS\nlndis.sys [2010-08-30 5230088]
R3 rismc32;RICOH Smart Card Reader; C:\WINXP\system32\DRIVERS\rismc32.sys [2009-07-20 49152]
R3 sdbus;sdbus; C:\WINXP\system32\DRIVERS\sdbus.sys [2008-04-14 79232]
R3 SynTP;Synaptics TouchPad Driver; C:\WINXP\system32\DRIVERS\SynTP.sys [2009-07-29 213680]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINXP\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
R3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINXP\System32\Drivers\wdf01000.sys [2008-03-27 503008]
S1 kbdhid;Ovladač klávesnice standardu HID; C:\WINXP\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
S3 e1yexpress;Intel(R) Gigabit Network Connections Driver; C:\WINXP\system32\DRIVERS\e1y5132.sys [2010-04-07 241880]
S3 HidUsb;Ovladač třídy standardu HID; C:\WINXP\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
S3 mbr;mbr; \??\C:\DOCUME~1\An\LOCALS~1\Temp\mbr.sys []
S3 mouhid;Ovladač myši standardu HID; C:\WINXP\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
S3 NLNdisPT;NetLimiter Ndis Protocol Service; C:\WINXP\system32\DRIVERS\nlndis.sys [2010-08-30 5230088]
S3 PcaSp50;Rawether NDIS 5.X SPR Protocol Driver; C:\WINXP\system32\DRIVERS\PcaSp50.sys [2010-09-07 28160]
S3 RimUsb;zařízení BlackBerry Smartphone; C:\WINXP\System32\Drivers\RimUsb.sys [2008-04-16 22784]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINXP\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
S3 usbscan;Ovladač skeneru USB; C:\WINXP\system32\DRIVERS\usbscan.sys [2013-07-03 14976]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINXP\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINXP\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINXP\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-07-17 50344]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2010-07-19 866576]
R2 nlsvc;NetLimiter 3 Service; C:\Program Files\NetLimiter 3\nlsvc.exe [2010-08-30 1085440]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2010-07-19 477456]
R2 S24EventMonitor;Intel(R) PROSet/Wireless WiFi Service; C:\Program Files\Intel\WiFi\bin\S24EvMon.exe [2010-07-19 966656]
R2 SNMP;SNMP; C:\WINXP\System32\snmp.exe [2008-04-14 32768]
R2 spupdsvc;Windows Service Pack Installer update service; C:\WINXP\system32\spupdsvc.exe [2007-11-30 26488]
R3 Com4QLBEx;Com4QLBEx; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2010-02-25 227896]
R3 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2009-04-30 229944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-07-12 116648]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINXP\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-09-10 267440]
S3 aspnet_state;ASP.NET State Service; C:\WINXP\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINXP\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINXP\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-07-12 116648]
S3 idsvc;Windows CardSpace; c:\WINXP\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 SNMPTRAP;Zachytávání pro službu SNMP; C:\WINXP\System32\snmptrap.exe [2008-04-14 8704]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINXP\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINXP\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: pomalé odesílání dat

#23 Příspěvek od Márty84 »

To rad slysim (ctu) :)


Poprosim jeste o jeden log a smaznem zbytky, at je to uplne ciste.


:!: Jestli bude Avast rvat, ze to chce otevrit v sandboxu, nedovolte to! Vyberte moznost Otevrit normalne
:arrow: Stahnete OTL http://oldtimer.geekstogo.com/OTL.exe , ulozte na plochu a spustte.
Oznacte polozky (dejte tam zatrzitka) Pro všechny uživatele, Kontrola na havěť "LOP" a Kontrola na havěť "Purity"
Do spodniho okna vlozte nasledujici text

Kód: Vybrat vše

CREATERESTOREPOINT

netsvcs
drivers32
savembr:0

/md5start
adp3132.sys
AGP440.sys
ahcix86.sys
ahcix86s.sys
atapi.sys
autochk.exe
cdrom.sys
cngaudit.dll
cryptsvc.dll
eNetHook.dll
eventlog.dll
explorer.exe
hal.dll
Changer.sys
iaStor.sys
iastorv.sys
IdeChnDr.sys
isapnp.sys
JakNDis.sys
KR10N.sys
logevent.dll
lsass.exe
mv61xx.sys
ndis.sys
netlogon.dll
ntelogon.dll
nvata.sys
nvatabus.sys
nvgts.sys
nvraid.sys
nvrd32.sys
nvstor.sys
nvstor32.sys
scecli.dll
sceclt.dll
smss.exe
svchost.exe
symmpi.sys
tcpip.sys
userinit.exe
vaxscsi.sys
viamraid.sys
viasraid.sys
ViPrt.sys
winlogon.exe
ws2_32.dll
/md5stop

%systemroot%*.* /U /s
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
%SYSTEMDRIVE%\*.exe

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c

type c:\boot.ini >> test.txt /c
%SystemDrive%\PhysicalMBR.bin /md5

*crack* /s
*keygen* /s
*AntiWPA* /s
*loader* /s
*minodlogin* /s
*tnod* /s
*AutoKMS* /s
*activator* /s
*serial* /s
*w7lxe* /s
Kliknete na Prohledat
Po skenu se vytvori dva logy (OTL.Txt a Extras.txt), oba sem vlozte (kdyz budou dlouhe, rozdelte je do vice prispevku).
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Andrea
Návštěvník
Návštěvník
Příspěvky: 66
Registrován: 29 dub 2004 20:16
Bydliště: Studénka

Re: pomalé odesílání dat

#24 Příspěvek od Andrea »

bohužel se mi to nezdařilo... :?:
zkoušela jsem to 3X... několik hodin to jelo, a pak program spadnul...
:117: tak nevím...

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: pomalé odesílání dat

#25 Příspěvek od Márty84 »

Obcas se to stane, ze OTL vyhodi chybu a kousne se :roll:

Spustte ho podle stejneho navodu jeste jednou, ale s timto upravenym skriptem

Kód: Vybrat vše

CREATERESTOREPOINT

netsvcs
drivers32
savembr:0

/md5start
atapi.sys
autochk.exe
cdrom.sys
explorer.exe
hal.dll
scecli.dll
svchost.exe
tcpip.sys
userinit.exe
winlogon.exe
/md5stop

%systemroot%*.* /U /s
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
%SYSTEMDRIVE%\*.exe

*crack* /s
*keygen* /s
*AntiWPA* /s
*loader* /s
*minodlogin* /s
*tnod* /s
*AutoKMS* /s
*activator* /s
*serial* /s
*w7lxe* /s
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Andrea
Návštěvník
Návštěvník
Příspěvky: 66
Registrován: 29 dub 2004 20:16
Bydliště: Studénka

Re: pomalé odesílání dat

#26 Příspěvek od Andrea »

tak se to zase žvejklo :42:

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: pomalé odesílání dat

#27 Příspěvek od Márty84 »

Tak jinak :)


:arrow: Napiste mi velikost adresare plochy (c:\documents and settings\An\Plocha)




:!: Jestli bude Avast rvat, ze to chce otevrit v sandboxu, nedovolte to! Vyberte moznost Otevrit normalne
:arrow: Stahnete OTM http://oldtimer.geekstogo.com/OTM.exe , ulozte nejlepe na plochu a spustte.
Do leveho okna zkopirujte tento skript (vcetne te dvojtecky pred slovem commands)

Kód: Vybrat vše

:commands
[EMPTYTEMP]
[EMPTYFLASH]
[Purity]
[CreateRestorePoint]

:services
gupdate
AdobeFlashPlayerUpdateSvc
gupdatem

:files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp
C:\WINXP\tasks\Adobe Flash Player Updater.job
C:\WINXP\tasks\GoogleUpdateTaskMachineCore.job
C:\WINXP\tasks\GoogleUpdateTaskMachineUA.job
C:\WINXP\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job
C:\WINXP\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job
C:\WINXP\zoek-delete.exe
C:\Program Files\Malwarebytes' Anti-Malware
C:\Program Files\Malwarebytes Anti-Malware
C:\zoek_backup

:reg
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"FlashPlayerUpdate"=-
Kliknete na MoveIt a nechte program pracovat. Pri otazce na restart souhlaste.
Po restartu sem dejte log, ktery na vas vyskoci, nebo bude zde C:\_OTM\MovedFiles\xxxxxxxx_xxxxxx (misto tech x budou cisla, predstavujici datum a cas spusteni)
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Andrea
Návštěvník
Návštěvník
Příspěvky: 66
Registrován: 29 dub 2004 20:16
Bydliště: Studénka

Re: pomalé odesílání dat

#28 Příspěvek od Andrea »

plocha : 196 MB (205 799 528 bajtů)





All processes killed
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: All Users.WINXP

User: An
->Temp folder emptied: 82577 bytes
->Temporary Internet Files folder emptied: 12281130 bytes
->FireFox cache emptied: 356534051 bytes
->Google Chrome cache emptied: 24621189 bytes
->Flash cache emptied: 827 bytes

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User.WINXP
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes

User: k
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 207102 bytes
->FireFox cache emptied: 60535420 bytes

User: Public

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 2504 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 32810 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 32902 bytes
RecycleBin emptied: 1883868 bytes

Total Files Cleaned = 435,00 mb


[EMPTYFLASH]

User: All Users

User: All Users.WINXP

User: An
->Flash cache emptied: 0 bytes

User: Default

User: Default User

User: Default User.WINXP

User: k

User: Public

Total Flash Files Cleaned = 0,00 mb

Restore point Set: OTM Restore Point
========== SERVICES/DRIVERS ==========
Service gupdate stopped successfully!
Service gupdate deleted successfully!
Service AdobeFlashPlayerUpdateSvc stopped successfully!
Service AdobeFlashPlayerUpdateSvc deleted successfully!
Service gupdatem stopped successfully!
Service gupdatem deleted successfully!
========== FILES ==========
File/Folder C:\WINXP\system32\*.tmp.dll not found.
File/Folder C:\WINXP\system32\SET*.tmp not found.
File/Folder C:\WINXP\*.tmp not found.
C:\WINXP\tasks\Adobe Flash Player Updater.job moved successfully.
C:\WINXP\tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\WINXP\tasks\GoogleUpdateTaskMachineUA.job moved successfully.
C:\WINXP\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job moved successfully.
C:\WINXP\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job moved successfully.
C:\WINXP\zoek-delete.exe moved successfully.
C:\Program Files\Malwarebytes' Anti-Malware folder moved successfully.
C:\Program Files\Malwarebytes Anti-Malware\Plugins folder moved successfully.
C:\Program Files\Malwarebytes Anti-Malware\Languages folder moved successfully.
C:\Program Files\Malwarebytes Anti-Malware\imageformats folder moved successfully.
C:\Program Files\Malwarebytes Anti-Malware\Chameleon\Windows folder moved successfully.
C:\Program Files\Malwarebytes Anti-Malware\Chameleon folder moved successfully.
C:\Program Files\Malwarebytes Anti-Malware\accessible folder moved successfully.
C:\Program Files\Malwarebytes Anti-Malware folder moved successfully.
C:\zoek_backup\C_Program Files_ComPlus Applications folder moved successfully.
C:\zoek_backup\C_found.000\dir0163.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0162.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0161.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0160.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0159.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0158.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0157.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0156.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0155.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0154.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0153.chk\Last Active folder moved successfully.
C:\zoek_backup\C_found.000\dir0153.chk\Active folder moved successfully.
C:\zoek_backup\C_found.000\dir0153.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0152.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0151.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0150.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0149.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0148.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0147.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0146.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0145.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0144.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0143.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0142.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0141.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0140.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0139.chk\User Data\Temp folder moved successfully.
C:\zoek_backup\C_found.000\dir0139.chk\User Data\PepperFlash folder moved successfully.
C:\zoek_backup\C_found.000\dir0139.chk\User Data\Default\User StyleSheets folder moved successfully.
C:\zoek_backup\C_found.000\dir0139.chk\User Data\Default\Cache folder moved successfully.
C:\zoek_backup\C_found.000\dir0139.chk\User Data\Default folder moved successfully.
C:\zoek_backup\C_found.000\dir0139.chk\User Data folder moved successfully.
C:\zoek_backup\C_found.000\dir0139.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0138.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0137.chk\Dětské písničky a říkadla\Dětské písničky a říkadla 1 folder moved successfully.
C:\zoek_backup\C_found.000\dir0137.chk\Dětské písničky a říkadla folder moved successfully.
C:\zoek_backup\C_found.000\dir0137.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0136.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0135.chk\metadata folder moved successfully.
C:\zoek_backup\C_found.000\dir0135.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0134.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0133.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0132.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0131.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0130.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0129.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0128.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0127.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0126.chk\The_Walking_Dead_S03 folder moved successfully.
C:\zoek_backup\C_found.000\dir0126.chk\The_Walking_Dead_S02 folder moved successfully.
C:\zoek_backup\C_found.000\dir0126.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0125.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0124.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0123.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0122.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0121.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0120.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0119.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0118.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0117.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0116.chk\4.2\uvod folder moved successfully.
C:\zoek_backup\C_found.000\dir0116.chk\4.2 folder moved successfully.
C:\zoek_backup\C_found.000\dir0116.chk\1.3.2013 folder moved successfully.
C:\zoek_backup\C_found.000\dir0116.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0115.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0114.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0113.chk\A8 folder moved successfully.
C:\zoek_backup\C_found.000\dir0113.chk\71 folder moved successfully.
C:\zoek_backup\C_found.000\dir0113.chk\59 folder moved successfully.
C:\zoek_backup\C_found.000\dir0113.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0112.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0111.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0110.chk\D7 folder moved successfully.
C:\zoek_backup\C_found.000\dir0110.chk\BF folder moved successfully.
C:\zoek_backup\C_found.000\dir0110.chk\BA folder moved successfully.
C:\zoek_backup\C_found.000\dir0110.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0109.chk\na tisk\vytištěno folder moved successfully.
C:\zoek_backup\C_found.000\dir0109.chk\na tisk folder moved successfully.
C:\zoek_backup\C_found.000\dir0109.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0108.chk\F9 folder moved successfully.
C:\zoek_backup\C_found.000\dir0108.chk\E3 folder moved successfully.
C:\zoek_backup\C_found.000\dir0108.chk\C3 folder moved successfully.
C:\zoek_backup\C_found.000\dir0108.chk\C2 folder moved successfully.
C:\zoek_backup\C_found.000\dir0108.chk\66 folder moved successfully.
C:\zoek_backup\C_found.000\dir0108.chk\5A folder moved successfully.
C:\zoek_backup\C_found.000\dir0108.chk\2C folder moved successfully.
C:\zoek_backup\C_found.000\dir0108.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0107.chk\B4 folder moved successfully.
C:\zoek_backup\C_found.000\dir0107.chk\A5 folder moved successfully.
C:\zoek_backup\C_found.000\dir0107.chk\94 folder moved successfully.
C:\zoek_backup\C_found.000\dir0107.chk\88 folder moved successfully.
C:\zoek_backup\C_found.000\dir0107.chk\69 folder moved successfully.
C:\zoek_backup\C_found.000\dir0107.chk\52 folder moved successfully.
C:\zoek_backup\C_found.000\dir0107.chk\19 folder moved successfully.
C:\zoek_backup\C_found.000\dir0107.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0106.chk\F7 folder moved successfully.
C:\zoek_backup\C_found.000\dir0106.chk\D2 folder moved successfully.
C:\zoek_backup\C_found.000\dir0106.chk\CC folder moved successfully.
C:\zoek_backup\C_found.000\dir0106.chk\3F folder moved successfully.
C:\zoek_backup\C_found.000\dir0106.chk\2F folder moved successfully.
C:\zoek_backup\C_found.000\dir0106.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0105.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0104.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0103.chk\FF folder moved successfully.
C:\zoek_backup\C_found.000\dir0103.chk\74 folder moved successfully.
C:\zoek_backup\C_found.000\dir0103.chk\6C folder moved successfully.
C:\zoek_backup\C_found.000\dir0103.chk\50 folder moved successfully.
C:\zoek_backup\C_found.000\dir0103.chk\1D folder moved successfully.
C:\zoek_backup\C_found.000\dir0103.chk\0A folder moved successfully.
C:\zoek_backup\C_found.000\dir0103.chk\03 folder moved successfully.
C:\zoek_backup\C_found.000\dir0103.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0102.chk\E7 folder moved successfully.
C:\zoek_backup\C_found.000\dir0102.chk\A8 folder moved successfully.
C:\zoek_backup\C_found.000\dir0102.chk\7B folder moved successfully.
C:\zoek_backup\C_found.000\dir0102.chk\5D folder moved successfully.
C:\zoek_backup\C_found.000\dir0102.chk\3D folder moved successfully.
C:\zoek_backup\C_found.000\dir0102.chk\27 folder moved successfully.
C:\zoek_backup\C_found.000\dir0102.chk\06 folder moved successfully.
C:\zoek_backup\C_found.000\dir0102.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0101.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0100.chk\A0 folder moved successfully.
C:\zoek_backup\C_found.000\dir0100.chk\94 folder moved successfully.
C:\zoek_backup\C_found.000\dir0100.chk\8E folder moved successfully.
C:\zoek_backup\C_found.000\dir0100.chk\65 folder moved successfully.
C:\zoek_backup\C_found.000\dir0100.chk\60 folder moved successfully.
C:\zoek_backup\C_found.000\dir0100.chk\06 folder moved successfully.
C:\zoek_backup\C_found.000\dir0100.chk\04 folder moved successfully.
C:\zoek_backup\C_found.000\dir0100.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0099.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0098.chk\F7 folder moved successfully.
C:\zoek_backup\C_found.000\dir0098.chk\EE folder moved successfully.
C:\zoek_backup\C_found.000\dir0098.chk\EC folder moved successfully.
C:\zoek_backup\C_found.000\dir0098.chk\E8 folder moved successfully.
C:\zoek_backup\C_found.000\dir0098.chk\C0 folder moved successfully.
C:\zoek_backup\C_found.000\dir0098.chk\AB folder moved successfully.
C:\zoek_backup\C_found.000\dir0098.chk\5F folder moved successfully.
C:\zoek_backup\C_found.000\dir0098.chk\59 folder moved successfully.
C:\zoek_backup\C_found.000\dir0098.chk\42 folder moved successfully.
C:\zoek_backup\C_found.000\dir0098.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0097.chk\E0 folder moved successfully.
C:\zoek_backup\C_found.000\dir0097.chk\CF folder moved successfully.
C:\zoek_backup\C_found.000\dir0097.chk\BF folder moved successfully.
C:\zoek_backup\C_found.000\dir0097.chk\A2 folder moved successfully.
C:\zoek_backup\C_found.000\dir0097.chk\76 folder moved successfully.
C:\zoek_backup\C_found.000\dir0097.chk\72 folder moved successfully.
C:\zoek_backup\C_found.000\dir0097.chk\50 folder moved successfully.
C:\zoek_backup\C_found.000\dir0097.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0096.chk\EA folder moved successfully.
C:\zoek_backup\C_found.000\dir0096.chk\DF folder moved successfully.
C:\zoek_backup\C_found.000\dir0096.chk\A1 folder moved successfully.
C:\zoek_backup\C_found.000\dir0096.chk\99 folder moved successfully.
C:\zoek_backup\C_found.000\dir0096.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0095.chk\9D folder moved successfully.
C:\zoek_backup\C_found.000\dir0095.chk\88 folder moved successfully.
C:\zoek_backup\C_found.000\dir0095.chk\86 folder moved successfully.
C:\zoek_backup\C_found.000\dir0095.chk\50 folder moved successfully.
C:\zoek_backup\C_found.000\dir0095.chk\2E folder moved successfully.
C:\zoek_backup\C_found.000\dir0095.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0094.chk\DE folder moved successfully.
C:\zoek_backup\C_found.000\dir0094.chk\DB folder moved successfully.
C:\zoek_backup\C_found.000\dir0094.chk\B4 folder moved successfully.
C:\zoek_backup\C_found.000\dir0094.chk\82 folder moved successfully.
C:\zoek_backup\C_found.000\dir0094.chk\29 folder moved successfully.
C:\zoek_backup\C_found.000\dir0094.chk\27 folder moved successfully.
C:\zoek_backup\C_found.000\dir0094.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0093.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0092.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0091.chk\C9 folder moved successfully.
C:\zoek_backup\C_found.000\dir0091.chk\9E folder moved successfully.
C:\zoek_backup\C_found.000\dir0091.chk\62 folder moved successfully.
C:\zoek_backup\C_found.000\dir0091.chk\5C folder moved successfully.
C:\zoek_backup\C_found.000\dir0091.chk\40 folder moved successfully.
C:\zoek_backup\C_found.000\dir0091.chk\2B folder moved successfully.
C:\zoek_backup\C_found.000\dir0091.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0090.chk\E4 folder moved successfully.
C:\zoek_backup\C_found.000\dir0090.chk\CE folder moved successfully.
C:\zoek_backup\C_found.000\dir0090.chk\7A folder moved successfully.
C:\zoek_backup\C_found.000\dir0090.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0089.chk\E8 folder moved successfully.
C:\zoek_backup\C_found.000\dir0089.chk\E7 folder moved successfully.
C:\zoek_backup\C_found.000\dir0089.chk\D9 folder moved successfully.
C:\zoek_backup\C_found.000\dir0089.chk\A2 folder moved successfully.
C:\zoek_backup\C_found.000\dir0089.chk\7F folder moved successfully.
C:\zoek_backup\C_found.000\dir0089.chk\47 folder moved successfully.
C:\zoek_backup\C_found.000\dir0089.chk\35 folder moved successfully.
C:\zoek_backup\C_found.000\dir0089.chk\32 folder moved successfully.
C:\zoek_backup\C_found.000\dir0089.chk\00 folder moved successfully.
C:\zoek_backup\C_found.000\dir0089.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0088.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0087.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0086.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0085.chk\zahrada folder moved successfully.
C:\zoek_backup\C_found.000\dir0085.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0084.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0083.chk\obývák folder moved successfully.
C:\zoek_backup\C_found.000\dir0083.chk\moje folder moved successfully.
C:\zoek_backup\C_found.000\dir0083.chk\2011-08-19 svině zemědělci folder moved successfully.
C:\zoek_backup\C_found.000\dir0083.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0082.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0081.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0080.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0079.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0078.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0077.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0076.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0075.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0074.chk\DiamondDash-9747dd1fd3f6daa55a03f3e2a3fe7252.swf folder moved successfully.
C:\zoek_backup\C_found.000\dir0074.chk\DiamondDash-55796136ff81dc6e42032252ae75cca3.swf folder moved successfully.
C:\zoek_backup\C_found.000\dir0074.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0073.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0072.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0071.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0070.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0069.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0068.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0067.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0066.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0065.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0064.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0063.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0062.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0061.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0060.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0059.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0058.chk\System.Messaging folder moved successfully.
C:\zoek_backup\C_found.000\dir0058.chk\System.Dynamic folder moved successfully.
C:\zoek_backup\C_found.000\dir0058.chk\System.Drawing folder moved successfully.
C:\zoek_backup\C_found.000\dir0058.chk\System.DirectoryServices folder moved successfully.
C:\zoek_backup\C_found.000\dir0058.chk\System.Deployment folder moved successfully.
C:\zoek_backup\C_found.000\dir0058.chk\System.Data.SqlXml folder moved successfully.
C:\zoek_backup\C_found.000\dir0058.chk\System.Configuration.Install folder moved successfully.
C:\zoek_backup\C_found.000\dir0058.chk\System.Configuration folder moved successfully.
C:\zoek_backup\C_found.000\dir0058.chk\System folder moved successfully.
C:\zoek_backup\C_found.000\dir0058.chk\sysglobl folder moved successfully.
C:\zoek_backup\C_found.000\dir0058.chk\Microsoft.VisualC folder moved successfully.
C:\zoek_backup\C_found.000\dir0058.chk\Microsoft.VisualBasic folder moved successfully.
C:\zoek_backup\C_found.000\dir0058.chk\Microsoft.JScript folder moved successfully.
C:\zoek_backup\C_found.000\dir0058.chk\Microsoft.CSharp folder moved successfully.
C:\zoek_backup\C_found.000\dir0058.chk\Accessibility folder moved successfully.
C:\zoek_backup\C_found.000\dir0058.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0057.chk\System.EnterpriseServices folder moved successfully.
C:\zoek_backup\C_found.000\dir0057.chk\System.Data folder moved successfully.
C:\zoek_backup\C_found.000\dir0057.chk\mscorlib folder moved successfully.
C:\zoek_backup\C_found.000\dir0057.chk\CustomMarshalers folder moved successfully.
C:\zoek_backup\C_found.000\dir0057.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0056.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0055.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0054.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0053.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0052.chk\MYSTERY folder moved successfully.
C:\zoek_backup\C_found.000\dir0052.chk\KATASTROFICKÉ folder moved successfully.
C:\zoek_backup\C_found.000\dir0052.chk\HISTORICKÉ folder moved successfully.
C:\zoek_backup\C_found.000\dir0052.chk\DOBRODRUŽNÝ folder moved successfully.
C:\zoek_backup\C_found.000\dir0052.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0051.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0050.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0049.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0048.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0047.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0046.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0045.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0044.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0043.chk\nero folder moved successfully.
C:\zoek_backup\C_found.000\dir0043.chk\ELITEBOO 6930P DRIVERY folder moved successfully.
C:\zoek_backup\C_found.000\dir0043.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0042.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0041.chk\Extension Rules folder moved successfully.
C:\zoek_backup\C_found.000\dir0041.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0040.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0039.chk\sounds folder moved successfully.
C:\zoek_backup\C_found.000\dir0039.chk\arpot\TEMP folder moved successfully.
C:\zoek_backup\C_found.000\dir0039.chk\arpot folder moved successfully.
C:\zoek_backup\C_found.000\dir0039.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0038.chk\#yourlust.com folder moved successfully.
C:\zoek_backup\C_found.000\dir0038.chk\#www.winporn.com folder moved successfully.
C:\zoek_backup\C_found.000\dir0038.chk\#www.vprdeli.cz folder moved successfully.
C:\zoek_backup\C_found.000\dir0038.chk\#www.sreality.cz folder moved successfully.
C:\zoek_backup\C_found.000\dir0038.chk\#www.spankmonkeytube.com folder moved successfully.
C:\zoek_backup\C_found.000\dir0038.chk\#www.picnik.com folder moved successfully.
C:\zoek_backup\C_found.000\dir0038.chk\#www.nuvid.com folder moved successfully.
C:\zoek_backup\C_found.000\dir0038.chk\#www.jenpromuze.cz folder moved successfully.
C:\zoek_backup\C_found.000\dir0038.chk\#www.glaseuro.cz folder moved successfully.
C:\zoek_backup\C_found.000\dir0038.chk\#www.efukt.com folder moved successfully.
C:\zoek_backup\C_found.000\dir0038.chk\#www.cockcheese.com folder moved successfully.
C:\zoek_backup\C_found.000\dir0038.chk\#thumbs.vstreamcdn.com folder moved successfully.
C:\zoek_backup\C_found.000\dir0038.chk\#thumbs.crakpass.com folder moved successfully.
C:\zoek_backup\C_found.000\dir0038.chk\#staticedge.hardsextube.com folder moved successfully.
C:\zoek_backup\C_found.000\dir0038.chk\#stat.ed.cupidplc.com folder moved successfully.
C:\zoek_backup\C_found.000\dir0038.chk\#ssl.aukro.cz folder moved successfully.
C:\zoek_backup\C_found.000\dir0038.chk\#partner.maxiporno.cz folder moved successfully.
C:\zoek_backup\C_found.000\dir0038.chk\#nuvid.com folder moved successfully.
C:\zoek_backup\C_found.000\dir0038.chk\#mpsnare.iesnare.com folder moved successfully.
C:\zoek_backup\C_found.000\dir0038.chk\#imgx1.livejasmin.com folder moved successfully.
C:\zoek_backup\C_found.000\dir0038.chk\#imgx.livejasmin.com folder moved successfully.
C:\zoek_backup\C_found.000\dir0038.chk\#img.fastcdn.me folder moved successfully.
C:\zoek_backup\C_found.000\dir0038.chk\#img.ceskatelevize.cz folder moved successfully.
C:\zoek_backup\C_found.000\dir0038.chk\#grab.orsm.net folder moved successfully.
C:\zoek_backup\C_found.000\dir0038.chk\#d261sv3xac0f7i.cloudfront.net folder moved successfully.
C:\zoek_backup\C_found.000\dir0038.chk\#cdn1.telemetryverification.net folder moved successfully.
C:\zoek_backup\C_found.000\dir0038.chk\#cc1.midasplayer.com folder moved successfully.
C:\zoek_backup\C_found.000\dir0038.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\zopim.com folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\yourlust.com\#kernelteam folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\yourlust.com folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\www.vprdeli.cz\imagevue\imagevue2.swf folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\www.vprdeli.cz\imagevue folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\www.vprdeli.cz folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\www.nuvid.com\player\videoplayer.swf folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\www.nuvid.com\player folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\www.nuvid.com folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\www.jenprozeny.cz folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\www.jenpromuze.cz\sites\all folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\www.jenpromuze.cz\sites folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\www.jenpromuze.cz folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\www.ikea.com\ms\flash\rooms_ideas\mpa2\MPA2.swf folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\www.ikea.com\ms\flash\rooms_ideas\mpa2 folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\www.ikea.com\ms\flash\rooms_ideas folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\www.ikea.com\ms\flash folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\www.ikea.com\ms folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\www.ikea.com folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\www.efukt.com folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\www.cz.n-mobile.net folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\www.cockcheese.com\player.swf folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\www.cockcheese.com folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\ulice.nova.cz folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\thumbs.vstreamcdn.com\ahmestatic\player\flowplayer.commercial-3.2.7.swf folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\thumbs.vstreamcdn.com\ahmestatic\player folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\thumbs.vstreamcdn.com\ahmestatic folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\thumbs.vstreamcdn.com folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\staticedge.hststatic.com folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\staticedge.hardsextube.com\common\swf\vidii_34dc9d7af1a2638ed4bf60f4cbeb4f27.swf folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\staticedge.hardsextube.com\common\swf folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\staticedge.hardsextube.com\common folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\staticedge.hardsextube.com folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\stat.ed.cupidplc.com\images\ed2.swf folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\stat.ed.cupidplc.com\images folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\stat.ed.cupidplc.com folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\ssl.aukro.cz\site_images\common folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\ssl.aukro.cz\site_images\1 folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\ssl.aukro.cz\site_images folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\ssl.aukro.cz folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\partner.maxiporno.cz\swf\mpPlayer.swf folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\partner.maxiporno.cz\swf folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\partner.maxiporno.cz folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\mpsnare.iesnare.com folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\imgx1.livejasmin.com\flash\cdnrouter.swf folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\imgx1.livejasmin.com\flash folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\imgx1.livejasmin.com folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\imgx.livejasmin.com\flash\memberchat346.swf folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\imgx.livejasmin.com\flash folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\imgx.livejasmin.com folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\img.fastcdn.me folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\img.ceskatelevize.cz folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\heureka.cz folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\grab.orsm.net\php\flowplayer.commercial-3.2.7.swf folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\grab.orsm.net\php folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\grab.orsm.net folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\fanda.nova.cz folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\doug1izaerwt3.cloudfront.net folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk\cdn-fck.tnaflix.com folder moved successfully.
C:\zoek_backup\C_found.000\dir0037.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0036.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0035.chk\schody folder moved successfully.
C:\zoek_backup\C_found.000\dir0035.chk\profil folder moved successfully.
C:\zoek_backup\C_found.000\dir0035.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0034.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0033.chk\Nero StartSmart folder moved successfully.
C:\zoek_backup\C_found.000\dir0033.chk\Nero BackItUp\Files folder moved successfully.
C:\zoek_backup\C_found.000\dir0033.chk\Nero BackItUp folder moved successfully.
C:\zoek_backup\C_found.000\dir0033.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0032.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0031.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0030.chk\video4stream_3.15.swf folder moved successfully.
C:\zoek_backup\C_found.000\dir0030.chk\video4stream_3.13.swf folder moved successfully.
C:\zoek_backup\C_found.000\dir0030.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0029.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0028.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0027.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0026.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0025.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0024.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0023.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0022.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0021.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0020.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0019.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0018.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0017.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0016.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0015.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0014.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0013.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0012.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0011.chk\zh_CN folder moved successfully.
C:\zoek_backup\C_found.000\dir0011.chk\en_US folder moved successfully.
C:\zoek_backup\C_found.000\dir0011.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0010.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0009.chk\MATUSKA WALDEMAR - Nejvetsi slagry (CZ 2011) folder moved successfully.
C:\zoek_backup\C_found.000\dir0009.chk\Incubus folder moved successfully.
C:\zoek_backup\C_found.000\dir0009.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0008.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0007.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0006.chk\SPPlugins folder moved successfully.
C:\zoek_backup\C_found.000\dir0006.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0005.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0004.chk\System32 folder moved successfully.
C:\zoek_backup\C_found.000\dir0004.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0003.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0002.chk\fb folder moved successfully.
C:\zoek_backup\C_found.000\dir0002.chk\ee folder moved successfully.
C:\zoek_backup\C_found.000\dir0002.chk\db folder moved successfully.
C:\zoek_backup\C_found.000\dir0002.chk\d6 folder moved successfully.
C:\zoek_backup\C_found.000\dir0002.chk\d0 folder moved successfully.
C:\zoek_backup\C_found.000\dir0002.chk\c7 folder moved successfully.
C:\zoek_backup\C_found.000\dir0002.chk\b3 folder moved successfully.
C:\zoek_backup\C_found.000\dir0002.chk\a6 folder moved successfully.
C:\zoek_backup\C_found.000\dir0002.chk\a0 folder moved successfully.
C:\zoek_backup\C_found.000\dir0002.chk\95 folder moved successfully.
C:\zoek_backup\C_found.000\dir0002.chk\80 folder moved successfully.
C:\zoek_backup\C_found.000\dir0002.chk\7e folder moved successfully.
C:\zoek_backup\C_found.000\dir0002.chk\7c folder moved successfully.
C:\zoek_backup\C_found.000\dir0002.chk\76 folder moved successfully.
C:\zoek_backup\C_found.000\dir0002.chk\6f folder moved successfully.
C:\zoek_backup\C_found.000\dir0002.chk\6e folder moved successfully.
C:\zoek_backup\C_found.000\dir0002.chk\6d folder moved successfully.
C:\zoek_backup\C_found.000\dir0002.chk\63 folder moved successfully.
C:\zoek_backup\C_found.000\dir0002.chk\56 folder moved successfully.
C:\zoek_backup\C_found.000\dir0002.chk\54 folder moved successfully.
C:\zoek_backup\C_found.000\dir0002.chk\4b folder moved successfully.
C:\zoek_backup\C_found.000\dir0002.chk\36 folder moved successfully.
C:\zoek_backup\C_found.000\dir0002.chk\35 folder moved successfully.
C:\zoek_backup\C_found.000\dir0002.chk\34 folder moved successfully.
C:\zoek_backup\C_found.000\dir0002.chk\26 folder moved successfully.
C:\zoek_backup\C_found.000\dir0002.chk\23 folder moved successfully.
C:\zoek_backup\C_found.000\dir0002.chk\1a folder moved successfully.
C:\zoek_backup\C_found.000\dir0002.chk\11 folder moved successfully.
C:\zoek_backup\C_found.000\dir0002.chk\02 folder moved successfully.
C:\zoek_backup\C_found.000\dir0002.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0001.chk folder moved successfully.
C:\zoek_backup\C_found.000\dir0000.chk folder moved successfully.
C:\zoek_backup\C_found.000 folder moved successfully.
C:\zoek_backup\C_DOCUME~1_An_NABDKA~1_Programy_SmartTweak Software folder moved successfully.
C:\zoek_backup\C_DOCUME~1_ALLUSE~1.WIN_DATAAP~1_Hewlett-Packard folder moved successfully.
C:\zoek_backup folder moved successfully.
========== REGISTRY ==========
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce\\FlashPlayerUpdate deleted successfully.

OTM by OldTimer - Version 3.1.21.0 log created on 11092014_110709

Files moved on Reboot...
C:\Documents and Settings\An\Local Settings\Temp\Skype\DbTemp\temp-FKf3VT9SDhYLqfs3GUraaorc moved successfully.
C:\Documents and Settings\An\Local Settings\Temp\Skype\DbTemp\temp-JRrXYKgzdyMolB1lJ7v8leKR moved successfully.
C:\Documents and Settings\An\Local Settings\Temp\Skype\DbTemp\temp-meqGKztMCBDmLyVAw5MuJgru moved successfully.
C:\Documents and Settings\An\Local Settings\Temp\Skype\DbTemp\temp-SHR6XYW3J83zaN3TXTBPmeyP moved successfully.
File move failed. C:\WINXP\temp\_avast_\AvastLock.txt scheduled to be moved on reboot.
File move failed. C:\WINXP\temp\_avast_\Webshlock.txt scheduled to be moved on reboot.
C:\WINXP\temp\Perflib_Perfdata_1fc.dat moved successfully.
C:\WINXP\temp\Perflib_Perfdata_df4.dat moved successfully.

Registry entries deleted on Reboot...

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: pomalé odesílání dat

#29 Příspěvek od Márty84 »

:arrow: Prejmenujte ComboFix na Uninstall a spustte ho. CF by se mel odinstalovat.

:arrow:
vyosek píše: :arrow: T-Cleaner http://tharifas.sweb.cz/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry mohou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: Stahnete OTC http://oldtimer.geekstogo.com/OTC.exe , ulozte a spustte.
Kliknete na napis CleanUp a pote OK - Po uklidu dojde k restartu pc.

:arrow: Stahnete Ccleaner http://www.filehippo.com/download_ccleaner a spustte.
Pri instalaci pozor na toolbar (ci jine doplnky), jestli vam nabidne jeho instalaci, tak zruste zatrzitko.
Po spusteni se ocitnete ve funkci Cistic. Vlevo je spousta zatrzitek. Pozor dejte hlavne na kos, pokud nechate zatrzene, vzdy ho vysype.
Dale, podle toho jak je nastaven, smaze vsechna hesla ulozena na netu!!! Takze jestli mate nastavene, at si pocitac hesla pamatuje (coz neni pro bezpecnost dobre), budete je muset pak napsat znova rucne (napr mail, facebook, ruzna fora atd.)
Kliknete na Analyzovat a az dokonci analyzu, kliknete na Spustit Cleaner.
Potom kliknete vlevo na funkci Registry
Kliknete na Hledej problemy, kdyz najde, kliknete na Opravit problemy. Nabidne Vam zalohu, tu udelejte a ulozte ji tak, at ji v pripade potreby najdete.
Funkce Nastroje umoznuje odinstalovani programu. Je dukladnejsi nez samotny windows!
(Pokud je v pc vice uzivatelskych uctu, pouzijte program i v nich)

:arrow: Defragmentujte disk(y) (SSD Disky ne!)
Stahnete program Defraggler http://www.stahuj.centrum.cz/utility_a_ ... efraggler/
Pri instalaci opet pozor na toolbar
Po nainstalovani program spustte a kliknete na Analyzovat, po analyze kliknete na Defragmentovat a programek odvede svou praci.




:arrow: Pak napiste, jak je na tom pc.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Andrea
Návštěvník
Návštěvník
Příspěvky: 66
Registrován: 29 dub 2004 20:16
Bydliště: Studénka

Re: pomalé odesílání dat

#30 Příspěvek od Andrea »

T cleaner se mi taky žvýknul... :?:
:68:

Zamčeno