Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Kontrola logu-pomalá reakce PC..díky

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
LANGEN
Návštěvník
Návštěvník
Příspěvky: 36
Registrován: 15 dub 2007 10:20

Kontrola logu-pomalá reakce PC..díky

#1 Příspěvek od LANGEN »

Logfile of random's system information tool 1.08 (written by random/random)
Run by Dima at 2010-07-15 22:21:02
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 61 GB (42%) free of 146 GB
Total RAM: 1022 MB (12% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:22:22, on 15.7.2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18928)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
c:\Program Files\Bioscrypt\VeriSoft\Bin\AsGHost.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\conime.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\PROGRA~1\Crawler\Toolbar\CToolbar.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Dima\Downloads\RSIT.exe
C:\Program Files\trend micro\Dima.exe

R1 - HKCU\Software\Microsoft\Internet Explorer,(Default) = Download Directory
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.igoogle.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} - C:\PROGRA~1\Crawler\Toolbar\ctbr.dll
O2 - BHO: WebTransBHO Class - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - C:\ProgramData\LangSoft\WebIE.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: VeriSoft Access Manager - {DF21F1DB-80C6-11D3-9483-B03D0EC10000} - c:\Program Files\Bioscrypt\VeriSoft\Bin\ItIEAddIn.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_0.dll
O3 - Toolbar: WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\ProgramData\LangSoft\WebIE.dll
O3 - Toolbar: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_0.dll
O3 - Toolbar: &Crawler lišta - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - C:\PROGRA~1\Crawler\Toolbar\ctbr.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [WAWifiMessage] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O8 - Extra context menu item: Crawler Search - tbr:iemenu
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: &Slovník - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: PDF Download - {F1C0FD6C-A6A0-49a7-A932-71A56461867F} - C:\Program Files\Nitro PDF\PDF Download\NitroPDF.dll (HKCU)
O17 - HKLM\System\CCS\Services\Tcpip\..\{CD924E42-FB3E-44C5-BABD-E7619EFBB4C7}: NameServer = 77.48.254.254,77.48.100.254
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} - C:\PROGRA~1\Crawler\Toolbar\ctbr.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: 602Updater (602XML Updater) - Software602 a.s. - C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Com4Qlb - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Update Service (gupdate1c9864d230b9076) (gupdate1c9864d230b9076) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - c:\Program Files\Roxio\Roxio MyDVD Basic v9\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: QuickPlay Background Capture Service (QBCS) (QPCapSvc) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\QPCapSvc.exe
O23 - Service: QuickPlay Task Scheduler (QTS) (QPSched) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\QPSched.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 9782 bytes

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-44120419-2813058082-2718072232-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-44120419-2813058082-2718072232-1000UA.job
C:\Windows\tasks\User_Feed_Synchronization-{CB95C61E-96FF-4F34-A244-8CFF29526C0D}.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-06-19 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}]
C:\PROGRA~1\Crawler\Toolbar\ctbr.dll [2010-06-01 1240016]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]
WebTransBHO Class - C:\ProgramData\LangSoft\WebIE.dll [2010-03-02 798771]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll [2009-06-21 312928]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2010-05-14 191792]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-02-08 804136]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-04-12 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DF21F1DB-80C6-11D3-9483-B03D0EC10000}]
VeriSoft Access Manager - c:\Program Files\Bioscrypt\VeriSoft\Bin\ItIEAddIn.dll [2006-11-21 71192]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2010-04-16 1067872]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
BS Player Toolbar - C:\Program Files\BS_Player\tbBS_0.dll [2009-03-10 2079256]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\ProgramData\LangSoft\WebIE.dll [2010-03-02 798771]
{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - BS Player Toolbar - C:\Program Files\BS_Player\tbBS_0.dll [2009-03-10 2079256]
{4B3803EA-5230-4DC3-A7FC-33638F3D3542} - &Crawler lišta - C:\PROGRA~1\Crawler\Toolbar\ctbr.dll [2010-06-01 1240016]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2010-04-16 1067872]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"WAWifiMessage"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe [2007-01-10 317128]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2010-02-26 2140880]
""= []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-06-09 976832]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-06-20 35760]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
C:\Windows\system32\NvMcTray.dll [2009-10-03 92776]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Lavasoft Ad-Aware Service]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
"BindDirectlyToPropertySetStorage"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 months======

2010-07-14 10:52:49 ----A---- C:\ProgramData\MobileTV.exe
2010-07-14 10:52:49 ----A---- C:\ProgramData\DVD.exe
2010-07-14 10:52:48 ----D---- C:\ProgramData\CSY
2010-07-14 10:52:48 ----A---- C:\ProgramData\MPV.exe
2010-07-14 10:52:48 ----A---- C:\ProgramData\Karaoke.exe
2010-07-14 10:52:48 ----A---- C:\ProgramData\hpqp.txt
2010-07-14 10:52:48 ----A---- C:\ProgramData\Games.exe
2010-07-14 10:52:09 ----A---- C:\ProgramData\hpqp.ini
2010-07-14 09:34:41 ----ASH---- C:\hiberfil.sys
2010-07-13 23:08:23 ----SHD---- C:\Config.Msi
2010-07-13 23:02:46 ----D---- C:\Windows\Hewlett-Packard
2010-07-13 22:59:08 ----D---- C:\Users\Dima\AppData\Roaming\HpUpdate
2010-07-13 10:02:15 ----D---- C:\ProgramData\Windows Genuine Advantage
2010-07-12 23:00:22 ----D---- C:\Program Files\Microsoft Visual Studio
2010-07-06 21:23:06 ----A---- C:\Windows\system32\drivers\fssfltr.sys
2010-07-06 21:18:00 ----D---- C:\Program Files\Windows Live SkyDrive
2010-07-06 20:59:04 ----D---- C:\Windows\system32\WindowsPowerShell
2010-07-06 20:56:13 ----A---- C:\Windows\system32\winrsmgr.dll
2010-07-06 20:55:47 ----A---- C:\Windows\system32\wsmprovhost.exe
2010-07-06 20:55:47 ----A---- C:\Windows\system32\winrshost.exe
2010-07-06 20:55:47 ----A---- C:\Windows\system32\winrs.exe
2010-07-06 20:55:32 ----A---- C:\Windows\system32\wsmplpxy.dll
2010-07-06 20:55:32 ----A---- C:\Windows\system32\winrssrv.dll
2010-07-06 20:55:28 ----A---- C:\Windows\system32\WsmRes.dll
2010-07-06 20:55:28 ----A---- C:\Windows\system32\wevtfwd.dll
2010-07-06 20:55:28 ----A---- C:\Windows\system32\wecutil.exe
2010-07-06 20:55:28 ----A---- C:\Windows\system32\wecsvc.dll
2010-07-06 20:55:28 ----A---- C:\Windows\system32\wecapi.dll
2010-07-06 20:55:27 ----A---- C:\Windows\system32\pwrshplugin.dll
2010-07-06 20:55:07 ----A---- C:\Windows\system32\winrm.vbs
2010-07-06 20:55:04 ----A---- C:\Windows\system32\WsmWmiPl.dll
2010-07-06 20:55:04 ----A---- C:\Windows\system32\WsmAuto.dll
2010-07-06 20:55:04 ----A---- C:\Windows\system32\winrscmd.dll
2010-07-06 20:55:03 ----A---- C:\Windows\system32\WsmSvc.dll
2010-07-06 20:55:03 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
2010-07-06 20:55:03 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
2010-07-06 18:02:27 ----D---- C:\Program Files\Broadcom
2010-07-06 17:37:34 ----D---- C:\Avenger
2010-07-06 17:37:33 ----A---- C:\avenger.txt
2010-07-06 11:11:10 ----D---- C:\Users\Dima\AppData\Roaming\r2 Studios
2010-07-06 11:11:10 ----D---- C:\ProgramData\r2 Studios
2010-07-06 11:10:58 ----D---- C:\Program Files\r2 Studios
2010-07-05 15:29:55 ----A---- C:\Windows\system32\drivers\wdfcoinstaller01005.dll
2010-07-05 15:29:54 ----A---- C:\Windows\system32\drivers\HpqKbFiltr.sys
2010-07-04 22:05:55 ----D---- C:\Program Files\Secunia
2010-07-04 21:38:23 ----D---- C:\Program Files\KeePass Password Safe 2
2010-06-25 12:31:04 ----D---- C:\Users\Dima\AppData\Roaming\Jízdní řád ČD
2010-06-25 12:31:04 ----D---- C:\Program Files\Jízdní řád ČD
2010-06-23 09:03:11 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2010-06-23 09:03:11 ----A---- C:\Windows\system32\PresentationHost.exe
2010-06-23 09:03:11 ----A---- C:\Windows\system32\netfxperf.dll
2010-06-23 09:03:11 ----A---- C:\Windows\system32\mscoree.dll
2010-06-23 09:03:10 ----A---- C:\Windows\system32\dfshim.dll
2010-06-23 09:02:19 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2010-06-23 09:02:19 ----A---- C:\Windows\system32\Apphlpdm.dll
2010-06-18 19:27:05 ----D---- C:\Program Files\Defraggler

======List of files/folders modified in the last 1 months======

2010-07-15 22:21:49 ----D---- C:\Windows\temp
2010-07-15 22:21:08 ----D---- C:\Program Files\trend micro
2010-07-15 21:48:48 ----D---- C:\Users\Dima\AppData\Roaming\esmska
2010-07-15 19:10:27 ----SHD---- C:\System Volume Information
2010-07-15 14:58:56 ----RD---- C:\Program Files
2010-07-15 14:25:44 ----D---- C:\Program Files\Pinnacle
2010-07-15 09:03:45 ----D---- C:\Users\Dima\AppData\Roaming\KeePass
2010-07-14 12:05:24 ----D---- C:\Users\Dima\AppData\Roaming\BSplayer
2010-07-14 12:03:23 ----D---- C:\Users\Dima\AppData\Roaming\BSplayer Pro
2010-07-14 11:33:08 ----D---- C:\Windows\system32\Tasks
2010-07-14 11:33:03 ----RSD---- C:\Windows\Fonts
2010-07-14 11:29:40 ----HD---- C:\Program Files\InstallShield Installation Information
2010-07-14 10:52:49 ----D---- C:\ProgramData
2010-07-14 09:34:41 ----D---- C:\ProgramData\Hewlett-Packard
2010-07-13 23:08:56 ----SHD---- C:\Windows\Installer
2010-07-13 23:02:46 ----D---- C:\Windows
2010-07-13 22:56:51 ----D---- C:\Windows\winsxs
2010-07-13 22:55:20 ----D---- C:\Program Files\HP
2010-07-13 22:50:44 ----D---- C:\SwSetup
2010-07-13 22:40:29 ----D---- C:\Windows\system32\catroot
2010-07-13 22:40:23 ----D---- C:\Program Files\Windows Mail
2010-07-13 22:36:34 ----D---- C:\ProgramData\Microsoft Help
2010-07-13 19:32:50 ----D---- C:\Windows\System32
2010-07-13 19:32:49 ----D---- C:\Windows\inf
2010-07-13 19:32:49 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-07-13 14:39:17 ----D---- C:\Users\Dima\AppData\Roaming\602XML
2010-07-13 11:14:42 ----D---- C:\ProgramData\Spyware Terminator
2010-07-13 11:12:59 ----D---- C:\Users\Dima\AppData\Roaming\Spyware Terminator
2010-07-13 11:06:06 ----SD---- C:\Users\Dima\AppData\Roaming\Microsoft
2010-07-13 10:17:58 ----D---- C:\Windows\system32\config
2010-07-13 10:17:49 ----D---- C:\Windows\Tasks
2010-07-13 10:17:49 ----D---- C:\Windows\system32\spool
2010-07-13 10:17:49 ----D---- C:\Windows\system32\Msdtc
2010-07-13 10:17:48 ----D---- C:\Windows\system32\wbem
2010-07-13 10:17:48 ----D---- C:\Windows\registration
2010-07-13 10:02:03 ----SD---- C:\Windows\Downloaded Program Files
2010-07-13 09:20:57 ----D---- C:\Windows\system32\catroot2
2010-07-12 23:11:24 ----D---- C:\Program Files\Microsoft Office
2010-07-12 22:33:00 ----D---- C:\Windows\ShellNew
2010-07-12 22:32:59 ----RSD---- C:\Windows\assembly
2010-07-12 22:32:53 ----SD---- C:\ProgramData\Microsoft
2010-07-12 22:32:53 ----D---- C:\ProgramData\FLEXnet
2010-07-12 22:32:53 ----D---- C:\Program Files\MSBuild
2010-07-12 22:32:53 ----D---- C:\Program Files\Mozilla Firefox
2010-07-12 22:32:52 ----D---- C:\Program Files\Mozilla Firefox 3.1 Beta 2
2010-07-12 22:32:52 ----D---- C:\Program Files\Microsoft.NET
2010-07-12 22:32:52 ----D---- C:\Program Files\Microsoft Visual Studio 8
2010-07-12 22:32:45 ----D---- C:\Program Files\Common Files\microsoft shared
2010-07-12 22:32:45 ----D---- C:\Program Files\Common Files\DESIGNER
2010-07-12 22:32:45 ----D---- C:\Program Files\Common Files
2010-07-12 22:32:23 ----RHD---- C:\MSOCache
2010-07-12 18:53:37 ----D---- C:\Windows\Microsoft.NET
2010-07-12 18:39:36 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
2010-07-12 16:58:33 ----D---- C:\Windows\Prefetch
2010-07-11 09:36:17 ----D---- C:\Users\Dima\AppData\Roaming\Media Player Classic
2010-07-07 21:04:19 ----D---- C:\Users\Dima\AppData\Roaming\Skype
2010-07-07 08:48:38 ----D---- C:\Windows\rescache
2010-07-06 21:23:07 ----D---- C:\Windows\system32\drivers
2010-07-06 21:23:06 ----DC---- C:\Windows\system32\DRVSTORE
2010-07-06 21:23:04 ----D---- C:\Program Files\Windows Live
2010-07-06 20:59:05 ----D---- C:\Windows\system32\cs-CZ
2010-07-06 20:59:05 ----D---- C:\Windows\PolicyDefinitions
2010-07-06 18:19:16 ----D---- C:\HP
2010-07-06 18:01:59 ----D---- C:\Windows\SMINST
2010-07-06 17:21:47 ----D---- C:\ProgramData\VistaCodecs
2010-07-06 17:11:21 ----D---- C:\Users\Dima\AppData\Roaming\Opera
2010-07-06 11:00:53 ----D---- C:\Program Files\Java
2010-07-05 16:10:13 ----D---- C:\Program Files\ProFact 3.0 Free
2010-07-05 15:24:05 ----D---- C:\Program Files\Adobe
2010-07-05 15:24:02 ----D---- C:\Program Files\Common Files\Adobe AIR
2010-07-02 21:39:05 ----A---- C:\Windows\system32\mrt.exe
2010-07-01 08:00:23 ----D---- C:\Windows\system32\LogFiles
2010-06-30 21:05:56 ----D---- C:\Program Files\Spyware Terminator
2010-06-30 07:34:51 ----D---- C:\Program Files\Google
2010-06-27 11:45:13 ----D---- C:\Users\Dima\AppData\Roaming\gtk-2.0
2010-06-24 20:38:54 ----D---- C:\Program Files\CCleaner
2010-06-23 09:12:36 ----D---- C:\Windows\AppPatch
2010-06-23 09:12:35 ----D---- C:\Windows\ehome
2010-06-19 21:01:45 ----D---- C:\Program Files\The KMPlayer

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 Lbd;Lbd; C:\Windows\system32\DRIVERS\Lbd.sys [2009-01-24 64160]
R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2008-11-20 43872]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2007-11-05 685816]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2010-02-26 114984]
R1 sp_rsdrv2;Spyware Terminator Driver 2; \??\C:\Windows\system32\drivers\sp_rsdrv2.sys [2010-06-13 142592]
R2 adfs;adfs; C:\Windows\system32\drivers\adfs.sys [2010-03-29 73312]
R2 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2010-02-26 133512]
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2010-02-26 134488]
R2 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2010-02-26 41312]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2007-02-24 39936]
R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2007-01-23 42496]
R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2007-01-23 37376]
R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2007-07-10 8704]
R3 ATSWPDRV;AuthenTec TruePrint USB Driver (SwipeSensor); C:\Windows\system32\DRIVERS\ATSwpDrv.sys [2007-03-28 140424]
R3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl6.sys [2007-01-03 534016]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-10 22528]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-18 92160]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2009-04-10 29696]
R3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2007-04-18 79664]
R3 btwavdt;Bluetooth AVDT; C:\Windows\system32\drivers\btwavdt.sys [2007-04-18 81200]
R3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2007-04-18 16432]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT32.sys [2008-03-04 188416]
R3 Epfwndis;Eset Personal Firewall; C:\Windows\system32\DRIVERS\Epfwndis.sys [2010-02-26 32584]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\System32\Drivers\GEARAspiWDM.sys [2008-04-17 15464]
R3 HBtnKey;HBtnKey; C:\Windows\system32\DRIVERS\cpqbttn.sys [2006-06-28 9472]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys [2007-06-18 16768]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2007-06-20 984064]
R3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2007-06-20 208896]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvmfdx32.sys [2007-03-07 1059112]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2009-10-03 9905096]
R3 nvsmu;nvsmu; C:\Windows\system32\DRIVERS\nvsmu.sys [2007-02-17 12032]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-10 148992]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-04-10 89088]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2010-05-27 245936]
R3 usbvideo;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-18 134016]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2007-06-20 660480]
S3 acsrf68q;acsrf68q; C:\Windows\system32\drivers\acsrf68q.sys []
S3 BCM43XV;Broadcom Extensible 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl6.sys [2007-01-03 534016]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2009-04-10 507904]
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-01-18 5632]
S3 E100B;Intel(R) PRO Adapter Driver; C:\Windows\system32\DRIVERS\e100b325.sys [2006-11-02 163328]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-04-28 54632]
S3 FsUsbExDisk;FsUsbExDisk; \??\C:\Windows\system32\FsUsbExDisk.SYS [2009-01-08 36608]
S3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDART.sys [2007-06-26 163328]
S3 HSFHWAZL;HSFHWAZL; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2006-11-02 200704]
S3 ialm;ialm; C:\Windows\system32\DRIVERS\igdkmd32.sys [2006-10-19 1380864]
S3 Ltn_stk7070P;PCTV based TV tuner device; C:\Windows\system32\DRIVERS\Ltn_stk7070P.sys [2007-06-14 466048]
S3 Ltn_stkrc;PCTV Infrared Receiver; C:\Windows\system32\DRIVERS\Ltn_stkrc.sys [2007-06-13 13440]
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-18 8192]
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-18 5888]
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-18 5504]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-18 6016]
S3 nmwcd;Nokia USB Phone Parent; C:\Windows\system32\drivers\ccdcmb.sys [2010-02-26 18176]
S3 nmwcdc;Nokia USB Generic; C:\Windows\system32\drivers\ccdcmbo.sys [2010-02-26 22528]
S3 nmwcdnsu;Nokia USB Flashing Phone Parent; C:\Windows\system32\drivers\nmwcdnsu.sys [2010-02-26 137344]
S3 nmwcdnsuc;Nokia USB Flashing Generic; C:\Windows\system32\drivers\nmwcdnsuc.sys [2010-02-26 8320]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [2007-11-02 47360]
S3 PSI;PSI; C:\Windows\system32\DRIVERS\psi_mf.sys [2010-05-28 14896]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2010-02-26 8192]
S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys []
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-18 35328]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2009-04-10 27648]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2010-02-26 8192]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-18 83328]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\Windows\system32\svchost.exe [2008-01-18 21504]
R2 ASBroker;Logon Session Broker; C:\Windows\System32\svchost.exe [2008-01-18 21504]
R2 ASChannel;Local Communication Channel; C:\Windows\System32\svchost.exe [2008-01-18 21504]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-18 21504]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2010-02-26 810120]
R2 HP Health Check Service;HP Health Check Service; c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [2008-10-09 94208]
R2 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2006-05-02 135168]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2009-10-03 219752]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2010-05-14 249136]
R2 sp_rssrv;Spyware Terminator Realtime Shield Service; C:\Program Files\Spyware Terminator\sp_rsser.exe [2010-06-13 488960]
R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2007-07-10 386560]
S2 gupdate1c9864d230b9076;Google Update Service (gupdate1c9864d230b9076); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-02-04 133104]
S3 602XML Updater;602Updater; C:\Program Files\Common Files\soft602\602updsvc\602updsvc.exe [2010-04-14 73728]
S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2007-12-12 72704]
S3 Com4Qlb;Com4Qlb; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe [2007-03-05 110592]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2010-02-26 33560]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2009-07-27 655624]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-18 21504]
S3 fsssvc;Služba Windows Live Zabezpečení rodiny; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2010-04-28 704872]
S3 IDriverT;InstallDriver Table Manager; c:\Program Files\Roxio\Roxio MyDVD Basic v9\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2009-05-18 73728]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 QPCapSvc;QuickPlay Background Capture Service (QBCS); C:\Program Files\HP\QuickPlay\Kernel\TV\QPCapSvc.exe [2010-03-08 292216]
S3 QPSched;QuickPlay Task Scheduler (QTS); C:\Program Files\HP\QuickPlay\Kernel\TV\QPSched.exe [2010-03-08 116080]
S3 RoxMediaDB9;RoxMediaDB9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe [2007-02-12 880640]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2010-04-27 611840]
S3 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2007-02-17 74656]
S3 usnjsvc;Messenger Sharing Folders USN Journal Reader service; C:\Program Files\MSN Messenger\usnsvc.exe [2007-01-19 97136]
S3 WAS;@%windir%\system32\inetsrv\iisres.dll,-30001; C:\Windows\system32\svchost.exe [2008-01-18 21504]

-----------------EOF-----------------
jsem si zase hrál na chytrého a tak to dopadlo, je to pomalé, dlouho trvá, než se otevřou programy...asi to prodám :-)

Díky

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119418
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Kontrola logu-pomalá reakce PC..díky

#2 Příspěvek od Rudy »

Log vypadá OK. Zkuste PC vyčistit CCleanerem: http://www.viry.cz/forum/viewtopic.php?f=46&t=7478 .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

LANGEN
Návštěvník
Návštěvník
Příspěvky: 36
Registrován: 15 dub 2007 10:20

Re: Kontrola logu-pomalá reakce PC..díky

#3 Příspěvek od LANGEN »

to vše jsem udělal, ten problém bude někde jinde, jenže nevím kde :-)
PC je projeté cc, defragmentoval jsem to, ..nevím

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119418
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Kontrola logu-pomalá reakce PC..díky

#4 Příspěvek od Rudy »

Dejte log z ComboFix.
Stahnete a ulozte nejlepe na plochu ComboFix: http://download.bleepingcomputer.com/sUBs/ComboFix.exe

pote spustte aplikaci pod uctem s administratorskym opravnenim

hned po startu se zobrazi obrazovka s licencnimi podminkami, pokracujte kliknutim na tlacitko Ano.

v klidu si postavte na kafe (cela akce trva cca. 5-10 minut, nekdy i dele - dle toho, o jak rychly stroj se jedna a kolika soubory se skener bude muset prodirat), behem skenu se nepokousejte spoustet zadne jine aplikace ani nic jineho

behem skenovani nepropadejte panice, vas stroj muze byt restartovan (predevsim pri prvni aplikaci skeneru)

upozorneni: pokud pouzivate antispyware s rezidentnim stitem, prepnete jeho rezidentni stit do Install Mode, pripadne jej po dobu skenu uplne deaktivujte, protoze dochazi pri skenu a vymazu pripadneho malware k nezadoucim kolizim s rezidentem antispyware
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

LANGEN
Návštěvník
Návštěvník
Příspěvky: 36
Registrován: 15 dub 2007 10:20

Re: Kontrola logu-pomalá reakce PC..díky

#5 Příspěvek od LANGEN »

combo provedeno

ComboFix 10-07-15.01 - Dima 15.07.2010 22:47:03.3.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.420.1029.18.1022.351 [GMT 2:00]
Spuštěný z: c:\users\Dima\Downloads\ComboFix.exe
SP: Lavasoft Ad-Watch Live! *disabled* (Updated) {67844DAE-4F77-4D69-9457-98E8CFFDAA22}
SP: Spyware Terminator *disabled* (Updated) {55EE49A8-16BE-4601-BBE6-607B7F7317DE}
SP: SUPERAntiSpyware *disabled* (Updated) {222A897C-5018-402e-943F-7E7AC8560DA7}
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
* Rezidentní štít AV je zapnutý

.

((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\users\Dima\AppData\Roaming\Microsoft\Windows\Recent\KeePass (2).url
c:\users\Dima\AppData\Roaming\Microsoft\Windows\Recent\KeePass.url
c:\windows\system32\%appdata%
c:\windows\xpsp1hfm.log

.
((((((((((((((((((((((((( Soubory vytvořené od 2010-06-15 do 2010-07-15 )))))))))))))))))))))))))))))))
.

2010-07-15 21:00 . 2010-07-15 21:02 -------- d-----w- c:\users\Dima\AppData\Local\temp
2010-07-15 21:00 . 2010-07-15 21:00 -------- d-----w- c:\users\Public\AppData\Local\temp
2010-07-15 21:00 . 2010-07-15 21:00 -------- d-----w- c:\users\Default\AppData\Local\temp
2010-07-14 09:34 . 2010-07-14 09:38 -------- d-----w- c:\users\Dima\AppData\Local\QuickPlay
2010-07-14 08:52 . 2010-07-14 08:52 -------- d-----w- c:\programdata\CSY
2010-07-13 21:02 . 2010-07-13 21:02 -------- d-----w- c:\windows\Hewlett-Packard
2010-07-13 20:59 . 2010-07-14 06:34 -------- d-----w- c:\users\Dima\AppData\Roaming\HpUpdate
2010-07-12 12:43 . 2010-07-12 12:43 -------- d-----w- c:\users\Dima\AppData\Local\Browser Guard 2010
2010-07-06 19:23 . 2010-04-28 05:44 54632 ----a-w- c:\windows\system32\drivers\fssfltr.sys
2010-07-06 19:18 . 2010-07-06 19:18 -------- d-----w- c:\program files\Windows Live SkyDrive
2010-07-06 18:56 . 2009-10-09 21:56 2048 ----a-w- c:\windows\system32\winrsmgr.dll
2010-07-06 16:02 . 2010-07-06 16:02 -------- d-----w- c:\program files\Broadcom
2010-07-06 14:58 . 2010-07-06 14:58 -------- d-----w- c:\users\Dima\AppData\Local\Google Translator
2010-07-06 09:11 . 2010-07-06 09:11 -------- d-----w- c:\users\Dima\AppData\Roaming\r2 Studios
2010-07-06 09:11 . 2010-07-06 09:11 -------- d-----w- c:\programdata\r2 Studios
2010-07-06 09:10 . 2010-07-06 09:10 -------- d-----w- c:\program files\r2 Studios
2010-07-05 13:29 . 2006-11-02 04:09 1419232 ----a-w- c:\windows\system32\drivers\wdfcoinstaller01005.dll
2010-07-05 13:29 . 2007-06-18 14:12 16768 ----a-w- c:\windows\system32\drivers\HpqKbFiltr.sys
2010-07-04 20:05 . 2010-07-04 20:05 -------- d-----w- c:\program files\Secunia
2010-07-04 19:38 . 2010-07-04 19:52 -------- d-----w- c:\program files\KeePass Password Safe 2
2010-06-25 10:31 . 2010-06-25 10:31 -------- d-----w- c:\program files\Jízdní řád ČD
2010-06-25 10:31 . 2010-06-25 10:31 -------- d-----w- c:\users\Dima\AppData\Roaming\Jízdní řád ČD
2010-06-23 07:03 . 2009-11-08 08:55 99176 ----a-w- c:\windows\system32\PresentationHostProxy.dll
2010-06-23 07:03 . 2009-11-08 08:55 49472 ----a-w- c:\windows\system32\netfxperf.dll
2010-06-23 07:03 . 2009-11-08 08:55 297808 ----a-w- c:\windows\system32\mscoree.dll
2010-06-23 07:03 . 2009-11-08 08:55 295264 ----a-w- c:\windows\system32\PresentationHost.exe
2010-06-23 07:03 . 2009-11-08 08:55 1130824 ----a-w- c:\windows\system32\dfshim.dll
2010-06-23 07:02 . 2010-04-16 16:43 28672 ----a-w- c:\windows\system32\Apphlpdm.dll
2010-06-23 07:02 . 2010-04-16 14:39 4240384 ----a-w- c:\windows\system32\GameUXLegacyGDFs.dll
2010-06-18 17:27 . 2010-06-24 18:40 -------- d-----w- c:\program files\Defraggler

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-07-15 21:01 . 2009-01-09 20:55 190364 ----a-w- c:\programdata\nvModes.dat
2010-07-15 21:00 . 2007-11-02 00:15 2934 ----a-w- c:\windows\bthservsdp.dat
2010-07-15 20:21 . 2010-06-12 17:20 -------- d-----w- c:\program files\trend micro
2010-07-15 19:48 . 2010-06-14 18:17 -------- d-----w- c:\users\Dima\AppData\Roaming\esmska
2010-07-15 13:25 . 2007-11-02 00:57 119944 ----a-w- c:\users\Dima\AppData\Local\GDIPFONTCACHEV1.DAT
2010-07-15 12:25 . 2008-06-14 18:01 -------- d-----w- c:\program files\Pinnacle
2010-07-15 07:03 . 2009-03-13 19:23 -------- d-----w- c:\users\Dima\AppData\Roaming\KeePass
2010-07-14 10:05 . 2008-09-13 08:14 -------- d-----w- c:\users\Dima\AppData\Roaming\BSplayer
2010-07-14 10:03 . 2008-09-13 08:14 -------- d-----w- c:\users\Dima\AppData\Roaming\BSplayer Pro
2010-07-14 09:35 . 2010-07-14 08:52 2864396 ----a-w- c:\programdata\MPV.exe
2010-07-14 09:34 . 2010-07-14 08:52 2989660 ----a-w- c:\programdata\DVD.exe
2010-07-14 09:29 . 2007-08-22 08:16 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-07-14 08:52 . 2010-07-14 08:52 3063561 ----a-w- c:\programdata\MobileTV.exe
2010-07-14 08:52 . 2010-07-14 08:52 2331174 ----a-w- c:\programdata\Karaoke.exe
2010-07-14 08:52 . 2010-07-14 08:52 2231606 ----a-w- c:\programdata\Games.exe
2010-07-14 07:34 . 2007-08-22 09:30 -------- d-----w- c:\programdata\Hewlett-Packard
2010-07-13 20:55 . 2007-08-22 08:58 -------- d-----w- c:\program files\HP
2010-07-13 20:40 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail
2010-07-13 20:36 . 2007-11-02 16:34 -------- d-----w- c:\programdata\Microsoft Help
2010-07-13 17:32 . 2007-01-08 21:09 602092 ----a-w- c:\windows\system32\perfh005.dat
2010-07-13 17:32 . 2007-01-08 21:09 116204 ----a-w- c:\windows\system32\perfc005.dat
2010-07-13 12:39 . 2010-05-28 08:16 -------- d-----w- c:\users\Dima\AppData\Roaming\602XML
2010-07-13 09:14 . 2010-06-13 07:47 -------- d-----w- c:\programdata\Spyware Terminator
2010-07-13 09:12 . 2010-06-13 07:47 -------- d-----w- c:\users\Dima\AppData\Roaming\Spyware Terminator
2010-07-12 20:32 . 2008-08-23 18:27 -------- d-----w- c:\programdata\FLEXnet
2010-07-12 20:32 . 2006-11-02 12:37 -------- d-----w- c:\program files\MSBuild
2010-07-12 20:32 . 2009-07-29 15:43 -------- d-----w- c:\program files\Mozilla Firefox 3.1 Beta 2
2010-07-12 20:32 . 2007-11-07 20:39 -------- d-----w- c:\program files\Microsoft Visual Studio 8
2010-07-12 20:32 . 2007-11-02 16:37 -------- d-----w- c:\program files\Microsoft.NET
2010-07-12 16:39 . 2009-04-19 09:05 -------- d-----w- c:\program files\Microsoft SQL Server Compact Edition
2010-07-11 07:36 . 2008-06-27 12:12 -------- d-----w- c:\users\Dima\AppData\Roaming\Media Player Classic
2010-07-07 19:04 . 2007-11-02 15:51 -------- d-----w- c:\users\Dima\AppData\Roaming\Skype
2010-07-06 19:23 . 2009-04-19 09:03 -------- d-----w- c:\program files\Windows Live
2010-07-06 15:21 . 2009-10-02 15:12 -------- d-----w- c:\programdata\VistaCodecs
2010-07-06 09:00 . 2007-08-22 09:37 -------- d-----w- c:\program files\Java
2010-07-05 14:10 . 2010-04-11 10:54 -------- d-----w- c:\program files\ProFact 3.0 Free
2010-07-05 13:24 . 2008-07-11 11:53 -------- d-----w- c:\program files\Common Files\Adobe AIR
2010-06-30 19:05 . 2010-06-13 07:46 -------- d-----w- c:\program files\Spyware Terminator
2010-06-30 05:34 . 2007-11-02 21:04 -------- d-----w- c:\program files\Google
2010-06-27 09:45 . 2008-07-28 20:23 -------- d-----w- c:\users\Dima\AppData\Roaming\gtk-2.0
2010-06-25 10:31 . 2010-06-25 10:31 -------- d-----w- c:\program files\Jízdní řád ČD
2010-06-25 10:31 . 2010-06-25 10:31 -------- d-----w- c:\users\Dima\AppData\Roaming\Jízdní řád ČD
2010-06-24 18:38 . 2007-11-05 16:13 -------- d-----w- c:\program files\CCleaner
2010-06-22 19:46 . 2010-06-22 19:46 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_SynTP_01009.Wdf
2010-06-19 19:01 . 2009-05-10 14:42 -------- d-----w- c:\program files\The KMPlayer
2010-06-14 18:55 . 2010-06-14 18:55 -------- d--h--w- c:\program files\InstallJammer Registry
2010-06-14 18:54 . 2010-06-14 18:54 -------- d-----w- c:\program files\Esmska
2010-06-14 18:03 . 2009-06-26 11:51 -------- d-----w- c:\program files\IObit
2010-06-13 18:15 . 2010-06-13 18:15 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-06-13 08:01 . 2010-06-13 07:55 -------- d-----w- c:\program files\WinClamAVShield
2010-06-13 07:47 . 2010-06-13 07:47 -------- d-----w- c:\program files\Crawler
2010-06-13 07:47 . 2010-06-13 07:47 142592 ----a-w- c:\windows\system32\drivers\sp_rsdrv2.sys
2010-06-13 06:57 . 2007-11-28 16:47 -------- d-----w- c:\program files\Spybot - Search & Destroy
2010-06-13 06:57 . 2007-11-28 16:47 -------- d-----w- c:\programdata\Spybot - Search & Destroy
2010-06-12 16:24 . 2009-12-16 17:10 -------- d-----w- c:\program files\K-Lite Codec Pack
2010-06-12 16:22 . 2010-06-12 16:22 -------- d-----w- c:\users\Dima\AppData\Roaming\VistaCodecs
2010-06-07 09:22 . 2010-06-07 09:22 -------- d-----w- c:\program files\Nitro PDF
2010-06-04 09:36 . 2008-03-17 19:51 -------- d-----w- c:\program files\Microsoft Silverlight
2010-06-04 06:58 . 2008-06-04 17:40 -------- d-----w- c:\users\Dima\AppData\Roaming\Nokia
2010-05-29 09:00 . 2007-08-22 09:37 -------- d-----w- c:\program files\Common Files\Java
2010-05-29 08:59 . 2010-05-29 08:48 -------- d-----w- c:\programdata\Norton
2010-05-29 08:48 . 2010-05-29 08:48 -------- d-----w- c:\programdata\Symantec
2010-05-29 08:44 . 2010-05-29 08:43 -------- d-----w- c:\program files\QuickTime
2010-05-29 08:43 . 2009-07-07 18:52 -------- d-----w- c:\programdata\Apple Computer
2010-05-29 08:36 . 2010-05-29 08:36 -------- d-----w- c:\program files\Common Files\Apple
2010-05-29 08:36 . 2010-05-29 08:36 -------- d-----w- c:\program files\Apple Software Update
2010-05-28 11:04 . 2010-05-28 11:04 14896 ----a-w- c:\windows\system32\drivers\psi_mf.sys
2010-05-28 10:28 . 2007-08-22 09:09 -------- d-----w- c:\program files\Common Files\Adobe
2010-05-28 09:06 . 2009-06-22 19:58 -------- d-----w- c:\program files\JPEG Resampler
2010-05-28 08:16 . 2010-05-28 08:15 -------- d-----w- c:\program files\Common Files\soft602
2010-05-28 08:15 . 2010-05-28 08:15 -------- d-----w- c:\program files\Common Files\Freedom Scientific
2010-05-27 20:41 . 2009-02-04 16:22 -------- d-----w- c:\users\Dima\AppData\Roaming\uTorrent
2010-05-27 20:41 . 2007-11-04 17:10 -------- d-----w- c:\users\Dima\AppData\Roaming\LangSoft
2010-05-27 20:36 . 2010-02-26 17:26 -------- d-----w- c:\program files\CPUID
2010-05-27 20:32 . 2010-05-27 20:32 245936 ----a-w- c:\windows\system32\drivers\SynTP.sys
2010-05-27 20:31 . 2008-03-27 23:27 165160 ----a-w- c:\windows\system32\SynTPAPI.dll
2010-05-27 20:31 . 2007-01-13 03:57 120104 ----a-w- c:\windows\system32\SynTPCo4.dll
2010-05-27 20:31 . 2010-05-27 20:31 210216 ----a-w- c:\windows\system32\SynCtrl.dll
2010-05-27 20:31 . 2008-03-27 23:15 173352 ----a-w- c:\windows\system32\SynCOM.dll
2010-05-26 17:06 . 2010-06-09 06:15 34304 ----a-w- c:\windows\system32\atmlib.dll
2010-05-26 15:42 . 2010-05-26 15:42 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_SynTP_01000.Wdf
2010-05-26 15:41 . 2010-05-26 15:41 -------- d-----w- c:\program files\Synaptics
2010-05-26 14:47 . 2010-06-09 06:16 289792 ----a-w- c:\windows\system32\atmfd.dll
2010-05-25 18:15 . 2010-05-19 09:11 -------- d-----w- c:\programdata\OviInstallerCache
2010-05-25 18:09 . 2008-06-04 17:34 -------- d-----w- c:\program files\Nokia
2010-05-25 18:08 . 2008-06-04 17:39 -------- d-----w- c:\program files\Common Files\Nokia
2010-05-24 07:23 . 2010-01-23 16:21 -------- d-----w- c:\program files\Mozilla Thunderbird
2010-05-21 12:14 . 2009-09-30 18:02 221568 ------w- c:\windows\system32\MpSigStub.exe
2010-05-20 15:57 . 2010-05-20 15:57 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_ccdcmb_01009.Wdf
2010-05-20 15:57 . 2010-05-20 15:57 0 ---ha-w- c:\windows\system32\drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf
2010-05-20 15:46 . 2010-05-20 15:46 -------- d-----w- c:\program files\Common Files\PCSuite
2010-05-20 15:35 . 2008-06-04 17:33 -------- d-----w- c:\programdata\Installations
2010-05-20 15:13 . 2010-05-20 15:13 -------- d-----w- c:\programdata\Nokia
2010-05-20 15:06 . 2010-05-20 15:06 -------- d-----w- c:\program files\PC Connectivity Solution
2010-05-20 14:42 . 2010-05-20 14:42 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_ccdcmb_01007.Wdf
2010-05-20 13:49 . 2008-06-04 17:47 -------- d-----w- c:\users\Dima\AppData\Roaming\PC Suite
2010-05-20 13:43 . 2010-05-20 13:43 0 ---ha-w- c:\windows\system32\drivers\Msft_User_PCCSWpdDriver_01_07_00.Wdf
2010-05-19 09:21 . 2009-08-05 17:23 -------- d-----w- c:\program files\DIFX
2010-05-04 05:59 . 2010-06-09 06:15 916480 ----a-w- c:\windows\system32\wininet.dll
2010-05-04 05:55 . 2010-06-09 06:14 109056 ----a-w- c:\windows\system32\iesysprep.dll
2007-11-02 02:21 . 2007-11-02 02:21 22 --sha-w- c:\windows\SMINST\HPCD.sys
.

(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
2009-03-10 09:47 2079256 ----a-w- c:\program files\BS_Player\tbBS_0.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}"= "c:\program files\BS_Player\tbBS_0.dll" [2009-03-10 2079256]

[HKEY_CLASSES_ROOT\clsid\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}"= "c:\program files\BS_Player\tbBS_0.dll" [2009-03-10 2079256]

[HKEY_CLASSES_ROOT\clsid\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WAWifiMessage"="c:\program files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe" [2007-01-10 317128]
"egui"="c:\program files\ESET\ESET NOD32 Antivirus\egui.exe" [2010-02-26 2140880]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"mixer2"=wdmaud.drv

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2010-06-09 08:06 976832 ----a-w- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2010-06-20 02:04 35760 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
2008-10-25 09:44 31072 ----a-w- c:\program files\Microsoft Office\Office12\GrooveMonitor.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
2009-10-03 09:40 92776 ----a-w- c:\windows\System32\nvmctray.dll

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"WMPNSCFG"=c:\program files\Windows Media Player\WMPNSCFG.exe

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-disabled]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe"

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"VistaSp2"=hex(b):f8,8e,3a,71,61,24,cb,01

R2 gupdate1c9864d230b9076;Google Update Service (gupdate1c9864d230b9076);c:\program files\Google\Update\GoogleUpdate.exe [2009-02-03 133104]
R3 602XML Updater;602Updater;c:\program files\Common Files\soft602\602updsvc\602updsvc.exe [2010-04-14 73728]
R3 FsUsbExDisk;FsUsbExDisk;c:\windows\system32\FsUsbExDisk.SYS [2009-01-08 36608]
R3 Ltn_stk7070P;PCTV based TV tuner device;c:\windows\system32\DRIVERS\Ltn_stk7070P.sys [2007-06-14 466048]
R3 Ltn_stkrc;PCTV Infrared Receiver;c:\windows\system32\DRIVERS\Ltn_stkrc.sys [2007-06-13 13440]
R3 nmwcdnsu;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsu.sys [2010-02-26 137344]
R3 nmwcdnsuc;Nokia USB Flashing Generic;c:\windows\system32\drivers\nmwcdnsuc.sys [2010-02-26 8320]
R3 PSI;PSI;c:\windows\system32\DRIVERS\psi_mf.sys [2010-05-28 14896]
R4 sptd;sptd;c:\windows\system32\Drivers\sptd.sys [2007-11-05 685816]
S0 Lbd;Lbd;c:\windows\system32\DRIVERS\Lbd.sys [2009-01-24 64160]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys [2010-02-26 114984]
S1 sp_rsdrv2;Spyware Terminator Driver 2;c:\windows\system32\drivers\sp_rsdrv2.sys [2010-06-13 142592]
S2 ASBroker;Logon Session Broker;c:\windows\System32\svchost.exe [2008-01-18 21504]
S2 ASChannel;Local Communication Channel;c:\windows\System32\svchost.exe [2008-01-18 21504]
S2 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys [2010-02-26 133512]
S2 ekrn;ESET Service;c:\program files\ESET\ESET NOD32 Antivirus\ekrn.exe [2010-02-26 810120]
S2 epfwwfp;epfwwfp;c:\windows\system32\DRIVERS\epfwwfp.sys [2010-02-26 41312]


[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs REG_MULTI_SZ BthServ
Cognizance REG_MULTI_SZ ASBroker ASChannel
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache

[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2009-05-18 15:54 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe
.
Obsah adresáře 'Naplánované úlohy'

2010-07-15 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-02-03 22:16]

2010-07-15 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-02-03 22:16]

2010-07-14 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-44120419-2813058082-2718072232-1000Core.job
- c:\users\Dima\AppData\Local\Google\Update\GoogleUpdate.exe [2010-06-11 12:40]

2010-07-15 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-44120419-2813058082-2718072232-1000UA.job
- c:\users\Dima\AppData\Local\Google\Update\GoogleUpdate.exe [2010-06-11 12:40]

2010-07-15 c:\windows\Tasks\User_Feed_Synchronization-{CB95C61E-96FF-4F34-A244-8CFF29526C0D}.job
- c:\windows\system32\msfeedssync.exe [2010-06-09 04:30]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.igoogle.com/
uInternet Settings,ProxyOverride = *.local
IE: Crawler Search - tbr:iemenu
IE: {{7E6A20FB-153F-402c-A84B-1A64E1955D3D} - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748449} - {CC963627-B1DC-40E0-B52A-CF21EE748449} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748450} - {CC963627-B1DC-40E0-B52A-CF21EE748450} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748451} - {CC963627-B1DC-40E0-B52A-CF21EE748451} - c:\programdata\LangSoft\WebIE.dll
IE: {{CC963627-B1DC-40E0-B52A-CF21EE748452} - {CC963627-B1DC-40E0-B52A-CF21EE748452} - c:\programdata\LangSoft\WebIE.dll
TCP: {CD924E42-FB3E-44C5-BABD-E7619EFBB4C7} = 77.48.254.254,77.48.100.254
Handler: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} - c:\progra~1\Crawler\Toolbar\ctbr.dll
FF - ProfilePath - c:\users\Dima\AppData\Roaming\Mozilla\Firefox\Profiles\4k43ts2c.default\
FF - prefs.js: browser.startup.homepage - http:/seznam.cz
FF - prefs.js: network.proxy.type - 4
FF - component: c:\program files\Crawler\Toolbar\firefox\components\xcomm.dll
FF - component: c:\program files\Crawler\Toolbar\firefox\components\xshared.dll
FF - component: c:\program files\Crawler\Toolbar\firefox\components\xsupport.dll
FF - component: c:\program files\Crawler\Toolbar\firefox\components\xwsg.dll
FF - plugin: c:\program files\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: c:\program files\Google\Update\1.2.183.29\npGoogleOneClick8.dll
FF - plugin: c:\program files\Microsoft\Office Live\npOLW.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npdeployJava1.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npfiller.dll
FF - plugin: c:\program files\VistaCodecPack\rm\browser\plugins\nppl3260.dll
FF - plugin: c:\program files\VistaCodecPack\rm\browser\plugins\nprpjplug.dll
FF - plugin: c:\program files\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: c:\users\Dima\AppData\Local\Google\Update\1.2.183.29\npGoogleOneClick8.dll

---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.lu", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.nu", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.nz", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4ar", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--p1ai", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbayh7gpa", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.tel", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.proxy.type", 5);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("dom.ipc.plugins.timeoutSecs", 45);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("accelerometer.enabled", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.nptest.dll", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npswf32.dll", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npctrl.dll", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npqtplugin.dll", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled", false);
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -

WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
SafeBoot-Lavasoft Ad-Aware Service
AddRemove-{CE7E3BE0-2DD3-4416-A690-F9E4A99A8CFF} - c:\program files\InstallShield Installation Information\{CE7E3BE0-2DD3-4416-A690-F9E4A99A8CFF}\setup.exe



**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-07-15 23:02
Windows 6.0.6002 Service Pack 2 NTFS

skenování skrytých procesů ...

skenování skrytých položek 'Po spuštění' ...

skenování skrytých souborů ...

sken byl úspešně dokončen
skryté soubory: 0

**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil10h_ActiveX.exe,-101"

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil10h_ActiveX.exe"

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"

[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"

[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"

[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
--------------------- Knihovny navázané na běžící procesy ---------------------

- - - - - - - > 'Explorer.exe'(5728)
c:\windows\system32\APSHook.dll
c:\windows\system32\btncopy.dll
c:\program files\Nokia\Nokia PC Suite 7\PhoneBrowser.dll
c:\program files\Nokia\Nokia PC Suite 7\NGSCM.DLL
c:\program files\Nokia\Nokia PC Suite 7\Lang\PhoneBrowser_cze.nlr
c:\program files\Nokia\Nokia PC Suite 7\Resource\PhoneBrowser_Nokia.ngr
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\nvvsvc.exe
c:\windows\system32\nvvsvc.exe
c:\program files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
c:\program files\Spyware Terminator\sp_rsser.exe
c:\windows\system32\DRIVERS\xaudio.exe
c:\program files\Hewlett-Packard\Shared\hpqwmiex.exe
c:\program files\Bioscrypt\VeriSoft\Bin\AsGHost.exe
c:\windows\system32\iashost.exe
c:\windows\system32\conime.exe
c:\windows\system32\wbem\unsecapp.exe
c:\program files\Hewlett-Packard\HP Health Check\hphc_service.exe
c:\program files\Windows Media Player\wmpnetwk.exe
.
**************************************************************************
.
Celkový čas: 2010-07-15 23:19:16 - počítač byl restartován
ComboFix-quarantined-files.txt 2010-07-15 21:19

Před spuštěním: Volných bajtů: 64 111 996 928
Po spuštění: Volných bajtů: 63 972 016 128

- - End Of File - - 89BC14DB0CE977EE49526E6A51378722

Zdá se že to pomohlo, myslím, že reakce je rychlejší...nevíš čím to bylo? třeba bych se tomu mohl příště vyvarovat..
Nevidíš v logu ještě nějakou neplechu...třeba bych ji mohl ukončit :-)
díky za pomoc.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119418
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Kontrola logu-pomalá reakce PC..díky

#6 Příspěvek od Rudy »

4 položky smazány, zbytek logu vypadá čistý. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

LANGEN
Návštěvník
Návštěvník
Příspěvky: 36
Registrován: 15 dub 2007 10:20

Re: Kontrola logu-pomalá reakce PC..díky

#7 Příspěvek od LANGEN »

myslím, že je to O.K.

aspoň pro tuto chvíli

díky a měj se

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119418
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Kontrola logu-pomalá reakce PC..díky

#8 Příspěvek od Rudy »

Ty též a nemáš zač!
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět