Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Pomalý notebook a neustále běží HDD

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Hack
Návštěvník
Návštěvník
Příspěvky: 14
Registrován: 23 kvě 2009 10:22

Pomalý notebook a neustále běží HDD

#1 Příspěvek od Hack »

Zdravím,
moc bych prosil tady odborníky o pomoc z timto problémem.
Již delší dobu pozoruji hodně zpomalený notebook a HDD je porad v provozu.Mohl by se mi na to nekdo mrknout.Přikladam LOG z ComboFixu.
Moc dík

ComboFix 10-08-15.04 - Hack 16.08.2010 15:54:12.6.1 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1250.420.1029.18.383.89 [GMT 2:00]
Spuštěný z: c:\documents and settings\Hack\Plocha\ComboFix.exe
.

((((((((((((((((((((((((( Soubory vytvořené od 2010-07-16 do 2010-08-16 )))))))))))))))))))))))))))))))
.

2010-08-15 20:38 . 2010-08-16 05:42 -------- d-----w- c:\program files\Airbag
2010-08-15 15:38 . 2010-06-01 17:37 221568 ------w- c:\windows\system32\MpSigStub.exe
2010-08-14 09:50 . 2010-08-15 09:36 -------- d-----w- C:\Auto-diagnostika
2010-08-12 14:22 . 2010-04-15 11:11 89088 ----a-w- c:\windows\system32\drivers\Pg4uusb.sys
2010-08-12 14:22 . 2008-11-06 09:52 11776 ----a-w- c:\windows\system32\DevPgCls.dll
2010-08-12 14:22 . 2008-01-23 08:53 9728 ----a-w- c:\windows\system32\drivers\pardrv.sys
2010-08-12 14:22 . 2010-08-12 14:22 -------- d-----w- c:\program files\Elnec_sw
2010-08-05 02:28 . 2010-08-05 02:27 390144 ----a-w- c:\windows\system32\CF28905.exe
2010-08-04 18:23 . 2010-08-04 18:23 -------- d-----w- c:\program files\MSXML 4.0
2010-08-04 17:36 . 2010-08-04 17:36 0 ----a-w- c:\windows\system32\SBRC.dat
2010-07-17 19:48 . 2010-07-17 19:53 -------- d-----w- c:\program files\ICQ7.2

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-08-16 11:46 . 2006-08-08 15:48 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-08-15 20:39 . 2009-10-20 09:27 -------- d-----w- c:\program files\bde
2010-08-14 09:52 . 2008-12-10 19:32 -------- d-----w- c:\program files\DIFX
2010-08-03 17:59 . 2006-08-08 15:48 -------- d-----w- c:\program files\Common Files\Java
2010-08-03 17:58 . 2006-08-08 15:48 -------- d-----w- c:\program files\Java
2010-07-31 09:49 . 2010-04-06 06:58 664 ----a-w- c:\windows\system32\d3d9caps.dat
2010-07-17 03:00 . 2010-05-04 12:07 423656 ----a-w- c:\windows\system32\deployJava1.dll
2010-07-07 20:11 . 2010-03-24 13:34 -------- d-----w- c:\program files\Opera
2010-06-30 12:33 . 2004-08-18 08:00 149504 ----a-w- c:\windows\system32\schannel.dll
2010-06-24 12:27 . 2004-08-18 08:00 916480 ----a-w- c:\windows\system32\wininet.dll
2010-06-24 09:02 . 2004-08-18 08:00 1851904 ----a-w- c:\windows\system32\win32k.sys
2010-06-21 15:27 . 2004-08-18 08:00 354304 ----a-w- c:\windows\system32\drivers\srv.sys
2010-06-17 14:03 . 2004-08-18 08:00 80384 ----a-w- c:\windows\system32\iccvid.dll
2010-06-14 14:31 . 2004-08-18 08:00 744448 ----a-w- c:\windows\pchealth\helpctr\binaries\helpsvc.exe
2010-06-14 07:43 . 2004-08-18 08:00 1172480 ----a-w- c:\windows\system32\msxml3.dll
2010-05-26 04:02 . 2004-09-08 10:22 62336 ----a-w- c:\windows\system32\perfc005.dat
2010-05-26 04:02 . 2004-09-08 10:22 379806 ----a-w- c:\windows\system32\perfh005.dat
.

((((((((((((((((((((((((((((( SnapShot_2010-08-01_16.06.04 )))))))))))))))))))))))))))))))))))))))))
.
+ 2009-06-28 21:42 . 2009-06-28 21:42 91656 c:\windows\WinSxS\x86_Microsoft.MSXML2R_6bd6b9abf345378f_4.1.1.0_x-ww_2a41bceb\msxml4r.dll
+ 2010-08-16 13:49 . 2010-08-16 13:49 16384 c:\windows\Temp\Perflib_Perfdata_70c.dat
+ 2003-04-18 14:29 . 2003-04-18 14:29 82432 c:\windows\system32\msxml4r.dll
+ 2006-11-07 20:03 . 2010-06-24 12:27 55296 c:\windows\system32\msfeedsbs.dll
- 2006-11-07 20:03 . 2010-05-06 10:35 55296 c:\windows\system32\msfeedsbs.dll
+ 2004-08-18 08:00 . 2010-06-24 12:27 25600 c:\windows\system32\jsproxy.dll
- 2004-08-18 08:00 . 2010-05-06 10:35 25600 c:\windows\system32\jsproxy.dll
+ 2010-08-15 11:07 . 2009-05-21 15:04 58880 c:\windows\system32\DRVSTORE\rt-usb_F845A6FBA6E7BAF10344406742353662EE7E9156\RT-USB.SYS
+ 2008-12-10 19:32 . 2009-05-21 15:04 58880 c:\windows\system32\drivers\RT-USB.SYS
+ 2008-01-29 10:01 . 2009-01-15 11:19 23848 c:\windows\system32\drivers\GEARAspiWDM.sys
- 2009-06-12 12:19 . 2010-05-06 10:35 12800 c:\windows\system32\dllcache\xpshims.dll
+ 2009-06-12 12:19 . 2010-06-24 12:27 12800 c:\windows\system32\dllcache\xpshims.dll
- 2007-05-09 13:47 . 2010-05-06 10:35 55296 c:\windows\system32\dllcache\msfeedsbs.dll
+ 2007-05-09 13:47 . 2010-06-24 12:27 55296 c:\windows\system32\dllcache\msfeedsbs.dll
+ 2006-10-23 15:19 . 2010-06-24 12:27 25600 c:\windows\system32\dllcache\jsproxy.dll
- 2006-10-23 15:19 . 2010-05-06 10:35 25600 c:\windows\system32\dllcache\jsproxy.dll
+ 2006-11-19 14:48 . 2006-11-19 14:48 82944 c:\windows\Installer\8aae3.msi
+ 2005-11-15 14:47 . 2005-11-15 14:47 58880 c:\windows\Installer\734459a.msp
+ 2010-08-04 18:23 . 2010-08-04 18:23 32768 c:\windows\Installer\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}\icon.exe
+ 2006-08-08 11:16 . 2010-08-12 18:30 90112 c:\windows\Installer\{90280405-6000-11D3-8CFE-0050048383C9}\xlicons.exe
- 2006-08-08 11:16 . 2010-07-13 19:57 90112 c:\windows\Installer\{90280405-6000-11D3-8CFE-0050048383C9}\xlicons.exe
- 2006-08-08 11:16 . 2010-07-13 19:57 45056 c:\windows\Installer\{90280405-6000-11D3-8CFE-0050048383C9}\wordicon.exe
+ 2006-08-08 11:16 . 2010-08-12 18:30 45056 c:\windows\Installer\{90280405-6000-11D3-8CFE-0050048383C9}\wordicon.exe
- 2006-08-08 11:16 . 2010-07-13 19:57 22528 c:\windows\Installer\{90280405-6000-11D3-8CFE-0050048383C9}\unbndico.exe
+ 2006-08-08 11:16 . 2010-08-12 18:30 22528 c:\windows\Installer\{90280405-6000-11D3-8CFE-0050048383C9}\unbndico.exe
+ 2006-08-08 11:16 . 2010-08-12 18:30 30720 c:\windows\Installer\{90280405-6000-11D3-8CFE-0050048383C9}\pptico.exe
- 2006-08-08 11:16 . 2010-07-13 19:57 30720 c:\windows\Installer\{90280405-6000-11D3-8CFE-0050048383C9}\pptico.exe
- 2006-08-08 11:16 . 2010-07-13 19:57 16384 c:\windows\Installer\{90280405-6000-11D3-8CFE-0050048383C9}\PEicons.exe
+ 2006-08-08 11:16 . 2010-08-12 18:30 16384 c:\windows\Installer\{90280405-6000-11D3-8CFE-0050048383C9}\PEicons.exe
- 2006-08-08 11:16 . 2010-07-13 19:57 34304 c:\windows\Installer\{90280405-6000-11D3-8CFE-0050048383C9}\misc.exe
+ 2006-08-08 11:16 . 2010-08-12 18:30 34304 c:\windows\Installer\{90280405-6000-11D3-8CFE-0050048383C9}\misc.exe
- 2006-08-08 11:16 . 2010-07-13 19:57 81920 c:\windows\Installer\{90280405-6000-11D3-8CFE-0050048383C9}\fpicon.exe
+ 2006-08-08 11:16 . 2010-08-12 18:30 81920 c:\windows\Installer\{90280405-6000-11D3-8CFE-0050048383C9}\fpicon.exe
+ 2010-08-04 18:23 . 2010-08-04 18:23 32768 c:\windows\Installer\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}\icon.exe
+ 2010-08-12 18:28 . 2010-05-06 10:35 12800 c:\windows\ie8updates\KB2183461-IE8\xpshims.dll
+ 2010-08-12 18:28 . 2010-05-06 10:35 55296 c:\windows\ie8updates\KB2183461-IE8\msfeedsbs.dll
+ 2010-08-12 18:28 . 2010-05-06 10:35 25600 c:\windows\ie8updates\KB2183461-IE8\jsproxy.dll
- 2006-08-08 11:16 . 2010-07-13 19:57 3584 c:\windows\Installer\{90280405-6000-11D3-8CFE-0050048383C9}\opwicon.exe
+ 2006-08-08 11:16 . 2010-08-12 18:30 3584 c:\windows\Installer\{90280405-6000-11D3-8CFE-0050048383C9}\opwicon.exe
+ 2006-08-08 11:16 . 2010-08-12 18:30 8192 c:\windows\Installer\{90280405-6000-11D3-8CFE-0050048383C9}\mspicons.exe
- 2006-08-08 11:16 . 2010-07-13 19:57 8192 c:\windows\Installer\{90280405-6000-11D3-8CFE-0050048383C9}\mspicons.exe
+ 2006-08-08 11:16 . 2010-08-12 18:30 2560 c:\windows\Installer\{90280405-6000-11D3-8CFE-0050048383C9}\cagicon.exe
- 2006-08-08 11:16 . 2010-07-13 19:57 2560 c:\windows\Installer\{90280405-6000-11D3-8CFE-0050048383C9}\cagicon.exe
+ 2005-09-22 20:48 . 2005-09-22 20:48 626688 c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_0de06acd\msvcr80.dll
+ 2005-09-22 20:48 . 2005-09-22 20:48 548864 c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_0de06acd\msvcp80.dll
+ 2005-09-22 20:48 . 2005-09-22 20:48 479232 c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_0de06acd\msvcm80.dll
+ 2008-12-10 19:32 . 2009-05-21 15:04 207360 c:\windows\system32\RT-USB.DLL
+ 2004-08-18 08:00 . 2010-06-24 12:27 206848 c:\windows\system32\occache.dll
- 2004-08-18 08:00 . 2010-05-06 10:35 206848 c:\windows\system32\occache.dll
+ 2004-08-18 08:00 . 2010-06-24 12:27 611840 c:\windows\system32\mstime.dll
- 2004-08-18 08:00 . 2010-05-06 10:35 611840 c:\windows\system32\mstime.dll
- 2006-11-07 20:03 . 2010-05-06 10:35 599040 c:\windows\system32\msfeeds.dll
+ 2006-11-07 20:03 . 2010-06-24 12:27 599040 c:\windows\system32\msfeeds.dll
+ 2010-08-16 02:10 . 2010-08-16 02:10 232912 c:\windows\system32\Macromed\Flash\FlashUtil10i_Plugin.exe
- 2010-05-04 12:07 . 2010-04-12 15:29 153376 c:\windows\system32\javaws.exe
+ 2010-08-03 17:58 . 2010-07-17 03:00 153376 c:\windows\system32\javaws.exe
- 2010-05-04 12:07 . 2010-04-12 15:29 145184 c:\windows\system32\javaw.exe
+ 2010-08-03 17:58 . 2010-07-17 03:00 145184 c:\windows\system32\javaw.exe
- 2010-05-04 12:07 . 2010-04-12 15:29 145184 c:\windows\system32\java.exe
+ 2010-08-03 17:58 . 2010-07-17 03:00 145184 c:\windows\system32\java.exe
+ 2004-08-18 08:00 . 2010-06-24 12:27 184320 c:\windows\system32\iepeers.dll
- 2004-08-18 08:00 . 2010-05-06 10:35 184320 c:\windows\system32\iepeers.dll
- 2004-08-18 08:00 . 2010-05-06 10:35 387584 c:\windows\system32\iedkcs32.dll
+ 2004-08-18 08:00 . 2010-06-24 12:27 387584 c:\windows\system32\iedkcs32.dll
+ 2004-08-18 08:00 . 2010-06-23 12:08 173056 c:\windows\system32\ie4uinit.exe
- 2004-08-18 08:00 . 2010-05-05 13:30 173056 c:\windows\system32\ie4uinit.exe
+ 2004-09-08 10:16 . 2010-08-16 13:40 116560 c:\windows\system32\FNTCACHE.DAT
+ 2010-08-15 11:07 . 2009-05-21 15:04 207360 c:\windows\system32\DRVSTORE\rt-usb_F845A6FBA6E7BAF10344406742353662EE7E9156\RT-USB.DLL
+ 2006-10-23 15:19 . 2010-06-24 12:27 916480 c:\windows\system32\dllcache\wininet.dll
- 2006-10-23 15:19 . 2010-05-06 10:35 916480 c:\windows\system32\dllcache\wininet.dll
+ 2008-10-15 17:28 . 2010-06-21 15:27 354304 c:\windows\system32\dllcache\srv.sys
+ 2008-12-05 06:57 . 2010-06-30 12:33 149504 c:\windows\system32\dllcache\schannel.dll
+ 2006-10-17 11:04 . 2010-06-24 12:27 206848 c:\windows\system32\dllcache\occache.dll
- 2006-10-17 11:04 . 2010-05-06 10:35 206848 c:\windows\system32\dllcache\occache.dll
+ 2006-10-23 15:19 . 2010-06-24 12:27 611840 c:\windows\system32\dllcache\mstime.dll
- 2006-10-23 15:19 . 2010-05-06 10:35 611840 c:\windows\system32\dllcache\mstime.dll
+ 2007-05-09 13:47 . 2010-06-24 12:27 599040 c:\windows\system32\dllcache\msfeeds.dll
- 2007-05-09 13:47 . 2010-05-06 10:35 599040 c:\windows\system32\dllcache\msfeeds.dll
- 2009-06-12 12:19 . 2010-05-06 10:35 247808 c:\windows\system32\dllcache\ieproxy.dll
+ 2009-06-12 12:19 . 2010-06-24 12:27 247808 c:\windows\system32\dllcache\ieproxy.dll
- 2006-10-23 15:19 . 2010-05-06 10:35 184320 c:\windows\system32\dllcache\iepeers.dll
+ 2006-10-23 15:19 . 2010-06-24 12:27 184320 c:\windows\system32\dllcache\iepeers.dll
+ 2010-06-12 11:01 . 2010-06-24 12:27 743424 c:\windows\system32\dllcache\iedvtool.dll
- 2010-06-12 11:01 . 2010-05-06 10:35 743424 c:\windows\system32\dllcache\iedvtool.dll
- 2006-11-07 02:27 . 2010-05-06 10:35 387584 c:\windows\system32\dllcache\iedkcs32.dll
+ 2006-11-07 02:27 . 2010-06-24 12:27 387584 c:\windows\system32\dllcache\iedkcs32.dll
- 2006-11-07 02:26 . 2010-05-05 13:30 173056 c:\windows\system32\dllcache\ie4uinit.exe
+ 2006-11-07 02:26 . 2010-06-23 12:08 173056 c:\windows\system32\dllcache\ie4uinit.exe
+ 2004-09-08 10:17 . 2004-09-08 10:17 265216 c:\windows\Installer\eda0.msi
+ 2010-08-04 18:23 . 2010-08-04 18:23 432640 c:\windows\Installer\e7f584.msi
+ 2010-08-04 18:23 . 2010-08-04 18:23 429568 c:\windows\Installer\e7f57d.msi
+ 2009-04-20 13:07 . 2009-04-20 13:07 202240 c:\windows\Installer\e7a886.msp
+ 2007-04-30 05:03 . 2007-04-30 05:03 268800 c:\windows\Installer\d65e4a1.msi
+ 2009-02-10 06:58 . 2009-02-10 06:58 492544 c:\windows\Installer\b73a7.msp
+ 2007-07-31 14:20 . 2007-07-31 14:20 282624 c:\windows\Installer\a64fb.msi
+ 2008-06-29 08:26 . 2008-06-29 08:26 532992 c:\windows\Installer\a01344.msi
+ 2009-11-05 13:31 . 2009-11-05 13:31 492544 c:\windows\Installer\96ee9d.msp
+ 2008-03-28 19:26 . 2008-03-28 19:26 289792 c:\windows\Installer\939538.msi
+ 2008-07-28 18:23 . 2008-07-28 18:23 289792 c:\windows\Installer\93489.msi
+ 2007-10-28 14:51 . 2007-10-28 14:51 282624 c:\windows\Installer\850b1.msi
+ 2008-05-28 02:24 . 2008-05-28 02:24 470528 c:\windows\Installer\8077f.msi
+ 2006-06-12 13:10 . 2006-06-12 13:10 283136 c:\windows\Installer\73445af.msp
+ 2004-08-25 08:02 . 2004-08-25 08:02 310272 c:\windows\Installer\7344587.msp
+ 2006-02-22 07:36 . 2006-02-22 07:36 995328 c:\windows\Installer\7344444.msp
+ 2009-05-22 18:33 . 2009-05-22 18:33 337408 c:\windows\Installer\7226bb.msi
+ 2007-03-30 13:41 . 2007-03-30 13:41 189952 c:\windows\Installer\492db.msi
+ 2010-08-03 17:59 . 2010-08-03 17:59 180224 c:\windows\Installer\484426.msi
+ 2007-10-29 08:58 . 2007-10-29 08:58 691200 c:\windows\Installer\42de3d.msi
+ 2005-12-26 23:13 . 2005-12-26 23:13 227840 c:\windows\Installer\3ab0d.msi
+ 2004-09-08 10:20 . 2004-09-08 10:20 256512 c:\windows\Installer\31bda.msi
+ 2005-12-26 23:39 . 2005-12-26 23:39 430080 c:\windows\Installer\30a6c.msi
+ 2005-12-26 23:38 . 2005-12-26 23:38 311296 c:\windows\Installer\30a69.msi
+ 2005-12-26 23:31 . 2005-12-26 23:31 219136 c:\windows\Installer\30a1c.msi
+ 2005-12-26 23:25 . 2005-12-26 23:25 389120 c:\windows\Installer\30a15.msi
+ 2008-11-28 20:08 . 2008-11-28 20:08 471552 c:\windows\Installer\27b945.msi
+ 2008-07-22 22:03 . 2008-07-22 22:03 111104 c:\windows\Installer\269298.msp
+ 2008-05-07 14:33 . 2008-05-07 14:33 624128 c:\windows\Installer\26924a.msp
+ 2009-03-19 14:43 . 2009-03-19 14:43 598016 c:\windows\Installer\23807c.msi
+ 2010-05-12 07:27 . 2010-05-12 07:27 335360 c:\windows\Installer\1fb8b9.msi
+ 2009-07-29 06:41 . 2009-07-29 06:41 248832 c:\windows\Installer\1e3fd9.msi
- 2006-08-08 11:16 . 2010-07-13 19:57 114688 c:\windows\Installer\{90280405-6000-11D3-8CFE-0050048383C9}\outicon.exe
+ 2006-08-08 11:16 . 2010-08-12 18:30 114688 c:\windows\Installer\{90280405-6000-11D3-8CFE-0050048383C9}\outicon.exe
+ 2006-08-08 11:16 . 2010-08-12 18:30 167936 c:\windows\Installer\{90280405-6000-11D3-8CFE-0050048383C9}\accicons.exe
- 2006-08-08 11:16 . 2010-07-13 19:57 167936 c:\windows\Installer\{90280405-6000-11D3-8CFE-0050048383C9}\accicons.exe
+ 2010-08-12 18:28 . 2010-05-06 10:35 916480 c:\windows\ie8updates\KB2183461-IE8\wininet.dll
+ 2010-08-12 18:28 . 2010-02-22 14:21 391032 c:\windows\ie8updates\KB2183461-IE8\spuninst\updspapi.dll
+ 2010-08-12 18:28 . 2009-05-26 09:01 233848 c:\windows\ie8updates\KB2183461-IE8\spuninst\spuninst.exe
+ 2010-08-12 18:28 . 2010-05-06 10:35 206848 c:\windows\ie8updates\KB2183461-IE8\occache.dll
+ 2010-08-12 18:28 . 2010-05-06 10:35 611840 c:\windows\ie8updates\KB2183461-IE8\mstime.dll
+ 2010-08-12 18:28 . 2010-05-06 10:35 599040 c:\windows\ie8updates\KB2183461-IE8\msfeeds.dll
+ 2010-08-12 18:28 . 2010-05-06 10:35 247808 c:\windows\ie8updates\KB2183461-IE8\ieproxy.dll
+ 2010-08-12 18:28 . 2010-05-06 10:35 184320 c:\windows\ie8updates\KB2183461-IE8\iepeers.dll
+ 2010-08-12 18:28 . 2010-05-06 10:35 743424 c:\windows\ie8updates\KB2183461-IE8\iedvtool.dll
+ 2010-08-12 18:28 . 2010-05-06 10:35 387584 c:\windows\ie8updates\KB2183461-IE8\iedkcs32.dll
+ 2010-08-12 18:28 . 2010-05-05 13:30 173056 c:\windows\ie8updates\KB2183461-IE8\ie4uinit.exe
+ 2008-11-28 20:08 . 2008-11-28 20:08 785920 c:\windows\Downloaded Installations\{648991DA-1015-4E97-80B3-D0720F082108}\HP Product Detection.msi
+ 2009-07-20 22:03 . 2009-07-20 22:03 1348432 c:\windows\WinSxS\x86_Microsoft.MSXML2_6bd6b9abf345378f_4.20.9876.0_x-ww_a621d1d5\msxml4.dll
+ 2008-09-30 14:42 . 2008-09-30 14:42 1286152 c:\windows\WinSxS\x86_Microsoft.MSXML2_6bd6b9abf345378f_4.20.9870.0_x-ww_a32d74cf\msxml4.dll
+ 2004-08-18 08:00 . 2004-08-18 08:00 1356800 c:\windows\system32\webfldrs.msi
+ 2004-08-18 08:00 . 2010-06-24 12:27 1210368 c:\windows\system32\urlmon.dll
+ 2004-08-18 08:00 . 2010-07-27 06:30 8466432 c:\windows\system32\shell32.dll
+ 2004-08-18 08:00 . 2010-04-28 18:15 2192128 c:\windows\system32\ntoskrnl.exe
- 2004-08-18 08:00 . 2010-02-17 12:09 2192128 c:\windows\system32\ntoskrnl.exe
+ 2004-08-18 08:00 . 2010-04-28 05:45 2068992 c:\windows\system32\ntkrnlpa.exe
- 2004-08-18 08:00 . 2010-02-16 19:09 2068992 c:\windows\system32\ntkrnlpa.exe
+ 2009-07-20 22:05 . 2009-07-20 22:05 1348432 c:\windows\system32\msxml4.dll
+ 2004-08-18 08:00 . 2010-06-24 12:27 5951488 c:\windows\system32\mshtml.dll
+ 2010-01-27 01:07 . 2010-08-16 02:10 5969360 c:\windows\system32\Macromed\Flash\NPSWF32.dll
+ 2006-10-17 10:57 . 2010-06-24 12:27 1986560 c:\windows\system32\iertutil.dll
+ 2008-10-15 17:28 . 2010-06-24 09:02 1851904 c:\windows\system32\dllcache\win32k.sys
+ 2006-10-23 15:19 . 2010-06-24 12:27 1210368 c:\windows\system32\dllcache\urlmon.dll
+ 2008-06-17 19:02 . 2010-07-27 06:30 8466432 c:\windows\system32\dllcache\shell32.dll
+ 2008-10-15 17:27 . 2010-04-28 18:15 2192128 c:\windows\system32\dllcache\ntoskrnl.exe
- 2008-10-15 17:27 . 2010-02-17 12:09 2192128 c:\windows\system32\dllcache\ntoskrnl.exe
- 2008-10-15 17:27 . 2010-02-16 19:08 2026496 c:\windows\system32\dllcache\ntkrpamp.exe
+ 2008-10-15 17:27 . 2010-04-28 05:45 2026496 c:\windows\system32\dllcache\ntkrpamp.exe
+ 2008-10-15 17:27 . 2010-04-28 05:45 2068992 c:\windows\system32\dllcache\ntkrnlpa.exe
- 2008-10-15 17:27 . 2010-02-16 19:09 2068992 c:\windows\system32\dllcache\ntkrnlpa.exe
+ 2008-10-15 17:27 . 2010-04-28 05:45 2148352 c:\windows\system32\dllcache\ntkrnlmp.exe
- 2008-10-15 17:27 . 2010-02-16 19:08 2148352 c:\windows\system32\dllcache\ntkrnlmp.exe
- 2008-11-13 14:55 . 2009-07-31 04:35 1172480 c:\windows\system32\dllcache\msxml3.dll
+ 2008-11-13 14:55 . 2010-06-14 07:43 1172480 c:\windows\system32\dllcache\msxml3.dll
+ 2006-10-23 15:19 . 2010-06-24 12:27 5951488 c:\windows\system32\dllcache\mshtml.dll
+ 2010-03-11 04:31 . 2010-06-18 13:36 3558912 c:\windows\system32\dllcache\moviemk.exe
- 2010-03-11 04:31 . 2009-10-23 15:28 3558912 c:\windows\system32\dllcache\moviemk.exe
+ 2007-05-09 13:47 . 2010-06-24 12:27 1986560 c:\windows\system32\dllcache\iertutil.dll
+ 2008-05-23 10:35 . 2004-08-18 08:00 1356800 c:\windows\ServicePackFiles\i386\webfldrs.msi
+ 2009-04-29 13:03 . 2009-04-29 13:03 8404992 c:\windows\Installer\e7a873.msp
+ 2006-08-08 11:16 . 2006-08-08 11:16 3400192 c:\windows\Installer\e3cfc.msi
+ 2010-06-29 14:01 . 2010-06-29 14:01 8404992 c:\windows\Installer\da515e.msp
+ 2010-02-21 08:28 . 2010-02-21 08:28 2901504 c:\windows\Installer\c78ee.msp
+ 2010-01-11 14:35 . 2010-01-11 14:35 4480000 c:\windows\Installer\bc52d3.msp
+ 2009-09-04 13:31 . 2009-09-04 13:31 7972864 c:\windows\Installer\ba6d77.msp
+ 2009-08-20 13:27 . 2009-08-20 13:27 3622400 c:\windows\Installer\ba6d4d.msp
+ 2009-09-10 20:44 . 2009-09-10 20:44 6704640 c:\windows\Installer\ba6d39.msp
+ 2010-06-17 08:25 . 2010-06-17 08:25 3906560 c:\windows\Installer\9e40e.msp
+ 2006-08-08 10:51 . 2006-08-08 10:51 1476096 c:\windows\Installer\8a600.msi
+ 2010-04-02 18:53 . 2010-04-02 18:53 7220736 c:\windows\Installer\75dcf.msp
+ 2008-01-11 12:13 . 2008-01-11 12:13 5862912 c:\windows\Installer\734455e.msp
+ 2006-09-28 09:08 . 2006-09-28 09:08 9573888 c:\windows\Installer\734454b.msp
+ 2008-01-14 12:26 . 2008-01-14 12:26 4478464 c:\windows\Installer\7344538.msp
+ 2006-03-28 13:37 . 2006-03-28 13:37 6956032 c:\windows\Installer\7344524.msp
+ 2006-08-29 15:50 . 2006-08-29 15:50 3210240 c:\windows\Installer\734450e.msp
+ 2004-03-11 06:46 . 2004-03-11 06:46 2509312 c:\windows\Installer\73444fa.msp
+ 2008-04-07 13:32 . 2008-04-07 13:32 8415232 c:\windows\Installer\73444e7.msp
+ 2004-09-13 00:30 . 2004-09-13 00:30 1342976 c:\windows\Installer\73444d3.msp
+ 2008-01-29 10:00 . 2008-01-29 10:00 7983104 c:\windows\Installer\7344480.msp
+ 2008-03-31 14:35 . 2008-03-31 14:35 8309760 c:\windows\Installer\734446b.msp
+ 2008-10-28 14:59 . 2008-10-28 14:59 8413184 c:\windows\Installer\517358.msp
+ 2009-04-30 21:02 . 2009-04-30 21:02 9628672 c:\windows\Installer\48f4a4.msp
+ 2005-12-26 23:13 . 2005-12-26 23:13 5864960 c:\windows\Installer\3ab07.msp
+ 2010-05-24 11:54 . 2010-05-24 11:54 6704640 c:\windows\Installer\38f01d.msp
+ 2005-12-26 23:31 . 2005-12-26 23:31 3972608 c:\windows\Installer\30a27.msi
+ 2005-12-26 23:25 . 2005-12-26 23:25 2635776 c:\windows\Installer\30a10.msi
+ 2005-12-26 23:24 . 2005-12-26 23:24 1345536 c:\windows\Installer\30a0b.msi
+ 2010-02-26 04:09 . 2010-02-26 04:09 8300544 c:\windows\Installer\2f6c72.msp
+ 2010-07-07 20:11 . 2010-07-07 20:11 2647552 c:\windows\Installer\2f1bf4.msi
+ 2006-08-08 08:06 . 2006-08-08 08:06 2465280 c:\windows\Installer\2ca26.msi
+ 2008-06-11 18:13 . 2008-06-11 18:13 7988224 c:\windows\Installer\2b7a71.msp
+ 2008-09-04 13:52 . 2008-09-04 13:52 4337664 c:\windows\Installer\2a67f6.msp
+ 2008-06-30 12:34 . 2008-06-30 12:34 8416768 c:\windows\Installer\269285.msp
+ 2008-05-06 08:30 . 2008-05-06 08:30 9577984 c:\windows\Installer\26925d.msp
+ 2010-01-19 15:58 . 2010-01-19 15:58 4272128 c:\windows\Installer\1bf8ea.msi
+ 2004-09-08 10:19 . 2004-09-08 10:19 3443712 c:\windows\Installer\178a9.msi
+ 2009-09-30 14:11 . 2009-09-30 14:11 8409088 c:\windows\Installer\171e9b.msp
+ 2009-12-01 14:52 . 2009-12-01 14:52 7970816 c:\windows\Installer\142d940.msp
+ 2009-12-01 14:52 . 2009-12-01 14:52 9630208 c:\windows\Installer\142d92c.msp
+ 2010-08-12 18:28 . 2010-05-06 10:35 1209344 c:\windows\ie8updates\KB2183461-IE8\urlmon.dll
+ 2010-08-12 18:28 . 2010-05-06 10:35 5950976 c:\windows\ie8updates\KB2183461-IE8\mshtml.dll
+ 2010-08-12 18:28 . 2010-05-06 10:35 1985536 c:\windows\ie8updates\KB2183461-IE8\iertutil.dll
- 2008-10-15 17:27 . 2010-02-17 12:09 2192128 c:\windows\Driver Cache\i386\ntoskrnl.exe
+ 2008-10-15 17:27 . 2010-04-28 18:15 2192128 c:\windows\Driver Cache\i386\ntoskrnl.exe
+ 2008-10-15 17:27 . 2010-04-28 05:45 2026496 c:\windows\Driver Cache\i386\ntkrpamp.exe
- 2008-10-15 17:27 . 2010-02-16 19:08 2026496 c:\windows\Driver Cache\i386\ntkrpamp.exe
- 2008-10-15 17:27 . 2010-02-16 19:09 2068992 c:\windows\Driver Cache\i386\ntkrnlpa.exe
+ 2008-10-15 17:27 . 2010-04-28 05:45 2068992 c:\windows\Driver Cache\i386\ntkrnlpa.exe
- 2008-10-15 17:27 . 2010-02-16 19:08 2148352 c:\windows\Driver Cache\i386\ntkrnlmp.exe
+ 2008-10-15 17:27 . 2010-04-28 05:45 2148352 c:\windows\Driver Cache\i386\ntkrnlmp.exe
+ 2007-02-28 03:26 . 2007-02-28 03:25 5044224 c:\windows\Downloaded Installations\{ECE589DA-FC0D-4C5B-996A-58261E2875F8}\UPA-USB Device Programmer.msi
+ 2006-11-14 14:18 . 2006-11-14 14:20 4656588 c:\windows\Downloaded Installations\{C5FF0D85-C5EC-4B3B-A380-62A9642D0B86}\UPA-USB Device Programmer.msi
+ 2007-06-25 14:29 . 2007-06-25 14:29 8581632 c:\windows\Downloaded Installations\{3E547985-AA94-4B1B-8ADD-21E060E5E31F}\Adobe Photoshop Album 3.2 SE.msi
+ 2006-11-14 14:07 . 2006-11-14 14:07 4647372 c:\windows\Downloaded Installations\{36C4DF66-AD48-46E7-A363-91647F67AE4A}\UPA-USB Device Programmer.msi
+ 2010-05-12 07:23 . 2010-05-12 07:26 5401088 c:\windows\Downloaded Installations\{007B2E66-6447-4F37-B47F-1B2AE4DFB34B}\UPA-USB Device Programmer.msi
+ 2006-12-29 18:22 . 2010-08-03 18:09 35962312 c:\windows\system32\MRT.exe
+ 2006-11-07 20:03 . 2010-06-24 15:57 11077120 c:\windows\system32\ieframe.dll
+ 2007-05-09 13:47 . 2010-06-24 15:57 11077120 c:\windows\system32\dllcache\ieframe.dll
+ 2006-08-08 08:01 . 2005-12-26 23:13 11633664 c:\windows\system32\config\systemprofile\Local Settings\Data aplikací\{3248F0A6-6813-11D6-A77B-00B0D0150040}\J2SE Runtime Environment 5.0 Update 4.msi
+ 2010-04-02 17:29 . 2010-04-02 17:29 11413504 c:\windows\Microsoft.NET\Framework\v1.1.4322\Updates\M979906\M979906Uninstall.msp
+ 2009-05-05 16:06 . 2009-05-05 16:06 17515008 c:\windows\Installer\e7a89a.msp
+ 2010-06-28 21:46 . 2010-06-28 21:46 17512960 c:\windows\Installer\da514a.msp
+ 2009-08-10 12:09 . 2009-08-10 12:09 17254912 c:\windows\Installer\ba6d64.msp
+ 2009-03-09 13:55 . 2009-03-09 13:55 17526272 c:\windows\Installer\b73bb.msp
+ 2008-01-24 13:56 . 2008-01-24 13:56 13570560 c:\windows\Installer\73445c4.msp
+ 2005-09-25 09:46 . 2005-09-25 09:46 16084480 c:\windows\Installer\7344573.msp
+ 2008-01-29 11:14 . 2008-01-29 11:14 17524224 c:\windows\Installer\7344458.msp
+ 2007-07-12 19:51 . 2007-07-12 19:51 15256576 c:\windows\Installer\72c1c5.msp
+ 2008-10-28 18:17 . 2008-10-28 18:17 17520128 c:\windows\Installer\517344.msp
+ 2009-07-20 10:03 . 2009-07-20 10:03 16465408 c:\windows\Installer\40469a.msp
+ 2010-01-28 05:17 . 2010-01-28 05:17 17510400 c:\windows\Installer\3eeb9.msp
+ 2005-12-26 23:10 . 2005-12-26 23:10 19204096 c:\windows\Installer\3ab00.msp
+ 2008-08-19 07:37 . 2008-08-19 07:37 17523712 c:\windows\Installer\2a680a.msp
+ 2008-06-20 13:30 . 2008-06-20 13:30 16733184 c:\windows\Installer\269271.msp
+ 2010-04-02 10:30 . 2010-04-02 10:30 17456640 c:\windows\Installer\254fa2.msp
+ 2010-04-15 19:34 . 2010-04-15 19:34 17510912 c:\windows\Installer\254f85.msp
+ 2004-02-24 11:04 . 2004-02-24 11:04 56057492 c:\windows\Installer\1cb5ca.msp
+ 2009-10-08 17:04 . 2009-10-08 17:04 17510400 c:\windows\Installer\171e87.msp
+ 2010-08-12 18:28 . 2010-05-06 10:35 11076096 c:\windows\ie8updates\KB2183461-IE8\ieframe.dll
+ 2006-08-08 10:50 . 2006-08-08 10:50 12506904 c:\windows\Downloaded Installations\{4F2720AC-0516-495E-AA54-793C39767899}\ACDSee 5.0 PowerPack.msi
.
-- Snímek resetován k současnému datu --
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools"="c:\program files\DAEMON Tools\daemon.exe" [2007-08-16 167368]
"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2007-01-05 204288]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ATIPTA"="c:\program files\ATI Technologies\ATI Control Panel\atiptaxx.exe" [2005-08-09 344064]
"PTHOSTTR"="c:\program files\HPQ\HP ProtectTools Security Manager\PTHOSTTR.EXE" [2005-04-08 73728]
"UpdateManager"="c:\program files\Common Files\Sonic\Update Manager\sgtray.exe" [2003-08-19 110592]
"DLA"="c:\windows\System32\DLA\DLACTRLW.EXE" [2005-08-31 122940]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2005-06-20 729178]
"hpWirelessAssistant"="c:\program files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe" [2005-10-24 499712]
"eabconfg.cpl"="c:\program files\HPQ\Quick Launch Buttons\EabServr.exe" [2005-12-07 409600]
"CognizanceTS"="c:\progra~1\HPQ\IAM\Bin\AsTsVcc.dll" [2003-12-22 17920]
"Cpqset"="c:\program files\HPQ\Default Settings\cpqset.exe" [2005-06-29 233534]
"WatchDog"="c:\program files\InterVideo\DVD Check\DVDCheck.exe" [2005-07-04 184320]
"CloneCDTray"="c:\program files\SlySoft\CloneCD\CloneCDTray.exe" [2004-12-27 57344]
"NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2010-06-17 40368]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-06-09 976832]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-05-14 248552]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]

c:\documents and settings\Hack\Nabˇdka Start\Programy\Po spuçtŘnˇ\
ACSnews.lnk - c:\auto-diagnostika\ADnews.exe [2010-8-14 733184]
RT-Updater.lnk - c:\auto-diagnostika\vagcom.exe [2010-8-14 1205320]

c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2005-5-31 577597]
DVD Check.lnk - c:\program files\InterVideo\DVD Check\DVDCheck.exe [2006-8-8 184320]
Microsoft Office.lnk - c:\program files\Microsoft Office\Office10\OSA.EXE [2001-2-13 83360]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\OneCard]
2005-07-25 18:41 40960 ----a-w- c:\program files\HPQ\IAM\Bin\AsWlnPkg.dll

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\WINDOWS\\system32\\mstsc.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\MDC\\Magicdash\\vwdt2.exe"=
"c:\\Program Files\\Opera\\opera.exe"=
"c:\\Program Files\\ICQ7.2\\ICQ.exe"=
"c:\\Program Files\\ICQ7.2\\aolload.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"631:TCP"= 631:TCP:Tisk
"632:TCP"= 632:TCP:Tisk2
"13364:UDP"= 13364:UDP:Print Server Utility
"13621:UDP"= 13621:UDP:Print Server Utility
"13107:UDP"= 13107:UDP:Print Server Utility
"69:UDP"= 69:UDP:Print Server Utility TFTP

R1 oreans32;oreans32;c:\windows\system32\drivers\oreans32.sys [20.11.2008 20:45 33824]
R2 ASChannel;Local Communication Channel;c:\windows\System32\svchost.exe -k Cognizance [18.8.2004 10:00 14336]
R2 pardrv;pardrv;c:\windows\system32\drivers\pardrv.sys [12.8.2010 16:22 9728]
R3 HSFHWATI;HSFHWATI;c:\windows\system32\drivers\HSFHWATI.sys [18.4.2005 3:00 200576]
S1 SBRE;SBRE;\??\c:\windows\system32\drivers\SBREdrv.sys --> c:\windows\system32\drivers\SBREdrv.sys [?]
S3 ATMEGA8USB4;NYO4 Hardware Key;c:\windows\system32\drivers\nyousb.sys [7.5.2007 9:12 8489]
S3 EZUSB;Cypress General Purpose USB Driver (ezusb.sys);c:\windows\system32\drivers\ezusb.sys [16.9.2002 11:43 12307]
S3 FTD2XX;FTD2XX.SYS FT8U2XX device driver;c:\windows\system32\drivers\FTD2XX.sys [10.12.2008 22:22 29292]
S3 GTIPCI21;GTIPCI21;c:\windows\system32\drivers\gtipci21.sys [27.12.2005 1:31 87936]
S3 PEEK5;PEEK5 Protocol Driver;\??\e:\wifi\AIRCRA~1.2-W\bin\PEEK5.SYS --> e:\wifi\AIRCRA~1.2-W\bin\PEEK5.SYS [?]
S3 RT-USB;Ross-Tech USB driver;c:\windows\system32\drivers\RT-USB.SYS [10.12.2008 21:32 58880]
S3 SmokXX;SmokXX.SYS FT8U2XX device driver;c:\windows\system32\drivers\SmokXX.sys [28.3.2009 14:20 29292]
S3 TVICLPT;TVICLPT;\??\c:\windows\system32\DRIVERS\TVICLPT.SYS --> c:\windows\system32\DRIVERS\TVICLPT.SYS [?]
S3 zlportio;zlportio;\??\c:\černý\Calculatory\Licznik 9.02\zlportio.sys --> c:\černý\Calculatory\Licznik 9.02\zlportio.sys [?]
S4 sptd;sptd;c:\windows\system32\drivers\sptd.sys [3.6.2007 13:48 716272]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
Cognizance REG_MULTI_SZ ASChannel
.
.
------- Doplňkový sken -------
.
uStart Page = about:blank
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&s ... f8&oe=utf8
uInternet Connection Wizard,ShellNext = hxxp://www.hp.com/
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office10\EXCEL.EXE/3000
IE: Send To &Bluetooth - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-08-16 16:04
Windows 5.1.2600 Service Pack 3 NTFS

skenování skrytých procesů ...

skenování skrytých položek 'Po spuštění' ...

HKLM\Software\Microsoft\Windows\CurrentVersion\Run
Cpqset = c:\program files\HPQ\Default Settings\cpqset.exe????????????n??|?????? ???B?????????????hLC? ??????

skenování skrytých souborů ...

sken byl úspešně dokončen
skryté soubory: 0

**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------

- - - - - - - > 'winlogon.exe'(660)
c:\windows\system32\Ati2evxx.dll
c:\program files\HPQ\IAM\Bin\AsWlnPkg.dll
c:\program files\HPQ\IAM\Bin\ItVCard.dll
c:\program files\HPQ\IAM\bin\ITMSG.DLL
c:\program files\HPQ\IAM\bin\HPBrand.dll
c:\windows\system32\xenroll.dll
c:\program files\HPQ\IAM\Bin\ASChnl.dll

- - - - - - - > 'explorer.exe'(1228)
c:\program files\HPQ\IAM\bin\ItClient.dll
c:\program files\HPQ\IAM\Bin\SFSShell.dll
c:\program files\HPQ\IAM\bin\ItMsg.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
Celkový čas: 2010-08-16 16:12:54
ComboFix-quarantined-files.txt 2010-08-16 14:12
ComboFix2.txt 2010-08-15 10:53
ComboFix3.txt 2010-08-05 03:24
ComboFix4.txt 2010-08-01 16:08
ComboFix5.txt 2010-08-16 13:33

Před spuštěním: Volných bajtů: 11 949 359 104
Po spuštění: Volných bajtů: 11 967 234 048

- - End Of File - - 86179D5F6AFFDF233FF765DE64FD3C6F

Hack
Návštěvník
Návštěvník
Příspěvky: 14
Registrován: 23 kvě 2009 10:22

Re: Pomalý notebook a neustále běží HDD

#2 Příspěvek od Hack »

Prosim o pomoc.Dik

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Pomalý notebook a neustále běží HDD

#3 Příspěvek od motji »

Dobrý večer :)
Combofix se nedoporučuje používat bez dozoru rádce, hrozí poškození systému.

Změnilo se něco po použití combofixu?

Poprosím o log ze rsitu, viz můj podpis
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Hack
Návštěvník
Návštěvník
Příspěvky: 14
Registrován: 23 kvě 2009 10:22

Re: Pomalý notebook a neustále běží HDD

#4 Příspěvek od Hack »

Po scanu Combo fixu porad stejne.
Tady je log z Rsitu
Moc dik

Logfile of random's system information tool 1.08 (written by random/random)
Run by Hack at 2010-08-17 15:17:26
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 11 GB (20%) free of 57 GB
Total RAM: 383 MB (27% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:17:37, on 17.8.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\HPQ\IAM\bin\asghost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\HPQ\HP ProtectTools Security Manager\PTHOSTTR.EXE
C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe
C:\WINDOWS\System32\DLA\DLACTRLW.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe
C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe
C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Auto-diagnostika\ADnews.exe
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE
C:\PROGRA~1\HPQ\SHARED\HPQTOA~1.EXE
C:\Program Files\HPQ\Shared\hpqwmi.exe
G:\RSIT.exe
C:\Program Files\trend micro\Hack.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.hp.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\System32\DLA\DLASHX_W.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: HP Credential Manager for ProtectTools - {DF21F1DB-80C6-11D3-9483-B03D0EC10000} - C:\Program Files\HPQ\IAM\Bin\ItIeAddIN.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [PTHOSTTR] C:\Program Files\HPQ\HP ProtectTools Security Manager\PTHOSTTR.EXE /Start
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [DLA] C:\WINDOWS\System32\DLA\DLACTRLW.EXE
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe
O4 - HKLM\..\Run: [eabconfg.cpl] C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe /Start
O4 - HKLM\..\Run: [CognizanceTS] rundll32.exe C:\PROGRA~1\HPQ\IAM\Bin\AsTsVcc.dll,RegisterModule
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\HPQ\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [WatchDog] C:\Program Files\InterVideo\DVD Check\DVDCheck.exe
O4 - HKLM\..\Run: [CloneCDTray] "C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe" /s
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: ACSnews.lnk = C:\Auto-diagnostika\ADnews.exe
O4 - Startup: RT-Updater.lnk = C:\Auto-diagnostika\vagcom.exe
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: DVD Check.lnk = C:\Program Files\InterVideo\DVD Check\DVDCheck.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Send To &Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe (file missing)
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.hp.com
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microso ... 1789479546
O16 - DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} (GMNRev Class) - http://h20270.www2.hp.com/ediags/gmn2/i ... ection.cab
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - http://download.eset.com/special/eos/OnlineScanner.cab
O20 - Winlogon Notify: OneCard - C:\Program Files\HPQ\IAM\Bin\AsWlnPkg.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: HP WMI Interface (hpqwmi) - Hewlett-Packard Development Company, L.P. - C:\Program Files\HPQ\Shared\hpqwmi.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe

--
End of file - 7825 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2010-06-17 61888]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5CA3D70E-1895-11CF-8E15-001234567890}]
DriveLetterAccess - C:\WINDOWS\System32\DLA\DLASHX_W.DLL [2005-08-31 110652]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-07-17 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DF21F1DB-80C6-11D3-9483-B03D0EC10000}]
HP Credential Manager for ProtectTools - C:\Program Files\HPQ\IAM\Bin\ItIeAddIN.dll [2005-03-03 50688]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-07-17 79648]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ATIPTA"=C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe [2005-08-09 344064]
"PTHOSTTR"=C:\Program Files\HPQ\HP ProtectTools Security Manager\PTHOSTTR.EXE [2005-04-08 73728]
"UpdateManager"=C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe [2003-08-19 110592]
"DLA"=C:\WINDOWS\System32\DLA\DLACTRLW.EXE [2005-08-31 122940]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2005-06-20 729178]
"hpWirelessAssistant"=C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe [2005-10-24 499712]
"eabconfg.cpl"=C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe [2005-12-07 409600]
"CognizanceTS"=C:\PROGRA~1\HPQ\IAM\Bin\AsTsVcc.dll [2003-12-22 17920]
"Cpqset"=C:\Program Files\HPQ\Default Settings\cpqset.exe [2005-06-29 233534]
"WatchDog"=C:\Program Files\InterVideo\DVD Check\DVDCheck.exe [2005-07-04 184320]
"CloneCDTray"=C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe [2004-12-27 57344]
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2010-06-17 40368]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-06-09 976832]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-05-14 248552]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools"=C:\Program Files\DAEMON Tools\daemon.exe [2007-08-16 167368]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2007-01-05 204288]

C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
DVD Check.lnk - C:\Program Files\InterVideo\DVD Check\DVDCheck.exe
Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office10\OSA.EXE

C:\Documents and Settings\Hack\Nabídka Start\Programy\Po spuštění
ACSnews.lnk - C:\Auto-diagnostika\ADnews.exe
RT-Updater.lnk - C:\Auto-diagnostika\vagcom.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2005-08-09 46080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\OneCard]
C:\Program Files\HPQ\IAM\Bin\AsWlnPkg.dll [2005-07-25 40960]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2007-02-15 236928]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\WINDOWS\system32\mstsc.exe"="C:\WINDOWS\system32\mstsc.exe:*:Enabled:Připojení ke vzdálené ploše"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\MDC\Magicdash\vwdt2.exe"="C:\MDC\Magicdash\vwdt2.exe:*:Enabled:vwdt2"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\ICQ7.2\ICQ.exe"="C:\Program Files\ICQ7.2\ICQ.exe:*:Enabled:ICQ7.2"
"C:\Program Files\ICQ7.2\aolload.exe"="C:\Program Files\ICQ7.2\aolload.exe:*:Enabled:aolload.exe"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\ICQ7.2\ICQ.exe"="C:\Program Files\ICQ7.2\ICQ.exe:*:Enabled:ICQ7.2"
"C:\Program Files\ICQ7.2\aolload.exe"="C:\Program Files\ICQ7.2\aolload.exe:*:Enabled:aolload.exe"

======List of files/folders created in the last 1 months======

2010-08-16 16:12:55 ----A---- C:\ComboFix.txt
2010-08-15 22:38:55 ----D---- C:\Program Files\Airbag
2010-08-15 17:38:57 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2010-08-14 11:50:03 ----D---- C:\Auto-diagnostika
2010-08-12 20:30:41 ----HDC---- C:\WINDOWS\$NtUninstallKB982214$
2010-08-12 20:30:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2010-08-12 20:29:38 ----HDC---- C:\WINDOWS\$NtUninstallKB981852$
2010-08-12 20:29:30 ----HDC---- C:\WINDOWS\$NtUninstallKB2079403$
2010-08-12 20:28:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2160329$
2010-08-12 20:28:17 ----HDC---- C:\WINDOWS\$NtUninstallKB980436$
2010-08-12 20:25:00 ----HDC---- C:\WINDOWS\$NtUninstallKB981997$
2010-08-12 20:24:51 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2010-08-12 16:24:27 ----D---- C:\Documents and Settings\Hack\Data aplikací\Elnec
2010-08-12 16:22:46 ----A---- C:\WINDOWS\system32\drivers\Pg4uusb.sys
2010-08-12 16:22:46 ----A---- C:\WINDOWS\system32\DevPgCls.dll
2010-08-12 16:22:42 ----A---- C:\WINDOWS\system32\drivers\pardrv.sys
2010-08-12 16:22:41 ----D---- C:\Program Files\Elnec_sw
2010-08-05 04:37:35 ----A---- C:\WINDOWS\MBR.exe
2010-08-05 04:28:32 ----A---- C:\WINDOWS\system32\CF28905.exe
2010-08-04 20:23:10 ----D---- C:\Program Files\MSXML 4.0
2010-08-04 16:10:21 ----D---- C:\Documents and Settings\All Users\Data aplikací\Sunbelt
2010-08-03 20:00:48 ----HDC---- C:\WINDOWS\$NtUninstallKB2286198$
2010-08-03 19:58:48 ----A---- C:\WINDOWS\system32\javaws.exe
2010-08-03 19:58:48 ----A---- C:\WINDOWS\system32\javaw.exe
2010-08-03 19:58:48 ----A---- C:\WINDOWS\system32\java.exe

======List of files/folders modified in the last 1 months======

2010-08-17 15:17:33 ----D---- C:\Program Files\trend micro
2010-08-17 15:05:41 ----D---- C:\WINDOWS\Temp
2010-08-17 15:05:41 ----D---- C:\WINDOWS\system32
2010-08-16 20:41:37 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-08-16 20:34:53 ----A---- C:\WINDOWS\wincmd.ini
2010-08-16 16:12:47 ----D---- C:\Qoobox
2010-08-16 16:04:47 ----D---- C:\WINDOWS
2010-08-16 16:04:47 ----A---- C:\WINDOWS\system.ini
2010-08-16 16:00:40 ----D---- C:\WINDOWS\system32\drivers
2010-08-16 16:00:40 ----D---- C:\WINDOWS\AppPatch
2010-08-16 16:00:37 ----D---- C:\Program Files\Common Files
2010-08-16 15:53:36 ----D---- C:\WINDOWS\system32\CatRoot2
2010-08-16 15:46:56 ----HD---- C:\WINDOWS\inf
2010-08-16 15:46:55 ----SHD---- C:\WINDOWS\Installer
2010-08-16 15:46:43 ----SD---- C:\WINDOWS\Tasks
2010-08-16 15:45:51 ----D---- C:\WINDOWS\Prefetch
2010-08-16 15:12:42 ----D---- C:\WINDOWS\SxsCaPendDel
2010-08-16 13:48:29 ----RD---- C:\Program Files
2010-08-16 13:46:41 ----HD---- C:\Program Files\InstallShield Installation Information
2010-08-16 13:46:18 ----RSD---- C:\WINDOWS\Fonts
2010-08-16 13:39:16 ----DC---- C:\WINDOWS\system32\DRVSTORE
2010-08-15 22:39:40 ----D---- C:\Program Files\bde
2010-08-15 19:12:43 ----D---- C:\hack
2010-08-15 17:32:52 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2010-08-15 17:30:58 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-08-15 17:30:57 ----D---- C:\WINDOWS\WinSxS
2010-08-15 13:18:24 ----AD---- C:\Documents and Settings\All Users\Data aplikací\TEMP
2010-08-14 11:52:23 ----D---- C:\Program Files\DIFX
2010-08-14 11:10:58 ----D---- C:\černý
2010-08-12 20:30:44 ----RSHD---- C:\WINDOWS\system32\dllcache
2010-08-12 20:30:35 ----HD---- C:\WINDOWS\$hf_mig$
2010-08-12 20:30:33 ----A---- C:\WINDOWS\imsins.BAK
2010-08-12 20:29:04 ----D---- C:\Program Files\Internet Explorer
2010-08-12 20:25:02 ----D---- C:\Program Files\Movie Maker
2010-08-10 20:46:01 ----D---- C:\Documents and Settings\Hack\Data aplikací\ICQ
2010-08-06 16:26:35 ----A---- C:\WINDOWS\hc08.ini
2010-08-05 05:20:42 ----D---- C:\WINDOWS\ERDNT
2010-08-05 05:08:24 ----D---- C:\WINDOWS\system32\drivers\etc
2010-08-05 05:05:17 ----D---- C:\WINDOWS\system32\config
2010-08-04 19:52:13 ----D---- C:\NYO4
2010-08-03 20:09:31 ----A---- C:\WINDOWS\system32\MRT.exe
2010-08-03 19:59:32 ----D---- C:\Program Files\Common Files\Java
2010-08-03 19:58:46 ----D---- C:\Program Files\Java
2010-07-27 08:30:31 ----A---- C:\WINDOWS\system32\shell32.dll

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 DRVMCDB;DRVMCDB; C:\WINDOWS\System32\Drivers\DRVMCDB.SYS [2005-08-30 88752]
R0 ohci1394;Hostitelský řadič IEEE 1394 dle standardu OHCI Texas Instruments; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-13 61696]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2007-08-16 43528]
R1 AmdK8;Ovladač procesoru AMD; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2005-03-09 42496]
R1 ClntMgmt.sys;ClntMgmt.sys; C:\WINDOWS\System32\Drivers\ClntMgmt.sys [2004-02-20 59044]
R1 DLACDBHM;DLACDBHM; C:\WINDOWS\System32\Drivers\DLACDBHM.SYS [2005-08-25 5628]
R1 DLARTL_N;DLARTL_N; C:\WINDOWS\System32\Drivers\DLARTL_N.SYS [2005-08-25 22684]
R1 eabfiltr;EABFiltr; \??\C:\WINDOWS\system32\drivers\EABFiltr.sys []
R1 oreans32;oreans32; \??\C:\WINDOWS\system32\drivers\oreans32.sys []
R1 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2008-04-13 8832]
R2 DLABOIOM;DLABOIOM; C:\WINDOWS\System32\DLA\DLABOIOM.SYS [2005-08-31 25628]
R2 DLADResN;DLADResN; C:\WINDOWS\System32\DLA\DLADResN.SYS [2005-08-31 2496]
R2 DLAIFS_M;DLAIFS_M; C:\WINDOWS\System32\DLA\DLAIFS_M.SYS [2005-08-31 86524]
R2 DLAOPIOM;DLAOPIOM; C:\WINDOWS\System32\DLA\DLAOPIOM.SYS [2005-08-31 14684]
R2 DLAPoolM;DLAPoolM; C:\WINDOWS\System32\DLA\DLAPoolM.SYS [2005-08-31 6364]
R2 DLAUDF_M;DLAUDF_M; C:\WINDOWS\System32\DLA\DLAUDF_M.SYS [2005-08-31 87036]
R2 DLAUDFAM;DLAUDFAM; C:\WINDOWS\System32\DLA\DLAUDFAM.SYS [2005-08-31 94332]
R2 DRVNDDM;DRVNDDM; C:\WINDOWS\System32\Drivers\DRVNDDM.SYS [2005-08-12 40544]
R2 ElbyCDIO;ElbyCDIO Driver; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [2005-01-02 9728]
R2 mdmxsdk;mdmxsdk; C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys [2005-04-18 13059]
R2 pardrv;pardrv; C:\WINDOWS\system32\drivers\pardrv.sys [2008-01-23 9728]
R3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2005-08-09 1273856]
R3 ATSWPDRV;AuthenTec TruePrint USB Driver (AES2500); C:\WINDOWS\System32\Drivers\ATSwpDrv.sys [2005-07-12 117010]
R3 BCM43XX;Broadcom 802.11 ovladač síťového adaptéru; C:\WINDOWS\system32\DRIVERS\bcmwl5.sys [2005-07-05 371712]
R3 btaudio;Bluetooth Audio Device; C:\WINDOWS\system32\drivers\btaudio.sys [2005-05-31 401152]
R3 BTDriver;Bluetooth Virtual Communications Driver; C:\WINDOWS\system32\DRIVERS\btport.sys [2005-05-31 30363]
R3 BTKRNL;Bluetooth Bus Enumerator; C:\WINDOWS\system32\DRIVERS\btkrnl.sys [2005-05-31 1341466]
R3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:\WINDOWS\System32\Drivers\btwusb.sys [2005-05-31 56648]
R3 CAMCAUD;Conexant AMC Audio; C:\WINDOWS\system32\drivers\camc6aud.sys [2005-07-20 38144]
R3 CAMCHALA;CAMCHALA; C:\WINDOWS\system32\drivers\camc6hal.sys [2005-07-20 346496]
R3 ElbyCDFL;ElbyCDFL; C:\WINDOWS\System32\Drivers\ElbyCDFL.sys [2005-01-02 26240]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\System32\Drivers\GEARAspiWDM.sys [2009-01-15 23848]
R3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 HSF_DP;HSF_DP; C:\WINDOWS\system32\DRIVERS\HSF_DP.sys [2005-04-18 1038336]
R3 HSFHWATI;HSFHWATI; C:\WINDOWS\system32\DRIVERS\HSFHWATI.sys [2005-04-18 200576]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 sdbus;sdbus; C:\WINDOWS\system32\DRIVERS\sdbus.sys [2008-04-13 79232]
R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2005-06-20 190400]
R3 tifm21;tifm21; C:\WINDOWS\system32\drivers\tifm21.sys [2005-09-20 162432]
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 winachsf;winachsf; C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys [2005-04-18 703488]
S1 SBRE;SBRE; \??\C:\WINDOWS\system32\drivers\SBREdrv.sys []
S3 ATMEGA8USB4;NYO4 Hardware Key; C:\WINDOWS\System32\Drivers\nyousb.sys [2006-08-28 8489]
S3 b57w2k;Broadcom NetLink (TM) Gigabit Ethernet; C:\WINDOWS\system32\DRIVERS\b57xp32.sys [2005-02-16 128256]
S3 BTWDNDIS;Bluetooth LAN Access Server; C:\WINDOWS\system32\DRIVERS\btwdndis.sys [2005-05-31 148040]
S3 catchme;catchme; \??\C:\DOCUME~1\Hack\LOCALS~1\Temp\catchme.sys []
S3 dtscsi;dtscsi; C:\WINDOWS\System32\Drivers\dtscsi.sys []
S3 eabusb;eabusb; \??\C:\WINDOWS\system32\drivers\eabusb.sys []
S3 EZUSB;Cypress General Purpose USB Driver (ezusb.sys); C:\WINDOWS\System32\Drivers\ezusb.sys [2002-09-16 12307]
S3 FTD2XX;FTD2XX.SYS FT8U2XX device driver; C:\WINDOWS\System32\Drivers\FTD2XX.sys [2008-11-02 29292]
S3 FTDIBUS;USB Serial Converter Driver; C:\WINDOWS\system32\drivers\ftdibus.sys [2007-06-27 53184]
S3 FTSER2K;USB Serial Port Driver; C:\WINDOWS\system32\drivers\ftser2k.sys [2007-06-27 71488]
S3 GTIPCI21;GTIPCI21; C:\WINDOWS\system32\DRIVERS\gtipci21.sys [2005-05-31 87936]
S3 PEEK5;PEEK5 Protocol Driver; \??\E:\WiFI\AIRCRA~1.2-W\bin\PEEK5.SYS []
S3 Rasirda;WAN Miniport (IrDA); C:\WINDOWS\system32\DRIVERS\rasirda.sys [2001-08-17 19584]
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-03 20992]
S3 RT-USB;Ross-Tech USB driver; C:\WINDOWS\system32\drivers\RT-USB.sys [2009-05-21 58880]
S3 SMCIRDA;SMC IrCC Miniport Device Driver; C:\WINDOWS\system32\DRIVERS\smcirda.sys [2001-10-24 35913]
S3 SmokXX;SmokXX.SYS FT8U2XX device driver; C:\WINDOWS\System32\Drivers\SmokXX.sys [2008-08-14 29292]
S3 TVICLPT;TVICLPT; \??\C:\WINDOWS\system32\DRIVERS\TVICLPT.SYS []
S3 USBAAPL;Apple Mobile USB Driver; C:\WINDOWS\System32\Drivers\usbaapl.sys [2009-03-06 36864]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S3 zlportio;zlportio; \??\C:\černý\Calculatory\Licznik 9.02\zlportio.sys []
S4 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2009-05-19 716272]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ASChannel;Local Communication Channel; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2005-08-09 380928]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe [2005-05-31 258103]
R2 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2005-11-28 98304]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-07-17 153376]
R2 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
R3 hpqwmi;HP WMI Interface; C:\Program Files\HPQ\Shared\hpqwmi.exe [2005-10-06 94208]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe [2004-07-15 32768]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]

-----------------EOF-----------------

Hack
Návštěvník
Návštěvník
Příspěvky: 14
Registrován: 23 kvě 2009 10:22

Re: Pomalý notebook a neustále běží HDD

#5 Příspěvek od Hack »

Hallo,co ted?Je to v poradku?

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Pomalý notebook a neustále běží HDD

#6 Příspěvek od motji »

Omlouvám se, ale dostala jsem se k počítači až teď :) .

:arrow: Stahněte MBAM z mého podpisu
-Nainstalujte,dejte úplný sken

NIC NEMAZAT :!:
-MBAM má občas falešné detekce,proto budeme mazat až po kontrole logu.
-Log zkopírujte sem.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Odpovědět