Stránka 1 z 1

Vytizeni ram + pomale pc

Napsal: 19 říj 2010 18:12
od BoRy
Dobry den, prosim o kontrolu logu z Rsit. Prikladam i zaznam z mbam - vypsal mi nejakyho smejda. Nic sem nemazal a pockam na rady. Posledni dobou mam celkem pomale pc a pamet ram je pomerne dost vytizena. Predem dekuji za pomoc. Pokud sem udelal neco spatne tak se omlouvam dopredu...

RSIT:
Logfile of random's system information tool 1.08 (written by random/random)
Run by BB at 2010-10-19 19:00:08
Microsoft Windows 7 Ultimate
System drive C: has 63 GB (63%) free of 100 GB
Total RAM: 4094 MB (45% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:00:11, on 19.10.2010
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16671)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\IObit\Advanced SystemCare 3\AWC.exe
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
E:\Steam\Steam.exe
F:\uTorrent\uTorrent.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Program Files (x86)\IObitBar\toolbar\1.bin\i0brmon.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe
C:\Program Files (x86)\Opera\opera.exe
C:\Program Files\trend micro\BB.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {7757CBCC-0975-4b79-A519-90B142CA3A23} - C:\Program Files (x86)\IObitBar\toolbar\1.bin\i0SrcAs.dll
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Toolbar BHO - {EFA17361-CDC0-4927-9AFC-BAAD1F96B2AE} - C:\Program Files (x86)\IObitBar\toolbar\1.bin\i0bar.dll
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
O3 - Toolbar: IObit Toolbar - {EFA17369-CDC0-4927-9AFC-BAAD1F96B2AE} - C:\Program Files (x86)\IObitBar\toolbar\1.bin\i0bar.dll
O4 - HKLM\..\Run: [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files (x86)\ATI\ATICustomerCare\ATICustomerCare.exe"
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\Windows\RaidTool\xInsIDE.exe
O4 - HKLM\..\Run: [IObitBar Browser Plugin Loader] C:\PROGRA~2\IObitBar\toolbar\1.bin\i0brmon.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Steam] "e:\steam\steam.exe" -silent
O4 - HKCU\..\Run: [Advanced SystemCare 3] "C:\Program Files (x86)\IObit\Advanced SystemCare 3\AWC.exe" /startup
O4 - HKCU\..\Run: [uTorrent] "F:\uTorrent\uTorrent.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O17 - HKLM\System\CCS\Services\Tcpip\..\{72C32BF8-0C8B-457C-BE86-20EAC73B4D50}: NameServer = 10.255.255.10,10.255.255.20
O17 - HKLM\System\CS1\Services\Tcpip\..\{72C32BF8-0C8B-457C-BE86-20EAC73B4D50}: NameServer = 10.255.255.10,10.255.255.20
O17 - HKLM\System\CS2\Services\Tcpip\..\{72C32BF8-0C8B-457C-BE86-20EAC73B4D50}: NameServer = 10.255.255.10,10.255.255.20
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GEST Service for program management. (GEST Service) - Unknown owner - C:\Program Files (x86)\GIGABYTE\GEST\GSvr.exe
O23 - Service: IObit Toolbar Service (IObitBarService) - IObit - C:\PROGRA~2\IObitBar\toolbar\1.bin\i0barsvc.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 7784 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
winlogon.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
atieclxx
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\Alwil Software\Avast5\AvastSvc.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
C:\PROGRA~2\IObitBar\toolbar\1.bin\i0barsvc.exe
C:\Windows\system32\svchost.exe -k imgsvc
taskeng.exe {5A0C4F22-EDFA-4266-B6AA-305D7C4A7CF0}
"C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE" /logon
"C:\Program Files (x86)\IObit\Advanced SystemCare 3\AWC.exe" /startup
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
"E:\Steam\Steam.exe" -silent
"F:\uTorrent\uTorrent.exe"
"C:\Program Files\Alwil Software\Avast5\AvastUI.exe" /nogui
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\IObitBar\toolbar\1.bin\i0brmon.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Windows\system32\wuauclt.exe"
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe"
"C:\Program Files (x86)\Opera\opera.exe"
"C:\Windows\system32\NOTEPAD.EXE" C:\rsit\info.txt
"C:\Users\BB\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\AWC AutoSweep.job
C:\Windows\tasks\AWC Startup.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2010-06-28 202144]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2010-10-01 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EFA17361-CDC0-4927-9AFC-BAAD1F96B2AE}]
Toolbar BHO - C:\Program Files (x86)\IObitBar\toolbar\1.bin\i0bar.dll [2010-08-16 638976]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2010-06-28 1615256]
{EFA17369-CDC0-4927-9AFC-BAAD1F96B2AE} - IObit Toolbar - C:\Program Files (x86)\IObitBar\toolbar\1.bin\i0bar.dll [2010-08-16 638976]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"CanonMyPrinter"=C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2009-07-27 2184520]
"CanonSolutionMenu"=C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe [2009-03-18 767312]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-07-14 1475072]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2010-04-01 357696]
"Steam"=e:\steam\steam.exe [2010-08-24 1242448]
"Advanced SystemCare 3"=C:\Program Files (x86)\IObit\Advanced SystemCare 3\AWC.exe [2010-08-10 2349776]
"uTorrent"=F:\uTorrent\uTorrent.exe [2010-09-25 328056]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"avast5"=C:\Program Files\Alwil Software\Avast5\avastUI.exe [2010-09-07 2838912]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-05-27 98304]
"ATICustomerCare"=C:\Program Files (x86)\ATI\ATICustomerCare\ATICustomerCare.exe [2010-03-04 311296]
"JMB36X IDE Setup"=C:\Windows\RaidTool\xInsIDE.exe [2007-03-20 36864]
"IObitBar Browser Plugin Loader"=C:\PROGRA~2\IObitBar\toolbar\1.bin\i0brmon.exe [2010-08-16 20480]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2010-05-14 248552]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-09-23 35760]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-20 932288]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\RunOnce]
"Malwarebytes' Anti-Malware"=C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe [2009-12-30 429392]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2010-10-19 19:00:08 ----D---- C:\rsit
2010-10-19 18:57:10 ----D---- C:\Program Files\trend micro
2010-10-19 18:20:12 ----D---- C:\Users\BB\AppData\Roaming\Malwarebytes
2010-10-19 18:20:09 ----A---- C:\Windows\SYSWOW64\drivers\mbamswissarmy.sys
2010-10-19 18:20:08 ----D---- C:\ProgramData\Malwarebytes
2010-10-19 18:20:07 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2010-10-19 18:20:07 ----A---- C:\Windows\system32\drivers\mbam.sys
2010-10-19 18:19:26 ----D---- C:\Program Files (x86)\trend micro
2010-10-13 12:45:00 ----SHD---- C:\ProgramData\DSS
2010-10-13 12:28:49 ----A---- C:\Windows\system32\mshtml.dll
2010-10-13 12:28:46 ----A---- C:\Windows\system32\ieframe.dll
2010-10-13 12:28:45 ----A---- C:\Windows\system32\iertutil.dll
2010-10-13 12:28:44 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2010-10-13 12:28:44 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2010-10-13 12:28:43 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2010-10-13 12:28:41 ----A---- C:\Windows\system32\msfeeds.dll
2010-10-13 12:28:40 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2010-10-13 12:28:40 ----A---- C:\Windows\system32\urlmon.dll
2010-10-13 12:28:39 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2010-10-13 12:28:39 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2010-10-13 12:28:39 ----A---- C:\Windows\system32\licmgr10.dll
2010-10-13 12:28:38 ----A---- C:\Windows\SYSWOW64\wininet.dll
2010-10-13 12:28:38 ----A---- C:\Windows\system32\mshtmled.dll
2010-10-13 12:28:37 ----A---- C:\Windows\SYSWOW64\mstime.dll
2010-10-13 12:28:37 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2010-10-13 12:28:37 ----A---- C:\Windows\SYSWOW64\ieui.dll
2010-10-13 12:28:37 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2010-10-13 12:28:37 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2010-10-13 12:28:37 ----A---- C:\Windows\system32\wininet.dll
2010-10-13 12:28:37 ----A---- C:\Windows\system32\mstime.dll
2010-10-13 12:28:37 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-10-13 12:28:37 ----A---- C:\Windows\system32\ieui.dll
2010-10-13 12:28:37 ----A---- C:\Windows\system32\iepeers.dll
2010-10-13 12:28:37 ----A---- C:\Windows\system32\iedkcs32.dll
2010-10-13 12:28:36 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2010-10-13 12:28:36 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2010-10-13 12:28:36 ----A---- C:\Windows\system32\jsproxy.dll
2010-10-13 12:28:35 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2010-10-13 12:28:35 ----A---- C:\Windows\system32\msfeedssync.exe
2010-10-13 12:28:28 ----A---- C:\Windows\system32\ole32.dll
2010-10-13 12:28:27 ----A---- C:\Windows\SYSWOW64\ole32.dll
2010-10-13 12:28:21 ----A---- C:\Windows\system32\wmp.dll
2010-10-13 12:28:18 ----A---- C:\Windows\SYSWOW64\wmp.dll
2010-10-13 12:28:14 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2010-10-13 12:28:13 ----A---- C:\Windows\system32\wmploc.DLL
2010-10-13 12:28:11 ----A---- C:\Windows\SYSWOW64\t2embed.dll
2010-10-13 12:28:11 ----A---- C:\Windows\system32\t2embed.dll
2010-10-13 12:28:10 ----A---- C:\Windows\SYSWOW64\wmpmde.dll
2010-10-13 12:28:10 ----A---- C:\Windows\system32\wmpmde.dll
2010-10-13 12:28:09 ----A---- C:\Windows\SYSWOW64\schannel.dll
2010-10-13 12:28:09 ----A---- C:\Windows\system32\schannel.dll
2010-10-13 12:28:08 ----A---- C:\Windows\SYSWOW64\mfc40u.dll
2010-10-13 12:28:08 ----A---- C:\Windows\SYSWOW64\mfc40.dll
2010-10-13 12:28:06 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2010-10-13 12:28:06 ----A---- C:\Windows\system32\StructuredQuery.dll
2010-10-13 12:28:04 ----A---- C:\Windows\system32\comctl32.dll
2010-10-13 12:28:03 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2010-10-13 12:27:19 ----A---- C:\Windows\SYSWOW64\sscore.dll
2010-10-13 12:27:19 ----A---- C:\Windows\system32\srvsvc.dll
2010-10-13 12:27:19 ----A---- C:\Windows\system32\drivers\srvnet.sys
2010-10-13 12:27:19 ----A---- C:\Windows\system32\drivers\srv2.sys
2010-10-13 12:27:19 ----A---- C:\Windows\system32\drivers\srv.sys
2010-10-13 12:26:25 ----A---- C:\Windows\system32\win32k.sys
2010-10-12 14:29:56 ----D---- C:\Program Files (x86)\Electronic Arts
2010-10-11 00:50:11 ----D---- C:\Program Files (x86)\Vypínač na dobrou noc
2010-10-10 16:48:29 ----RHD---- C:\Users\BB\AppData\Roaming\SecuROM
2010-10-10 16:33:41 ----D---- C:\Users\BB\AppData\Roaming\Media Player Classic
2010-10-10 16:31:54 ----A---- C:\Users\BB\AppData\Roaming\AutoGK.ini
2010-10-10 11:43:07 ----D---- C:\Program Files (x86)\XviD
2010-10-10 11:42:53 ----D---- C:\Program Files (x86)\AviSynth 2.5
2010-10-10 11:42:35 ----D---- C:\Program Files (x86)\Gabest
2010-10-10 11:42:21 ----D---- C:\Program Files (x86)\AutoGK
2010-10-10 02:51:41 ----D---- C:\Program Files (x86)\Intelore
2010-10-09 00:53:17 ----D---- C:\Program Files (x86)\Adobe
2010-10-07 12:46:28 ----D---- C:\Program Files (x86)\SpeedFan
2010-10-01 19:55:15 ----D---- C:\ProgramData\Sun
2010-10-01 19:55:04 ----A---- C:\Windows\SYSWOW64\javaws.exe
2010-10-01 19:55:04 ----A---- C:\Windows\SYSWOW64\javaw.exe
2010-10-01 19:55:04 ----A---- C:\Windows\SYSWOW64\java.exe
2010-10-01 19:55:04 ----A---- C:\Windows\SYSWOW64\deployJava1.dll
2010-10-01 19:54:58 ----D---- C:\Program Files (x86)\Java
2010-09-29 07:46:39 ----A---- C:\Windows\system32\drivers\ks.sys
2010-09-29 07:46:05 ----A---- C:\Windows\SYSWOW64\tzres.dll
2010-09-29 07:46:05 ----A---- C:\Windows\system32\tzres.dll
2010-09-27 13:05:47 ----D---- C:\Users\BB\AppData\Roaming\BlackBean
2010-09-26 13:41:28 ----SHD---- C:\ProgramData\SecuROM
2010-09-26 13:21:32 ----D---- C:\Windows\3F5C371F8EA24F259D3DD0B4526E3AEA.TMP
2010-09-23 17:05:00 ----A---- C:\Windows\SYSWOW64\mkl_blueripple.dll
2010-09-23 17:04:58 ----RA---- C:\Windows\SYSWOW64\tmp8A84.tmp
2010-09-20 19:54:53 ----D---- C:\My Music
2010-09-20 19:52:49 ----D---- C:\Windows\Easy CD-DA Extractor
2010-09-20 19:52:49 ----D---- C:\Program Files (x86)\Easy CD-DA Extractor 10

======List of files/folders modified in the last 1 months======

2010-10-19 19:00:09 ----D---- C:\Windows\Temp
2010-10-19 18:59:54 ----D---- C:\Users\BB\AppData\Roaming\uTorrent
2010-10-19 18:57:13 ----D---- C:\Windows\Prefetch
2010-10-19 18:57:10 ----RD---- C:\Program Files
2010-10-19 18:20:09 ----D---- C:\Windows\SYSWOW64\drivers
2010-10-19 18:20:08 ----HD---- C:\ProgramData
2010-10-19 18:20:07 ----RD---- C:\Program Files (x86)
2010-10-19 18:20:07 ----D---- C:\Windows\system32\drivers
2010-10-19 16:15:56 ----D---- C:\Windows\system32\config
2010-10-18 16:40:01 ----D---- C:\Users\BB\AppData\Roaming\vlc
2010-10-18 16:39:47 ----D---- C:\Users\BB\AppData\Roaming\dvdcss
2010-10-16 11:48:16 ----SHD---- C:\Windows\Installer
2010-10-16 11:48:12 ----SHD---- C:\System Volume Information
2010-10-15 19:26:22 ----RSD---- C:\Windows\assembly
2010-10-15 19:13:02 ----D---- C:\Windows\System32
2010-10-15 19:13:02 ----D---- C:\Windows\inf
2010-10-15 19:13:02 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-10-15 09:52:31 ----D---- C:\Windows\system32\Tasks
2010-10-15 09:50:07 ----D---- C:\ProgramData\Codemasters
2010-10-15 09:46:52 ----D---- C:\Windows\system32\wdi
2010-10-14 10:58:46 ----D---- C:\Windows\Microsoft.NET
2010-10-14 09:22:08 ----D---- C:\Windows\winsxs
2010-10-13 14:46:22 ----D---- C:\Windows\system32\catroot2
2010-10-13 14:45:51 ----D---- C:\Windows\SYSWOW64\migration
2010-10-13 14:45:51 ----D---- C:\Windows\SysWOW64
2010-10-13 14:45:51 ----D---- C:\Windows\system32\migration
2010-10-13 14:45:51 ----D---- C:\Program Files\Internet Explorer
2010-10-13 14:45:51 ----D---- C:\Program Files (x86)\Windows Media Player
2010-10-13 14:45:51 ----D---- C:\Program Files (x86)\Internet Explorer
2010-10-13 14:45:50 ----D---- C:\Program Files\Windows Media Player
2010-10-13 12:31:18 ----A---- C:\Windows\system32\MRT.exe
2010-10-13 12:27:45 ----D---- C:\Windows\system32\catroot
2010-10-12 17:10:50 ----D---- C:\Windows\system32\FxsTmp
2010-10-10 11:08:56 ----SD---- C:\Users\BB\AppData\Roaming\Microsoft
2010-10-10 11:08:18 ----D---- C:\Program Files (x86)\Microsoft Office
2010-10-10 11:07:54 ----D---- C:\Program Files (x86)\MSECache
2010-10-10 01:46:25 ----D---- C:\Users\BB\AppData\Roaming\IObit
2010-10-09 00:53:19 ----D---- C:\ProgramData\Adobe
2010-10-09 00:53:17 ----D---- C:\Program Files (x86)\Common Files
2010-10-07 12:07:19 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2010-10-01 17:35:44 ----D---- C:\Users\BB\AppData\Roaming\Vso
2010-10-01 09:36:52 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2010-09-29 16:20:30 ----D---- C:\Windows\rescache
2010-09-29 08:07:27 ----D---- C:\Windows\SYSWOW64\sk-SK
2010-09-29 08:07:27 ----D---- C:\Windows\SYSWOW64\en-US
2010-09-29 08:07:27 ----D---- C:\Windows\SYSWOW64\cs-CZ
2010-09-29 08:07:27 ----D---- C:\Windows\system32\sk-SK
2010-09-29 08:07:27 ----D---- C:\Windows\system32\en-US
2010-09-29 08:07:27 ----D---- C:\Windows\system32\DriverStore
2010-09-29 08:07:27 ----D---- C:\Windows\system32\cs-CZ
2010-09-27 14:36:34 ----D---- C:\Users\BB\AppData\Roaming\DeepBurner
2010-09-27 11:01:13 ----D---- C:\Windows
2010-09-26 13:21:59 ----D---- C:\Windows\Logs
2010-09-26 13:06:26 ----D---- C:\ProgramData\Vso
2010-09-26 13:06:26 ----D---- C:\Program Files (x86)\VSO
2010-09-23 17:05:01 ----D---- C:\Program Files (x86)\BRS
2010-09-23 17:04:58 ----A---- C:\Windows\SYSWOW64\wrap_oal.dll
2010-09-23 17:04:58 ----A---- C:\Windows\SYSWOW64\OpenAL32.dll
2010-09-23 17:04:58 ----A---- C:\Windows\system32\wrap_oal.dll
2010-09-23 17:04:58 ----A---- C:\Windows\system32\OpenAL32.dll

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 JRAID;JRAID; C:\Windows\system32\DRIVERS\jraid.sys [2007-09-29 91648]
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 214096]
R0 speedfan;speedfan; C:\Windows\SysWOW64\speedfan.sys [2007-02-07 14104]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-07-18 834544]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2010-09-07 28752]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2010-09-07 121936]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2010-09-07 51280]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 514048]
R1 SCDEmu;SCDEmu; C:\Windows\system32\drivers\SCDEmu.sys [2009-03-15 85424]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2010-09-07 20048]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2010-09-07 61008]
R2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2010-09-13 314016]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2010-09-13 43680]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-05-27 6856192]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-05-27 264192]
R3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\AtiHdmi.sys [2010-05-06 125456]
R3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [2010-07-21 82816]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-08-19 239616]
R3 seehcri;Sony Ericsson seehcri Device Driver; C:\Windows\system32\DRIVERS\seehcri.sys [2010-08-21 34032]
S3 a5hbc8hg;a5hbc8hg; C:\Windows\system32\drivers\a5hbc8hg.sys []
S3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-05-27 6856192]
S3 ET5Drv;ET5Drv; \??\C:\Windows\ET5Drv.sys [2007-10-16 36416]
S3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2010-07-18 20544]
S3 ggflt;SEMC USB Flash Driver Filter; C:\Windows\system32\DRIVERS\ggflt.sys [2010-08-21 13352]
S3 ggsemc;SEMC USB Flash Driver; C:\Windows\system32\DRIVERS\ggsemc.sys [2010-08-21 27176]
S3 Pcouffin64;Low level access layer for CD devices; C:\Windows\System32\Drivers\pcouffin64a.sys [2010-07-21 82048]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2009-07-14 165376]
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 6656]
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 34896]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 200272]
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 21760]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 40448]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2010-05-27 203264]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 IObitBarService;IObit Toolbar Service; C:\PROGRA~2\IObitBar\toolbar\1.bin\i0barsvc.exe [2010-08-16 28766]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2010-10-07 411432]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 GEST Service;GEST Service for program management.; C:\Program Files (x86)\GIGABYTE\GEST\GSvr.exe [2007-12-14 47624]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S4 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------


MBAM:
Malwarebytes' Anti-Malware 1.43
Verze databáze: 3458
Windows 6.1.7600
Internet Explorer 8.0.7600.16385

19.10.2010 18:36:38
mbam-log-2010-10-19 (18-36-33).txt

Typ kontroly: Rychlá kontrola
Zkontrolované objekty: 89984
Uplynulý čas: 2 minute(s), 28 second(s)

Infikované procesy v paměti: 0
Infikované moduly v paměti: 0
Infikované klíče registru: 0
Infikované hodnoty registru: 0
Infikované datové položky registru: 1
Infikované adresáře: 0
Infikované soubory: 0

Infikované procesy v paměti:
(Nebyly nalezeny žádné škodlivé položky)

Infikované moduly v paměti:
(Nebyly nalezeny žádné škodlivé položky)

Infikované klíče registru:
(Nebyly nalezeny žádné škodlivé položky)

Infikované hodnoty registru:
(Nebyly nalezeny žádné škodlivé položky)

Infikované datové položky registru:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoActiveDesktopChanges (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.

Infikované adresáře:
(Nebyly nalezeny žádné škodlivé položky)

Infikované soubory:
(Nebyly nalezeny žádné škodlivé položky)

Re: Vytizeni ram + pomale pc

Napsal: 19 říj 2010 20:39
od Roli
Zdravím, tohle fixni v HJT :

R3 - URLSearchHook: (no name) - {7757CBCC-0975-4b79-A519-90B142CA3A23} - C:\Program Files (x86)\IObitBar\toolbar\1.bin\i0SrcAs.dll
O2 - BHO: Toolbar BHO - {EFA17361-CDC0-4927-9AFC-BAAD1F96B2AE} - C:\Program Files (x86)\IObitBar\toolbar\1.bin\i0bar.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files (x86)\ATI\ATICustomerCare\ATICustomerCare.exe"
O4 - HKLM\..\Run: [IObitBar Browser Plugin Loader] C:\PROGRA~2\IObitBar\toolbar\1.bin\i0brmon.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [Advanced SystemCare 3] "C:\Program Files (x86)\IObit\Advanced SystemCare 3\AWC.exe" /startup


HJT najdeš zde :

C:\Program Files\trend micro\BB.exe

Fix znamená že spustíš HJT Obrázek jako admin

v okně které se ti otevře klikneš na Do a system scan only

v dalším okně najdeš řádky které jsem ti vypsal,

vedle nich je čtvereček do kterého uděláš zatržítko,

pak klikneš na Fix checked které je vlevo dole,

program se ti zeptá zda opravdu ANO s tím samozřejmě souhlasíš a je hotovo.


Přes Start >> Všechny programy >> Příslušenství >> Spustit >> napiš - services.msc >> Enter. Najdi službu :

IObit Toolbar Service

klikni na ni pravým myšítkem, zvol vlastnosti, na další kartě nejprve službu zastav tlačítkem Zastavit a u položky Typ spouštění zvol Zakázáno.


To co našel Mbam nech smazat.


Smaž nepotřebné soubory

pomocí CCleaneru

návod :

Čistič - tady vyčistíš PC od nepotřebných souborů a vysypeš Koš

Registry - tady vyčistíš registry (před použitím doporučuji udělat jejich zálohu kterou CCleaner nabízí)

Čištění registru je třeba několikrát zopakovat !


Stáhni a spusť OTMoveIt

do levého okna aplikace pod Paste Instructions for Items to be Moved zkopíruj tento text:

Kód: Vybrat vše

:processes
explorer.exe       

:files 
C:\*.tmp
C:\WINDOWS\System32\*.tmp
C:\WINDOWS\*.tmp

:commands
[purity]
[emptytemp]
[start explorer]
klikni na MoveIt! a v pravém zeleném okně aplikace se Ti objeví info o provedene akci, obsah okna zkopíruj sem,

pokud aplikace bude požadovat restart, klikni na YES

v tom případě sem chci zkopírovat obsah logu uloženého na C:\_OTMoveIt\MovedFiles\

Re: Vytizeni ram + pomale pc

Napsal: 20 říj 2010 15:45
od BoRy
Tak vcera uz me to sem nepustilo, takze log z OTM prikladam az dnes:

All processes killed
========== PROCESSES ==========
No active process named explorer.exe was found!
========== FILES ==========
File/Folder C:\*.tmp not found.
C:\WINDOWS\System32\tmp8A83.tmp moved successfully.
C:\WINDOWS\System32\tmp8A84.tmp moved successfully.
C:\WINDOWS\System32\tmpD496.tmp moved successfully.
C:\WINDOWS\System32\tmpD497.tmp moved successfully.
C:\WINDOWS\1C4551A64743409391E41477CD655043.TMP folder moved successfully.
C:\WINDOWS\3F5C371F8EA24F259D3DD0B4526E3AEA.TMP folder moved successfully.
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: BB
->Temp folder emptied: 19280671 bytes
->Temporary Internet Files folder emptied: 522520 bytes
->Java cache emptied: 0 bytes
->Opera cache emptied: 17667635 bytes
->Flash cache emptied: 0 bytes

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Public

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 4935801 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 50641 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 41,00 mb


OTM by OldTimer - Version 3.1.16.1 log created on 10192010_224943

Files moved on Reboot...
C:\Users\BB\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
File move failed. C:\Windows\temp\_avast5_\Webshlock.txt scheduled to be moved on reboot.

Registry entries deleted on Reboot...

Re: Vytizeni ram + pomale pc

Napsal: 20 říj 2010 20:02
od Roli
Ještě použij CuerIt z mého podpisu.

Re: Vytizeni ram + pomale pc

Napsal: 21 říj 2010 10:56
od BoRy
Tak CuerIt nenalezl zadny vir. Nechal sem project tu prvni kontrolu.

Re: Vytizeni ram + pomale pc

Napsal: 21 říj 2010 19:32
od Roli
Dobře a jak je na tom PC ?

Re: Vytizeni ram + pomale pc

Napsal: 21 říj 2010 22:06
od BoRy
Comp uz slape v pohode, ram behaji kol. 30% vytizeni v klidu.

Re: Vytizeni ram + pomale pc

Napsal: 22 říj 2010 21:43
od Roli
Ještě bys mohl třeba přes CCleaner vypnou po startu DAEMON Tools Lite a Steam.

No a jestli už není jiný problém máme hotovo.