Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

prosim o kontrolu, pomaly pc

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
markm.free
Návštěvník
Návštěvník
Příspěvky: 62
Registrován: 24 dub 2008 13:48

prosim o kontrolu, pomaly pc

#1 Příspěvek od markm.free »

Logfile of random's system information tool 1.08 (written by random/random)
Run by Marek Matýs at 2010-12-08 19:58:15
Microsoft Windows 7 Home Premium
System drive C: has 230 GB (53%) free of 431 GB
Total RAM: 4087 MB (56% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:58:19, on 8.12.2010
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16671)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files\Lenovo\Lenovo SlideNav\SlidebarNavigator\SlidebarNavigator.exe
C:\Program Files (x86)\Winamp\winampa.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\PowerISO\PWRISOVM.EXE
C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe
C:\Program Files\Lenovo\Lenovo SlideNav\SlidebarNavigator\SlidebarDriverAdapter_550vista.exe
C:\Program Files\Lenovo\Lenovo SlideNav\SlidebarNavigator\SlidebarNotifier.exe
C:\Program Files (x86)\Opera\opera.exe
C:\Program Files\trend micro\Marek Matýs.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.lenovo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://btjunkie.org/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://lenovo.live.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: pdfforge Toolbar - {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:\Program Files (x86)\pdfforge Toolbar\IE\4.1\pdfforgeToolbarIE.dll
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: pdfforge Toolbar - {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:\Program Files (x86)\pdfforge Toolbar\IE\4.1\pdfforgeToolbarIE.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files (x86)\Windows Live Toolbar\msntb.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files (x86)\Windows Live Toolbar\msntb.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll
O3 - Toolbar: pdfforge Toolbar - {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:\Program Files (x86)\pdfforge Toolbar\IE\4.1\pdfforgeToolbarIE.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [MDS_Menu] "C:\Program Files (x86)\Lenovo\MediaShow\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\MediaShow" UpdateWithCreateOnce "Software\CyberLink\MediaShow\4.1"
O4 - HKLM\..\Run: [Lenovo SlideNav] "C:\Program Files\Lenovo\Lenovo SlideNav\SlidebarNavigator\SlidebarNavigator.exe"
O4 - HKLM\..\Run: [OnekeyDM] C:\Program Files (x86)\Lenovo\OnekeyDM\OnekeyDM.exe
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files (x86)\Winamp\winampa.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files (x86)\PowerISO\PWRISOVM.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [SearchSettings] "C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~2\MICROS~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {53F6FCCD-9E22-4d71-86EA-6E43136192AB} - (no file)
O9 - Extra button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files (x86)\ICQ7.2\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files (x86)\ICQ7.2\ICQ.exe
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: (no name) - {925DAB62-F9AC-4221-806A-057BFB1014AA} - (no file)
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Odeslat do zařízení Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Odeslat do zařízení &Bluetooth... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: Application Updater - Spigot, Inc. - C:\Program Files (x86)\Application Updater\ApplicationUpdater.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service 64 - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: Úložná technologie Intel(R) Rapid (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files (x86)\ICQ6Toolbar\ICQ Service.exe
O23 - Service: IGRS - Lenovo Group Limited - C:\Program Files (x86)\Lenovo\ReadyComm\common\IGRS.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Lenovo ReadyComm AppSvc - Lenovo Group Limited - C:\Program Files\Lenovo\ReadyComm\AppSvc.exe
O23 - Service: Lenovo ReadyComm ConnSvc - Lenovo Group Limited - C:\Program Files\Lenovo\ReadyComm\ConnSvc.exe
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\Cyberlink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Novell XTier Service Manager (XTSvcMgr) - Unknown owner - C:\Program Files (x86)\Novell\Client\XTier\Services\XTSvcMgr.exe (file missing)

--
End of file - 11683 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\nvvsvc.exe
C:\windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Essentials\MsMpEng.exe"
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k netsvcs
winlogon.exe
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\Novell\Client\XTier\Services\XTSvcMgr.exe"
"C:\Program Files (x86)\Application Updater\ApplicationUpdater.exe"
C:\windows\system32\nvvsvc.exe -session -first
"C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe"
"C:\Program Files (x86)\ICQ6Toolbar\ICQ Service.exe"
"C:\Program Files (x86)\Lenovo\ReadyComm\common\IGRS.exe"
"C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe"
"C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE"
"C:\Program Files (x86)\Cyberlink\Shared files\RichVideo.exe"
"C:\windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll" saHooker_Initialize_and_Wait
"C:\windows\system32\rundll32.exe" "c:\PROGRA~2\mcafee\SITEAD~1\saHook.dll" saHooker_Initialize_and_Wait
"c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
C:\windows\system32\wbem\wmiprvse.exe
"C:\windows\system32\Dwm.exe"
"taskhost.exe"
C:\windows\Explorer.EXE
C:\windows\system32\svchost.exe -k bthsvcs
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files\Microsoft Security Essentials\msseces.exe" -hide -runkey
"C:\Windows\System32\nwtray.exe"
"C:\Windows\System32\nwtray.exe"
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files\Lenovo\Lenovo SlideNav\SlidebarNavigator\SlidebarNavigator.exe"
"C:\Program Files (x86)\Lenovo\OnekeyDM\OnekeyDM.exe"
"C:\Program Files (x86)\Winamp\winampa.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\PowerISO\PWRISOVM.EXE"
"C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe"
"C:\Program Files\Lenovo\Lenovo SlideNav\SlidebarNavigator\SlidebarDriverAdapter_550vista.exe"
C:\windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Lenovo\Lenovo SlideNav\SlidebarNavigator\SlidebarNotifier.exe" -Embedding
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
C:\windows\system32\svchost.exe -k SDRSVC
"C:\Program Files (x86)\Opera\opera.exe"
C:\windows\system32\wbem\wmiprvse.exe
"c:\Program Files\Microsoft Security Essentials\MpCmdRun.exe" SpyNetService -RestrictPrivileges -AccessKey B58CFAA3-74E4-0A77-0EC0-47C731227A46 -Reinvoke
C:\windows\System32\svchost.exe -k WerSvcGroup
taskeng.exe {FCA03D6A-1678-411A-BE71-2DFA83DAB961}
"C:\Users\Marek Matýs\Desktop\RSITx64.exe"

======Scheduled tasks folder======

C:\windows\tasks\Check Updates for Windows Live Toolbar.job
C:\windows\tasks\PCConfidential.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll [2010-08-04 275112]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-21 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Plug-In - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-09-27 1250696]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll [2010-08-04 228256]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B922D405-6D13-4A2B-AE89-08A030DA4402}]
pdfforge Toolbar - C:\Program Files (x86)\pdfforge Toolbar\IE\4.1\pdfforgeToolbarIE.dll [2010-10-22 726016]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0}]
Windows Live Toolbar Helper - C:\Program Files (x86)\Windows Live Toolbar\msntb.dll [2007-02-12 546672]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2010-09-15 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll [2010-08-04 275112]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll [2010-08-04 228256]
{BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - Windows Live Toolbar - C:\Program Files (x86)\Windows Live Toolbar\msntb.dll [2007-02-12 546672]
{855F3B16-6D32-4FE6-8A56-BBB695989046} - ICQToolBar - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll [2010-06-02 1018616]
{B922D405-6D13-4A2B-AE89-08A030DA4402} - pdfforge Toolbar - C:\Program Files (x86)\pdfforge Toolbar\IE\4.1\pdfforgeToolbarIE.dll [2010-10-22 726016]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2009-12-17 9643040]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-09-24 1853736]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\utility.exe [2009-09-01 4366704]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2009-08-19 5825536]
"MSSE"=c:\Program Files\Microsoft Security Essentials\msseces.exe [2010-09-15 1448568]
"NWTRAY"=C:\windows\system32\NWTRAY.EXE [2009-12-27 37400]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ReadyComm5"= []
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-07-14 1475072]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2009-11-20 284696]
"MDS_Menu"=C:\Program Files (x86)\Lenovo\MediaShow\MUITransfer\MUIStartMenu.exe [2008-11-14 218408]
"Lenovo SlideNav"=C:\Program Files\Lenovo\Lenovo SlideNav\SlidebarNavigator\SlidebarNavigator.exe [2009-10-22 845640]
"OnekeyDM"=C:\Program Files (x86)\Lenovo\OnekeyDM\OnekeyDM.exe [2009-03-27 468480]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2008-12-03 218408]
"WinampAgent"=C:\Program Files (x86)\Winamp\winampa.exe [2010-06-28 74752]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2010-05-14 248552]
"PWRISOVM.EXE"=C:\Program Files (x86)\PowerISO\PWRISOVM.EXE [2010-04-12 180224]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-12-22 35760]
""= []
"SearchSettings"=C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe [2010-10-22 524288]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"authentication packages"=msv1_0
ncv1_0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open - C:\windows\system32\notepad.exe "%1"
.scr - install -
.scr - config -

======List of files/folders created in the last 1 months======

2010-12-08 19:51:46 ----DC---- C:\rsit
2010-12-08 19:51:46 ----DC---- C:\Program Files\trend micro
2010-12-08 10:04:09 ----D---- C:\windows\Minidump
2010-11-21 22:54:38 ----D---- C:\Users\Marek Matýs\AppData\Roaming\skypePM
2010-11-21 22:52:12 ----RD---- C:\Program Files (x86)\Skype
2010-11-21 22:52:12 ----D---- C:\Users\Marek Matýs\AppData\Roaming\Skype
2010-11-21 22:52:08 ----D---- C:\ProgramData\Skype
2010-11-19 20:23:37 ----D---- C:\Program Files (x86)\pdfforge Toolbar
2010-11-19 20:23:37 ----D---- C:\Program Files (x86)\Application Updater
2010-11-19 13:07:15 ----D---- C:\ProgramData\Electronic Arts
2010-11-19 13:07:15 ----D---- C:\ProgramData\EA Core
2010-11-19 12:45:29 ----A---- C:\windows\SYSWOW64\XAudio2_6.dll
2010-11-19 12:45:29 ----A---- C:\windows\SYSWOW64\XAPOFX1_4.dll
2010-11-19 12:45:29 ----A---- C:\windows\SYSWOW64\xactengine3_6.dll
2010-11-19 12:45:29 ----A---- C:\windows\system32\XAudio2_6.dll
2010-11-19 12:45:29 ----A---- C:\windows\system32\XAPOFX1_4.dll
2010-11-19 12:45:29 ----A---- C:\windows\system32\xactengine3_6.dll
2010-11-19 12:45:28 ----A---- C:\windows\SYSWOW64\X3DAudio1_7.dll
2010-11-19 12:45:28 ----A---- C:\windows\system32\X3DAudio1_7.dll
2010-11-19 12:40:20 ----D---- C:\ProgramData\Solidshield
2010-11-14 12:17:57 ----D---- C:\Program Files (x86)\THQ
2010-11-14 12:13:36 ----D---- C:\Users\Marek Matýs\AppData\Roaming\InstallShield
2010-11-14 12:13:36 ----D---- C:\ProgramData\InstallShield
2010-11-10 20:03:47 ----A---- C:\windows\SYSWOW64\XAudio2_5.dll
2010-11-10 20:03:47 ----A---- C:\windows\SYSWOW64\xactengine3_5.dll
2010-11-10 20:03:47 ----A---- C:\windows\system32\XAudio2_5.dll
2010-11-10 20:03:47 ----A---- C:\windows\system32\xactengine3_5.dll
2010-11-10 20:03:46 ----A---- C:\windows\SYSWOW64\D3DCompiler_42.dll
2010-11-10 20:03:46 ----A---- C:\windows\system32\D3DCompiler_42.dll
2010-11-10 20:03:41 ----A---- C:\windows\SYSWOW64\d3dcsx_42.dll
2010-11-10 20:03:41 ----A---- C:\windows\system32\d3dcsx_42.dll
2010-11-10 20:03:40 ----A---- C:\windows\SYSWOW64\d3dx11_42.dll
2010-11-10 20:03:40 ----A---- C:\windows\system32\d3dx11_42.dll
2010-11-10 20:03:39 ----A---- C:\windows\SYSWOW64\d3dx10_42.dll
2010-11-10 20:03:39 ----A---- C:\windows\system32\d3dx10_42.dll
2010-11-10 20:03:38 ----A---- C:\windows\SYSWOW64\D3DX9_42.dll
2010-11-10 20:03:38 ----A---- C:\windows\system32\D3DX9_42.dll
2010-11-10 20:03:35 ----A---- C:\windows\SYSWOW64\D3DCompiler_41.dll
2010-11-10 20:03:35 ----A---- C:\windows\system32\D3DCompiler_41.dll
2010-11-10 20:03:34 ----A---- C:\windows\SYSWOW64\d3dx10_41.dll
2010-11-10 20:03:34 ----A---- C:\windows\system32\d3dx10_41.dll
2010-11-10 20:03:30 ----A---- C:\windows\SYSWOW64\D3DX9_41.dll
2010-11-10 20:03:30 ----A---- C:\windows\system32\D3DX9_41.dll
2010-11-10 20:03:29 ----A---- C:\windows\SYSWOW64\XAudio2_4.dll
2010-11-10 20:03:29 ----A---- C:\windows\SYSWOW64\XAPOFX1_3.dll
2010-11-10 20:03:29 ----A---- C:\windows\system32\XAudio2_4.dll
2010-11-10 20:03:29 ----A---- C:\windows\system32\XAPOFX1_3.dll
2010-11-10 20:03:28 ----A---- C:\windows\SYSWOW64\xactengine3_4.dll
2010-11-10 20:03:28 ----A---- C:\windows\SYSWOW64\X3DAudio1_6.dll
2010-11-10 20:03:28 ----A---- C:\windows\system32\xactengine3_4.dll
2010-11-10 20:03:28 ----A---- C:\windows\system32\X3DAudio1_6.dll
2010-11-10 20:03:25 ----A---- C:\windows\SYSWOW64\d3dx10_40.dll
2010-11-10 20:03:25 ----A---- C:\windows\SYSWOW64\D3DCompiler_40.dll
2010-11-10 20:03:25 ----A---- C:\windows\system32\d3dx10_40.dll
2010-11-10 20:03:25 ----A---- C:\windows\system32\D3DCompiler_40.dll
2010-11-10 20:03:22 ----A---- C:\windows\SYSWOW64\D3DX9_40.dll
2010-11-10 20:03:22 ----A---- C:\windows\system32\D3DX9_40.dll
2010-11-10 20:03:21 ----A---- C:\windows\SYSWOW64\XAudio2_3.dll
2010-11-10 20:03:21 ----A---- C:\windows\SYSWOW64\XAPOFX1_2.dll
2010-11-10 20:03:21 ----A---- C:\windows\system32\XAudio2_3.dll
2010-11-10 20:03:21 ----A---- C:\windows\system32\XAPOFX1_2.dll
2010-11-10 20:03:20 ----A---- C:\windows\SYSWOW64\xactengine3_3.dll
2010-11-10 20:03:20 ----A---- C:\windows\SYSWOW64\X3DAudio1_5.dll
2010-11-10 20:03:20 ----A---- C:\windows\system32\xactengine3_3.dll
2010-11-10 20:03:20 ----A---- C:\windows\system32\X3DAudio1_5.dll
2010-11-10 20:03:19 ----A---- C:\windows\SYSWOW64\XAudio2_2.dll
2010-11-10 20:03:19 ----A---- C:\windows\SYSWOW64\XAPOFX1_1.dll
2010-11-10 20:03:19 ----A---- C:\windows\system32\XAudio2_2.dll
2010-11-10 20:03:19 ----A---- C:\windows\system32\XAPOFX1_1.dll
2010-11-10 20:03:18 ----A---- C:\windows\SYSWOW64\xactengine3_2.dll
2010-11-10 20:03:18 ----A---- C:\windows\system32\xactengine3_2.dll
2010-11-10 20:03:16 ----A---- C:\windows\SYSWOW64\d3dx10_39.dll
2010-11-10 20:03:16 ----A---- C:\windows\SYSWOW64\D3DCompiler_39.dll
2010-11-10 20:03:16 ----A---- C:\windows\system32\d3dx10_39.dll
2010-11-10 20:03:16 ----A---- C:\windows\system32\D3DCompiler_39.dll
2010-11-10 20:03:13 ----A---- C:\windows\SYSWOW64\D3DX9_39.dll
2010-11-10 20:03:13 ----A---- C:\windows\system32\D3DX9_39.dll
2010-11-10 20:03:12 ----A---- C:\windows\SYSWOW64\XAudio2_1.dll
2010-11-10 20:03:12 ----A---- C:\windows\SYSWOW64\XAPOFX1_0.dll
2010-11-10 20:03:12 ----A---- C:\windows\system32\XAudio2_1.dll
2010-11-10 20:03:12 ----A---- C:\windows\system32\XAPOFX1_0.dll
2010-11-10 20:03:11 ----A---- C:\windows\SYSWOW64\xactengine3_1.dll
2010-11-10 20:03:11 ----A---- C:\windows\system32\xactengine3_1.dll
2010-11-10 20:03:10 ----A---- C:\windows\SYSWOW64\X3DAudio1_4.dll
2010-11-10 20:03:10 ----A---- C:\windows\system32\X3DAudio1_4.dll
2010-11-10 20:03:08 ----A---- C:\windows\SYSWOW64\d3dx10_38.dll
2010-11-10 20:03:08 ----A---- C:\windows\SYSWOW64\D3DCompiler_38.dll
2010-11-10 20:03:08 ----A---- C:\windows\system32\d3dx10_38.dll
2010-11-10 20:03:08 ----A---- C:\windows\system32\D3DCompiler_38.dll
2010-11-10 20:03:06 ----A---- C:\windows\SYSWOW64\XAudio2_0.dll
2010-11-10 20:03:06 ----A---- C:\windows\SYSWOW64\D3DX9_38.dll
2010-11-10 20:03:06 ----A---- C:\windows\system32\XAudio2_0.dll
2010-11-10 20:03:06 ----A---- C:\windows\system32\D3DX9_38.dll
2010-11-10 20:03:05 ----A---- C:\windows\SYSWOW64\xactengine3_0.dll
2010-11-10 20:03:05 ----A---- C:\windows\system32\xactengine3_0.dll
2010-11-10 20:03:04 ----A---- C:\windows\SYSWOW64\X3DAudio1_3.dll
2010-11-10 20:03:04 ----A---- C:\windows\system32\X3DAudio1_3.dll
2010-11-10 20:03:03 ----A---- C:\windows\SYSWOW64\d3dx10_37.dll
2010-11-10 20:03:03 ----A---- C:\windows\SYSWOW64\D3DCompiler_37.dll
2010-11-10 20:03:03 ----A---- C:\windows\system32\d3dx10_37.dll
2010-11-10 20:03:03 ----A---- C:\windows\system32\D3DCompiler_37.dll
2010-11-10 20:03:00 ----A---- C:\windows\SYSWOW64\D3DX9_37.dll
2010-11-10 20:03:00 ----A---- C:\windows\system32\D3DX9_37.dll
2010-11-10 20:02:59 ----A---- C:\windows\SYSWOW64\xactengine2_10.dll
2010-11-10 20:02:59 ----A---- C:\windows\system32\xactengine2_10.dll
2010-11-10 20:02:56 ----A---- C:\windows\SYSWOW64\d3dx10_36.dll
2010-11-10 20:02:56 ----A---- C:\windows\SYSWOW64\D3DCompiler_36.dll
2010-11-10 20:02:56 ----A---- C:\windows\system32\d3dx10_36.dll
2010-11-10 20:02:56 ----A---- C:\windows\system32\D3DCompiler_36.dll
2010-11-10 20:02:52 ----A---- C:\windows\SYSWOW64\d3dx9_36.dll
2010-11-10 20:02:52 ----A---- C:\windows\system32\d3dx9_36.dll
2010-11-10 20:02:51 ----A---- C:\windows\SYSWOW64\xactengine2_9.dll
2010-11-10 20:02:51 ----A---- C:\windows\system32\xactengine2_9.dll
2010-11-10 20:02:49 ----A---- C:\windows\SYSWOW64\d3dx10_35.dll
2010-11-10 20:02:49 ----A---- C:\windows\SYSWOW64\D3DCompiler_35.dll
2010-11-10 20:02:49 ----A---- C:\windows\system32\d3dx10_35.dll
2010-11-10 20:02:49 ----A---- C:\windows\system32\D3DCompiler_35.dll
2010-11-10 20:02:45 ----A---- C:\windows\system32\d3dx9_35.dll
2010-11-10 20:02:43 ----A---- C:\windows\SYSWOW64\xactengine2_8.dll
2010-11-10 20:02:43 ----A---- C:\windows\SYSWOW64\X3DAudio1_2.dll
2010-11-10 20:02:43 ----A---- C:\windows\system32\xactengine2_8.dll
2010-11-10 20:02:43 ----A---- C:\windows\system32\X3DAudio1_2.dll
2010-11-10 20:02:41 ----A---- C:\windows\SYSWOW64\d3dx10_34.dll
2010-11-10 20:02:41 ----A---- C:\windows\SYSWOW64\D3DCompiler_34.dll
2010-11-10 20:02:41 ----A---- C:\windows\system32\d3dx10_34.dll
2010-11-10 20:02:41 ----A---- C:\windows\system32\D3DCompiler_34.dll
2010-11-10 20:02:39 ----A---- C:\windows\SYSWOW64\d3dx9_34.dll
2010-11-10 20:02:39 ----A---- C:\windows\system32\d3dx9_34.dll
2010-11-10 20:02:38 ----A---- C:\windows\SYSWOW64\xinput1_3.dll
2010-11-10 20:02:38 ----A---- C:\windows\system32\xinput1_3.dll
2010-11-10 20:02:36 ----A---- C:\windows\SYSWOW64\xactengine2_7.dll
2010-11-10 20:02:36 ----A---- C:\windows\system32\xactengine2_7.dll
2010-11-10 20:02:34 ----A---- C:\windows\SYSWOW64\d3dx10_33.dll
2010-11-10 20:02:34 ----A---- C:\windows\SYSWOW64\D3DCompiler_33.dll
2010-11-10 20:02:34 ----A---- C:\windows\system32\d3dx10_33.dll
2010-11-10 20:02:34 ----A---- C:\windows\system32\D3DCompiler_33.dll
2010-11-10 20:02:31 ----A---- C:\windows\SYSWOW64\d3dx9_33.dll
2010-11-10 20:02:31 ----A---- C:\windows\system32\d3dx9_33.dll
2010-11-10 20:02:26 ----A---- C:\windows\SYSWOW64\x3daudio1_1.dll
2010-11-10 20:02:26 ----A---- C:\windows\system32\x3daudio1_1.dll

======List of files/folders modified in the last 1 months======

2010-12-08 19:58:09 ----D---- C:\windows\Temp
2010-12-08 19:57:58 ----D---- C:\windows\Prefetch
2010-12-08 19:51:46 ----RDC---- C:\Program Files
2010-12-08 19:40:59 ----D---- C:\windows\system32\config
2010-12-08 19:20:28 ----D---- C:\windows\System32
2010-12-08 19:20:28 ----D---- C:\windows\inf
2010-12-08 19:20:28 ----A---- C:\windows\system32\PerfStringBackup.INI
2010-12-08 19:15:18 ----D---- C:\Windows
2010-12-08 10:16:08 ----SHD---- C:\System Volume Information
2010-12-08 00:33:51 ----DC---- C:\IMAGE
2010-12-07 21:01:36 ----D---- C:\Program Files (x86)\JDownloader
2010-12-07 19:03:34 ----D---- C:\windows\system32\catroot2
2010-11-30 23:42:29 ----D---- C:\Users\Marek Matýs\AppData\Roaming\ICQ
2010-11-30 23:01:16 ----RD---- C:\Program Files (x86)
2010-11-30 23:01:00 ----SHD---- C:\windows\Installer
2010-11-29 11:47:45 ----HD---- C:\ProgramData
2010-11-28 11:29:06 ----D---- C:\Users\Marek Matýs\AppData\Roaming\XnView
2010-11-24 22:39:07 ----D---- C:\windows\system32\drivers
2010-11-24 18:59:24 ----DC---- C:\Program Files\Internet Explorer
2010-11-24 18:59:24 ----D---- C:\Program Files (x86)\Internet Explorer
2010-11-24 18:59:23 ----D---- C:\windows\winsxs
2010-11-24 18:58:12 ----D---- C:\windows\system32\catroot
2010-11-21 22:52:31 ----D---- C:\windows\system32\Tasks
2010-11-21 22:52:14 ----D---- C:\Program Files (x86)\Common Files
2010-11-19 12:45:30 ----D---- C:\Program Files (x86)\Electronic Arts
2010-11-19 12:45:29 ----D---- C:\windows\SysWOW64
2010-11-19 12:44:41 ----RSD---- C:\windows\assembly
2010-11-18 19:29:55 ----D---- C:\Program Files (x86)\Activision
2010-11-14 13:01:35 ----DC---- C:\TEMP
2010-11-14 12:36:35 ----D---- C:\ProgramData\Media Center Programs
2010-11-14 12:16:44 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2010-11-11 09:53:10 ----D---- C:\windows\debug
2010-11-10 20:39:04 ----SD---- C:\Users\Marek Matýs\AppData\Roaming\Microsoft
2010-11-10 16:35:11 ----D---- C:\windows\system32\NDF
2010-11-10 00:10:16 ----A---- C:\windows\system32\MRT.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2009-11-20 537112]
R0 LPCFilter;LPC Lower Filter Driver; C:\windows\system32\DRIVERS\LPCFilter.sys [2009-07-02 44912]
R0 NCFilter;Novell UNC Filter - Filter; C:\windows\system32\DRIVERS\NCFilter.sys [2009-12-27 113176]
R0 NCRecognizer;Novell UNC Filter - Recognizer; C:\windows\system32\DRIVERS\NCRecognizer.sys [2009-12-27 119320]
R0 NCUncFilter;Novell UNC Filter - UNC Filter; C:\windows\system32\DRIVERS\NCUncFilter.sys [2009-12-27 26136]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2009-07-14 214096]
R0 sptd;sptd; C:\windows\System32\Drivers\sptd.sys [2010-09-13 834544]
R1 funfrm;funfrm; C:\windows\system32\drivers\funfrm.sys [2010-01-17 58896]
R1 MpFilter;Microsoft Malware Protection Driver; C:\windows\system32\DRIVERS\MpFilter.sys [2010-03-25 173984]
R1 NICM;Novell XTCOM Driver; \??\C:\Program Files\Novell\Client\XTier\Drivers\nicm.sys [2009-12-27 31256]
R1 SCDEmu;SCDEmu; C:\windows\system32\drivers\SCDEmu.sys [2010-04-12 91568]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 lirsgt;lirsgt; C:\windows\system32\DRIVERS\lirsgt.sys [2010-09-19 43168]
R2 NCFSD;Novell Client File System Redirector; \??\C:\Program Files\Novell\Client\XTier\Drivers\ncfsd.sys [2009-12-27 96792]
R2 NCIOCTL;Novell Xplat IoCtl Driver; \??\C:\Program Files\Novell\Client\XTier\Drivers\ncioctl.sys [2009-12-27 83480]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\windows\system32\DRIVERS\AcpiVpc.sys [2009-05-19 26128]
R3 BthEnum;Služba Bluetooth Enumerator; C:\windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2009-07-14 79360]
R3 btusbflt;Bluetooth USB Filter; C:\windows\system32\drivers\btusbflt.sys [2009-12-02 53800]
R3 btwaudio;Bluetooth Audio Device Service; C:\windows\system32\drivers\btwaudio.sys [2009-10-02 98344]
R3 btwavdt;Bluetooth AVDT Service; C:\windows\system32\drivers\btwavdt.sys [2009-08-28 132648]
R3 btwl2cap;Bluetooth L2CAP Service; C:\windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 35104]
R3 btwrchid;btwrchid; C:\windows\system32\DRIVERS\btwrchid.sys [2009-08-28 21160]
R3 enecir;ENE CIR Receiver; C:\windows\system32\DRIVERS\enecir.sys [2009-06-29 70656]
R3 enecirhid;ENE CIR HID Receiver; C:\windows\system32\DRIVERS\enecirhid.sys [2009-05-19 14848]
R3 enecirhidma;ENE CIR HIDmini Filter; C:\windows\system32\DRIVERS\enecirhidma.sys [2008-04-24 6656]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\windows\system32\drivers\RTKVHD64.sys [2009-12-17 2222240]
R3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\windows\system32\DRIVERS\k57nd60a.sys [2009-10-16 321064]
R3 MpNWMon;Microsoft Malware Protection Network Driver; C:\windows\system32\DRIVERS\MpNWMon.sys [2010-03-25 40832]
R3 NETw5s64;Ovladač adaptéru Intel(R) Wireless WiFi Link pro systém Windows 7 64 Bit; C:\windows\system32\DRIVERS\NETw5s64.sys [2009-09-15 6952960]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\windows\system32\drivers\nvhda64v.sys [2009-08-11 84000]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2009-09-24 293424]
R3 wdmirror;wdmirror; C:\windows\system32\DRIVERS\WDMirror.sys [2009-07-16 11280]
S2 atksgt;atksgt; C:\windows\system32\DRIVERS\atksgt.sys [2010-09-19 312480]
S3 Bridge0;Bridge0; C:\windows\system32\drivers\WDBridge.sys [2009-07-16 79376]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2009-07-14 551936]
S3 hamachi;Hamachi Network Interface; C:\windows\system32\DRIVERS\hamachi.sys [2010-02-03 33856]
S3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2009-06-10 6108416]
S3 nccache;nccache; \??\C:\Program Files\Novell\Client\XTier\Drivers\nccache.sys [2009-12-27 34328]
S3 nciom;nciom; \??\C:\Program Files\Novell\Client\XTier\Drivers\nciom.sys [2009-12-27 74264]
S3 ncp;ncp; \??\C:\Program Files\Novell\Client\XTier\Drivers\ncp.sys [2009-12-27 77848]
S3 ncpfsp;ncpfsp; \??\C:\Program Files\Novell\Client\XTier\Drivers\ncpfsp.sys [2009-12-27 86552]
S3 ncpl;ncpl; \??\C:\Program Files\Novell\Client\XTier\Drivers\ncpl.sys [2009-12-27 49176]
S3 ndm;ndm; \??\C:\Program Files\Novell\Client\XTier\Drivers\ndm.sys [2009-12-27 19480]
S3 ndmndap;ndmndap; \??\C:\Program Files\Novell\Client\XTier\Drivers\ndmndap.sys [2009-12-27 82968]
S3 nds4;nds4; \??\C:\Program Files\Novell\Client\XTier\Drivers\nds4.sys [2009-12-27 128024]
S3 ndslpp;ndslpp; \??\C:\Program Files\Novell\Client\XTier\Drivers\ndslpp.sys [2009-12-27 23576]
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit; C:\windows\system32\DRIVERS\netw5v64.sys [2009-05-14 5435904]
S3 niam;niam; \??\C:\Program Files\Novell\Client\XTier\Drivers\niam.sys [2009-12-27 38936]
S3 nipctl;nipctl; \??\C:\Program Files\Novell\Client\XTier\Drivers\nipctl.sys [2009-12-27 52760]
S3 nscm;nscm; \??\C:\Program Files\Novell\Client\XTier\Drivers\nscm.sys [2009-12-27 33816]
S3 nsns;nsns; \??\C:\Program Files\Novell\Client\XTier\Drivers\nsns.sys [2009-12-27 24600]
S3 nsvccost;nsvccost; \??\C:\Program Files\Novell\Client\XTier\Drivers\nsvccost.sys [2009-12-27 35864]
S3 pciide;pciide; C:\windows\system32\DRIVERS\pciide.sys [2009-07-14 12352]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUStor.sys [2009-09-22 225280]
S3 WimFltr;WimFltr; C:\windows\system32\DRIVERS\wimfltr.sys [2008-08-06 151656]
S3 wsvd;wsvd; C:\windows\system32\DRIVERS\wsvd.sys [2009-07-21 121840]
S3 xtxplat;xtxplat; \??\C:\Program Files\Novell\Client\XTier\Drivers\xtxplat.sys [2009-12-27 56856]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Application Updater;Application Updater; C:\Program Files (x86)\Application Updater\ApplicationUpdater.exe [2010-10-22 386560]
R2 btwdins;Bluetooth Service; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [2009-10-02 873248]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2009-11-20 13336]
R2 ICQ Service;ICQ Service; C:\Program Files (x86)\ICQ6Toolbar\ICQ Service.exe [2010-06-02 246520]
R2 IGRS;IGRS; C:\Program Files (x86)\Lenovo\ReadyComm\common\IGRS.exe [2009-07-14 38152]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [2010-05-20 101048]
R2 MDM;Machine Debug Manager; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Essentials\MsMpEng.exe [2010-03-25 17424]
R2 nvsvc;NVIDIA Display Driver Service; C:\windows\system32\nvvsvc.exe [2010-07-09 159336]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files (x86)\Cyberlink\Shared files\RichVideo.exe [2009-08-06 244904]
R2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2008-11-25 153952]
R2 XTSvcMgr;Novell XTier Service Manager; C:\Program Files\Novell\Client\XTier\Services\XTSvcMgr.exe [2009-12-27 21016]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 ReadyComm.DirectRouter;ReadyComm.DirectRouter; C:\windows\System32\IgrsSvcs.exe -k IgrsSvcs []
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2010-10-06 1436424]
S3 Lenovo ReadyComm AppSvc;Lenovo ReadyComm AppSvc; C:\Program Files\Lenovo\ReadyComm\AppSvc.exe [2009-08-14 509192]
S3 Lenovo ReadyComm ConnSvc;Lenovo ReadyComm ConnSvc; C:\Program Files\Lenovo\ReadyComm\ConnSvc.exe [2009-09-22 579400]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 PS_MDP;ReadyComm Presentation Space Helper Service; C:\windows\System32\IgrsSvcs.exe -k IgrsSvcs []
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2010-09-13 1255736]

-----------------EOF-----------------


dekuji

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119429
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosim o kontrolu, pomaly pc

#2 Příspěvek od Rudy »

Dejte log z ComboFix.
Stahnete a ulozte nejlepe na plochu ComboFix: http://download.bleepingcomputer.com/sUBs/ComboFix.exe

pote spustte aplikaci pod uctem s administratorskym opravnenim

hned po startu se zobrazi obrazovka s licencnimi podminkami, pokracujte kliknutim na tlacitko Ano.

v klidu si postavte na kafe (cela akce trva cca. 5-10 minut, nekdy i dele - dle toho, o jak rychly stroj se jedna a kolika soubory se skener bude muset prodirat), behem skenu se nepokousejte spoustet zadne jine aplikace ani nic jineho

behem skenovani nepropadejte panice, vas stroj muze byt restartovan (predevsim pri prvni aplikaci skeneru)

upozorneni: pokud pouzivate antispyware s rezidentnim stitem, prepnete jeho rezidentni stit do Install Mode, pripadne jej po dobu skenu uplne deaktivujte, protoze dochazi pri skenu a vymazu pripadneho malware k nezadoucim kolizim s rezidentem antispyware
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

markm.free
Návštěvník
Návštěvník
Příspěvky: 62
Registrován: 24 dub 2008 13:48

Re: prosim o kontrolu, pomaly pc

#3 Příspěvek od markm.free »

uf,tak tady prikladam ten log z combofixu,omlouvam se,ale driv jsem to nestihnul.
jinak,antivirak mi hlasi ze mam : win32/obfuscator.xz

ComboFix 10-12-07.06 - Marek Matýs 08.12.2010 22:14:29.1.8 - x64
Microsoft Windows 7 Home Premium 6.1.7600.0.1250.420.1029.18.4087.2407 [GMT 1:00]
Spuštěný z: c:\users\Marek Matýs\Desktop\ComboFix.exe
.

((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\program files (x86)\pdfforge Toolbar\IE\4.1\pdFForgetoolbarie.dll
c:\programdata\xp
c:\programdata\xp\EBLib.dll
c:\programdata\xp\TPwSav.sys

.
((((((((((((((((((((((((( Soubory vytvořené od 2010-11-08 do 2010-12-08 )))))))))))))))))))))))))))))))
.

2010-12-08 21:20 . 2010-12-08 21:20 -------- d-----w- c:\users\Default\AppData\Local\temp
2010-12-08 18:51 . 2010-12-08 19:10 -------- dc----w- C:\rsit
2010-12-08 18:51 . 2010-12-08 18:58 -------- dc----w- c:\program files\trend micro
2010-12-08 09:16 . 2010-11-10 05:35 8199504 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{38F39456-AA9C-4F25-90C6-ACE29864BA8A}\mpengine.dll
2010-11-29 10:47 . 2010-11-29 10:47 -------- d-----w- c:\users\Marek Matýs\AppData\Local\Divinity 2
2010-11-24 17:59 . 2010-10-19 08:47 7680 ----a-w- c:\program files\Internet Explorer\iecompat.dll
2010-11-24 17:59 . 2010-10-19 08:10 7680 ----a-w- c:\program files (x86)\Internet Explorer\iecompat.dll
2010-11-21 21:54 . 2010-11-23 19:51 -------- d-----w- c:\users\Marek Matýs\AppData\Roaming\skypePM
2010-11-21 21:52 . 2010-11-21 21:52 -------- d-----w- c:\program files (x86)\Common Files\Skype
2010-11-21 21:52 . 2010-11-23 19:52 -------- d-----w- c:\users\Marek Matýs\AppData\Roaming\Skype
2010-11-21 21:52 . 2010-11-21 21:52 -------- d-----r- c:\program files (x86)\Skype
2010-11-21 21:52 . 2010-11-21 21:52 -------- d-----w- c:\programdata\Skype
2010-11-19 19:23 . 2010-11-19 19:23 -------- d-----w- c:\program files (x86)\pdfforge Toolbar
2010-11-19 19:23 . 2010-11-19 19:23 -------- d-----w- c:\program files (x86)\Common Files\Spigot
2010-11-19 19:23 . 2010-11-19 19:23 -------- d-----w- c:\program files (x86)\Application Updater
2010-11-19 12:07 . 2010-11-19 12:07 -------- d-----w- c:\programdata\Electronic Arts
2010-11-19 12:07 . 2010-11-19 12:07 -------- d-----w- c:\programdata\EA Core
2010-11-19 11:45 . 2010-02-04 09:01 78680 ----a-w- c:\windows\system32\XAPOFX1_4.dll
2010-11-19 11:45 . 2010-02-04 09:01 74072 ----a-w- c:\windows\SysWow64\XAPOFX1_4.dll
2010-11-19 11:45 . 2010-02-04 09:01 530776 ----a-w- c:\windows\system32\XAudio2_6.dll
2010-11-19 11:45 . 2010-02-04 09:01 528216 ----a-w- c:\windows\SysWow64\XAudio2_6.dll
2010-11-19 11:45 . 2010-02-04 09:01 238936 ----a-w- c:\windows\SysWow64\xactengine3_6.dll
2010-11-19 11:45 . 2010-02-04 09:01 176984 ----a-w- c:\windows\system32\xactengine3_6.dll
2010-11-19 11:45 . 2010-02-04 09:01 24920 ----a-w- c:\windows\system32\X3DAudio1_7.dll
2010-11-19 11:45 . 2010-02-04 09:01 22360 ----a-w- c:\windows\SysWow64\X3DAudio1_7.dll
2010-11-19 11:40 . 2010-11-19 11:40 -------- d-----w- c:\programdata\Solidshield
2010-11-15 22:14 . 2010-11-15 22:14 -------- d-----w- c:\users\Marek Matýs\AppData\Local\Activision
2010-11-14 11:17 . 2010-11-14 11:17 -------- d-----w- c:\program files (x86)\THQ
2010-11-14 11:13 . 2010-11-14 11:13 -------- d-----w- c:\users\Marek Matýs\AppData\Roaming\InstallShield
2010-11-14 11:13 . 2010-11-14 11:13 -------- d-----w- c:\programdata\InstallShield
2010-11-11 20:12 . 2010-11-14 12:03 -------- d-----w- c:\users\Marek Matýs\AppData\Local\Gas Powered Games
2010-11-10 19:02 . 2007-10-22 02:40 411656 ----a-w- c:\windows\system32\xactengine2_10.dll
2010-11-09 19:00 . 2010-11-09 19:00 -------- d-----w- c:\users\Marek Matýs\AppData\Local\FalloutNV

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-11-10 05:35 . 2010-09-19 17:51 8199504 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2010-10-19 20:51 . 2010-09-18 11:07 270720 ------w- c:\windows\system32\MpSigStub.exe
2010-10-05 18:21 . 2010-10-05 18:21 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup-2\Markup.dll
2010-10-05 18:21 . 2010-10-05 18:21 484160 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight-2\SpotlightResources.dll
2010-09-19 13:55 . 2010-09-19 13:55 312480 ----a-w- c:\windows\system32\drivers\atksgt.sys
2010-09-19 13:55 . 2010-09-19 13:55 43168 ----a-w- c:\windows\system32\drivers\lirsgt.sys
2010-09-16 08:23 . 2010-09-18 11:07 7935824 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{8A28ED46-9BA5-4E7F-B7A8-A71F1D3F7637}\mpengine.dll
2010-09-15 02:50 . 2010-09-13 18:26 472808 ----a-w- c:\windows\SysWow64\deployJava1.dll
2010-09-13 16:49 . 2010-09-13 16:49 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\Markup.dll
2010-09-13 16:49 . 2010-09-13 16:49 484160 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2010-09-10 05:35 . 2010-10-28 17:24 135168 ----a-w- c:\windows\apppatch\AppPatch64\AcXtrnal.dll
2010-09-10 05:35 . 2010-10-28 17:24 347648 ----a-w- c:\windows\apppatch\AppPatch64\AcLayers.dll
.

(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-07-14 1475072]

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2009-11-20 284696]
"MDS_Menu"="c:\program files (x86)\Lenovo\MediaShow\MUITransfer\MUIStartMenu.exe" [2008-11-14 218408]
"Lenovo SlideNav"="c:\program files\Lenovo\Lenovo SlideNav\SlidebarNavigator\SlidebarNavigator.exe" [2009-10-22 845640]
"OnekeyDM"="c:\program files (x86)\Lenovo\OnekeyDM\OnekeyDM.exe" [2009-03-27 468480]
"UpdateP2GShortCut"="c:\program files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" [2008-12-03 218408]
"WinampAgent"="c:\program files (x86)\Winamp\winampa.exe" [2010-06-28 74752]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2010-05-14 248552]
"PWRISOVM.EXE"="c:\program files (x86)\PowerISO\PWRISOVM.EXE" [2010-04-12 180224]
"Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-12-21 35760]
"SearchSettings"="c:\program files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe" [2010-10-22 524288]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)

[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"mixer5"=wdmaud.drv

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"

R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 ReadyComm.DirectRouter;ReadyComm.DirectRouter;c:\windows\System32\IgrsSvcs.exe [x]
R3 Bridge0;Bridge0;c:\windows\system32\drivers\WDBridge.sys [2009-07-16 79376]
R3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64;c:\program files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2010-10-06 1436424]
R3 Lenovo ReadyComm AppSvc;Lenovo ReadyComm AppSvc;c:\program files\Lenovo\ReadyComm\AppSvc.exe [2009-08-14 509192]
R3 Lenovo ReadyComm ConnSvc;Lenovo ReadyComm ConnSvc;c:\program files\Lenovo\ReadyComm\ConnSvc.exe [2009-09-22 579400]
R3 MpNWMon;Microsoft Malware Protection Network Driver;c:\windows\system32\DRIVERS\MpNWMon.sys [2010-03-25 40832]
R3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;c:\windows\system32\DRIVERS\netw5v64.sys [2009-05-14 5435904]
R3 PS_MDP;ReadyComm Presentation Space Helper Service;c:\windows\System32\IgrsSvcs.exe [x]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\System32\Drivers\RtsUStor.sys [2009-09-22 225280]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2010-09-13 1255736]
R3 wsvd;wsvd;c:\windows\system32\DRIVERS\wsvd.sys [2009-07-21 121840]
S0 NCFilter;Novell UNC Filter - Filter;c:\windows\system32\DRIVERS\NCFilter.sys [2009-12-27 113176]
S0 NCRecognizer;Novell UNC Filter - Recognizer;c:\windows\system32\DRIVERS\NCRecognizer.sys [2009-12-27 119320]
S0 NCUncFilter;Novell UNC Filter - UNC Filter;c:\windows\system32\DRIVERS\NCUncFilter.sys [2009-12-27 26136]
S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2010-09-13 834544]
S1 funfrm;funfrm; [x]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
S2 Application Updater;Application Updater;c:\program files (x86)\Application Updater\ApplicationUpdater.exe [2010-10-22 386560]
S2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2009-11-20 13336]
S2 ICQ Service;ICQ Service;c:\program files (x86)\ICQ6Toolbar\ICQ Service.exe [2010-06-02 246520]
S2 IGRS;IGRS;c:\program files (x86)\Lenovo\ReadyComm\common\IGRS.exe [2009-07-14 38152]
S2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;c:\program files (x86)\McAfee\SiteAdvisor\McSACore.exe [2010-05-20 101048]
S2 NCFSD;Novell Client File System Redirector;c:\program files\Novell\Client\XTier\Drivers\ncfsd.sys [2009-12-27 96792]
S2 NCIOCTL;Novell Xplat IoCtl Driver;c:\program files\Novell\Client\XTier\Drivers\ncioctl.sys [2009-12-27 83480]
S2 XTSvcMgr;Novell XTier Service Manager;c:\program files\Novell\Client\XTier\Services\XTSvcMgr.exe [2009-12-27 21016]
S3 ACPIVPC;Lenovo Virtual Power Controller Driver;c:\windows\system32\DRIVERS\AcpiVpc.sys [2009-05-19 26128]
S3 btusbflt;Bluetooth USB Filter;c:\windows\system32\drivers\btusbflt.sys [2009-12-02 53800]
S3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 35104]
S3 enecir;ENE CIR Receiver;c:\windows\system32\DRIVERS\enecir.sys [2009-06-29 70656]
S3 enecirhid;ENE CIR HID Receiver;c:\windows\system32\DRIVERS\enecirhid.sys [2009-05-19 14848]
S3 enecirhidma;ENE CIR HIDmini Filter;c:\windows\system32\DRIVERS\enecirhidma.sys [2008-04-24 6656]
S3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60a.sys [2009-10-16 321064]
S3 NETw5s64;Ovladač adaptéru Intel(R) Wireless WiFi Link pro systém Windows 7 64 Bit;c:\windows\system32\DRIVERS\NETw5s64.sys [2009-09-15 6952960]
S3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda64v.sys [2009-08-11 84000]
S3 wdmirror;wdmirror;c:\windows\system32\DRIVERS\WDMirror.sys [2009-07-16 11280]


--- Ostatní služby/ovladače v paměti ---

*Deregistered* - nciom
*Deregistered* - ncp
*Deregistered* - ncpl
*Deregistered* - ndm
*Deregistered* - ndmndap
*Deregistered* - ndslpp
*Deregistered* - niam
*Deregistered* - nipctl
*Deregistered* - nscm
*Deregistered* - nsns
*Deregistered* - nsvccost
*Deregistered* - xtxplat

[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost]
IgrsSvcs REG_MULTI_SZ ReadyComm.DirectRouter PS_MDP
.
Obsah adresáře 'Naplánované úlohy'

2010-12-08 c:\windows\Tasks\Check Updates for Windows Live Toolbar.job
- c:\program files (x86)\Windows Live Toolbar\MSNTBUP.EXE [2007-02-12 15:54]
.

--------- x86-64 -----------


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"combofix"="c:\combofix\CF29994.cfxxe" [X]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2009-12-17 9643040]
"EnergyUtility"="c:\program files (x86)\Lenovo\Energy Management\utility.exe" [2009-09-01 4366704]
"Energy Management"="c:\program files (x86)\Lenovo\Energy Management\Energy Management.exe" [2009-08-19 5825536]
"MSSE"="c:\program files\Microsoft Security Essentials\msseces.exe" [2010-09-15 1448568]
"NWTRAY"="NWTRAY.EXE" [2009-12-27 37400]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x0
.
------- Doplňkový sken -------
.
uStart Page = hxxp://btjunkie.org/
uLocal Page = c:\windows\system32\blank.htm
mStart Page = hxxp://lenovo.live.com/
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~2\MICROS~1\OFFICE11\EXCEL.EXE/3000
IE: Odeslat obrázek do zařízení &Bluetooth... - c:\program files\Lenovo\Bluetooth Software\btsendto_ie_ctx.htm
IE: Odeslat stránku do zařízení &Bluetooth... - c:\program files\Lenovo\Bluetooth Software\btsendto_ie.htm
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -

Toolbar-Locked - (no file)
Wow6432Node-HKCU-Run-ReadyComm5 - (no file)
Toolbar-Locked - (no file)
WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
HKLM-Run-SynTPEnh - %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
AddRemove-GeoGebra WebStart - c:\windows\system32\javaws.exe


.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10k_ActiveX.exe,-101"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10k_ActiveX.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash10k.ocx"
"ThreadingModel"="Apartment"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash10k.ocx, 1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash10k.ocx"
"ThreadingModel"="Apartment"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash10k.ocx, 1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee]
"SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files (x86)\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
c:\windows\SysWOW64\rundll32.exe
c:\program files (x86)\Cyberlink\Shared files\RichVideo.exe
c:\program files\Lenovo\Lenovo SlideNav\SlidebarNavigator\SlidebarNotifier.exe
.
**************************************************************************
.
Celkový čas: 2010-12-09 00:53:02 - počítač byl restartován
ComboFix-quarantined-files.txt 2010-12-08 23:52

Před spuštěním: Volných bajtů: 241 434 640 384
Po spuštění: Volných bajtů: 241 150 164 992

- - End Of File - - 5CA3871208AB33DD64E133C1493C0293

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119429
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosim o kontrolu, pomaly pc

#4 Příspěvek od Rudy »

Ještě dočistíme. Otevřte poznámkový blok a zkopírujte do něj:
KillAll::

Folder::
c:\program files (x86)\pdfforge Toolbar

Collect::
c:\program files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe

Driver::
funfrm

Registry::
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"SearchSettings"=-
Uložte na plochu jako CFScript.txt. Pak jej myší přetáhněte nad ikonu ComboFix a pusťte. CF se spustí a vykoná příkazy ze skriptu.

Obrázek
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

markm.free
Návštěvník
Návštěvník
Příspěvky: 62
Registrován: 24 dub 2008 13:48

Re: prosim o kontrolu, pomaly pc

#5 Příspěvek od markm.free »

hotovo, ale po dokonceni combofixu se mi nezobrazil zadny log a na disku c se mi vytvorila slozka combofix ktera obsahuje hodne souboru a vseho mozneho.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119429
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosim o kontrolu, pomaly pc

#6 Příspěvek od Rudy »

Složka je v pořádku. Log by měl být v C:\combofix.txt. Pokud tam není, přesvědčte se zda byla smazána složka c:\program files (x86)\pdfforge Toolbar a soubor c:\program files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

markm.free
Návštěvník
Návštěvník
Příspěvky: 62
Registrován: 24 dub 2008 13:48

Re: prosim o kontrolu, pomaly pc

#7 Příspěvek od markm.free »

AHA,UZ JSEM TEN LOG NASEL :

ComboFix 10-12-08.04 - Marek Matýs 09.12.2010 20:14:57.2.8 - x64
Microsoft Windows 7 Home Premium 6.1.7600.0.1250.420.1029.18.4087.2723 [GMT 1:00]
Spuštěný z: C:\Users\Marek Matýs\Desktop\ComboFix.exe
Použité ovládací přepínače :: C:\Users\Marek Matýs\Desktop\CFScript.txt

file zipped: c:\program files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe
.

((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\program files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe
c:\program files (x86)\pdfforge Toolbar
c:\program files (x86)\pdfforge Toolbar\IE\4.1\config.ini
c:\program files (x86)\pdfforge Toolbar\Res\amazon.gif
c:\program files (x86)\pdfforge Toolbar\Res\ebay.gif
c:\program files (x86)\pdfforge Toolbar\Res\icon_settings.gif
c:\program files (x86)\pdfforge Toolbar\Res\pdfc_branding.gif
c:\program files (x86)\pdfforge Toolbar\Res\pdfc_branding_hover.gif
c:\program files (x86)\pdfforge Toolbar\Res\pdfc_icon.gif
c:\program files (x86)\pdfforge Toolbar\Res\pdfc_portal_logo.gif
c:\program files (x86)\pdfforge Toolbar\Res\search-button-hover.gif
c:\program files (x86)\pdfforge Toolbar\Res\search-button.gif
c:\program files (x86)\pdfforge Toolbar\Res\search-chevron-hover.gif
c:\program files (x86)\pdfforge Toolbar\Res\search-chevron.gif
c:\program files (x86)\pdfforge Toolbar\Res\search_amazon.gif
c:\program files (x86)\pdfforge Toolbar\Res\search_ebay.gif
c:\program files (x86)\pdfforge Toolbar\Res\search_yahoo.gif
c:\program files (x86)\pdfforge Toolbar\Res\widgets.xml
c:\program files (x86)\pdfforge Toolbar\WidgiHelper.exe

.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Service_funfrm


((((((((((((((((((((((((( Soubory vytvořené od 2010-11-09 do 2010-12-09 )))))))))))))))))))))))))))))))
.

2010-12-09 19:20:29 . 2010-12-09 19:20:29 -------- d-----w- C:\Users\Default\AppData\Local\temp
2010-12-09 09:46:56 . 2010-12-09 09:46:56 -------- d-----w- C:\Users\Marek Matýs\AppData\Roaming\Ubisoft
2010-12-09 09:46:56 . 2010-12-09 09:46:56 -------- d-----w- C:\ProgramData\Ubisoft
2010-12-09 09:30:19 . 2010-12-09 09:41:32 -------- d-----w- C:\Program Files (x86)\Ubisoft
2010-12-08 18:51:46 . 2010-12-08 19:10:55 -------- dc----w- C:\rsit
2010-12-08 18:51:46 . 2010-12-08 18:58:19 -------- dc----w- C:\Program Files\trend micro
2010-12-08 09:16:12 . 2010-11-10 05:35:15 8199504 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{38F39456-AA9C-4F25-90C6-ACE29864BA8A}\mpengine.dll
2010-11-29 10:47:10 . 2010-11-29 10:47:35 -------- d-----w- C:\Users\Marek Matýs\AppData\Local\Divinity 2
2010-11-24 17:59:01 . 2010-10-19 08:47:59 7680 ----a-w- C:\Program Files\Internet Explorer\iecompat.dll
2010-11-24 17:59:01 . 2010-10-19 08:10:26 7680 ----a-w- C:\Program Files (x86)\Internet Explorer\iecompat.dll
2010-11-21 21:54:38 . 2010-11-23 19:51:50 -------- d-----w- C:\Users\Marek Matýs\AppData\Roaming\skypePM
2010-11-21 21:52:14 . 2010-11-21 21:52:14 -------- d-----w- C:\Program Files (x86)\Common Files\Skype
2010-11-21 21:52:12 . 2010-11-23 19:52:19 -------- d-----w- C:\Users\Marek Matýs\AppData\Roaming\Skype
2010-11-21 21:52:12 . 2010-11-21 21:52:24 -------- d-----r- C:\Program Files (x86)\Skype
2010-11-21 21:52:08 . 2010-11-21 21:52:12 -------- d-----w- C:\ProgramData\Skype
2010-11-19 19:23:37 . 2010-11-19 19:23:37 -------- d-----w- C:\Program Files (x86)\Common Files\Spigot
2010-11-19 19:23:37 . 2010-11-19 19:23:37 -------- d-----w- C:\Program Files (x86)\Application Updater
2010-11-19 12:07:15 . 2010-11-19 12:07:15 -------- d-----w- C:\ProgramData\Electronic Arts
2010-11-19 12:07:15 . 2010-11-19 12:07:15 -------- d-----w- C:\ProgramData\EA Core
2010-11-19 11:45:29 . 2010-02-04 09:01:14 78680 ----a-w- C:\windows\system32\XAPOFX1_4.dll
2010-11-19 11:45:29 . 2010-02-04 09:01:14 74072 ----a-w- C:\windows\SysWow64\XAPOFX1_4.dll
2010-11-19 11:45:29 . 2010-02-04 09:01:14 530776 ----a-w- C:\windows\system32\XAudio2_6.dll
2010-11-19 11:45:29 . 2010-02-04 09:01:14 528216 ----a-w- C:\windows\SysWow64\XAudio2_6.dll
2010-11-19 11:45:29 . 2010-02-04 09:01:14 238936 ----a-w- C:\windows\SysWow64\xactengine3_6.dll
2010-11-19 11:45:29 . 2010-02-04 09:01:14 176984 ----a-w- C:\windows\system32\xactengine3_6.dll
2010-11-19 11:45:28 . 2010-02-04 09:01:14 24920 ----a-w- C:\windows\system32\X3DAudio1_7.dll
2010-11-19 11:45:28 . 2010-02-04 09:01:14 22360 ----a-w- C:\windows\SysWow64\X3DAudio1_7.dll
2010-11-19 11:40:20 . 2010-11-19 11:40:20 -------- d-----w- C:\ProgramData\Solidshield
2010-11-15 22:14:05 . 2010-11-15 22:14:05 -------- d-----w- C:\Users\Marek Matýs\AppData\Local\Activision
2010-11-14 11:17:57 . 2010-11-14 11:17:57 -------- d-----w- C:\Program Files (x86)\THQ
2010-11-14 11:13:36 . 2010-11-14 11:13:36 -------- d-----w- C:\ProgramData\InstallShield
2010-11-11 20:12:58 . 2010-12-09 00:04:15 -------- d-----w- C:\Users\Marek Matýs\AppData\Local\Gas Powered Games
2010-11-10 19:02:59 . 2007-10-22 02:40:16 411656 ----a-w- C:\windows\system32\xactengine2_10.dll

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-11-10 05:35:15 . 2010-09-19 17:51:58 8199504 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2010-10-19 20:51:33 . 2010-09-18 11:07:35 270720 ------w- C:\windows\system32\MpSigStub.exe
2010-10-05 18:21:05 . 2010-10-05 18:21:05 48648 ----a-w- C:\ProgramData\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup-2\Markup.dll
2010-10-05 18:21:00 . 2010-10-05 18:21:00 484160 ----a-w- C:\ProgramData\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight-2\SpotlightResources.dll
2010-09-19 13:55:14 . 2010-09-19 13:55:14 312480 ----a-w- C:\windows\system32\drivers\atksgt.sys
2010-09-19 13:55:13 . 2010-09-19 13:55:13 43168 ----a-w- C:\windows\system32\drivers\lirsgt.sys
2010-09-16 08:23:56 . 2010-09-18 11:07:36 7935824 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{8A28ED46-9BA5-4E7F-B7A8-A71F1D3F7637}\mpengine.dll
2010-09-15 02:50:37 . 2010-09-13 18:26:51 472808 ----a-w- C:\windows\SysWow64\deployJava1.dll
2010-09-13 16:49:47 . 2010-09-13 16:49:47 48648 ----a-w- C:\ProgramData\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\Markup.dll
2010-09-13 16:49:42 . 2010-09-13 16:49:42 484160 ----a-w- C:\ProgramData\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
.

((((((((((((((((((((((((((((( SnapShot@2010-12-08_23.47.30 )))))))))))))))))))))))))))))))))))))))))
.
+ 2009-07-14 04:54:17 . 2010-12-09 19:21:58 32768 C:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-07-14 04:54:17 . 2010-12-08 23:46:36 32768 C:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-07-14 04:54:17 . 2010-12-09 19:21:58 32768 C:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2009-07-14 04:54:17 . 2010-12-08 23:46:36 32768 C:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54:17 . 2010-12-09 19:21:58 16384 C:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2009-07-14 04:54:17 . 2010-12-08 23:46:36 16384 C:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2009-12-31 12:48:23 . 2010-12-09 19:03:53 43028 C:\windows\system32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2009-07-14 05:10:35 . 2010-12-09 19:03:53 47428 C:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin
+ 2009-07-14 04:46:26 . 2010-12-09 19:04:33 80528 C:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\Cache\cache.dat
- 2010-09-13 09:36:04 . 2010-12-08 21:14:48 16384 C:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2010-09-13 09:36:04 . 2010-12-09 19:04:54 16384 C:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2010-09-13 09:36:04 . 2010-12-09 19:04:54 16384 C:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2010-09-13 09:36:04 . 2010-12-08 21:14:48 16384 C:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2010-12-09 09:39:54 . 2010-12-09 09:39:54 12800 C:\windows\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Diagnostics.dll
- 2010-11-19 11:44:39 . 2010-11-19 11:44:39 12800 C:\windows\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Diagnostics.dll
+ 2010-12-09 09:39:54 . 2010-12-09 09:39:54 53248 C:\windows\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.AudioVideoPlayback.dll
- 2010-11-19 11:44:39 . 2010-11-19 11:44:39 53248 C:\windows\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.AudioVideoPlayback.dll
+ 2010-09-13 13:49:23 . 2010-12-09 19:03:53 9692 C:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-4078328910-3781297017-1976597150-1003_UserData.bin
- 2009-07-28 23:04:18 . 2010-12-08 21:20:52 3568 C:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\Bluetooth\bthservsdp.dat
+ 2009-07-28 23:04:18 . 2010-12-09 19:20:59 3568 C:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\Bluetooth\bthservsdp.dat
- 2010-12-08 23:46:22 . 2010-12-08 23:46:22 2048 C:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2010-12-09 19:21:50 . 2010-12-09 19:21:50 2048 C:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2010-12-09 19:21:50 . 2010-12-09 19:21:50 2048 C:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
- 2010-12-08 23:46:22 . 2010-12-08 23:46:22 2048 C:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
- 2009-07-14 02:36:59 . 2010-12-08 18:20:28 616008 C:\windows\system32\perfh009.dat
+ 2009-07-14 02:36:59 . 2010-12-09 19:06:02 616008 C:\windows\system32\perfh009.dat
- 2009-12-31 20:35:19 . 2010-12-08 18:20:28 631292 C:\windows\system32\perfh005.dat
+ 2009-12-31 20:35:19 . 2010-12-09 19:06:02 631292 C:\windows\system32\perfh005.dat
- 2009-07-14 02:36:59 . 2010-12-08 18:20:28 106388 C:\windows\system32\perfc009.dat
+ 2009-07-14 02:36:59 . 2010-12-09 19:06:02 106388 C:\windows\system32\perfc009.dat
- 2009-12-31 20:35:19 . 2010-12-08 18:20:28 121914 C:\windows\system32\perfc005.dat
+ 2009-12-31 20:35:19 . 2010-12-09 19:06:02 121914 C:\windows\system32\perfc005.dat
+ 2010-12-09 09:39:54 . 2010-12-09 09:39:54 223232 C:\windows\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.dll
- 2010-11-19 11:44:39 . 2010-11-19 11:44:39 223232 C:\windows\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.dll
+ 2010-12-09 09:39:56 . 2010-12-09 09:39:56 178176 C:\windows\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectSound.dll
- 2010-11-19 11:44:41 . 2010-11-19 11:44:41 178176 C:\windows\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectSound.dll
+ 2010-12-09 09:39:56 . 2010-12-09 09:39:56 364544 C:\windows\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectPlay.dll
- 2010-11-19 11:44:40 . 2010-11-19 11:44:40 364544 C:\windows\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectPlay.dll
+ 2010-12-09 09:39:55 . 2010-12-09 09:39:55 159232 C:\windows\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectInput.dll
- 2010-11-19 11:44:40 . 2010-11-19 11:44:40 159232 C:\windows\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectInput.dll
- 2010-11-19 11:44:40 . 2010-11-19 11:44:40 145920 C:\windows\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectDraw.dll
+ 2010-12-09 09:39:55 . 2010-12-09 09:39:55 145920 C:\windows\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectDraw.dll
+ 2010-12-09 09:39:55 . 2010-12-09 09:39:55 578560 C:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2911.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2010-11-19 11:44:40 . 2010-11-19 11:44:40 578560 C:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2911.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2010-11-19 11:44:38 . 2010-11-19 11:44:38 578560 C:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2910.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2010-12-09 09:39:53 . 2010-12-09 09:39:53 578560 C:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2910.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2010-11-19 11:44:38 . 2010-11-19 11:44:38 577536 C:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2909.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2010-12-09 09:39:53 . 2010-12-09 09:39:53 577536 C:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2909.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2010-11-19 11:44:37 . 2010-11-19 11:44:37 577536 C:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2908.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2010-12-09 09:39:52 . 2010-12-09 09:39:52 577536 C:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2908.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2010-12-09 09:39:52 . 2010-12-09 09:39:52 577024 C:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2907.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2010-11-19 11:44:37 . 2010-11-19 11:44:37 577024 C:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2907.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2010-12-09 09:39:51 . 2010-12-09 09:39:51 576000 C:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2906.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2010-11-19 11:44:36 . 2010-11-19 11:44:36 576000 C:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2906.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2010-12-09 09:39:51 . 2010-12-09 09:39:51 567296 C:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2010-11-19 11:44:36 . 2010-11-19 11:44:36 567296 C:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2010-11-19 11:44:35 . 2010-11-19 11:44:35 563712 C:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2904.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2010-12-09 09:39:51 . 2010-12-09 09:39:51 563712 C:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2904.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2010-11-19 11:44:39 . 2010-11-19 11:44:39 473600 C:\windows\assembly\GAC\Microsoft.DirectX.Direct3D\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3D.dll
+ 2010-12-09 09:39:55 . 2010-12-09 09:39:55 473600 C:\windows\assembly\GAC\Microsoft.DirectX.Direct3D\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3D.dll
- 2009-07-14 04:45:55 . 2010-11-25 08:05:03 3860019 C:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\tokens.dat
+ 2009-07-14 04:45:55 . 2010-12-09 19:04:04 3860019 C:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\tokens.dat
+ 2006-12-02 06:09:06 . 2006-12-02 06:09:06 2818048 C:\windows\Installer\4861fd.msi
+ 2010-12-09 09:39:50 . 2010-12-09 09:39:50 2846720 C:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2903.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2010-11-19 11:44:34 . 2010-11-19 11:44:34 2846720 C:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2903.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2010-12-09 09:39:49 . 2010-12-09 09:39:49 2676224 C:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2010-11-19 11:44:33 . 2010-11-19 11:44:33 2676224 C:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2009-07-14 02:34:08 . 2010-12-08 18:40:58 10223616 C:\windows\system32\SMI\Store\Machine\SCHEMA.DAT
+ 2009-07-14 02:34:08 . 2010-12-09 19:12:16 10223616 C:\windows\system32\SMI\Store\Machine\SCHEMA.DAT
.
-- Snímek resetován k současnému datu --
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe" [2009-07-14 01:39:41 1475072]

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"="C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2009-11-20 15:25:22 284696]
"MDS_Menu"="C:\Program Files (x86)\Lenovo\MediaShow\MUITransfer\MUIStartMenu.exe" [2008-11-14 22:02:14 218408]
"Lenovo SlideNav"="C:\Program Files\Lenovo\Lenovo SlideNav\SlidebarNavigator\SlidebarNavigator.exe" [2009-10-22 02:57:40 845640]
"OnekeyDM"="C:\Program Files (x86)\Lenovo\OnekeyDM\OnekeyDM.exe" [2009-03-27 13:56:14 468480]
"UpdateP2GShortCut"="C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" [2008-12-03 22:15:16 218408]
"WinampAgent"="C:\Program Files (x86)\Winamp\winampa.exe" [2010-06-28 21:39:02 74752]
"SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [2010-05-14 09:44:46 248552]
"PWRISOVM.EXE"="C:\Program Files (x86)\PowerISO\PWRISOVM.EXE" [2010-04-12 08:40:16 180224]
"Adobe Reader Speed Launcher"="C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-12-21 23:57:28 35760]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)

[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"mixer5"=wdmaud.drv

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"

R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 11:16:28 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 12:27:14 138576]
R2 ReadyComm.DirectRouter;ReadyComm.DirectRouter;C:\windows\System32\IgrsSvcs.exe [x]
R3 Bridge0;Bridge0;C:\windows\system32\drivers\WDBridge.sys [2009-07-16 03:38:20 79376]
R3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64;C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2010-10-06 18:19:04 1436424]
R3 Lenovo ReadyComm AppSvc;Lenovo ReadyComm AppSvc;C:\Program Files\Lenovo\ReadyComm\AppSvc.exe [2009-08-14 14:22:48 509192]
R3 Lenovo ReadyComm ConnSvc;Lenovo ReadyComm ConnSvc;C:\Program Files\Lenovo\ReadyComm\ConnSvc.exe [2009-09-22 18:16:32 579400]
R3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;C:\windows\system32\DRIVERS\netw5v64.sys [2009-05-14 00:51:40 5435904]
R3 PS_MDP;ReadyComm Presentation Space Helper Service;C:\windows\System32\IgrsSvcs.exe [x]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\windows\System32\Drivers\RtsUStor.sys [2009-09-22 09:39:56 225280]
R3 WatAdminSvc;Služba Technologie aktivace Windows;C:\windows\system32\Wat\WatAdminSvc.exe [2010-09-13 17:14:29 1255736]
R3 wsvd;wsvd;C:\windows\system32\DRIVERS\wsvd.sys [2009-07-21 14:20:06 121840]
S0 NCFilter;Novell UNC Filter - Filter;C:\windows\system32\DRIVERS\NCFilter.sys [2009-12-27 17:40:40 113176]
S0 NCRecognizer;Novell UNC Filter - Recognizer;C:\windows\system32\DRIVERS\NCRecognizer.sys [2009-12-27 17:40:40 119320]
S0 NCUncFilter;Novell UNC Filter - UNC Filter;C:\windows\system32\DRIVERS\NCUncFilter.sys [2009-12-27 17:40:40 26136]
S0 sptd;sptd;C:\windows\System32\Drivers\sptd.sys [2010-09-13 20:18:39 834544]
S1 vwififlt;Virtual WiFi Filter Driver;C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 00:07:22 59904]
S2 Application Updater;Application Updater;C:\Program Files (x86)\Application Updater\ApplicationUpdater.exe [2010-10-22 15:38:46 386560]
S2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid;C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2009-11-20 15:25:24 13336]
S2 ICQ Service;ICQ Service;C:\Program Files (x86)\ICQ6Toolbar\ICQ Service.exe [2010-06-02 14:58:20 246520]
S2 IGRS;IGRS;C:\Program Files (x86)\Lenovo\ReadyComm\common\IGRS.exe [2009-07-14 14:27:26 38152]
S2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [2010-05-20 16:19:16 101048]
S2 NCFSD;Novell Client File System Redirector;C:\Program Files\Novell\Client\XTier\Drivers\ncfsd.sys [2009-12-27 17:40:40 96792]
S2 NCIOCTL;Novell Xplat IoCtl Driver;C:\Program Files\Novell\Client\XTier\Drivers\ncioctl.sys [2009-12-27 17:40:42 83480]
S2 XTSvcMgr;Novell XTier Service Manager;C:\Program Files\Novell\Client\XTier\Services\XTSvcMgr.exe [2009-12-27 17:40:44 21016]
S3 ACPIVPC;Lenovo Virtual Power Controller Driver;C:\windows\system32\DRIVERS\AcpiVpc.sys [2009-05-19 13:43:32 26128]
S3 btusbflt;Bluetooth USB Filter;C:\windows\system32\drivers\btusbflt.sys [2009-12-02 08:35:46 53800]
S3 btwl2cap;Bluetooth L2CAP Service;C:\windows\system32\DRIVERS\btwl2cap.sys [2009-04-07 07:33:08 35104]
S3 enecir;ENE CIR Receiver;C:\windows\system32\DRIVERS\enecir.sys [2009-06-29 02:17:00 70656]
S3 enecirhid;ENE CIR HID Receiver;C:\windows\system32\DRIVERS\enecirhid.sys [2009-05-19 13:59:00 14848]
S3 enecirhidma;ENE CIR HIDmini Filter;C:\windows\system32\DRIVERS\enecirhidma.sys [2008-04-24 10:16:00 6656]
S3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;C:\windows\system32\DRIVERS\k57nd60a.sys [2009-10-16 03:32:24 321064]
S3 MpNWMon;Microsoft Malware Protection Network Driver;C:\windows\system32\DRIVERS\MpNWMon.sys [2010-03-25 19:30:22 40832]
S3 NETw5s64;Ovladač adaptéru Intel(R) Wireless WiFi Link pro systém Windows 7 64 Bit;C:\windows\system32\DRIVERS\NETw5s64.sys [2009-09-15 17:40:42 6952960]
S3 NVHDA;Service for NVIDIA High Definition Audio Driver;C:\windows\system32\drivers\nvhda64v.sys [2009-08-11 07:19:18 84000]
S3 wdmirror;wdmirror;C:\windows\system32\DRIVERS\WDMirror.sys [2009-07-16 11:55:34 11280]


--- Ostatní služby/ovladače v paměti ---

*Deregistered* - nciom
*Deregistered* - ncp
*Deregistered* - ncpl
*Deregistered* - ndm
*Deregistered* - ndmndap
*Deregistered* - ndslpp
*Deregistered* - niam
*Deregistered* - nipctl
*Deregistered* - nscm
*Deregistered* - nsns
*Deregistered* - nsvccost
*Deregistered* - xtxplat

[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost]
IgrsSvcs REG_MULTI_SZ ReadyComm.DirectRouter PS_MDP
.
Obsah adresáře 'Naplánované úlohy'

2010-12-09 C:\windows\Tasks\Check Updates for Windows Live Toolbar.job
- C:\Program Files (x86)\Windows Live Toolbar\MSNTBUP.EXE [2007-02-12 15:54:46 . 2007-02-12 15:54:46]
.

--------- x86-64 -----------


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"combofix"="C:\ComboFix\CF26121.cfxxe" [X]
"RtHDVCpl"="C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" [2009-12-17 07:26:48 9643040]
"SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe" [BU]
"EnergyUtility"="C:\Program Files (x86)\Lenovo\Energy Management\utility.exe" [2009-09-01 14:24:38 4366704]
"Energy Management"="C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe" [2009-08-19 03:01:46 5825536]
"MSSE"="c:\Program Files\Microsoft Security Essentials\msseces.exe" [2010-09-15 02:34:02 1448568]
"NWTRAY"="NWTRAY.EXE" [2009-12-27 17:40:40 37400]
.
------- Doplňkový sken -------
.
uStart Page = hxxp://btjunkie.org/
uLocal Page = C:\windows\system32\blank.htm
mStart Page = hxxp://lenovo.live.com/
mLocal Page = C:\Windows\SysWOW64\blank.htm
IE: E&xportovat do aplikace Microsoft Office Excel - C:\PROGRA~2\MICROS~1\OFFICE11\EXCEL.EXE/3000
IE: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie_ctx.htm
IE: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119429
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosim o kontrolu, pomaly pc

#8 Příspěvek od Rudy »

Log již vypadá čistý. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

markm.free
Návštěvník
Návštěvník
Příspěvky: 62
Registrován: 24 dub 2008 13:48

Re: prosim o kontrolu, pomaly pc

#9 Příspěvek od markm.free »

uz se mi vse zda v poradku a pc je zase rychli jako drive. mockrat dekuji za pomoc

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119429
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosim o kontrolu, pomaly pc

#10 Příspěvek od Rudy »

Nemáte zač!
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět