Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

spomaleny pc a vir

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
dusko.tn
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 14 pro 2010 16:47

spomaleny pc a vir

#1 Příspěvek od dusko.tn »

Dobry den prajem vsetkym,

riesim nasledujuci problem, po zapnuti mojho pc zacal pc scenovat pre mna neznamim programom security tools,
naslo 32 virov a pitalo odo mna plabu toho programu, program ziadno nesiel odinstalovat,dokonca neslo ani ine
programi nainstalovat a nesiel spustit ani combofix, tak som pouzil obnovu systemu v rezime off, program zmizol
ale pc je akysi pomalsi, dlsie startuje a aj prisliz dlho sa instaluju programi, napriklad microsoft ofiice sa mi ani
nepodarilo nainstalovat. prosil by som o pomoc a prikladam log z rsit, velmi pekne dakujem.

s pozdravom dusan.


Logfile of random's system information tool 1.08 (written by random/random)
Run by Dusan at 2010-12-14 16:49:10
Microsoft® Windows Vista™ Home Premium Service Pack 1
System drive C: has 253 GB (86%) free of 295 GB
Total RAM: 3070 MB (66% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:49:19, on 14. 12. 2010
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\ASUS\ASUS Live Update\ALU.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ASUS\ATK Media\DMedia.exe
C:\Program Files\P4P\P4P.exe
C:\Windows\System32\ASUSTPE.exe
C:\Windows\ASScrPro.exe
C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
C:\Program Files\DivX\DivX Update\DivXUpdate.exe
C:\Program Files\DivX\DivX Plus Web Player\DDMService.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Windows\ehome\ehtray.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Dusan\Desktop\RSIT.exe
C:\Program Files\trend micro\Dusan.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.asus.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.sk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.asus.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
O2 - BHO: Use the DivX Plus Web Player to watch web videos with less interruptions and smoother playback on supported sites - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
O4 - HKLM\..\Run: [Zshutdown2] c:\preload\patch\sysprep2.cmd
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [SMSERIAL] C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files\ASUS\ATK Media\DMEDIA.EXE
O4 - HKLM\..\Run: [PowerForPhone] "C:\Program Files\P4P\P4P.exe"
O4 - HKLM\..\Run: [ASUSTPE] C:\Windows\system32\ASUSTPE.exe
O4 - HKLM\..\Run: [ASUS Camera ScreenSaver] C:\Windows\ASScrProlog.exe
O4 - HKLM\..\Run: [ASUS Screen Saver Protector] C:\Windows\ASScrPro.exe
O4 - HKLM\..\Run: [Symantec PIF AlertEng] "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll"
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [DivX Download Manager] "C:\Program Files\DivX\DivX Plus Web Player\DDmService.exe" start
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\RunOnce: [NSSInstallation] C:\Program Files\DivX\Symantec\scstubinstaller.exe /runonce
O4 - HKCU\..\Run: [Google Update] "C:\Users\Dusan\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: ADSM Service (ADSMService) - Unknown owner - C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files\ATK Hotkey\ASLDRSrv.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe

--
End of file - 7071 bytes

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1014536922-3093134309-4291372427-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1014536922-3093134309-4291372427-1000UA.job
C:\Windows\tasks\Install_NSS.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{326E768D-4182-46FD-9C16-1449A49795F4}]
DivX Plus Web Player HTML5 <video> - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll [2010-12-08 3123072]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{593DDEC6-7468-4cdd-90E1-42DADAA222E9}]
DivX HiQ - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll [2010-12-08 3123072]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Plug-In - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-09-27 1250696]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2008-01-21 61440]
"Zshutdown2"=c:\preload\patch\sysprep2.cmd []
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2008-01-07 4853760]
"SMSERIAL"=C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [2007-09-03 630784]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-12-06 1029416]
"ATKMEDIA"=C:\Program Files\ASUS\ATK Media\DMEDIA.EXE [2006-11-02 61440]
"PowerForPhone"=C:\Program Files\P4P\P4P.exe [2007-08-02 778240]
"ASUSTPE"=C:\Windows\system32\ASUSTPE.exe [2007-10-11 106496]
"ASUS Camera ScreenSaver"=C:\Windows\ASScrProlog.exe [2010-12-09 37232]
"ASUS Screen Saver Protector"=C:\Windows\ASScrPro.exe [2010-12-09 33136]
"Symantec PIF AlertEng"=C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe [2008-01-29 583048]
"DivXUpdate"=C:\Program Files\DivX\DivX Update\DivXUpdate.exe [2010-12-08 1226608]
"DivX Download Manager"=C:\Program Files\DivX\DivX Plus Web Player\DDmService.exe [2010-12-08 63360]
"avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2009-03-02 209153]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"NSSInstallation"=C:\Program Files\DivX\Symantec\scstubinstaller.exe [2010-03-08 497016]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\Dusan\AppData\Local\Google\Update\GoogleUpdate.exe [2010-12-10 136176]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2010-12-03 14944136]
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-21 125952]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
Adobe Reader Synchronizer.lnk - C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======List of files/folders created in the last 1 months======

2010-12-14 16:49:10 ----D---- C:\rsit
2010-12-14 16:49:10 ----D---- C:\Program Files\trend micro
2010-12-14 16:06:19 ----A---- C:\Windows\system32\drivers\avipbb.sys
2010-12-14 16:06:19 ----A---- C:\Windows\system32\drivers\avgntflt.sys
2010-12-14 16:06:18 ----A---- C:\Windows\system32\drivers\ssmdrv.sys
2010-12-14 16:06:15 ----D---- C:\ProgramData\Avira
2010-12-14 16:06:15 ----D---- C:\Program Files\Avira
2010-12-14 15:36:46 ----D---- C:\Users\Dusan\AppData\Roaming\skypePM
2010-12-14 15:33:48 ----N---- C:\Windows\system32\MpSigStub.exe
2010-12-14 15:31:08 ----D---- C:\Program Files\Common Files\Skype
2010-12-14 15:31:04 ----RD---- C:\Program Files\Skype
2010-12-14 15:31:02 ----D---- C:\Users\Dusan\AppData\Roaming\Skype
2010-12-14 15:30:55 ----D---- C:\ProgramData\Skype
2010-12-14 15:26:11 ----D---- C:\Program Files\CCleaner
2010-12-14 15:11:52 ----SHD---- C:\Config.Msi
2010-12-14 14:59:10 ----D---- C:\Users\Dusan\AppData\Roaming\vlc
2010-12-14 14:58:08 ----D---- C:\Program Files\VideoLAN
2010-12-14 14:43:09 ----D---- C:\Users\Dusan\AppData\Roaming\Local
2010-12-14 14:42:43 ----D---- C:\Users\Dusan\AppData\Roaming\DivX
2010-12-14 14:42:01 ----D---- C:\Program Files\Common Files\PX Storage Engine
2010-12-14 14:40:54 ----D---- C:\Program Files\Common Files\DivX Shared
2010-12-14 14:40:16 ----D---- C:\Program Files\DivX
2010-12-14 14:39:49 ----D---- C:\ProgramData\DivX
2010-12-14 14:31:03 ----D---- C:\Users\Dusan\AppData\Roaming\Mozilla
2010-12-14 14:30:49 ----D---- C:\Program Files\Mozilla Firefox
2010-12-14 14:27:07 ----A---- C:\Windows\system32\XAudio2_7.dll
2010-12-14 14:27:07 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2010-12-14 14:27:06 ----A---- C:\Windows\system32\xactengine3_7.dll
2010-12-14 14:27:06 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2010-12-14 14:27:05 ----A---- C:\Windows\system32\D3DX9_43.dll
2010-12-14 14:27:05 ----A---- C:\Windows\system32\d3dx11_43.dll
2010-12-14 14:27:05 ----A---- C:\Windows\system32\d3dx10_43.dll
2010-12-14 14:27:05 ----A---- C:\Windows\system32\d3dcsx_43.dll
2010-12-14 14:27:04 ----A---- C:\Windows\system32\XAudio2_6.dll
2010-12-14 14:27:04 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2010-12-14 14:27:04 ----A---- C:\Windows\system32\xactengine3_6.dll
2010-12-14 14:27:04 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2010-12-14 14:27:02 ----A---- C:\Windows\system32\XAudio2_5.dll
2010-12-14 14:27:01 ----A---- C:\Windows\system32\xactengine3_5.dll
2010-12-14 14:27:00 ----A---- C:\Windows\system32\d3dcsx_42.dll
2010-12-14 14:27:00 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2010-12-14 14:26:59 ----A---- C:\Windows\system32\D3DX9_42.dll
2010-12-14 14:26:59 ----A---- C:\Windows\system32\d3dx11_42.dll
2010-12-14 14:26:59 ----A---- C:\Windows\system32\d3dx10_42.dll
2010-12-14 14:26:58 ----A---- C:\Windows\system32\D3DX9_41.dll
2010-12-14 14:26:58 ----A---- C:\Windows\system32\d3dx10_41.dll
2010-12-14 14:26:58 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2010-12-14 14:26:57 ----A---- C:\Windows\system32\XAudio2_4.dll
2010-12-14 14:26:57 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2010-12-14 14:26:56 ----A---- C:\Windows\system32\xactengine3_4.dll
2010-12-14 14:26:56 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2010-12-14 14:26:56 ----A---- C:\Windows\system32\d3dx10_40.dll
2010-12-14 14:26:56 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2010-12-14 14:26:55 ----A---- C:\Windows\system32\XAudio2_3.dll
2010-12-14 14:26:55 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2010-12-14 14:26:55 ----A---- C:\Windows\system32\xactengine3_3.dll
2010-12-14 14:26:55 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2010-12-14 14:26:55 ----A---- C:\Windows\system32\D3DX9_40.dll
2010-12-14 14:26:54 ----A---- C:\Windows\system32\XAudio2_2.dll
2010-12-14 14:26:54 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2010-12-14 14:26:48 ----A---- C:\Windows\system32\xactengine3_2.dll
2010-12-14 14:26:47 ----A---- C:\Windows\system32\d3dx10_39.dll
2010-12-14 14:26:47 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2010-12-14 14:26:46 ----A---- C:\Windows\system32\D3DX9_39.dll
2010-12-14 14:26:44 ----A---- C:\Windows\system32\XAudio2_1.dll
2010-12-14 14:26:44 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2010-12-14 14:26:44 ----A---- C:\Windows\system32\xactengine3_1.dll
2010-12-14 14:26:44 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2010-12-14 14:26:43 ----A---- C:\Windows\system32\D3DX9_38.dll
2010-12-14 14:26:43 ----A---- C:\Windows\system32\d3dx10_38.dll
2010-12-14 14:26:43 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2010-12-14 14:26:42 ----A---- C:\Windows\system32\XAudio2_0.dll
2010-12-14 14:26:41 ----A---- C:\Windows\system32\xactengine3_0.dll
2010-12-14 14:26:41 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2010-12-14 14:26:41 ----A---- C:\Windows\system32\D3DX9_37.dll
2010-12-14 14:26:41 ----A---- C:\Windows\system32\d3dx10_37.dll
2010-12-14 14:26:41 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2010-12-14 14:26:40 ----A---- C:\Windows\system32\xactengine2_10.dll
2010-12-14 14:26:39 ----A---- C:\Windows\system32\d3dx10_36.dll
2010-12-14 14:26:39 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2010-12-14 14:26:38 ----A---- C:\Windows\system32\d3dx9_36.dll
2010-12-14 14:26:37 ----A---- C:\Windows\system32\xactengine2_9.dll
2010-12-14 14:26:37 ----A---- C:\Windows\system32\d3dx9_35.dll
2010-12-14 14:26:37 ----A---- C:\Windows\system32\d3dx10_35.dll
2010-12-14 14:26:37 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2010-12-14 14:26:36 ----A---- C:\Windows\system32\xinput1_3.dll
2010-12-14 14:26:36 ----A---- C:\Windows\system32\xactengine2_8.dll
2010-12-14 14:26:36 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2010-12-14 14:26:36 ----A---- C:\Windows\system32\d3dx9_34.dll
2010-12-14 14:26:36 ----A---- C:\Windows\system32\d3dx10_34.dll
2010-12-14 14:26:36 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2010-12-14 14:26:35 ----A---- C:\Windows\system32\xactengine2_7.dll
2010-12-14 14:26:35 ----A---- C:\Windows\system32\d3dx10_33.dll
2010-12-14 14:26:35 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2010-12-14 14:26:34 ----A---- C:\Windows\system32\d3dx9_33.dll
2010-12-14 14:26:33 ----A---- C:\Windows\system32\xactengine2_6.dll
2010-12-14 14:26:32 ----A---- C:\Windows\system32\xactengine2_5.dll
2010-12-14 14:26:32 ----A---- C:\Windows\system32\d3dx10.dll
2010-12-14 14:26:31 ----A---- C:\Windows\system32\d3dx9_32.dll
2010-12-14 14:26:30 ----A---- C:\Windows\system32\xactengine2_4.dll
2010-12-14 14:26:30 ----A---- C:\Windows\system32\x3daudio1_1.dll
2010-12-14 14:26:30 ----A---- C:\Windows\system32\d3dx9_31.dll
2010-12-14 14:26:29 ----A---- C:\Windows\system32\xinput1_2.dll
2010-12-14 14:26:29 ----A---- C:\Windows\system32\xactengine2_3.dll
2010-12-14 14:26:28 ----A---- C:\Windows\system32\xinput1_1.dll
2010-12-14 14:26:28 ----A---- C:\Windows\system32\xactengine2_2.dll
2010-12-14 14:26:27 ----A---- C:\Windows\system32\xactengine2_1.dll
2010-12-14 14:26:19 ----A---- C:\Windows\system32\d3dx9_30.dll
2010-12-14 14:26:18 ----A---- C:\Windows\system32\xactengine2_0.dll
2010-12-14 14:26:18 ----A---- C:\Windows\system32\x3daudio1_0.dll
2010-12-14 14:26:18 ----A---- C:\Windows\system32\d3dx9_29.dll
2010-12-14 14:26:18 ----A---- C:\Windows\system32\d3dx9_28.dll
2010-12-14 14:26:17 ----A---- C:\Windows\system32\d3dx9_27.dll
2010-12-14 14:26:17 ----A---- C:\Windows\system32\d3dx9_26.dll
2010-12-14 14:26:17 ----A---- C:\Windows\system32\d3dx9_25.dll
2010-12-14 14:26:17 ----A---- C:\Windows\system32\d3dx9_24.dll
2010-12-14 14:23:37 ----HD---- C:\Windows\msdownld.tmp
2010-12-14 14:23:31 ----D---- C:\Windows\system32\directx
2010-12-14 14:19:57 ----A---- C:\Windows\avisplitter.ini
2010-12-14 14:19:55 ----A---- C:\Windows\system32\yv12vfw.dll
2010-12-14 14:19:54 ----A---- C:\Windows\system32\qt-dx331.dll
2010-12-14 14:19:53 ----A---- C:\Windows\system32\ff_vfw.dll.manifest
2010-12-14 14:19:53 ----A---- C:\Windows\system32\ff_vfw.dll
2010-12-14 14:19:52 ----D---- C:\Program Files\K-Lite Codec Pack
2010-12-14 14:19:00 ----D---- C:\Program Files\Xvid
2010-12-14 14:19:00 ----A---- C:\Windows\system32\xvidvfw.dll
2010-12-14 14:19:00 ----A---- C:\Windows\system32\xvidcore.dll
2010-12-14 14:16:00 ----A---- C:\Windows\iun6002.exe
2010-12-14 14:15:45 ----D---- C:\Program Files\Codec Pack - All In 1
2010-12-14 14:15:43 ----D---- C:\Windows\system32\languages
2010-12-14 14:12:46 ----D---- C:\Program Files\Orban
2010-12-14 14:11:39 ----D---- C:\Users\Dusan\AppData\Roaming\URSoft
2010-12-14 14:11:38 ----AD---- C:\ProgramData\TEMP
2010-12-14 14:11:27 ----D---- C:\Program Files\AC3Filter
2010-12-14 14:09:53 ----D---- C:\Program Files\Your Uninstaller 2008
2010-12-14 13:54:09 ----ASH---- C:\hiberfil.sys
2010-12-13 08:48:43 ----D---- C:\Program Files\Microsoft.NET
2010-12-11 11:35:15 ----D---- C:\606f4705d0e9f3b7da
2010-12-11 11:34:43 ----D---- C:\ProgramData\Alwil Software
2010-12-11 11:34:43 ----D---- C:\Program Files\Alwil Software
2010-12-11 11:34:39 ----D---- C:\ProgramData\lGoIb04300
2010-12-09 22:50:15 ----A---- C:\Windows\PGMONITOR.EXE
2010-12-09 22:49:54 ----A---- C:\Windows\system32\Oemdspif.dll
2010-12-09 22:49:53 ----A---- C:\Windows\system32\atiumdva.dll
2010-12-09 22:49:52 ----A---- C:\Windows\system32\atiumdag.dll
2010-12-09 22:49:52 ----A---- C:\Windows\system32\atitmmxx.dll
2010-12-09 22:49:52 ----A---- C:\Windows\system32\atipdlxx.dll
2010-12-09 22:49:51 ----A---- C:\Windows\system32\atioglxx.dll
2010-12-09 22:49:50 ----A---- C:\Windows\system32\drivers\atikmdag.sys
2010-12-09 22:49:50 ----A---- C:\Windows\system32\atidxx32.dll
2010-12-09 22:49:50 ----A---- C:\Windows\system32\ATIDEMGX.dll
2010-12-09 22:49:50 ----A---- C:\Windows\system32\atibrtmon.exe
2010-12-09 22:49:50 ----A---- C:\Windows\system32\Ati2evxx.exe
2010-12-09 22:49:50 ----A---- C:\Windows\system32\Ati2evxx.dll
2010-12-09 22:49:49 ----A---- C:\Windows\system32\drivers\ati2erec.dll
2010-12-09 22:49:49 ----A---- C:\Windows\system32\ati2edxx.dll
2010-12-09 22:49:49 ----A---- C:\Windows\system32\amdpcom32.dll
2010-12-09 22:43:05 ----A---- C:\Windows\system32\drivers\SiSGB6.sys
2010-12-09 22:43:05 ----A---- C:\Windows\system32\drivers\ATKACPI.sys
2010-12-09 22:14:15 ----A---- C:\Windows\system32\capicom.dll
2010-12-09 22:14:08 ----D---- C:\ProgramData\Symantec
2010-12-09 22:13:53 ----D---- C:\Program Files\Common Files\Symantec Shared
2010-12-09 22:12:43 ----D---- C:\Program Files\ATK Hotkey
2010-12-09 22:12:42 ----HD---- C:\Program Files\InstallShield Installation Information
2010-12-09 22:07:33 ----D---- C:\ProgramData\ATI
2010-12-09 22:06:21 ----D---- C:\Program Files\ASUS
2010-12-09 22:01:41 ----D---- C:\Program Files\ATI Technologies
2010-12-09 22:00:46 ----D---- C:\Program Files\ATI
2010-12-09 22:00:44 ----SHD---- C:\Windows\Installer
2010-12-09 21:55:21 ----D---- C:\Windows\SoftwareDistribution
2010-12-09 21:51:28 ----SHD---- C:\System Volume Information
2010-12-09 21:51:28 ----ASH---- C:\pagefile.sys
2010-12-09 17:08:21 ----A---- C:\Windows\system32\wintrust.dll
2010-12-09 17:08:17 ----A---- C:\Windows\system32\cabview.dll
2010-12-09 17:02:11 ----A---- C:\Windows\WinInit.ini
2010-12-09 17:00:48 ----D---- C:\ProgramData\Norton
2010-12-09 16:49:35 ----HD---- C:\Windows\PIF
2010-12-09 15:01:17 ----A---- C:\Windows\system32\drivers\athr.sys
2010-12-09 15:01:17 ----A---- C:\Windows\system32\athr.sys
2010-12-09 15:01:16 ----D---- C:\Windows\system32\nn-NO
2010-12-09 15:01:16 ----A---- C:\Windows\system32\S64CPA.exe
2010-12-09 15:01:16 ----A---- C:\Windows\system32\athihvui.dll
2010-12-09 15:01:16 ----A---- C:\Windows\system32\athihvs.dll
2010-12-09 15:01:05 ----D---- C:\Program Files\Atheros
2010-12-09 15:01:02 ----D---- C:\Program Files\Cisco
2010-12-09 14:59:19 ----D---- C:\ProgramData\Atheros
2010-12-09 14:58:55 ----D---- C:\Program Files\Wireless Console 2
2010-12-09 14:57:29 ----A---- C:\Windows\system32\drivers\kbfiltr.sys
2010-12-09 14:53:57 ----A---- C:\Debug.txt
2010-12-09 14:52:59 ----A---- C:\Windows\system32\drivers\RTSTOR.sys
2010-12-09 14:50:43 ----A---- C:\Windows\RTKAUDIOSERVICE.EXE
2010-12-09 14:50:11 ----D---- C:\Windows\system32\RTCOM
2010-12-09 14:49:39 ----A---- C:\Windows\DIFxAPI.dll
2010-12-09 14:49:36 ----A---- C:\Windows\system32\SRSWOW.dll
2010-12-09 14:49:36 ----A---- C:\Windows\system32\SRSTSXT.dll
2010-12-09 14:49:36 ----A---- C:\Windows\system32\SRSTSHD.dll
2010-12-09 14:49:36 ----A---- C:\Windows\system32\SRSHP360.dll
2010-12-09 14:49:36 ----A---- C:\Windows\system32\drivers\RTKVHDA.sys
2010-12-09 14:49:36 ----A---- C:\Windows\SkyTel.exe
2010-12-09 14:49:36 ----A---- C:\Windows\RtlUpd.exe
2010-12-09 14:49:35 ----D---- C:\Program Files\Realtek
2010-12-09 14:49:35 ----A---- C:\Windows\system32\RtkPgExt.dll
2010-12-09 14:49:35 ----A---- C:\Windows\system32\RtkCoInst.dll
2010-12-09 14:49:35 ----A---- C:\Windows\system32\RtkApoApi.dll
2010-12-09 14:49:35 ----A---- C:\Windows\system32\RtkAPO.dll
2010-12-09 14:49:35 ----A---- C:\Windows\system32\maxxaudioapo.dll
2010-12-09 14:49:35 ----A---- C:\Windows\RtHDVCpl.exe
2010-12-09 14:49:34 ----A---- C:\Windows\RtlExUpd.dll
2010-12-09 14:49:34 ----A---- C:\Windows\HideWin.exe
2010-12-09 14:49:31 ----D---- C:\Program Files\Common Files\InstallShield
2010-12-09 07:37:39 ----A---- C:\Windows\system32\wups2.dll
2010-12-09 07:37:39 ----A---- C:\Windows\system32\wuauclt.exe
2010-12-09 07:37:38 ----A---- C:\Windows\system32\wucltux.dll
2010-12-09 07:37:38 ----A---- C:\Windows\system32\wuaueng.dll
2010-12-09 07:37:05 ----A---- C:\Windows\system32\wups.dll
2010-12-09 07:37:05 ----A---- C:\Windows\system32\wudriver.dll
2010-12-09 07:37:05 ----A---- C:\Windows\system32\wuapi.dll
2010-12-09 07:36:54 ----A---- C:\Windows\system32\wuwebv.dll
2010-12-09 07:36:54 ----A---- C:\Windows\system32\wuapp.exe
2010-12-09 07:03:17 ----D---- C:\Users\Dusan\AppData\Roaming\Adobe
2010-12-09 07:02:52 ----A---- C:\Windows\system32\acovcnt.exe
2010-12-09 06:56:13 ----D---- C:\ProgramData\Adobe
2010-12-09 06:56:03 ----D---- C:\Program Files\Common Files\Adobe
2010-12-09 06:56:03 ----D---- C:\Program Files\Adobe
2010-12-09 06:55:23 ----A---- C:\Windows\ASScrPro.exe
2010-12-09 06:55:20 ----A---- C:\Windows\ASScrProlog.exe
2010-12-09 06:55:18 ----A---- C:\Windows\ASUS Camera ScreenSaver.exe
2010-12-09 06:55:18 ----A---- C:\Windows\ASUS Camera ScreenSaver Uninstaller.exe
2010-12-09 06:55:16 ----D---- C:\Windows\system32\Macromed
2010-12-09 06:55:16 ----D---- C:\Windows\Asus_Camera_ScreenSaver dir
2010-12-09 06:55:16 ----A---- C:\Windows\impborl.dll
2010-12-09 06:55:16 ----A---- C:\Windows\flashax.exe
2010-12-09 06:55:13 ----D---- C:\Users\Dusan\AppData\Roaming\Macromedia
2010-12-09 06:54:50 ----A---- C:\Windows\system32\TPESetting.dll
2010-12-09 06:54:50 ----A---- C:\Windows\system32\ASUSTPE.exe
2010-12-09 06:54:29 ----A---- C:\Windows\system32\ACEngSvr.exe
2010-12-09 06:54:12 ----A---- C:\Windows\system32\drivers\AsDsm.sys
2010-12-09 06:53:28 ----D---- C:\Program Files\ATKGFNEX
2010-12-09 06:52:53 ----D---- C:\Program Files\P4P
2010-12-09 06:51:25 ----D---- C:\ProgramData\P4G
2010-12-09 06:51:24 ----D---- C:\Program Files\P4G
2010-12-09 06:46:47 ----D---- C:\Program Files\Synaptics
2010-12-09 06:46:14 ----A---- C:\Windows\Uninstvga.bat
2010-12-09 06:46:14 ----A---- C:\Windows\Uninstsxga.bat
2010-12-09 06:46:14 ----A---- C:\Windows\system32\drivers\snp2uvc.sys
2010-12-09 06:46:14 ----A---- C:\Windows\system32\drivers\sncduvc.sys
2010-12-09 06:46:14 ----A---- C:\Windows\DrvInst.exe
2010-12-09 06:46:08 ----A---- C:\Windows\system32\SynTPCo4.dll
2010-12-09 06:46:08 ----A---- C:\Windows\system32\SynTPAPI.dll
2010-12-09 06:46:08 ----A---- C:\Windows\system32\drivers\SynTP.sys
2010-12-09 06:46:07 ----A---- C:\Windows\system32\WdfCoInstaller01000.dll
2010-12-09 06:46:07 ----A---- C:\Windows\system32\SynCtrl.dll
2010-12-09 06:46:07 ----A---- C:\Windows\system32\SynCOM.dll
2010-12-09 06:45:44 ----D---- C:\Program Files\Motorola
2010-12-09 06:45:17 ----A---- C:\Windows\system32\sm56co6a.dll
2010-12-09 06:45:17 ----A---- C:\Windows\system32\drivers\smserial.sys
2010-12-09 06:44:50 ----D---- C:\Program Files\ATKOSD2
2010-12-09 06:44:34 ----D---- C:\Users\Dusan\AppData\Roaming\InstallShield
2010-12-09 06:27:58 ----D---- C:\Users\Dusan\AppData\Roaming\ATI
2010-12-09 06:26:37 ----D---- C:\Users\Dusan\AppData\Roaming\Identities
2010-12-09 06:25:08 ----SD---- C:\Users\Dusan\AppData\Roaming\Microsoft
2010-12-09 06:25:08 ----D---- C:\Users\Dusan\AppData\Roaming\Media Center Programs

======List of files/folders modified in the last 1 months======

2010-12-14 16:49:16 ----D---- C:\Windows\Temp
2010-12-14 16:49:10 ----RD---- C:\Program Files
2010-12-14 16:42:01 ----D---- C:\Windows\System32
2010-12-14 16:42:01 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-12-14 16:42:00 ----D---- C:\Windows\inf
2010-12-14 16:21:31 ----D---- C:\Windows
2010-12-14 16:06:44 ----D---- C:\Windows\system32\drivers
2010-12-14 16:06:15 ----HD---- C:\ProgramData
2010-12-14 16:02:49 ----D---- C:\Windows\winsxs
2010-12-14 15:46:38 ----D---- C:\Windows\system32\catroot
2010-12-14 15:41:43 ----D---- C:\Windows\system32\catroot2
2010-12-14 15:31:49 ----D---- C:\Windows\system32\Tasks
2010-12-14 15:31:08 ----D---- C:\Program Files\Common Files
2010-12-14 15:26:57 ----D---- C:\Windows\Debug
2010-12-14 15:17:28 ----RSD---- C:\Windows\assembly
2010-12-14 15:16:21 ----D---- C:\Windows\rescache
2010-12-14 15:13:07 ----D---- C:\Windows\Tasks
2010-12-14 14:26:06 ----D---- C:\Windows\Microsoft.NET
2010-12-14 14:23:41 ----D---- C:\Windows\Logs
2010-12-14 13:54:52 ----RSD---- C:\Windows\Fonts
2010-12-14 13:54:00 ----D---- C:\Windows\system32\wbem
2010-12-14 13:53:10 ----D---- C:\Windows\system32\config
2010-12-14 13:48:56 ----D---- C:\Windows\system32\ias
2010-12-14 13:48:56 ----D---- C:\Windows\system32\en
2010-12-14 13:48:55 ----D---- C:\Windows\system32\el
2010-12-14 13:48:47 ----D---- C:\Windows\system32\drivers\sk-SK
2010-12-14 13:48:47 ----D---- C:\Windows\system32\drivers\ro-RO
2010-12-14 13:48:47 ----D---- C:\Windows\system32\drivers\en-US
2010-12-14 13:48:47 ----D---- C:\Windows\system32\drivers\el-GR
2010-12-14 13:48:47 ----D---- C:\Windows\system32\CodeIntegrity
2010-12-14 13:48:47 ----D---- C:\Windows\sk-SK
2010-12-14 13:48:47 ----D---- C:\Windows\ro-RO
2010-12-14 13:48:45 ----D---- C:\Windows\en-US
2010-12-14 13:48:45 ----D---- C:\Windows\el-GR
2010-12-14 13:46:02 ----D---- C:\Windows\WindowsMobile
2010-12-14 13:46:02 ----D---- C:\Windows\system32\winrm
2010-12-14 13:46:02 ----D---- C:\Windows\system32\WCN
2010-12-14 13:46:02 ----D---- C:\Windows\system32\sysprep
2010-12-14 13:46:02 ----D---- C:\Windows\system32\spool
2010-12-14 13:46:02 ----D---- C:\Windows\system32\slmgr
2010-12-14 13:46:02 ----D---- C:\Windows\system32\Printing_Admin_Scripts
2010-12-14 13:46:02 ----D---- C:\Windows\system32\oobe
2010-12-14 13:46:02 ----D---- C:\Windows\system32\MUI
2010-12-14 13:46:02 ----D---- C:\Windows\system32\Msdtc
2010-12-14 13:46:02 ----D---- C:\Windows\system32\migwiz
2010-12-14 13:46:01 ----D---- C:\Windows\system32\DriverStore
2010-12-14 13:46:01 ----D---- C:\Windows\system32\drivers\UMDF
2010-12-14 13:46:01 ----D---- C:\Windows\system32\com
2010-12-14 13:45:59 ----D---- C:\Windows\Speech
2010-12-14 13:45:59 ----D---- C:\Windows\servicing
2010-12-14 13:45:54 ----D---- C:\Windows\MSAgent
2010-12-14 13:45:54 ----D---- C:\Windows\IME
2010-12-14 13:45:54 ----D---- C:\Windows\DigitalLocker
2010-12-14 13:45:53 ----D---- C:\Program Files\Windows Sidebar
2010-12-14 13:45:52 ----D---- C:\Program Files\Windows Photo Gallery
2010-12-14 13:45:52 ----D---- C:\Program Files\Windows Journal
2010-12-14 13:45:52 ----D---- C:\Program Files\Windows Defender
2010-12-14 13:45:52 ----D---- C:\Program Files\Windows Collaboration
2010-12-14 13:45:52 ----D---- C:\Program Files\Windows Calendar
2010-12-14 13:45:52 ----D---- C:\Program Files\Common Files\System
2010-12-14 13:44:41 ----D---- C:\Windows\registration
2010-12-14 13:44:34 ----D---- C:\Windows\system32\XPSViewer
2010-12-14 13:44:34 ----D---- C:\Windows\PolicyDefinitions
2010-12-14 13:44:33 ----D---- C:\Program Files\Windows Media Player
2010-12-11 11:47:22 ----D---- C:\Windows\system32\WDI
2010-12-11 11:14:18 ----D---- C:\Windows\Prefetch
2010-12-09 22:21:52 ----SD---- C:\ProgramData\Microsoft
2010-12-09 21:57:34 ----D---- C:\Windows\system32\restore
2010-12-09 17:17:08 ----D---- C:\Windows\system32\sk-SK
2010-12-09 17:17:08 ----D---- C:\Windows\system32\ro-RO
2010-12-09 17:17:08 ----D---- C:\Windows\system32\en-US
2010-12-09 17:17:08 ----D---- C:\Windows\system32\el-GR
2010-12-09 17:17:08 ----D---- C:\Windows\system32\cs-CZ
2010-12-09 15:13:20 ----D---- C:\Windows\Panther
2010-12-09 15:01:17 ----D---- C:\Windows\system32\zh-TW
2010-12-09 15:01:17 ----D---- C:\Windows\system32\zh-CN
2010-12-09 15:01:17 ----D---- C:\Windows\system32\tr-TR
2010-12-09 15:01:17 ----D---- C:\Windows\system32\sv-SE
2010-12-09 15:01:17 ----D---- C:\Windows\system32\ru-RU
2010-12-09 15:01:17 ----D---- C:\Windows\system32\pt-PT
2010-12-09 15:01:17 ----D---- C:\Windows\system32\pl-PL
2010-12-09 15:01:16 ----D---- C:\Windows\system32\nl-NL
2010-12-09 15:01:16 ----D---- C:\Windows\system32\ko-KR
2010-12-09 15:01:16 ----D---- C:\Windows\system32\ja-JP
2010-12-09 15:01:16 ----D---- C:\Windows\system32\it-IT
2010-12-09 15:01:16 ----D---- C:\Windows\system32\hu-HU
2010-12-09 15:01:16 ----D---- C:\Windows\system32\fr-FR
2010-12-09 15:01:16 ----D---- C:\Windows\system32\fi-FI
2010-12-09 15:01:16 ----D---- C:\Windows\system32\es-ES
2010-12-09 15:01:16 ----D---- C:\Windows\system32\de-DE
2010-12-09 15:01:16 ----D---- C:\Windows\system32\da-DK
2010-12-09 15:00:27 ----D---- C:\Program Files\Common Files\microsoft shared
2010-12-09 14:53:00 ----D---- C:\Windows\system
2010-12-09 06:52:58 ----D---- C:\Windows\ModemLogs
2010-12-09 06:27:05 ----SHD---- C:\$Recycle.Bin
2010-12-09 06:25:08 ----RD---- C:\Users

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 AsDsm;AsDsm; C:\Windows\system32\drivers\AsDsm.sys [2007-08-10 29752]
R1 avgio;avgio; \??\C:\Program Files\Avira\AntiVir Desktop\avgio.sys [2009-02-13 11608]
R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [2010-12-14 96104]
R1 ssmdrv;ssmdrv; C:\Windows\system32\DRIVERS\ssmdrv.sys [2010-12-14 28520]
R2 ASMMAP;ASMMAP; \??\C:\Program Files\ATKGFNEX\ASMMAP.sys [2007-07-24 13880]
R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys [2010-12-14 56816]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2008-04-06 908800]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2008-03-09 3533824]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2008-01-08 2044896]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2007-01-24 5632]
R3 MODEMCSA;Unimodem Streaming Filter Device; C:\Windows\system32\drivers\MODEMCSA.sys [2008-01-21 18432]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATKACPI.sys [2006-12-15 7680]
R3 RTSTOR;USB Mass Storage Device; C:\Windows\system32\drivers\RTSTOR.SYS [2007-11-10 57856]
R3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSGB6.sys [2007-06-20 47616]
R3 smserial;smserial; C:\Windows\system32\DRIVERS\smserial.sys [2006-11-22 982272]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2007-10-01 1769984]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-12-06 196400]
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 usbvideo;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016]
S3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller; C:\Windows\system32\DRIVERS\yk60x86.sys [2006-11-02 194048]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]
S4 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2008-01-21 88576]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ADSMService;ADSM Service; C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe [2007-05-18 73728]
R2 AntiVirService;Avira AntiVir Guard; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2010-12-14 185089]
R2 AntiVirSchedulerService;Avira AntiVir Scheduler; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2010-12-14 108289]
R2 ASLDRService;ASLDR Service; C:\Program Files\ATK Hotkey\ASLDRSrv.exe [2007-02-06 94208]
R2 Ati External Event Utility;Ati External Event Utility; C:\Windows\system32\Ati2evxx.exe [2008-03-09 655360]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [2007-08-08 94208]
R2 LiveUpdate Notice Service;LiveUpdate Notice Service; C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe [2008-01-29 583048]
S2 LiveUpdate Notice Ex;LiveUpdate Notice Service Ex; C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe /h ccCommon []

-----------------EOF-----------------

dusko.tn
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 14 pro 2010 16:47

Re: spomaleny pc a vir

#2 Příspěvek od dusko.tn »

Neviete teda kde by prosim mohla byt chyba alebo je vsetko v poriadku? Vdaka.

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: spomaleny pc a vir

#3 Příspěvek od motji »

Dobrý večer :)
:arrow: Stahněte MBAM z mého podpisu
-Nainstalujte,dejte úplný sken

NIC NEMAZAT :!:
-MBAM má občas falešné detekce,proto budeme mazat až po kontrole logu.
-Log zkopírujte sem.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

dusko.tn
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 14 pro 2010 16:47

Re: spomaleny pc a vir

#4 Příspěvek od dusko.tn »

Dakujem za pomoc, prikladam log z mbam, vyzera ze tam nic nie je ale pocitac je spomaleny, nero mi
instalovalo dlho a aj scenovanie mbamom obcas slo uplne pomali, na to ze v pc mam minimum programov.

Malwarebytes' Anti-Malware 1.50
www.malwarebytes.org

Verze databáze: 5312

Windows 6.0.6001 Service Pack 1
Internet Explorer 7.0.6001.18000

14. 12. 2010 21:25:03
mbam-log-2010-12-14 (21-25-03).txt

Typ kontroly: Úplný test (C:\|)
Testované objekty: 250415
Uplynulý čas: 1 hodin, 49 minut, 43 sekund

Infikované procesy v paměti: 0
Infikované moduly v paměti: 0
Infikované klíče v registru: 0
Infikované hodnoty v registru: 0
Infikované datové položky v registru: 0
Infikované složky: 0
Infikované soubory: 0

Infikované procesy v paměti:
(Žádné škodlivé položky nebyly zjištěny)

Infikované moduly v paměti:
(Žádné škodlivé položky nebyly zjištěny)

Infikované klíče v registru:
(Žádné škodlivé položky nebyly zjištěny)

Infikované hodnoty v registru:
(Žádné škodlivé položky nebyly zjištěny)

Infikované datové položky v registru:
(Žádné škodlivé položky nebyly zjištěny)

Infikované složky:
(Žádné škodlivé položky nebyly zjištěny)

Infikované soubory:
(Žádné škodlivé položky nebyly zjištěny)

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: spomaleny pc a vir

#5 Příspěvek od motji »

:arrow: Spusťte combofix podle tohoto návodu
http://www.bleepingcomputer.com/combofi ... t-combofix
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

dusko.tn
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 14 pro 2010 16:47

Re: spomaleny pc a vir

#6 Příspěvek od dusko.tn »

Prikladam log z combofixu, scenovanie od spustenia po log trvalo 30 minut, potom som restartol pc a vyzeralo ze windows nacitalo rychlejsie. tu je log.

ComboFix 10-12-14.01 - Dusan . 12. 2010 23:00:32.1.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6001.1.1250.421.1029.18.3070.2075 [GMT 1:00]
Running from: c:\users\Dusan\Desktop\ComboFix.exe
AV: AntiVir Desktop *Enabled/Updated* {090F9C29-64CE-6C6F-379C-5901B49A85B7}
SP: AntiVir Desktop *Enabled/Updated* {B26E7DCD-42F4-63E1-0D2C-6273CF1DCF0A}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\program files\DivX\DivX Plus Web Player\npdivx32.dll
c:\users\Dusan\AppData\Roaming\Local
c:\users\Dusan\AppData\Roaming\Local\Temp\DDM\Settings\stbwjesgyvdq.avi.ddr
c:\users\Dusan\AppData\Roaming\Local\Temp\DDM\Settings\Temporary Downloaded Files\stbwjesgyvdq.avi.ddp
c:\users\Dusan\AppData\Roaming\Local\Temp\DDM\Settings\Temporary Downloaded Files\ynwviefyoayz.avi.ddp
c:\users\Dusan\AppData\Roaming\Local\Temp\DDM\Settings\ynwviefyoayz.avi.ddr

.
((((((((((((((((((((((((( Files Created from 2010-11-14 to 2010-12-14 )))))))))))))))))))))))))))))))
.

2010-12-14 22:20 . 2010-12-14 22:20 -------- d-----w- c:\users\Default\AppData\Local\temp
2010-12-14 21:00 . 2006-10-26 18:56 33104 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\msonpppr.dll
2010-12-14 21:00 . 2006-10-26 18:56 32592 ----a-w- c:\windows\system32\msonpmon.dll
2010-12-14 20:58 . 2010-12-14 20:58 -------- d-----w- c:\program files\Microsoft Works
2010-12-14 20:55 . 2010-12-14 20:55 -------- d-----w- c:\windows\PCHEALTH
2010-12-14 20:50 . 2010-12-14 20:50 -------- d-----w- c:\program files\Microsoft Visual Studio 8
2010-12-14 20:48 . 2010-12-14 21:01 -------- d-----w- c:\programdata\Microsoft Help
2010-12-14 20:46 . 2010-12-14 20:46 -------- d-----r- C:\MSOCache
2010-12-14 18:33 . 2010-12-14 18:33 -------- d-----w- c:\programdata\Malwarebytes
2010-12-14 18:33 . 2010-12-14 21:48 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-12-14 17:22 . 2010-12-14 17:25 -------- d-----w- c:\program files\Common Files\Nero
2010-12-14 17:22 . 2010-12-14 17:22 -------- d-----w- c:\programdata\Nero
2010-12-14 17:22 . 2010-12-14 17:22 -------- d-----w- c:\program files\Nero
2010-12-14 15:49 . 2010-12-14 15:49 -------- d-----w- c:\program files\trend micro
2010-12-14 15:06 . 2010-12-14 15:16 96104 ----a-w- c:\windows\system32\drivers\avipbb.sys
2010-12-14 15:06 . 2010-12-14 15:16 56816 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2010-12-14 15:06 . 2010-12-14 15:06 -------- d-----w- c:\programdata\Avira
2010-12-14 15:06 . 2010-12-14 15:06 -------- d-----w- c:\program files\Avira
2010-12-14 14:33 . 2010-11-16 11:01 6273872 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{10416820-4CAA-4987-BB6F-E6201D6F37E2}\mpengine.dll
2010-12-14 14:33 . 2010-10-19 09:41 222080 ------w- c:\windows\system32\MpSigStub.exe
2010-12-14 14:31 . 2010-12-14 14:31 -------- d-----w- c:\program files\Common Files\Skype
2010-12-14 14:31 . 2010-12-14 14:31 -------- d-----r- c:\program files\Skype
2010-12-14 14:30 . 2010-12-14 14:31 -------- d-----w- c:\programdata\Skype
2010-12-14 14:26 . 2010-12-14 14:26 -------- d-----w- c:\program files\CCleaner
2010-12-14 13:58 . 2010-12-14 13:58 -------- d-----w- c:\program files\VideoLAN
2010-12-14 13:42 . 2010-12-14 13:42 -------- d-----w- c:\program files\Common Files\PX Storage Engine
2010-12-14 13:40 . 2010-12-14 13:41 -------- d-----w- c:\program files\Common Files\DivX Shared
2010-12-14 13:40 . 2010-12-14 13:43 -------- d-----w- c:\program files\DivX
2010-12-14 13:39 . 2010-12-14 13:43 -------- d-----w- c:\programdata\DivX
2010-12-14 13:26 . 2009-09-04 16:29 453456 ----a-w- c:\windows\system32\d3dx10_42.dll
2010-12-14 13:23 . 2010-12-14 13:24 -------- d--h--w- c:\windows\msdownld.tmp
2010-12-14 13:19 . 2008-09-24 18:41 839680 ----a-w- c:\windows\system32\lameACM.acm
2010-12-14 13:19 . 2007-09-21 00:52 118784 ----a-w- c:\windows\system32\ac3acm.acm
2010-12-14 13:19 . 2004-01-25 16:18 217088 ----a-w- c:\windows\system32\yv12vfw.dll
2010-12-14 13:19 . 2008-09-16 00:14 3596288 ----a-w- c:\windows\system32\qt-dx331.dll
2010-12-14 13:19 . 2008-06-12 18:36 7680 ----a-w- c:\windows\system32\ff_vfw.dll
2010-12-14 13:19 . 2010-12-14 13:19 -------- d-----w- c:\program files\K-Lite Codec Pack
2010-12-14 13:19 . 2010-12-14 13:19 -------- d-----w- c:\program files\Xvid
2010-12-14 13:19 . 2008-01-10 12:16 159839 ----a-w- c:\windows\system32\xvidvfw.dll
2010-12-14 13:19 . 2008-01-10 12:15 755027 ----a-w- c:\windows\system32\xvidcore.dll
2010-12-14 13:19 . 2007-06-28 17:55 77824 ----a-w- c:\windows\system32\xvid.ax
2010-12-14 13:16 . 2010-12-14 13:14 737280 ----a-w- c:\windows\iun6002.exe
2010-12-14 13:15 . 2010-12-14 13:16 -------- d-----w- c:\program files\Codec Pack - All In 1
2010-12-14 13:15 . 2010-12-14 13:15 -------- d-----w- c:\windows\system32\languages
2010-12-14 13:12 . 2010-12-14 13:12 -------- d-----w- c:\program files\Orban
2010-12-14 13:11 . 2010-12-14 13:11 -------- d-----w- c:\program files\AC3Filter
2010-12-14 13:09 . 2010-12-14 14:23 -------- d-----w- c:\program files\Your Uninstaller 2008
2010-12-13 07:48 . 2010-12-14 20:55 -------- d-----w- c:\program files\Microsoft.NET
2010-12-11 10:35 . 2010-12-11 10:44 -------- d-----w- C:\606f4705d0e9f3b7da
2010-12-11 10:34 . 2010-12-11 10:34 -------- d-----w- c:\programdata\Alwil Software
2010-12-11 10:34 . 2010-12-11 10:34 -------- d-----w- c:\program files\Alwil Software
2010-12-11 10:34 . 2010-12-11 10:34 -------- d-----w- c:\programdata\lGoIb04300
2010-12-09 21:50 . 2007-08-06 17:18 81920 ----a-w- c:\windows\PGMONITOR.EXE
2010-12-09 21:43 . 2008-05-06 02:32 1048576 ----a-w- C:\F5SLAS.BIN
2010-12-09 21:43 . 2007-06-20 03:12 47616 ----a-w- c:\windows\system32\drivers\SiSGB6.sys
2010-12-09 21:43 . 2006-12-15 07:11 7680 ----a-w- c:\windows\system32\drivers\ATKACPI.sys
2010-12-09 21:14 . 2010-12-14 16:40 -------- d-----w- c:\programdata\Symantec
2010-12-09 21:13 . 2010-12-14 14:22 -------- d-----w- c:\program files\Common Files\Symantec Shared
2010-12-09 21:12 . 2010-12-09 21:12 -------- d-----w- c:\program files\ATK Hotkey
2010-12-09 21:12 . 2010-12-09 05:54 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-12-09 21:09 . 2010-12-09 21:09 0 ----a-w- c:\windows\ativpsrm.bin
2010-12-09 21:07 . 2010-12-09 21:07 -------- d-----w- c:\programdata\ATI
2010-12-09 21:06 . 2010-12-09 05:54 -------- d-----w- c:\program files\ASUS
2010-12-09 21:01 . 2010-12-09 21:03 -------- d-----w- c:\program files\ATI Technologies
2010-12-09 21:00 . 2010-12-09 21:00 -------- d-----w- c:\program files\ATI
2010-12-09 21:00 . 2010-12-14 21:18 -------- d-sh--w- c:\windows\Installer
2010-12-09 16:08 . 2009-12-23 12:43 171520 ----a-w- c:\windows\system32\wintrust.dll
2010-12-09 16:08 . 2010-01-15 00:04 98304 ----a-w- c:\windows\system32\cabview.dll
2010-12-09 16:00 . 2010-12-14 16:46 -------- d-----w- c:\programdata\Norton
2010-12-09 15:49 . 2010-12-09 15:49 -------- d--h--w- c:\windows\PIF
2010-12-09 14:01 . 2008-04-06 02:56 908800 ----a-w- c:\windows\system32\drivers\athr.sys
2010-12-09 14:01 . 2008-04-06 02:56 908800 ----a-w- c:\windows\system32\athr.sys
2010-12-09 14:01 . 2010-12-09 14:01 -------- d-----w- c:\windows\system32\nn-NO
2010-12-09 14:01 . 2008-04-08 06:00 376832 ----a-w- c:\windows\system32\S64CPA.exe
2010-12-09 14:01 . 2008-04-08 05:59 53248 ----a-w- c:\windows\system32\athihvui.dll
2010-12-09 14:01 . 2008-04-08 05:59 393216 ----a-w- c:\windows\system32\athihvs.dll
2010-12-09 14:01 . 2010-12-09 14:01 -------- d-----w- c:\program files\Atheros
2010-12-09 14:01 . 2010-12-09 14:01 -------- d-----w- c:\program files\Cisco
2010-12-09 13:59 . 2010-12-09 13:59 -------- d-----w- c:\programdata\Atheros
2010-12-09 13:58 . 2010-12-09 13:58 -------- d-----w- c:\program files\Wireless Console 2
2010-12-09 13:57 . 2007-01-24 18:08 5632 ----a-w- c:\windows\system32\drivers\kbfiltr.sys
2010-12-09 13:52 . 2007-11-10 06:30 57856 ----a-w- c:\windows\system32\drivers\RTSTOR.sys
2010-12-09 13:52 . 2007-08-03 06:32 5631520 ----a-w- c:\windows\system\DriveIcon.dll
2010-12-09 13:50 . 2008-01-08 05:10 98304 ----a-w- c:\windows\RTKAUDIOSERVICE.EXE
2010-12-09 13:50 . 2010-12-09 13:50 -------- d-----w- c:\windows\system32\RTCOM
2010-12-09 06:37 . 2009-08-07 02:24 44768 ----a-w- c:\windows\system32\wups2.dll
2010-12-09 06:37 . 2009-08-07 02:24 53472 ----a-w- c:\windows\system32\wuauclt.exe
2010-12-09 06:37 . 2009-08-07 02:23 1929952 ----a-w- c:\windows\system32\wuaueng.dll
2010-12-09 06:37 . 2009-08-07 01:45 2421760 ----a-w- c:\windows\system32\wucltux.dll
2010-12-09 06:37 . 2009-08-07 02:24 35552 ----a-w- c:\windows\system32\wups.dll
2010-12-09 06:37 . 2009-08-07 02:23 575704 ----a-w- c:\windows\system32\wuapi.dll
2010-12-09 06:37 . 2009-08-07 01:44 87552 ----a-w- c:\windows\system32\wudriver.dll
2010-12-09 06:36 . 2009-08-06 18:23 171608 ----a-w- c:\windows\system32\wuwebv.dll
2010-12-09 06:36 . 2009-08-06 17:44 33792 ----a-w- c:\windows\system32\wuapp.exe
2010-12-09 06:02 . 2010-12-14 21:49 45056 ----a-w- c:\windows\system32\acovcnt.exe
2010-12-09 05:56 . 2010-12-09 05:56 -------- d-----w- c:\program files\Common Files\Adobe
2010-12-09 05:55 . 2010-12-09 05:55 33136 ----a-w- c:\windows\ASScrPro.exe
2010-12-09 05:55 . 2010-12-09 05:55 37232 ----a-w- c:\windows\ASScrProlog.exe
2010-12-09 05:55 . 2010-12-09 05:55 4814371 ----a-w- c:\windows\ASUS Camera ScreenSaver.exe
2010-12-09 05:55 . 2010-12-09 05:55 274800 ----a-w- c:\windows\ASUS Camera ScreenSaver Uninstaller.exe
2010-12-09 05:55 . 2010-12-09 05:55 503808 ----a-w- c:\windows\Asus_Camera_ScreenSaver.scr
2010-12-09 05:55 . 2010-12-09 05:55 -------- d-----w- c:\windows\Asus_Camera_ScreenSaver dir
2010-12-09 05:55 . 2010-12-09 05:55 606848 ----a-w- c:\windows\flashax.exe
2010-12-09 05:55 . 2010-12-09 05:55 12288 ----a-w- c:\windows\impborl.dll
2010-12-09 05:55 . 2010-12-09 05:55 -------- d-----w- c:\windows\system32\Macromed
2010-12-09 05:54 . 2007-10-11 20:44 106496 ----a-w- c:\windows\system32\ASUSTPE.exe
2010-12-09 05:54 . 2007-10-11 20:43 32768 ----a-w- c:\windows\system32\TPESetting.dll
2010-12-09 05:54 . 2005-07-06 14:43 155648 ----a-w- c:\windows\system32\ACEngSvr.exe
2010-12-09 05:54 . 2007-08-10 19:19 29752 ----a-w- c:\windows\system32\drivers\AsDsm.sys
2010-12-09 05:53 . 2010-12-09 05:53 -------- d-----w- c:\program files\ATKGFNEX
2010-12-09 05:52 . 2010-12-09 05:52 -------- d-----w- c:\program files\P4P
2010-12-09 05:51 . 2010-12-14 12:45 -------- d-----w- c:\programdata\P4G
2010-12-09 05:51 . 2010-12-09 05:51 -------- d-----w- c:\program files\P4G
2010-12-09 05:45 . 2010-12-09 05:45 -------- d-----w- c:\program files\Motorola
2010-12-09 05:45 . 2006-11-22 09:35 982272 ----a-w- c:\windows\system32\drivers\smserial.sys
2010-12-09 05:45 . 2006-11-22 09:31 196608 ----a-w- c:\windows\system32\sm56co6a.dll
2010-12-09 05:44 . 2010-12-09 05:44 -------- d-----w- c:\program files\ATKOSD2
2010-12-09 05:25 . 2010-12-14 17:25 -------- d-----w- c:\users\Dusan

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-11-12 00:44 . 2010-11-12 00:44 94208 ----a-w- c:\windows\system32\dpl100.dll
2010-11-08 22:57 . 2010-11-08 22:57 353592 ----a-w- c:\windows\system32\DivXControlPanelApplet.cpl
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ADSMOverlayIcon1]
@="{A8D448F4-0431-45AC-9F5E-E1B434AB2249}"
[HKEY_CLASSES_ROOT\CLSID\{A8D448F4-0431-45AC-9F5E-E1B434AB2249}]
2007-06-01 16:08 143360 ----a-w- c:\program files\ASUS\ASUS Data Security Manager\OverlayIconShlExt1.dll

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Google Update"="c:\users\Dusan\AppData\Local\Google\Update\GoogleUpdate.exe" [2010-12-10 136176]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2010-12-03 14944136]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-21 125952]
"IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" [2007-12-13 1688872]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2008-01-21 61440]
"RtHDVCpl"="RtHDVCpl.exe" [2008-01-07 4853760]
"SMSERIAL"="c:\program files\Motorola\SMSERIAL\sm56hlpr.exe" [2007-09-03 630784]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2007-12-06 1029416]
"ATKMEDIA"="c:\program files\ASUS\ATK Media\DMEDIA.EXE" [2006-11-02 61440]
"PowerForPhone"="c:\program files\P4P\P4P.exe" [2007-08-02 778240]
"ASUSTPE"="c:\windows\system32\ASUSTPE.exe" [2007-10-11 106496]
"ASUS Camera ScreenSaver"="c:\windows\ASScrProlog.exe" [2010-12-09 37232]
"ASUS Screen Saver Protector"="c:\windows\ASScrPro.exe" [2010-12-09 33136]
"Symantec PIF AlertEng"="c:\program files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" [2008-01-29 583048]
"DivXUpdate"="c:\program files\DivX\DivX Update\DivXUpdate.exe" [2010-12-08 1226608]
"DivX Download Manager"="c:\program files\DivX\DivX Plus Web Player\DDmService.exe" [2010-12-08 63360]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2009-03-02 209153]
"NeroFilterCheck"="c:\program files\Common Files\Nero\Lib\NeroCheck.exe" [2007-03-01 153136]
"NBKeyScan"="c:\program files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe" [2007-12-03 2213160]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-26 31016]

c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Adobe Reader Speed Launch.lnk - c:\program files\Adobe\Reader 8.0\Reader\reader_sl.exe [2006-10-23 40048]
Adobe Reader Synchronizer.lnk - c:\program files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe [2006-10-23 734872]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001

S2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [2010-12-14 108289]
S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver;c:\windows\system32\DRIVERS\SiSGB6.sys [2007-06-20 47616]

.
Contents of the 'Scheduled Tasks' folder

2010-12-10 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1014536922-3093134309-4291372427-1000Core.job
- c:\users\Dusan\AppData\Local\Google\Update\GoogleUpdate.exe [2010-12-10 00:41]

2010-12-14 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1014536922-3093134309-4291372427-1000UA.job
- c:\users\Dusan\AppData\Local\Google\Update\GoogleUpdate.exe [2010-12-10 00:41]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.sk/
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
FF - ProfilePath - c:\users\Dusan\AppData\Roaming\Mozilla\Firefox\Profiles\9f7j5z4r.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.sk/
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - Ext: Skype extension: {AB2CE124-6272-4b12-94A9-7303C7397BD1} - c:\program files\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1}
FF - Ext: DivX Plus Web Player HTML5 <video>: {23fcfd51-4958-4f00-80a3-ae97e717ed8b} - c:\program files\DivX\DivX Plus Web Player\firefox\html5video
.
- - - - ORPHANS REMOVED - - - -

BHO-{326E768D-4182-46FD-9C16-1449A49795F4} - c:\program files\DivX\DivX Plus Web Player\npdivx32.dll
BHO-{593DDEC6-7468-4cdd-90E1-42DADAA222E9} - c:\program files\DivX\DivX Plus Web Player\npdivx32.dll
HKLM-Run-Zshutdown2 - c:\preload\patch\sysprep2.cmd



**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-12-14 23:20
Windows 6.0.6001 Service Pack 1 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...


C:\ADSM_PData_0150

scan completed successfully
hidden files: 1

**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5
.
Completion time: 2010-12-14 23:22:45
ComboFix-quarantined-files.txt 2010-12-14 22:22

Pre-Run: Volných bajtů: 252 672 806 912
Post-Run: Volných bajtů: 252 798 308 352

- - End Of File - - B7D02F4E36FE51210004104E0BAEA790

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: spomaleny pc a vir

#7 Příspěvek od motji »

Ted to s počítačem vypadá jak?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

dusko.tn
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 14 pro 2010 16:47

Re: spomaleny pc a vir

#8 Příspěvek od dusko.tn »

Momentalne som spustil aktualizacie windows update , a stahuje a instaluje mi 92 aktualizacii, po instalovani napisem

ako sa chova pocitac, no dufam ze to bude dobre. :)

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: spomaleny pc a vir

#9 Příspěvek od motji »

ok :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

dusko.tn
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 14 pro 2010 16:47

Re: spomaleny pc a vir

#10 Příspěvek od dusko.tn »

Dobry den, pocitac sa spravu uz normalne, nastartuje uz rychlejsie a aj instalacie prejdu v normalnom case,
Podla Vas kde mohla byt chyba, mohlo to byt tymi aktualizaciami? Kazdopadne dakujem za Vas cas a ochotu.

s pozdravom Dusan

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: spomaleny pc a vir

#11 Příspěvek od motji »

To nevím :o
A není zač :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Odpovědět