Stránka 1 z 1

Lagující hry

Napsal: 05 led 2011 19:07
od Jiří Havel
Hezký večer, počítač se mi sekal a měl sem vyšší ping než obvykle při hraní online her, proto sem si to projel pc mbam a ten našel nějaký vir... nevím už jeho jméno, ale i po jeho odtranění problé přetrvává. Děkuju



Zde je log z RSIT

Logfile of random's system information tool 1.08 (written by random/random)
Run by Daniel at 2011-01-05 19:02:20
Microsoft Windows 7 Home Premium
System drive C: has 29 GB (29%) free of 100 GB
Total RAM: 4094 MB (60% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:02:25, on 5.1.2011
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16700)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
C:\Program Files (x86)\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe
C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Program Files (x86)\Common Files\Nokia\MPlatform\NokiaMServer.exe
C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Program Files\trend micro\Daniel.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource= ... =CT1750559
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
O4 - HKLM\..\Run: [NokiaMServer] C:\Program Files (x86)\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup
O4 - HKCU\..\Run: [Google Update] "C:\Users\Daniel\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [NokiaOviSuite2] C:\Program Files (x86)\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe -tray
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: OpenOffice.org 3.2.lnk = C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 6817 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
winlogon.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
"C:\Program Files\Alwil Software\Avast5\AvastSvc.exe"
atieclxx
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"taskhost.exe"
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
"C:\Program Files (x86)\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe" -tray
"C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe" -quickstart
"C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
"C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe" "-quickstart" "-env:OOO_CWD=2C:\\Program Files (x86)\\OpenOffice.org 3\\program"
"C:\Program Files\Alwil Software\Avast5\AvastUI.exe" /nogui
"C:\Program Files (x86)\Common Files\Nokia\MPlatform\NokiaMServer.exe" /watchfiles startup
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe"
{3EAAC713-CBCD-4BA5-912F-6A2F9D25FFFE}
{C1F47148-6004-4558-B105-76A4D88CE224}
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
{96DA4C45-07BC-451D-BD29-4218427CC115}
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=4448.905a7c0.732739777 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll" 4448 plugin \\.\pipe\gecko-crash-server-pipe.4448
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe16_ Global\UsGthrCtrlFltPipeMssGthrPipe16 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 512 516 524 65536 520
"c:\program files\windows defender\MpCmdRun.exe" SpyNetService -RestrictPrivileges -AccessKey CB954364-7097-F191-F900-C1CB6BDC95E6 -Reinvoke
taskhost.exe $(Arg0)
"C:\Users\Daniel\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-792045007-435464581-386061330-1001Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-792045007-435464581-386061330-1001UA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll [2010-03-25 1548096]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll [2010-03-25 968000]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\Daniel\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-17 136176]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-07-14 1475072]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2009-10-30 369200]
""= []
"NokiaOviSuite2"=C:\Program Files (x86)\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe [2010-12-20 697856]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2009-11-10 98304]
"DivXUpdate"=C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [2010-09-16 1164584]
"avast5"=C:\Program Files\Alwil Software\Avast5\avastUI.exe [2010-09-07 2838912]
"NokiaMServer"=C:\Program Files (x86)\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup []

C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
OpenOffice.org 3.2.lnk - C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2011-01-05 19:02:21 ----D---- C:\Program Files\trend micro
2011-01-05 19:02:20 ----D---- C:\rsit
2010-12-28 12:50:36 ----D---- C:\Program Files (x86)\MSXML 4.0
2010-12-27 16:10:07 ----D---- C:\ProgramData\Nokia
2010-12-27 16:06:26 ----D---- C:\Users\Daniel\AppData\Roaming\PC Suite
2010-12-27 16:06:26 ----D---- C:\ProgramData\PC Suite
2010-12-27 16:05:40 ----D---- C:\Program Files\DIFX
2010-12-27 16:05:39 ----A---- C:\Windows\system32\drivers\pccsmcfdx64.sys
2010-12-27 16:05:38 ----DC---- C:\Windows\system32\DRVSTORE
2010-12-27 16:05:35 ----D---- C:\Program Files (x86)\PC Connectivity Solution
2010-12-27 16:05:13 ----A---- C:\Windows\system32\nmwcdclsX64.dll
2010-12-27 16:04:32 ----D---- C:\ProgramData\NokiaInstallerCache
2010-12-27 16:04:32 ----D---- C:\Program Files (x86)\Nokia
2010-12-27 16:04:15 ----D---- C:\ProgramData\Installations
2010-12-24 21:53:07 ----D---- C:\Users\Daniel\AppData\Roaming\Microsoft Games
2010-12-24 21:53:07 ----D---- C:\ProgramData\Microsoft Games
2010-12-24 21:51:14 ----D---- C:\Program Files (x86)\Microsoft Games
2010-12-24 20:08:48 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2010-12-24 20:08:45 ----A---- C:\Windows\SYSWOW64\PnkBstrA.exe
2010-12-24 20:08:45 ----A---- C:\Windows\SYSWOW64\pbsvc_bc2.exe
2010-12-23 10:15:44 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2010-12-23 10:15:44 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2010-12-23 10:15:44 ----A---- C:\Windows\system32\XAudio2_5.dll
2010-12-23 10:15:44 ----A---- C:\Windows\system32\xactengine3_5.dll
2010-12-23 10:15:43 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2010-12-23 10:15:43 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2010-12-23 10:15:42 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2010-12-23 10:15:42 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2010-12-23 10:15:42 ----A---- C:\Windows\system32\d3dx11_42.dll
2010-12-23 10:15:42 ----A---- C:\Windows\system32\d3dcsx_42.dll
2010-12-23 10:15:41 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2010-12-23 10:15:41 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2010-12-23 10:15:41 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2010-12-23 10:15:41 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2010-12-23 10:15:41 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2010-12-23 10:15:41 ----A---- C:\Windows\system32\D3DX9_42.dll
2010-12-23 10:15:41 ----A---- C:\Windows\system32\D3DX9_41.dll
2010-12-23 10:15:41 ----A---- C:\Windows\system32\d3dx10_42.dll
2010-12-23 10:15:41 ----A---- C:\Windows\system32\d3dx10_41.dll
2010-12-23 10:15:41 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2010-12-23 10:15:40 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2010-12-23 10:15:40 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2010-12-23 10:15:40 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2010-12-23 10:15:40 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2010-12-23 10:15:40 ----A---- C:\Windows\system32\XAudio2_4.dll
2010-12-23 10:15:40 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2010-12-23 10:15:40 ----A---- C:\Windows\system32\xactengine3_4.dll
2010-12-23 10:15:40 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2010-12-23 10:15:39 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2010-12-23 10:15:39 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2010-12-23 10:15:39 ----A---- C:\Windows\system32\d3dx10_40.dll
2010-12-23 10:15:39 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2010-12-23 10:15:38 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2010-12-23 10:15:38 ----A---- C:\Windows\system32\D3DX9_40.dll
2010-12-23 10:15:37 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2010-12-23 10:15:37 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2010-12-23 10:15:37 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2010-12-23 10:15:37 ----A---- C:\Windows\system32\XAudio2_2.dll
2010-12-23 10:15:37 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2010-12-23 10:15:37 ----A---- C:\Windows\system32\xactengine3_2.dll
2010-12-17 14:19:57 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2010-12-17 14:19:57 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2010-12-17 14:19:57 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2010-12-17 14:19:57 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2010-12-17 14:19:57 ----A---- C:\Windows\system32\XAudio2_3.dll
2010-12-17 14:19:57 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2010-12-17 14:19:57 ----A---- C:\Windows\system32\xactengine3_3.dll
2010-12-17 14:19:57 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2010-12-17 14:19:56 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2010-12-17 14:19:56 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2010-12-17 14:19:56 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2010-12-17 14:19:56 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2010-12-17 14:19:56 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2010-12-17 14:19:56 ----A---- C:\Windows\system32\XAudio2_1.dll
2010-12-17 14:19:56 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2010-12-17 14:19:56 ----A---- C:\Windows\system32\D3DX9_39.dll
2010-12-17 14:19:56 ----A---- C:\Windows\system32\d3dx10_39.dll
2010-12-17 14:19:56 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2010-12-17 14:19:55 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2010-12-17 14:19:55 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2010-12-17 14:19:55 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2010-12-17 14:19:55 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2010-12-17 14:19:55 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2010-12-17 14:19:55 ----A---- C:\Windows\system32\xactengine3_1.dll
2010-12-17 14:19:55 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2010-12-17 14:19:55 ----A---- C:\Windows\system32\D3DX9_38.dll
2010-12-17 14:19:55 ----A---- C:\Windows\system32\d3dx10_38.dll
2010-12-17 14:19:55 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2010-12-17 14:17:27 ----D---- C:\Program Files (x86)\DAEMON Tools Toolbar
2010-12-17 13:57:10 ----A---- C:\Windows\system32\drivers\sptd.sys
2010-12-17 13:56:50 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2010-12-17 13:56:42 ----D---- C:\Users\Daniel\AppData\Roaming\DAEMON Tools Lite
2010-12-17 13:56:40 ----D---- C:\ProgramData\DAEMON Tools Lite
2010-12-17 13:49:18 ----D---- C:\Program Files (x86)\Gothic III
2010-12-16 15:22:27 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2010-12-16 15:22:27 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2010-12-16 15:22:27 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2010-12-16 15:22:27 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2010-12-16 15:22:27 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2010-12-16 15:22:27 ----A---- C:\Windows\system32\XAudio2_0.dll
2010-12-16 15:22:27 ----A---- C:\Windows\system32\xactengine3_0.dll
2010-12-16 15:22:27 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2010-12-16 15:22:27 ----A---- C:\Windows\system32\d3dx10_37.dll
2010-12-16 15:22:27 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2010-12-16 15:22:26 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2010-12-16 15:22:26 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2010-12-16 15:22:26 ----A---- C:\Windows\system32\xactengine2_10.dll
2010-12-16 15:22:26 ----A---- C:\Windows\system32\D3DX9_37.dll
2010-12-16 15:22:25 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2010-12-16 15:22:25 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2010-12-16 15:22:25 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2010-12-16 15:22:25 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2010-12-16 15:22:25 ----A---- C:\Windows\system32\xactengine2_9.dll
2010-12-16 15:22:25 ----A---- C:\Windows\system32\d3dx9_36.dll
2010-12-16 15:22:25 ----A---- C:\Windows\system32\d3dx10_36.dll
2010-12-16 15:22:25 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2010-12-16 15:22:24 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2010-12-16 15:22:24 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2010-12-16 15:22:24 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2010-12-16 15:22:24 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2010-12-16 15:22:24 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2010-12-16 15:22:24 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2010-12-16 15:22:24 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2010-12-16 15:22:24 ----A---- C:\Windows\system32\xactengine2_8.dll
2010-12-16 15:22:24 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2010-12-16 15:22:24 ----A---- C:\Windows\system32\d3dx9_35.dll
2010-12-16 15:22:24 ----A---- C:\Windows\system32\d3dx10_35.dll
2010-12-16 15:22:24 ----A---- C:\Windows\system32\d3dx10_34.dll
2010-12-16 15:22:24 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2010-12-16 15:22:24 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2010-12-16 15:22:23 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2010-12-16 15:22:23 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2010-12-16 15:22:23 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2010-12-16 15:22:23 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2010-12-16 15:22:23 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2010-12-16 15:22:23 ----A---- C:\Windows\system32\xinput1_3.dll
2010-12-16 15:22:23 ----A---- C:\Windows\system32\xactengine2_7.dll
2010-12-16 15:22:23 ----A---- C:\Windows\system32\d3dx9_34.dll
2010-12-16 15:22:23 ----A---- C:\Windows\system32\d3dx10_33.dll
2010-12-16 15:22:23 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2010-12-16 15:22:22 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2010-12-16 15:22:22 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2010-12-16 15:22:22 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2010-12-16 15:22:22 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2010-12-16 15:22:22 ----A---- C:\Windows\system32\xactengine2_6.dll
2010-12-16 15:22:22 ----A---- C:\Windows\system32\xactengine2_5.dll
2010-12-16 15:22:22 ----A---- C:\Windows\system32\d3dx9_33.dll
2010-12-16 15:22:22 ----A---- C:\Windows\system32\d3dx10.dll
2010-12-16 15:22:21 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2010-12-16 15:22:21 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2010-12-16 15:22:21 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2010-12-16 15:22:21 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2010-12-16 15:22:21 ----A---- C:\Windows\system32\xactengine2_4.dll
2010-12-16 15:22:21 ----A---- C:\Windows\system32\x3daudio1_1.dll
2010-12-16 15:22:21 ----A---- C:\Windows\system32\d3dx9_32.dll
2010-12-16 15:22:21 ----A---- C:\Windows\system32\d3dx9_31.dll
2010-12-16 15:22:20 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2010-12-16 15:22:20 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2010-12-16 15:22:20 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2010-12-16 15:22:20 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2010-12-16 15:22:20 ----A---- C:\Windows\system32\xinput1_2.dll
2010-12-16 15:22:20 ----A---- C:\Windows\system32\xinput1_1.dll
2010-12-16 15:22:20 ----A---- C:\Windows\system32\xactengine2_3.dll
2010-12-16 15:22:20 ----A---- C:\Windows\system32\xactengine2_2.dll
2010-12-16 15:22:19 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2010-12-16 15:22:19 ----A---- C:\Windows\system32\xactengine2_1.dll
2010-12-16 15:22:17 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2010-12-16 15:22:17 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2010-12-16 15:22:17 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2010-12-16 15:22:17 ----A---- C:\Windows\system32\xactengine2_0.dll
2010-12-16 15:22:17 ----A---- C:\Windows\system32\x3daudio1_0.dll
2010-12-16 15:22:17 ----A---- C:\Windows\system32\d3dx9_30.dll
2010-12-16 15:22:16 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2010-12-16 15:22:16 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2010-12-16 15:22:16 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2010-12-16 15:22:16 ----A---- C:\Windows\system32\d3dx9_29.dll
2010-12-16 15:22:16 ----A---- C:\Windows\system32\d3dx9_28.dll
2010-12-16 15:22:16 ----A---- C:\Windows\system32\d3dx9_27.dll
2010-12-16 15:22:14 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2010-12-16 15:22:14 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2010-12-16 15:22:14 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2010-12-16 15:22:14 ----A---- C:\Windows\system32\d3dx9_26.dll
2010-12-16 15:22:14 ----A---- C:\Windows\system32\d3dx9_25.dll
2010-12-16 15:22:14 ----A---- C:\Windows\system32\d3dx9_24.dll
2010-12-16 15:06:41 ----D---- C:\Program Files (x86)\Piranha Bytes
2010-12-16 15:06:22 ----D---- C:\Users\Daniel\AppData\Roaming\InstallShield
2010-12-16 06:44:15 ----A---- C:\Windows\SYSWOW64\tzres.dll
2010-12-16 06:44:15 ----A---- C:\Windows\system32\tzres.dll
2010-12-16 06:44:01 ----A---- C:\Windows\system32\schedsvc.dll
2010-12-16 06:44:00 ----A---- C:\Windows\SYSWOW64\taskschd.dll
2010-12-16 06:44:00 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2010-12-16 06:44:00 ----A---- C:\Windows\SYSWOW64\taskcomp.dll
2010-12-16 06:44:00 ----A---- C:\Windows\SYSWOW64\schtasks.exe
2010-12-16 06:44:00 ----A---- C:\Windows\system32\wmicmiplugin.dll
2010-12-16 06:44:00 ----A---- C:\Windows\system32\taskschd.dll
2010-12-16 06:44:00 ----A---- C:\Windows\system32\taskeng.exe
2010-12-16 06:44:00 ----A---- C:\Windows\system32\taskcomp.dll
2010-12-16 06:44:00 ----A---- C:\Windows\system32\schtasks.exe
2010-12-16 06:43:58 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2010-12-16 06:43:58 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2010-12-16 06:43:58 ----A---- C:\Windows\system32\atmlib.dll
2010-12-16 06:43:58 ----A---- C:\Windows\system32\atmfd.dll
2010-12-16 06:43:56 ----A---- C:\Windows\system32\win32k.sys
2010-12-16 06:43:54 ----A---- C:\Windows\SYSWOW64\webio.dll
2010-12-16 06:43:54 ----A---- C:\Windows\system32\webio.dll
2010-12-16 06:43:52 ----A---- C:\Windows\system32\consent.exe
2010-12-16 06:43:44 ----A---- C:\Windows\system32\mshtml.dll
2010-12-16 06:43:42 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2010-12-16 06:43:42 ----A---- C:\Windows\system32\iertutil.dll
2010-12-16 06:43:42 ----A---- C:\Windows\system32\ieframe.dll
2010-12-16 06:43:41 ----A---- C:\Windows\SYSWOW64\mstime.dll
2010-12-16 06:43:41 ----A---- C:\Windows\system32\mstime.dll
2010-12-16 06:43:40 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2010-12-16 06:43:39 ----A---- C:\Windows\SYSWOW64\wininet.dll
2010-12-16 06:43:39 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2010-12-16 06:43:39 ----A---- C:\Windows\system32\wininet.dll
2010-12-16 06:43:38 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2010-12-16 06:43:38 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2010-12-16 06:43:38 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2010-12-16 06:43:38 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2010-12-16 06:43:38 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2010-12-16 06:43:38 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2010-12-16 06:43:38 ----A---- C:\Windows\SYSWOW64\ieui.dll
2010-12-16 06:43:38 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2010-12-16 06:43:38 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2010-12-16 06:43:38 ----A---- C:\Windows\system32\urlmon.dll
2010-12-16 06:43:38 ----A---- C:\Windows\system32\mshtmled.dll
2010-12-16 06:43:38 ----A---- C:\Windows\system32\msfeedssync.exe
2010-12-16 06:43:38 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-12-16 06:43:38 ----A---- C:\Windows\system32\msfeeds.dll
2010-12-16 06:43:38 ----A---- C:\Windows\system32\licmgr10.dll
2010-12-16 06:43:38 ----A---- C:\Windows\system32\jsproxy.dll
2010-12-16 06:43:38 ----A---- C:\Windows\system32\ieui.dll
2010-12-16 06:43:38 ----A---- C:\Windows\system32\iepeers.dll
2010-12-16 06:43:38 ----A---- C:\Windows\system32\iedkcs32.dll
2010-12-16 06:43:37 ----A---- C:\Windows\SYSWOW64\jsproxy.dll

======List of files/folders modified in the last 1 months======

2011-01-05 19:02:24 ----D---- C:\Windows\Temp
2011-01-05 19:02:21 ----RD---- C:\Program Files
2011-01-05 18:28:20 ----D---- C:\Windows\SysWOW64
2011-01-05 16:47:22 ----D---- C:\Windows\system32\config
2011-01-05 16:37:09 ----SHD---- C:\System Volume Information
2010-12-29 22:13:55 ----D---- C:\Windows\System32
2010-12-29 22:13:55 ----D---- C:\Windows\inf
2010-12-29 22:13:55 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-12-29 22:11:00 ----D---- C:\Windows\system32\drivers
2010-12-28 12:50:56 ----SHD---- C:\Windows\Installer
2010-12-28 12:50:52 ----D---- C:\Windows\winsxs
2010-12-28 12:50:50 ----D---- C:\Windows
2010-12-28 12:50:36 ----RD---- C:\Program Files (x86)
2010-12-27 16:10:07 ----HD---- C:\ProgramData
2010-12-27 16:05:54 ----D---- C:\Program Files (x86)\Common Files
2010-12-27 16:05:39 ----D---- C:\Windows\system32\DriverStore
2010-12-27 16:05:39 ----D---- C:\Windows\system32\catroot
2010-12-27 16:05:38 ----D---- C:\Windows\system32\catroot2
2010-12-25 07:56:04 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2010-12-24 21:53:37 ----D---- C:\Windows\system32\Tasks
2010-12-24 20:08:43 ----D---- C:\Windows\system32\LogFiles
2010-12-24 19:55:57 ----RSD---- C:\Windows\assembly
2010-12-23 23:32:59 ----D---- C:\Windows\system32\NDF
2010-12-17 14:44:08 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2010-12-17 14:41:30 ----D---- C:\Windows\Prefetch
2010-12-17 14:19:23 ----D---- C:\Windows\Logs
2010-12-16 15:22:18 ----D---- C:\Windows\Microsoft.NET
2010-12-16 08:07:16 ----D---- C:\Windows\rescache
2010-12-16 07:31:49 ----D---- C:\Windows\SYSWOW64\cs-CZ
2010-12-16 07:31:49 ----D---- C:\Windows\system32\cs-CZ
2010-12-16 07:31:48 ----D---- C:\Program Files\Windows Mail
2010-12-16 07:31:48 ----D---- C:\Program Files (x86)\Windows Mail
2010-12-16 07:31:47 ----D---- C:\Windows\SYSWOW64\migration
2010-12-16 07:31:47 ----D---- C:\Windows\system32\migration
2010-12-16 07:31:47 ----D---- C:\Program Files\Internet Explorer
2010-12-16 07:31:47 ----D---- C:\Program Files (x86)\Internet Explorer
2010-12-16 07:29:26 ----D---- C:\Windows\debug
2010-12-16 07:29:26 ----A---- C:\Windows\system32\MRT.exe
2010-12-10 20:00:41 ----D---- C:\Program Files (x86)\Mozilla Firefox

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 214096]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-12-17 834544]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2010-09-07 28752]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2010-09-07 121936]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2010-09-07 51280]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2010-09-07 20048]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2010-09-07 61008]
R3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\AtiHdmi.sys [2009-09-30 121872]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-11-11 6108672]
R3 RTL8167;Ovladač Realtek 8167 NT; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-06-10 187392]
S1 inspect;COMODO Internet Security Firewall Driver; C:\Windows\system32\DRIVERS\inspect.sys [2010-06-01 85208]
S3 ady8g1g3;ady8g1g3; C:\Windows\system32\drivers\ady8g1g3.sys []
S3 EagleX64;EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys []
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmbx64.sys [2010-07-30 19456]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbox64.sys [2010-07-30 26624]
S3 nmwcdnsucx64;Nokia USB Flashing Generic; C:\Windows\system32\drivers\nmwcdnsucx64.sys [2010-07-26 12800]
S3 nmwcdnsux64;Nokia USB Flashing Phone Parent; C:\Windows\system32\drivers\nmwcdnsux64.sys [2010-07-26 171008]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2008-08-28 25600]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2010-07-30 9216]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2009-07-14 32768]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys [2010-07-30 9216]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 40448]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2009-11-11 202752]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2010-12-24 75136]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
R3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2010-12-08 628736]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2010-11-20 403240]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-10-17 1255736]

-----------------EOF-----------------

Re: Lagující hry

Napsal: 05 led 2011 22:09
od Roli
Zdravím, tak použijeme větší kalibr, jen doporučuji pozorně číst, protože tenhle softík netoleruje chyby.


Stáhni a ulož na plochu ComboFix,

spusť aplikaci jako Administrátor a povol instalaci Konzole pro zotavení - Recovery Console.

Poté se zobrazí okno s licenčními podmínkami které potvrdíš kliknutím na ANO,

pak ještě jednou klik na ANO a už to jede.

Celá akce trvá okolo 10 minut ale může i déle, během skenu se nepokoušej spouštět nic jiného.

Při skenovaní může být PC i restartováno nelekat se.

Upozornění: po dobu skenu vypni rezidentní štít Antiviru a AntiSpy programu,

protože Combofix se pokouší napadené soubory smazat a tyto programy mu můžou bránit.

Po dokončení skenu nebo následném restartu aplikace vytvoří log, uložený na C:/Combofix.txt

(při opakovaném použití jsou logy číslovány Combofix2.txt atd.), jeho obsah zkopíruj sem.

Re: Lagující hry

Napsal: 10 led 2011 15:05
od Jiří Havel
ComboFix 11-01-09.02 - Daniel 10.01.2011 14:52:03.1.4 - x64
Microsoft Windows 7 Home Premium 6.1.7600.0.1250.420.1029.18.4094.2536 [GMT 1:00]
Spuštěný z: c:\users\Daniel\Desktop\ComboFix.exe
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Vytvořen nový Bod Obnovení
.
/wow section - STAGE 50
Systém nemůže najít soubor LockedB.
Systém nemůže najít soubor lockedB.
Systém nemůže nalézt uvedenou cestu.
Systém nemůže najít soubor LockedB.
Systém nemůže najít soubor LockedB.


((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\users\Daniel\AppData\Roaming\inst.exe

.
((((((((((((((((((((((((( Soubory vytvořené od 2010-12-10 do 2011-01-10 )))))))))))))))))))))))))))))))
.

2011-01-10 13:57 . 2011-01-10 13:57 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-01-07 20:44 . 2011-01-07 20:44 -------- d-----w- c:\users\Daniel\AppData\Local\Midway
2011-01-07 19:45 . 2005-04-03 22:02 69714 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\ctor.dll
2011-01-07 19:45 . 2005-04-03 22:01 274432 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\iscript.dll
2011-01-07 19:45 . 2005-04-03 22:00 184320 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\iuser.dll
2011-01-07 19:45 . 2005-04-03 22:00 63488 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\ISBEW64.exe
2011-01-07 19:45 . 2011-01-07 19:45 331908 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\setup.dll
2011-01-07 19:45 . 2011-01-07 19:45 200836 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\iGdi.dll
2011-01-07 19:45 . 2005-04-03 22:02 753664 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\iKernel.dll
2011-01-07 19:45 . 2005-04-03 21:59 5632 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\DotNetInstaller.exe
2011-01-07 19:45 . 2011-01-07 20:10 -------- d-----w- c:\users\Daniel\AppData\Local\Oblivion
2011-01-07 19:42 . 2011-01-07 19:42 -------- d-----w- c:\programdata\Astroburn Pro
2011-01-07 19:42 . 2011-01-07 19:42 -------- d-----w- c:\users\Daniel\AppData\Roaming\Astroburn Pro
2011-01-07 19:06 . 2010-11-10 05:35 8199504 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{7302EDD5-A395-4ED6-ABA9-651B73312F21}\mpengine.dll
2011-01-05 18:02 . 2011-01-10 13:25 -------- d-----w- c:\program files\trend micro
2011-01-05 18:02 . 2011-01-05 18:02 -------- d-----w- C:\rsit
2010-12-28 11:50 . 2010-12-28 11:50 -------- d-----w- c:\program files (x86)\MSXML 4.0
2010-12-27 15:10 . 2010-12-27 15:10 -------- d-----w- c:\programdata\Nokia
2010-12-27 15:06 . 2010-12-27 20:16 -------- d-----w- c:\users\Daniel\AppData\Local\Nokia
2010-12-27 15:06 . 2010-12-29 21:11 -------- d-----w- c:\users\Daniel\AppData\Roaming\PC Suite
2010-12-27 15:06 . 2010-12-27 15:06 -------- d-----w- c:\programdata\PC Suite
2010-12-27 15:05 . 2011-01-10 13:15 -------- d-----w- c:\program files (x86)\Common Files\Nokia
2010-12-27 15:05 . 2010-12-27 15:05 -------- d-----w- c:\program files\DIFX
2010-12-27 15:05 . 2010-12-27 15:05 -------- d-----w- c:\program files (x86)\PC Connectivity Solution
2010-12-27 15:04 . 2011-01-10 13:15 -------- d-----w- c:\program files (x86)\Nokia
2010-12-27 15:04 . 2010-12-27 15:04 -------- d-----w- c:\programdata\Installations
2010-12-24 20:53 . 2010-12-24 20:53 -------- d-----w- c:\users\Daniel\AppData\Roaming\Microsoft Games
2010-12-24 20:53 . 2010-12-24 20:53 -------- d-----w- c:\programdata\Microsoft Games
2010-12-24 20:51 . 2010-12-24 20:51 -------- d-----w- c:\program files (x86)\Microsoft Games
2010-12-24 19:11 . 2011-01-08 13:11 270904 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr
2010-12-24 19:11 . 2010-12-24 19:11 -------- d-----w- c:\users\Daniel\AppData\Local\PunkBuster
2010-12-24 19:08 . 2011-01-08 13:11 270904 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2010-12-24 19:08 . 2011-01-08 13:05 215128 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0
2010-12-24 19:08 . 2010-12-24 20:33 75136 ----a-w- c:\windows\SysWow64\PnkBstrA.exe
2010-12-24 19:08 . 2010-12-24 19:08 2434856 ----a-w- c:\windows\SysWow64\pbsvc_bc2.exe
2010-12-17 13:41 . 2010-12-17 13:41 180356 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\iGdi.dll
2010-12-17 13:41 . 2004-07-15 23:20 733184 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\iKernel.dll
2010-12-17 13:41 . 2004-07-15 23:20 69715 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\ctor.dll
2010-12-17 13:41 . 2004-07-15 23:19 266240 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\iscript.dll
2010-12-17 13:41 . 2004-07-15 23:18 172032 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\iuser.dll
2010-12-17 13:41 . 2004-07-15 23:18 5632 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\DotNetInstaller.exe
2010-12-17 13:41 . 2010-12-17 13:41 303236 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\setup.dll
2010-12-17 12:56 . 2011-01-07 19:38 -------- d-----w- c:\users\Daniel\AppData\Roaming\DAEMON Tools Lite
2010-12-17 12:56 . 2010-12-17 12:56 -------- d-----w- c:\programdata\DAEMON Tools Lite
2010-12-17 12:49 . 2010-12-17 13:31 -------- d-----w- c:\program files (x86)\Gothic III
2010-12-16 14:06 . 2010-12-16 14:06 -------- d-----w- c:\program files (x86)\Piranha Bytes
2010-12-16 14:06 . 2010-12-16 14:06 -------- d-----w- c:\users\Daniel\AppData\Roaming\InstallShield
2010-12-16 05:44 . 2010-10-27 04:32 2048 ----a-w- c:\windows\SysWow64\tzres.dll
2010-12-16 05:44 . 2010-11-02 04:40 496128 ----a-w- c:\windows\SysWow64\taskschd.dll
2010-12-16 05:44 . 2010-11-02 04:40 305152 ----a-w- c:\windows\SysWow64\taskcomp.dll
2010-12-16 05:44 . 2010-11-02 04:34 192000 ----a-w- c:\windows\SysWow64\taskeng.exe
2010-12-16 05:44 . 2010-11-02 04:34 179712 ----a-w- c:\windows\SysWow64\schtasks.exe

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-12-20 17:09 . 2010-11-02 05:01 38224 ----a-w- c:\windows\SysWow64\drivers\mbamswissarmy.sys
2010-11-17 14:54 . 2010-11-17 14:54 82816 ----a-w- c:\users\Daniel\AppData\Roaming\pcouffin.sys
.

(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Google Update"="c:\users\Daniel\AppData\Local\Google\Update\GoogleUpdate.exe" [2010-10-17 136176]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-07-14 1475072]

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2009-11-10 98304]

c:\users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
OpenOffice.org 3.2.lnk - c:\program files (x86)\OpenOffice.org 3\program\quickstart.exe [2010-6-7 1195520]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)

R3 EagleX64;EagleX64;c:\windows\system32\drivers\EagleX64.sys [x]
R3 nmwcdnsucx64;Nokia USB Flashing Generic;c:\windows\system32\drivers\nmwcdnsucx64.sys [2010-07-26 12800]
R3 nmwcdnsux64;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsux64.sys [2010-07-26 171008]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2010-10-17 1255736]
S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2010-12-17 834544]
S1 aswSP;aswSP; [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2009-11-11 202752]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2010-09-07 61008]
S3 RTL8167;Ovladač Realtek 8167 NT;c:\windows\system32\DRIVERS\Rt64win7.sys [2009-06-10 187392]

.
Obsah adresáře 'Naplánované úlohy'

2011-01-09 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-792045007-435464581-386061330-1001Core.job
- c:\users\Daniel\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-17 09:13]

2011-01-10 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-792045007-435464581-386061330-1001UA.job
- c:\users\Daniel\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-17 09:13]
.

--------- x86-64 -----------


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x0
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://search.conduit.com?SearchSource=10&ctid=CT1750559
mLocal Page = c:\windows\SysWOW64\blank.htm
FF - ProfilePath - c:\users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\1uhwqppr.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT1750559&SearchSource=3&q={searchTerms}
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT1750559&q=
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files (x86)\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -

AddRemove-PunkBusterSvc - c:\windows\system32\pbsvc_bc2.exe


.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
Při mazání souboru se mi ukazovalo "Program (bohužel nevím jak se jmenoval) přestal pracovat" nevim jestli je to normální...

@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2011-01-10 14:59:29
ComboFix-quarantined-files.txt 2011-01-10 13:59

Před spuštěním: Volných bajtů: 43 296 567 296
Po spuštění: Volných bajtů: 42 922 979 328

- - End Of File - - EF32F1E7ED4EEA735CF7D6647E57FAA9

Re: Lagující hry

Napsal: 10 led 2011 18:56
od Roli
Pokud jsi tak ještě neučinil, přesuň Combofix na plochu

otevři si Poznámkový blok

do něj zkopíruj skript z následujícího okna:

Kód: Vybrat vše

FireFox::
FF - ProfilePath - c:\users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\1uhwqppr.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.as ... ource=3&q={searchTerms}
FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.as ... 1750559&q=

RegLock::
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
ulož Tebou vytvořený TXT soubor jako CFScript.txt na plochu,

po uložení uchop vytvořený skript levým myšítkem a přesuň ho nad ikonu Combofixu, kde ho upustíš:

Obrázek

Po aplikaci na Tebe vypadne další log, zkopíruj ho sem

Upozornění : může se stát, že po aplikaci skriptu a restartu Windows nenaběhnou,

v tom případě znovu restartuj a přitom mačkej F8 poté zvol Poslední známou funkční konfiguraci

Re: Lagující hry

Napsal: 10 led 2011 19:02
od Jiří Havel
Nainstaloval sem Comodo Firewall a ten mi našel 5x svchost.exe nevím jestli je to normální

Re: Lagující hry

Napsal: 10 led 2011 19:08
od Roli
Jaké Comodo ?

Potřebuji abys udělal tu akci s tím ComboFixem.

Jinak mě momentálně běží svchost.exe asi 8x

Re: Lagující hry

Napsal: 10 led 2011 19:14
od Jiří Havel
ComboFix 11-01-10.04 - Daniel 10.01.2011 19:04:12.3.4 - x64
Microsoft Windows 7 Home Premium 6.1.7600.0.1250.420.1029.18.4094.2734 [GMT 1:00]
Spuštěný z: c:\users\Daniel\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\Daniel\Desktop\CFScript.txt
FW: COMODO Firewall *Enabled* {5F676F4C-DD6D-A47C-12D6-C449366C71EE}
SP: COMODO Defense+ *Disabled/Updated* {DC3D0F8D-B138-AAAA-0339-560EB3387C28}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
/wow section - STAGE 50
R6025
- pure virtual function call
Systém nemůže najít soubor LockedB.
Systém nemůže najít soubor lockedB.
Systém nemůže nalézt uvedenou cestu.
Systém nemůže najít soubor LockedB.
Systém nemůže najít soubor LockedB.


((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\users\Daniel\Documents\cc_20110110_183957.reg

.
((((((((((((((((((((((((( Soubory vytvořené od 2010-12-10 do 2011-01-10 )))))))))))))))))))))))))))))))
.

2011-01-10 18:09 . 2011-01-10 18:09 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-01-10 17:53 . 2011-01-10 17:54 -------- d-----w- c:\program files\COMODO
2011-01-10 17:53 . 2011-01-10 17:53 1700352 ----a-w- c:\windows\SysWow64\gdiplus.dll
2011-01-10 17:53 . 2011-01-10 17:53 1060864 ----a-w- c:\windows\SysWow64\mfc71.dll
2011-01-10 14:08 . 2011-01-10 14:08 -------- d-----w- c:\users\Daniel\AppData\Roaming\Uniblue
2011-01-10 14:07 . 2011-01-10 14:07 -------- d-----w- c:\program files (x86)\Uniblue
2011-01-10 14:07 . 2011-01-10 14:07 -------- d-----w- c:\users\Daniel\AppData\Local\PackageAware
2011-01-07 20:44 . 2011-01-07 20:44 -------- d-----w- c:\users\Daniel\AppData\Local\Midway
2011-01-07 19:45 . 2005-04-03 22:02 69714 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\ctor.dll
2011-01-07 19:45 . 2005-04-03 22:01 274432 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\iscript.dll
2011-01-07 19:45 . 2005-04-03 22:00 184320 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\iuser.dll
2011-01-07 19:45 . 2005-04-03 22:00 63488 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\ISBEW64.exe
2011-01-07 19:45 . 2011-01-07 19:45 331908 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\setup.dll
2011-01-07 19:45 . 2011-01-07 19:45 200836 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\iGdi.dll
2011-01-07 19:45 . 2005-04-03 22:02 753664 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\iKernel.dll
2011-01-07 19:45 . 2005-04-03 21:59 5632 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\11\00\Intel32\DotNetInstaller.exe
2011-01-07 19:45 . 2011-01-07 20:10 -------- d-----w- c:\users\Daniel\AppData\Local\Oblivion
2011-01-07 19:42 . 2011-01-07 19:42 -------- d-----w- c:\programdata\Astroburn Pro
2011-01-07 19:42 . 2011-01-07 19:42 -------- d-----w- c:\users\Daniel\AppData\Roaming\Astroburn Pro
2011-01-07 19:06 . 2010-11-10 05:35 8199504 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{7302EDD5-A395-4ED6-ABA9-651B73312F21}\mpengine.dll
2011-01-05 18:02 . 2011-01-10 13:25 -------- d-----w- c:\program files\trend micro
2011-01-05 18:02 . 2011-01-05 18:02 -------- d-----w- C:\rsit
2010-12-29 00:42 . 2010-12-29 00:42 285480 ----a-w- c:\windows\SysWow64\guard32.dll
2010-12-28 11:50 . 2010-12-28 11:50 -------- d-----w- c:\program files (x86)\MSXML 4.0
2010-12-27 15:10 . 2010-12-27 15:10 -------- d-----w- c:\programdata\Nokia
2010-12-27 15:06 . 2010-12-27 20:16 -------- d-----w- c:\users\Daniel\AppData\Local\Nokia
2010-12-27 15:06 . 2010-12-29 21:11 -------- d-----w- c:\users\Daniel\AppData\Roaming\PC Suite
2010-12-27 15:06 . 2010-12-27 15:06 -------- d-----w- c:\programdata\PC Suite
2010-12-27 15:05 . 2011-01-10 13:15 -------- d-----w- c:\program files (x86)\Common Files\Nokia
2010-12-27 15:05 . 2010-12-27 15:05 -------- d-----w- c:\program files\DIFX
2010-12-27 15:05 . 2010-12-27 15:05 -------- d-----w- c:\program files (x86)\PC Connectivity Solution
2010-12-27 15:04 . 2011-01-10 13:15 -------- d-----w- c:\program files (x86)\Nokia
2010-12-27 15:04 . 2010-12-27 15:04 -------- d-----w- c:\programdata\Installations
2010-12-24 20:53 . 2010-12-24 20:53 -------- d-----w- c:\users\Daniel\AppData\Roaming\Microsoft Games
2010-12-24 20:53 . 2010-12-24 20:53 -------- d-----w- c:\programdata\Microsoft Games
2010-12-24 20:51 . 2010-12-24 20:51 -------- d-----w- c:\program files (x86)\Microsoft Games
2010-12-24 19:11 . 2011-01-10 17:43 215128 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr
2010-12-24 19:11 . 2010-12-24 19:11 -------- d-----w- c:\users\Daniel\AppData\Local\PunkBuster
2010-12-24 19:08 . 2011-01-10 17:43 215128 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2010-12-24 19:08 . 2011-01-08 13:11 270904 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0
2010-12-24 19:08 . 2010-12-24 20:33 75136 ----a-w- c:\windows\SysWow64\PnkBstrA.exe
2010-12-24 19:08 . 2010-12-24 19:08 2434856 ----a-w- c:\windows\SysWow64\pbsvc_bc2.exe
2010-12-17 13:41 . 2010-12-17 13:41 180356 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\iGdi.dll
2010-12-17 13:41 . 2004-07-15 23:20 733184 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\iKernel.dll
2010-12-17 13:41 . 2004-07-15 23:20 69715 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\ctor.dll
2010-12-17 13:41 . 2004-07-15 23:19 266240 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\iscript.dll
2010-12-17 13:41 . 2004-07-15 23:18 172032 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\iuser.dll
2010-12-17 13:41 . 2004-07-15 23:18 5632 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\DotNetInstaller.exe
2010-12-17 13:41 . 2010-12-17 13:41 303236 ----a-w- c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\setup.dll
2010-12-17 12:56 . 2011-01-07 19:38 -------- d-----w- c:\users\Daniel\AppData\Roaming\DAEMON Tools Lite
2010-12-17 12:56 . 2010-12-17 12:56 -------- d-----w- c:\programdata\DAEMON Tools Lite
2010-12-17 12:49 . 2010-12-17 13:31 -------- d-----w- c:\program files (x86)\Gothic III
2010-12-16 14:06 . 2010-12-16 14:06 -------- d-----w- c:\program files (x86)\Piranha Bytes
2010-12-16 14:06 . 2010-12-16 14:06 -------- d-----w- c:\users\Daniel\AppData\Roaming\InstallShield
2010-12-16 05:44 . 2010-10-27 04:32 2048 ----a-w- c:\windows\SysWow64\tzres.dll
2010-12-16 05:44 . 2010-11-02 04:40 496128 ----a-w- c:\windows\SysWow64\taskschd.dll
2010-12-16 05:44 . 2010-11-02 04:40 305152 ----a-w- c:\windows\SysWow64\taskcomp.dll
2010-12-16 05:44 . 2010-11-02 04:34 192000 ----a-w- c:\windows\SysWow64\taskeng.exe
2010-12-16 05:44 . 2010-11-02 04:34 179712 ----a-w- c:\windows\SysWow64\schtasks.exe

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-12-20 17:09 . 2010-11-02 05:01 38224 ----a-w- c:\windows\SysWow64\drivers\mbamswissarmy.sys
2010-11-17 14:54 . 2010-11-17 14:54 82816 ----a-w- c:\users\Daniel\AppData\Roaming\pcouffin.sys
.

((((((((((((((((((((((((((((( SnapShot@2011-01-10_13.57.42 )))))))))))))))))))))))))))))))))))))))))
.
+ 2009-07-14 04:54 . 2011-01-10 17:56 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-07-14 04:54 . 2011-01-10 13:19 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-07-14 04:54 . 2011-01-10 13:19 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2011-01-10 17:56 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2011-01-10 17:56 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2009-07-14 04:54 . 2011-01-10 13:19 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2010-10-15 18:02 . 2011-01-10 17:58 31612 c:\windows\system32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2009-07-14 05:10 . 2011-01-10 17:58 29162 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin
+ 2010-10-15 17:41 . 2011-01-10 17:58 11196 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-792045007-435464581-386061330-1001_UserData.bin
+ 2009-07-14 05:30 . 2011-01-10 17:54 86016 c:\windows\system32\DriverStore\infpub.dat
- 2009-07-14 05:30 . 2010-12-29 21:11 86016 c:\windows\system32\DriverStore\infpub.dat
+ 2010-12-29 00:41 . 2010-12-29 00:41 89840 c:\windows\system32\DriverStore\FileRepository\inspect.inf_amd64_neutral_5379ce3149166da4\inspect.sys
+ 2009-07-14 00:00 . 2009-07-14 01:40 89088 c:\windows\system32\drivers\UMDF\EhStorPwdDrv.dll
+ 2010-12-29 00:41 . 2010-12-29 00:41 89840 c:\windows\system32\drivers\inspect.sys
+ 2010-12-29 00:41 . 2010-12-29 00:41 39376 c:\windows\system32\drivers\cmdhlp.sys
+ 2010-12-29 00:41 . 2010-12-29 00:41 14184 c:\windows\system32\drivers\cmderd.sys
- 2010-10-15 17:33 . 2011-01-08 11:45 16384 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2010-10-15 17:33 . 2011-01-10 17:56 16384 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2010-10-15 17:33 . 2011-01-10 17:56 49152 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2011-01-10 17:56 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2011-01-10 17:56 . 2011-01-10 17:56 63360 c:\windows\system32\config\systemprofile\AppData\Local\GDIPFONTCACHEV1.DAT
+ 2010-10-15 17:40 . 2011-01-10 17:56 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2010-10-15 17:40 . 2011-01-10 13:19 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2010-10-15 17:40 . 2011-01-10 17:56 32768 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2010-10-15 17:40 . 2011-01-10 13:19 32768 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2010-10-15 17:40 . 2011-01-10 17:56 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2010-10-15 17:40 . 2011-01-10 13:19 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2010-10-15 17:40 . 2011-01-10 17:56 16384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2010-10-15 17:40 . 2011-01-10 13:19 16384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2010-10-15 17:40 . 2011-01-10 17:56 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2010-10-15 17:40 . 2011-01-10 13:19 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2010-11-03 18:36 . 2011-01-10 17:55 3354 c:\windows\system32\wdi\ERCQueuedResolutions.dat
- 2010-11-03 18:36 . 2011-01-08 19:03 3354 c:\windows\system32\wdi\ERCQueuedResolutions.dat
+ 2011-01-10 17:56 . 2011-01-10 17:56 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2011-01-10 13:18 . 2011-01-10 13:18 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2011-01-10 13:18 . 2011-01-10 13:18 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2011-01-10 17:56 . 2011-01-10 17:56 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2009-07-14 02:36 . 2011-01-10 14:26 606992 c:\windows\system32\perfh009.dat
- 2009-07-14 02:36 . 2010-12-29 21:13 606992 c:\windows\system32\perfh009.dat
- 2009-07-14 15:18 . 2010-12-29 21:13 622422 c:\windows\system32\perfh005.dat
+ 2009-07-14 15:18 . 2011-01-10 14:26 622422 c:\windows\system32\perfh005.dat
- 2009-07-14 02:36 . 2010-12-29 21:13 103370 c:\windows\system32\perfc009.dat
+ 2009-07-14 02:36 . 2011-01-10 14:26 103370 c:\windows\system32\perfc009.dat
+ 2009-07-14 15:18 . 2011-01-10 14:26 118604 c:\windows\system32\perfc005.dat
- 2009-07-14 15:18 . 2010-12-29 21:13 118604 c:\windows\system32\perfc005.dat
+ 2010-12-29 00:42 . 2010-12-29 00:42 362784 c:\windows\system32\guard64.dll
- 2010-10-15 17:47 . 2010-10-09 15:02 362784 c:\windows\system32\guard64.dll
+ 2009-07-14 05:30 . 2011-01-10 17:54 143360 c:\windows\system32\DriverStore\infstrng.dat
- 2009-07-14 05:30 . 2010-12-29 21:11 143360 c:\windows\system32\DriverStore\infstrng.dat
+ 2009-07-14 05:30 . 2011-01-10 17:54 143360 c:\windows\system32\DriverStore\infstor.dat
- 2009-07-14 05:30 . 2010-12-27 15:05 143360 c:\windows\system32\DriverStore\infstor.dat
+ 2010-12-29 00:41 . 2010-12-29 00:41 250008 c:\windows\system32\drivers\cmdGuard.sys
+ 2009-07-14 02:34 . 2011-01-10 18:09 10223616 c:\windows\system32\SMI\Store\Machine\schema.dat
- 2009-07-14 02:34 . 2011-01-10 13:33 10223616 c:\windows\system32\SMI\Store\Machine\schema.dat
+ 2011-01-10 17:53 . 2011-01-10 17:53 29901312 c:\windows\Installer\9a9401.msi
.
-- Snímek resetován k současnému datu --
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Google Update"="c:\users\Daniel\AppData\Local\Google\Update\GoogleUpdate.exe" [2010-10-17 136176]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-07-14 1475072]

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2009-11-10 98304]
"COMODO"="c:\program files\COMODO\COMODO GeekBuddy\CLPSLA.exe" [2010-11-19 215792]

c:\users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
OpenOffice.org 3.2.lnk - c:\program files (x86)\OpenOffice.org 3\program\quickstart.exe [2010-6-7 1195520]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)

[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\SysWOW64\guard32.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CLPSLS]
@="Service"

R3 EagleX64;EagleX64;c:\windows\system32\drivers\EagleX64.sys [x]
R3 nmwcdnsucx64;Nokia USB Flashing Generic;c:\windows\system32\drivers\nmwcdnsucx64.sys [2010-07-26 12800]
R3 nmwcdnsux64;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsux64.sys [2010-07-26 171008]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2010-10-17 1255736]
S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2010-12-17 834544]
S1 aswSP;aswSP; [x]
S1 cmdGuard;COMODO Internet Security Sandbox Driver;c:\windows\system32\DRIVERS\cmdguard.sys [2010-12-29 250008]
S1 cmdHlp;COMODO Internet Security Helper Driver;c:\windows\system32\DRIVERS\cmdhlp.sys [2010-12-29 39376]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2009-11-11 202752]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2010-09-07 61008]
S2 CLPSLS;COMODO livePCsupport Service;c:\program files\COMODO\COMODO GeekBuddy\CLPSLS.exe [2010-11-19 158112]
S3 RTL8167;Ovladač Realtek 8167 NT;c:\windows\system32\DRIVERS\Rt64win7.sys [2009-06-10 187392]


--- Ostatní služby/ovladače v paměti ---

*NewlyCreated* - CMDGUARD
*NewlyCreated* - CMDHLP
.
Obsah adresáře 'Naplánované úlohy'

2011-01-09 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-792045007-435464581-386061330-1001Core.job
- c:\users\Daniel\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-17 09:13]

2011-01-10 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-792045007-435464581-386061330-1001UA.job
- c:\users\Daniel\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-17 09:13]
.

--------- x86-64 -----------


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"COMODO Internet Security"="c:\program files\COMODO\COMODO Internet Security\cfp.exe" [2010-12-29 8862024]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x1
"AppInit_DLLs"=c:\windows\System32\guard64.dll
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://search.conduit.com?SearchSource=10&ctid=CT1750559
mLocal Page = c:\windows\SysWOW64\blank.htm
TCP: {8A350B23-C493-41CE-8DD6-F5C2F0DD9FDF} = 156.154.70.25,156.154.71.25
FF - ProfilePath - c:\users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\1uhwqppr.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files (x86)\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
.
.
Celkový čas: 2011-01-10 19:13:50
ComboFix-quarantined-files.txt 2011-01-10 18:13
ComboFix2.txt 2011-01-10 15:16
ComboFix3.txt 2011-01-10 13:59

Před spuštěním: Volných bajtů: 42 359 205 888
Po spuštění: Volných bajtů: 41 955 450 880

- - End Of File - - B990CBDAB3C060742F02054C7D9EACC2

Re: Lagující hry

Napsal: 10 led 2011 19:28
od Roli
Přes Start >> Spustit zkopíruj do okna:

ComboFix /Uninstall

a stiskni Enter

To odinstaluje ComboFix a smaže s ním související soubory a složky.


Pak dej vědět jaký je stav PC.

Re: Lagující hry

Napsal: 10 led 2011 19:30
od Jiří Havel
Furt mám vytížení RAM 30% ale nevim čím to bude...

Re: Lagující hry

Napsal: 10 led 2011 19:32
od Jiří Havel
Děkuju za ochotu

Re: Lagující hry

Napsal: 10 led 2011 19:34
od Roli
Jiří Havel píše:Furt mám vytížení RAM 30% ale nevim čím to bude...
Na Windows 7 to není zas tak moc.

Re: Lagující hry

Napsal: 10 led 2011 19:36
od Jiří Havel
Tak děkuju...jenom sem se vystračil, protože mi to nedělalo...tak mockrát děkuju, jste borec :worship:

Re: Lagující hry

Napsal: 10 led 2011 19:41
od Roli
Není zač :)