Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Pomalý start + dlouhé načítání programů - prosím kontrolu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
chl3b4
Návštěvník
Návštěvník
Příspěvky: 7
Registrován: 30 říj 2006 11:40

Pomalý start + dlouhé načítání programů - prosím kontrolu

#1 Příspěvek od chl3b4 »

Kód: Vybrat vše

[size=85]Logfile of random's system information tool 1.08 (written by random/random)
Run by Tom at 2011-02-13 14:11:39
Microsoft Windows 7 Ultimate  
System drive C: has 31 GB (13%) free of 238 GB
Total RAM: 4061 MB (61% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:11:40, on 13.2.2011
Platform: Windows 7  (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16722)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\RocketDock\RocketDock.exe
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosAVRC.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
C:\Program Files (x86)\Microsoft Office\Office12\OUTLOOK.EXE
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Program Files (x86)\TuneUp Utilities 2011\integrator.exe
C:\Program Files\trend micro\Tom.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = 
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = 
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = 
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [HWSetup] "C:\Program Files\TOSHIBA\Utilities\HWSetup.exe" hwSetUP
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ITSecMng] %ProgramFiles%\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe /START
O4 - HKCU\..\Run: [RocketDock] "C:\Program Files (x86)\RocketDock\RocketDock.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [EPSON SX100 Series] C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIEDE.EXE /FU "C:\Windows\TEMP\E_S777C.tmp" /EF "HKCU"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: Bluetooth Manager.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O16 - DPF: {E6F480FC-BD44-4CBA-B74A-89AF7842937D} (SysInfo Class) - http://content.systemrequirementslab.com.s3.amazonaws.com/global/bin/srldetect_cyri_4.3.1.0.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: ConfigFree WiMAX Service (cfWiMAXService) - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe
O23 - Service: ConfigFree Gadget Service - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFProcSRVC.exe
O23 - Service: ConfigFree Service - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MATLAB Server (matlabserver) - Unknown owner - C:\Matlab\webserver\bin\win32\matlabserver.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Palm Novacom (NovacomD) - Palm - C:\Program Files\Palm, Inc\novacom\amd64\novacomd.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
O23 - Service: TOSHIBA eco Utility Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TECO\TecoService.exe
O23 - Service: TOSHIBA HDD SSD Alert Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 9069 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
"C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Matlab\webserver\bin\win32\matlabserver.exe
c:\matlab\bin\win32\matlab.exe /Automation -Embedding
"C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe" avshadowcontrol0_00000640
\??\C:\Windows\system32\conhost.exe
"C:\Program Files\Palm, Inc\novacom\amd64\novacomd.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\TOSHIBA\TECO\TecoService.exe"
"C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
atieclxx
"taskhost.exe"
"C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesApp64.exe" /TUStart /pid:1920
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\TOSHIBA\TECO\Teco.exe" /r
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" 
"C:\Program Files (x86)\RocketDock\RocketDock.exe" 
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe" 
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
taskeng.exe {46B06BF4-12C4-428C-B927-E74CE58B0C72}
"C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe" 
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\\TosA2dp.exe"
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\\TosBtHid.exe"
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\\TosBtHsp.exe"
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosAVRC.exe"
"C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe" 
"C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe"
"C:\Program Files (x86)\TOSHIBA\ConfigFree\CFProcSRVC.exe"
"C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe"
"C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe" 
"C:\Program Files (x86)\Microsoft Office\Office12\OUTLOOK.EXE" 
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\tosOBEX.exe"
"C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\tosBtProc.exe" 
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" 
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=600.738ffa0.861360076 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll" 600 plugin \\.\pipe\gecko-crash-server-pipe.600
"C:\Program Files (x86)\TuneUp Utilities 2011\integrator.exe" /initstatuspage
"C:\Windows\system32\NOTEPAD.EXE" C:\rsit\log.txt
"C:\Users\Tom\Downloads\RSITx64.exe" 
C:\Windows\system32\wbem\wmiprvse.exe

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2007-08-24 2212224]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2011-02-04 41760]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Teco"=C:\Program Files\TOSHIBA\TECO\Teco.exe [2009-09-03 1481568]
"SmartFaceVWatcher"=C:\Program Files\Toshiba\SmartFaceV\SmartFaceVWatcher.exe [2009-07-29 238080]
"TosSENotify"=C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [2009-08-03 709976]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2009-07-28 7982112]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"RocketDock"=C:\Program Files (x86)\RocketDock\RocketDock.exe [2007-09-02 495616]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2010-04-01 357696]
"EPSON SX100 Series"=C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIEDE.EXE [2009-07-29 221696]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"HWSetup"=C:\Program Files\TOSHIBA\Utilities\HWSetup.exe [2009-06-02 423936]
"avgnt"=C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [2010-11-22 281768]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-10-26 98304]
"ITSecMng"=C:\Program Files\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe /START []

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth Manager.lnk - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2007-08-24 2212224]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2011-02-13 14:07:51 ----D---- C:\rsit
2011-02-13 14:07:51 ----D---- C:\Program Files\trend micro
2011-02-11 14:52:16 ----SHD---- C:\Config.Msi
2011-02-09 23:06:37 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2011-02-09 23:06:37 ----A---- C:\Windows\system32\mshtml.dll
2011-02-09 23:06:34 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2011-02-09 23:06:33 ----A---- C:\Windows\SYSWOW64\mstime.dll
2011-02-09 23:06:33 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2011-02-09 23:06:33 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2011-02-09 23:06:33 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2011-02-09 23:06:33 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2011-02-09 23:06:33 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2011-02-09 23:06:33 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2011-02-09 23:06:33 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2011-02-09 23:06:33 ----A---- C:\Windows\system32\mstime.dll
2011-02-09 23:06:33 ----A---- C:\Windows\system32\mshtmled.dll
2011-02-09 23:06:33 ----A---- C:\Windows\system32\msfeedssync.exe
2011-02-09 23:06:33 ----A---- C:\Windows\system32\msfeedsbs.dll
2011-02-09 23:06:33 ----A---- C:\Windows\system32\msfeeds.dll
2011-02-09 23:06:33 ----A---- C:\Windows\system32\licmgr10.dll
2011-02-09 23:06:33 ----A---- C:\Windows\system32\iertutil.dll
2011-02-09 23:06:33 ----A---- C:\Windows\system32\iepeers.dll
2011-02-09 23:06:33 ----A---- C:\Windows\system32\iedkcs32.dll
2011-02-09 22:20:27 ----A---- C:\Windows\system32\urlmon.dll
2011-02-09 22:20:27 ----A---- C:\Windows\system32\upnp.dll
2011-02-09 22:20:27 ----A---- C:\Windows\system32\msxml6.dll
2011-02-09 22:20:27 ----A---- C:\Windows\system32\msxml3.dll
2011-02-09 22:20:26 ----A---- C:\Windows\SYSWOW64\wininet.dll
2011-02-09 22:20:26 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2011-02-09 22:20:26 ----A---- C:\Windows\SYSWOW64\upnp.dll
2011-02-09 22:20:26 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2011-02-09 22:20:26 ----A---- C:\Windows\system32\wininet.dll
2011-02-09 22:20:26 ----A---- C:\Windows\system32\winhttp.dll
2011-02-09 22:20:26 ----A---- C:\Windows\system32\WebClnt.dll
2011-02-09 22:20:25 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2011-02-09 22:20:25 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2011-02-09 22:20:25 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2011-02-09 22:20:25 ----A---- C:\Windows\system32\wscapi.dll
2011-02-09 22:20:25 ----A---- C:\Windows\system32\ieframe.dll
2011-02-09 22:20:25 ----A---- C:\Windows\system32\davclnt.dll
2011-02-09 22:20:24 ----A---- C:\Windows\SYSWOW64\wscapi.dll
2011-02-09 22:20:24 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2011-02-09 22:20:24 ----A---- C:\Windows\SYSWOW64\slwga.dll
2011-02-09 22:20:24 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2011-02-09 22:20:24 ----A---- C:\Windows\system32\wscsvc.dll
2011-02-09 22:20:24 ----A---- C:\Windows\system32\slwga.dll
2011-02-09 22:20:22 ----A---- C:\Windows\system32\ntoskrnl.exe
2011-02-09 22:20:22 ----A---- C:\Windows\system32\ntdll.dll
2011-02-09 22:20:21 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2011-02-09 22:20:21 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2011-02-09 22:20:21 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2011-02-09 21:40:03 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2011-02-09 21:40:03 ----A---- C:\Windows\system32\kerberos.dll
2011-02-09 21:39:52 ----A---- C:\Windows\system32\win32k.sys
2011-02-09 21:39:51 ----A---- C:\Windows\system32\winsrv.dll
2011-02-09 21:39:16 ----A---- C:\Windows\system32\jscript.dll
2011-02-09 21:39:15 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2011-02-09 21:39:15 ----A---- C:\Windows\SYSWOW64\jscript.dll
2011-02-09 21:39:15 ----A---- C:\Windows\system32\vbscript.dll
2011-02-09 21:39:14 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2011-02-09 21:39:14 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2011-02-09 21:39:13 ----A---- C:\Windows\system32\cdd.dll
2011-02-09 21:38:46 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2011-02-09 21:38:46 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2011-02-09 21:38:46 ----A---- C:\Windows\system32\atmlib.dll
2011-02-09 21:38:46 ----A---- C:\Windows\system32\atmfd.dll
2011-02-06 14:34:23 ----A---- C:\Windows\SYSWOW64\Redemption.dll
2011-02-04 16:30:57 ----D---- C:\Users\Tom\AppData\Roaming\CanuckSoftware
2011-02-04 16:30:22 ----D---- C:\Program Files\DIFX
2011-02-04 16:30:15 ----D---- C:\Program Files\Palm, Inc
2011-02-04 16:14:05 ----D---- C:\ProgramData\Sun
2011-02-04 16:13:46 ----A---- C:\Windows\SYSWOW64\javaws.exe
2011-02-04 16:13:46 ----A---- C:\Windows\SYSWOW64\javaw.exe
2011-02-04 16:13:46 ----A---- C:\Windows\SYSWOW64\java.exe
2011-02-04 16:13:46 ----A---- C:\Windows\SYSWOW64\deployJava1.dll
2011-02-04 16:13:35 ----D---- C:\Program Files (x86)\Java
2011-02-04 14:48:15 ----D---- C:\Program Files\Microsoft Synchronization Services
2011-02-04 14:48:15 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
2011-02-04 14:48:08 ----D---- C:\Program Files (x86)\Microsoft Synchronization Services
2011-02-04 14:48:07 ----D---- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2011-02-04 14:47:58 ----D---- C:\Users\Tom\AppData\Roaming\Simulace_2009
2011-02-04 14:47:53 ----D---- C:\Program Files (x86)\Simulace_2009
2011-02-02 13:33:14 ----D---- C:\Program Files (x86)\Magic Berry
2011-02-02 13:33:08 ----N---- C:\Windows\Setup1.exe
2011-02-02 13:33:07 ----A---- C:\Windows\ST6UNST.EXE
2011-02-02 13:24:00 ----D---- C:\Program Files (x86)\BlackBerry AddressBook Synchronizer
2011-02-02 13:23:24 ----D---- C:\Users\Tom\AppData\Roaming\GetRightToGo
2011-02-02 12:16:57 ----D---- C:\Users\Tom\AppData\Roaming\EPSON
2011-01-30 14:37:23 ----HDC---- C:\ProgramData\{CF554067-3C6D-4531-98EB-D64E2616E71D}
2011-01-30 14:37:12 ----HDC---- C:\ProgramData\{0377BAED-6812-4408-9735-D65D68E7CA12}
2011-01-25 23:21:45 ----A---- C:\Windows\unvise32.exe
2011-01-25 23:17:54 ----D---- C:\ProgramData\Pinnacle Studio Ultimate Collection
2011-01-25 23:12:28 ----D---- C:\ProgramData\Studio 14
2011-01-25 23:12:28 ----D---- C:\ProgramData\Pinnacle Studio Plus
2011-01-25 23:10:28 ----D---- C:\ProgramData\Pinnacle
2011-01-25 23:10:28 ----D---- C:\Program Files (x86)\Pinnacle
2011-01-20 19:37:01 ----D---- C:\Program Files (x86)\DOSBox-0.74
2011-01-20 19:35:44 ----D---- C:\TP
2011-01-16 17:19:38 ----D---- C:\Users\Tom\AppData\Roaming\dvdcss
2011-01-15 20:23:02 ----D---- C:\Windows\SYSWOW64\AGEIA
2011-01-15 20:23:02 ----D---- C:\Program Files (x86)\AGEIA Technologies
2011-01-15 17:17:38 ----SHD---- C:\ProgramData\SecuROM

======List of files/folders modified in the last 1 months======

2011-02-13 14:11:39 ----D---- C:\Windows\Temp
2011-02-13 14:07:53 ----D---- C:\Windows\Prefetch
2011-02-13 14:07:51 ----RD---- C:\Program Files
2011-02-13 12:54:13 ----D---- C:\Windows\system32\config
2011-02-12 18:33:42 ----A---- C:\Windows\wincmd.ini
2011-02-12 18:16:19 ----D---- C:\Windows\System32
2011-02-12 18:16:19 ----D---- C:\Windows\inf
2011-02-12 18:16:19 ----A---- C:\Windows\system32\PerfStringBackup.INI
2011-02-12 15:55:46 ----D---- C:\Users\Tom\AppData\Roaming\uTorrent
2011-02-11 14:53:35 ----RD---- C:\Program Files (x86)
2011-02-11 14:53:13 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2011-02-11 14:53:04 ----SHD---- C:\System Volume Information
2011-02-11 14:52:31 ----SHD---- C:\Windows\Installer
2011-02-11 14:52:29 ----D---- C:\Windows\system32\DriverStore
2011-02-11 14:52:29 ----D---- C:\Windows\system32\catroot
2011-02-11 14:52:26 ----D---- C:\Windows\SysWOW64
2011-02-11 14:44:00 ----HD---- C:\ProgramData
2011-02-11 14:41:19 ----D---- C:\Windows\system32\drivers
2011-02-11 09:05:38 ----D---- C:\Program Files (x86)\rajce
2011-02-10 14:29:45 ----D---- C:\Windows\winsxs
2011-02-10 14:27:31 ----D---- C:\Program Files\Internet Explorer
2011-02-10 14:27:31 ----D---- C:\Program Files (x86)\Internet Explorer
2011-02-10 10:02:53 ----A---- C:\Windows\system32\MRT.exe
2011-02-09 23:46:38 ----D---- C:\Users\Tom\AppData\Roaming\Skype
2011-02-09 21:39:42 ----D---- C:\Windows\system32\catroot2
2011-02-09 19:04:27 ----D---- C:\Users\Tom\AppData\Roaming\skypePM
2011-02-06 15:07:50 ----RSD---- C:\Windows\assembly
2011-02-06 14:38:48 ----A---- C:\Windows\ODBC.INI
2011-02-06 11:25:03 ----D---- C:\Windows\system32\Tasks
2011-02-05 19:36:09 ----D---- C:\Users\Tom\AppData\Roaming\vlc
2011-02-04 16:30:15 ----D---- C:\Windows
2011-02-04 16:14:03 ----D---- C:\Program Files (x86)\Common Files
2011-02-02 13:33:50 ----D---- C:\Program Files (x86)\ABC Amber BlackBerry Converter
2011-01-30 14:37:22 ----D---- C:\Program Files\Common Files\Topaz Labs
2011-01-30 14:37:11 ----D---- C:\Program Files (x86)\Topaz Labs
2011-01-25 23:16:37 ----RSD---- C:\Windows\Fonts
2011-01-21 15:20:57 ----D---- C:\Program Files (x86)\Electronic Arts
2011-01-21 14:55:57 ----D---- C:\Users\Tom\AppData\Roaming\Adobe
2011-01-19 09:42:15 ----D---- C:\Windows\Microsoft.NET
2011-01-18 03:04:43 ----D---- C:\Windows\SYSWOW64\cs-CZ
2011-01-18 03:04:43 ----D---- C:\Windows\system32\cs-CZ
2011-01-18 03:01:29 ----D---- C:\Windows\SYSWOW64\en-US
2011-01-18 03:01:29 ----D---- C:\Windows\system32\en-US
2011-01-18 03:01:25 ----D---- C:\Program Files (x86)\Microsoft.NET
2011-01-17 19:59:28 ----SD---- C:\Users\Tom\AppData\Roaming\Microsoft
2011-01-17 19:59:27 ----D---- C:\ProgramData\Microsoft Help

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 LPCFilter;LPC Lower Filter Driver; C:\Windows\system32\DRIVERS\LPCFilter.sys [2009-07-02 44912]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 214096]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-11-19 834544]
R0 tos_sps64;TOSHIBA tos_sps64 Service; C:\Windows\system32\DRIVERS\tos_sps64.sys [2009-07-24 482384]
R0 TVALZ;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Driver; C:\Windows\system32\DRIVERS\TVALZ_O.SYS [2007-11-09 26968]
R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [2010-03-02 116568]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 514048]
R1 Tosrfcom;Bluetooth RFCOMM; C:\Windows\System32\Drivers\tosrfcom.sys [2010-11-29 82224]
R2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2010-12-08 314016]
R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys [2010-11-22 83120]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2010-12-08 43680]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-10-27 8012288]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-10-27 287232]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2009-07-28 1966624]
R3 MarvinBus;Pinnacle Marvin Bus 64; C:\Windows\system32\DRIVERS\MarvinBus64.sys [2005-09-23 261120]
R3 PGEffect;Pangu effect driver; C:\Windows\system32\DRIVERS\pgeffect.sys [2009-06-22 35008]
R3 RTHDMIAzAudService;Service for HDMI; C:\Windows\system32\drivers\RtHDMIVX.sys [2009-05-20 202016]
R3 RTL8167;Ovladač Realtek 8167 NT; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-06-10 187392]
R3 RTL8187B;Realtek RTL8187B Wireless 802.11b/g 54Mbps USB 2.0 - síťový adaptér; C:\Windows\system32\DRIVERS\RTL8187B.sys [2009-06-10 416768]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2009-07-20 274480]
R3 tosporte;Bluetooth COM Port; C:\Windows\system32\DRIVERS\tosporte.sys [2009-06-17 54664]
R3 tosrfbd;Bluetooth RFBUS; C:\Windows\system32\DRIVERS\tosrfbd.sys [2010-12-12 291760]
R3 tosrfec;Bluetooth ACPI; C:\Windows\system32\DRIVERS\tosrfec.sys [2010-06-18 18872]
R3 Tosrfhid;Bluetooth RFHID; C:\Windows\system32\DRIVERS\Tosrfhid.sys [2010-08-30 94528]
R3 Tosrfusb;Bluetooth USB Controller; C:\Windows\system32\DRIVERS\tosrfusb.sys [2010-12-02 67384]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesDriver64.sys [2010-10-07 11856]
S2 npf;npf; \??\C:\Windows\system32\drivers\npf.sys []
S3 aktq3gd6;aktq3gd6; C:\Windows\system32\drivers\aktq3gd6.sys []
S3 Andbus;LGE Android Platform Composite USB Device; C:\Windows\system32\DRIVERS\lgandbus64.sys []
S3 AndDiag;LGE Android Platform USB Serial Port; C:\Windows\system32\DRIVERS\lganddiag64.sys []
S3 AndGps;LGE Android Platform USB GPS NMEA Port; C:\Windows\system32\DRIVERS\lgandgps64.sys []
S3 ANDModem;LGE Android Platform USB Modem; C:\Windows\system32\DRIVERS\lgandmodem64.sys []
S3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-10-27 8012288]
S3 LgBttPort;LGE Bluetooth TransPort; C:\Windows\system32\DRIVERS\lgbtpt64.sys []
S3 lgbusenum;LG Bluetooth Bus Enumerator; C:\Windows\system32\DRIVERS\lgbtbs64.sys []
S3 LGVMODEM;LGE Virtual Modem; C:\Windows\system32\DRIVERS\lgvmdm64.sys []
S3 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2009-07-14 165376]
S3 RimUsb;zařízení BlackBerry Smartphone; C:\Windows\System32\Drivers\RimUsb_AMD64.sys []
S3 RimVSerPort;RIM Virtual Serial Port v2; C:\Windows\system32\DRIVERS\RimSerial_AMD64.sys [2009-01-09 31744]
S3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\Windows\System32\Drivers\RootMdm.sys [2009-07-14 11264]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUStor.sys [2009-07-30 222208]
S3 RtsUIR;Realtek IR Driver; C:\Windows\system32\DRIVERS\Rts516xIR.sys []
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 6656]
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 34896]
S3 tosrfbnp;Bluetooth RFBNEP; C:\Windows\System32\Drivers\tosrfbnp.sys [2010-11-11 50864]
S3 tosrfnds;Bluetooth Personal Area Network; C:\Windows\system32\DRIVERS\tosrfnds.sys [2009-07-24 26472]
S3 TosRfSnd;Bluetooth Audio; C:\Windows\system32\drivers\tosrfsnd.sys [2010-04-26 63488]
S3 USBCCID;Realtek Smartcard Reader Driver; C:\Windows\system32\DRIVERS\RtsUCcid.sys []
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter; C:\Windows\system32\DRIVERS\VBoxNetAdp.sys [2010-12-22 154256]
S3 VBoxNetFlt;VBoxNetFlt Service; C:\Windows\system32\DRIVERS\VBoxNetFlt.sys []
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 200272]
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 21760]
S3 WINIO;WINIO; \??\C:\Windows\syswow64\winio.sys [2001-11-13 41324]
S3 WinUsb;WinUSB Driver Service; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 40448]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2010-10-27 203776]
R2 AntiVirService;Avira AntiVir Guard; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2010-12-09 267944]
R2 AntiVirSchedulerService;Avira AntiVir Scheduler; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2010-11-22 135336]
R2 cfWiMAXService;ConfigFree WiMAX Service; C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe [2009-08-10 248688]
R2 ConfigFree Gadget Service;ConfigFree Gadget Service; C:\Program Files (x86)\TOSHIBA\ConfigFree\CFProcSRVC.exe [2009-07-14 42368]
R2 ConfigFree Service;ConfigFree Service; C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe [2009-03-10 46448]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 matlabserver;MATLAB Server; C:\Matlab\webserver\bin\win32\matlabserver.exe [2004-08-16 536576]
R2 NovacomD;Palm Novacom; C:\Program Files\Palm, Inc\novacom\amd64\novacomd.exe [2010-01-12 46080]
R2 TOSHIBA eco Utility Service;TOSHIBA eco Utility Service; C:\Program Files\TOSHIBA\TECO\TecoService.exe [2009-09-03 251760]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe [2010-10-27 1974080]
R2 UxTuneUp;@%SystemRoot%\System32\uxtuneup.dll,-4096; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R3 TOSHIBA Bluetooth Service;TOSHIBA Bluetooth Service; C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe [2010-04-12 196976]
R3 TOSHIBA HDD SSD Alert Service;TOSHIBA HDD SSD Alert Service; C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [2009-08-03 137560]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2007-08-24 68464]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2007-08-24 443776]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-11-21 1255736]

-----------------EOF-----------------

[/size]
Díky moc :)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119506
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomalý start + dlouhé načítání programů - prosím kontrol

#2 Příspěvek od Rudy »

Log vypadá OK. PC vyčistěte od balastu CCleanerem: http://www.viry.cz/forum/viewtopic.php?f=46&t=7478 .
Pak startmenu>(napsat do přík. řádku) msconfig>OK. V okně, které se otevře vypněte vše, co nemusí startovat po spuštění (tedy vše, co lze ručně spustit v případě potřeby). Restartujte PC.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

chl3b4
Návštěvník
Návštěvník
Příspěvky: 7
Registrován: 30 říj 2006 11:40

Re: Pomalý start + dlouhé načítání programů - prosím kontrol

#3 Příspěvek od chl3b4 »

Děkuji, už jsem projel CCleanerem, nechal jsem PC zkontrolovat přes TuneUp Utilities a vypnul přebytečné aplikace, které se pouštějí při startu, ale mám přesto ještě dotaz : již v minulosti jsem upravoval log od HijackThis, ale snad nikdy jsem se nesetkal s případy, kdy je u položky "file missing", př.:
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)


Je to normální, resp. je možno mi to jenom lehce osvětlit ? :)

Díky za pomoc! :)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119506
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomalý start + dlouhé načítání programů - prosím kontrol

#4 Příspěvek od Rudy »

Toto jsou služby, které nelze fixnout (ani by to HJT neumožnil). Služby jsou momentálně vypnuty (proto "file missing"). Je to patrně bug HJT. Pokud najdete file missing v jiné položce, než je služba, fixovat můžete.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět