pomaly pc/regovanie (neodpovida)
Napsal: 09 bře 2011 20:13
Sestra bola na PC nedavno a od vtedy PC pomaly reaguje, napr. otvorim nejaky program, alebo priecinok, a otvara ho niekolko minut, ked ho otvori a nieco v tom urobim, zamrzne (pise neodpovida) a po niekolkych minutach uz ide(niekedy zase zamrzne). Preinstaloval som aj windows ale nepomohlo, aj windows sa velmi dlho nacitava. Skusal som aj skenovat antivirusmi, ale tie po chvily ako keby si dali pauzu a dalej neskenovali. Pouzil som aj combofix (nic sa nezmenilo), tu je log :
ComboFix 11-03-08.09 - Pitkes . 03. 2011 19:17:46.2.2 - x86
Microsoft Windows 7 Ultimate 6.1.7600.0.1250.421.1029.18.3326.2491 [GMT 1:00]
Running from: c:\users\Pitkes\Downloads\ComboFix.exe
AV: AntiVir Desktop *Disabled/Updated* {090F9C29-64CE-6C6F-379C-5901B49A85B7}
FW: Kerio WinRoute Firewall *Enabled* {FE8E2D43-819C-565F-AE37-FFAE536AD59B}
SP: AntiVir Desktop *Disabled/Updated* {B26E7DCD-42F4-63E1-0D2C-6273CF1DCF0A}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
D:\install.exe
.
.
((((((((((((((((((((((((( Files Created from 2011-02-09 to 2011-03-09 )))))))))))))))))))))))))))))))
.
.
2011-03-09 18:22 . 2011-03-09 18:22 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-03-09 06:00 . 2011-03-09 06:00 -------- d-----w- c:\windows\system32\Wat
2011-03-08 21:37 . 2009-09-10 05:52 257024 ----a-w- c:\windows\system32\msv1_0.dll
2011-03-08 21:29 . 2009-11-25 11:47 99176 ----a-w- c:\windows\system32\PresentationHostProxy.dll
2011-03-08 21:29 . 2009-11-25 11:47 49472 ----a-w- c:\windows\system32\netfxperf.dll
2011-03-08 21:29 . 2009-11-25 11:47 297808 ----a-w- c:\windows\system32\mscoree.dll
2011-03-08 21:29 . 2009-11-25 11:47 295264 ----a-w- c:\windows\system32\PresentationHost.exe
2011-03-08 21:29 . 2009-11-25 11:47 1130824 ----a-w- c:\windows\system32\dfshim.dll
2011-03-08 21:01 . 2010-02-11 07:10 293376 ----a-w- c:\windows\system32\browserchoice.exe
2011-03-08 20:55 . 2010-03-04 03:57 190976 ----a-w- c:\windows\system32\drivers\ks.sys
2011-03-08 20:53 . 2010-09-14 06:07 276992 ----a-w- c:\windows\system32\wcncsvc.dll
2011-03-08 18:40 . 2011-03-08 18:41 -------- d-----w- c:\program files\TeamSpeak 3 Client
2011-03-08 18:28 . 2011-03-08 18:28 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2011-03-08 18:26 . 2005-05-26 14:34 2297552 ----a-w- c:\windows\system32\d3dx9_26.dll
2011-03-08 18:22 . 2011-03-08 19:52 138696 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2011-03-08 18:22 . 2011-03-08 19:51 201816 ----a-w- c:\windows\system32\PnkBstrB.exe
2011-03-08 18:22 . 2011-03-08 18:22 66872 ----a-w- c:\windows\system32\PnkBstrA.exe
2011-03-08 18:22 . 2011-03-08 18:22 2250024 ----a-w- c:\windows\system32\pbsvc.exe
2011-03-08 16:38 . 2011-03-08 16:38 -------- d-----w- c:\program files\Kerio
2011-03-08 16:27 . 2010-10-19 08:10 7680 ----a-w- c:\program files\Internet Explorer\iecompat.dll
2011-03-08 16:27 . 2009-08-29 06:57 34816 ----a-w- c:\windows\system32\msasn1.dll
2011-03-08 16:26 . 2010-12-18 05:29 541184 ----a-w- c:\windows\system32\kerberos.dll
2011-03-08 16:25 . 2010-06-29 04:57 4247040 ----a-w- c:\program files\Windows NT\Accessories\wordpad.exe
2011-03-08 16:25 . 2010-06-29 05:02 1413632 ----a-w- c:\windows\system32\ole32.dll
2011-03-08 16:25 . 2010-06-14 06:12 1286016 ----a-w- c:\windows\system32\drivers\tcpip.sys
2011-03-08 16:18 . 2010-10-27 04:32 2048 ----a-w- c:\windows\system32\tzres.dll
2011-03-08 16:17 . 2010-08-04 06:18 641536 ----a-w- c:\windows\system32\CPFilters.dll
2011-03-08 16:17 . 2010-08-04 06:17 417792 ----a-w- c:\windows\system32\msdri.dll
2011-03-08 16:17 . 2010-08-04 06:15 204288 ----a-w- c:\windows\system32\MSNP.ax
2011-03-08 16:17 . 2010-08-04 06:15 199680 ----a-w- c:\windows\system32\mpg2splt.ax
2011-03-08 16:17 . 2009-12-13 09:30 465408 ----a-w- c:\windows\system32\psisdecd.dll
2011-03-08 16:16 . 2011-01-05 03:37 2329088 ----a-w- c:\windows\system32\win32k.sys
2011-03-08 16:16 . 2010-08-21 05:36 224256 ----a-w- c:\windows\system32\schannel.dll
2011-03-08 16:16 . 2010-11-02 04:41 351232 ----a-w- c:\windows\system32\wmicmiplugin.dll
2011-03-08 16:16 . 2010-11-02 04:40 496128 ----a-w- c:\windows\system32\taskschd.dll
2011-03-08 16:16 . 2010-11-02 04:40 305152 ----a-w- c:\windows\system32\taskcomp.dll
2011-03-08 16:16 . 2010-11-02 04:39 749056 ----a-w- c:\windows\system32\schedsvc.dll
2011-03-08 16:16 . 2010-11-02 04:34 192000 ----a-w- c:\windows\system32\taskeng.exe
2011-03-08 16:16 . 2010-11-02 04:34 179712 ----a-w- c:\windows\system32\schtasks.exe
2011-03-08 16:15 . 2009-12-11 07:44 133720 ----a-w- c:\windows\system32\drivers\ksecpkg.sys
2011-03-08 16:15 . 2009-12-11 07:38 1037312 ----a-w- c:\windows\system32\lsasrv.dll
2011-03-08 16:15 . 2010-06-19 06:23 37376 ----a-w- c:\windows\system32\rtutils.dll
2011-03-08 16:15 . 2010-03-04 07:33 1619968 ----a-w- c:\program files\Windows Mail\msoe.dll
2011-03-08 16:15 . 2010-03-04 07:33 740864 ----a-w- c:\windows\system32\inetcomm.dll
2011-03-08 16:13 . 2010-10-16 04:34 573440 ----a-w- c:\windows\system32\odbc32.dll
2011-03-08 16:13 . 2010-10-16 04:33 372736 ----a-w- c:\program files\Common Files\System\ado\msadox.dll
2011-03-08 16:13 . 2010-10-16 04:33 352256 ----a-w- c:\program files\Common Files\System\ado\msadomd.dll
2011-03-08 16:13 . 2010-10-16 04:33 987136 ----a-w- c:\program files\Common Files\System\ado\msado15.dll
2011-03-08 16:13 . 2010-10-16 04:33 208896 ----a-w- c:\program files\Common Files\System\msadc\msadco.dll
2011-03-08 16:13 . 2009-09-03 07:04 1320960 ----a-w- c:\windows\system32\CertEnroll.dll
2011-03-08 16:13 . 2009-08-19 07:20 442920 ----a-w- c:\windows\system32\winresume.exe
2011-03-08 16:13 . 2009-08-19 07:20 507568 ----a-w- c:\windows\system32\winload.exe
2011-03-08 16:13 . 2010-03-05 07:42 67584 ----a-w- c:\windows\system32\asycfilt.dll
2011-03-08 16:13 . 2010-08-21 05:33 530432 ----a-w- c:\windows\system32\comctl32.dll
2011-03-08 16:12 . 2011-01-05 05:37 428032 ----a-w- c:\windows\system32\vbscript.dll
2011-03-08 16:11 . 2010-09-01 04:26 164864 ----a-w- c:\program files\Windows Media Player\wmplayer.exe
2011-03-08 16:11 . 2010-09-01 04:23 12625408 ----a-w- c:\windows\system32\wmploc.DLL
2011-03-08 16:10 . 2010-07-13 05:22 26504 ----a-w- c:\windows\system32\drivers\Diskdump.sys
2011-03-08 16:02 . 2010-02-27 07:32 221696 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2011-03-08 16:02 . 2010-02-27 07:32 95744 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2011-03-08 16:02 . 2010-02-27 07:32 123392 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2011-03-08 15:59 . 2010-10-16 04:41 101760 ----a-w- c:\windows\system32\consent.exe
2011-03-08 15:57 . 2010-08-27 05:46 168448 ----a-w- c:\windows\system32\srvsvc.dll
2011-03-08 15:57 . 2010-08-27 03:31 310784 ----a-w- c:\windows\system32\drivers\srv.sys
2011-03-08 15:57 . 2010-08-27 03:30 308736 ----a-w- c:\windows\system32\drivers\srv2.sys
2011-03-08 15:57 . 2010-08-27 03:30 113664 ----a-w- c:\windows\system32\drivers\srvnet.sys
2011-03-08 15:57 . 2010-10-27 04:43 3901824 ----a-w- c:\windows\system32\ntoskrnl.exe
2011-03-08 15:57 . 2010-10-27 04:43 3957120 ----a-w- c:\windows\system32\ntkrnlpa.exe
2011-03-08 15:57 . 2010-10-27 04:40 1289536 ----a-w- c:\windows\system32\ntdll.dll
2011-03-08 15:17 . 2011-02-23 08:35 5943120 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{E255DB4D-C8DF-42E7-9593-6FD9AA09E555}\mpengine.dll
2011-03-08 15:15 . 2011-02-03 05:45 219008 ----a-w- c:\windows\system32\drivers\dxgmms1.sys
2011-03-08 15:15 . 2010-11-02 04:46 728448 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2011-03-08 15:15 . 2010-11-02 04:23 107520 ----a-w- c:\windows\system32\cdd.dll
2011-03-07 21:18 . 2011-03-07 21:18 -------- d-----w- c:\program files\The KMPlayer
2011-03-07 19:03 . 2011-03-07 19:03 -------- d-----w- c:\program files\Alcohol Soft
2011-03-07 18:57 . 2011-03-08 20:51 -------- d-----w- c:\programdata\Tunngle
2011-03-07 18:56 . 2009-09-16 06:02 27136 ----a-w- c:\windows\system32\drivers\tap0901t.sys
2011-03-07 18:56 . 2011-03-07 18:58 -------- d-----w- c:\program files\Tunngle
2011-03-07 18:56 . 2011-03-07 18:56 721904 ----a-w- c:\windows\system32\drivers\sptd.sys
2011-03-07 18:31 . 2011-03-07 18:31 -------- d-----w- c:\program files\My Company Name
2011-03-07 18:29 . 2011-03-07 18:29 -------- d-----w- c:\programdata\ATI
2011-03-07 18:27 . 2011-03-07 18:27 -------- d-----w- c:\program files\Common Files\ATI Technologies
2011-03-07 18:22 . 2011-03-07 18:22 -------- d-----w- c:\program files\ATI
2011-03-07 18:22 . 2011-03-07 18:29 -------- d-----w- c:\program files\ATI Technologies
2011-03-07 18:20 . 2011-03-08 19:40 -------- d-sh--w- c:\windows\Installer
2011-03-07 17:55 . 2008-03-19 02:54 151552 ------r- c:\windows\system32\xRaidAPI.dll
2011-03-07 17:55 . 2011-03-07 17:55 -------- d-----w- C:\RaidTool
2011-03-07 17:55 . 2007-11-19 03:28 1966080 ------r- c:\windows\system32\xRaidSetup.exe
2011-03-07 17:55 . 2008-07-31 02:21 79960 ----a-w- c:\windows\system32\drivers\jraid.sys
2011-03-07 17:55 . 2011-03-07 17:55 -------- d-----w- c:\windows\RaidTool
2011-03-07 17:48 . 2011-03-07 17:48 319488 ----a-w- c:\windows\HideWin.exe
2011-03-07 17:48 . 2008-07-15 05:58 524288 ------r- c:\windows\RtlExUpd.dll
2011-03-07 17:42 . 2011-03-07 17:42 -------- d-----w- c:\program files\Intel
2011-03-07 17:42 . 2008-07-16 08:05 53248 ----a-r- c:\windows\system32\CSVer.dll
2011-03-07 17:41 . 2011-03-07 17:41 -------- d-----w- C:\Intel
2011-03-07 17:41 . 2008-05-02 14:08 146528 ----a-w- c:\windows\system32\dvmurl.dll
2011-03-07 17:41 . 2011-03-07 17:41 -------- d-----w- c:\program files\Browser Configuration Utility
2011-03-07 17:40 . 2011-03-07 17:40 -------- d-----w- c:\program files\GIGABYTE
2011-03-07 17:39 . 2011-03-08 19:42 -------- d--h--w- c:\program files\InstallShield Installation Information
2011-03-07 17:38 . 2011-03-07 18:21 -------- d-----w- c:\program files\Common Files\InstallShield
2011-03-07 17:37 . 2011-03-09 17:58 16608 ----a-w- c:\windows\gdrv.sys
2011-03-07 17:20 . 2011-02-02 16:11 222080 ------w- c:\windows\system32\MpSigStub.exe
2011-03-07 17:00 . 2011-03-07 17:00 -------- d-----w- c:\program files\CCleaner
2011-03-07 16:59 . 2011-03-07 16:59 -------- d-----w- c:\programdata\SUPERAntiSpyware.com
2011-03-07 16:58 . 2011-03-07 16:59 -------- d-----w- c:\program files\SUPERAntiSpyware
2011-03-07 16:57 . 2011-03-07 16:57 -------- d-----w- c:\programdata\Malwarebytes
2011-03-07 16:57 . 2010-12-20 17:09 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-03-07 16:57 . 2011-03-07 16:57 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-03-07 16:57 . 2010-12-20 17:08 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-03-07 16:22 . 2009-12-29 06:55 172032 ----a-w- c:\windows\system32\wintrust.dll
2011-03-07 16:22 . 2010-01-09 06:52 132608 ----a-w- c:\windows\system32\cabview.dll
2011-03-07 16:22 . 2011-03-07 16:22 -------- d--h--w- c:\windows\AxInstSV
2011-03-07 16:14 . 2011-03-09 06:02 -------- d-----w- c:\windows\system32\wbem\Performance
2011-03-07 16:14 . 2011-03-07 16:18 -------- d-----w- c:\users\Pitkes
2011-03-07 15:55 . 2011-03-07 15:55 0 ----a-w- c:\windows\ativpsrm.bin
2011-03-07 15:43 . 2011-03-07 16:14 -------- d-----w- c:\windows\Panther
2011-03-07 15:43 . 2011-03-07 15:43 -------- d-----w- C:\Boot
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SUPERAntiSpyware"="c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2011-02-18 2423752]
"Google Update"="c:\users\Pitkes\AppData\Local\Google\Update\GoogleUpdate.exe" [2011-03-07 136176]
"AlcoholAutomount"="c:\program files\Alcohol Soft\Alcohol 120\axcmd.exe" [2009-04-24 203928]
"WrCtrl"="c:\program files\Kerio\WinRoute Firewall\wrctrl.exe" [2009-10-26 138600]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="RtHDVCpl.exe" [2008-07-24 6265376]
"Skytel"="Skytel.exe" [2008-07-24 1833504]
"JMB36X IDE Setup"="c:\windows\RaidTool\xInsIDE.exe" [2007-03-20 36864]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2008-01-21 61440]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2011-01-10 281768]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2011-03-08 1343400]
S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2011-03-07 721904]
S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV.SYS [2010-02-17 12872]
S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [2010-05-10 67656]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2009-08-18 176128]
S2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [2011-01-10 135336]
S2 GEST Service;GEST Service for program management.;c:\program files\GIGABYTE\EnergySaver\GSvr.exe [2008-08-08 80392]
S2 TunngleService;TunngleService;c:\program files\Tunngle\TnglCtrl.exe [2010-11-22 718072]
S2 WinRoute;Kerio WinRoute Firewall;c:\program files\Kerio\WinRoute Firewall\winroute.exe [2009-10-26 5605840]
S3 kvnet;Kerio Virtual Network Adapter;c:\windows\system32\DRIVERS\kvnet.sys [2009-03-23 26624]
S3 kwflower;Kerio WinRoute Firewall Driver - Lower Layer;c:\windows\system32\DRIVERS\kwflower.sys [2009-06-12 100864]
S3 kwfupper;Kerio WinRoute Firewall Driver - Upper Layer;c:\windows\system32\DRIVERS\kwfupper.sys [2009-10-26 122928]
S3 RTL8167;Ovladač Realtek 8167 NT;c:\windows\system32\DRIVERS\Rt86win7.sys [2009-07-13 139776]
S3 tap0901t;TAP-Win32 Adapter V9 (Tunngle);c:\windows\system32\DRIVERS\tap0901t.sys [2009-09-16 27136]
.
.
Contents of the 'Scheduled Tasks' folder
.
2011-03-08 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2322698403-2926668765-3381319243-1001Core.job
- c:\users\Pitkes\AppData\Local\Google\Update\GoogleUpdate.exe [2011-03-07 17:05]
.
2011-03-09 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2322698403-2926668765-3381319243-1001UA.job
- c:\users\Pitkes\AppData\Local\Google\Update\GoogleUpdate.exe [2011-03-07 17:05]
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Completion time: 2011-03-09 19:26:50
ComboFix-quarantined-files.txt 2011-03-09 18:26
.
Pre-Run: Volných bajtů: 96 807 313 408
Post-Run: Volných bajtů: 96 931 012 608
.
- - End Of File - - 45AC1851A8837DB77F91A85B00AEF5D7
ComboFix 11-03-08.09 - Pitkes . 03. 2011 19:17:46.2.2 - x86
Microsoft Windows 7 Ultimate 6.1.7600.0.1250.421.1029.18.3326.2491 [GMT 1:00]
Running from: c:\users\Pitkes\Downloads\ComboFix.exe
AV: AntiVir Desktop *Disabled/Updated* {090F9C29-64CE-6C6F-379C-5901B49A85B7}
FW: Kerio WinRoute Firewall *Enabled* {FE8E2D43-819C-565F-AE37-FFAE536AD59B}
SP: AntiVir Desktop *Disabled/Updated* {B26E7DCD-42F4-63E1-0D2C-6273CF1DCF0A}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
D:\install.exe
.
.
((((((((((((((((((((((((( Files Created from 2011-02-09 to 2011-03-09 )))))))))))))))))))))))))))))))
.
.
2011-03-09 18:22 . 2011-03-09 18:22 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-03-09 06:00 . 2011-03-09 06:00 -------- d-----w- c:\windows\system32\Wat
2011-03-08 21:37 . 2009-09-10 05:52 257024 ----a-w- c:\windows\system32\msv1_0.dll
2011-03-08 21:29 . 2009-11-25 11:47 99176 ----a-w- c:\windows\system32\PresentationHostProxy.dll
2011-03-08 21:29 . 2009-11-25 11:47 49472 ----a-w- c:\windows\system32\netfxperf.dll
2011-03-08 21:29 . 2009-11-25 11:47 297808 ----a-w- c:\windows\system32\mscoree.dll
2011-03-08 21:29 . 2009-11-25 11:47 295264 ----a-w- c:\windows\system32\PresentationHost.exe
2011-03-08 21:29 . 2009-11-25 11:47 1130824 ----a-w- c:\windows\system32\dfshim.dll
2011-03-08 21:01 . 2010-02-11 07:10 293376 ----a-w- c:\windows\system32\browserchoice.exe
2011-03-08 20:55 . 2010-03-04 03:57 190976 ----a-w- c:\windows\system32\drivers\ks.sys
2011-03-08 20:53 . 2010-09-14 06:07 276992 ----a-w- c:\windows\system32\wcncsvc.dll
2011-03-08 18:40 . 2011-03-08 18:41 -------- d-----w- c:\program files\TeamSpeak 3 Client
2011-03-08 18:28 . 2011-03-08 18:28 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2011-03-08 18:26 . 2005-05-26 14:34 2297552 ----a-w- c:\windows\system32\d3dx9_26.dll
2011-03-08 18:22 . 2011-03-08 19:52 138696 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2011-03-08 18:22 . 2011-03-08 19:51 201816 ----a-w- c:\windows\system32\PnkBstrB.exe
2011-03-08 18:22 . 2011-03-08 18:22 66872 ----a-w- c:\windows\system32\PnkBstrA.exe
2011-03-08 18:22 . 2011-03-08 18:22 2250024 ----a-w- c:\windows\system32\pbsvc.exe
2011-03-08 16:38 . 2011-03-08 16:38 -------- d-----w- c:\program files\Kerio
2011-03-08 16:27 . 2010-10-19 08:10 7680 ----a-w- c:\program files\Internet Explorer\iecompat.dll
2011-03-08 16:27 . 2009-08-29 06:57 34816 ----a-w- c:\windows\system32\msasn1.dll
2011-03-08 16:26 . 2010-12-18 05:29 541184 ----a-w- c:\windows\system32\kerberos.dll
2011-03-08 16:25 . 2010-06-29 04:57 4247040 ----a-w- c:\program files\Windows NT\Accessories\wordpad.exe
2011-03-08 16:25 . 2010-06-29 05:02 1413632 ----a-w- c:\windows\system32\ole32.dll
2011-03-08 16:25 . 2010-06-14 06:12 1286016 ----a-w- c:\windows\system32\drivers\tcpip.sys
2011-03-08 16:18 . 2010-10-27 04:32 2048 ----a-w- c:\windows\system32\tzres.dll
2011-03-08 16:17 . 2010-08-04 06:18 641536 ----a-w- c:\windows\system32\CPFilters.dll
2011-03-08 16:17 . 2010-08-04 06:17 417792 ----a-w- c:\windows\system32\msdri.dll
2011-03-08 16:17 . 2010-08-04 06:15 204288 ----a-w- c:\windows\system32\MSNP.ax
2011-03-08 16:17 . 2010-08-04 06:15 199680 ----a-w- c:\windows\system32\mpg2splt.ax
2011-03-08 16:17 . 2009-12-13 09:30 465408 ----a-w- c:\windows\system32\psisdecd.dll
2011-03-08 16:16 . 2011-01-05 03:37 2329088 ----a-w- c:\windows\system32\win32k.sys
2011-03-08 16:16 . 2010-08-21 05:36 224256 ----a-w- c:\windows\system32\schannel.dll
2011-03-08 16:16 . 2010-11-02 04:41 351232 ----a-w- c:\windows\system32\wmicmiplugin.dll
2011-03-08 16:16 . 2010-11-02 04:40 496128 ----a-w- c:\windows\system32\taskschd.dll
2011-03-08 16:16 . 2010-11-02 04:40 305152 ----a-w- c:\windows\system32\taskcomp.dll
2011-03-08 16:16 . 2010-11-02 04:39 749056 ----a-w- c:\windows\system32\schedsvc.dll
2011-03-08 16:16 . 2010-11-02 04:34 192000 ----a-w- c:\windows\system32\taskeng.exe
2011-03-08 16:16 . 2010-11-02 04:34 179712 ----a-w- c:\windows\system32\schtasks.exe
2011-03-08 16:15 . 2009-12-11 07:44 133720 ----a-w- c:\windows\system32\drivers\ksecpkg.sys
2011-03-08 16:15 . 2009-12-11 07:38 1037312 ----a-w- c:\windows\system32\lsasrv.dll
2011-03-08 16:15 . 2010-06-19 06:23 37376 ----a-w- c:\windows\system32\rtutils.dll
2011-03-08 16:15 . 2010-03-04 07:33 1619968 ----a-w- c:\program files\Windows Mail\msoe.dll
2011-03-08 16:15 . 2010-03-04 07:33 740864 ----a-w- c:\windows\system32\inetcomm.dll
2011-03-08 16:13 . 2010-10-16 04:34 573440 ----a-w- c:\windows\system32\odbc32.dll
2011-03-08 16:13 . 2010-10-16 04:33 372736 ----a-w- c:\program files\Common Files\System\ado\msadox.dll
2011-03-08 16:13 . 2010-10-16 04:33 352256 ----a-w- c:\program files\Common Files\System\ado\msadomd.dll
2011-03-08 16:13 . 2010-10-16 04:33 987136 ----a-w- c:\program files\Common Files\System\ado\msado15.dll
2011-03-08 16:13 . 2010-10-16 04:33 208896 ----a-w- c:\program files\Common Files\System\msadc\msadco.dll
2011-03-08 16:13 . 2009-09-03 07:04 1320960 ----a-w- c:\windows\system32\CertEnroll.dll
2011-03-08 16:13 . 2009-08-19 07:20 442920 ----a-w- c:\windows\system32\winresume.exe
2011-03-08 16:13 . 2009-08-19 07:20 507568 ----a-w- c:\windows\system32\winload.exe
2011-03-08 16:13 . 2010-03-05 07:42 67584 ----a-w- c:\windows\system32\asycfilt.dll
2011-03-08 16:13 . 2010-08-21 05:33 530432 ----a-w- c:\windows\system32\comctl32.dll
2011-03-08 16:12 . 2011-01-05 05:37 428032 ----a-w- c:\windows\system32\vbscript.dll
2011-03-08 16:11 . 2010-09-01 04:26 164864 ----a-w- c:\program files\Windows Media Player\wmplayer.exe
2011-03-08 16:11 . 2010-09-01 04:23 12625408 ----a-w- c:\windows\system32\wmploc.DLL
2011-03-08 16:10 . 2010-07-13 05:22 26504 ----a-w- c:\windows\system32\drivers\Diskdump.sys
2011-03-08 16:02 . 2010-02-27 07:32 221696 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2011-03-08 16:02 . 2010-02-27 07:32 95744 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2011-03-08 16:02 . 2010-02-27 07:32 123392 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2011-03-08 15:59 . 2010-10-16 04:41 101760 ----a-w- c:\windows\system32\consent.exe
2011-03-08 15:57 . 2010-08-27 05:46 168448 ----a-w- c:\windows\system32\srvsvc.dll
2011-03-08 15:57 . 2010-08-27 03:31 310784 ----a-w- c:\windows\system32\drivers\srv.sys
2011-03-08 15:57 . 2010-08-27 03:30 308736 ----a-w- c:\windows\system32\drivers\srv2.sys
2011-03-08 15:57 . 2010-08-27 03:30 113664 ----a-w- c:\windows\system32\drivers\srvnet.sys
2011-03-08 15:57 . 2010-10-27 04:43 3901824 ----a-w- c:\windows\system32\ntoskrnl.exe
2011-03-08 15:57 . 2010-10-27 04:43 3957120 ----a-w- c:\windows\system32\ntkrnlpa.exe
2011-03-08 15:57 . 2010-10-27 04:40 1289536 ----a-w- c:\windows\system32\ntdll.dll
2011-03-08 15:17 . 2011-02-23 08:35 5943120 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{E255DB4D-C8DF-42E7-9593-6FD9AA09E555}\mpengine.dll
2011-03-08 15:15 . 2011-02-03 05:45 219008 ----a-w- c:\windows\system32\drivers\dxgmms1.sys
2011-03-08 15:15 . 2010-11-02 04:46 728448 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2011-03-08 15:15 . 2010-11-02 04:23 107520 ----a-w- c:\windows\system32\cdd.dll
2011-03-07 21:18 . 2011-03-07 21:18 -------- d-----w- c:\program files\The KMPlayer
2011-03-07 19:03 . 2011-03-07 19:03 -------- d-----w- c:\program files\Alcohol Soft
2011-03-07 18:57 . 2011-03-08 20:51 -------- d-----w- c:\programdata\Tunngle
2011-03-07 18:56 . 2009-09-16 06:02 27136 ----a-w- c:\windows\system32\drivers\tap0901t.sys
2011-03-07 18:56 . 2011-03-07 18:58 -------- d-----w- c:\program files\Tunngle
2011-03-07 18:56 . 2011-03-07 18:56 721904 ----a-w- c:\windows\system32\drivers\sptd.sys
2011-03-07 18:31 . 2011-03-07 18:31 -------- d-----w- c:\program files\My Company Name
2011-03-07 18:29 . 2011-03-07 18:29 -------- d-----w- c:\programdata\ATI
2011-03-07 18:27 . 2011-03-07 18:27 -------- d-----w- c:\program files\Common Files\ATI Technologies
2011-03-07 18:22 . 2011-03-07 18:22 -------- d-----w- c:\program files\ATI
2011-03-07 18:22 . 2011-03-07 18:29 -------- d-----w- c:\program files\ATI Technologies
2011-03-07 18:20 . 2011-03-08 19:40 -------- d-sh--w- c:\windows\Installer
2011-03-07 17:55 . 2008-03-19 02:54 151552 ------r- c:\windows\system32\xRaidAPI.dll
2011-03-07 17:55 . 2011-03-07 17:55 -------- d-----w- C:\RaidTool
2011-03-07 17:55 . 2007-11-19 03:28 1966080 ------r- c:\windows\system32\xRaidSetup.exe
2011-03-07 17:55 . 2008-07-31 02:21 79960 ----a-w- c:\windows\system32\drivers\jraid.sys
2011-03-07 17:55 . 2011-03-07 17:55 -------- d-----w- c:\windows\RaidTool
2011-03-07 17:48 . 2011-03-07 17:48 319488 ----a-w- c:\windows\HideWin.exe
2011-03-07 17:48 . 2008-07-15 05:58 524288 ------r- c:\windows\RtlExUpd.dll
2011-03-07 17:42 . 2011-03-07 17:42 -------- d-----w- c:\program files\Intel
2011-03-07 17:42 . 2008-07-16 08:05 53248 ----a-r- c:\windows\system32\CSVer.dll
2011-03-07 17:41 . 2011-03-07 17:41 -------- d-----w- C:\Intel
2011-03-07 17:41 . 2008-05-02 14:08 146528 ----a-w- c:\windows\system32\dvmurl.dll
2011-03-07 17:41 . 2011-03-07 17:41 -------- d-----w- c:\program files\Browser Configuration Utility
2011-03-07 17:40 . 2011-03-07 17:40 -------- d-----w- c:\program files\GIGABYTE
2011-03-07 17:39 . 2011-03-08 19:42 -------- d--h--w- c:\program files\InstallShield Installation Information
2011-03-07 17:38 . 2011-03-07 18:21 -------- d-----w- c:\program files\Common Files\InstallShield
2011-03-07 17:37 . 2011-03-09 17:58 16608 ----a-w- c:\windows\gdrv.sys
2011-03-07 17:20 . 2011-02-02 16:11 222080 ------w- c:\windows\system32\MpSigStub.exe
2011-03-07 17:00 . 2011-03-07 17:00 -------- d-----w- c:\program files\CCleaner
2011-03-07 16:59 . 2011-03-07 16:59 -------- d-----w- c:\programdata\SUPERAntiSpyware.com
2011-03-07 16:58 . 2011-03-07 16:59 -------- d-----w- c:\program files\SUPERAntiSpyware
2011-03-07 16:57 . 2011-03-07 16:57 -------- d-----w- c:\programdata\Malwarebytes
2011-03-07 16:57 . 2010-12-20 17:09 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-03-07 16:57 . 2011-03-07 16:57 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-03-07 16:57 . 2010-12-20 17:08 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-03-07 16:22 . 2009-12-29 06:55 172032 ----a-w- c:\windows\system32\wintrust.dll
2011-03-07 16:22 . 2010-01-09 06:52 132608 ----a-w- c:\windows\system32\cabview.dll
2011-03-07 16:22 . 2011-03-07 16:22 -------- d--h--w- c:\windows\AxInstSV
2011-03-07 16:14 . 2011-03-09 06:02 -------- d-----w- c:\windows\system32\wbem\Performance
2011-03-07 16:14 . 2011-03-07 16:18 -------- d-----w- c:\users\Pitkes
2011-03-07 15:55 . 2011-03-07 15:55 0 ----a-w- c:\windows\ativpsrm.bin
2011-03-07 15:43 . 2011-03-07 16:14 -------- d-----w- c:\windows\Panther
2011-03-07 15:43 . 2011-03-07 15:43 -------- d-----w- C:\Boot
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SUPERAntiSpyware"="c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2011-02-18 2423752]
"Google Update"="c:\users\Pitkes\AppData\Local\Google\Update\GoogleUpdate.exe" [2011-03-07 136176]
"AlcoholAutomount"="c:\program files\Alcohol Soft\Alcohol 120\axcmd.exe" [2009-04-24 203928]
"WrCtrl"="c:\program files\Kerio\WinRoute Firewall\wrctrl.exe" [2009-10-26 138600]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="RtHDVCpl.exe" [2008-07-24 6265376]
"Skytel"="Skytel.exe" [2008-07-24 1833504]
"JMB36X IDE Setup"="c:\windows\RaidTool\xInsIDE.exe" [2007-03-20 36864]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2008-01-21 61440]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2011-01-10 281768]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2011-03-08 1343400]
S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2011-03-07 721904]
S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV.SYS [2010-02-17 12872]
S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [2010-05-10 67656]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2009-08-18 176128]
S2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [2011-01-10 135336]
S2 GEST Service;GEST Service for program management.;c:\program files\GIGABYTE\EnergySaver\GSvr.exe [2008-08-08 80392]
S2 TunngleService;TunngleService;c:\program files\Tunngle\TnglCtrl.exe [2010-11-22 718072]
S2 WinRoute;Kerio WinRoute Firewall;c:\program files\Kerio\WinRoute Firewall\winroute.exe [2009-10-26 5605840]
S3 kvnet;Kerio Virtual Network Adapter;c:\windows\system32\DRIVERS\kvnet.sys [2009-03-23 26624]
S3 kwflower;Kerio WinRoute Firewall Driver - Lower Layer;c:\windows\system32\DRIVERS\kwflower.sys [2009-06-12 100864]
S3 kwfupper;Kerio WinRoute Firewall Driver - Upper Layer;c:\windows\system32\DRIVERS\kwfupper.sys [2009-10-26 122928]
S3 RTL8167;Ovladač Realtek 8167 NT;c:\windows\system32\DRIVERS\Rt86win7.sys [2009-07-13 139776]
S3 tap0901t;TAP-Win32 Adapter V9 (Tunngle);c:\windows\system32\DRIVERS\tap0901t.sys [2009-09-16 27136]
.
.
Contents of the 'Scheduled Tasks' folder
.
2011-03-08 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2322698403-2926668765-3381319243-1001Core.job
- c:\users\Pitkes\AppData\Local\Google\Update\GoogleUpdate.exe [2011-03-07 17:05]
.
2011-03-09 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2322698403-2926668765-3381319243-1001UA.job
- c:\users\Pitkes\AppData\Local\Google\Update\GoogleUpdate.exe [2011-03-07 17:05]
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Completion time: 2011-03-09 19:26:50
ComboFix-quarantined-files.txt 2011-03-09 18:26
.
Pre-Run: Volných bajtů: 96 807 313 408
Post-Run: Volných bajtů: 96 931 012 608
.
- - End Of File - - 45AC1851A8837DB77F91A85B00AEF5D7