Stránka 1 z 2

Pomalý PC

Napsal: 27 črc 2011 10:41
od daveing
Mám tu problémy s PC, zdá se strašně pomalý, tak se chci zeptat, jestli nejni něco v nepořádku. Posílám log z HJT



Logfile of random's system information tool 1.09 (written by random/random)
Run by Abo at 2011-07-27 11:39:37
Microsoft Windows 7 Ultimate
System drive C: has 94 GB (39%) free of 238 GB
Total RAM: 2048 MB (58% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:39:54, on 27.7.2011
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16800)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\IObit\Smart Defrag 2\SmartDefrag.exe
C:\Program Files\IObit\Advanced SystemCare 4\PMonitor.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\Seznam.cz\postak.exe
C:\Program Files\IObit\Advanced SystemCare 4\ASCTray.exe
C:\Users\Abo\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Abo\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\rundll32.exe
C:\Users\Abo\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Users\Abo\Downloads\RSIT.exe
C:\Program Files\trend micro\Abo.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.qooqlle.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: IObit Toolbar - {0BDA0769-FD72-49F4-9266-E1FB004F4D8F} - C:\Program Files\IObit Toolbar\IE\4.5\iobitToolbarIE.dll
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - (no file)
R3 - URLSearchHook: DVDVideoSoftTB Toolbar - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\tbDVDV.dll
O2 - BHO: IObit Toolbar - {0BDA0769-FD72-49F4-9266-E1FB004F4D8F} - C:\Program Files\IObit Toolbar\IE\4.5\iobitToolbarIE.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: DVDVideoSoftTB Toolbar - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\tbDVDV.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Ukazatel S-Rank - {EA837F48-5AD1-443E-AE34-FFE03CBF3099} - C:\Program Files\Seznam.cz\core.2.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4FE6-8A56-BBB695989046} - (no file)
O3 - Toolbar: DVDVideoSoftTB Toolbar - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\tbDVDV.dll
O3 - Toolbar: IObit Toolbar - {0BDA0769-FD72-49F4-9266-E1FB004F4D8F} - C:\Program Files\IObit Toolbar\IE\4.5\iobitToolbarIE.dll
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [SearchSettings] "C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe"
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [IgfxTraySound] %appdata%\igfxtray.exe
O4 - HKCU\..\Run: [Google Update] "C:\Users\Abo\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Seznam Postak] "C:\Program Files\Seznam.cz\postak.exe" -s
O4 - HKCU\..\Run: [Advanced SystemCare 4] "C:\Program Files\IObit\Advanced SystemCare 4\ASCTray.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [FlashPlayerUpdate] C:\Windows\system32\Macromed\Flash\FlashUtil10l_ActiveX.exe -update activex (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [FlashPlayerUpdate] C:\Windows\system32\Macromed\Flash\FlashUtil10l_ActiveX.exe -update activex (User 'Default user')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube to Mp3 Converter - C:\Users\Abo\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
O8 - Extra context menu item: Save YouTube Video as MP3 - res://C:\Program Files\Common Files\DVDVideoSoft\Dll\IEContextMenuY.dll/scriptY2MP3.htm
O9 - Extra button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe (file missing)
O9 - Extra 'Tools' menuitem: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe (file missing)
O9 - Extra button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe (file missing)
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe (file missing)
O16 - DPF: {C8BC46C7-921C-4102-B67D-F1F7E65FB0BE} (Battlefield Play4Free Updater) - https://battlefield.play4free.com/stati ... 0.53.2.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Advanced SystemCare Service (AdvancedSystemCareService) - IObit - C:\Program Files\IObit\Advanced SystemCare 4\ASCService.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Application Updater - Spigot, Inc. - C:\Program Files\Application Updater\ApplicationUpdater.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe (file missing)
O23 - Service: IMF Service (IMFservice) - IObit - C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\Windows\system32\PnkBstrB.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe

--
End of file - 9621 bytes

======Scheduled tasks folder======

C:\Windows\tasks\GlaryInitialize.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-4142620768-599012093-3301461170-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-4142620768-599012093-3301461170-1000UA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0BDA0769-FD72-49F4-9266-E1FB004F4D8F}]
IObit Toolbar - C:\Program Files\IObit Toolbar\IE\4.5\iobitToolbarIE.dll [2011-06-24 734048]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{872b5b88-9db5-4310-bdd0-ac189557e5f5}]
DVDVideoSoftTB Toolbar - C:\Program Files\DVDVideoSoftTB\tbDVDV.dll [2010-04-27 2393184]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-02-08 804136]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-01-09 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA837F48-5AD1-443E-AE34-FFE03CBF3099}]
Ukazatel S-Rank - C:\Program Files\Seznam.cz\core.2.dll [2010-03-01 1107608]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll [2010-03-25 968000]
{855F3B16-6D32-4FE6-8A56-BBB695989046} -
{872b5b88-9db5-4310-bdd0-ac189557e5f5} - DVDVideoSoftTB Toolbar - C:\Program Files\DVDVideoSoftTB\tbDVDV.dll [2010-04-27 2393184]
{0BDA0769-FD72-49F4-9266-E1FB004F4D8F} - IObit Toolbar - C:\Program Files\IObit Toolbar\IE\4.5\iobitToolbarIE.dll [2011-06-24 734048]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"WinampAgent"=C:\Program Files\Winamp\winampa.exe [2010-06-28 74752]
"avast5"=C:\Program Files\Alwil Software\Avast5\avastUI.exe [2011-07-04 3493720]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-03-30 937920]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2010-09-08 421888]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-02-18 248040]
"AdobeAAMUpdater-1.0"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
"SearchSettings"=C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe [2011-06-24 534880]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2010-07-28 9398888]
"IgfxTraySound"=C:\Users\Abo\AppData\Roaming\igfxtray.exe [2011-07-26 6782976]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\Abo\AppData\Local\Google\Update\GoogleUpdate.exe [2010-09-23 136176]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2010-04-01 357696]
"Seznam Postak"=C:\Program Files\Seznam.cz\postak.exe [2010-03-01 451224]
"Advanced SystemCare 4"=C:\Program Files\IObit\Advanced SystemCare 4\ASCTray.exe [2011-05-28 412560]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files\BitTorrent\bittorrent.exe"="C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"vidc.tscc"=tsccvid.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2011-07-27 11:39:37 ----D---- C:\rsit
2011-07-27 11:39:37 ----D---- C:\Program Files\trend micro
2011-07-26 22:54:05 ----A---- C:\Users\Abo\AppData\Roaming\igfxtray.exe
2011-07-26 11:23:14 ----A---- C:\Windows\system32\winsrv.dll
2011-07-26 11:23:14 ----A---- C:\Windows\system32\conhost.exe
2011-07-26 11:22:36 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2011-07-26 11:22:36 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2011-07-26 11:22:36 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2011-07-26 11:22:36 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2011-07-26 11:22:36 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2011-07-26 11:22:36 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2011-07-26 11:22:36 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2011-07-26 11:22:36 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2011-07-26 11:22:36 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2011-07-26 11:22:36 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2011-07-26 11:22:36 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2011-07-26 11:22:36 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2011-07-26 11:22:36 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2011-07-26 11:22:36 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2011-07-26 11:22:36 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2011-07-26 11:22:36 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2011-07-26 11:22:36 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2011-07-26 11:22:36 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2011-07-26 11:22:36 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2011-07-26 11:22:36 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2011-07-26 11:22:36 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2011-07-26 11:22:36 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2011-07-26 11:22:36 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2011-07-26 11:22:36 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2011-07-26 11:22:36 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2011-07-26 11:22:36 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2011-07-26 11:22:36 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2011-07-26 11:22:36 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2011-07-26 11:22:36 ----A---- C:\Windows\system32\KernelBase.dll
2011-07-26 11:22:36 ----A---- C:\Windows\system32\kernel32.dll
2011-07-26 11:22:01 ----A---- C:\Windows\system32\win32k.sys
2011-07-26 11:21:31 ----A---- C:\Windows\system32\umpnpmgr.dll
2011-07-26 11:21:00 ----A---- C:\Windows\system32\tquery.dll
2011-07-26 11:21:00 ----A---- C:\Windows\system32\SearchIndexer.exe
2011-07-26 11:21:00 ----A---- C:\Windows\system32\SearchFilterHost.exe
2011-07-26 11:21:00 ----A---- C:\Windows\system32\mssph.dll
2011-07-26 11:21:00 ----A---- C:\Windows\system32\msscntrs.dll
2011-07-26 11:20:59 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2011-07-26 11:20:59 ----A---- C:\Windows\system32\mssvp.dll
2011-07-26 11:20:59 ----A---- C:\Windows\system32\mssrch.dll
2011-07-26 11:20:59 ----A---- C:\Windows\system32\mssphtb.dll
2011-07-26 11:19:54 ----A---- C:\Windows\system32\d3d10_1.dll
2011-07-26 11:19:22 ----A---- C:\Windows\system32\wininet.dll
2011-07-26 11:19:22 ----A---- C:\Windows\system32\urlmon.dll
2011-07-26 11:19:22 ----A---- C:\Windows\system32\mstime.dll
2011-07-26 11:19:22 ----A---- C:\Windows\system32\mshtmled.dll
2011-07-26 11:19:22 ----A---- C:\Windows\system32\mshtml.dll
2011-07-26 11:19:22 ----A---- C:\Windows\system32\msfeedssync.exe
2011-07-26 11:19:22 ----A---- C:\Windows\system32\msfeedsbs.dll
2011-07-26 11:19:22 ----A---- C:\Windows\system32\msfeeds.dll
2011-07-26 11:19:22 ----A---- C:\Windows\system32\licmgr10.dll
2011-07-26 11:19:22 ----A---- C:\Windows\system32\jsproxy.dll
2011-07-26 11:19:22 ----A---- C:\Windows\system32\ieui.dll
2011-07-26 11:19:22 ----A---- C:\Windows\system32\iertutil.dll
2011-07-26 11:19:22 ----A---- C:\Windows\system32\iepeers.dll
2011-07-26 11:19:22 ----A---- C:\Windows\system32\ieframe.dll
2011-07-26 11:19:22 ----A---- C:\Windows\system32\iedkcs32.dll
2011-07-26 11:18:13 ----A---- C:\Windows\system32\drivers\srvnet.sys
2011-07-26 11:18:13 ----A---- C:\Windows\system32\drivers\srv2.sys
2011-07-26 11:18:13 ----A---- C:\Windows\system32\drivers\srv.sys
2011-07-26 11:17:46 ----A---- C:\Windows\system32\drivers\dfsc.sys
2011-07-26 11:17:21 ----A---- C:\Windows\system32\drivers\tcpip.sys
2011-07-26 11:17:21 ----A---- C:\Windows\system32\drivers\afd.sys
2011-07-26 11:16:54 ----A---- C:\Windows\system32\oleaut32.dll
2011-07-26 11:15:26 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2011-07-26 11:15:26 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2011-07-26 11:15:26 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2011-07-26 11:14:59 ----A---- C:\Windows\system32\inetcomm.dll
2011-07-26 11:14:34 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2011-07-26 11:14:09 ----A---- C:\Windows\system32\ntoskrnl.exe
2011-07-26 11:14:09 ----A---- C:\Windows\system32\ntkrnlpa.exe
2011-07-26 11:13:43 ----A---- C:\Windows\system32\XpsPrint.dll
2011-07-26 11:13:19 ----A---- C:\Windows\system32\prevhost.exe
2011-07-26 11:12:55 ----A---- C:\Windows\explorer.exe
2011-07-26 11:12:30 ----A---- C:\Windows\system32\dnsrslvr.dll
2011-07-26 11:12:30 ----A---- C:\Windows\system32\dnscacheugc.exe
2011-07-26 11:12:30 ----A---- C:\Windows\system32\dnsapi.dll
2011-07-26 11:12:05 ----A---- C:\Windows\system32\vbscript.dll
2011-07-26 11:12:05 ----A---- C:\Windows\system32\jscript.dll
2011-07-26 11:11:40 ----A---- C:\Windows\system32\atmlib.dll
2011-07-26 11:11:40 ----A---- C:\Windows\system32\atmfd.dll
2011-07-26 11:10:53 ----A---- C:\Windows\system32\FXSCOVER.exe
2011-07-26 11:10:29 ----A---- C:\Windows\system32\drivers\bowser.sys
2011-07-26 11:10:04 ----A---- C:\Windows\system32\mfc42u.dll
2011-07-26 11:10:04 ----A---- C:\Windows\system32\mfc42.dll
2011-07-26 11:09:39 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2011-07-26 11:09:16 ----A---- C:\Windows\system32\FntCache.dll
2011-07-26 11:09:16 ----A---- C:\Windows\system32\DWrite.dll
2011-07-26 11:09:16 ----A---- C:\Windows\system32\d2d1.dll
2011-07-26 11:08:52 ----A---- C:\Windows\system32\mstscax.dll
2011-07-26 11:08:52 ----A---- C:\Windows\system32\mstsc.exe
2011-07-26 11:08:28 ----A---- C:\Windows\system32\sbe.dll
2011-07-26 11:08:28 ----A---- C:\Windows\system32\EncDec.dll
2011-07-26 11:08:28 ----A---- C:\Windows\system32\CPFilters.dll
2011-07-26 11:08:02 ----A---- C:\Windows\system32\ntdll.dll
2011-07-26 11:07:16 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2011-07-26 11:07:16 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2011-07-26 11:07:16 ----A---- C:\Windows\system32\cdd.dll
2011-07-26 11:06:52 ----A---- C:\Windows\system32\XpsRasterService.dll
2011-07-26 11:06:52 ----A---- C:\Windows\system32\WMVDECOD.DLL
2011-07-26 11:06:52 ----A---- C:\Windows\system32\mfreadwrite.dll
2011-07-26 11:06:52 ----A---- C:\Windows\system32\mf.dll
2011-07-26 11:06:52 ----A---- C:\Windows\system32\ExplorerFrame.dll
2011-07-26 11:06:52 ----A---- C:\Windows\system32\d3d10warp.dll
2011-07-26 11:06:52 ----A---- C:\Windows\system32\d3d10_1core.dll
2011-07-26 11:06:24 ----A---- C:\Windows\system32\wcncsvc.dll
2011-07-26 11:06:01 ----A---- C:\Windows\system32\wscsvc.dll
2011-07-26 11:06:01 ----A---- C:\Windows\system32\wscapi.dll
2011-07-26 11:06:01 ----A---- C:\Windows\system32\winhttp.dll
2011-07-26 11:06:01 ----A---- C:\Windows\system32\WebClnt.dll
2011-07-26 11:06:01 ----A---- C:\Windows\system32\upnp.dll
2011-07-26 11:06:01 ----A---- C:\Windows\system32\slwga.dll
2011-07-26 11:06:01 ----A---- C:\Windows\system32\msxml6.dll
2011-07-26 11:06:01 ----A---- C:\Windows\system32\msxml3.dll
2011-07-26 11:06:01 ----A---- C:\Windows\system32\davclnt.dll
2011-07-26 11:05:36 ----A---- C:\Windows\system32\kerberos.dll
2011-07-26 11:05:17 ----A---- C:\Windows\system32\odbc32.dll
2011-07-26 11:04:53 ----A---- C:\Windows\system32\tzres.dll
2011-07-26 11:04:33 ----A---- C:\Windows\system32\t2embed.dll
2011-07-26 11:04:17 ----A---- C:\Windows\system32\ole32.dll
2011-07-26 11:04:01 ----A---- C:\Windows\system32\mfc40u.dll
2011-07-26 11:04:01 ----A---- C:\Windows\system32\mfc40.dll
2011-07-26 11:03:45 ----A---- C:\Windows\system32\comctl32.dll
2011-07-26 11:03:29 ----A---- C:\Windows\system32\wmpmde.dll
2011-07-26 11:03:13 ----A---- C:\Windows\system32\schannel.dll
2011-07-26 11:02:58 ----A---- C:\Windows\system32\consent.exe
2011-07-26 11:02:27 ----A---- C:\Windows\system32\webio.dll
2011-07-26 11:02:12 ----A---- C:\Windows\system32\wmicmiplugin.dll
2011-07-26 11:02:12 ----A---- C:\Windows\system32\taskschd.dll
2011-07-26 11:02:12 ----A---- C:\Windows\system32\taskeng.exe
2011-07-26 11:02:12 ----A---- C:\Windows\system32\taskcomp.dll
2011-07-26 11:02:12 ----A---- C:\Windows\system32\schtasks.exe
2011-07-26 11:02:12 ----A---- C:\Windows\system32\schedsvc.dll
2011-07-26 11:01:18 ----A---- C:\Windows\system32\psisdecd.dll
2011-07-26 11:01:18 ----A---- C:\Windows\system32\msdri.dll
2011-07-26 11:00:34 ----A---- C:\Windows\system32\wmploc.DLL
2011-07-26 11:00:34 ----A---- C:\Windows\system32\wmp.dll
2011-07-26 11:00:08 ----A---- C:\Windows\system32\srvsvc.dll
2011-07-26 10:59:41 ----A---- C:\Windows\system32\StructuredQuery.dll
2011-07-26 10:59:18 ----A---- C:\Windows\system32\drivers\ks.sys
2011-07-26 10:58:48 ----A---- C:\Windows\system32\spoolsv.exe
2011-07-26 10:57:54 ----A---- C:\Windows\system32\rtutils.dll
2011-07-26 10:57:34 ----A---- C:\Windows\system32\ir32_32.dll
2011-07-26 10:57:34 ----A---- C:\Windows\system32\iccvid.dll
2011-07-26 10:57:16 ----A---- C:\Windows\system32\shell32.dll
2011-07-26 10:56:54 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2011-07-26 10:56:54 ----A---- C:\Windows\system32\PresentationHost.exe
2011-07-26 10:56:54 ----A---- C:\Windows\system32\netfxperf.dll
2011-07-26 10:56:54 ----A---- C:\Windows\system32\mscoree.dll
2011-07-26 10:56:54 ----A---- C:\Windows\system32\dfshim.dll
2011-07-26 10:55:44 ----A---- C:\Windows\system32\asycfilt.dll
2011-07-26 10:55:06 ----A---- C:\Windows\system32\lsasrv.dll
2011-07-26 10:55:06 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2011-07-26 10:54:48 ----A---- C:\Windows\system32\drivers\sffp_sd.sys
2011-07-26 10:54:33 ----A---- C:\Windows\system32\drivers\fvevol.sys
2011-07-26 10:54:18 ----A---- C:\Windows\system32\browserchoice.exe
2011-07-26 10:54:07 ----A---- C:\Windows\system32\wintrust.dll
2011-07-26 10:53:51 ----A---- C:\Windows\system32\cabview.dll
2011-07-26 10:53:40 ----A---- C:\Windows\system32\apphelp.dll
2011-07-26 10:53:16 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2011-07-26 10:53:16 ----A---- C:\Windows\system32\secproc_ssp.dll
2011-07-26 10:53:16 ----A---- C:\Windows\system32\secproc_isv.dll
2011-07-26 10:53:16 ----A---- C:\Windows\system32\secproc.dll
2011-07-26 10:53:16 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2011-07-26 10:53:16 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2011-07-26 10:53:16 ----A---- C:\Windows\system32\RMActivate_isv.exe
2011-07-26 10:53:16 ----A---- C:\Windows\system32\RMActivate.exe
2011-07-26 10:53:04 ----A---- C:\Windows\system32\tsbyuv.dll
2011-07-26 10:53:04 ----A---- C:\Windows\system32\quartz.dll
2011-07-26 10:53:04 ----A---- C:\Windows\system32\msyuv.dll
2011-07-26 10:53:04 ----A---- C:\Windows\system32\msvidc32.dll
2011-07-26 10:53:04 ----A---- C:\Windows\system32\msrle32.dll
2011-07-26 10:53:04 ----A---- C:\Windows\system32\mciavi32.dll
2011-07-26 10:53:04 ----A---- C:\Windows\system32\iyuv_32.dll
2011-07-26 10:53:04 ----A---- C:\Windows\system32\avifil32.dll
2011-07-26 10:52:51 ----A---- C:\Windows\system32\winlogon.exe
2011-07-26 10:52:41 ----A---- C:\Windows\system32\drivers\usbhub.sys
2011-07-26 10:52:41 ----A---- C:\Windows\system32\drivers\usbehci.sys
2011-07-26 10:52:31 ----A---- C:\Windows\system32\fontsub.dll
2011-07-26 10:52:16 ----A---- C:\Windows\system32\msasn1.dll
2011-07-26 10:52:02 ----A---- C:\Windows\system32\msv1_0.dll
2011-07-26 10:51:42 ----A---- C:\Windows\system32\winresume.exe
2011-07-26 10:51:42 ----A---- C:\Windows\system32\winload.exe
2011-07-26 10:51:42 ----A---- C:\Windows\system32\CertEnroll.dll
2011-07-26 10:27:22 ----D---- C:\Program Files\Application Updater
2011-07-26 10:27:21 ----D---- C:\Program Files\IObit Toolbar
2011-07-26 10:27:21 ----D---- C:\Program Files\Common Files\Spigot
2011-07-26 10:12:29 ----D---- C:\Windows\system32\appmgmt
2011-07-25 21:45:18 ----D---- C:\Windows\UbiSoft
2011-07-25 20:12:59 ----A---- C:\Windows\IsUninst.exe
2011-07-25 20:08:08 ----D---- C:\Program Files\DOSBox-0.74
2011-07-25 18:54:58 ----A---- C:\Windows\system32\fmod.dll
2011-07-25 18:39:17 ----A---- C:\Windows\CoD.INI
2011-07-19 20:31:33 ----RHD---- C:\Users\Abo\AppData\Roaming\SecuROM
2011-07-19 20:25:54 ----D---- C:\Program Files\OpenAL

======List of files/folders modified in the last 1 month======

2011-07-27 11:39:53 ----D---- C:\Windows\Prefetch
2011-07-27 11:39:52 ----D---- C:\Windows\Temp
2011-07-27 11:39:37 ----RD---- C:\Program Files
2011-07-26 22:37:49 ----D---- C:\Users\Abo\AppData\Roaming\Winamp
2011-07-26 18:34:00 ----D---- C:\Windows\rescache
2011-07-26 13:55:24 ----D---- C:\Program Files\Google
2011-07-26 13:53:00 ----D---- C:\Ulead Photo Express 3.0 SE
2011-07-26 13:53:00 ----D---- C:\Program Files\Windows Media Player
2011-07-26 13:53:00 ----D---- C:\Program Files\QuickTime
2011-07-26 13:53:00 ----D---- C:\Program Files\Inkscape
2011-07-26 13:53:00 ----D---- C:\Program Files\Common Files\System
2011-07-26 13:53:00 ----D---- C:\Program Files\Common Files\microsoft shared
2011-07-26 13:53:00 ----D---- C:\Program Files\Alwil Software
2011-07-26 13:53:00 ----D---- C:\Counter-Strike Source
2011-07-26 13:37:14 ----RSD---- C:\Windows\assembly
2011-07-26 13:33:35 ----D---- C:\Windows\Microsoft.NET
2011-07-26 13:30:20 ----D---- C:\Windows\system32\config
2011-07-26 13:30:17 ----D---- C:\Windows\winsxs
2011-07-26 13:25:17 ----D---- C:\Windows\system32\Tasks
2011-07-26 13:15:55 ----D---- C:\Windows\System32
2011-07-26 13:15:54 ----RSD---- C:\Windows\Fonts
2011-07-26 13:15:54 ----D---- C:\Windows\system32\migration
2011-07-26 13:15:54 ----D---- C:\Windows\system32\drivers
2011-07-26 13:15:54 ----D---- C:\Program Files\Internet Explorer
2011-07-26 13:15:53 ----D---- C:\Windows
2011-07-26 13:15:49 ----D---- C:\Windows\system32\cs-CZ
2011-07-26 13:15:48 ----D---- C:\Windows\ehome
2011-07-26 13:15:48 ----D---- C:\Windows\AppPatch
2011-07-26 13:15:48 ----D---- C:\Program Files\Windows Mail
2011-07-26 13:15:47 ----D---- C:\Windows\inf
2011-07-26 13:15:44 ----D---- C:\Windows\system32\Boot
2011-07-26 13:15:42 ----D---- C:\Windows\system32\DriverStore
2011-07-26 13:13:13 ----D---- C:\Users\Abo\AppData\Roaming\DNA
2011-07-26 13:12:38 ----D---- C:\ProgramData\IObit
2011-07-26 11:25:12 ----SHD---- C:\Windows\Installer
2011-07-26 11:25:12 ----SHD---- C:\Config.Msi
2011-07-26 11:23:10 ----D---- C:\Windows\system32\catroot2
2011-07-26 11:23:10 ----D---- C:\Windows\system32\catroot
2011-07-26 10:57:12 ----SHD---- C:\System Volume Information
2011-07-26 10:50:51 ----D---- C:\Windows\Logs
2011-07-26 10:27:50 ----D---- C:\Users\Abo\AppData\Roaming\IObit
2011-07-26 10:27:44 ----D---- C:\Program Files\IObit
2011-07-26 10:27:21 ----D---- C:\Program Files\Common Files
2011-07-26 10:23:25 ----D---- C:\Windows\debug
2011-07-26 10:21:35 ----D---- C:\Users\Abo\AppData\Roaming\BitTorrent
2011-07-26 10:08:44 ----D---- C:\Windows\Tasks
2011-07-26 10:05:14 ----D---- C:\Program Files\DNA
2011-07-25 22:12:55 ----A---- C:\Windows\NeroDigital.ini
2011-07-25 16:09:00 ----HD---- C:\Program Files\InstallShield Installation Information
2011-07-25 16:06:35 ----HD---- C:\ProgramData
2011-07-25 16:06:24 ----A---- C:\Windows\system32\CmdLineExt.dll
2011-07-24 15:37:16 ----D---- C:\Users\Abo\AppData\Roaming\Skype
2011-07-24 14:51:33 ----D---- C:\Users\Abo\AppData\Roaming\skypePM
2011-07-20 00:54:22 ----A---- C:\Windows\BW7Dir.ini
2011-07-20 00:54:22 ----A---- C:\Windows\bw700.ini
2011-07-19 20:25:52 ----A---- C:\Windows\system32\wrap_oal.dll
2011-07-19 20:25:52 ----A---- C:\Windows\system32\OpenAL32.dll
2011-07-17 12:10:17 ----RD---- C:\Adam
2011-07-11 15:17:18 ----D---- C:\Users\Abo\AppData\Roaming\Bioshock2
2011-07-10 20:00:08 ----D---- C:\Program Files\JDownloader
2011-07-06 20:31:37 ----D---- C:\Users\Abo\AppData\Roaming\DVDVideoSoftIEHelpers
2011-07-06 20:31:32 ----D---- C:\Program Files\Common Files\DVDVideoSoft
2011-07-04 13:43:51 ----A---- C:\Windows\system32\aswBoot.exe
2011-07-01 17:45:57 ----A---- C:\Windows\system32\PerfStringBackup.INI

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 173648]
R0 SmartDefragDriver;SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [2011-02-23 16184]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-09-23 691696]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2011-07-04 25432]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2011-07-04 441176]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2011-07-04 309848]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2011-07-04 43608]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 387584]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2011-07-04 19544]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2011-07-04 54104]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-05-27 5586432]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-05-27 209920]
R3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\AtiHdmi.sys [2010-05-06 108560]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2009-05-18 26600]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2010-07-28 3154920]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x32.sys [2009-07-14 347264]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 aimnyz5l;aimnyz5l; C:\Windows\system32\drivers\aimnyz5l.sys []
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\DRIVERS\amdagp.sys [2009-07-14 53312]
S3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-05-27 5586432]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2009-07-14 133120]
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 5632]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\DRIVERS\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 28224]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\DRIVERS\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 175824]
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 17920]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdvancedSystemCareService;Advanced SystemCare Service; C:\Program Files\IObit\Advanced SystemCare 4\ASCService.exe [2011-05-28 353168]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2010-05-27 176128]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2010-08-13 144672]
R2 Application Updater;Application Updater; C:\Program Files\Application Updater\ApplicationUpdater.exe [2011-06-24 393112]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2011-07-04 42184]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2010-07-27 345376]
R2 IMFservice;IMF Service; C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe [2011-06-01 821080]
R2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [2008-06-08 877864]
R2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\Windows\system32\IoctlSvc.exe [2006-12-19 81920]
R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2011-06-27 75136]
R2 PnkBstrB;PnkBstrB; C:\Windows\system32\PnkBstrB.exe [2011-06-27 189248]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-03-26 136176]
S2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe []
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2011-03-26 136176]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2008-11-20 136120]
S3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2010-09-24 820008]
S3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2008-06-24 537896]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 SwitchBoard;SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S4 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S4 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]

-----------------EOF-----------------

Re: Pomalý PC

Napsal: 27 črc 2011 11:48
od Rudy
Vidím tam minimálně AdWare. Dejte log z ComboFix.
Stahnete a ulozte nejlepe na plochu ComboFix: http://download.bleepingcomputer.com/sUBs/ComboFix.exe

pote spustte aplikaci pod uctem s administratorskym opravnenim

hned po startu se zobrazi obrazovka s licencnimi podminkami, pokracujte kliknutim na tlacitko Ano.

v klidu si postavte na kafe (cela akce trva cca. 5-10 minut, nekdy i dele - dle toho, o jak rychly stroj se

jedna a kolika soubory se skener bude muset prodirat), behem skenu se nepokousejte spoustet zadne jine

aplikace ani nic jineho

behem skenovani nepropadejte panice, vas stroj muze byt restartovan (predevsim pri prvni aplikaci skeneru)

upozorneni: pokud pouzivate antispyware s rezidentnim stitem, prepnete jeho rezidentni stit do Install Mode,

pripadne jej po dobu skenu uplne deaktivujte, protoze dochazi pri skenu a vymazu pripadneho malware k

nezadoucim kolizim s rezidentem antispyware

Re: Pomalý PC

Napsal: 27 črc 2011 12:04
od daveing
tu je log.



ComboFix 11-07-27.01 - Abo 27.07.2011 12:55:22.1.2 - x86
Microsoft Windows 7 Ultimate 6.1.7600.0.1250.420.1029.18.2048.805 [GMT 2:00]
Spuštěný z: c:\users\Abo\Desktop\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Abo\AppData\Roaming\igfxtray.exe
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-06-27 do 2011-07-27 )))))))))))))))))))))))))))))))
.
.
2011-07-27 11:01 . 2011-07-27 11:01 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-07-27 10:49 . 2011-07-27 10:49 -------- d-----w- c:\programdata\Malwarebytes
2011-07-27 10:49 . 2011-07-06 17:52 41272 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-07-27 10:49 . 2011-07-06 17:52 22712 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-07-27 10:49 . 2011-07-27 10:49 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-07-27 09:39 . 2011-07-27 09:39 -------- d-----w- C:\rsit
2011-07-27 09:39 . 2011-07-27 09:39 -------- d-----w- c:\program files\trend micro
2011-07-26 20:54 . 2011-07-26 20:54 -------- d-----w- c:\users\Abo\AppData\Local\searchplugins
2011-07-26 09:23 . 2011-07-26 09:23 271872 ----a-w- c:\windows\system32\conhost.exe
2011-07-26 09:23 . 2011-07-26 09:23 169984 ----a-w- c:\windows\system32\winsrv.dll
2011-07-26 09:21 . 2011-07-26 09:21 294912 ----a-w- c:\windows\system32\umpnpmgr.dll
2011-07-26 09:21 . 2011-07-26 09:21 86528 ----a-w- c:\windows\system32\SearchFilterHost.exe
2011-07-26 09:21 . 2011-07-26 09:21 59392 ----a-w- c:\windows\system32\msscntrs.dll
2011-07-26 09:21 . 2011-07-26 09:21 428032 ----a-w- c:\windows\system32\SearchIndexer.exe
2011-07-26 09:21 . 2011-07-26 09:21 337408 ----a-w- c:\windows\system32\mssph.dll
2011-07-26 09:21 . 2011-07-26 09:21 1553920 ----a-w- c:\windows\system32\tquery.dll
2011-07-26 09:20 . 2011-07-26 09:21 1401856 ----a-w- c:\windows\system32\mssrch.dll
2011-07-26 09:20 . 2011-07-26 09:20 666624 ----a-w- c:\windows\system32\mssvp.dll
2011-07-26 09:20 . 2011-07-26 09:20 197120 ----a-w- c:\windows\system32\mssphtb.dll
2011-07-26 09:20 . 2011-07-26 09:20 164352 ----a-w- c:\windows\system32\SearchProtocolHost.exe
2011-07-26 09:18 . 2011-07-26 09:18 759296 ----a-w- c:\program files\Common Files\Microsoft Shared\VGX\VGX.dll
2011-07-26 09:18 . 2011-07-26 09:18 311296 ----a-w- c:\windows\system32\drivers\srv.sys
2011-07-26 09:18 . 2011-07-26 09:18 309760 ----a-w- c:\windows\system32\drivers\srv2.sys
2011-07-26 09:18 . 2011-07-26 09:18 114176 ----a-w- c:\windows\system32\drivers\srvnet.sys
2011-07-26 09:17 . 2011-07-26 09:17 78336 ----a-w- c:\windows\system32\drivers\dfsc.sys
2011-07-26 09:17 . 2011-07-26 09:17 338944 ----a-w- c:\windows\system32\drivers\afd.sys
2011-07-26 09:17 . 2011-07-26 09:17 1286016 ----a-w- c:\windows\system32\drivers\tcpip.sys
2011-07-26 09:16 . 2011-07-26 09:16 571904 ----a-w- c:\windows\system32\oleaut32.dll
2011-07-26 09:15 . 2011-07-26 09:15 96256 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2011-07-26 09:15 . 2011-07-26 09:15 222720 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2011-07-26 09:15 . 2011-07-26 09:15 123392 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2011-07-26 09:14 . 2011-07-26 09:14 740864 ----a-w- c:\windows\system32\inetcomm.dll
2011-07-26 09:14 . 2011-07-26 09:14 26496 ----a-w- c:\windows\system32\drivers\Diskdump.sys
2011-07-26 09:14 . 2011-07-26 09:14 3957632 ----a-w- c:\windows\system32\ntkrnlpa.exe
2011-07-26 09:14 . 2011-07-26 09:14 3901824 ----a-w- c:\windows\system32\ntoskrnl.exe
2011-07-26 09:13 . 2011-07-26 09:13 442880 ----a-w- c:\windows\system32\XpsPrint.dll
2011-07-26 09:13 . 2011-07-26 09:13 31232 ----a-w- c:\windows\system32\prevhost.exe
2011-07-26 09:12 . 2011-07-26 09:12 2614784 ----a-w- c:\windows\explorer.exe
2011-07-26 09:12 . 2011-07-26 09:12 28672 ----a-w- c:\windows\system32\dnscacheugc.exe
2011-07-26 09:12 . 2011-07-26 09:12 132608 ----a-w- c:\windows\system32\dnsrslvr.dll
2011-07-26 09:12 . 2011-07-26 09:12 428032 ----a-w- c:\windows\system32\vbscript.dll
2011-07-26 09:11 . 2011-07-26 09:11 34304 ----a-w- c:\windows\system32\atmlib.dll
2011-07-26 09:11 . 2011-07-26 09:11 294912 ----a-w- c:\windows\system32\atmfd.dll
2011-07-26 09:10 . 2011-07-26 09:10 191488 ----a-w- c:\windows\system32\FXSCOVER.exe
2011-07-26 09:10 . 2011-07-26 09:10 69632 ----a-w- c:\windows\system32\drivers\bowser.sys
2011-07-26 09:10 . 2011-07-26 09:10 1164288 ----a-w- c:\windows\system32\mfc42u.dll
2011-07-26 09:10 . 2011-07-26 09:10 1137664 ----a-w- c:\windows\system32\mfc42.dll
2011-07-26 09:09 . 2011-07-26 09:09 288256 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2011-07-26 09:09 . 2011-07-26 09:09 802304 ----a-w- c:\windows\system32\FntCache.dll
2011-07-26 09:09 . 2011-07-26 09:09 739840 ----a-w- c:\windows\system32\d2d1.dll
2011-07-26 09:09 . 2011-07-26 09:09 1074176 ----a-w- c:\windows\system32\DWrite.dll
2011-07-26 09:08 . 2011-07-26 09:08 2690560 ----a-w- c:\windows\system32\mstscax.dll
2011-07-26 09:08 . 2011-07-26 09:08 1034240 ----a-w- c:\windows\system32\mstsc.exe
2011-07-26 09:08 . 2011-07-26 09:08 850432 ----a-w- c:\windows\system32\sbe.dll
2011-07-26 09:08 . 2011-07-26 09:08 642048 ----a-w- c:\windows\system32\CPFilters.dll
2011-07-26 09:08 . 2011-07-26 09:08 534528 ----a-w- c:\windows\system32\EncDec.dll
2011-07-26 09:08 . 2011-07-26 09:08 199680 ----a-w- c:\windows\system32\mpg2splt.ax
2011-07-26 09:08 . 2011-07-26 09:08 1289536 ----a-w- c:\windows\system32\ntdll.dll
2011-07-26 09:07 . 2011-07-26 09:07 728448 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2011-07-26 09:07 . 2011-07-26 09:07 219008 ----a-w- c:\windows\system32\drivers\dxgmms1.sys
2011-07-26 09:07 . 2011-07-26 09:07 107520 ----a-w- c:\windows\system32\cdd.dll
2011-07-26 09:05 . 2011-07-26 09:05 541184 ----a-w- c:\windows\system32\kerberos.dll
2011-07-26 09:05 . 2011-07-26 09:05 987136 ----a-w- c:\program files\Common Files\System\ado\msado15.dll
2011-07-26 09:05 . 2011-07-26 09:05 573440 ----a-w- c:\windows\system32\odbc32.dll
2011-07-26 09:05 . 2011-07-26 09:05 372736 ----a-w- c:\program files\Common Files\System\ado\msadox.dll
2011-07-26 09:05 . 2011-07-26 09:05 352256 ----a-w- c:\program files\Common Files\System\ado\msadomd.dll
2011-07-26 09:05 . 2011-07-26 09:05 208896 ----a-w- c:\program files\Common Files\System\msadc\msadco.dll
2011-07-26 09:04 . 2011-07-26 09:04 2048 ----a-w- c:\windows\system32\tzres.dll
2011-07-26 09:04 . 2011-07-26 09:04 109056 ----a-w- c:\windows\system32\t2embed.dll
2011-07-26 09:04 . 2011-07-26 09:04 4247040 ----a-w- c:\program files\Windows NT\Accessories\wordpad.exe
2011-07-26 09:04 . 2011-07-26 09:04 1413632 ----a-w- c:\windows\system32\ole32.dll
2011-07-26 09:04 . 2011-07-26 09:04 954752 ----a-w- c:\windows\system32\mfc40.dll
2011-07-26 09:04 . 2011-07-26 09:04 954288 ----a-w- c:\windows\system32\mfc40u.dll
2011-07-26 09:03 . 2011-07-26 09:03 530432 ----a-w- c:\windows\system32\comctl32.dll
2011-07-26 09:03 . 2011-07-26 09:03 738816 ----a-w- c:\windows\system32\wmpmde.dll
2011-07-26 09:03 . 2011-07-26 09:03 224256 ----a-w- c:\windows\system32\schannel.dll
2011-07-26 09:02 . 2011-07-26 09:02 101760 ----a-w- c:\windows\system32\consent.exe
2011-07-26 09:02 . 2011-07-26 09:02 516096 ----a-w- c:\program files\Windows Mail\wab.exe
2011-07-26 09:02 . 2011-07-26 09:02 314368 ----a-w- c:\windows\system32\webio.dll
2011-07-26 09:02 . 2011-07-26 09:02 749056 ----a-w- c:\windows\system32\schedsvc.dll
2011-07-26 09:02 . 2011-07-26 09:02 496128 ----a-w- c:\windows\system32\taskschd.dll
2011-07-26 09:02 . 2011-07-26 09:02 351232 ----a-w- c:\windows\system32\wmicmiplugin.dll
2011-07-26 09:02 . 2011-07-26 09:02 305152 ----a-w- c:\windows\system32\taskcomp.dll
2011-07-26 09:02 . 2011-07-26 09:02 192000 ----a-w- c:\windows\system32\taskeng.exe
2011-07-26 09:02 . 2011-07-26 09:02 179712 ----a-w- c:\windows\system32\schtasks.exe
2011-07-26 09:01 . 2011-07-26 09:01 7680 ----a-w- c:\program files\Internet Explorer\iecompat.dll
2011-07-26 09:01 . 2011-07-26 09:01 465408 ----a-w- c:\windows\system32\psisdecd.dll
2011-07-26 09:01 . 2011-07-26 09:01 417792 ----a-w- c:\windows\system32\msdri.dll
2011-07-26 09:01 . 2011-07-26 09:01 204288 ----a-w- c:\windows\system32\MSNP.ax
2011-07-26 09:00 . 2011-07-26 09:00 164864 ----a-w- c:\program files\Windows Media Player\wmplayer.exe
2011-07-26 09:00 . 2011-07-26 09:00 12625408 ----a-w- c:\windows\system32\wmploc.DLL
2011-07-26 09:00 . 2011-07-26 09:00 168448 ----a-w- c:\windows\system32\srvsvc.dll
2011-07-26 08:59 . 2011-07-26 08:59 363520 ----a-w- c:\windows\system32\StructuredQuery.dll
2011-07-26 08:59 . 2011-07-26 08:59 190976 ----a-w- c:\windows\system32\drivers\ks.sys
2011-07-26 08:58 . 2011-07-26 08:58 316928 ----a-w- c:\windows\system32\spoolsv.exe
2011-07-26 08:57 . 2011-07-26 08:57 37376 ----a-w- c:\windows\system32\rtutils.dll
2011-07-26 08:57 . 2011-07-26 08:57 82944 ----a-w- c:\windows\system32\iccvid.dll
2011-07-26 08:57 . 2011-07-26 08:57 197632 ----a-w- c:\windows\system32\ir32_32.dll
2011-07-26 08:56 . 2011-07-26 08:56 99176 ----a-w- c:\windows\system32\PresentationHostProxy.dll
2011-07-26 08:56 . 2011-07-26 08:56 49472 ----a-w- c:\windows\system32\netfxperf.dll
2011-07-26 08:56 . 2011-07-26 08:56 297808 ----a-w- c:\windows\system32\mscoree.dll
2011-07-26 08:56 . 2011-07-26 08:56 295264 ----a-w- c:\windows\system32\PresentationHost.exe
2011-07-26 08:56 . 2011-07-26 08:56 1130824 ----a-w- c:\windows\system32\dfshim.dll
2011-07-26 08:55 . 2011-07-26 08:55 67584 ----a-w- c:\windows\system32\asycfilt.dll
2011-07-26 08:55 . 2011-07-26 08:55 1619968 ----a-w- c:\program files\Windows Mail\msoe.dll
2011-07-26 08:55 . 2011-07-26 08:55 133720 ----a-w- c:\windows\system32\drivers\ksecpkg.sys
2011-07-26 08:55 . 2011-07-26 08:55 1037312 ----a-w- c:\windows\system32\lsasrv.dll
2011-07-26 08:54 . 2011-07-26 08:54 12800 ----a-w- c:\windows\system32\drivers\sffp_sd.sys
2011-07-26 08:54 . 2011-07-26 08:54 194488 ----a-w- c:\windows\system32\drivers\fvevol.sys
2011-07-26 08:54 . 2011-07-26 08:54 293376 ----a-w- c:\windows\system32\browserchoice.exe
2011-07-26 08:54 . 2011-07-26 08:54 172032 ----a-w- c:\windows\system32\wintrust.dll
2011-07-26 08:52 . 2011-07-26 08:52 285696 ----a-w- c:\windows\system32\winlogon.exe
2011-07-26 08:52 . 2011-07-26 08:52 41984 ----a-w- c:\windows\system32\drivers\usbehci.sys
2011-07-26 08:52 . 2011-07-26 08:52 258560 ----a-w- c:\windows\system32\drivers\usbhub.sys
2011-07-26 08:52 . 2011-07-26 08:52 70656 ----a-w- c:\windows\system32\fontsub.dll
2011-07-26 08:52 . 2011-07-26 08:52 34816 ----a-w- c:\windows\system32\msasn1.dll
2011-07-26 08:52 . 2011-07-26 08:52 257024 ----a-w- c:\windows\system32\msv1_0.dll
2011-07-26 08:51 . 2011-07-26 08:51 507568 ----a-w- c:\windows\system32\winload.exe
2011-07-26 08:51 . 2011-07-26 08:51 442920 ----a-w- c:\windows\system32\winresume.exe
2011-07-26 08:51 . 2011-07-26 08:51 1320960 ----a-w- c:\windows\system32\CertEnroll.dll
2011-07-26 08:27 . 2011-07-26 08:27 -------- d-----w- c:\program files\Application Updater
2011-07-26 08:27 . 2011-07-26 08:27 -------- d-----w- c:\program files\IObit Toolbar
2011-07-26 08:27 . 2011-07-26 08:27 -------- d-----w- c:\program files\Common Files\Spigot
2011-07-25 19:45 . 2011-07-25 19:45 -------- d-----w- c:\windows\UbiSoft
2011-07-25 18:12 . 1997-03-24 14:42 314368 ----a-w- c:\windows\IsUninst.exe
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-07-26 09:03 . 2011-07-26 09:03 224256 ----a-w- c:\windows\system32\schannel.dll
2011-07-26 09:02 . 2011-07-26 09:02 749056 ----a-w- c:\windows\system32\schedsvc.dll
2011-07-26 09:02 . 2011-07-26 09:02 179712 ----a-w- c:\windows\system32\schtasks.exe
2011-07-25 14:06 . 2011-01-15 15:21 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2011-07-19 18:25 . 2010-12-25 12:46 413696 ----a-w- c:\windows\system32\wrap_oal.dll
2011-07-19 18:25 . 2010-12-25 12:46 110592 ----a-w- c:\windows\system32\OpenAL32.dll
2011-07-04 11:43 . 2010-09-23 13:01 40112 ----a-w- c:\windows\avastSS.scr
2011-07-04 11:43 . 2010-09-23 12:47 199304 ----a-w- c:\windows\system32\aswBoot.exe
2011-07-04 11:36 . 2011-06-16 19:55 441176 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2011-07-04 11:36 . 2010-09-23 12:47 309848 ----a-w- c:\windows\system32\drivers\aswSP.sys
2011-07-04 11:35 . 2010-09-23 12:47 43608 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2011-07-04 11:32 . 2010-09-23 12:47 25432 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2011-07-04 11:32 . 2010-09-23 12:47 54104 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2011-07-04 11:32 . 2010-09-23 12:47 19544 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2011-05-21 16:43 . 2011-05-21 16:43 0 ---ha-w- c:\users\Abo\AppData\Local\BITED4B.tmp
2011-05-21 16:41 . 2011-05-21 16:41 0 ---ha-w- c:\users\Abo\AppData\Local\BITD558.tmp
2011-05-06 17:17 . 2011-05-01 16:46 11994856 ----a-w- C:\is360setup.exe
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{872b5b88-9db5-4310-bdd0-ac189557e5f5}"= "c:\program files\DVDVideoSoftTB\tbDVDV.dll" [2010-04-27 2393184]
.
[HKEY_CLASSES_ROOT\clsid\{872b5b88-9db5-4310-bdd0-ac189557e5f5}]
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{872b5b88-9db5-4310-bdd0-ac189557e5f5}]
2010-04-27 09:08 2393184 ----a-w- c:\program files\DVDVideoSoftTB\tbDVDV.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{872b5b88-9db5-4310-bdd0-ac189557e5f5}"= "c:\program files\DVDVideoSoftTB\tbDVDV.dll" [2010-04-27 2393184]
.
[HKEY_CLASSES_ROOT\clsid\{872b5b88-9db5-4310-bdd0-ac189557e5f5}]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2011-07-04 11:43 122512 ----a-w- c:\program files\Alwil Software\Avast5\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2010-04-01 357696]
"Seznam Postak"="c:\program files\Seznam.cz\postak.exe" [2010-03-01 451224]
"Advanced SystemCare 4"="c:\program files\IObit\Advanced SystemCare 4\ASCTray.exe" [2011-05-28 412560]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WinampAgent"="c:\program files\Winamp\winampa.exe" [2010-06-28 74752]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2011-03-30 937920]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2010-09-08 421888]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-02-18 248040]
"AdobeAAMUpdater-1.0"="c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2010-03-06 500208]
"SearchSettings"="c:\program files\Common Files\Spigot\Search Settings\SearchSettings.exe" [2011-06-24 534880]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2010-07-28 9398888]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"Malwarebytes' Anti-Malware"="c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe" [2011-07-06 449584]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"FlashPlayerUpdate"="c:\windows\system32\Macromed\Flash\FlashUtil10l_ActiveX.exe" [2010-11-16 233936]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux1"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice]
@="Service"
.
R2 gupdate;Služba Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2011-03-26 136176]
R2 ICQ Service;ICQ Service;c:\program files\ICQ6Toolbar\ICQ Service.exe [x]
R3 gupdatem;Služba Google Update (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [2011-03-26 136176]
R3 SwitchBoard;SwitchBoard;c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S0 SmartDefragDriver;SmartDefragDriver;c:\windows\System32\Drivers\SmartDefragDriver.sys [2011-02-23 16184]
S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2010-09-23 691696]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S2 AdvancedSystemCareService;Advanced SystemCare Service;c:\program files\IObit\Advanced SystemCare 4\ASCService.exe [2011-05-28 353168]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2010-05-27 176128]
S2 Application Updater;Application Updater;c:\program files\Application Updater\ApplicationUpdater.exe [2011-06-24 393112]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2011-07-04 54104]
S2 IMFservice;IMF Service;c:\program files\IObit\IObit Malware Fighter\IMFsrv.exe [2011-06-01 821080]
S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [2010-05-27 5586432]
S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [2010-05-27 209920]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2011-07-27 c:\windows\Tasks\GlaryInitialize.job
- c:\program files\Glary Utilities\initialize.exe [2010-11-19 20:55]
.
2011-07-27 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2011-03-26 13:16]
.
2011-07-27 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2011-03-26 13:16]
.
2011-07-26 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4142620768-599012093-3301461170-1000Core.job
- c:\users\Abo\AppData\Local\Google\Update\GoogleUpdate.exe [2010-09-23 12:26]
.
2011-07-27 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4142620768-599012093-3301461170-1000UA.job
- c:\users\Abo\AppData\Local\Google\Update\GoogleUpdate.exe [2010-09-23 12:26]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.qooqlle.com/
uInternet Settings,ProxyOverride = *.local
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: Free YouTube to Mp3 Converter - c:\users\Abo\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
IE: Save YouTube Video as MP3 - c:\program files\Common Files\DVDVideoSoft\Dll\IEContextMenuY.dll/scriptY2MP3.htm
TCP: DhcpNameServer = 192.168.1.1 168.95.1.1
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
HKLM-Run-IgfxTraySound - c:\users\Abo\AppData\Roaming\igfxtray.exe
AddRemove-{87686C21-8A15-4b4d-A3F1-11141D9BE094} - g:\lost\uninstaller.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\User Preferences]
@Denied: (2) (LocalSystem)
"88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,00,e8,27,24,7e,d5,78,49,84,44,02,\
"2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,00,e8,27,24,7e,d5,78,49,84,44,02,\
.
[HKEY_USERS\S-1-5-21-4142620768-599012093-3301461170-1000\Software\SecuROM\License information*]
"datasecu"=hex:d1,a2,41,d0,bf,0f,7a,4f,77,1f,5a,c1,f7,a9,6f,51,27,a9,3f,09,1f,
8e,22,10,f0,0b,4a,fe,fa,09,b9,95,d6,e7,01,df,ae,7e,25,df,6a,66,5c,8f,b2,b3,\
"rkeysecu"=hex:68,4d,ce,ec,1e,94,fd,92,da,a0,5f,1b,72,7b,26,01
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2011-07-27 13:03:52
ComboFix-quarantined-files.txt 2011-07-27 11:03
.
Před spuštěním: Volných bajtů: 98 474 819 584
Po spuštění: Volných bajtů: 103 654 457 344
.
- - End Of File - - B45B3744CF1AC73AAC74873FF7BFDBA8

Re: Pomalý PC

Napsal: 27 črc 2011 12:24
od Rudy
Ještě dočistíme. Ještě dočistíme. Otevřte poznámkový blok a zkopírujte do něj:
Folder::
c:\program files\Common Files\Spigot

Registry::
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SearchSettings"=-
Uložte na plochu jako CFScript.txt. pak jej myší přetáhněte nad ikonu ComboFix a pusťte. CF se spustí a vykoná příkazy ze skriptu.

Obrázek

Re: Pomalý PC

Napsal: 27 črc 2011 12:44
od daveing
provedeno, vypsáno:




ComboFix 11-07-27.01 - Abo 27.07.2011 13:34:32.2.2 - x86
Microsoft Windows 7 Ultimate 6.1.7600.0.1250.420.1029.18.2048.1151 [GMT 2:00]
Spuštěný z: c:\users\Abo\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\Abo\Desktop\CFScript.txt
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files\Common Files\Spigot
c:\program files\Common Files\Spigot\Search Settings\config.ini
c:\program files\Common Files\Spigot\Search Settings\SearchSettings.exe
c:\program files\Common Files\Spigot\Search Settings\yahoo_ff.xml
c:\program files\Common Files\Spigot\Search Settings\yahoo_ie.xml
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-06-27 do 2011-07-27 )))))))))))))))))))))))))))))))
.
.
2011-07-27 11:41 . 2011-07-27 11:41 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-07-27 10:49 . 2011-07-27 10:49 -------- d-----w- c:\programdata\Malwarebytes
2011-07-27 10:49 . 2011-07-06 17:52 41272 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-07-27 10:49 . 2011-07-06 17:52 22712 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-07-27 10:49 . 2011-07-27 10:49 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-07-27 09:39 . 2011-07-27 09:39 -------- d-----w- C:\rsit
2011-07-27 09:39 . 2011-07-27 09:39 -------- d-----w- c:\program files\trend micro
2011-07-26 20:54 . 2011-07-26 20:54 -------- d-----w- c:\users\Abo\AppData\Local\searchplugins
2011-07-26 09:23 . 2011-07-26 09:23 271872 ----a-w- c:\windows\system32\conhost.exe
2011-07-26 09:23 . 2011-07-26 09:23 169984 ----a-w- c:\windows\system32\winsrv.dll
2011-07-26 09:21 . 2011-07-26 09:21 294912 ----a-w- c:\windows\system32\umpnpmgr.dll
2011-07-26 09:21 . 2011-07-26 09:21 86528 ----a-w- c:\windows\system32\SearchFilterHost.exe
2011-07-26 09:21 . 2011-07-26 09:21 59392 ----a-w- c:\windows\system32\msscntrs.dll
2011-07-26 09:21 . 2011-07-26 09:21 428032 ----a-w- c:\windows\system32\SearchIndexer.exe
2011-07-26 09:21 . 2011-07-26 09:21 337408 ----a-w- c:\windows\system32\mssph.dll
2011-07-26 09:21 . 2011-07-26 09:21 1553920 ----a-w- c:\windows\system32\tquery.dll
2011-07-26 09:20 . 2011-07-26 09:21 1401856 ----a-w- c:\windows\system32\mssrch.dll
2011-07-26 09:20 . 2011-07-26 09:20 666624 ----a-w- c:\windows\system32\mssvp.dll
2011-07-26 09:20 . 2011-07-26 09:20 197120 ----a-w- c:\windows\system32\mssphtb.dll
2011-07-26 09:20 . 2011-07-26 09:20 164352 ----a-w- c:\windows\system32\SearchProtocolHost.exe
2011-07-26 09:18 . 2011-07-26 09:18 759296 ----a-w- c:\program files\Common Files\Microsoft Shared\VGX\VGX.dll
2011-07-26 09:18 . 2011-07-26 09:18 311296 ----a-w- c:\windows\system32\drivers\srv.sys
2011-07-26 09:18 . 2011-07-26 09:18 309760 ----a-w- c:\windows\system32\drivers\srv2.sys
2011-07-26 09:18 . 2011-07-26 09:18 114176 ----a-w- c:\windows\system32\drivers\srvnet.sys
2011-07-26 09:17 . 2011-07-26 09:17 78336 ----a-w- c:\windows\system32\drivers\dfsc.sys
2011-07-26 09:17 . 2011-07-26 09:17 338944 ----a-w- c:\windows\system32\drivers\afd.sys
2011-07-26 09:17 . 2011-07-26 09:17 1286016 ----a-w- c:\windows\system32\drivers\tcpip.sys
2011-07-26 09:16 . 2011-07-26 09:16 571904 ----a-w- c:\windows\system32\oleaut32.dll
2011-07-26 09:15 . 2011-07-26 09:15 96256 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2011-07-26 09:15 . 2011-07-26 09:15 222720 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2011-07-26 09:15 . 2011-07-26 09:15 123392 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2011-07-26 09:14 . 2011-07-26 09:14 740864 ----a-w- c:\windows\system32\inetcomm.dll
2011-07-26 09:14 . 2011-07-26 09:14 26496 ----a-w- c:\windows\system32\drivers\Diskdump.sys
2011-07-26 09:14 . 2011-07-26 09:14 3957632 ----a-w- c:\windows\system32\ntkrnlpa.exe
2011-07-26 09:14 . 2011-07-26 09:14 3901824 ----a-w- c:\windows\system32\ntoskrnl.exe
2011-07-26 09:13 . 2011-07-26 09:13 442880 ----a-w- c:\windows\system32\XpsPrint.dll
2011-07-26 09:13 . 2011-07-26 09:13 31232 ----a-w- c:\windows\system32\prevhost.exe
2011-07-26 09:12 . 2011-07-26 09:12 2614784 ----a-w- c:\windows\explorer.exe
2011-07-26 09:12 . 2011-07-26 09:12 28672 ----a-w- c:\windows\system32\dnscacheugc.exe
2011-07-26 09:12 . 2011-07-26 09:12 132608 ----a-w- c:\windows\system32\dnsrslvr.dll
2011-07-26 09:12 . 2011-07-26 09:12 428032 ----a-w- c:\windows\system32\vbscript.dll
2011-07-26 09:11 . 2011-07-26 09:11 34304 ----a-w- c:\windows\system32\atmlib.dll
2011-07-26 09:11 . 2011-07-26 09:11 294912 ----a-w- c:\windows\system32\atmfd.dll
2011-07-26 09:10 . 2011-07-26 09:10 191488 ----a-w- c:\windows\system32\FXSCOVER.exe
2011-07-26 09:10 . 2011-07-26 09:10 69632 ----a-w- c:\windows\system32\drivers\bowser.sys
2011-07-26 09:10 . 2011-07-26 09:10 1164288 ----a-w- c:\windows\system32\mfc42u.dll
2011-07-26 09:10 . 2011-07-26 09:10 1137664 ----a-w- c:\windows\system32\mfc42.dll
2011-07-26 09:09 . 2011-07-26 09:09 288256 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2011-07-26 09:09 . 2011-07-26 09:09 802304 ----a-w- c:\windows\system32\FntCache.dll
2011-07-26 09:09 . 2011-07-26 09:09 739840 ----a-w- c:\windows\system32\d2d1.dll
2011-07-26 09:09 . 2011-07-26 09:09 1074176 ----a-w- c:\windows\system32\DWrite.dll
2011-07-26 09:08 . 2011-07-26 09:08 2690560 ----a-w- c:\windows\system32\mstscax.dll
2011-07-26 09:08 . 2011-07-26 09:08 1034240 ----a-w- c:\windows\system32\mstsc.exe
2011-07-26 09:08 . 2011-07-26 09:08 850432 ----a-w- c:\windows\system32\sbe.dll
2011-07-26 09:08 . 2011-07-26 09:08 642048 ----a-w- c:\windows\system32\CPFilters.dll
2011-07-26 09:08 . 2011-07-26 09:08 534528 ----a-w- c:\windows\system32\EncDec.dll
2011-07-26 09:08 . 2011-07-26 09:08 199680 ----a-w- c:\windows\system32\mpg2splt.ax
2011-07-26 09:08 . 2011-07-26 09:08 1289536 ----a-w- c:\windows\system32\ntdll.dll
2011-07-26 09:07 . 2011-07-26 09:07 728448 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2011-07-26 09:07 . 2011-07-26 09:07 219008 ----a-w- c:\windows\system32\drivers\dxgmms1.sys
2011-07-26 09:07 . 2011-07-26 09:07 107520 ----a-w- c:\windows\system32\cdd.dll
2011-07-26 09:05 . 2011-07-26 09:05 541184 ----a-w- c:\windows\system32\kerberos.dll
2011-07-26 09:05 . 2011-07-26 09:05 987136 ----a-w- c:\program files\Common Files\System\ado\msado15.dll
2011-07-26 09:05 . 2011-07-26 09:05 573440 ----a-w- c:\windows\system32\odbc32.dll
2011-07-26 09:05 . 2011-07-26 09:05 372736 ----a-w- c:\program files\Common Files\System\ado\msadox.dll
2011-07-26 09:05 . 2011-07-26 09:05 352256 ----a-w- c:\program files\Common Files\System\ado\msadomd.dll
2011-07-26 09:05 . 2011-07-26 09:05 208896 ----a-w- c:\program files\Common Files\System\msadc\msadco.dll
2011-07-26 09:04 . 2011-07-26 09:04 2048 ----a-w- c:\windows\system32\tzres.dll
2011-07-26 09:04 . 2011-07-26 09:04 109056 ----a-w- c:\windows\system32\t2embed.dll
2011-07-26 09:04 . 2011-07-26 09:04 4247040 ----a-w- c:\program files\Windows NT\Accessories\wordpad.exe
2011-07-26 09:04 . 2011-07-26 09:04 1413632 ----a-w- c:\windows\system32\ole32.dll
2011-07-26 09:04 . 2011-07-26 09:04 954752 ----a-w- c:\windows\system32\mfc40.dll
2011-07-26 09:04 . 2011-07-26 09:04 954288 ----a-w- c:\windows\system32\mfc40u.dll
2011-07-26 09:03 . 2011-07-26 09:03 530432 ----a-w- c:\windows\system32\comctl32.dll
2011-07-26 09:03 . 2011-07-26 09:03 738816 ----a-w- c:\windows\system32\wmpmde.dll
2011-07-26 09:03 . 2011-07-26 09:03 224256 ----a-w- c:\windows\system32\schannel.dll
2011-07-26 09:02 . 2011-07-26 09:02 101760 ----a-w- c:\windows\system32\consent.exe
2011-07-26 09:02 . 2011-07-26 09:02 516096 ----a-w- c:\program files\Windows Mail\wab.exe
2011-07-26 09:02 . 2011-07-26 09:02 314368 ----a-w- c:\windows\system32\webio.dll
2011-07-26 09:02 . 2011-07-26 09:02 749056 ----a-w- c:\windows\system32\schedsvc.dll
2011-07-26 09:02 . 2011-07-26 09:02 496128 ----a-w- c:\windows\system32\taskschd.dll
2011-07-26 09:02 . 2011-07-26 09:02 351232 ----a-w- c:\windows\system32\wmicmiplugin.dll
2011-07-26 09:02 . 2011-07-26 09:02 305152 ----a-w- c:\windows\system32\taskcomp.dll
2011-07-26 09:02 . 2011-07-26 09:02 192000 ----a-w- c:\windows\system32\taskeng.exe
2011-07-26 09:02 . 2011-07-26 09:02 179712 ----a-w- c:\windows\system32\schtasks.exe
2011-07-26 09:01 . 2011-07-26 09:01 7680 ----a-w- c:\program files\Internet Explorer\iecompat.dll
2011-07-26 09:01 . 2011-07-26 09:01 465408 ----a-w- c:\windows\system32\psisdecd.dll
2011-07-26 09:01 . 2011-07-26 09:01 417792 ----a-w- c:\windows\system32\msdri.dll
2011-07-26 09:01 . 2011-07-26 09:01 204288 ----a-w- c:\windows\system32\MSNP.ax
2011-07-26 09:00 . 2011-07-26 09:00 164864 ----a-w- c:\program files\Windows Media Player\wmplayer.exe
2011-07-26 09:00 . 2011-07-26 09:00 12625408 ----a-w- c:\windows\system32\wmploc.DLL
2011-07-26 09:00 . 2011-07-26 09:00 168448 ----a-w- c:\windows\system32\srvsvc.dll
2011-07-26 08:59 . 2011-07-26 08:59 363520 ----a-w- c:\windows\system32\StructuredQuery.dll
2011-07-26 08:59 . 2011-07-26 08:59 190976 ----a-w- c:\windows\system32\drivers\ks.sys
2011-07-26 08:58 . 2011-07-26 08:58 316928 ----a-w- c:\windows\system32\spoolsv.exe
2011-07-26 08:57 . 2011-07-26 08:57 37376 ----a-w- c:\windows\system32\rtutils.dll
2011-07-26 08:57 . 2011-07-26 08:57 82944 ----a-w- c:\windows\system32\iccvid.dll
2011-07-26 08:57 . 2011-07-26 08:57 197632 ----a-w- c:\windows\system32\ir32_32.dll
2011-07-26 08:56 . 2011-07-26 08:56 99176 ----a-w- c:\windows\system32\PresentationHostProxy.dll
2011-07-26 08:56 . 2011-07-26 08:56 49472 ----a-w- c:\windows\system32\netfxperf.dll
2011-07-26 08:56 . 2011-07-26 08:56 297808 ----a-w- c:\windows\system32\mscoree.dll
2011-07-26 08:56 . 2011-07-26 08:56 295264 ----a-w- c:\windows\system32\PresentationHost.exe
2011-07-26 08:56 . 2011-07-26 08:56 1130824 ----a-w- c:\windows\system32\dfshim.dll
2011-07-26 08:55 . 2011-07-26 08:55 67584 ----a-w- c:\windows\system32\asycfilt.dll
2011-07-26 08:55 . 2011-07-26 08:55 1619968 ----a-w- c:\program files\Windows Mail\msoe.dll
2011-07-26 08:55 . 2011-07-26 08:55 133720 ----a-w- c:\windows\system32\drivers\ksecpkg.sys
2011-07-26 08:55 . 2011-07-26 08:55 1037312 ----a-w- c:\windows\system32\lsasrv.dll
2011-07-26 08:54 . 2011-07-26 08:54 12800 ----a-w- c:\windows\system32\drivers\sffp_sd.sys
2011-07-26 08:54 . 2011-07-26 08:54 194488 ----a-w- c:\windows\system32\drivers\fvevol.sys
2011-07-26 08:54 . 2011-07-26 08:54 293376 ----a-w- c:\windows\system32\browserchoice.exe
2011-07-26 08:54 . 2011-07-26 08:54 172032 ----a-w- c:\windows\system32\wintrust.dll
2011-07-26 08:52 . 2011-07-26 08:52 285696 ----a-w- c:\windows\system32\winlogon.exe
2011-07-26 08:52 . 2011-07-26 08:52 41984 ----a-w- c:\windows\system32\drivers\usbehci.sys
2011-07-26 08:52 . 2011-07-26 08:52 258560 ----a-w- c:\windows\system32\drivers\usbhub.sys
2011-07-26 08:52 . 2011-07-26 08:52 70656 ----a-w- c:\windows\system32\fontsub.dll
2011-07-26 08:52 . 2011-07-26 08:52 34816 ----a-w- c:\windows\system32\msasn1.dll
2011-07-26 08:52 . 2011-07-26 08:52 257024 ----a-w- c:\windows\system32\msv1_0.dll
2011-07-26 08:51 . 2011-07-26 08:51 507568 ----a-w- c:\windows\system32\winload.exe
2011-07-26 08:51 . 2011-07-26 08:51 442920 ----a-w- c:\windows\system32\winresume.exe
2011-07-26 08:51 . 2011-07-26 08:51 1320960 ----a-w- c:\windows\system32\CertEnroll.dll
2011-07-26 08:27 . 2011-07-26 08:27 -------- d-----w- c:\program files\Application Updater
2011-07-26 08:27 . 2011-07-26 08:27 -------- d-----w- c:\program files\IObit Toolbar
2011-07-25 19:45 . 2011-07-25 19:45 -------- d-----w- c:\windows\UbiSoft
2011-07-25 18:12 . 1997-03-24 14:42 314368 ----a-w- c:\windows\IsUninst.exe
2011-07-25 18:08 . 2011-07-25 18:08 -------- d-----w- c:\users\Abo\AppData\Local\DOSBox
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-07-26 09:03 . 2011-07-26 09:03 224256 ----a-w- c:\windows\system32\schannel.dll
2011-07-26 09:02 . 2011-07-26 09:02 749056 ----a-w- c:\windows\system32\schedsvc.dll
2011-07-26 09:02 . 2011-07-26 09:02 179712 ----a-w- c:\windows\system32\schtasks.exe
2011-07-25 14:06 . 2011-01-15 15:21 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2011-07-19 18:25 . 2010-12-25 12:46 413696 ----a-w- c:\windows\system32\wrap_oal.dll
2011-07-19 18:25 . 2010-12-25 12:46 110592 ----a-w- c:\windows\system32\OpenAL32.dll
2011-07-04 11:43 . 2010-09-23 13:01 40112 ----a-w- c:\windows\avastSS.scr
2011-07-04 11:43 . 2010-09-23 12:47 199304 ----a-w- c:\windows\system32\aswBoot.exe
2011-07-04 11:36 . 2011-06-16 19:55 441176 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2011-07-04 11:36 . 2010-09-23 12:47 309848 ----a-w- c:\windows\system32\drivers\aswSP.sys
2011-07-04 11:35 . 2010-09-23 12:47 43608 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2011-07-04 11:32 . 2010-09-23 12:47 25432 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2011-07-04 11:32 . 2010-09-23 12:47 54104 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2011-07-04 11:32 . 2010-09-23 12:47 19544 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2011-05-21 16:43 . 2011-05-21 16:43 0 ---ha-w- c:\users\Abo\AppData\Local\BITED4B.tmp
2011-05-21 16:41 . 2011-05-21 16:41 0 ---ha-w- c:\users\Abo\AppData\Local\BITD558.tmp
2011-05-06 17:17 . 2011-05-01 16:46 11994856 ----a-w- C:\is360setup.exe
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{872b5b88-9db5-4310-bdd0-ac189557e5f5}"= "c:\program files\DVDVideoSoftTB\tbDVDV.dll" [2010-04-27 2393184]
.
[HKEY_CLASSES_ROOT\clsid\{872b5b88-9db5-4310-bdd0-ac189557e5f5}]
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{872b5b88-9db5-4310-bdd0-ac189557e5f5}]
2010-04-27 09:08 2393184 ----a-w- c:\program files\DVDVideoSoftTB\tbDVDV.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{872b5b88-9db5-4310-bdd0-ac189557e5f5}"= "c:\program files\DVDVideoSoftTB\tbDVDV.dll" [2010-04-27 2393184]
.
[HKEY_CLASSES_ROOT\clsid\{872b5b88-9db5-4310-bdd0-ac189557e5f5}]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2011-07-04 11:43 122512 ----a-w- c:\program files\Alwil Software\Avast5\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2010-04-01 357696]
"Seznam Postak"="c:\program files\Seznam.cz\postak.exe" [2010-03-01 451224]
"Advanced SystemCare 4"="c:\program files\IObit\Advanced SystemCare 4\ASCTray.exe" [2011-05-28 412560]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WinampAgent"="c:\program files\Winamp\winampa.exe" [2010-06-28 74752]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2011-03-30 937920]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2010-09-08 421888]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-02-18 248040]
"AdobeAAMUpdater-1.0"="c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2010-03-06 500208]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2010-07-28 9398888]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"Malwarebytes' Anti-Malware"="c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe" [2011-07-06 449584]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"FlashPlayerUpdate"="c:\windows\system32\Macromed\Flash\FlashUtil10l_ActiveX.exe" [2010-11-16 233936]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux1"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice]
@="Service"
.
R2 gupdate;Služba Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2011-03-26 136176]
R2 ICQ Service;ICQ Service;c:\program files\ICQ6Toolbar\ICQ Service.exe [x]
R3 gupdatem;Služba Google Update (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [2011-03-26 136176]
R3 SwitchBoard;SwitchBoard;c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S0 SmartDefragDriver;SmartDefragDriver;c:\windows\System32\Drivers\SmartDefragDriver.sys [2011-02-23 16184]
S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2010-09-23 691696]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S2 AdvancedSystemCareService;Advanced SystemCare Service;c:\program files\IObit\Advanced SystemCare 4\ASCService.exe [2011-05-28 353168]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2010-05-27 176128]
S2 Application Updater;Application Updater;c:\program files\Application Updater\ApplicationUpdater.exe [2011-06-24 393112]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2011-07-04 54104]
S2 IMFservice;IMF Service;c:\program files\IObit\IObit Malware Fighter\IMFsrv.exe [2011-06-01 821080]
S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [2010-05-27 5586432]
S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [2010-05-27 209920]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2011-07-27 c:\windows\Tasks\GlaryInitialize.job
- c:\program files\Glary Utilities\initialize.exe [2010-11-19 20:55]
.
2011-07-27 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2011-03-26 13:16]
.
2011-07-27 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2011-03-26 13:16]
.
2011-07-26 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4142620768-599012093-3301461170-1000Core.job
- c:\users\Abo\AppData\Local\Google\Update\GoogleUpdate.exe [2010-09-23 12:26]
.
2011-07-27 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4142620768-599012093-3301461170-1000UA.job
- c:\users\Abo\AppData\Local\Google\Update\GoogleUpdate.exe [2010-09-23 12:26]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.qooqlle.com/
uInternet Settings,ProxyOverride = *.local
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: Free YouTube to Mp3 Converter - c:\users\Abo\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
IE: Save YouTube Video as MP3 - c:\program files\Common Files\DVDVideoSoft\Dll\IEContextMenuY.dll/scriptY2MP3.htm
TCP: DhcpNameServer = 192.168.1.1 168.95.1.1
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\User Preferences]
@Denied: (2) (LocalSystem)
"88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,00,e8,27,24,7e,d5,78,49,84,44,02,\
"2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,00,e8,27,24,7e,d5,78,49,84,44,02,\
.
[HKEY_USERS\S-1-5-21-4142620768-599012093-3301461170-1000\Software\SecuROM\License information*]
"datasecu"=hex:d1,a2,41,d0,bf,0f,7a,4f,77,1f,5a,c1,f7,a9,6f,51,27,a9,3f,09,1f,
8e,22,10,f0,0b,4a,fe,fa,09,b9,95,d6,e7,01,df,ae,7e,25,df,6a,66,5c,8f,b2,b3,\
"rkeysecu"=hex:68,4d,ce,ec,1e,94,fd,92,da,a0,5f,1b,72,7b,26,01
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2011-07-27 13:43:42
ComboFix-quarantined-files.txt 2011-07-27 11:43
ComboFix2.txt 2011-07-27 11:03
.
Před spuštěním: Volných bajtů: 103 559 434 240
Po spuštění: Volných bajtů: 103 516 688 384
.
- - End Of File - - 0B61BED7D79ECC823C6936471FCE8C74

Re: Pomalý PC

Napsal: 27 črc 2011 13:18
od Rudy
Smazáno, log již vypadá čistý. Nastala nějaká změna?

Re: Pomalý PC

Napsal: 27 črc 2011 13:26
od daveing
mnohé se zlepšilo, ale ještě jsem pustil Malwarebytes, protože se mi nezdá, že by bylo vše v pořádku a v tuto chvíli je tam 5 infikovaných objektů, ale spíš řeším problémy s druhým PC, tam mám ten fb vir, ale k tomu se časem téže dostanete ;)

Re: Pomalý PC

Napsal: 27 črc 2011 13:36
od Rudy
O jaké objekty šlo? Pozor - MBAM občas mívá falešné detekce.

Re: Pomalý PC

Napsal: 27 črc 2011 13:41
od daveing
Zatím nevím, ještě se kontroluje. Ale napíšu.

Re: Pomalý PC

Napsal: 27 črc 2011 13:42
od Rudy
OK.

Re: Pomalý PC

Napsal: 27 črc 2011 13:51
od daveing
Neměl byste, prosím, ještě čas na tohle??

http://www.viry.cz/forum/viewtopic.php?f=13&t=113792

Re: Pomalý PC

Napsal: 27 črc 2011 14:12
od daveing
A tu je slibovaný log. z malwarebytes



Malwarebytes' Anti-Malware 1.51.1.1800
www.malwarebytes.org

Verze databáze: 7295

Windows 6.1.7600
Internet Explorer 8.0.7600.16385

27.7.2011 15:12:14
mbam-log-2011-07-27 (15-12-02).txt

Typ: Úplná kontrola (C:\|D:\|G:\|)
Kontrolované objekty: 383222
Uplynulý čas: 1 hodin, 2 minut, 37 sekund

Infikované procesy v paměti: 0
Infikované moduly v paměti: 0
Infikované klíče v registru: 0
Infikované hodnoty v registru: 0
Infikované datové položky v registru: 1
Infikované složky: 0
Infikované soubory: 13

Infikované procesy v paměti:
(Žádné škodlivé položky nebyly zjištěny)

Infikované moduly v paměti:
(Žádné škodlivé položky nebyly zjištěny)

Infikované klíče v registru:
(Žádné škodlivé položky nebyly zjištěny)

Infikované hodnoty v registru:
(Žádné škodlivé položky nebyly zjištěny)

Infikované datové položky v registru:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\Start Page (Redir.Qooqlle) -> Bad: (http://www.qooqlle.com/) Good: (http://www.google.com) -> No action taken.

Infikované složky:
(Žádné škodlivé položky nebyly zjištěny)

Infikované soubory:
c:\Users\Abo\Desktop\Torrenty\adobe photoshop cs5 cz\Crack\adobe_ps_cs5_keygen.exe (Malware.Packer.Gen) -> No action taken.
c:\Users\Abo\Desktop\Torrenty\photoíshop\adobe photoshop cs5 cz\Crack\adobe_ps_cs5_keygen.exe (Malware.Packer.Gen) -> No action taken.
c:\Users\Abo\Desktop\zbytečnosti\flash\aktivace win7.exe (Trojan.Agent) -> No action taken.
c:\Users\Abo\Desktop\advanced care\new windows 7 activator [2010]\7loader release 5.exe (Trojan.Agent) -> No action taken.
c:\Users\Abo\Desktop\advanced care\new windows 7 activator [2010]\removewat.exe (HackTool.Wpakill) -> No action taken.
c:\program files\iobit toolbar\IE\4.5\iobittoolbarie.dll (PUP.Dealio.TB) -> No action taken.
c:\system volume information\_restore{0dc6467c-0e64-45fc-b515-f96e483b1d83}\RP307\A0097309.exe (Risktool.Crack) -> No action taken.
c:\system volume information\_restore{0dc6467c-0e64-45fc-b515-f96e483b1d83}\RP307\A0097312.exe (PUP.Hacktool.Patcher) -> No action taken.
g:\audiosurf - ride your music\uninstall.exe (Malware.Packer.Krunchy) -> No action taken.
g:\gta 4 install\GTA 4\gta_iv_crack\gta iv crack\gta iv activation only\loader2.exe (PUP.Hacktool.Patcher) -> No action taken.
g:\gta 4 install\GTA 4\gta_iv_crack\gta iv crack\gta.iv.camera crack\Crack\launchgtaiv.exe (Risktool.Crack) -> No action taken.
g:\GTA IV\grand theft auto iv\launchgtaiv.exe (Risktool.Crack) -> No action taken.
g:\GTA IV\grand theft auto iv\loader2.exe (PUP.Hacktool.Patcher) -> No action taken.

Re: Pomalý PC

Napsal: 27 črc 2011 17:58
od Rudy
Vše, co MBAM nalezl, smažte. Z logu vyplývá, že nemáte legální oper. systém, což znamená, že končíme, neboť se nelagální softwaren zde nezabýváme.

Re: Pomalý PC

Napsal: 27 črc 2011 18:00
od daveing
jasné, tohle nejni moje, tak nevím a omlouvám se tedy

Re: Pomalý PC

Napsal: 27 črc 2011 18:50
od Rudy
daveing píše:jasné, tohle nejni moje, tak nevím a omlouvám se tedy
Win7loader je jasný důkaz toho, že je systém nelegál, v legálkních win7 ho nenajdete.