Stránka 1 z 1

chyby Windows + pomalý internet

Napsal: 31 črc 2011 11:31
od vospunt
čau, mám internet rozdělen routerem na PC a notebook ... v notebooku mi to jede v klidu ( 10Mbit ) v PC je to horší ...

ale hlavní je, že v PC když vypínám, restartuji, odhlašuji se z Windows tak vyhodí 2 hlášky a to:
1. Tento program neodpovídá ( |1rezerv ) ptá se jestli ukončit či storno
2. Chyba aplikace ( netstat.exe ) kod chyby : 0xc0000142

po odklikání ukončit a OK se PC vypne ale trvá mu to ...

RSit log dodám ihned jak najdu program

Re: chyby Windows + pomalý internet

Napsal: 31 črc 2011 11:38
od vospunt
ještě dodám ... v TRAY mám jen jednu ikonku a to ovládání zvuku ... ovladač na ATI grafiku chybí a další ...
ve správci úloh mám 17x spuštěn proces svchost.exe ... ( 3x pod LOCAL SERVICE 2x uživatel xyz zbytek SYSTEM )

LOG ZDE:


Logfile of random's system information tool 1.08 (written by random/random)
Run by xyz at 2011-07-31 12:33:14
Systém Microsoft Windows XP Professional Service Pack 3
System drive D: has 76 GB (74%) free of 102 GB
Total RAM: 2047 MB (80% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:33:50, on 31.7.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\Ati2evxx.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\system32\brsvc01a.exe
D:\WINDOWS\system32\spoolsv.exe
D:\WINDOWS\system32\brss01a.exe
D:\WINDOWS\system32\Ati2evxx.exe
D:\WINDOWS\Explorer.EXE
D:\Program Files\Analog Devices\Core\smax4pnp.exe
D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
D:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
D:\WINDOWS\system32\rundll32.exe
D:\WINDOWS\update.1\svchost.exe
D:\WINDOWS\sysdriver32.exe
D:\WINDOWS\sysdriver32_.exe
D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
D:\WINDOWS\l1rezerv.exe
D:\WINDOWS\systemup.exe
D:\WINDOWS\update.3\svchost.exe
D:\Program Files\Java\jre6\bin\jqs.exe
D:\WINDOWS\system32\PnkBstrA.exe
D:\WINDOWS\update.5.0\svchost.exe
D:\WINDOWS\update.2\svchost.exe
D:\WINDOWS\update.5.0\svchost.exe
D:\WINDOWS\sysdriver32.exe
D:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\update.1\svchost.exe
D:\WINDOWS\system32\wbem\wmiapsrv.exe
D:\WINDOWS\update.2\svchost.exe
D:\Documents and Settings\xyz\Plocha\6453xxx\RSIT.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\system32\taskmgr.exe
D:\Program Files\trend micro\xyz.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://workgroup/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - D:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - D:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - D:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [JMB36X Configure] D:\WINDOWS\system32\JMRaidTool.exe boot
O4 - HKLM\..\Run: [StartCCC] "D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [SoundMAXPnP] D:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [SSBkgdUpdate] "D:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [PaperPort PTD] D:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
O4 - HKLM\..\Run: [IndexSearch] D:\Program Files\ScanSoft\PaperPort\IndexSearch.exe
O4 - HKLM\..\Run: [SetDefPrt] D:\Program Files\Brother\Brmfl05a\BrStDvPt.exe
O4 - HKLM\..\Run: [ControlCenter2.0] D:\Program Files\Brother\ControlCenter2\brctrcen.exe /autorun
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [wxpdrv] D:\WINDOWS\update.1\svchost.exe
O4 - HKLM\..\Run: [9237312.exe] "D:\DOCUME~1\xyz\LOCALS~1\Temp\9237312.exe"
O4 - HKLM\..\Run: [sysdriver32.exe] "D:\WINDOWS\sysdriver32.exe" rezerv
O4 - HKLM\..\Run: [sysdriver32_.exe] "D:\WINDOWS\sysdriver32_.exe" rezerv
O4 - HKLM\..\Run: [2382068.exe] "D:\WINDOWS\TEMP\2382068.exe"
O4 - HKLM\..\Run: [8947357.exe] "D:\DOCUME~1\xyz\LOCALS~1\Temp\8947357.exe"
O4 - HKLM\..\Run: [l1rezerv.exe] "D:\WINDOWS\l1rezerv.exe"
O4 - HKLM\..\Run: [70032023-loader2.exe] "D:\WINDOWS\TEMP\70032023-loader2.exe"
O4 - HKLM\..\Run: [systemup] "D:\WINDOWS\systemup.exe" stand
O4 - HKLM\..\Run: [w_distrib.exe] "D:\WINDOWS\update.3\svchost.exe" stand
O4 - HKLM\..\Run: [445345.exe] "D:\WINDOWS\TEMP\445345.exe"
O4 - HKLM\..\Run: [2602233.exe] "D:\WINDOWS\TEMP\2602233.exe"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: _uninst_02320668.lnk = D:\Documents and Settings\xyz\Local Settings\temp\_uninst_02320668.bat
O4 - Global Startup: Status Monitor.lnk = D:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - D:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - D:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - D:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - D:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - D:\WINDOWS\system32\browseui.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - D:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - D:\WINDOWS\system32\ati2sgag.exe
O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - D:\WINDOWS\system32\brsvc01a.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - D:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: PnkBstrA - Unknown owner - D:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: srvbtcclient - Unknown owner - D:\WINDOWS\update.5.0\svchost.exe
O23 - Service: srviecheck - Unknown owner - D:\WINDOWS\update.2\svchost.exe
O23 - Service: srvsysdriver32 - Unknown owner - D:\WINDOWS\sysdriver32.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - D:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: wxpdrivers - Unknown owner - D:\WINDOWS\update.1\svchost.exe

--
End of file - 6453 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - D:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - D:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-05-03 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - D:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-05-03 79648]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"JMB36X Configure"=D:\WINDOWS\system32\JMRaidTool.exe [2006-06-02 385024]
"StartCCC"=D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2008-08-29 61440]
"SoundMAXPnP"=D:\Program Files\Analog Devices\Core\smax4pnp.exe [2006-05-01 843776]
"SSBkgdUpdate"=D:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [2003-10-14 155648]
"PaperPort PTD"=D:\Program Files\ScanSoft\PaperPort\pptd40nt.exe [2005-03-17 57393]
"IndexSearch"=D:\Program Files\ScanSoft\PaperPort\IndexSearch.exe [2005-03-17 40960]
"SetDefPrt"=D:\Program Files\Brother\Brmfl05a\BrStDvPt.exe [2005-01-26 49152]
"ControlCenter2.0"=D:\Program Files\Brother\ControlCenter2\brctrcen.exe [2005-05-17 933888]
"BluetoothAuthenticationAgent"=bthprops.cpl,,BluetoothAuthenticationAgent []
"wxpdrv"=D:\WINDOWS\update.1\svchost.exe [2011-07-24 1185792]
"9237312.exe"=D:\DOCUME~1\xyz\LOCALS~1\Temp\9237312.exe [2011-07-24 247296]
"sysdriver32.exe"=D:\WINDOWS\sysdriver32.exe [2011-07-25 256000]
"sysdriver32_.exe"=D:\WINDOWS\sysdriver32_.exe [2011-07-25 256000]
"2382068.exe"=D:\WINDOWS\TEMP\2382068.exe [2011-07-24 247296]
"8947357.exe"=D:\DOCUME~1\xyz\LOCALS~1\Temp\8947357.exe [2011-07-24 247296]
"l1rezerv.exe"=D:\WINDOWS\l1rezerv.exe [2011-07-24 232960]
"70032023-loader2.exe"=D:\WINDOWS\TEMP\70032023-loader2.exe [2011-07-24 247296]
"systemup"=D:\WINDOWS\systemup.exe [2011-07-24 114176]
"w_distrib.exe"=D:\WINDOWS\update.3\svchost.exe [2011-07-29 272896]
"445345.exe"=D:\WINDOWS\TEMP\445345.exe [2011-07-29 502272]
"2602233.exe"=D:\WINDOWS\TEMP\2602233.exe [2011-07-29 256000]

D:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Status Monitor.lnk - D:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe

D:\Documents and Settings\xyz\Nabídka Start\Programy\Po spuštění
_uninst_02320668.lnk - D:\Documents and Settings\xyz\Local Settings\temp\_uninst_02320668.bat

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
D:\WINDOWS\system32\Ati2evxx.dll [2011-05-25 188416]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
D:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - D:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\wxpdrivers]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\wxpdrivers]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLUA"=0
"EnableSecureUIAPaths"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"D:\Program Files\uTorrent\uTorrent.exe"="D:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"D:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe"="D:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe:*:Enabled:Ubisoft Game Launcher"
"D:\WINDOWS\system32\PnkBstrA.exe"="D:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA"
"D:\WINDOWS\system32\PnkBstrB.exe"="D:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB"
"C:\hry\BITVA O STREDOZEM\game.dat"="C:\hry\BITVA O STREDOZEM\game.dat:*:Enabled:The Battle for Middle-earth (tm)"
"D:\Program Files\TeamViewer\Version6\TeamViewer.exe"="D:\Program Files\TeamViewer\Version6\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application"
"D:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe"="D:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe:*:Enabled:Teamviewer Remote Control Service"
"D:\Program Files\Java\jre6\bin\javaw.exe"="D:\Program Files\Java\jre6\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\hry\Alpha Protocol\Binaries\APGame.exe"="C:\hry\Alpha Protocol\Binaries\APGame.exe:*:Enabled:Alpha Protocol"
"D:\Program Files\Skype\Phone\Skype.exe"="D:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\hry\Battle vs. Chess\battlevschess.exe"="C:\hry\Battle vs. Chess\battlevschess.exe:*:Enabled:Battle vs. Chess - Fantasy chess game"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\hry\Colin McDirt 3\dirt3_game.exe"="C:\hry\Colin McDirt 3\dirt3_game.exe:*:Enabled:DiRT 3"
"C:\hry\SHIFT 2 UNLEASHED\shift2u.exe"="C:\hry\SHIFT 2 UNLEASHED\shift2u.exe:*:Enabled:SHIFT 2 UNLEASHED™"
"C:\hry\avatar\bin\Avatar.exe"="C:\hry\avatar\bin\Avatar.exe:*:Enabled:James Cameron's AVATAR(tm): THE GAME"
"C:\hry\avatar\bin\AvatarLauncher.exe"="C:\hry\avatar\bin\AvatarLauncher.exe:*:Enabled:Updater"
"C:\hry\Attack on Pearl Harbor\Attack On Pearl Harbor.exe"="C:\hry\Attack on Pearl Harbor\Attack On Pearl Harbor.exe:*:Enabled:Attack On Pearl Harbor"
"D:\Documents and Settings\xyz\Plocha\dfd\Flash-Player.exe"="D:\Documents and Settings\xyz\Plocha\dfd\Flash-Player.exe:*:Enabled:D:\Documents and Settings\xyz\Plocha\dfd\Flash-Player.exe"
"D:\WINDOWS\update.1\svchost.exe"="D:\WINDOWS\update.1\svchost.exe:*:Enabled:D:\WINDOWS\update.1\svchost.exe"
"D:\WINDOWS\update.2\svchost.exe"="D:\WINDOWS\update.2\svchost.exe:*:Enabled:D:\WINDOWS\update.2\svchost.exe"
"D:\WINDOWS\update.2\3014.exe"="D:\WINDOWS\update.2\3014.exe:*:Enabled:D:\WINDOWS\update.2\3014.exe"
"D:\WINDOWS\update.3\svchost.exe"="D:\WINDOWS\update.3\svchost.exe:*:Enabled:D:\WINDOWS\update.3\svchost.exe"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\hry\Dragon Age 2\bin_ship\DragonAge2.exe"="C:\hry\Dragon Age 2\bin_ship\DragonAge2.exe:*:Enabled:Dragon Age II"
"C:\hry\Dragon Age 2\DragonAge2Launcher.exe"="C:\hry\Dragon Age 2\DragonAge2Launcher.exe:*:Enabled:Dragon Age II Launcher"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

======List of files/folders created in the last 1 months======

2011-07-25 15:46:51 ----A---- D:\WINDOWS\w_distrib_iplist.txt
2011-07-25 15:46:04 ----HD---- D:\WINDOWS\update.3
2011-07-24 11:30:10 ----SHD---- D:\Config.Msi
2011-07-24 11:28:34 ----A---- D:\WINDOWS\system32\ativvamv.dll
2011-07-24 11:28:34 ----A---- D:\WINDOWS\system32\atimpc32.dll
2011-07-24 11:28:34 ----A---- D:\WINDOWS\system32\aticalrt.dll
2011-07-24 11:28:34 ----A---- D:\WINDOWS\system32\aticaldd.dll
2011-07-24 11:28:34 ----A---- D:\WINDOWS\system32\aticalcl.dll
2011-07-24 11:28:34 ----A---- D:\WINDOWS\system32\atibtmon.exe
2011-07-24 11:28:33 ----A---- D:\WINDOWS\system32\atiapfxx.exe
2011-07-24 11:28:29 ----DC---- D:\WINDOWS\system32\DRVSTORE
2011-07-24 11:28:15 ----D---- D:\Program Files\ATI
2011-07-24 11:17:12 ----D---- D:\ATI
2011-07-24 11:12:30 ----A---- D:\WINDOWS\ddh_iplist.txt
2011-07-24 11:12:19 ----D---- D:\WINDOWS\ufa
2011-07-24 11:12:19 ----D---- D:\WINDOWS\rpcminer
2011-07-24 11:12:19 ----D---- D:\WINDOWS\phoenix
2011-07-24 11:12:08 ----A---- D:\WINDOWS\systemup.exe
2011-07-24 11:11:54 ----A---- D:\WINDOWS\btc_client_iplist.txt
2011-07-24 11:10:56 ----HD---- D:\WINDOWS\update.5.0
2011-07-24 11:10:55 ----A---- D:\WINDOWS\iecheck_iplist.txt
2011-07-24 11:10:07 ----A---- D:\WINDOWS\l1rezerv.exe
2011-07-24 11:08:27 ----HD---- D:\WINDOWS\update.2
2011-07-24 11:08:23 ----A---- D:\WINDOWS\unrar.exe
2011-07-24 11:07:31 ----A---- D:\WINDOWS\iplist.txt
2011-07-24 11:07:16 ----A---- D:\WINDOWS\loader2.exe_ok
2011-07-24 11:07:14 ----A---- D:\WINDOWS\sysdriver32_.exe
2011-07-24 11:06:58 ----A---- D:\WINDOWS\sysdriver32.exe
2011-07-24 11:06:42 ----A---- D:\WINDOWS\front_ip_list.txt
2011-07-24 11:06:37 ----HD---- D:\WINDOWS\update.1
2011-07-24 11:06:37 ----A---- D:\WINDOWS\services32.exe
2011-07-21 20:50:18 ----A---- D:\WINDOWS\system32\drivers\utqyotyy.sys
2011-07-21 16:18:06 ----SHD---- D:\RECYCLER
2011-07-21 16:06:34 ----A---- D:\ComboFix.txt
2011-07-21 15:58:51 ----D---- D:\WINDOWS\temp
2011-07-20 21:24:25 ----A---- D:\WINDOWS\NIRCMD.exe
2011-07-20 21:24:25 ----A---- D:\WINDOWS\MBR.exe
2011-07-20 21:24:24 ----A---- D:\WINDOWS\zip.exe
2011-07-20 21:24:24 ----A---- D:\WINDOWS\SWXCACLS.exe
2011-07-20 21:24:24 ----A---- D:\WINDOWS\SWSC.exe
2011-07-20 21:24:24 ----A---- D:\WINDOWS\SWREG.exe
2011-07-20 21:24:24 ----A---- D:\WINDOWS\sed.exe
2011-07-20 21:24:24 ----A---- D:\WINDOWS\grep.exe
2011-07-20 21:24:15 ----D---- D:\WINDOWS\ERDNT
2011-07-20 21:24:02 ----D---- D:\Qoobox
2011-07-17 07:04:33 ----D---- D:\Documents and Settings\xyz\Data aplikací\Malwarebytes
2011-07-17 07:04:27 ----D---- D:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2011-07-17 07:04:24 ----D---- D:\Program Files\Malwarebytes' Anti-Malware
2011-07-16 22:27:00 ----D---- D:\Program Files\CrystalDiskInfo
2011-07-16 07:55:48 ----AD---- D:\Documents and Settings\xyz\Data aplikací\.minecraft
2011-07-15 21:55:27 ----D---- D:\Documents and Settings\xyz\Data aplikací\GHISLER
2011-07-15 21:55:27 ----A---- D:\WINDOWS\UC.PIF
2011-07-15 21:55:27 ----A---- D:\WINDOWS\RAR.PIF
2011-07-15 21:55:27 ----A---- D:\WINDOWS\PKZIP.PIF
2011-07-15 21:55:27 ----A---- D:\WINDOWS\PKUNZIP.PIF
2011-07-15 21:55:27 ----A---- D:\WINDOWS\NOCLOSE.PIF
2011-07-15 21:55:27 ----A---- D:\WINDOWS\LHA.PIF
2011-07-15 21:55:27 ----A---- D:\WINDOWS\ARJ.PIF
2011-07-15 07:26:14 ----D---- D:\rsit
2011-07-15 07:26:14 ----D---- D:\Program Files\trend micro
2011-07-14 18:17:32 ----D---- D:\Program Files\Vag-Labs
2011-07-14 18:13:06 ----D---- D:\Documents and Settings\xyz\Data aplikací\mncraft173
2011-07-14 18:12:53 ----D---- D:\Documents and Settings\xyz\Data aplikací\mncraft
2011-07-14 17:48:45 ----D---- D:\Documents and Settings\xyz\Data aplikací\BinarySense
2011-07-14 17:40:18 ----D---- D:\Program Files\DiskCheckup
2011-07-14 17:34:17 ----D---- D:\Program Files\MinecraftAlpha
2011-07-08 20:29:15 ----D---- D:\Documents and Settings\All Users\Data aplikací\Solidshield

======List of files/folders modified in the last 1 months======

2011-07-31 12:30:51 ----A---- D:\WINDOWS\SchedLgU.Txt
2011-07-29 09:42:58 ----D---- D:\WINDOWS\system32\config
2011-07-25 16:16:51 ----D---- D:\WINDOWS\system32\CatRoot2
2011-07-25 15:46:51 ----D---- D:\WINDOWS
2011-07-24 19:33:21 ----HD---- D:\WINDOWS\inf
2011-07-24 19:32:25 ----D---- D:\WINDOWS\system32
2011-07-24 11:30:48 ----SHD---- D:\WINDOWS\Installer
2011-07-24 11:29:14 ----RSHDC---- D:\WINDOWS\system32\dllcache
2011-07-24 11:29:09 ----D---- D:\WINDOWS\system32\drivers
2011-07-24 11:28:26 ----D---- D:\Program Files\ATI Technologies
2011-07-24 11:28:15 ----RD---- D:\Program Files
2011-07-24 11:12:55 ----SHD---- D:\System Volume Information
2011-07-24 11:12:55 ----D---- D:\WINDOWS\system32\Restore
2011-07-24 11:09:42 ----D---- D:\WINDOWS\system32\drivers\etc
2011-07-21 16:02:27 ----A---- D:\WINDOWS\system.ini
2011-07-21 15:55:28 ----D---- D:\WINDOWS\AppPatch
2011-07-21 15:55:11 ----D---- D:\Program Files\Common Files
2011-07-20 21:48:42 ----SD---- D:\WINDOWS\Tasks
2011-07-19 19:48:34 ----AD---- D:\Documents and Settings\All Users\Data aplikací\TEMP
2011-07-17 12:46:16 ----HDC---- D:\WINDOWS\$NtUninstallKB967715$
2011-07-15 08:57:20 ----HD---- D:\Program Files\InstallShield Installation Information
2011-07-15 08:22:13 ----A---- D:\WINDOWS\system32\PerfStringBackup.INI
2011-07-15 08:09:39 ----D---- D:\Program Files\Common Files\Microsoft Shared
2011-07-15 08:02:30 ----RD---- D:\Program Files\Skype
2011-07-15 07:51:40 ----D---- D:\Program Files\Your Uninstaller 2010
2011-07-15 07:26:19 ----D---- D:\WINDOWS\Prefetch
2011-07-15 07:07:55 ----D---- D:\Program Files\Defraggler
2011-07-14 18:19:25 ----D---- D:\WINDOWS\system32\DirectX
2011-07-14 18:18:38 ----RSD---- D:\WINDOWS\assembly
2011-07-13 17:10:26 ----D---- D:\Documents and Settings\xyz\Data aplikací\uTorrent
2011-07-08 19:19:11 ----D---- D:\Documents and Settings\xyz\Data aplikací\My Battle for Middle-earth Files
2011-07-06 10:36:09 ----D---- D:\Documents and Settings\All Users\Data aplikací\Adobe
2011-07-05 13:05:43 ----D---- D:\Program Files\Common Files\Adobe
2011-07-03 19:13:55 ----D---- D:\WINDOWS\WinSxS

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 JGOGO;JMicron Hot-Plug Driver; D:\WINDOWS\system32\DRIVERS\JGOGO.sys [2006-02-07 6912]
R0 JRAID;JRAID; D:\WINDOWS\system32\DRIVERS\jraid.sys [2006-08-04 43904]
R0 sptd;sptd; D:\WINDOWS\System32\Drivers\sptd.sys [2011-04-19 717296]
R1 intelppm;Řadič procesoru Intel; D:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 kbdhid;Ovladač klávesnice standardu HID; D:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; D:\WINDOWS\system32\drivers\ADIHdAud.sys [2006-05-02 229376]
R3 AEAudio;AE Audio Service; D:\WINDOWS\system32\drivers\AEAudio.sys [2006-04-27 93824]
R3 ati2mtag;ati2mtag; D:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2011-05-25 6554624]
R3 AtiHdmiService;ATI Function Driver for HDMI Service; D:\WINDOWS\system32\drivers\AtiHdmi.sys [2008-07-02 89600]
R3 hamachi;Hamachi Network Interface; D:\WINDOWS\system32\DRIVERS\hamachi.sys [2011-05-03 25280]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; D:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Ovladač třídy standardu HID; D:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 mouhid;Ovladač myši standardu HID; D:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-25 12160]
R3 MTsensor;ATK0110 ACPI UTILITY; D:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; D:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2006-07-27 83712]
R3 SenFiltService;SenFilt Service; D:\WINDOWS\system32\drivers\Senfilt.sys [2006-03-17 392960]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; D:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; D:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
S3 arj74j8j;arj74j8j; D:\WINDOWS\system32\drivers\arj74j8j.sys []
S3 BrScnUsb;Brother USB Still Image driver; D:\WINDOWS\System32\Drivers\BrScnUsb.sys [2004-10-15 15295]
S3 BthEnum;Služba Bluetooth Enumerator; D:\WINDOWS\system32\DRIVERS\BthEnum.sys [2008-04-14 17024]
S3 BthPan;Bluetooth Device (Personal Area Network); D:\WINDOWS\system32\DRIVERS\bthpan.sys [2008-04-14 101120]
S3 BTHPORT;Ovladač portu Bluetooth; D:\WINDOWS\System32\Drivers\BTHport.sys [2008-06-14 272128]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; D:\WINDOWS\System32\Drivers\BTHUSB.sys [2008-04-14 18944]
S3 catchme;catchme; \??\D:\ComboFix\catchme.sys []
S3 nv;nv; D:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2004-08-03 1897408]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); D:\WINDOWS\system32\DRIVERS\rfcomm.sys [2008-04-14 59136]
S3 usbprint;Třída USB Printer; D:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; D:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 utqyotyy;AVZ Kernel Driver; \??\D:\WINDOWS\system32\Drivers\utqyotyy.sys []
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; D:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; D:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Ati HotKey Poller;Ati HotKey Poller; D:\WINDOWS\system32\Ati2evxx.exe [2011-05-25 643072]
R2 Brother XP spl Service;BrSplService; D:\WINDOWS\system32\brsvc01a.exe [2002-04-12 57344]
R2 BthServ;Bluetooth Support Service; D:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 JavaQuickStarterService;Java Quick Starter; D:\Program Files\Java\jre6\bin\jqs.exe [2011-05-03 153376]
R2 PnkBstrA;PnkBstrA; D:\WINDOWS\system32\PnkBstrA.exe [2011-04-21 75136]
R2 srvbtcclient;srvbtcclient; D:\WINDOWS\update.5.0\svchost.exe [2011-07-26 348672]
R2 srviecheck;srviecheck; D:\WINDOWS\update.2\svchost.exe [2011-07-27 502272]
R2 srvsysdriver32;srvsysdriver32; D:\WINDOWS\sysdriver32.exe [2011-07-25 256000]
R2 StarWindServiceAE;StarWind AE Service; D:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2007-05-28 275968]
R2 wxpdrivers;wxpdrivers; D:\WINDOWS\update.1\svchost.exe [2011-07-24 1185792]
S2 ATI Smart;ATI Smart; D:\WINDOWS\system32\ati2sgag.exe [2008-10-03 593920]
S3 aspnet_state;ASP.NET State Service; D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; D:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; D:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; D:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; D:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Re: chyby Windows + pomalý internet

Napsal: 31 črc 2011 19:59
od motji
Dobrý večer :)
Že jste klikal na nějaký odkaz na FB?

:arrow: Stáhněte Roguekiller http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
-ukončete všechny spuštěné programy
-spusťte program, pro visty/win 7 spustte pravým tlačítkem myši - jako správce
-použijte volbu 2 - enter
-pak použijte postupně i volby 3,4,5
-vložte zde logy


:arrow: Spusťte combofix podle tohoto návodu
http://www.bleepingcomputer.com/combofi ... t-combofix
- přejmenujte combofix na potvůrka.com

Re: chyby Windows + pomalý internet

Napsal: 31 črc 2011 20:27
od vospunt
posilam logy
1.
RogueKiller V5.2.9 [07/31/2011] by Tigzy
contact at http://www.sur-la-toile.com
mail: tigzyRK<at>gmail<dot>com
Feedback: http://www.sur-la-toile.com/discussion- ... ntees.html

Operating System: Windows XP (5.1.2600 Service Pack 3) 32 bits version
Started in : Normal mode
User: xyz [Admin rights]
Mode: Remove -- Date : 07/31/2011 21:16:57

Bad processes: 7
[SVCHOST] svchost.exe -- d:\windows\update.1\svchost.exe -> KILLED
[SUSP PATH] l1rezerv.exe -- d:\windows\l1rezerv.exe -> KILLED
[SUSP PATH] systemup.exe -- d:\windows\systemup.exe -> KILLED
[SVCHOST] svchost.exe -- d:\windows\update.3\svchost.exe -> KILLED
[SVCHOST] svchost.exe -- d:\windows\update.5.0\svchost.exe -> KILLED
[SUSP PATH] sysdriver32.exe -- d:\windows\sysdriver32.exe -> KILLED
[SVCHOST] svchost.exe -- d:\windows\update.2\svchost.exe -> KILLED

Registry Entries: 16
[SUSP PATH] HKLM\[...]\Run : 9237312.exe ("D:\DOCUME~1\xyz\LOCALS~1\Temp\9237312.exe") -> DELETED
[SUSP PATH] HKLM\[...]\Run : sysdriver32.exe ("D:\WINDOWS\sysdriver32.exe" rezerv) -> DELETED
[SUSP PATH] HKLM\[...]\Run : sysdriver32_.exe ("D:\WINDOWS\sysdriver32_.exe" rezerv) -> DELETED
[SUSP PATH] HKLM\[...]\Run : 2382068.exe ("D:\WINDOWS\TEMP\2382068.exe") -> DELETED
[SUSP PATH] HKLM\[...]\Run : 8947357.exe ("D:\DOCUME~1\xyz\LOCALS~1\Temp\8947357.exe") -> DELETED
[SUSP PATH] HKLM\[...]\Run : l1rezerv.exe ("D:\WINDOWS\l1rezerv.exe") -> DELETED
[SUSP PATH] HKLM\[...]\Run : 70032023-loader2.exe ("D:\WINDOWS\TEMP\70032023-loader2.exe") -> DELETED
[SUSP PATH] HKLM\[...]\Run : systemup ("D:\WINDOWS\systemup.exe" stand) -> DELETED
[SUSP PATH] HKLM\[...]\Run : 445345.exe ("D:\WINDOWS\TEMP\445345.exe") -> DELETED
[SUSP PATH] HKLM\[...]\Run : 2602233.exe ("D:\WINDOWS\TEMP\2602233.exe") -> DELETED
[SUSP PATH] _uninst_02320668.lnk : D:\Documents and Settings\xyz\Local Settings\temp\_uninst_02320668.bat -> DELETED
[HJ] HKLM\[...]\System : EnableLUA (0) -> REPLACED (1)
[HJ] HKLM\[...]\Security Center : AntiVirusDisableNotify (1) -> REPLACED (0)
[HJ] HKLM\[...]\Security Center : FirewallDisableNotify (1) -> REPLACED (0)
[HJ] HKLM\[...]\Security Center : UpdatesDisableNotify (1) -> REPLACED (0)
[HJ] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> REPLACED (0)

HOSTS File:
127.0.0.1 localhost
127.0.0.1 vkontakte.ru
127.0.0.1 www.vkontakte.ru
127.0.0.1 login.vk.com
127.0.0.1 vk.com
127.0.0.1 www.vk.com
127.0.0.1 odnoklassniki.ru
127.0.0.1 www.odnoklassniki.ru
127.0.0.1 facebook.com
127.0.0.1 www.facebook.com
127.0.0.1 af-za.facebook.com
127.0.0.1 az-az.facebook.com
127.0.0.1 id-id.facebook.com
127.0.0.1 ms-my.facebook.com
127.0.0.1 bs-ba.facebook.com
127.0.0.1 ca-es.facebook.com
127.0.0.1 cs-cz.facebook.com
127.0.0.1 cy-gb.facebook.com
127.0.0.1 da-dk.facebook.com
127.0.0.1 de-de.facebook.com
[...]


Finished : << RKreport[1].txt >>
RKreport[1].txt

2.

RogueKiller V5.2.9 [07/31/2011] by Tigzy
contact at http://www.sur-la-toile.com
mail: tigzyRK<at>gmail<dot>com
Feedback: http://www.sur-la-toile.com/discussion- ... ntees.html

Operating System: Windows XP (5.1.2600 Service Pack 3) 32 bits version
Started in : Normal mode
User: xyz [Admin rights]
Mode: HOSTSFix -- Date : 07/31/2011 21:19:03

Bad processes: 1
[SUSP PATH] RogueKiller.exe -- d:\documents and settings\xyz\plocha\roguekiller\roguekiller.exe -> KILLED

HOSTS File:
127.0.0.1 localhost
127.0.0.1 vkontakte.ru
127.0.0.1 www.vkontakte.ru
127.0.0.1 login.vk.com
127.0.0.1 vk.com
127.0.0.1 www.vk.com
127.0.0.1 odnoklassniki.ru
127.0.0.1 www.odnoklassniki.ru
127.0.0.1 facebook.com
127.0.0.1 www.facebook.com
127.0.0.1 af-za.facebook.com
127.0.0.1 az-az.facebook.com
127.0.0.1 id-id.facebook.com
127.0.0.1 ms-my.facebook.com
127.0.0.1 bs-ba.facebook.com
127.0.0.1 ca-es.facebook.com
127.0.0.1 cs-cz.facebook.com
127.0.0.1 cy-gb.facebook.com
127.0.0.1 da-dk.facebook.com
127.0.0.1 de-de.facebook.com
[...]


Resetted HOSTS:
127.0.0.1 localhost

Finished : << RKreport[2].txt >>
RKreport[1].txt ; RKreport[2].txt


3.

RogueKiller V5.2.9 [07/31/2011] by Tigzy
contact at http://www.sur-la-toile.com
mail: tigzyRK<at>gmail<dot>com
Feedback: http://www.sur-la-toile.com/discussion- ... ntees.html

Operating System: Windows XP (5.1.2600 Service Pack 3) 32 bits version
Started in : Normal mode
User: xyz [Admin rights]
Mode: ProxyFix -- Date : 07/31/2011 21:19:20

Bad processes: 0

Registry Entries: 0

Finished : << RKreport[3].txt >>
RKreport[1].txt ; RKreport[2].txt ; RKreport[3].txt


4.

RogueKiller V5.2.9 [07/31/2011] by Tigzy
contact at http://www.sur-la-toile.com
mail: tigzyRK<at>gmail<dot>com
Feedback: http://www.sur-la-toile.com/discussion- ... ntees.html

Operating System: Windows XP (5.1.2600 Service Pack 3) 32 bits version
Started in : Normal mode
User: xyz [Admin rights]
Mode: DNSFix -- Date : 07/31/2011 21:19:38

Bad processes: 0

Registry Entries: 0

Finished : << RKreport[4].txt >>
RKreport[1].txt ; RKreport[2].txt ; RKreport[3].txt ; RKreport[4].txt

Re: chyby Windows + pomalý internet

Napsal: 31 črc 2011 20:38
od motji
Ještě počkám na log z combofixu.

Re: chyby Windows + pomalý internet

Napsal: 31 črc 2011 21:04
od vospunt
Log z ComboFixu


ComboFix 11-07-31.04 - xyz 31.07.2011 21:39:49.3.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.2047.1627 [GMT 2:00]
Spuštěný z: d:\documents and settings\xyz\Plocha\combofix\ComboFix.exe
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\install.exe
d:\windows\btc_client_iplist.txt
d:\windows\ddh_iplist.txt
d:\windows\front_ip_list.txt
d:\windows\geoiplist
d:\windows\geoiplist.rar
d:\windows\iecheck_iplist.txt
d:\windows\info1
d:\windows\iplist.txt
d:\windows\iun6002.exe
d:\windows\l1rezerv.exe
d:\windows\loader2.exe_ok
d:\windows\phoenix
d:\windows\phoenix.rar
d:\windows\phoenix\kernels\phatk\__init__.py
d:\windows\phoenix\kernels\phatk\__init__.pyc
d:\windows\phoenix\kernels\phatk\BFIPatcher.py
d:\windows\phoenix\kernels\phatk\kernel.cl
d:\windows\phoenix\kernels\poclbm\__init__.py
d:\windows\phoenix\kernels\poclbm\__init__.pyc
d:\windows\phoenix\kernels\poclbm\BFIPatcher.py
d:\windows\phoenix\kernels\poclbm\kernel.cl
d:\windows\phoenix\phoenix.exe
d:\windows\proc_list1.log
d:\windows\rpcminer
d:\windows\rpcminer.rar
d:\windows\rpcminer\bitcoinminercuda_10.cubin
d:\windows\rpcminer\bitcoinminercuda_11.cubin
d:\windows\rpcminer\bitcoinminercuda_20.cubin
d:\windows\rpcminer\bitcoinmineropencl.cl
d:\windows\rpcminer\cudart32_32_16.dll
d:\windows\rpcminer\curllib.dll
d:\windows\rpcminer\libeay32.dll
d:\windows\rpcminer\libsasl.dll
d:\windows\rpcminer\openldap.dll
d:\windows\rpcminer\rpcminer-4way.exe
d:\windows\rpcminer\rpcminer-cpu.exe
d:\windows\rpcminer\rpcminer-cuda.exe
d:\windows\rpcminer\rpcminer-opencl.exe
d:\windows\rpcminer\ssleay32.dll
d:\windows\services32.exe
d:\windows\sysdriver32.exe
d:\windows\sysdriver32_.exe
d:\windows\system32\drivers\etc\HSTS~1
d:\windows\systemup.exe
d:\windows\ufa.rar
d:\windows\update.1
d:\windows\update.1\svchost.exe
d:\windows\update.2
d:\windows\update.2\3014.exe
d:\windows\update.2\svchost.exe
d:\windows\update.3
d:\windows\update.3\svchost.exe
d:\windows\update.5.0
d:\windows\update.5.0\svchost.exe
d:\windows\w_distrib_iplist.txt
d:\windows\winsetupapi.log
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_SRVBTCCLIENT
-------\Legacy_SRVIECHECK
-------\Legacy_SRVSYSDRIVER32
-------\Legacy_WXPDRIVERS
-------\Service_srvbtcclient
-------\Service_srviecheck
-------\Service_srvsysdriver32
-------\Service_wxpdrivers
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-06-28 do 2011-07-31 )))))))))))))))))))))))))))))))
.
.
2011-07-24 09:28 . 2011-05-25 03:53 57344 ----a-w- d:\windows\system32\aticalrt.dll
2011-07-24 09:28 . 2011-05-25 03:53 53248 ----a-w- d:\windows\system32\aticalcl.dll
2011-07-24 09:28 . 2011-05-25 03:42 5922816 ----a-w- d:\windows\system32\aticaldd.dll
2011-07-24 09:28 . 2011-05-25 03:07 956160 ----a-w- d:\windows\system32\ativvamv.dll
2011-07-24 09:28 . 2011-05-25 02:38 64512 ----a-w- d:\windows\system32\atimpc32.dll
2011-07-24 09:28 . 2009-05-11 21:35 118784 ----a-w- d:\windows\system32\atibtmon.exe
2011-07-24 09:28 . 2011-05-25 02:34 151552 ----a-w- d:\windows\system32\atiapfxx.exe
2011-07-24 09:28 . 2011-07-24 09:28 -------- dc----w- d:\windows\system32\DRVSTORE
2011-07-24 09:28 . 2011-07-24 09:28 -------- d-----w- d:\program files\ATI
2011-07-24 09:28 . 2011-07-24 09:28 -------- d-----w- d:\documents and settings\Default User\Local Settings\Data aplikací\ATI
2011-07-24 09:28 . 2011-07-24 09:28 -------- d-----w- d:\documents and settings\Default User\Data aplikací\ATI
2011-07-24 09:17 . 2011-07-24 09:17 -------- d-----w- D:\ATI
2011-07-24 09:12 . 2011-07-24 09:12 -------- d-----w- d:\windows\ufa
2011-07-24 09:08 . 2011-07-24 09:12 246272 ----a-w- d:\windows\unrar.exe
2011-07-24 09:06 . 2011-07-24 09:06 -------- d-----w- d:\documents and settings\LocalService\Nabídka Start
2011-07-21 18:50 . 2011-07-21 18:50 7168 ----a-w- d:\windows\system32\drivers\utqyotyy.sys
2011-07-17 05:04 . 2011-07-17 05:04 -------- d-----w- d:\documents and settings\xyz\Data aplikací\Malwarebytes
2011-07-17 05:04 . 2011-07-17 05:04 -------- d-----w- d:\documents and settings\All Users\Data aplikací\Malwarebytes
2011-07-17 05:04 . 2011-07-20 13:29 -------- d-----w- d:\program files\Malwarebytes' Anti-Malware
2011-07-16 20:27 . 2011-07-17 05:06 -------- d-----w- d:\program files\CrystalDiskInfo
2011-07-16 05:55 . 2011-07-16 05:56 -------- d---a-w- d:\documents and settings\xyz\Data aplikací\.minecraft
2011-07-15 19:58 . 2011-07-15 19:58 -------- d-----w- d:\documents and settings\xyz\Local Settings\Data aplikací\GHISLER
2011-07-15 19:55 . 2011-07-15 19:55 -------- d-----w- d:\documents and settings\xyz\Data aplikací\GHISLER
2011-07-15 19:55 . 2010-12-17 05:56 545 ----a-w- d:\windows\UC.PIF
2011-07-15 19:55 . 2010-12-17 05:56 545 ----a-w- d:\windows\RAR.PIF
2011-07-15 19:55 . 2010-12-17 05:56 545 ----a-w- d:\windows\PKZIP.PIF
2011-07-15 19:55 . 2010-12-17 05:56 545 ----a-w- d:\windows\PKUNZIP.PIF
2011-07-15 19:55 . 2010-12-17 05:56 545 ----a-w- d:\windows\NOCLOSE.PIF
2011-07-15 19:55 . 2010-12-17 05:56 545 ----a-w- d:\windows\LHA.PIF
2011-07-15 19:55 . 2010-12-17 05:56 545 ----a-w- d:\windows\ARJ.PIF
2011-07-15 05:26 . 2011-07-31 10:33 -------- d-----w- d:\program files\trend micro
2011-07-15 05:26 . 2011-07-15 05:26 -------- d-----w- D:\rsit
2011-07-14 17:38 . 2011-07-14 17:38 -------- d-----w- d:\documents and settings\xyz\Local Settings\Data aplikací\Electronic Arts
2011-07-14 16:17 . 2011-07-14 16:17 -------- d-----w- d:\program files\Vag-Labs
2011-07-14 16:12 . 2011-07-14 16:13 -------- d-----w- d:\documents and settings\xyz\Data aplikací\mncraft
2011-07-14 15:48 . 2011-07-14 15:48 -------- d-----w- d:\documents and settings\xyz\Data aplikací\BinarySense
2011-07-14 15:40 . 2011-07-15 05:58 -------- d-----w- d:\program files\DiskCheckup
2011-07-14 15:34 . 2011-07-14 15:34 -------- d-----w- d:\program files\MinecraftAlpha
2011-07-08 18:29 . 2011-07-08 18:29 -------- d-----w- d:\documents and settings\All Users\Data aplikací\Solidshield
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-05-31 05:02 . 2011-05-31 05:02 444952 ----a-w- d:\windows\system32\wrap_oal.dll
2011-05-31 05:02 . 2011-05-31 05:02 109080 ----a-w- d:\windows\system32\OpenAL32.dll
2011-05-25 04:21 . 2008-10-03 23:29 6554624 ----a-w- d:\windows\system32\drivers\ati2mtag.sys
2011-05-25 04:15 . 2011-04-17 10:25 311296 ----a-w- d:\windows\system32\atiiiexx.dll
2011-05-25 03:47 . 2008-10-03 22:30 17989632 ----a-w- d:\windows\system32\atioglxx.dll
2011-05-25 03:14 . 2008-10-03 22:17 4059328 ----a-w- d:\windows\system32\ati3duag.dll
2011-05-25 03:05 . 2008-10-03 21:38 503808 ----a-w- d:\windows\system32\atiok3x2.dll
2011-05-25 02:58 . 2008-10-03 21:38 53248 ----a-w- d:\windows\system32\drivers\ati2erec.dll
2011-05-25 02:56 . 2011-04-17 10:25 462848 ----a-w- d:\windows\system32\ATIDEMGX.dll
2011-05-25 02:55 . 2008-10-03 22:40 302592 ----a-w- d:\windows\system32\ati2dvag.dll
2011-05-25 02:54 . 2008-10-03 22:00 3152384 ----a-w- d:\windows\system32\ativvaxx.dll
2011-05-25 02:39 . 2008-10-03 22:30 212992 ----a-w- d:\windows\system32\atipdlxx.dll
2011-05-25 02:39 . 2008-10-03 22:30 155648 ----a-w- d:\windows\system32\Oemdspif.dll
2011-05-25 02:39 . 2008-10-03 22:30 26112 ----a-w- d:\windows\system32\Ati2mdxx.exe
2011-05-25 02:39 . 2008-10-03 22:29 43520 ----a-w- d:\windows\system32\ati2edxx.dll
2011-05-25 02:38 . 2008-10-03 21:45 64512 ----a-w- d:\windows\system32\amdpcom32.dll
2011-05-25 02:38 . 2008-10-03 22:29 188416 ----a-w- d:\windows\system32\ati2evxx.dll
2011-05-25 02:37 . 2008-10-03 22:28 643072 ----a-w- d:\windows\system32\ati2evxx.exe
2011-05-25 02:36 . 2008-10-03 22:26 53248 ----a-w- d:\windows\system32\ATIDDC.DLL
2011-05-25 02:31 . 2008-10-03 21:41 651264 ----a-w- d:\windows\system32\atikvmag.dll
2011-05-25 02:27 . 2008-10-03 21:39 200704 ----a-w- d:\windows\system32\atiadlxx.dll
2011-05-25 02:27 . 2008-10-03 21:39 17408 ----a-w- d:\windows\system32\atitvo32.dll
2011-05-25 02:22 . 2008-10-03 21:32 856064 ----a-w- d:\windows\system32\ati2cqag.dll
2011-05-21 10:29 . 2011-05-21 10:29 98304 ----a-w- d:\windows\system32\CmdLineExt.dll
2011-05-03 17:50 . 2011-05-03 17:50 25280 ----a-w- d:\windows\system32\drivers\hamachi.sys
2011-05-03 17:14 . 2011-05-03 17:15 73728 ----a-w- d:\windows\system32\javacpl.cpl
2011-05-03 17:14 . 2011-05-01 08:51 472808 ----a-w- d:\windows\system32\deployJava1.dll
2011-06-24 16:05 . 2011-04-16 14:09 142296 ----a-w- d:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((( SnapShot@2011-07-20_19.46.40 )))))))))))))))))))))))))))))))))))))))))
.
+ 2011-07-31 19:56 . 2011-07-31 19:56 16384 d:\windows\temp\Perflib_Perfdata_2a0.dat
+ 2011-07-24 09:29 . 2001-11-09 15:01 24064 d:\windows\system32\ReinstallBackups\0028\DriverFiles\B_70332\ativcoxx.dll
+ 2011-07-24 09:29 . 2008-10-03 21:39 17408 d:\windows\system32\ReinstallBackups\0028\DriverFiles\B_70332\atitvo32.dll
+ 2011-07-24 09:29 . 2008-10-03 20:48 81920 d:\windows\system32\ReinstallBackups\0028\DriverFiles\B_70332\ATIODE.exe
+ 2011-07-24 09:29 . 2008-09-29 20:22 45056 d:\windows\system32\ReinstallBackups\0028\DriverFiles\B_70332\ATIODCLI.exe
+ 2011-07-24 09:29 . 2008-10-03 22:26 53248 d:\windows\system32\ReinstallBackups\0028\DriverFiles\B_70332\ATIDDC.DLL
+ 2011-07-24 09:29 . 2008-10-03 21:39 39424 d:\windows\system32\ReinstallBackups\0028\DriverFiles\B_70332\atiadlxx.dll
+ 2011-07-24 09:29 . 2008-10-03 22:30 26112 d:\windows\system32\ReinstallBackups\0028\DriverFiles\B_70332\Ati2mdxx.exe
+ 2011-07-24 09:29 . 2008-10-03 21:38 53248 d:\windows\system32\ReinstallBackups\0028\DriverFiles\B_70332\ati2erec.dll
+ 2011-07-24 09:29 . 2008-10-03 22:29 43520 d:\windows\system32\ReinstallBackups\0028\DriverFiles\B_70332\ati2edxx.dll
+ 2011-07-24 09:29 . 2008-10-03 21:45 48640 d:\windows\system32\ReinstallBackups\0028\DriverFiles\B_70332\amdpcom32.dll
+ 2011-07-24 09:28 . 2011-05-25 02:39 81691 d:\windows\system32\DRVSTORE\CX119602_C923E79E7FC2864718436C852260F8176A3A3704\B119700\oemdspif.dll
+ 2011-07-24 09:28 . 2001-11-09 15:01 12614 d:\windows\system32\DRVSTORE\CX119602_C923E79E7FC2864718436C852260F8176A3A3704\B119700\ativcoxx.dll
+ 2011-07-24 09:28 . 2010-08-27 18:32 81222 d:\windows\system32\DRVSTORE\CX119602_C923E79E7FC2864718436C852260F8176A3A3704\B119700\atiode.exe
+ 2011-07-24 09:28 . 2009-06-22 15:34 25130 d:\windows\system32\DRVSTORE\CX119602_C923E79E7FC2864718436C852260F8176A3A3704\B119700\atiodcli.exe
+ 2011-07-24 09:28 . 2011-05-25 02:38 41422 d:\windows\system32\DRVSTORE\CX119602_C923E79E7FC2864718436C852260F8176A3A3704\B119700\atimpc32.dll
+ 2011-07-24 09:28 . 2011-05-25 02:36 28700 d:\windows\system32\DRVSTORE\CX119602_C923E79E7FC2864718436C852260F8176A3A3704\B119700\atiddc.dll
+ 2011-07-24 09:28 . 2011-05-25 03:53 29987 d:\windows\system32\DRVSTORE\CX119602_C923E79E7FC2864718436C852260F8176A3A3704\B119700\aticalrt.dll
+ 2011-07-24 09:28 . 2011-05-25 03:53 29026 d:\windows\system32\DRVSTORE\CX119602_C923E79E7FC2864718436C852260F8176A3A3704\B119700\aticalcl.dll
+ 2011-07-24 09:28 . 2009-05-11 21:35 71662 d:\windows\system32\DRVSTORE\CX119602_C923E79E7FC2864718436C852260F8176A3A3704\B119700\atibtmon.exe
+ 2011-07-24 09:28 . 2011-05-25 02:34 57343 d:\windows\system32\DRVSTORE\CX119602_C923E79E7FC2864718436C852260F8176A3A3704\B119700\atiapfxx.exe
+ 2011-07-24 09:28 . 2011-05-25 02:39 16308 d:\windows\system32\DRVSTORE\CX119602_C923E79E7FC2864718436C852260F8176A3A3704\B119700\ati2mdxx.exe
+ 2011-07-24 09:28 . 2011-05-25 02:58 13652 d:\windows\system32\DRVSTORE\CX119602_C923E79E7FC2864718436C852260F8176A3A3704\B119700\ati2erec.dll
+ 2011-07-24 09:28 . 2011-05-25 02:39 28843 d:\windows\system32\DRVSTORE\CX119602_C923E79E7FC2864718436C852260F8176A3A3704\B119700\ati2edxx.dll
- 2008-09-29 20:22 . 2008-09-29 20:22 45056 d:\windows\system32\ATIODCLI.exe
+ 2008-09-29 20:22 . 2009-06-22 15:34 45056 d:\windows\system32\ATIODCLI.exe
+ 2011-07-24 09:30 . 2011-07-24 09:30 10134 d:\windows\Installer\{D7739941-59D4-F971-A68B-0318CFBE02D6}\ARPPRODUCTICON.exe
+ 2011-07-24 09:27 . 2011-07-24 09:27 10134 d:\windows\Installer\{5ECA5B22-4073-8A6D-2E7E-8F4C39FC4309}\ARPPRODUCTICON.exe
+ 2011-07-24 09:28 . 2011-07-24 09:28 77542 d:\windows\Installer\{1DA75811-6C2C-ABFA-7DBF-9B9EDAA005E3}\NewShortcut5_4DEA5338A7B840A3B51CDC742625BF49.exe
+ 2011-07-24 09:28 . 2011-07-24 09:28 77542 d:\windows\Installer\{1DA75811-6C2C-ABFA-7DBF-9B9EDAA005E3}\NewShortcut4_4DEA5338A7B840A3B51CDC742625BF49.exe
+ 2011-07-24 09:28 . 2011-07-24 09:28 77542 d:\windows\Installer\{1DA75811-6C2C-ABFA-7DBF-9B9EDAA005E3}\NewShortcut3_4DEA5338A7B840A3B51CDC742625BF49.exe
+ 2011-07-24 09:28 . 2011-07-24 09:28 77542 d:\windows\Installer\{1DA75811-6C2C-ABFA-7DBF-9B9EDAA005E3}\NewShortcut2_4DEA5338A7B840A3B51CDC742625BF49.exe
+ 2011-07-24 09:28 . 2011-07-24 09:28 77542 d:\windows\Installer\{1DA75811-6C2C-ABFA-7DBF-9B9EDAA005E3}\ARPPRODUCTICON.exe
+ 2011-07-24 09:30 . 2011-07-24 09:30 10134 d:\windows\Installer\{19A492A0-888F-44A0-9B21-D91700763F62}\ARPPRODUCTICON.exe
+ 2011-07-24 09:30 . 2011-07-24 09:30 10134 d:\windows\Installer\{053BE69E-4EFE-3621-3613-30080CD26070}\ARPPRODUCTICON.exe
+ 2011-07-24 09:28 . 2011-05-25 02:27 8348 d:\windows\system32\DRVSTORE\CX119602_C923E79E7FC2864718436C852260F8176A3A3704\B119700\atitvo32.dll
+ 2011-07-24 09:12 . 2011-06-29 10:20 743936 d:\windows\ufa\ufa.exe
+ 2011-07-24 09:29 . 2008-10-03 22:30 143360 d:\windows\system32\ReinstallBackups\0028\DriverFiles\B_70332\Oemdspif.dll
+ 2011-07-24 09:29 . 2008-10-03 22:00 887724 d:\windows\system32\ReinstallBackups\0028\DriverFiles\B_70332\ativva6x.dat
+ 2011-07-24 09:29 . 2008-10-03 22:30 188416 d:\windows\system32\ReinstallBackups\0028\DriverFiles\B_70332\atipdlxx.dll
+ 2011-07-24 09:29 . 2008-10-03 21:38 253952 d:\windows\system32\ReinstallBackups\0028\DriverFiles\B_70332\atiok3x2.dll
+ 2011-07-24 09:29 . 2008-10-03 21:41 380928 d:\windows\system32\ReinstallBackups\0028\DriverFiles\B_70332\atikvmag.dll
+ 2011-07-24 09:29 . 2008-10-03 22:16 307200 d:\windows\system32\ReinstallBackups\0028\DriverFiles\B_70332\atiiiexx.dll
+ 2011-07-24 09:29 . 2008-09-17 19:17 176918 d:\windows\system32\ReinstallBackups\0028\DriverFiles\B_70332\atiicdxx.dat
+ 2011-07-24 09:29 . 2008-10-03 22:42 425984 d:\windows\system32\ReinstallBackups\0028\DriverFiles\B_70332\ATIDEMGX.dll
+ 2011-07-24 09:29 . 2008-09-23 19:58 118784 d:\windows\system32\ReinstallBackups\0028\DriverFiles\B_70332\atibrtmon.exe
+ 2011-07-24 09:29 . 2008-10-03 22:28 581632 d:\windows\system32\ReinstallBackups\0028\DriverFiles\B_70332\ati2evxx.exe
+ 2011-07-24 09:29 . 2008-10-03 22:29 143360 d:\windows\system32\ReinstallBackups\0028\DriverFiles\B_70332\ati2evxx.dll
+ 2011-07-24 09:29 . 2008-10-03 22:40 311296 d:\windows\system32\ReinstallBackups\0028\DriverFiles\B_70332\ati2dvag.dll
+ 2011-07-24 09:29 . 2008-10-03 21:32 573440 d:\windows\system32\ReinstallBackups\0028\DriverFiles\B_70332\ati2cqag.dll
+ 2011-07-24 09:28 . 2011-05-25 03:07 501640 d:\windows\system32\DRVSTORE\CX119602_C923E79E7FC2864718436C852260F8176A3A3704\B119700\ativvamv.dll
+ 2011-07-24 09:28 . 2011-05-25 02:51 887724 d:\windows\system32\DRVSTORE\CX119602_C923E79E7FC2864718436C852260F8176A3A3704\B119700\ativva6x.dat
+ 2011-07-24 09:28 . 2011-05-25 02:39 110217 d:\windows\system32\DRVSTORE\CX119602_C923E79E7FC2864718436C852260F8176A3A3704\B119700\atipdlxx.dll
+ 2011-07-24 09:28 . 2011-05-25 03:05 236170 d:\windows\system32\DRVSTORE\CX119602_C923E79E7FC2864718436C852260F8176A3A3704\B119700\atiok3x2.dll
+ 2011-07-24 09:28 . 2011-05-25 02:31 334454 d:\windows\system32\DRVSTORE\CX119602_C923E79E7FC2864718436C852260F8176A3A3704\B119700\atikvmag.dll
+ 2011-07-24 09:28 . 2011-05-25 04:15 311296 d:\windows\system32\DRVSTORE\CX119602_C923E79E7FC2864718436C852260F8176A3A3704\B119700\atiiiexx.dll
+ 2011-07-24 09:28 . 2011-04-20 16:30 233765 d:\windows\system32\DRVSTORE\CX119602_C923E79E7FC2864718436C852260F8176A3A3704\B119700\atiicdxx.dat
+ 2011-07-24 09:28 . 2011-05-25 02:56 462848 d:\windows\system32\DRVSTORE\CX119602_C923E79E7FC2864718436C852260F8176A3A3704\B119700\atidemgx.dll
+ 2011-07-24 09:28 . 2011-05-25 02:27 109791 d:\windows\system32\DRVSTORE\CX119602_C923E79E7FC2864718436C852260F8176A3A3704\B119700\atiadlxx.dll
+ 2011-07-24 09:28 . 2011-05-25 02:37 344908 d:\windows\system32\DRVSTORE\CX119602_C923E79E7FC2864718436C852260F8176A3A3704\B119700\ati2evxx.exe
+ 2011-07-24 09:28 . 2011-05-25 02:38 102783 d:\windows\system32\DRVSTORE\CX119602_C923E79E7FC2864718436C852260F8176A3A3704\B119700\ati2evxx.dll
+ 2011-07-24 09:28 . 2011-05-25 02:55 190013 d:\windows\system32\DRVSTORE\CX119602_C923E79E7FC2864718436C852260F8176A3A3704\B119700\ati2dvag.dll
+ 2011-07-24 09:28 . 2011-05-25 02:22 426609 d:\windows\system32\DRVSTORE\CX119602_C923E79E7FC2864718436C852260F8176A3A3704\B119700\ati2cqag.dll
- 2011-04-17 10:25 . 2008-10-03 22:00 887724 d:\windows\system32\ativva6x.dat
+ 2011-04-17 10:25 . 2011-05-25 02:51 887724 d:\windows\system32\ativva6x.dat
+ 2008-10-03 20:48 . 2010-08-27 18:32 294912 d:\windows\system32\ATIODE.exe
+ 2011-04-17 10:24 . 2011-04-20 16:30 233765 d:\windows\system32\atiicdxx.dat
+ 2011-07-24 09:30 . 2011-07-24 09:30 198656 d:\windows\Installer\2b2ec0.msi
+ 2011-07-24 09:30 . 2011-07-24 09:30 262656 d:\windows\Installer\2b2eba.msi
+ 2011-07-24 09:30 . 2011-07-24 09:30 323584 d:\windows\Installer\2b2eb0.msi
+ 2011-07-24 09:27 . 2011-07-24 09:27 438272 d:\windows\Installer\2b2e96.msi
+ 2011-07-24 09:29 . 2008-10-03 22:00 2401792 d:\windows\system32\ReinstallBackups\0028\DriverFiles\B_70332\ativvaxx.dll
+ 2011-07-24 09:29 . 2008-10-03 22:00 3107788 d:\windows\system32\ReinstallBackups\0028\DriverFiles\B_70332\ativvaxx.dat
+ 2011-07-24 09:29 . 2008-10-03 22:00 3107788 d:\windows\system32\ReinstallBackups\0028\DriverFiles\B_70332\ativva5x.dat
+ 2011-07-24 09:29 . 2008-10-03 22:17 4009024 d:\windows\system32\ReinstallBackups\0028\DriverFiles\B_70332\ati3duag.dll
+ 2011-07-24 09:29 . 2008-10-03 23:29 3331584 d:\windows\system32\ReinstallBackups\0028\DriverFiles\B_70332\ati2mtag.sys
+ 2011-07-24 09:28 . 2011-05-25 02:54 1559370 d:\windows\system32\DRVSTORE\CX119602_C923E79E7FC2864718436C852260F8176A3A3704\B119700\ativvaxx.dll
+ 2011-07-24 09:28 . 2011-05-25 03:47 7853169 d:\windows\system32\DRVSTORE\CX119602_C923E79E7FC2864718436C852260F8176A3A3704\B119700\atioglxx.dll
+ 2011-07-24 09:28 . 2011-05-25 03:42 2755492 d:\windows\system32\DRVSTORE\CX119602_C923E79E7FC2864718436C852260F8176A3A3704\B119700\aticaldd.dll
+ 2011-07-24 09:28 . 2011-05-25 03:14 2144044 d:\windows\system32\DRVSTORE\CX119602_C923E79E7FC2864718436C852260F8176A3A3704\B119700\ati3duag.dll
+ 2011-07-24 09:28 . 2011-05-25 04:21 4331164 d:\windows\system32\DRVSTORE\CX119602_C923E79E7FC2864718436C852260F8176A3A3704\B119700\ati2mtag.sys
+ 2008-10-03 23:29 . 2011-05-25 04:21 6554624 d:\windows\system32\dllcache\ati2mtag.sys
+ 2011-07-24 09:28 . 2011-07-24 09:28 1597440 d:\windows\Installer\2b2e9d.msi
+ 2011-07-24 09:29 . 2008-10-03 22:30 10772480 d:\windows\system32\ReinstallBackups\0028\DriverFiles\B_70332\atioglxx.dll
.
-- Snímek resetován k současnému datu --
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"JMB36X Configure"="d:\windows\system32\JMRaidTool.exe" [2006-06-02 385024]
"StartCCC"="d:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2008-08-29 61440]
"SoundMAXPnP"="d:\program files\Analog Devices\Core\smax4pnp.exe" [2006-05-01 843776]
"SSBkgdUpdate"="d:\program files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2003-10-14 155648]
"PaperPort PTD"="d:\program files\ScanSoft\PaperPort\pptd40nt.exe" [2005-03-17 57393]
"IndexSearch"="d:\program files\ScanSoft\PaperPort\IndexSearch.exe" [2005-03-17 40960]
"SetDefPrt"="d:\program files\Brother\Brmfl05a\BrStDvPt.exe" [2005-01-26 49152]
"ControlCenter2.0"="d:\program files\Brother\ControlCenter2\brctrcen.exe" [2005-05-17 933888]
"BluetoothAuthenticationAgent"="bthprops.cpl" [2008-04-14 110592]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="d:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
d:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Status Monitor.lnk - d:\program files\Brother\Brmfcmon\BrMfcWnd.exe [2011-4-17 802816]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableSecureUIAPaths"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
"DisableThumbnailCache"=dword:00000001
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"d:\\Program Files\\uTorrent\\uTorrent.exe"=
"d:\\Program Files\\Ubisoft\\Ubisoft Game Launcher\\UbisoftGameLauncher.exe"=
"d:\\WINDOWS\\system32\\PnkBstrA.exe"=
"d:\\WINDOWS\\system32\\PnkBstrB.exe"=
"c:\\hry\\BITVA O STREDOZEM\\game.dat"=
"d:\\Program Files\\TeamViewer\\Version6\\TeamViewer.exe"=
"d:\\Program Files\\TeamViewer\\Version6\\TeamViewer_Service.exe"=
"d:\\Program Files\\Java\\jre6\\bin\\javaw.exe"=
"c:\\hry\\Alpha Protocol\\Binaries\\APGame.exe"=
"d:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\hry\\Battle vs. Chess\\battlevschess.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\hry\\Colin McDirt 3\\dirt3_game.exe"=
"c:\\hry\\SHIFT 2 UNLEASHED\\shift2u.exe"=
"c:\\hry\\avatar\\bin\\Avatar.exe"=
"c:\\hry\\avatar\\bin\\AvatarLauncher.exe"=
"c:\\hry\\Attack on Pearl Harbor\\Attack On Pearl Harbor.exe"=
"d:\\Documents and Settings\\xyz\\Plocha\\dfd\\Flash-Player.exe"=
.
R0 sptd;sptd;d:\windows\system32\drivers\sptd.sys [19.4.2011 19:48 717296]
S3 utqyotyy;AVZ Kernel Driver;d:\windows\system32\drivers\utqyotyy.sys [21.7.2011 20:50 7168]
.
.
------- Doplňkový sken -------
.
uInternet Connection Wizard,ShellNext = hxxp://workgroup/
TCP: DhcpNameServer = 213.46.172.36 213.46.172.37
FF - ProfilePath - d:\documents and settings\xyz\Data aplikací\Mozilla\Firefox\Profiles\5rldm2dt.default\
FF - prefs.js: browser.startup.homepage - hxxp://seznam.cz/
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
HKLM-Run-wxpdrv - d:\windows\update.1\svchost.exe
HKLM-Run-w_distrib.exe - d:\windows\update.3\svchost.exe
AddRemove-Cool's_Codec_pack_4.12 - d:\windows\iun6002.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-07-31 21:57
Windows 5.1.2600 Service Pack 3 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'winlogon.exe'(744)
d:\windows\system32\Ati2evxx.dll
d:\windows\system32\atiadlxx.dll
.
- - - - - - - > 'explorer.exe'(2900)
d:\progra~1\WINDOW~2\wmpband.dll
d:\windows\system32\msi.dll
d:\windows\system32\WPDShServiceObj.dll
d:\windows\system32\PortableDeviceTypes.dll
d:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
d:\windows\system32\Ati2evxx.exe
d:\windows\system32\Ati2evxx.exe
d:\windows\system32\brss01a.exe
d:\program files\Java\jre6\bin\jqs.exe
d:\windows\system32\PnkBstrA.exe
d:\program files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
d:\program files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
d:\windows\system32\rundll32.exe
d:\program files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
d:\windows\system32\wbem\wmiapsrv.exe
.
**************************************************************************
.
Celkový čas: 2011-07-31 22:01:58 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-07-31 20:01
ComboFix2.txt 2011-07-21 14:07
ComboFix3.txt 2011-07-20 19:49
.
Před spuštěním: Volných bajtů: 79 193 657 344
Po spuštění: Volných bajtů: 79 510 028 288
.
- - End Of File - - 2CE26D4D1044FE7D1F2B1C418091F0C2

Re: chyby Windows + pomalý internet

Napsal: 31 črc 2011 21:25
od motji
:arrow: Pokud nemáte, přesuňte Combofix na plochu
-otevřete si Poznámkový blok
-Do něj zkopírujte text z tohoto okénka

Kód: Vybrat vše

KillAll::

Folder::
d:\windows\ufa

file::
d:\windows\unrar.exe
d:\windows\system32\drivers\utqyotyy.sys

driver::
utqyotyy

-uložte Vámi vytvořený TXT soubor jako CFScript.txt na plochu
-po uložení uchopte vámi vytvořený skript levým myšítkem a -přesuňte ho nad ikonu Combofixu, kde ho upustíte:

Obrázek


-po aplikaci na Vás vypadne další log,vložte ho sem

Upozornění : může se stát, že po aplikaci skriptu a restartu Windows nenaběhnou, v tom případě znovu restartujte a přitom mačkejte F8, pak zvolte Poslední známou funkční konfiguraci

Re: chyby Windows + pomalý internet

Napsal: 01 srp 2011 14:39
od vospunt
ComboFix 11-07-31.04 - xyz 01.08.2011 15:14:42.4.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.2047.1107 [GMT 2:00]
Spuštěný z: d:\documents and settings\xyz\Plocha\ComboFix.exe
Použité ovládací přepínače :: d:\documents and settings\xyz\Plocha\CFScript.txt
.
FILE ::
"d:\windows\system32\drivers\utqyotyy.sys"
"d:\windows\unrar.exe"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
d:\windows\system32\drivers\utqyotyy.sys
d:\windows\ufa
d:\windows\ufa\ufa.exe
d:\windows\unrar.exe
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_UTQYOTYY
-------\Service_utqyotyy
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-07-01 do 2011-08-01 )))))))))))))))))))))))))))))))
.
.
2011-07-24 09:28 . 2011-05-25 03:53 57344 ----a-w- d:\windows\system32\aticalrt.dll
2011-07-24 09:28 . 2011-05-25 03:53 53248 ----a-w- d:\windows\system32\aticalcl.dll
2011-07-24 09:28 . 2011-05-25 03:42 5922816 ----a-w- d:\windows\system32\aticaldd.dll
2011-07-24 09:28 . 2011-05-25 03:07 956160 ----a-w- d:\windows\system32\ativvamv.dll
2011-07-24 09:28 . 2011-05-25 02:38 64512 ----a-w- d:\windows\system32\atimpc32.dll
2011-07-24 09:28 . 2009-05-11 21:35 118784 ----a-w- d:\windows\system32\atibtmon.exe
2011-07-24 09:28 . 2011-05-25 02:34 151552 ----a-w- d:\windows\system32\atiapfxx.exe
2011-07-24 09:28 . 2011-07-24 09:28 -------- dc----w- d:\windows\system32\DRVSTORE
2011-07-24 09:28 . 2011-07-24 09:28 -------- d-----w- d:\program files\ATI
2011-07-24 09:28 . 2011-07-24 09:28 -------- d-----w- d:\documents and settings\Default User\Local Settings\Data aplikací\ATI
2011-07-24 09:28 . 2011-07-24 09:28 -------- d-----w- d:\documents and settings\Default User\Data aplikací\ATI
2011-07-24 09:17 . 2011-07-24 09:17 -------- d-----w- D:\ATI
2011-07-24 09:06 . 2011-07-24 09:06 -------- d-----w- d:\documents and settings\LocalService\Nabídka Start
2011-07-17 05:04 . 2011-07-17 05:04 -------- d-----w- d:\documents and settings\xyz\Data aplikací\Malwarebytes
2011-07-17 05:04 . 2011-07-17 05:04 -------- d-----w- d:\documents and settings\All Users\Data aplikací\Malwarebytes
2011-07-17 05:04 . 2011-07-20 13:29 -------- d-----w- d:\program files\Malwarebytes' Anti-Malware
2011-07-16 20:27 . 2011-07-17 05:06 -------- d-----w- d:\program files\CrystalDiskInfo
2011-07-16 05:55 . 2011-07-16 05:56 -------- d---a-w- d:\documents and settings\xyz\Data aplikací\.minecraft
2011-07-15 19:58 . 2011-07-15 19:58 -------- d-----w- d:\documents and settings\xyz\Local Settings\Data aplikací\GHISLER
2011-07-15 19:55 . 2011-07-15 19:55 -------- d-----w- d:\documents and settings\xyz\Data aplikací\GHISLER
2011-07-15 19:55 . 2010-12-17 05:56 545 ----a-w- d:\windows\UC.PIF
2011-07-15 19:55 . 2010-12-17 05:56 545 ----a-w- d:\windows\RAR.PIF
2011-07-15 19:55 . 2010-12-17 05:56 545 ----a-w- d:\windows\PKZIP.PIF
2011-07-15 19:55 . 2010-12-17 05:56 545 ----a-w- d:\windows\PKUNZIP.PIF
2011-07-15 19:55 . 2010-12-17 05:56 545 ----a-w- d:\windows\NOCLOSE.PIF
2011-07-15 19:55 . 2010-12-17 05:56 545 ----a-w- d:\windows\LHA.PIF
2011-07-15 19:55 . 2010-12-17 05:56 545 ----a-w- d:\windows\ARJ.PIF
2011-07-15 05:26 . 2011-07-31 10:33 -------- d-----w- d:\program files\trend micro
2011-07-15 05:26 . 2011-07-15 05:26 -------- d-----w- D:\rsit
2011-07-14 17:38 . 2011-07-14 17:38 -------- d-----w- d:\documents and settings\xyz\Local Settings\Data aplikací\Electronic Arts
2011-07-14 16:17 . 2011-07-14 16:17 -------- d-----w- d:\program files\Vag-Labs
2011-07-14 16:12 . 2011-07-14 16:13 -------- d-----w- d:\documents and settings\xyz\Data aplikací\mncraft
2011-07-14 15:48 . 2011-07-14 15:48 -------- d-----w- d:\documents and settings\xyz\Data aplikací\BinarySense
2011-07-14 15:40 . 2011-07-15 05:58 -------- d-----w- d:\program files\DiskCheckup
2011-07-14 15:34 . 2011-07-14 15:34 -------- d-----w- d:\program files\MinecraftAlpha
2011-07-08 18:29 . 2011-07-08 18:29 -------- d-----w- d:\documents and settings\All Users\Data aplikací\Solidshield
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-05-31 05:02 . 2011-05-31 05:02 444952 ----a-w- d:\windows\system32\wrap_oal.dll
2011-05-31 05:02 . 2011-05-31 05:02 109080 ----a-w- d:\windows\system32\OpenAL32.dll
2011-05-25 04:21 . 2008-10-03 23:29 6554624 ----a-w- d:\windows\system32\drivers\ati2mtag.sys
2011-05-25 04:15 . 2011-04-17 10:25 311296 ----a-w- d:\windows\system32\atiiiexx.dll
2011-05-25 03:47 . 2008-10-03 22:30 17989632 ----a-w- d:\windows\system32\atioglxx.dll
2011-05-25 03:14 . 2008-10-03 22:17 4059328 ----a-w- d:\windows\system32\ati3duag.dll
2011-05-25 03:05 . 2008-10-03 21:38 503808 ----a-w- d:\windows\system32\atiok3x2.dll
2011-05-25 02:58 . 2008-10-03 21:38 53248 ----a-w- d:\windows\system32\drivers\ati2erec.dll
2011-05-25 02:56 . 2011-04-17 10:25 462848 ----a-w- d:\windows\system32\ATIDEMGX.dll
2011-05-25 02:55 . 2008-10-03 22:40 302592 ----a-w- d:\windows\system32\ati2dvag.dll
2011-05-25 02:54 . 2008-10-03 22:00 3152384 ----a-w- d:\windows\system32\ativvaxx.dll
2011-05-25 02:39 . 2008-10-03 22:30 212992 ----a-w- d:\windows\system32\atipdlxx.dll
2011-05-25 02:39 . 2008-10-03 22:30 155648 ----a-w- d:\windows\system32\Oemdspif.dll
2011-05-25 02:39 . 2008-10-03 22:30 26112 ----a-w- d:\windows\system32\Ati2mdxx.exe
2011-05-25 02:39 . 2008-10-03 22:29 43520 ----a-w- d:\windows\system32\ati2edxx.dll
2011-05-25 02:38 . 2008-10-03 21:45 64512 ----a-w- d:\windows\system32\amdpcom32.dll
2011-05-25 02:38 . 2008-10-03 22:29 188416 ----a-w- d:\windows\system32\ati2evxx.dll
2011-05-25 02:37 . 2008-10-03 22:28 643072 ----a-w- d:\windows\system32\ati2evxx.exe
2011-05-25 02:36 . 2008-10-03 22:26 53248 ----a-w- d:\windows\system32\ATIDDC.DLL
2011-05-25 02:31 . 2008-10-03 21:41 651264 ----a-w- d:\windows\system32\atikvmag.dll
2011-05-25 02:27 . 2008-10-03 21:39 200704 ----a-w- d:\windows\system32\atiadlxx.dll
2011-05-25 02:27 . 2008-10-03 21:39 17408 ----a-w- d:\windows\system32\atitvo32.dll
2011-05-25 02:22 . 2008-10-03 21:32 856064 ----a-w- d:\windows\system32\ati2cqag.dll
2011-05-21 10:29 . 2011-05-21 10:29 98304 ----a-w- d:\windows\system32\CmdLineExt.dll
2011-05-03 17:50 . 2011-05-03 17:50 25280 ----a-w- d:\windows\system32\drivers\hamachi.sys
2011-05-03 17:14 . 2011-05-03 17:15 73728 ----a-w- d:\windows\system32\javacpl.cpl
2011-05-03 17:14 . 2011-05-01 08:51 472808 ----a-w- d:\windows\system32\deployJava1.dll
2011-06-24 16:05 . 2011-04-16 14:09 142296 ----a-w- d:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((( SnapShot_2011-07-31_19.57.39 )))))))))))))))))))))))))))))))))))))))))
.
+ 2011-08-01 13:30 . 2011-08-01 13:30 16384 d:\windows\temp\Perflib_Perfdata_144.dat
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"JMB36X Configure"="d:\windows\system32\JMRaidTool.exe" [2006-06-02 385024]
"StartCCC"="d:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2008-08-29 61440]
"SoundMAXPnP"="d:\program files\Analog Devices\Core\smax4pnp.exe" [2006-05-01 843776]
"SSBkgdUpdate"="d:\program files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2003-10-14 155648]
"PaperPort PTD"="d:\program files\ScanSoft\PaperPort\pptd40nt.exe" [2005-03-17 57393]
"IndexSearch"="d:\program files\ScanSoft\PaperPort\IndexSearch.exe" [2005-03-17 40960]
"SetDefPrt"="d:\program files\Brother\Brmfl05a\BrStDvPt.exe" [2005-01-26 49152]
"ControlCenter2.0"="d:\program files\Brother\ControlCenter2\brctrcen.exe" [2005-05-17 933888]
"BluetoothAuthenticationAgent"="bthprops.cpl" [2008-04-14 110592]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="d:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
d:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
Status Monitor.lnk - d:\program files\Brother\Brmfcmon\BrMfcWnd.exe [2011-4-17 802816]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableSecureUIAPaths"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
"DisableThumbnailCache"=dword:00000001
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"d:\\Program Files\\uTorrent\\uTorrent.exe"=
"d:\\Program Files\\Ubisoft\\Ubisoft Game Launcher\\UbisoftGameLauncher.exe"=
"d:\\WINDOWS\\system32\\PnkBstrA.exe"=
"d:\\WINDOWS\\system32\\PnkBstrB.exe"=
"c:\\hry\\BITVA O STREDOZEM\\game.dat"=
"d:\\Program Files\\TeamViewer\\Version6\\TeamViewer.exe"=
"d:\\Program Files\\TeamViewer\\Version6\\TeamViewer_Service.exe"=
"d:\\Program Files\\Java\\jre6\\bin\\javaw.exe"=
"c:\\hry\\Alpha Protocol\\Binaries\\APGame.exe"=
"d:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\hry\\Battle vs. Chess\\battlevschess.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\hry\\Colin McDirt 3\\dirt3_game.exe"=
"c:\\hry\\SHIFT 2 UNLEASHED\\shift2u.exe"=
"c:\\hry\\avatar\\bin\\Avatar.exe"=
"c:\\hry\\avatar\\bin\\AvatarLauncher.exe"=
"c:\\hry\\Attack on Pearl Harbor\\Attack On Pearl Harbor.exe"=
"d:\\Documents and Settings\\xyz\\Plocha\\dfd\\Flash-Player.exe"=
.
R0 sptd;sptd;d:\windows\system32\drivers\sptd.sys [19.4.2011 19:48 717296]
.
.
------- Doplňkový sken -------
.
uInternet Connection Wizard,ShellNext = hxxp://workgroup/
TCP: DhcpNameServer = 213.46.172.36 213.46.172.37
FF - ProfilePath - d:\documents and settings\xyz\Data aplikací\Mozilla\Firefox\Profiles\5rldm2dt.default\
FF - prefs.js: browser.startup.homepage - hxxp://seznam.cz/
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-08-01 15:30
Windows 5.1.2600 Service Pack 3 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'winlogon.exe'(744)
d:\windows\system32\Ati2evxx.dll
d:\windows\system32\atiadlxx.dll
.
- - - - - - - > 'explorer.exe'(3488)
d:\progra~1\WINDOW~2\wmpband.dll
d:\windows\system32\msi.dll
d:\windows\system32\WPDShServiceObj.dll
d:\windows\system32\PortableDeviceTypes.dll
d:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
d:\windows\system32\Ati2evxx.exe
d:\windows\system32\brss01a.exe
d:\windows\system32\Ati2evxx.exe
d:\program files\Java\jre6\bin\jqs.exe
d:\windows\system32\PnkBstrA.exe
d:\program files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
d:\windows\system32\rundll32.exe
d:\program files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
d:\program files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
d:\windows\system32\wbem\wmiapsrv.exe
.
**************************************************************************
.
Celkový čas: 2011-08-01 15:34:54 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-08-01 13:34
ComboFix2.txt 2011-07-31 20:01
ComboFix3.txt 2011-07-21 14:07
ComboFix4.txt 2011-07-20 19:49
.
Před spuštěním: Volných bajtů: 79 505 448 960
Po spuštění: Volných bajtů: 79 490 633 728
.
- - End Of File - - A4D963A911A5DFBD836EA1F4F54A194D

Re: chyby Windows + pomalý internet

Napsal: 01 srp 2011 14:45
od motji
:arrow: Odinstalujte combofix přes Start - Spustit
- zkopírujte do okénka:

ComboFix /Uninstall

-stiskněte Enter
-To odinstaluje ComboFix a smaže s ním související soubory a složky.


***********


:arrow: Stáhněte T-Cleaner
http://tharifas.sweb.cz/T-Cleaner.exe

-Spusťte,pro potvrzení volby mačkejte klávesu A, Enter
-po použití prográmek vymažte.Pozor,antiviry ho mohou falešně označit za vir



***********


:arrow: Z mého podpisu stahněte Ccleaner
- nainstalujte, při výběru, co se má nainstalovat, dejte pryč fajfku u instalace yahoo toolbaru

Obrázekzáložka čistič
- nechejte v levém sloupečku zatrhnuté vše jak je, klikněte na analyzovat
- po analýze klikněte na Spustit Ccleaner

Obrázekzáložka Registry
- klikněte na hledej problémy
- pak klikněte na opravit vybrané problémy -- udělat zálohu registrů - nemusíte
- kliknete opravit všechny problémy :arrow: ok :arrow: zavřít

Obrázek Záložka Nástroje
- zde můžete odinstalovat programy. Je to důkladnější odinstalace než u přidat/odebrat programy ve Windows.

Ccleaner - čistič doporučuji používat, krásně pročistí pc od dočasných souborů.
Registry pročistí třeba po odinstalaci nějakého programu.


***********



:arrow: Stahněte OTC a použijte
http://oldtimer.geekstogo.com/OTC.exe
-vyčistí tempy a po použitých programech



***********

:arrow: Vložte nový log ze RSIT a řekněte co počítač, jak se chová, už je vše v pořádku?

Re: chyby Windows + pomalý internet

Napsal: 01 srp 2011 15:49
od vospunt
ale ikonky v TRAY se mi ani tak nezobrazily ...

Logfile of random's system information tool 1.09 (written by random/random)
Run by xyz at 2011-08-01 16:47:13
Systém Microsoft Windows XP Professional Service Pack 3
System drive D: has 77 GB (75%) free of 102 GB
Total RAM: 2047 MB (56% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:47:21, on 1.8.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\Ati2evxx.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\system32\Ati2evxx.exe
D:\WINDOWS\system32\brsvc01a.exe
D:\WINDOWS\system32\brss01a.exe
D:\WINDOWS\system32\spoolsv.exe
D:\WINDOWS\Explorer.EXE
D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
D:\Program Files\Analog Devices\Core\smax4pnp.exe
D:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
D:\Program Files\Java\jre6\bin\jqs.exe
D:\WINDOWS\system32\PnkBstrA.exe
D:\WINDOWS\system32\rundll32.exe
D:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
D:\WINDOWS\system32\svchost.exe
D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
D:\WINDOWS\system32\wbem\wmiapsrv.exe
D:\WINDOWS\System32\svchost.exe
D:\Documents and Settings\xyz\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\xyz\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\xyz\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\xyz\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\xyz\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\xyz\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\xyz\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\xyz\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\xyz\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\xyz\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\xyz\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\xyz\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\xyz\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\xyz\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\xyz\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\xyz\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\xyz\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\xyz\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\xyz\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\xyz\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\xyz\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\xyz\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
D:\Documents and Settings\xyz\Plocha\6936xxx\RSIT.exe
D:\Program Files\trend micro\xyz.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://workgroup/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - D:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - D:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - D:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [JMB36X Configure] D:\WINDOWS\system32\JMRaidTool.exe boot
O4 - HKLM\..\Run: [StartCCC] "D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [SoundMAXPnP] D:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [SSBkgdUpdate] "D:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [PaperPort PTD] D:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
O4 - HKLM\..\Run: [IndexSearch] D:\Program Files\ScanSoft\PaperPort\IndexSearch.exe
O4 - HKLM\..\Run: [SetDefPrt] D:\Program Files\Brother\Brmfl05a\BrStDvPt.exe
O4 - HKLM\..\Run: [ControlCenter2.0] D:\Program Files\Brother\ControlCenter2\brctrcen.exe /autorun
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Status Monitor.lnk = D:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - D:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - D:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - D:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - D:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - D:\WINDOWS\system32\browseui.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - D:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - D:\WINDOWS\system32\ati2sgag.exe
O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - D:\WINDOWS\system32\brsvc01a.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - D:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: PnkBstrA - Unknown owner - D:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - D:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe

--
End of file - 6936 bytes

=========Mozilla firefox=========

ProfilePath - D:\Documents and Settings\xyz\Data aplikací\Mozilla\Firefox\Profiles\5rldm2dt.default

prefs.js - "browser.startup.homepage" - "http://seznam.cz/"
prefs.js - "extensions.enabledItems" - "{972ce4c6-7e08-4474-a285-3208198ce6fd}:3.0.6"

"jqs@sun.com"=D:\Program Files\Java\jre6\lib\deploy\jqs\ff


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=D:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=D:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll

D:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA}

D:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll

D:\Program Files\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - D:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - D:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-05-03 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - D:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-05-03 79648]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"JMB36X Configure"=D:\WINDOWS\system32\JMRaidTool.exe [2006-06-02 385024]
"StartCCC"=D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2008-08-29 61440]
"SoundMAXPnP"=D:\Program Files\Analog Devices\Core\smax4pnp.exe [2006-05-01 843776]
"SSBkgdUpdate"=D:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [2003-10-14 155648]
"PaperPort PTD"=D:\Program Files\ScanSoft\PaperPort\pptd40nt.exe [2005-03-17 57393]
"IndexSearch"=D:\Program Files\ScanSoft\PaperPort\IndexSearch.exe [2005-03-17 40960]
"SetDefPrt"=D:\Program Files\Brother\Brmfl05a\BrStDvPt.exe [2005-01-26 49152]
"ControlCenter2.0"=D:\Program Files\Brother\ControlCenter2\brctrcen.exe [2005-05-17 933888]
"BluetoothAuthenticationAgent"=bthprops.cpl,,BluetoothAuthenticationAgent []

D:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Status Monitor.lnk - D:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
D:\WINDOWS\system32\Ati2evxx.dll [2011-05-25 188416]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
D:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - D:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableSecureUIAPaths"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"D:\Program Files\uTorrent\uTorrent.exe"="D:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"D:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe"="D:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe:*:Enabled:Ubisoft Game Launcher"
"D:\WINDOWS\system32\PnkBstrA.exe"="D:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA"
"D:\WINDOWS\system32\PnkBstrB.exe"="D:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB"
"C:\hry\BITVA O STREDOZEM\game.dat"="C:\hry\BITVA O STREDOZEM\game.dat:*:Enabled:The Battle for Middle-earth (tm)"
"D:\Program Files\TeamViewer\Version6\TeamViewer.exe"="D:\Program Files\TeamViewer\Version6\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application"
"D:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe"="D:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe:*:Enabled:Teamviewer Remote Control Service"
"D:\Program Files\Java\jre6\bin\javaw.exe"="D:\Program Files\Java\jre6\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\hry\Alpha Protocol\Binaries\APGame.exe"="C:\hry\Alpha Protocol\Binaries\APGame.exe:*:Enabled:Alpha Protocol"
"D:\Program Files\Skype\Phone\Skype.exe"="D:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\hry\Battle vs. Chess\battlevschess.exe"="C:\hry\Battle vs. Chess\battlevschess.exe:*:Enabled:Battle vs. Chess - Fantasy chess game"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\hry\Colin McDirt 3\dirt3_game.exe"="C:\hry\Colin McDirt 3\dirt3_game.exe:*:Enabled:DiRT 3"
"C:\hry\SHIFT 2 UNLEASHED\shift2u.exe"="C:\hry\SHIFT 2 UNLEASHED\shift2u.exe:*:Enabled:SHIFT 2 UNLEASHED™"
"C:\hry\avatar\bin\Avatar.exe"="C:\hry\avatar\bin\Avatar.exe:*:Enabled:James Cameron's AVATAR(tm): THE GAME"
"C:\hry\avatar\bin\AvatarLauncher.exe"="C:\hry\avatar\bin\AvatarLauncher.exe:*:Enabled:Updater"
"C:\hry\Attack on Pearl Harbor\Attack On Pearl Harbor.exe"="C:\hry\Attack on Pearl Harbor\Attack On Pearl Harbor.exe:*:Enabled:Attack On Pearl Harbor"
"D:\Documents and Settings\xyz\Plocha\dfd\Flash-Player.exe"="D:\Documents and Settings\xyz\Plocha\dfd\Flash-Player.exe:*:Enabled:D:\Documents and Settings\xyz\Plocha\dfd\Flash-Player.exe"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\hry\Dragon Age 2\bin_ship\DragonAge2.exe"="C:\hry\Dragon Age 2\bin_ship\DragonAge2.exe:*:Enabled:Dragon Age II"
"C:\hry\Dragon Age 2\DragonAge2Launcher.exe"="C:\hry\Dragon Age 2\DragonAge2Launcher.exe:*:Enabled:Dragon Age II Launcher"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=D:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=D:\WINDOWS\system32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======List of files/folders created in the last 1 month======

2011-08-01 16:47:13 ----D---- D:\rsit
2011-08-01 15:27:08 ----D---- D:\WINDOWS\temp
2011-07-24 11:30:10 ----D---- D:\Config.Msi
2011-07-24 11:28:34 ----A---- D:\WINDOWS\system32\ativvamv.dll
2011-07-24 11:28:34 ----A---- D:\WINDOWS\system32\atimpc32.dll
2011-07-24 11:28:34 ----A---- D:\WINDOWS\system32\aticalrt.dll
2011-07-24 11:28:34 ----A---- D:\WINDOWS\system32\aticaldd.dll
2011-07-24 11:28:34 ----A---- D:\WINDOWS\system32\aticalcl.dll
2011-07-24 11:28:34 ----A---- D:\WINDOWS\system32\atibtmon.exe
2011-07-24 11:28:33 ----A---- D:\WINDOWS\system32\atiapfxx.exe
2011-07-24 11:28:29 ----DC---- D:\WINDOWS\system32\DRVSTORE
2011-07-24 11:28:15 ----D---- D:\Program Files\ATI
2011-07-24 11:17:12 ----D---- D:\ATI
2011-07-17 07:04:33 ----D---- D:\Documents and Settings\xyz\Data aplikací\Malwarebytes
2011-07-17 07:04:27 ----D---- D:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2011-07-17 07:04:24 ----D---- D:\Program Files\Malwarebytes' Anti-Malware
2011-07-16 22:27:00 ----D---- D:\Program Files\CrystalDiskInfo
2011-07-16 07:55:48 ----AD---- D:\Documents and Settings\xyz\Data aplikací\.minecraft
2011-07-15 21:55:27 ----D---- D:\Documents and Settings\xyz\Data aplikací\GHISLER
2011-07-15 21:55:27 ----A---- D:\WINDOWS\UC.PIF
2011-07-15 21:55:27 ----A---- D:\WINDOWS\RAR.PIF
2011-07-15 21:55:27 ----A---- D:\WINDOWS\PKZIP.PIF
2011-07-15 21:55:27 ----A---- D:\WINDOWS\PKUNZIP.PIF
2011-07-15 21:55:27 ----A---- D:\WINDOWS\NOCLOSE.PIF
2011-07-15 21:55:27 ----A---- D:\WINDOWS\LHA.PIF
2011-07-15 21:55:27 ----A---- D:\WINDOWS\ARJ.PIF
2011-07-15 07:26:14 ----D---- D:\Program Files\trend micro
2011-07-14 18:17:32 ----D---- D:\Program Files\Vag-Labs
2011-07-14 18:13:06 ----D---- D:\Documents and Settings\xyz\Data aplikací\mncraft173
2011-07-14 18:12:53 ----D---- D:\Documents and Settings\xyz\Data aplikací\mncraft
2011-07-14 17:48:45 ----D---- D:\Documents and Settings\xyz\Data aplikací\BinarySense
2011-07-14 17:40:18 ----D---- D:\Program Files\DiskCheckup
2011-07-14 17:34:17 ----D---- D:\Program Files\MinecraftAlpha
2011-07-08 20:29:15 ----D---- D:\Documents and Settings\All Users\Data aplikací\Solidshield

======List of files/folders modified in the last 1 month======

2011-08-01 16:47:20 ----D---- D:\WINDOWS\Prefetch
2011-08-01 16:41:09 ----A---- D:\WINDOWS\SchedLgU.Txt
2011-08-01 15:59:10 ----D---- D:\WINDOWS\Minidump
2011-08-01 15:55:45 ----SHD---- D:\System Volume Information
2011-08-01 15:55:45 ----D---- D:\WINDOWS\system32\Restore
2011-08-01 15:55:16 ----D---- D:\WINDOWS
2011-08-01 15:34:57 ----D---- D:\WINDOWS\system32\drivers
2011-08-01 15:31:16 ----A---- D:\WINDOWS\system.ini
2011-08-01 15:29:55 ----D---- D:\WINDOWS\system32\drivers\etc
2011-08-01 15:28:20 ----D---- D:\WINDOWS\system32\config
2011-08-01 15:23:38 ----D---- D:\WINDOWS\system32
2011-08-01 15:23:37 ----D---- D:\WINDOWS\AppPatch
2011-08-01 15:23:19 ----D---- D:\Program Files\Common Files
2011-08-01 15:13:19 ----D---- D:\WINDOWS\system32\CatRoot2
2011-08-01 15:04:42 ----AD---- D:\Documents and Settings\All Users\Data aplikací\TEMP
2011-07-24 19:33:21 ----HD---- D:\WINDOWS\inf
2011-07-24 11:30:48 ----SHD---- D:\WINDOWS\Installer
2011-07-24 11:29:14 ----RSHDC---- D:\WINDOWS\system32\dllcache
2011-07-24 11:29:04 ----D---- D:\WINDOWS\system32\ReinstallBackups
2011-07-24 11:28:26 ----D---- D:\Program Files\ATI Technologies
2011-07-24 11:28:15 ----RD---- D:\Program Files
2011-07-20 21:48:42 ----SD---- D:\WINDOWS\Tasks
2011-07-17 12:46:16 ----HDC---- D:\WINDOWS\$NtUninstallKB967715$
2011-07-15 08:57:20 ----HD---- D:\Program Files\InstallShield Installation Information
2011-07-15 08:22:13 ----A---- D:\WINDOWS\system32\PerfStringBackup.INI
2011-07-15 08:09:39 ----D---- D:\Program Files\Common Files\Microsoft Shared
2011-07-15 08:02:30 ----RD---- D:\Program Files\Skype
2011-07-15 07:51:40 ----D---- D:\Program Files\Your Uninstaller 2010
2011-07-15 07:07:55 ----D---- D:\Program Files\Defraggler
2011-07-14 18:19:25 ----D---- D:\WINDOWS\system32\DirectX
2011-07-14 18:18:38 ----RSD---- D:\WINDOWS\assembly
2011-07-13 17:10:26 ----D---- D:\Documents and Settings\xyz\Data aplikací\uTorrent
2011-07-08 19:19:11 ----D---- D:\Documents and Settings\xyz\Data aplikací\My Battle for Middle-earth Files
2011-07-06 10:36:09 ----D---- D:\Documents and Settings\All Users\Data aplikací\Adobe
2011-07-05 13:05:43 ----D---- D:\Program Files\Common Files\Adobe
2011-07-03 19:13:55 ----D---- D:\WINDOWS\WinSxS

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 JGOGO;JMicron Hot-Plug Driver; D:\WINDOWS\system32\DRIVERS\JGOGO.sys [2006-02-07 6912]
R0 JRAID;JRAID; D:\WINDOWS\system32\DRIVERS\jraid.sys [2006-08-04 43904]
R0 sptd;sptd; D:\WINDOWS\System32\Drivers\sptd.sys [2011-04-19 717296]
R1 intelppm;Řadič procesoru Intel; D:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 kbdhid;Ovladač klávesnice standardu HID; D:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; D:\WINDOWS\system32\drivers\ADIHdAud.sys [2006-05-02 229376]
R3 AEAudio;AE Audio Service; D:\WINDOWS\system32\drivers\AEAudio.sys [2006-04-27 93824]
R3 ati2mtag;ati2mtag; D:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2011-05-25 6554624]
R3 AtiHdmiService;ATI Function Driver for HDMI Service; D:\WINDOWS\system32\drivers\AtiHdmi.sys [2008-07-02 89600]
R3 hamachi;Hamachi Network Interface; D:\WINDOWS\system32\DRIVERS\hamachi.sys [2011-05-03 25280]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; D:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Ovladač třídy standardu HID; D:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 mouhid;Ovladač myši standardu HID; D:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-25 12160]
R3 MTsensor;ATK0110 ACPI UTILITY; D:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; D:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2006-07-27 83712]
R3 SenFiltService;SenFilt Service; D:\WINDOWS\system32\drivers\Senfilt.sys [2006-03-17 392960]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; D:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; D:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
S3 a6l0ori6;a6l0ori6; D:\WINDOWS\system32\drivers\a6l0ori6.sys []
S3 BrScnUsb;Brother USB Still Image driver; D:\WINDOWS\System32\Drivers\BrScnUsb.sys [2004-10-15 15295]
S3 BthEnum;Služba Bluetooth Enumerator; D:\WINDOWS\system32\DRIVERS\BthEnum.sys [2008-04-14 17024]
S3 BthPan;Bluetooth Device (Personal Area Network); D:\WINDOWS\system32\DRIVERS\bthpan.sys [2008-04-14 101120]
S3 BTHPORT;Ovladač portu Bluetooth; D:\WINDOWS\System32\Drivers\BTHport.sys [2008-06-14 272128]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; D:\WINDOWS\System32\Drivers\BTHUSB.sys [2008-04-14 18944]
S3 nv;nv; D:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2004-08-03 1897408]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); D:\WINDOWS\system32\DRIVERS\rfcomm.sys [2008-04-14 59136]
S3 usbprint;Třída USB Printer; D:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; D:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; D:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; D:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Ati HotKey Poller;Ati HotKey Poller; D:\WINDOWS\system32\Ati2evxx.exe [2011-05-25 643072]
R2 Brother XP spl Service;BrSplService; D:\WINDOWS\system32\brsvc01a.exe [2002-04-12 57344]
R2 BthServ;Bluetooth Support Service; D:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 JavaQuickStarterService;Java Quick Starter; D:\Program Files\Java\jre6\bin\jqs.exe [2011-05-03 153376]
R2 PnkBstrA;PnkBstrA; D:\WINDOWS\system32\PnkBstrA.exe [2011-04-21 75136]
R2 StarWindServiceAE;StarWind AE Service; D:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2007-05-28 275968]
S2 ATI Smart;ATI Smart; D:\WINDOWS\system32\ati2sgag.exe [2008-10-03 593920]
S3 aspnet_state;ASP.NET State Service; D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; D:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; D:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; D:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; D:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Re: chyby Windows + pomalý internet

Napsal: 01 srp 2011 17:14
od motji
Které ikonky? Ani po restartu?

Re: chyby Windows + pomalý internet

Napsal: 01 srp 2011 17:24
od vospunt
ikonky např ovladače grafické karty ATI přitom proces běží ... pak sítové připojení, ovladač k tiskárně atd atd ...

Re: chyby Windows + pomalý internet

Napsal: 01 srp 2011 20:42
od motji
Zkusíme to pak opravit, ještě proběhněte pc s mbam.

:arrow: Stahněte MBAM z mého podpisu
-Nainstalujte,dejte úplný sken

NIC NEMAZAT :!:
-MBAM má občas falešné detekce,proto budeme mazat až po kontrole logu.
-Log zkopírujte sem.