Stránka 1 z 2

Pomalé načítání videí na Youtube

Napsal: 01 srp 2011 23:38
od Tombasss
Zdravím,přibližně před týdnem se mi najednou zpomalilo načítání videí na Youtube,nemůže to být virem nebo tak něco?

Re: Pomalé načítání videí na Youtube

Napsal: 02 srp 2011 18:05
od Rudy
Abych mohl zodpovědně říci, čím to je, musíme provést pár testů. Nejprve dejte log z RSIT: http://www.viry.cz/forum/viewtopic.php?f=13&t=105895 .

Re: Pomalé načítání videí na Youtube

Napsal: 02 srp 2011 23:10
od Tombasss
Logfile of random's system information tool 1.09 (written by random/random)
Run by User at 2011-08-03 00:09:26
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 75 GB (25%) free of 305 GB
Total RAM: 3070 MB (66% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 0:09:40, on 3.8.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ASUS\AI Suite\AiNap\AiNap.exe
C:\WINDOWS\system32\Rundll32.exe
C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe
C:\Program Files\Logitech\Gaming Software\LWEMon.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\system32\RunDLL32.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\DNA\btdna.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
C:\WINDOWS\system32\CTsvcCDA.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Autodesk\3dsMax8\mentalray\satellite\raysat_3dsmax8server.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Tunngle\TnglCtrl.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Documents and Settings\User\Plocha\Nová složka\Nová složka (2)\Joystick To H-shifter 2\Joystick To H-shifter 2 DEMO beta1.exe
C:\Program Files\SpeedFan\speedfan.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\dllhost.exe
C:\Documents and Settings\User\Dokumenty\Downloads\RSIT.exe
C:\Program Files\trend micro\User.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.icq.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
R3 - URLSearchHook: DVDVideoSoftTB Toolbar - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\prxtbDVD0.dll
O2 - BHO: SuggestMeYesBHO - {0FB6A909-6086-458F-BD92-1F8EE10042A0} - C:\Program Files\AutocompletePro\AutocompletePro.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
O2 - BHO: DVDVideoSoftTB - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\prxtbDVD0.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O3 - Toolbar: DVDVideoSoftTB Toolbar - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\prxtbDVD0.dll
O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll
O4 - HKLM\..\Run: [Ai Nap] "C:\Program Files\ASUS\AI Suite\AiNap\AiNap.exe"
O4 - HKLM\..\Run: [P17Helper] Rundll32 SPIRun.dll,RunDLLEntry
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [amd_dc_opt] C:\Program Files\AMD\Dual-Core Optimizer\amd_dc_opt.exe
O4 - HKLM\..\Run: [Start WingMan Profiler] C:\Program Files\Logitech\Gaming Software\LWEMon.exe /noui
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit -login
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files\DNA\btdna.exe"
O4 - HKCU\..\Run: [Comrade.exe] C:\Program Files\GameSpy\Comrade\Comrade.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-1960408961-562591055-682003330-1007\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'UpdatusUser')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube Download - C:\Documents and Settings\User\Data aplikací\DVDVideoSoftIEHelpers\freeyoutubedownload.htm
O8 - Extra context menu item: Free YouTube to Mp3 Converter - C:\Documents and Settings\User\Data aplikací\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
O9 - Extra button: Download with YouTube Clip Extractor - {5dddf69e-5e63-4a0a-8886-b2323fba6d62} - C:\Program Files\Clip Extractor\ClipExtractor.exe (file missing)
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: http://forum.tdu-central.com
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://ccfiles.creative.com/Web/softwar ... /CTPID.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: AODService - Unknown owner - C:\Program.exe (file missing)
O23 - Service: Autodesk Licensing Service - Autodesk - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: RaySat_3dsmax8 Server (mi-raysat_3dsmax8) - Unknown owner - C:\Program Files\Autodesk\3dsMax8\mentalray\satellite\raysat_3dsmax8server.exe
O23 - Service: My Web Search Service (MyWebSearchService) - Unknown owner - C:\PROGRA~1\MyWebSearch\bar\1.bin\mwssvc.exe (file missing)
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\WINDOWS\system32\PnkBstrB.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - C:\Program Files\WinPcap\rpcapd.exe (file missing)
O23 - Service: TunngleService - Tunngle.net GmbH - C:\Program Files\Tunngle\TnglCtrl.exe

--
End of file - 10401 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\AppleSoftwareUpdate.job
C:\WINDOWS\tasks\expressburnShakeIcon.job
C:\WINDOWS\tasks\expressripShakeIcon.job
C:\WINDOWS\tasks\mixpadShakeIcon.job
C:\WINDOWS\tasks\SmartDefrag.job
C:\WINDOWS\tasks\SmartDefrag_Startup.job
C:\WINDOWS\tasks\switchShakeIcon.job
C:\WINDOWS\tasks\wavepadShakeIcon.job
C:\WINDOWS\tasks\zuluShakeIcon.job

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\nr5dut4c.default

prefs.js - "browser.startup.homepage" - "http://start.icq.com/"
prefs.js - "extensions.enabledItems" - "{20a82645-c095-46ed-80e3-08825760534b}:1.2.1, jqs@sun.com:1.0, {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20, button@youtubeclipextractor.com:2.2.0.8, {e9911ec6-1bcc-40b0-9993-e0eea7f6953f}:2.5.8.6, {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21, {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, {ACAA314B-EEBA-48e4-AD47-84E31C44796C}:1.0.1, {82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}:5.3.0.7550, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.18"

"{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"support@predictad.com"=C:\Program Files\AutocompletePro\support@predictad.com
"{0329E7D6-6F54-462D-93F6-F5C3118BADF2}"=C:\Program Files\SpeedBit Video Downloader\SPFireFox
"jqs@sun.com"=C:\Program Files\Java\jre6\lib\deploy\jqs\ff
"{23fcfd51-4958-4f00-80a3-ae97e717ed8b}"=C:\Program Files\DivX\DivX Plus Web Player\firefox\DivXHTML5


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@bittorrent.com/BitTorrentDNA]
"Description"=Delivery Network Acceleration by BitTorrent™
"Path"=C:\Program Files\DNA\plugins\npbtdna.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0]
"Description"=DivX Plus Web Player
"Path"=C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0]
"Description"=DivX VOD Helper Plug-in
"Path"=C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@gamersfirst.com/LiveLauncher]
"Description"=GamersFirst LIVE! Web Launcher
"Path"=C:\Program Files\GamersFirst\LIVE!\nplivelauncher.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\
button@youtubeclipextractor.com
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}

C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
nsIQTScriptablePlugin.xpt

C:\Program Files\Mozilla Firefox\plugins\
np-mswmp.dll
npbittorrent.dll
npdeployJava1.dll
NPOFFICE.DLL
nppdf32.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
QuickTimePlugin.class
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\nr5dut4c.default\extensions\
{20a82645-c095-46ed-80e3-08825760534b}
{ACAA314B-EEBA-48e4-AD47-84E31C44796C}
{e9911ec6-1bcc-40b0-9993-e0eea7f6953f}

C:\Documents and Settings\User\Data aplikací\Mozilla\Firefox\Profiles\nr5dut4c.default\searchplugins\
icqplugin.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0FB6A909-6086-458F-BD92-1F8EE10042A0}]
AC-Pro - C:\Program Files\AutocompletePro\AutocompletePro.dll [2010-02-17 97760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
Conduit Engine - C:\Program Files\ConduitEngine\prxConduitEngine.dll [2011-01-17 175912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{326E768D-4182-46FD-9C16-1449A49795F4}]
DivX Plus Web Player HTML5 <video> - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll [2011-05-23 115072]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{872b5b88-9db5-4310-bdd0-ac189557e5f5}]
DVDVideoSoftTB Toolbar - C:\Program Files\DVDVideoSoftTB\prxtbDVD0.dll [2011-01-17 175912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-05-16 1164680]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-05-04 42272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-05-04 79648]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{855F3B16-6D32-4fe6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2010-09-06 1048888]
{872b5b88-9db5-4310-bdd0-ac189557e5f5} - DVDVideoSoftTB Toolbar - C:\Program Files\DVDVideoSoftTB\prxtbDVD0.dll [2011-01-17 175912]
{30F9B915-B755-4826-820B-08FBA6BD249D} - Conduit Engine - C:\Program Files\ConduitEngine\prxConduitEngine.dll [2011-01-17 175912]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Ai Nap"=C:\Program Files\ASUS\AI Suite\AiNap\AiNap.exe [2009-07-01 1435136]
"P17Helper"=Rundll32 SPIRun.dll,RunDLLEntry []
"avast5"=C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe [2011-04-18 3460784]
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"amd_dc_opt"=C:\Program Files\AMD\Dual-Core Optimizer\amd_dc_opt.exe [2008-07-22 77824]
"Start WingMan Profiler"=C:\Program Files\Logitech\Gaming Software\LWEMon.exe [2010-06-14 153672]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2011-06-08 37296]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-03-30 937920]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2010-11-29 421888]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-04-08 254696]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2011-07-23 13892200]
"NvMediaCenter"=NvMCTray.dll,NvTaskbarInit -login []
"KernelFaultCheck"=C:\WINDOWS\system32\dumprep 0 -k []

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"BitTorrent DNA"=C:\Program Files\DNA\btdna.exe [2010-05-13 323392]
"Comrade.exe"=C:\Program Files\GameSpy\Comrade\Comrade.exe [2007-06-29 36864]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Cpu Level Up help]
C:\Program Files\ASUS\AI Suite\CpuLevelUpHelp.exe [2007-11-30 881152]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files\DAEMON Tools Lite\daemon.exe [2007-12-19 486856]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate]
C:\Program Files\DivX\DivX Update\DivXUpdate.exe [2011-03-21 1230704]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QFan Help]
C:\Program Files\ASUS\AI Suite\QFan3\QFanHelp.exe [2009-07-01 601088]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [2004-11-02 32768]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files\Skype\Phone\Skype.exe [2011-05-26 15147400]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMAX]
C:\Program Files\Analog Devices\SoundMAX\smax4.exe [2007-10-08 864256]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMAXPnP]
C:\Program Files\Analog Devices\Core\smax4pnp.exe [2007-10-09 1036288]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
C:\Program Files\Steam\Steam.exe [2011-06-04 1242448]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^GamersFirst LIVE!.lnk]
C:\PROGRA~1\GAMERS~1\LIVE!\Live.exe [2011-06-07 2586736]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^User^Nabídka Start^Programy^Po spuštění^Registration .LNK]
D:\PROGRA~1\Ubisoft\Tom Clancy's Splinter Cell Double Agent\support\Register\Reg.exe [2005-02-28 868352]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"ICQ Service"=2

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"D:\ZalohaC\Program Files\Atari\Test Drive Unlimited\TestDriveUnlimited.exe"="D:\ZalohaC\Program Files\Atari\Test Drive Unlimited\TestDriveUnlimited.exe:*:Enabled:Test Drive Unlimited"
"C:\Program Files\NFSU2\speed2.exe"="C:\Program Files\NFSU2\speed2.exe:*:Enabled:speed2"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\Java\jre6\launch4j-tmp\frd.exe"="C:\Program Files\Java\jre6\launch4j-tmp\frd.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Program Files\Atari\Test Drive Unlimited\TestDriveUnlimited.exe"="C:\Program Files\Atari\Test Drive Unlimited\TestDriveUnlimited.exe:*:Enabled:Test Drive Unlimited"
"C:\Program Files\Codemasters\DiRT2\dirt2_game.exe"="C:\Program Files\Codemasters\DiRT2\dirt2_game.exe:*:Enabled:DiRT2"
"C:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe"="C:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe:*:Enabled:Ubisoft Game Launcher"
"C:\Program Files\Ubisoft\Tom Clancy's Splinter Cell Conviction\src\system\UPlayBrowser.exe"="C:\Program Files\Ubisoft\Tom Clancy's Splinter Cell Conviction\src\system\UPlayBrowser.exe:*:Enabled:UPlayBrowser Application"
"C:\Program Files\DNA\btdna.exe"="C:\Program Files\DNA\btdna.exe:*:Enabled:DNA"
"C:\Program Files\BitTorrent\bittorrent.exe"="C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent"
"C:\Program Files\Electronic Arts\EADM\Core.exe"="C:\Program Files\Electronic Arts\EADM\Core.exe:*:Enabled:EA Download Manager"
"C:\Program Files\Autodesk\backburner\monitor.exe"="C:\Program Files\Autodesk\backburner\monitor.exe:*:Enabled:backburner 2.3 monitor"
"C:\Program Files\Autodesk\backburner\manager.exe"="C:\Program Files\Autodesk\backburner\manager.exe:*:Enabled:backburner 2.3 manager"
"C:\Program Files\Autodesk\backburner\server.exe"="C:\Program Files\Autodesk\backburner\server.exe:*:Enabled:backburner 2.3 server"
"C:\Program Files\Codemasters\DiRT\DiRT.exe"="C:\Program Files\Codemasters\DiRT\DiRT.exe:*:Enabled:DiRT Executable"
"D:\Program Files\Rockstar Games\EFLC\EFLC.exe"="D:\Program Files\Rockstar Games\EFLC\EFLC.exe:*:Enabled:Grand Theft Auto : Episodes from Liberty City"
"D:\ZalohaC\Program Files\Counter-Strike Source\hl2.exe"="D:\ZalohaC\Program Files\Counter-Strike Source\hl2.exe:*:Enabled:hl2"
"D:\ZalohaC\TDU-zaloha\Atari\Test Drive Unlimited\TestDriveUnlimited.exe"="D:\ZalohaC\TDU-zaloha\Atari\Test Drive Unlimited\TestDriveUnlimited.exe:*:Enabled:Test Drive Unlimited"
"C:\Program Files\Ubisoft\Crytek\Far Cry\Bin32\FarCry.exe"="C:\Program Files\Ubisoft\Crytek\Far Cry\Bin32\FarCry.exe:*:Enabled:Far Cry"
"D:\ZalohaC\Program Files\rFactor\rFactor.exe"="D:\ZalohaC\Program Files\rFactor\rFactor.exe:*:Enabled:rFactor"
"C:\Program Files\EA Games\Need For Speed Hot Pursuit 2\NfsHP2.ori"="C:\Program Files\EA Games\Need For Speed Hot Pursuit 2\NfsHP2.ori:*:Enabled:NfsHP2"
"C:\Documents and Settings\User\Dokumenty\EA Games\NFS World Online\Data\nfsw.exe"="C:\Documents and Settings\User\Dokumenty\EA Games\NFS World Online\Data\nfsw.exe:*:Enabled:Need for Speed World"
"D:\ZalohaC\Program Files\Live For Speed S2 alpha z+keygen+program na vyrovnání volantu\LfsRevLimiter.0.9.exe"="D:\ZalohaC\Program Files\Live For Speed S2 alpha z+keygen+program na vyrovnání volantu\LfsRevLimiter.0.9.exe:*:Enabled:LfsRevLimiter"
"C:\Program Files\Steam\Steam.exe"="C:\Program Files\Steam\Steam.exe:*:Enabled:Steam"
"C:\Program Files\TrackMania United\TmUnited.exe"="C:\Program Files\TrackMania United\TmUnited.exe:*:Enabled:TmUnited"
"C:\Program Files\TmUnitedForever\TmForever.exe"="C:\Program Files\TmUnitedForever\TmForever.exe:*:Enabled:TmForever"
"D:\Program Files\Counter-Strike Source\hl2.exe"="D:\Program Files\Counter-Strike Source\hl2.exe:*:Enabled:hl2"
"C:\Program Files\Steam\steamapps\common\mafia ii - public demo\launcher.exe"="C:\Program Files\Steam\steamapps\common\mafia ii - public demo\launcher.exe:*:Enabled:Mafia II - Demo"
"C:\Program Files\Activision\Blur(TM)\Blur.exe"="C:\Program Files\Activision\Blur(TM)\Blur.exe:*:Enabled:Blur"
"C:\Program Files\Counter-Strike Source\hl2.exe"="C:\Program Files\Counter-Strike Source\hl2.exe:*:Enabled:hl2"
"D:\Program Files\Electronic Arts\Battlefield Bad Company 2\BFBC2Updater.exe"="D:\Program Files\Electronic Arts\Battlefield Bad Company 2\BFBC2Updater.exe:*:Enabled:Battlefield: Bad Company™ 2"
"D:\Program Files\Codemasters\F1 2010\F1_2010_game.exe"="D:\Program Files\Codemasters\F1 2010\F1_2010_game.exe:*:Enabled:F1 2010"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\WINDOWS\system32\dpvsetup.exe"="C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\WINDOWS\system32\rundll32.exe"="C:\WINDOWS\system32\rundll32.exe:*:Enabled:Run a DLL as an App"
"D:\ZalohaC\Program Files\Live For Speed S2 alpha z+keygen+program na vyrovnání volantu\CSR\CSR.exe"="D:\ZalohaC\Program Files\Live For Speed S2 alpha z+keygen+program na vyrovnání volantu\CSR\CSR.exe:*:Enabled:CSR"
"C:\WINDOWS\system32\PnkBstrA.exe"="C:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA"
"C:\WINDOWS\system32\PnkBstrB.exe"="C:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB"
"C:\Program Files\Electronic Arts\Need for Speed SHIFT\SHIFT.exe"="C:\Program Files\Electronic Arts\Need for Speed SHIFT\SHIFT.exe:*:Enabled:Need for Speed™ SHIFT"
"D:\Program Files\FlatOut2\FlatOut2.exe"="D:\Program Files\FlatOut2\FlatOut2.exe:*:Enabled:FlatOut2"
"D:\Program Files\EA GAMES\Need for Speed Most Wanted\speed.exe"="D:\Program Files\EA GAMES\Need for Speed Most Wanted\speed.exe:*:Enabled:speed"
"D:\Program Files\Electronic Arts\Need for Speed(TM) Hot Pursuit\Launcher.exe"="D:\Program Files\Electronic Arts\Need for Speed(TM) Hot Pursuit\Launcher.exe:*:Enabled:Need for Speed(TM) Hot Pursuit"
"D:\Program Files\Electronic Arts\Need for Speed(TM) Hot Pursuit\NFS11.exe"="D:\Program Files\Electronic Arts\Need for Speed(TM) Hot Pursuit\NFS11.exe:*:Enabled:Need for Speed(TM) Hot Pursuit Application"
"C:\Program Files\Insane\Game.exe"="C:\Program Files\Insane\Game.exe:*:Enabled:INSANE"
"C:\Program Files\Ubisoft\Far Cry 2\bin\FarCry2.exe"="C:\Program Files\Ubisoft\Far Cry 2\bin\FarCry2.exe:*:Enabled:Far Cry 2"
"C:\Program Files\Ubisoft\Far Cry 2\bin\FC2Launcher.exe"="C:\Program Files\Ubisoft\Far Cry 2\bin\FC2Launcher.exe:*:Enabled:Far Cry 2 Updater"
"C:\Program Files\Ubisoft\Far Cry 2\bin\FC2Editor.exe"="C:\Program Files\Ubisoft\Far Cry 2\bin\FC2Editor.exe:*:Enabled:Editor"
"C:\Program Files\Ubisoft\Far Cry 2\bin\FC2ServerLauncher.exe"="C:\Program Files\Ubisoft\Far Cry 2\bin\FC2ServerLauncher.exe:*:Enabled:Far Cry® 2 Server Launcher"
"D:\Program Files\GTR 2\GTR2.exe"="D:\Program Files\GTR 2\GTR2.exe:*:Enabled:GTR2 - FIA GT Racing Game"
"C:\Program Files\Atari\TDU2 Demo\UpLauncher.exe"="C:\Program Files\Atari\TDU2 Demo\UpLauncher.exe:*:Disabled:UpLauncher"
"C:\Program Files\Atari\TDU2 Demo\_UpLauncher.exe"="C:\Program Files\Atari\TDU2 Demo\_UpLauncher.exe:*:Disabled:UpLauncher"
"C:\Program Files\Atari\TDU2\TestDrive2.exe"="C:\Program Files\Atari\TDU2\TestDrive2.exe:*:Enabled:Test Drive Unlimited 2"
"C:\Program Files\Atari\TDU2 Demo\TestDrive2.dat"="C:\Program Files\Atari\TDU2 Demo\TestDrive2.dat:*:Enabled:Test Drive Unlimited 2"
"C:\Program Files\Atari\TDU2\UpLauncher.exe"="C:\Program Files\Atari\TDU2\UpLauncher.exe:*:Disabled:UpLauncher"
"C:\Program Files\Atari\TDU2\_UpLauncher.exe"="C:\Program Files\Atari\TDU2\_UpLauncher.exe:*:Disabled:UpLauncher"
"C:\Program Files\Ford Racing 3\fr3.exe"="C:\Program Files\Ford Racing 3\fr3.exe:*:Enabled:fr3"
"D:\Program Files\Electronic Arts\SHIFT 2 UNLEASHED\shift2u.exe"="D:\Program Files\Electronic Arts\SHIFT 2 UNLEASHED\shift2u.exe:*:Enabled:SHIFT 2 UNLEASHED™"
"D:\Program Files\racer 0.8.32\racer.exe"="D:\Program Files\racer 0.8.32\racer.exe:*:Enabled:racer"
"D:\SIMS\RACER\racer.exe"="D:\SIMS\RACER\racer.exe:*:Enabled:racer"
"D:\Program Files\racer 0.63\racer.exe"="D:\Program Files\racer 0.63\racer.exe:*:Enabled:racer"
"D:\Program Files\racer 0.8.31\racer.exe"="D:\Program Files\racer 0.8.31\racer.exe:*:Enabled:racer"
"D:\ZalohaC\Program Files\Driving Speed PRO\DrivingSpeedPro\DrivingSpeed.exe"="D:\ZalohaC\Program Files\Driving Speed PRO\DrivingSpeedPro\DrivingSpeed.exe:*:Enabled:Driving Speed Pro Application"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\Pando Networks\Media Booster\PMB.exe"="C:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"
"D:\Program Files\GamersFirst\APB Reloaded\Binaries\APB.exe"="D:\Program Files\GamersFirst\APB Reloaded\Binaries\APB.exe:*:Enabled:APB: APB.exe"
"D:\Program Files\GamersFirst\APB Reloaded\Binaries\VivoxVoiceService.exe"="D:\Program Files\GamersFirst\APB Reloaded\Binaries\VivoxVoiceService.exe:*:Enabled:APB: VivoxVoiceService.exe"
"C:\Program Files\VideoLAN\VLC\vlc.exe"="C:\Program Files\VideoLAN\VLC\vlc.exe:*:Enabled:VLC media player"
"D:\Program Files\WB Games\F.E.A.R. 3\F.E.A.R. 3.exe"="D:\Program Files\WB Games\F.E.A.R. 3\F.E.A.R. 3.exe:*:Enabled:F.E.A.R. 3"
"D:\Program Files\Ubisoft\Tom Clancy's Splinter Cell Double Agent\SCDA-Offline\System\SplinterCell4.exe"="D:\Program Files\Ubisoft\Tom Clancy's Splinter Cell Double Agent\SCDA-Offline\System\SplinterCell4.exe:*:Enabled:SplinterCell4"
"D:\Program Files\Codemasters\DiRT 3\dirt3_game.exe"="D:\Program Files\Codemasters\DiRT 3\dirt3_game.exe:*:Enabled:DiRT 3"
"C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe"="C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe:*:Enabled:Daemonu.exe"
"C:\Program Files\Tunngle\tnglctrl.exe"="C:\Program Files\Tunngle\tnglctrl.exe:*:Enabled:Tunngle Service"
"C:\Program Files\Tunngle\tunngle.exe"="C:\Program Files\Tunngle\tunngle.exe:*:Enabled:Tunngle Client"
"C:\Program Files\Electronic Arts\Crytek\Crysis\Bin32\Crysis.exe"="C:\Program Files\Electronic Arts\Crytek\Crysis\Bin32\Crysis.exe:*:Enabled:Crysis_32"
"C:\Program Files\Electronic Arts\Crytek\Crysis\Bin32\CrysisDedicatedServer.exe"="C:\Program Files\Electronic Arts\Crytek\Crysis\Bin32\CrysisDedicatedServer.exe:*:Enabled:CrysisDedicatedServer_32"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Pando Networks\Media Booster\PMB.exe"="C:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.FPS1"=frapsvid.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=DivX.dll
"msacm.ac3acm"=ac3acm.acm
"VIDC.FFDS"=ff_vfw.dll
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"vidc.DIVX"=DivX.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv

======List of files/folders created in the last 1 month======

2011-08-03 00:09:27 ----D---- C:\Program Files\trend micro
2011-08-03 00:09:26 ----D---- C:\rsit
2011-08-02 20:29:38 ----D---- C:\Program Files\GameSpy
2011-08-02 20:28:39 ----D---- C:\WINDOWS\system32\URTTEMP
2011-08-02 20:26:09 ----D---- C:\WINDOWS\LastGood
2011-07-31 11:19:20 ----D---- C:\WINDOWS\system32\zaloha
2011-07-25 23:43:34 ----RA---- C:\WINDOWS\system32\tmp111.tmp
2011-07-25 23:43:34 ----RA---- C:\WINDOWS\system32\tmp110.tmp
2011-07-21 14:49:10 ----D---- C:\Documents and Settings\User\Data aplikací\Day 1 Studios
2011-07-19 12:44:46 ----D---- C:\Program Files\Eidos Interactive
2011-07-13 10:35:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2507938$
2011-07-13 10:32:16 ----HDC---- C:\WINDOWS\$NtUninstallKB2555917$
2011-07-12 23:31:48 ----D---- C:\Documents and Settings\User\Data aplikací\RoboForm
2011-07-12 23:30:07 ----D---- C:\Documents and Settings\All Users\Data aplikací\RoboForm
2011-07-12 19:21:14 ----D---- C:\Documents and Settings\User\Data aplikací\DDMSettings
2011-07-12 19:19:38 ----D---- C:\Documents and Settings\User\Data aplikací\DivX
2011-07-12 19:19:02 ----N---- C:\WINDOWS\system32\vxblock.dll
2011-07-12 19:19:02 ----N---- C:\WINDOWS\system32\pxwave.dll
2011-07-12 19:19:02 ----N---- C:\WINDOWS\system32\pxsfs.dll
2011-07-12 19:19:02 ----N---- C:\WINDOWS\system32\pxmas.dll
2011-07-12 19:19:02 ----N---- C:\WINDOWS\system32\pxinsi64.exe
2011-07-12 19:19:02 ----N---- C:\WINDOWS\system32\pxinsa64.exe
2011-07-12 19:19:02 ----N---- C:\WINDOWS\system32\pxhpinst.exe
2011-07-12 19:19:02 ----N---- C:\WINDOWS\system32\pxdrv.dll
2011-07-12 19:19:02 ----N---- C:\WINDOWS\system32\pxcpyi64.exe
2011-07-12 19:19:02 ----N---- C:\WINDOWS\system32\pxcpya64.exe
2011-07-12 19:19:02 ----N---- C:\WINDOWS\system32\pxafs.dll
2011-07-12 19:19:02 ----N---- C:\WINDOWS\system32\px.dll
2011-07-12 19:19:02 ----N---- C:\WINDOWS\system32\drivers\PxHelp20.sys
2011-07-12 19:19:02 ----N---- C:\WINDOWS\system32\drivers\cdralw2k.sys
2011-07-12 19:19:02 ----N---- C:\WINDOWS\system32\drivers\cdr4_xp.sys
2011-07-12 19:17:26 ----D---- C:\Program Files\Common Files\DivX Shared
2011-07-12 19:16:20 ----D---- C:\Program Files\DivX
2011-07-12 19:15:56 ----D---- C:\Documents and Settings\All Users\Data aplikací\DivX
2011-07-12 12:31:20 ----D---- C:\Documents and Settings\User\Data aplikací\Full
2011-07-11 23:33:49 ----D---- C:\Documents and Settings\User\Data aplikací\Moyea
2011-07-11 23:33:49 ----D---- C:\Documents and Settings\User\Data aplikací\Leawo Video2PC
2011-07-06 22:20:41 ----D---- C:\Program Files\Apple Software Update
2011-07-05 13:36:53 ----SH---- C:\SCX.dll
2011-07-05 10:58:57 ----D---- C:\Program Files\directx
2011-07-04 16:50:15 ----D---- C:\Documents and Settings\All Users\Data aplikací\Origin
2011-07-04 16:50:12 ----D---- C:\Program Files\Origin Games
2011-07-04 16:50:12 ----D---- C:\Documents and Settings\All Users\Data aplikací\Electronic Arts

======List of files/folders modified in the last 1 month======

2011-08-03 00:09:38 ----D---- C:\Documents and Settings\User\Data aplikací\DNA
2011-08-03 00:09:27 ----RD---- C:\Program Files
2011-08-03 00:09:25 ----D---- C:\WINDOWS\Temp
2011-08-03 00:09:19 ----D---- C:\WINDOWS\Prefetch
2011-08-03 00:08:38 ----D---- C:\Documents and Settings\All Users\Data aplikací\Tunngle
2011-08-03 00:08:37 ----D---- C:\Documents and Settings\User\Data aplikací\Tunngle
2011-08-02 23:09:43 ----D---- C:\Documents and Settings\User\Data aplikací\foobar2000
2011-08-02 23:08:11 ----D---- C:\Program Files\Clip Extractor
2011-08-02 20:29:49 ----SHD---- C:\WINDOWS\Installer
2011-08-02 20:29:27 ----D---- C:\WINDOWS\Registration
2011-08-02 20:29:26 ----D---- C:\WINDOWS
2011-08-02 20:29:08 ----RSD---- C:\WINDOWS\assembly
2011-08-02 20:29:02 ----D---- C:\WINDOWS\system32
2011-08-02 20:29:02 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-08-02 20:26:35 ----A---- C:\WINDOWS\system32\PnkBstrB.exe
2011-08-02 20:26:30 ----A---- C:\WINDOWS\system32\PnkBstrA.exe
2011-08-02 20:26:29 ----A---- C:\WINDOWS\system32\pbsvc.exe
2011-08-02 20:26:26 ----HD---- C:\WINDOWS\inf
2011-08-02 20:26:09 ----D---- C:\WINDOWS\system32\CatRoot2
2011-08-02 20:26:02 ----D---- C:\WINDOWS\system32\DirectX
2011-08-02 20:20:25 ----D---- C:\Program Files\Electronic Arts
2011-08-02 20:20:15 ----D---- C:\WINDOWS\WinSxS
2011-08-02 13:53:18 ----D---- C:\Program Files\SpeedFan
2011-08-02 12:08:26 ----D---- C:\Program Files\DNA
2011-08-02 01:18:18 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-08-01 15:37:44 ----D---- C:\Documents and Settings\User\Data aplikací\Skype
2011-08-01 14:00:26 ----D---- C:\Documents and Settings\All Users\Data aplikací\Skype Extras
2011-08-01 13:50:26 ----D---- C:\Documents and Settings\User\Data aplikací\skypePM
2011-07-30 00:25:48 ----D---- C:\Documents and Settings\User\Data aplikací\NVIDIA
2011-07-30 00:17:24 ----D---- C:\Documents and Settings\User\Data aplikací\PriceGong
2011-07-29 23:51:36 ----A---- C:\WINDOWS\WORDPAD.INI
2011-07-29 12:07:52 ----D---- C:\WINDOWS\system32\drivers
2011-07-29 12:07:50 ----D---- C:\WINDOWS\system32\ReinstallBackups
2011-07-29 12:07:43 ----D---- C:\Program Files\Tunngle
2011-07-29 00:31:00 ----RSH---- C:\boot.ini
2011-07-29 00:31:00 ----A---- C:\WINDOWS\win.ini
2011-07-29 00:31:00 ----A---- C:\WINDOWS\system.ini
2011-07-29 00:25:26 ----D---- C:\WINDOWS\pss
2011-07-28 22:55:58 ----D---- C:\Documents and Settings\All Users\Data aplikací\NVIDIA
2011-07-28 22:55:58 ----D---- C:\Documents and Settings
2011-07-28 22:55:53 ----D---- C:\Program Files\NVIDIA Corporation
2011-07-28 22:47:52 ----D---- C:\WINDOWS\Help
2011-07-28 22:47:52 ----D---- C:\Documents and Settings\All Users\Data aplikací\NVIDIA Corporation
2011-07-26 15:35:48 ----D---- C:\Program Files\Common Files
2011-07-26 13:59:15 ----A---- C:\WINDOWS\NeroDigital.ini
2011-07-25 23:45:51 ----D---- C:\Documents and Settings\All Users\Data aplikací\Codemasters
2011-07-25 23:43:34 ----A---- C:\WINDOWS\system32\OpenAL32.dll
2011-07-25 23:17:46 ----D---- C:\Program Files\Ford Racing 3
2011-07-24 19:16:58 ----HD---- C:\Program Files\InstallShield Installation Information
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\OpenCL.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvwddi.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvsvc32.exe
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvrszht.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvrszhc.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvrstr.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvrsth.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvrssv.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvrssl.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvrssk.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvrsru.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvrsptb.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvrspt.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvrspl.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvrsno.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvrsnl.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvrsko.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvrsja.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvrsit.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvrshu.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvrshe.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvrsfr.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvrsfi.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvrsesm.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvrses.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvrseng.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvrsel.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvrsde.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvrsda.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvrscs.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvrsar.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvoglnt.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvmctray.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvgenco32.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvdispco32.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvcuvid.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvcuvenc.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvcuda.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvcpl.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvcompiler.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvcolor.exe
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nvapi.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\nv4_disp.dll
2011-07-23 20:57:00 ----A---- C:\WINDOWS\system32\easyUpdatusAPIU.dll
2011-07-21 13:36:46 ----D---- C:\Documents and Settings\User\Data aplikací\BitTorrent
2011-07-18 19:22:41 ----D---- C:\Documents and Settings\User\Data aplikací\Free Audio Editor
2011-07-17 20:05:29 ----SD---- C:\WINDOWS\Tasks
2011-07-15 01:24:11 ----D---- C:\Documents and Settings\User\Data aplikací\vlc
2011-07-15 01:10:07 ----D---- C:\Program Files\VideoLAN
2011-07-14 17:43:52 ----D---- C:\Documents and Settings\All Users\Data aplikací\Ubisoft
2011-07-14 14:40:06 ----D---- C:\WINDOWS\Minidump
2011-07-13 20:23:35 ----D---- C:\WINDOWS\Debug
2011-07-13 10:35:46 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-07-13 10:32:54 ----A---- C:\WINDOWS\system32\MRT.exe
2011-07-13 10:21:22 ----HD---- C:\WINDOWS\$hf_mig$
2011-07-12 16:47:09 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2011-07-11 23:20:42 ----D---- C:\Program Files\K-Lite Codec Pack
2011-07-05 13:23:04 ----RSD---- C:\WINDOWS\Fonts
2011-07-05 13:14:01 ----D---- C:\Program Files\Atari
2011-07-04 16:50:12 ----D---- C:\Program Files\Origin

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 giveio;giveio; C:\WINDOWS\system32\giveio.sys [1996-04-03 5248]
R0 ohci1394;Hostitelský řadič IEEE 1394 dle standardu OHCI VIA; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-14 61696]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2010-07-12 45648]
R0 sfdrv01;StarForce Protection Environment Driver (version 1.x); C:\WINDOWS\System32\drivers\sfdrv01.sys [2005-08-10 50688]
R0 sfhlp02;StarForce Protection Helper Driver (version 2.x); C:\WINDOWS\System32\drivers\sfhlp02.sys [2005-05-16 6656]
R0 sfsync02;StarForce Protection Synchronization Driver (version 2.x); C:\WINDOWS\System32\drivers\sfsync02.sys [2005-08-10 19968]
R0 sfvfs02;StarForce Protection VFS Driver (version 2.x); C:\WINDOWS\System32\drivers\sfvfs02.sys [2005-09-29 66048]
R0 SmartDefragDriver;SmartDefragDriver; C:\WINDOWS\System32\Drivers\SmartDefragDriver.sys [2011-02-23 13496]
R0 speedfan;speedfan; C:\WINDOWS\system32\speedfan.sys [2006-09-24 5248]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2010-04-15 715248]
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2011-04-18 30680]
R1 AmdK8;Ovladač procesoru AMD; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2006-07-01 43008]
R1 AsIO;AsIO; C:\WINDOWS\system32\drivers\AsIO.sys [2007-12-17 12400]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2011-04-18 25432]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2011-04-18 441176]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2011-04-18 307288]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2011-04-18 49240]
R1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2008-04-14 8832]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2011-04-18 19544]
R2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys [2011-04-18 102488]
R2 NPF;NetGroup Packet Filter Driver; C:\WINDOWS\system32\drivers\npf.sys [2009-10-21 50704]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\ADIHdAud.sys [2007-10-09 313856]
R3 AEAudio;AE Audio Service; C:\WINDOWS\system32\drivers\AEAudio.sys [2007-06-19 103424]
R3 AmdLLD;AMD Low Level Device Driver; C:\WINDOWS\system32\DRIVERS\AmdLLD.sys [2007-06-29 34304]
R3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-14 60800]
R3 ctsfm2k;Creative SoundFont Management Device Driver; C:\WINDOWS\system32\DRIVERS\ctsfm2k.sys [2005-12-08 142336]
R3 CTUSFSYN;Creative SoundFont Synthesizer; C:\WINDOWS\system32\drivers\ctusfsyn.sys [2006-08-07 162176]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2006-11-08 12160]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-14 61824]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2011-07-23 12542880]
R3 NVENETFD;NVIDIA nForce 10/100/1000 Mbps Ethernet ; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2009-07-01 66688]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda32.sys [2011-03-03 119272]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2009-07-01 13824]
R3 nvsmu;nvsmu; C:\WINDOWS\system32\DRIVERS\nvsmu.sys [2009-06-29 17920]
R3 ossrv;Creative OS Services Driver; C:\WINDOWS\system32\DRIVERS\ctoss2k.sys [2005-12-08 114688]
R3 P17xfi;Sound Blaster X-Fi Xtreme Audio; C:\WINDOWS\system32\drivers\P17xfi.sys [2007-11-21 1174528]
R3 p17xfilt;p17xfilt; C:\WINDOWS\system32\drivers\p17xfilt.sys [2007-10-10 1664384]
R3 SenFiltService;SenFilt Service; C:\WINDOWS\system32\drivers\Senfilt.sys [2006-03-18 392960]
R3 tap0901t;TAP-Win32 Adapter V9 (Tunngle); C:\WINDOWS\system32\DRIVERS\tap0901t.sys [2009-09-16 27136]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 WmBEnum;Logitech Virtual Bus Enumerator Driver; C:\WINDOWS\system32\drivers\WmBEnum.sys [2010-04-27 22856]
R3 WmFilter;Logitech Gaming HID Filter Driver; C:\WINDOWS\system32\drivers\WmFilter.sys [2010-04-27 37704]
R3 WmHidLo;Logitech Gaming USB Filter Driver; C:\WINDOWS\system32\drivers\WmHidLo.sys [2010-04-27 31816]
R3 WmVirHid;Logitech Virtual Hid Device Driver; C:\WINDOWS\system32\drivers\WmVirHid.sys [2010-04-27 15048]
R3 WmXlCore;Logitech Translation Layer Driver; C:\WINDOWS\system32\drivers\WmXlCore.sys [2010-04-27 66632]
R3 yukonwxp;NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller; C:\WINDOWS\system32\DRIVERS\yk51x86.sys [2006-10-19 250368]
S3 aalejyyi;aalejyyi; C:\WINDOWS\system32\drivers\aalejyyi.sys []
S3 ENTECH;ENTECH; \??\C:\WINDOWS\system32\DRIVERS\ENTECH.sys []
S3 GMSIPCI;GMSIPCI; \??\E:\INSTALL\GMSIPCI.SYS []
S3 GPU-Z;GPU-Z; \??\C:\DOCUME~1\User\LOCALS~1\Temp\GPU-Z.sys []
S3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys [2010-05-09 25280]
S3 SRS_SSCFilter;SRS Labs Audio Sandbox (WDM); C:\WINDOWS\system32\drivers\srs_sscfilter.sys [2006-10-09 34048]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-14 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Autodesk Licensing Service;Autodesk Licensing Service; C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe [2010-08-15 72704]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2011-04-18 42184]
R2 Creative Service for CDROM Access;Creative Service for CDROM Access; C:\WINDOWS\system32\CTsvcCDA.exe [1999-12-13 44032]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2011-05-04 153376]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 mi-raysat_3dsmax8;RaySat_3dsmax8 Server; C:\Program Files\Autodesk\3dsMax8\mentalray\satellite\raysat_3dsmax8server.exe [2005-09-21 65536]
R2 NVSvc;NVIDIA Driver Helper Service; C:\WINDOWS\system32\nvsvc32.exe [2011-07-23 146024]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-07-23 2255464]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2011-08-02 66872]
R2 TunngleService;TunngleService; C:\Program Files\Tunngle\TnglCtrl.exe [2011-07-15 741624]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 1529728]
S2 AODService;AODService; C:\Program Files\AMD\OverDrive\AODAssist []
S2 MyWebSearchService;My Web Search Service; C:\PROGRA~1\MyWebSearch\bar\1.bin\mwssvc.exe []
S2 PnkBstrB;PnkBstrB; C:\WINDOWS\system32\PnkBstrB.exe [2011-08-02 103736]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service; C:\Program Files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2010-08-01 79360]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 idsvc;Služba Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 rpcapd;Remote Packet Capture Protocol v.0 (experimental); C:\Program Files\WinPcap\rpcapd.exe -d -f C:\Program Files\WinPcap\rpcapd.ini []
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2010-09-06 247096]
S4 NetTcpPortSharing;Služba sdílení portů Net.Tcp; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Re: Pomalé načítání videí na Youtube

Napsal: 03 srp 2011 18:06
od Rudy
Vidím tam minimálně Ad-Ware. Dejte log z ComboFix.
Stahnete a ulozte nejlepe na plochu ComboFix: http://download.bleepingcomputer.com/sUBs/ComboFix.exe

pote spustte aplikaci pod uctem s administratorskym opravnenim

hned po startu se zobrazi obrazovka s licencnimi podminkami, pokracujte kliknutim na tlacitko Ano.

v klidu si postavte na kafe (cela akce trva cca. 5-10 minut, nekdy i dele - dle toho, o jak rychly stroj se

jedna a kolika soubory se skener bude muset prodirat), behem skenu se nepokousejte spoustet zadne jine

aplikace ani nic jineho

behem skenovani nepropadejte panice, vas stroj muze byt restartovan (predevsim pri prvni aplikaci skeneru)

upozorneni: pokud pouzivate antispyware s rezidentnim stitem, prepnete jeho rezidentni stit do Install Mode,

pripadne jej po dobu skenu uplne deaktivujte, protoze dochazi pri skenu a vymazu pripadneho malware k

nezadoucim kolizim s rezidentem antispyware

Re: Pomalé načítání videí na Youtube

Napsal: 03 srp 2011 18:33
od Tombasss
Jo a od té doby,co jsem použil ten RSIT,tak se musím ručně přihlašovat ve Windows,kdežto dřív mě to dycky přihlásilo samo,šlo by to nějak vrátit zpět?

Re: Pomalé načítání videí na Youtube

Napsal: 03 srp 2011 18:43
od Rudy
Asi nastavil systém do defaultu. Nejprve bych ale prosil ten ComboFix. Když to nastavíme teď budeme to dělat ještě několikrát.

Re: Pomalé načítání videí na Youtube

Napsal: 03 srp 2011 19:12
od Tombasss
ComboFix 11-08-03.02 - User 03.08.2011 19:39:19.1.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.3070.2164 [GMT 2:00]
Spuštěný z: c:\documents and settings\User\Plocha\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
VAROVÁNÍ - NA TOMTO POČÍTAČI NENÍ NAINSTALOVÁNA KONZOLA PRO ZOTAVENÍ !!
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\documents and settings\User\fsbext.exe
c:\documents and settings\User\WINDOWS
c:\program files\AutocompletePro
c:\program files\AutocompletePro\AcRemoteUpdate.exe
c:\program files\AutocompletePro\AutocompletePro.dll
c:\program files\AutocompletePro\InstTracker.exe
c:\program files\AutocompletePro\support@predictad.com\defaults\preferences\predictad.js
c:\program files\AutocompletePro\support@predictad.com\chrome.manifest
c:\program files\AutocompletePro\support@predictad.com\chrome\content\browserOverlay.xul
c:\program files\AutocompletePro\support@predictad.com\chrome\content\options.js
c:\program files\AutocompletePro\support@predictad.com\chrome\content\options.xul
c:\program files\AutocompletePro\support@predictad.com\chrome\content\utils.js
c:\program files\AutocompletePro\support@predictad.com\install.rdf
c:\program files\AutocompletePro\TaskScheduler.dll
c:\program files\AutocompletePro\unins000.dat
c:\program files\AutocompletePro\unins000.exe
c:\windows\system32\drivers\npf.sys
c:\windows\system32\Packet.dll
c:\windows\system32\pthreadVC.dll
c:\windows\system32\wpcap.dll
D:\install.exe
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_MYWEBSEARCHSERVICE
-------\Legacy_NPF
-------\Service_MyWebSearchService
-------\Service_NPF
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-07-03 do 2011-08-03 )))))))))))))))))))))))))))))))
.
.
2011-08-03 08:13 . 2011-08-03 08:13 -------- d-----w- c:\documents and settings\User\Local Settings\Data aplikací\GameSpy
2011-08-03 08:13 . 2011-08-03 09:56 -------- d-----w- c:\documents and settings\User\Local Settings\Data aplikací\ApplicationHistory
2011-08-02 22:09 . 2011-08-02 22:09 -------- d-----w- c:\program files\trend micro
2011-08-02 22:09 . 2011-08-02 22:09 -------- d-----w- C:\rsit
2011-08-02 18:29 . 2011-08-02 18:29 -------- d-----w- c:\program files\GameSpy
2011-08-02 18:28 . 2011-08-02 18:28 -------- d-----w- c:\windows\system32\URTTEMP
2011-07-31 09:19 . 2011-07-31 09:19 -------- d-----w- c:\windows\system32\zaloha
2011-07-28 20:55 . 2011-07-28 20:56 -------- d-----w- c:\documents and settings\UpdatusUser
2011-07-25 21:43 . 2011-04-15 23:40 809496 ----a-r- c:\windows\system32\tmp111.tmp
2011-07-25 21:43 . 2011-04-15 23:40 809496 ----a-r- c:\windows\system32\tmp110.tmp
2011-07-21 12:49 . 2011-07-21 12:49 -------- d-----w- c:\documents and settings\User\Data aplikací\Day 1 Studios
2011-07-21 12:49 . 2011-07-21 12:49 -------- d-----w- c:\documents and settings\User\Local Settings\Data aplikací\SKIDROW
2011-07-19 10:44 . 2011-07-19 10:44 -------- d-----w- c:\program files\Eidos Interactive
2011-07-12 21:31 . 2011-07-12 21:31 -------- d-----w- c:\documents and settings\User\Data aplikací\RoboForm
2011-07-12 21:30 . 2011-07-12 21:30 -------- d-----w- c:\documents and settings\All Users\Data aplikací\RoboForm
2011-07-12 17:21 . 2011-07-12 17:21 -------- d-----w- c:\documents and settings\User\Data aplikací\DDMSettings
2011-07-12 17:17 . 2011-07-12 17:18 -------- d-----w- c:\program files\Common Files\DivX Shared
2011-07-12 17:16 . 2011-07-12 17:19 -------- d-----w- c:\program files\DivX
2011-07-12 17:15 . 2011-07-12 17:19 -------- d-----w- c:\documents and settings\All Users\Data aplikací\DivX
2011-07-12 10:31 . 2011-07-12 10:31 -------- d-----w- c:\documents and settings\User\Data aplikací\Full
2011-07-11 21:33 . 2011-07-11 21:33 -------- d-----w- c:\documents and settings\User\Data aplikací\Moyea
2011-07-11 21:33 . 2011-07-11 21:33 -------- d-----w- c:\documents and settings\User\Data aplikací\Leawo Video2PC
2011-07-06 20:20 . 2011-07-06 20:20 -------- d-----w- c:\program files\Apple Software Update
2011-07-05 11:36 . 2011-07-05 11:36 59904 --sh--w- C:\SCX.dll
2011-07-05 08:58 . 2011-07-05 08:58 -------- d-----w- c:\program files\directx
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-08-02 18:26 . 2010-10-15 17:07 22328 ----a-w- c:\documents and settings\User\Data aplikací\PnkBstrK.sys
2011-08-02 18:26 . 2010-09-03 11:28 22328 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2011-08-02 18:26 . 2010-09-03 11:28 103736 ----a-w- c:\windows\system32\PnkBstrB.exe
2011-08-02 18:26 . 2010-09-03 11:28 66872 ----a-w- c:\windows\system32\PnkBstrA.exe
2011-08-02 18:26 . 2011-01-02 15:31 669184 ----a-w- c:\windows\system32\pbsvc.exe
2011-07-25 21:43 . 2010-04-13 09:13 109080 ----a-w- c:\windows\system32\OpenAL32.dll
2011-07-23 18:57 . 2011-05-16 23:30 600680 ----a-w- c:\windows\system32\easyUpdatusAPIU.dll
2011-07-23 18:57 . 2011-05-16 23:30 54272 ----a-w- c:\windows\system32\nvwddi.dll
2011-07-23 18:57 . 2011-05-16 23:30 249856 ----a-w- c:\windows\system32\nvrseng.dll
2011-07-23 18:57 . 2011-05-16 23:30 282624 ----a-w- c:\windows\system32\nvrsel.dll
2011-07-23 18:57 . 2011-05-16 23:30 274432 ----a-w- c:\windows\system32\nvrsesm.dll
2011-07-23 18:57 . 2011-05-16 23:30 253952 ----a-w- c:\windows\system32\nvrsth.dll
2011-07-23 18:57 . 2011-05-16 23:30 126976 ----a-w- c:\windows\system32\nvrszht.dll
2011-07-23 18:57 . 2011-05-16 23:30 331776 ----a-w- c:\windows\system32\nvrshe.dll
2011-07-23 18:57 . 2011-05-16 23:30 286720 ----a-w- c:\windows\system32\nvrsfr.dll
2011-07-23 18:57 . 2011-05-16 23:30 274432 ----a-w- c:\windows\system32\nvrsnl.dll
2011-07-23 18:57 . 2011-05-16 23:30 270336 ----a-w- c:\windows\system32\nvrsru.dll
2011-07-23 18:57 . 2011-05-16 23:30 262144 ----a-w- c:\windows\system32\nvrshu.dll
2011-07-23 18:57 . 2011-05-16 23:30 258048 ----a-w- c:\windows\system32\nvrssl.dll
2011-07-23 18:57 . 2011-05-16 23:30 253952 ----a-w- c:\windows\system32\nvrsda.dll
2011-07-23 18:57 . 2011-05-16 23:30 249856 ----a-w- c:\windows\system32\nvrsfi.dll
2011-07-23 18:57 . 2011-05-16 23:30 229376 ----a-w- c:\windows\system32\nvrszhc.dll
2011-07-23 18:57 . 2011-05-16 23:30 335872 ----a-w- c:\windows\system32\nvrsar.dll
2011-07-23 18:57 . 2011-05-16 23:30 282624 ----a-w- c:\windows\system32\nvrses.dll
2011-07-23 18:57 . 2011-05-16 23:30 278528 ----a-w- c:\windows\system32\nvrsde.dll
2011-07-23 18:57 . 2011-05-16 23:30 266240 ----a-w- c:\windows\system32\nvrsko.dll
2011-07-23 18:57 . 2011-05-16 23:30 258048 ----a-w- c:\windows\system32\nvrstr.dll
2011-07-23 18:57 . 2011-05-16 23:30 253952 ----a-w- c:\windows\system32\nvrssv.dll
2011-07-23 18:57 . 2011-05-16 23:30 249856 ----a-w- c:\windows\system32\nvrscs.dll
2011-07-23 18:57 . 2011-05-16 23:30 282624 ----a-w- c:\windows\system32\nvrsit.dll
2011-07-23 18:57 . 2011-05-16 23:30 274432 ----a-w- c:\windows\system32\nvrspt.dll
2011-07-23 18:57 . 2011-05-16 23:30 270336 ----a-w- c:\windows\system32\nvrsptb.dll
2011-07-23 18:57 . 2011-05-16 23:30 270336 ----a-w- c:\windows\system32\nvrsja.dll
2011-07-23 18:57 . 2011-05-16 23:30 258048 ----a-w- c:\windows\system32\nvrssk.dll
2011-07-23 18:57 . 2011-05-16 23:30 258048 ----a-w- c:\windows\system32\nvrspl.dll
2011-07-23 18:57 . 2011-05-16 23:30 253952 ----a-w- c:\windows\system32\nvrsno.dll
2011-07-23 18:57 . 2011-05-16 23:30 13892200 ----a-w- c:\windows\system32\nvcpl.dll
2011-07-23 18:57 . 2011-05-16 23:30 111208 ----a-w- c:\windows\system32\nvmctray.dll
2011-07-23 18:57 . 2011-05-16 23:30 146024 ----a-w- c:\windows\system32\nvsvc32.exe
2011-07-23 18:57 . 2011-05-16 23:30 145000 ----a-w- c:\windows\system32\nvcolor.exe
2011-07-23 18:57 . 2011-05-14 14:50 5427200 ----a-w- c:\windows\system32\nvcuda.dll
2011-07-23 18:57 . 2011-05-14 14:50 2387560 ----a-w- c:\windows\system32\nvcuvid.dll
2011-07-23 18:57 . 2011-05-14 14:50 2090088 ----a-w- c:\windows\system32\nvcuvenc.dll
2011-07-23 18:57 . 2011-05-14 14:50 16191488 ----a-w- c:\windows\system32\nvoglnt.dll
2011-07-23 18:57 . 2011-05-14 14:50 2404864 ----a-w- c:\windows\system32\nvapi.dll
2011-07-23 18:57 . 2011-01-30 20:07 61440 ----a-w- c:\windows\system32\OpenCL.dll
2011-07-23 18:57 . 2011-01-30 20:07 17186816 ----a-w- c:\windows\system32\nvcompiler.dll
2011-07-23 18:57 . 2011-01-07 18:44 914024 ----a-w- c:\windows\system32\nvdispco32.dll
2011-07-23 18:57 . 2011-01-07 18:44 875112 ----a-w- c:\windows\system32\nvgenco32.dll
2011-07-23 18:57 . 2009-04-30 20:02 4210816 ----a-w- c:\windows\system32\nv4_disp.dll
2011-07-23 18:57 . 2009-04-30 20:02 12542880 ----a-w- c:\windows\system32\drivers\nv4_mini.sys
2011-06-24 19:12 . 2011-06-19 00:33 281656 ----a-w- c:\windows\system32\PnkBstrB.xtr
2011-06-24 18:48 . 2010-09-03 11:28 281656 ----a-w- c:\windows\system32\PnkBstrB.ex0
2011-06-19 15:39 . 2011-05-15 07:14 404640 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-06-06 11:35 . 2008-04-14 05:45 1858944 ----a-w- c:\windows\system32\win32k.sys
2011-06-02 17:53 . 2011-06-02 17:53 94208 ----a-w- c:\windows\system32\dpl100.dll
2011-05-26 17:23 . 2009-08-18 09:30 564632 ----a-w- c:\documents and settings\All Users\Data aplikací\Microsoft\IdentityCRL\production\wlidui.dll
2011-05-26 17:23 . 2009-08-18 09:24 18328 ----a-w- c:\documents and settings\All Users\Data aplikací\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2011-05-25 06:09 . 2011-06-10 18:09 865896 ----a-w- c:\windows\system32\nvgenco322090.dll
2011-05-25 06:09 . 2011-06-10 18:09 899688 ----a-w- c:\windows\system32\nvdispco3220150.dll
2011-05-17 08:01 . 2011-05-14 14:50 944232 ----a-w- c:\windows\system32\nvdispco3220140.dll
2011-05-17 08:01 . 2011-05-14 14:50 855656 ----a-w- c:\windows\system32\nvgenco322060.dll
2011-05-16 23:30 . 2011-05-16 23:30 277608 ----a-w- c:\windows\system32\nvmccs.dll
2011-05-06 11:40 . 2010-04-16 18:35 1302528 ----a-w- c:\windows\system32\rapture3d_oal.dll
2011-06-16 04:30 . 2011-06-28 13:24 142296 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{872b5b88-9db5-4310-bdd0-ac189557e5f5}"= "c:\program files\DVDVideoSoftTB\prxtbDVD0.dll" [2011-01-17 175912]
.
[HKEY_CLASSES_ROOT\clsid\{872b5b88-9db5-4310-bdd0-ac189557e5f5}]
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
2011-01-17 14:54 175912 ----a-w- c:\program files\ConduitEngine\prxConduitEngine.dll
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{872b5b88-9db5-4310-bdd0-ac189557e5f5}]
2011-01-17 14:54 175912 ----a-w- c:\program files\DVDVideoSoftTB\prxtbDVD0.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{872b5b88-9db5-4310-bdd0-ac189557e5f5}"= "c:\program files\DVDVideoSoftTB\prxtbDVD0.dll" [2011-01-17 175912]
"{30F9B915-B755-4826-820B-08FBA6BD249D}"= "c:\program files\ConduitEngine\prxConduitEngine.dll" [2011-01-17 175912]
.
[HKEY_CLASSES_ROOT\clsid\{872b5b88-9db5-4310-bdd0-ac189557e5f5}]
.
[HKEY_CLASSES_ROOT\clsid\{30f9b915-b755-4826-820b-08fba6bd249d}]
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{872B5B88-9DB5-4310-BDD0-AC189557E5F5}"= "c:\program files\DVDVideoSoftTB\prxtbDVD0.dll" [2011-01-17 175912]
.
[HKEY_CLASSES_ROOT\clsid\{872b5b88-9db5-4310-bdd0-ac189557e5f5}]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2011-04-18 17:25 122512 ----a-w- c:\program files\Alwil Software\Avast5\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BitTorrent DNA"="c:\program files\DNA\btdna.exe" [2010-05-13 323392]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Ai Nap"="c:\program files\ASUS\AI Suite\AiNap\AiNap.exe" [2009-07-01 1435136]
"P17Helper"="SPIRun.dll" [2006-07-03 10752]
"NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
"amd_dc_opt"="c:\program files\AMD\Dual-Core Optimizer\amd_dc_opt.exe" [2008-07-22 77824]
"Start WingMan Profiler"="c:\program files\Logitech\Gaming Software\LWEMon.exe" [2010-06-14 153672]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2011-06-08 37296]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2011-03-30 937920]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2010-11-29 421888]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2011-04-08 254696]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2011-07-23 13892200]
"NvMediaCenter"="NvMCTray.dll" [2011-07-23 111208]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^GamersFirst LIVE!.lnk]
path=c:\documents and settings\All Users\Nabídka Start\Programy\Po spuštění\GamersFirst LIVE!.lnk
backup=c:\windows\pss\GamersFirst LIVE!.lnkCommon Startup
.
[HKLM\~\startupfolder\C:^Documents and Settings^User^Nabídka Start^Programy^Po spuštění^Registration .LNK]
path=c:\documents and settings\User\Nabídka Start\Programy\Po spuštění\Registration .LNK
backup=c:\windows\pss\Registration .LNKStartup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Comrade.exe]
2007-06-29 13:03 36864 ----a-w- c:\program files\GameSpy\Comrade\Comrade.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Cpu Level Up help]
2007-11-30 18:03 881152 ----a-w- c:\program files\ASUS\AI Suite\CpuLevelUpHelp.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
2007-12-19 20:13 486856 ----a-w- c:\program files\DAEMON Tools Lite\daemon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate]
2011-03-21 18:56 1230704 ----a-w- c:\program files\DivX\DivX Update\DivXUpdate.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QFan Help]
2009-07-01 18:19 601088 ----a-w- c:\program files\ASUS\AI Suite\QFan3\QFanHelp.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
2004-11-02 18:24 32768 ----a-w- c:\program files\CyberLink\PowerDVD\PDVDServ.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
2011-05-26 19:50 15147400 ----a-r- c:\program files\Skype\Phone\Skype.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMAX]
2007-10-08 05:47 864256 ----a-w- c:\program files\Analog Devices\SoundMAX\SMax4.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMAXPnP]
2007-10-09 10:02 1036288 ----a-w- c:\program files\Analog Devices\Core\smax4pnp.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
2011-06-04 18:38 1242448 ----a-w- c:\program files\Steam\Steam.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"ICQ Service"=2 (0x2)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"d:\\ZalohaC\\Program Files\\Atari\\Test Drive Unlimited\\TestDriveUnlimited.exe"=
"c:\\Program Files\\NFSU2\\speed2.exe"=
"c:\\Program Files\\Java\\jre6\\launch4j-tmp\\frd.exe"=
"c:\\Program Files\\Atari\\Test Drive Unlimited\\TestDriveUnlimited.exe"=
"c:\\Program Files\\Codemasters\\DiRT2\\dirt2_game.exe"=
"c:\\Program Files\\Ubisoft\\Ubisoft Game Launcher\\UbisoftGameLauncher.exe"=
"c:\\Program Files\\DNA\\btdna.exe"=
"c:\\Program Files\\BitTorrent\\bittorrent.exe"=
"c:\\Program Files\\Autodesk\\backburner\\monitor.exe"=
"c:\\Program Files\\Autodesk\\backburner\\manager.exe"=
"c:\\Program Files\\Autodesk\\backburner\\server.exe"=
"d:\\ZalohaC\\Program Files\\Counter-Strike Source\\hl2.exe"=
"d:\\ZalohaC\\TDU-zaloha\\Atari\\Test Drive Unlimited\\TestDriveUnlimited.exe"=
"c:\\Program Files\\Ubisoft\\Crytek\\Far Cry\\Bin32\\FarCry.exe"=
"d:\\ZalohaC\\Program Files\\rFactor\\rFactor.exe"=
"c:\\Documents and Settings\\User\\Dokumenty\\EA Games\\NFS World Online\\Data\\nfsw.exe"=
"d:\\ZalohaC\\Program Files\\Live For Speed S2 alpha z+keygen+program na vyrovnání volantu\\LfsRevLimiter.0.9.exe"=
"c:\\Program Files\\Steam\\Steam.exe"=
"c:\\Program Files\\TrackMania United\\TmUnited.exe"=
"c:\\Program Files\\TmUnitedForever\\TmForever.exe"=
"d:\\Program Files\\Counter-Strike Source\\hl2.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\mafia ii - public demo\\launcher.exe"=
"c:\\Program Files\\Activision\\Blur(TM)\\Blur.exe"=
"c:\\Program Files\\Counter-Strike Source\\hl2.exe"=
"d:\\Program Files\\Electronic Arts\\Battlefield Bad Company 2\\BFBC2Updater.exe"=
"d:\\Program Files\\Codemasters\\F1 2010\\F1_2010_game.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\WINDOWS\\system32\\dpvsetup.exe"=
"d:\\ZalohaC\\Program Files\\Live For Speed S2 alpha z+keygen+program na vyrovnání volantu\\CSR\\CSR.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"d:\\Program Files\\FlatOut2\\FlatOut2.exe"=
"d:\\Program Files\\EA GAMES\\Need for Speed Most Wanted\\speed.exe"=
"c:\\Program Files\\Insane\\Game.exe"=
"c:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FarCry2.exe"=
"c:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FC2Launcher.exe"=
"c:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FC2Editor.exe"=
"c:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FC2ServerLauncher.exe"=
"d:\\Program Files\\GTR 2\\GTR2.exe"=
"c:\\Program Files\\Atari\\TDU2\\TestDrive2.exe"=
"c:\\Program Files\\Atari\\TDU2\\UpLauncher.exe"=
"c:\\Program Files\\Ford Racing 3\\fr3.exe"=
"d:\\Program Files\\racer 0.8.32\\racer.exe"=
"d:\\SIMS\\RACER\\racer.exe"=
"d:\\Program Files\\racer 0.63\\racer.exe"=
"d:\\Program Files\\racer 0.8.31\\racer.exe"=
"d:\\ZalohaC\\Program Files\\Driving Speed PRO\\DrivingSpeedPro\\DrivingSpeed.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\Pando Networks\\Media Booster\\PMB.exe"=
"d:\\Program Files\\GamersFirst\\APB Reloaded\\Binaries\\APB.exe"=
"d:\\Program Files\\GamersFirst\\APB Reloaded\\Binaries\\VivoxVoiceService.exe"=
"c:\\Program Files\\VideoLAN\\VLC\\vlc.exe"=
"d:\\Program Files\\WB Games\\F.E.A.R. 3\\F.E.A.R. 3.exe"=
"d:\\Program Files\\Ubisoft\\Tom Clancy's Splinter Cell Double Agent\\SCDA-Offline\\System\\SplinterCell4.exe"=
"d:\\Program Files\\Codemasters\\DiRT 3\\dirt3_game.exe"=
"c:\\Program Files\\NVIDIA Corporation\\NVIDIA Updatus\\daemonu.exe"=
"c:\\Program Files\\Tunngle\\tnglctrl.exe"=
"c:\\Program Files\\Tunngle\\tunngle.exe"=
"c:\\Program Files\\Electronic Arts\\Crytek\\Crysis\\Bin32\\Crysis.exe"=
"c:\\Program Files\\Electronic Arts\\Crytek\\Crysis\\Bin32\\CrysisDedicatedServer.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"58776:TCP"= 58776:TCP:Pando Media Booster
"58776:UDP"= 58776:UDP:Pando Media Booster
.
R0 SmartDefragDriver;SmartDefragDriver;c:\windows\system32\drivers\SmartDefragDriver.sys [10.4.2011 10:21 13496]
R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [15.4.2010 16:59 715248]
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [30.4.2011 19:46 441176]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [13.4.2010 11:33 307288]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [13.4.2010 11:33 19544]
R2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [28.7.2011 22:55 2255464]
R2 TunngleService;TunngleService;c:\program files\Tunngle\TnglCtrl.exe [26.10.2010 17:54 741624]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda32.sys [14.5.2011 16:50 119272]
R3 tap0901t;TAP-Win32 Adapter V9 (Tunngle);c:\windows\system32\drivers\tap0901t.sys [26.10.2010 17:54 27136]
S2 AODService;AODService;c:\program files\AMD\OverDrive\AODAssist --> c:\program files\AMD\OverDrive\AODAssist [?]
S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service;c:\program files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [1.8.2010 21:12 79360]
S3 GPU-Z;GPU-Z;\??\c:\docume~1\User\LOCALS~1\Temp\GPU-Z.sys --> c:\docume~1\User\LOCALS~1\Temp\GPU-Z.sys [?]
S4 ICQ Service;ICQ Service;c:\program files\ICQ6Toolbar\ICQ Service.exe [16.4.2010 17:55 247096]
.
Obsah adresáře 'Naplánované úlohy'
.
2011-07-16 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2011-06-01 15:57]
.
2010-10-24 c:\windows\Tasks\expressburnShakeIcon.job
- c:\program files\NCH Swift Sound\ExpressBurn\expressburn.exe [2010-10-17 07:36]
.
2010-10-24 c:\windows\Tasks\expressripShakeIcon.job
- c:\program files\NCH Swift Sound\ExpressRip\expressrip.exe [2010-10-17 07:36]
.
2011-01-14 c:\windows\Tasks\mixpadShakeIcon.job
- c:\program files\NCH Swift Sound\MixPad\mixpad.exe [2010-10-17 07:36]
.
2011-08-03 c:\windows\Tasks\SmartDefrag_Startup.job
- c:\program files\IObit\Smart Defrag 2\SmartDefrag.exe [2011-04-10 16:19]
.
2011-07-10 c:\windows\Tasks\switchShakeIcon.job
- c:\program files\NCH Swift Sound\Switch\switch.exe [2010-10-17 07:37]
.
2011-07-17 c:\windows\Tasks\wavepadShakeIcon.job
- c:\program files\NCH Swift Sound\WavePad\wavepad.exe [2010-10-17 07:36]
.
2011-01-14 c:\windows\Tasks\zuluShakeIcon.job
- c:\program files\NCH Software\Zulu\zulu.exe [2011-01-14 20:23]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://start.icq.com/
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: Free YouTube Download - c:\documents and settings\User\Data aplikací\DVDVideoSoftIEHelpers\freeyoutubedownload.htm
IE: Free YouTube to Mp3 Converter - c:\documents and settings\User\Data aplikací\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
IE: {{5dddf69e-5e63-4a0a-8886-b2323fba6d62} - c:\program files\Clip Extractor\ClipExtractor.exe
Trusted Zone: tdu-central.com\forum
TCP: DhcpNameServer = 10.0.0.138
FF - ProfilePath - c:\documents and settings\User\Data aplikací\Mozilla\Firefox\Profiles\nr5dut4c.default\
FF - prefs.js: browser.search.selectedEngine - ICQ Search
FF - prefs.js: browser.startup.homepage - hxxp://start.icq.com/
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
AddRemove-AutocompletePro2_is1 - c:\program files\AutocompletePro\unins000.exe
AddRemove-{47C58A41-8A53-490D-9BD6-A9C8476D3E32}_is1 - d:\zalohac\Program Files\rFactor\rFactor\unins000.exe
AddRemove-DirtWorks Designs Open Wheel Modifieds - d:\zalohac\Program Files\rFactor\DWD Modifieds Uninstaller.exe
AddRemove-F1MG VERSION 2.0 - d:\zalohac\Program Files\rFactor\Uninstalf1mgv2.exe
AddRemove-FIA GT1 2010 - V1.0 - d:\zalohac\Program Files\rFactor\fiagt1_2010_v10_uninstall.exe
AddRemove-Mazda Furai 2008 - c:\documents and settings\User\Dokumenty\Nová složka (3)\FURAI_Uninstal.exe
AddRemove-MLynky and Mlynky Snow - c:\documents and settings\All Users\Plocha\Nová složka\Uninstal.exe
AddRemove-Omnitel 1000 km v.1.2.0 (by Mindaugas Kerge) - d:\zalohac\Program Files\rFactor\Omnitel1000km1.2.0_Uninstaller.exe
AddRemove-Peklo SNOW - c:\documents and settings\User\Plocha\Nová složka\Uninstal.exe
AddRemove-PEKLO special stage for RBR - c:\documents and settings\User\Plocha\Nová složka\Uninstal.exe
AddRemove-Red Bull Ring 2010 - The Prologue - c:\documents and settings\User\Plocha\Nová složka\Nová složka (2)\Uninstal.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-08-03 20:04
Windows 5.1.2600 Service Pack 3 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
P17Helper = Rundll32 SPIRun.dll,RunDLLEntry?
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
[HKEY_LOCAL_MACHINE\System\ControlSet002\Services\AODService]
"ImagePath"="c:\program files\AMD\OverDrive\AODAssist"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-1960408961-562591055-682003330-1003\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
"??"=hex:13,09,38,c6,eb,be,e0,9c,fe,e7,fb,12,9a,78,b4,ca,f3,07,c5,77,51,2b,43,
8b,4e,fe,3d,c9,cc,07,dc,5c,de,71,b7,c5,37,27,d2,7a,de,2d,84,1d,50,bb,6c,e4,\
"??"=hex:d5,1e,c4,c5,98,8d,90,4d,78,c4,a6,23,f1,a2,70,d2
.
[HKEY_USERS\S-1-5-21-1960408961-562591055-682003330-1003\Software\SecuROM\License information*]
"datasecu"=hex:65,53,1d,c7,48,b1,16,fe,f6,fa,fa,4a,fc,b2,da,0f,e7,dd,6d,62,e9,
af,5d,f4,aa,3f,06,a1,53,94,b6,80,5d,61,58,f2,f1,3f,46,95,06,6e,51,57,0b,3d,\
"rkeysecu"=hex:74,24,5e,01,95,0e,f9,65,08,16,fa,54,a6,43,9e,29
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'explorer.exe'(2204)
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\Alwil Software\Avast5\AvastSvc.exe
c:\program files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
c:\windows\system32\CTsvcCDA.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
c:\program files\Autodesk\3dsMax8\mentalray\satellite\raysat_3dsmax8server.exe
c:\windows\system32\nvsvc32.exe
c:\windows\system32\PnkBstrA.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
c:\windows\system32\wscntfy.exe
c:\windows\system32\Rundll32.exe
c:\windows\system32\RunDLL32.exe
.
**************************************************************************
.
Celkový čas: 2011-08-03 20:09:00 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-08-03 18:08
.
Před spuštěním: Volných bajtů: 78 396 780 544
Po spuštění: Volných bajtů: 79 259 643 904
.
- - End Of File - - FCFAC3E6F30D8EE011A4BBEC48AA4C49

Re: Pomalé načítání videí na Youtube

Napsal: 03 srp 2011 19:46
od Rudy
Ještě dočistíme. Otevřte poznámkový blok a zkopírujte do něj:
Collect::
c:\windows\system32\tmp111.tmp
c:\windows\system32\tmp110.tmp
Uložte na plochu jako CFScript.txt. pak jej myší přetáhněte nad ikonu ComboFix a pusťte. CF se spustí a vykoná příkazy ze skriptu´.

Obrázek

Re: Pomalé načítání videí na Youtube

Napsal: 03 srp 2011 20:20
od Tombasss
Tady je log

ComboFix 11-08-03.02 - User 03.08.2011 20:53:19.2.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.3070.2477 [GMT 2:00]
Spuštěný z: c:\documents and settings\User\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\User\Plocha\CFScript.txt
AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
VAROVÁNÍ - NA TOMTO POČÍTAČI NENÍ NAINSTALOVÁNA KONZOLA PRO ZOTAVENÍ !!
.
file zipped: c:\windows\system32\tmp110.tmp
file zipped: c:\windows\system32\tmp111.tmp
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\system32\tmp110.tmp
c:\windows\system32\tmp111.tmp
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-07-03 do 2011-08-03 )))))))))))))))))))))))))))))))
.
.
2011-08-03 08:13 . 2011-08-03 08:13 -------- d-----w- c:\documents and settings\User\Local Settings\Data aplikací\GameSpy
2011-08-03 08:13 . 2011-08-03 09:56 -------- d-----w- c:\documents and settings\User\Local Settings\Data aplikací\ApplicationHistory
2011-08-02 22:09 . 2011-08-02 22:09 -------- d-----w- c:\program files\trend micro
2011-08-02 22:09 . 2011-08-02 22:09 -------- d-----w- C:\rsit
2011-08-02 18:29 . 2011-08-02 18:29 -------- d-----w- c:\program files\GameSpy
2011-08-02 18:28 . 2011-08-02 18:28 -------- d-----w- c:\windows\system32\URTTEMP
2011-07-31 09:19 . 2011-07-31 09:19 -------- d-----w- c:\windows\system32\zaloha
2011-07-28 20:55 . 2011-07-28 20:56 -------- d-----w- c:\documents and settings\UpdatusUser
2011-07-21 12:49 . 2011-07-21 12:49 -------- d-----w- c:\documents and settings\User\Data aplikací\Day 1 Studios
2011-07-21 12:49 . 2011-07-21 12:49 -------- d-----w- c:\documents and settings\User\Local Settings\Data aplikací\SKIDROW
2011-07-19 10:44 . 2011-07-19 10:44 -------- d-----w- c:\program files\Eidos Interactive
2011-07-12 21:31 . 2011-07-12 21:31 -------- d-----w- c:\documents and settings\User\Data aplikací\RoboForm
2011-07-12 21:30 . 2011-07-12 21:30 -------- d-----w- c:\documents and settings\All Users\Data aplikací\RoboForm
2011-07-12 17:21 . 2011-07-12 17:21 -------- d-----w- c:\documents and settings\User\Data aplikací\DDMSettings
2011-07-12 17:17 . 2011-07-12 17:18 -------- d-----w- c:\program files\Common Files\DivX Shared
2011-07-12 17:16 . 2011-07-12 17:19 -------- d-----w- c:\program files\DivX
2011-07-12 17:15 . 2011-07-12 17:19 -------- d-----w- c:\documents and settings\All Users\Data aplikací\DivX
2011-07-12 10:31 . 2011-07-12 10:31 -------- d-----w- c:\documents and settings\User\Data aplikací\Full
2011-07-11 21:33 . 2011-07-11 21:33 -------- d-----w- c:\documents and settings\User\Data aplikací\Moyea
2011-07-11 21:33 . 2011-07-11 21:33 -------- d-----w- c:\documents and settings\User\Data aplikací\Leawo Video2PC
2011-07-06 20:20 . 2011-07-06 20:20 -------- d-----w- c:\program files\Apple Software Update
2011-07-05 11:36 . 2011-07-05 11:36 59904 --sh--w- C:\SCX.dll
2011-07-05 08:58 . 2011-07-05 08:58 -------- d-----w- c:\program files\directx
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-08-02 18:26 . 2010-10-15 17:07 22328 ----a-w- c:\documents and settings\User\Data aplikací\PnkBstrK.sys
2011-08-02 18:26 . 2010-09-03 11:28 22328 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2011-08-02 18:26 . 2010-09-03 11:28 103736 ----a-w- c:\windows\system32\PnkBstrB.exe
2011-08-02 18:26 . 2010-09-03 11:28 66872 ----a-w- c:\windows\system32\PnkBstrA.exe
2011-08-02 18:26 . 2011-01-02 15:31 669184 ----a-w- c:\windows\system32\pbsvc.exe
2011-07-25 21:43 . 2010-04-13 09:13 109080 ----a-w- c:\windows\system32\OpenAL32.dll
2011-07-23 18:57 . 2011-05-16 23:30 600680 ----a-w- c:\windows\system32\easyUpdatusAPIU.dll
2011-07-23 18:57 . 2011-05-16 23:30 54272 ----a-w- c:\windows\system32\nvwddi.dll
2011-07-23 18:57 . 2011-05-16 23:30 249856 ----a-w- c:\windows\system32\nvrseng.dll
2011-07-23 18:57 . 2011-05-16 23:30 282624 ----a-w- c:\windows\system32\nvrsel.dll
2011-07-23 18:57 . 2011-05-16 23:30 274432 ----a-w- c:\windows\system32\nvrsesm.dll
2011-07-23 18:57 . 2011-05-16 23:30 253952 ----a-w- c:\windows\system32\nvrsth.dll
2011-07-23 18:57 . 2011-05-16 23:30 126976 ----a-w- c:\windows\system32\nvrszht.dll
2011-07-23 18:57 . 2011-05-16 23:30 331776 ----a-w- c:\windows\system32\nvrshe.dll
2011-07-23 18:57 . 2011-05-16 23:30 286720 ----a-w- c:\windows\system32\nvrsfr.dll
2011-07-23 18:57 . 2011-05-16 23:30 274432 ----a-w- c:\windows\system32\nvrsnl.dll
2011-07-23 18:57 . 2011-05-16 23:30 270336 ----a-w- c:\windows\system32\nvrsru.dll
2011-07-23 18:57 . 2011-05-16 23:30 262144 ----a-w- c:\windows\system32\nvrshu.dll
2011-07-23 18:57 . 2011-05-16 23:30 258048 ----a-w- c:\windows\system32\nvrssl.dll
2011-07-23 18:57 . 2011-05-16 23:30 253952 ----a-w- c:\windows\system32\nvrsda.dll
2011-07-23 18:57 . 2011-05-16 23:30 249856 ----a-w- c:\windows\system32\nvrsfi.dll
2011-07-23 18:57 . 2011-05-16 23:30 229376 ----a-w- c:\windows\system32\nvrszhc.dll
2011-07-23 18:57 . 2011-05-16 23:30 335872 ----a-w- c:\windows\system32\nvrsar.dll
2011-07-23 18:57 . 2011-05-16 23:30 282624 ----a-w- c:\windows\system32\nvrses.dll
2011-07-23 18:57 . 2011-05-16 23:30 278528 ----a-w- c:\windows\system32\nvrsde.dll
2011-07-23 18:57 . 2011-05-16 23:30 266240 ----a-w- c:\windows\system32\nvrsko.dll
2011-07-23 18:57 . 2011-05-16 23:30 258048 ----a-w- c:\windows\system32\nvrstr.dll
2011-07-23 18:57 . 2011-05-16 23:30 253952 ----a-w- c:\windows\system32\nvrssv.dll
2011-07-23 18:57 . 2011-05-16 23:30 249856 ----a-w- c:\windows\system32\nvrscs.dll
2011-07-23 18:57 . 2011-05-16 23:30 282624 ----a-w- c:\windows\system32\nvrsit.dll
2011-07-23 18:57 . 2011-05-16 23:30 274432 ----a-w- c:\windows\system32\nvrspt.dll
2011-07-23 18:57 . 2011-05-16 23:30 270336 ----a-w- c:\windows\system32\nvrsptb.dll
2011-07-23 18:57 . 2011-05-16 23:30 270336 ----a-w- c:\windows\system32\nvrsja.dll
2011-07-23 18:57 . 2011-05-16 23:30 258048 ----a-w- c:\windows\system32\nvrssk.dll
2011-07-23 18:57 . 2011-05-16 23:30 258048 ----a-w- c:\windows\system32\nvrspl.dll
2011-07-23 18:57 . 2011-05-16 23:30 253952 ----a-w- c:\windows\system32\nvrsno.dll
2011-07-23 18:57 . 2011-05-16 23:30 13892200 ----a-w- c:\windows\system32\nvcpl.dll
2011-07-23 18:57 . 2011-05-16 23:30 111208 ----a-w- c:\windows\system32\nvmctray.dll
2011-07-23 18:57 . 2011-05-16 23:30 146024 ----a-w- c:\windows\system32\nvsvc32.exe
2011-07-23 18:57 . 2011-05-16 23:30 145000 ----a-w- c:\windows\system32\nvcolor.exe
2011-07-23 18:57 . 2011-05-14 14:50 5427200 ----a-w- c:\windows\system32\nvcuda.dll
2011-07-23 18:57 . 2011-05-14 14:50 2387560 ----a-w- c:\windows\system32\nvcuvid.dll
2011-07-23 18:57 . 2011-05-14 14:50 2090088 ----a-w- c:\windows\system32\nvcuvenc.dll
2011-07-23 18:57 . 2011-05-14 14:50 16191488 ----a-w- c:\windows\system32\nvoglnt.dll
2011-07-23 18:57 . 2011-05-14 14:50 2404864 ----a-w- c:\windows\system32\nvapi.dll
2011-07-23 18:57 . 2011-01-30 20:07 61440 ----a-w- c:\windows\system32\OpenCL.dll
2011-07-23 18:57 . 2011-01-30 20:07 17186816 ----a-w- c:\windows\system32\nvcompiler.dll
2011-07-23 18:57 . 2011-01-07 18:44 914024 ----a-w- c:\windows\system32\nvdispco32.dll
2011-07-23 18:57 . 2011-01-07 18:44 875112 ----a-w- c:\windows\system32\nvgenco32.dll
2011-07-23 18:57 . 2009-04-30 20:02 4210816 ----a-w- c:\windows\system32\nv4_disp.dll
2011-07-23 18:57 . 2009-04-30 20:02 12542880 ----a-w- c:\windows\system32\drivers\nv4_mini.sys
2011-06-24 19:12 . 2011-06-19 00:33 281656 ----a-w- c:\windows\system32\PnkBstrB.xtr
2011-06-24 18:48 . 2010-09-03 11:28 281656 ----a-w- c:\windows\system32\PnkBstrB.ex0
2011-06-19 15:39 . 2011-05-15 07:14 404640 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-06-06 11:35 . 2008-04-14 05:45 1858944 ----a-w- c:\windows\system32\win32k.sys
2011-06-02 17:53 . 2011-06-02 17:53 94208 ----a-w- c:\windows\system32\dpl100.dll
2011-05-26 17:23 . 2009-08-18 09:30 564632 ----a-w- c:\documents and settings\All Users\Data aplikací\Microsoft\IdentityCRL\production\wlidui.dll
2011-05-26 17:23 . 2009-08-18 09:24 18328 ----a-w- c:\documents and settings\All Users\Data aplikací\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2011-05-25 06:09 . 2011-06-10 18:09 865896 ----a-w- c:\windows\system32\nvgenco322090.dll
2011-05-25 06:09 . 2011-06-10 18:09 899688 ----a-w- c:\windows\system32\nvdispco3220150.dll
2011-05-17 08:01 . 2011-05-14 14:50 944232 ----a-w- c:\windows\system32\nvdispco3220140.dll
2011-05-17 08:01 . 2011-05-14 14:50 855656 ----a-w- c:\windows\system32\nvgenco322060.dll
2011-05-16 23:30 . 2011-05-16 23:30 277608 ----a-w- c:\windows\system32\nvmccs.dll
2011-05-06 11:40 . 2010-04-16 18:35 1302528 ----a-w- c:\windows\system32\rapture3d_oal.dll
2011-06-16 04:30 . 2011-06-28 13:24 142296 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((( SnapShot@2011-08-03_18.04.36 )))))))))))))))))))))))))))))))))))))))))
.
+ 2011-08-03 19:06 . 2011-08-03 19:06 16384 c:\windows\Temp\Perflib_Perfdata_340.dat
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{872b5b88-9db5-4310-bdd0-ac189557e5f5}"= "c:\program files\DVDVideoSoftTB\prxtbDVD0.dll" [2011-01-17 175912]
.
[HKEY_CLASSES_ROOT\clsid\{872b5b88-9db5-4310-bdd0-ac189557e5f5}]
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
2011-01-17 14:54 175912 ----a-w- c:\program files\ConduitEngine\prxConduitEngine.dll
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{872b5b88-9db5-4310-bdd0-ac189557e5f5}]
2011-01-17 14:54 175912 ----a-w- c:\program files\DVDVideoSoftTB\prxtbDVD0.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{872b5b88-9db5-4310-bdd0-ac189557e5f5}"= "c:\program files\DVDVideoSoftTB\prxtbDVD0.dll" [2011-01-17 175912]
"{30F9B915-B755-4826-820B-08FBA6BD249D}"= "c:\program files\ConduitEngine\prxConduitEngine.dll" [2011-01-17 175912]
.
[HKEY_CLASSES_ROOT\clsid\{872b5b88-9db5-4310-bdd0-ac189557e5f5}]
.
[HKEY_CLASSES_ROOT\clsid\{30f9b915-b755-4826-820b-08fba6bd249d}]
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{872B5B88-9DB5-4310-BDD0-AC189557E5F5}"= "c:\program files\DVDVideoSoftTB\prxtbDVD0.dll" [2011-01-17 175912]
.
[HKEY_CLASSES_ROOT\clsid\{872b5b88-9db5-4310-bdd0-ac189557e5f5}]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2011-04-18 17:25 122512 ----a-w- c:\program files\Alwil Software\Avast5\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BitTorrent DNA"="c:\program files\DNA\btdna.exe" [2010-05-13 323392]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Ai Nap"="c:\program files\ASUS\AI Suite\AiNap\AiNap.exe" [2009-07-01 1435136]
"P17Helper"="SPIRun.dll" [2006-07-03 10752]
"NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
"amd_dc_opt"="c:\program files\AMD\Dual-Core Optimizer\amd_dc_opt.exe" [2008-07-22 77824]
"Start WingMan Profiler"="c:\program files\Logitech\Gaming Software\LWEMon.exe" [2010-06-14 153672]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2011-06-08 37296]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2011-03-30 937920]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2010-11-29 421888]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2011-04-08 254696]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2011-07-23 13892200]
"NvMediaCenter"="NvMCTray.dll" [2011-07-23 111208]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^GamersFirst LIVE!.lnk]
path=c:\documents and settings\All Users\Nabídka Start\Programy\Po spuštění\GamersFirst LIVE!.lnk
backup=c:\windows\pss\GamersFirst LIVE!.lnkCommon Startup
.
[HKLM\~\startupfolder\C:^Documents and Settings^User^Nabídka Start^Programy^Po spuštění^Registration .LNK]
path=c:\documents and settings\User\Nabídka Start\Programy\Po spuštění\Registration .LNK
backup=c:\windows\pss\Registration .LNKStartup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Comrade.exe]
2007-06-29 13:03 36864 ----a-w- c:\program files\GameSpy\Comrade\Comrade.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Cpu Level Up help]
2007-11-30 18:03 881152 ----a-w- c:\program files\ASUS\AI Suite\CpuLevelUpHelp.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
2007-12-19 20:13 486856 ----a-w- c:\program files\DAEMON Tools Lite\daemon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate]
2011-03-21 18:56 1230704 ----a-w- c:\program files\DivX\DivX Update\DivXUpdate.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QFan Help]
2009-07-01 18:19 601088 ----a-w- c:\program files\ASUS\AI Suite\QFan3\QFanHelp.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
2004-11-02 18:24 32768 ----a-w- c:\program files\CyberLink\PowerDVD\PDVDServ.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
2011-05-26 19:50 15147400 ----a-r- c:\program files\Skype\Phone\Skype.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMAX]
2007-10-08 05:47 864256 ----a-w- c:\program files\Analog Devices\SoundMAX\SMax4.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMAXPnP]
2007-10-09 10:02 1036288 ----a-w- c:\program files\Analog Devices\Core\smax4pnp.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
2011-06-04 18:38 1242448 ----a-w- c:\program files\Steam\Steam.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"ICQ Service"=2 (0x2)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"d:\\ZalohaC\\Program Files\\Atari\\Test Drive Unlimited\\TestDriveUnlimited.exe"=
"c:\\Program Files\\NFSU2\\speed2.exe"=
"c:\\Program Files\\Java\\jre6\\launch4j-tmp\\frd.exe"=
"c:\\Program Files\\Atari\\Test Drive Unlimited\\TestDriveUnlimited.exe"=
"c:\\Program Files\\Codemasters\\DiRT2\\dirt2_game.exe"=
"c:\\Program Files\\Ubisoft\\Ubisoft Game Launcher\\UbisoftGameLauncher.exe"=
"c:\\Program Files\\DNA\\btdna.exe"=
"c:\\Program Files\\BitTorrent\\bittorrent.exe"=
"c:\\Program Files\\Autodesk\\backburner\\monitor.exe"=
"c:\\Program Files\\Autodesk\\backburner\\manager.exe"=
"c:\\Program Files\\Autodesk\\backburner\\server.exe"=
"d:\\ZalohaC\\Program Files\\Counter-Strike Source\\hl2.exe"=
"d:\\ZalohaC\\TDU-zaloha\\Atari\\Test Drive Unlimited\\TestDriveUnlimited.exe"=
"c:\\Program Files\\Ubisoft\\Crytek\\Far Cry\\Bin32\\FarCry.exe"=
"d:\\ZalohaC\\Program Files\\rFactor\\rFactor.exe"=
"c:\\Documents and Settings\\User\\Dokumenty\\EA Games\\NFS World Online\\Data\\nfsw.exe"=
"d:\\ZalohaC\\Program Files\\Live For Speed S2 alpha z+keygen+program na vyrovnání volantu\\LfsRevLimiter.0.9.exe"=
"c:\\Program Files\\Steam\\Steam.exe"=
"c:\\Program Files\\TrackMania United\\TmUnited.exe"=
"c:\\Program Files\\TmUnitedForever\\TmForever.exe"=
"d:\\Program Files\\Counter-Strike Source\\hl2.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\mafia ii - public demo\\launcher.exe"=
"c:\\Program Files\\Activision\\Blur(TM)\\Blur.exe"=
"c:\\Program Files\\Counter-Strike Source\\hl2.exe"=
"d:\\Program Files\\Electronic Arts\\Battlefield Bad Company 2\\BFBC2Updater.exe"=
"d:\\Program Files\\Codemasters\\F1 2010\\F1_2010_game.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\WINDOWS\\system32\\dpvsetup.exe"=
"d:\\ZalohaC\\Program Files\\Live For Speed S2 alpha z+keygen+program na vyrovnání volantu\\CSR\\CSR.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"d:\\Program Files\\FlatOut2\\FlatOut2.exe"=
"d:\\Program Files\\EA GAMES\\Need for Speed Most Wanted\\speed.exe"=
"c:\\Program Files\\Insane\\Game.exe"=
"c:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FarCry2.exe"=
"c:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FC2Launcher.exe"=
"c:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FC2Editor.exe"=
"c:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FC2ServerLauncher.exe"=
"d:\\Program Files\\GTR 2\\GTR2.exe"=
"c:\\Program Files\\Atari\\TDU2\\TestDrive2.exe"=
"c:\\Program Files\\Atari\\TDU2\\UpLauncher.exe"=
"c:\\Program Files\\Ford Racing 3\\fr3.exe"=
"d:\\Program Files\\racer 0.8.32\\racer.exe"=
"d:\\SIMS\\RACER\\racer.exe"=
"d:\\Program Files\\racer 0.63\\racer.exe"=
"d:\\Program Files\\racer 0.8.31\\racer.exe"=
"d:\\ZalohaC\\Program Files\\Driving Speed PRO\\DrivingSpeedPro\\DrivingSpeed.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\Pando Networks\\Media Booster\\PMB.exe"=
"d:\\Program Files\\GamersFirst\\APB Reloaded\\Binaries\\APB.exe"=
"d:\\Program Files\\GamersFirst\\APB Reloaded\\Binaries\\VivoxVoiceService.exe"=
"c:\\Program Files\\VideoLAN\\VLC\\vlc.exe"=
"d:\\Program Files\\WB Games\\F.E.A.R. 3\\F.E.A.R. 3.exe"=
"d:\\Program Files\\Ubisoft\\Tom Clancy's Splinter Cell Double Agent\\SCDA-Offline\\System\\SplinterCell4.exe"=
"d:\\Program Files\\Codemasters\\DiRT 3\\dirt3_game.exe"=
"c:\\Program Files\\NVIDIA Corporation\\NVIDIA Updatus\\daemonu.exe"=
"c:\\Program Files\\Tunngle\\tnglctrl.exe"=
"c:\\Program Files\\Tunngle\\tunngle.exe"=
"c:\\Program Files\\Electronic Arts\\Crytek\\Crysis\\Bin32\\Crysis.exe"=
"c:\\Program Files\\Electronic Arts\\Crytek\\Crysis\\Bin32\\CrysisDedicatedServer.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"58776:TCP"= 58776:TCP:Pando Media Booster
"58776:UDP"= 58776:UDP:Pando Media Booster
.
R0 SmartDefragDriver;SmartDefragDriver;c:\windows\system32\drivers\SmartDefragDriver.sys [10.4.2011 10:21 13496]
R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [15.4.2010 16:59 715248]
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [30.4.2011 19:46 441176]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [13.4.2010 11:33 307288]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [13.4.2010 11:33 19544]
R2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [28.7.2011 22:55 2255464]
R2 TunngleService;TunngleService;c:\program files\Tunngle\TnglCtrl.exe [26.10.2010 17:54 741624]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda32.sys [14.5.2011 16:50 119272]
R3 tap0901t;TAP-Win32 Adapter V9 (Tunngle);c:\windows\system32\drivers\tap0901t.sys [26.10.2010 17:54 27136]
S2 AODService;AODService;c:\program files\AMD\OverDrive\AODAssist --> c:\program files\AMD\OverDrive\AODAssist [?]
S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service;c:\program files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [1.8.2010 21:12 79360]
S3 GPU-Z;GPU-Z;\??\c:\docume~1\User\LOCALS~1\Temp\GPU-Z.sys --> c:\docume~1\User\LOCALS~1\Temp\GPU-Z.sys [?]
S4 ICQ Service;ICQ Service;c:\program files\ICQ6Toolbar\ICQ Service.exe [16.4.2010 17:55 247096]
.
Obsah adresáře 'Naplánované úlohy'
.
2011-07-16 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2011-06-01 15:57]
.
2010-10-24 c:\windows\Tasks\expressburnShakeIcon.job
- c:\program files\NCH Swift Sound\ExpressBurn\expressburn.exe [2010-10-17 07:36]
.
2010-10-24 c:\windows\Tasks\expressripShakeIcon.job
- c:\program files\NCH Swift Sound\ExpressRip\expressrip.exe [2010-10-17 07:36]
.
2011-01-14 c:\windows\Tasks\mixpadShakeIcon.job
- c:\program files\NCH Swift Sound\MixPad\mixpad.exe [2010-10-17 07:36]
.
2011-08-03 c:\windows\Tasks\SmartDefrag_Startup.job
- c:\program files\IObit\Smart Defrag 2\SmartDefrag.exe [2011-04-10 16:19]
.
2011-07-10 c:\windows\Tasks\switchShakeIcon.job
- c:\program files\NCH Swift Sound\Switch\switch.exe [2010-10-17 07:37]
.
2011-07-17 c:\windows\Tasks\wavepadShakeIcon.job
- c:\program files\NCH Swift Sound\WavePad\wavepad.exe [2010-10-17 07:36]
.
2011-01-14 c:\windows\Tasks\zuluShakeIcon.job
- c:\program files\NCH Software\Zulu\zulu.exe [2011-01-14 20:23]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://start.icq.com/
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: Free YouTube Download - c:\documents and settings\User\Data aplikací\DVDVideoSoftIEHelpers\freeyoutubedownload.htm
IE: Free YouTube to Mp3 Converter - c:\documents and settings\User\Data aplikací\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
IE: {{5dddf69e-5e63-4a0a-8886-b2323fba6d62} - c:\program files\Clip Extractor\ClipExtractor.exe
Trusted Zone: tdu-central.com\forum
TCP: DhcpNameServer = 10.0.0.138
FF - ProfilePath - c:\documents and settings\User\Data aplikací\Mozilla\Firefox\Profiles\nr5dut4c.default\
FF - prefs.js: browser.search.selectedEngine - ICQ Search
FF - prefs.js: browser.startup.homepage - hxxp://start.icq.com/
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
AddRemove-Peklo SNOW - c:\documents and settings\User\Plocha\Nová složka\Uninstal.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-08-03 21:13
Windows 5.1.2600 Service Pack 3 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
P17Helper = Rundll32 SPIRun.dll,RunDLLEntry?
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
[HKEY_LOCAL_MACHINE\System\ControlSet002\Services\AODService]
"ImagePath"="c:\program files\AMD\OverDrive\AODAssist"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-1960408961-562591055-682003330-1003\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
"??"=hex:13,09,38,c6,eb,be,e0,9c,fe,e7,fb,12,9a,78,b4,ca,f3,07,c5,77,51,2b,43,
8b,4e,fe,3d,c9,cc,07,dc,5c,de,71,b7,c5,37,27,d2,7a,de,2d,84,1d,50,bb,6c,e4,\
"??"=hex:d5,1e,c4,c5,98,8d,90,4d,78,c4,a6,23,f1,a2,70,d2
.
[HKEY_USERS\S-1-5-21-1960408961-562591055-682003330-1003\Software\SecuROM\License information*]
"datasecu"=hex:65,53,1d,c7,48,b1,16,fe,f6,fa,fa,4a,fc,b2,da,0f,e7,dd,6d,62,e9,
af,5d,f4,aa,3f,06,a1,53,94,b6,80,5d,61,58,f2,f1,3f,46,95,06,6e,51,57,0b,3d,\
"rkeysecu"=hex:74,24,5e,01,95,0e,f9,65,08,16,fa,54,a6,43,9e,29
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'explorer.exe'(3800)
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\Alwil Software\Avast5\AvastSvc.exe
c:\program files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
c:\windows\system32\CTsvcCDA.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
c:\program files\Autodesk\3dsMax8\mentalray\satellite\raysat_3dsmax8server.exe
c:\windows\system32\nvsvc32.exe
c:\windows\system32\PnkBstrA.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
c:\windows\system32\wscntfy.exe
c:\windows\system32\Rundll32.exe
c:\windows\system32\RunDLL32.exe
.
**************************************************************************
.
Celkový čas: 2011-08-03 21:17:25 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-08-03 19:17
ComboFix2.txt 2011-08-03 18:09
.
Před spuštěním: Volných bajtů: 80 047 898 624
Po spuštění: Volných bajtů: 80 030 490 624
.
- - End Of File - - DAC25759A81B793332BF77FDDDE3739B
Nahr nˇ probŘhlo ŁspŘçnŘ

Re: Pomalé načítání videí na Youtube

Napsal: 03 srp 2011 20:34
od Rudy
Smazáno. Ještě maličkost. Otestujte online na www.virustotal.com tento soubor: C:\SCX.dll

Re: Pomalé načítání videí na Youtube

Napsal: 03 srp 2011 20:39
od Tombasss
Na céčku žádný takový soubor nemůžu najít.

Re: Pomalé načítání videí na Youtube

Napsal: 03 srp 2011 20:50
od Rudy
V logu je. Zkopírujte tu cestu přímo do okénka na VT a spusťte kontrolu.

Re: Pomalé načítání videí na Youtube

Napsal: 03 srp 2011 20:54
od Tombasss
OK,tak tady je výsledek

Antivirus Version Last Update Result
AhnLab-V3 2011.08.03.04 2011.08.03 -
AntiVir 7.11.12.210 2011.08.03 -
Antiy-AVL 2.0.3.7 2011.08.03 -
Avast 4.8.1351.0 2011.08.03 -
Avast5 5.0.677.0 2011.08.03 -
AVG 10.0.0.1190 2011.08.03 -
BitDefender 7.2 2011.08.03 -
CAT-QuickHeal 11.00 2011.08.03 -
ClamAV 0.97.0.0 2011.08.03 -
Commtouch 5.3.2.6 2011.08.03 -
Comodo 9617 2011.08.03 -
DrWeb 5.0.2.03300 2011.08.03 -
Emsisoft 5.1.0.8 2011.08.03 -
eSafe 7.0.17.0 2011.08.03 -
eTrust-Vet 36.1.8482 2011.08.03 -
F-Prot 4.6.2.117 2011.08.03 -
F-Secure 9.0.16440.0 2011.08.03 -
Fortinet 4.2.257.0 2011.08.03 -
GData 22 2011.08.03 -
Ikarus T3.1.1.104.0 2011.08.03 -
Jiangmin 13.0.900 2011.08.03 -
K7AntiVirus 9.109.4973 2011.08.02 Trojan
Kaspersky 9.0.0.837 2011.08.03 -
McAfee 5.400.0.1158 2011.08.03 -
McAfee-GW-Edition 2010.1D 2011.08.03 -
Microsoft 1.7104 2011.08.03 -
NOD32 6348 2011.08.03 -
Norman 6.07.10 2011.08.03 -
nProtect 2011-08-03.04 2011.08.03 -
Panda 10.0.3.5 2011.08.03 -
PCTools 8.0.0.5 2011.08.03 -
Prevx 3.0 2011.08.03 -
Rising 23.69.02.03 2011.08.03 -
Sophos 4.67.0 2011.08.03 Sus/Behav-200
SUPERAntiSpyware 4.40.0.1006 2011.08.03 -
Symantec 20111.1.0.186 2011.08.03 WS.Reputation.1
TheHacker 6.7.0.1.269 2011.08.03 -
TrendMicro 9.200.0.1012 2011.08.03 PAK_Generic.001
TrendMicro-HouseCall 9.200.0.1012 2011.08.03 PAK_Generic.001
VBA32 3.12.16.4 2011.08.03 -
VIPRE 10054 2011.08.03 -
ViRobot 2011.8.3.4603 2011.08.03 -
VirusBuster 14.0.150.0 2011.08.02 -

Re: Pomalé načítání videí na Youtube

Napsal: 03 srp 2011 20:57
od Rudy
Některé AV ho detekují jako nelegitimní. Smažeme. Spusťte CF ještě jednou tímto skriptem:
Collect::
C:\SCX.dll

Re: Pomalé načítání videí na Youtube

Napsal: 03 srp 2011 21:36
od Tombasss
tady je log

ComboFix 11-08-03.02 - User 03.08.2011 22:11:22.3.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.3070.2492 [GMT 2:00]
Spuštěný z: c:\documents and settings\User\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\User\Plocha\CFScript.txt
AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
VAROVÁNÍ - NA TOMTO POČÍTAČI NENÍ NAINSTALOVÁNA KONZOLA PRO ZOTAVENÍ !!
.
file zipped: C:\SCX.dll
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\SCX.dll
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-07-03 do 2011-08-03 )))))))))))))))))))))))))))))))
.
.
2011-08-03 08:13 . 2011-08-03 08:13 -------- d-----w- c:\documents and settings\User\Local Settings\Data aplikací\GameSpy
2011-08-03 08:13 . 2011-08-03 09:56 -------- d-----w- c:\documents and settings\User\Local Settings\Data aplikací\ApplicationHistory
2011-08-02 22:09 . 2011-08-02 22:09 -------- d-----w- c:\program files\trend micro
2011-08-02 22:09 . 2011-08-02 22:09 -------- d-----w- C:\rsit
2011-08-02 18:29 . 2011-08-02 18:29 -------- d-----w- c:\program files\GameSpy
2011-08-02 18:28 . 2011-08-02 18:28 -------- d-----w- c:\windows\system32\URTTEMP
2011-07-31 09:19 . 2011-07-31 09:19 -------- d-----w- c:\windows\system32\zaloha
2011-07-28 20:55 . 2011-07-28 20:56 -------- d-----w- c:\documents and settings\UpdatusUser
2011-07-21 12:49 . 2011-07-21 12:49 -------- d-----w- c:\documents and settings\User\Data aplikací\Day 1 Studios
2011-07-21 12:49 . 2011-07-21 12:49 -------- d-----w- c:\documents and settings\User\Local Settings\Data aplikací\SKIDROW
2011-07-19 10:44 . 2011-07-19 10:44 -------- d-----w- c:\program files\Eidos Interactive
2011-07-12 21:31 . 2011-07-12 21:31 -------- d-----w- c:\documents and settings\User\Data aplikací\RoboForm
2011-07-12 21:30 . 2011-07-12 21:30 -------- d-----w- c:\documents and settings\All Users\Data aplikací\RoboForm
2011-07-12 17:21 . 2011-07-12 17:21 -------- d-----w- c:\documents and settings\User\Data aplikací\DDMSettings
2011-07-12 17:17 . 2011-07-12 17:18 -------- d-----w- c:\program files\Common Files\DivX Shared
2011-07-12 17:16 . 2011-07-12 17:19 -------- d-----w- c:\program files\DivX
2011-07-12 17:15 . 2011-07-12 17:19 -------- d-----w- c:\documents and settings\All Users\Data aplikací\DivX
2011-07-12 10:31 . 2011-07-12 10:31 -------- d-----w- c:\documents and settings\User\Data aplikací\Full
2011-07-11 21:33 . 2011-07-11 21:33 -------- d-----w- c:\documents and settings\User\Data aplikací\Moyea
2011-07-11 21:33 . 2011-07-11 21:33 -------- d-----w- c:\documents and settings\User\Data aplikací\Leawo Video2PC
2011-07-06 20:20 . 2011-07-06 20:20 -------- d-----w- c:\program files\Apple Software Update
2011-07-05 08:58 . 2011-07-05 08:58 -------- d-----w- c:\program files\directx
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-08-02 18:26 . 2010-10-15 17:07 22328 ----a-w- c:\documents and settings\User\Data aplikací\PnkBstrK.sys
2011-08-02 18:26 . 2010-09-03 11:28 22328 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2011-08-02 18:26 . 2010-09-03 11:28 103736 ----a-w- c:\windows\system32\PnkBstrB.exe
2011-08-02 18:26 . 2010-09-03 11:28 66872 ----a-w- c:\windows\system32\PnkBstrA.exe
2011-08-02 18:26 . 2011-01-02 15:31 669184 ----a-w- c:\windows\system32\pbsvc.exe
2011-07-25 21:43 . 2010-04-13 09:13 109080 ----a-w- c:\windows\system32\OpenAL32.dll
2011-07-23 18:57 . 2011-05-16 23:30 600680 ----a-w- c:\windows\system32\easyUpdatusAPIU.dll
2011-07-23 18:57 . 2011-05-16 23:30 54272 ----a-w- c:\windows\system32\nvwddi.dll
2011-07-23 18:57 . 2011-05-16 23:30 249856 ----a-w- c:\windows\system32\nvrseng.dll
2011-07-23 18:57 . 2011-05-16 23:30 282624 ----a-w- c:\windows\system32\nvrsel.dll
2011-07-23 18:57 . 2011-05-16 23:30 274432 ----a-w- c:\windows\system32\nvrsesm.dll
2011-07-23 18:57 . 2011-05-16 23:30 253952 ----a-w- c:\windows\system32\nvrsth.dll
2011-07-23 18:57 . 2011-05-16 23:30 126976 ----a-w- c:\windows\system32\nvrszht.dll
2011-07-23 18:57 . 2011-05-16 23:30 331776 ----a-w- c:\windows\system32\nvrshe.dll
2011-07-23 18:57 . 2011-05-16 23:30 286720 ----a-w- c:\windows\system32\nvrsfr.dll
2011-07-23 18:57 . 2011-05-16 23:30 274432 ----a-w- c:\windows\system32\nvrsnl.dll
2011-07-23 18:57 . 2011-05-16 23:30 270336 ----a-w- c:\windows\system32\nvrsru.dll
2011-07-23 18:57 . 2011-05-16 23:30 262144 ----a-w- c:\windows\system32\nvrshu.dll
2011-07-23 18:57 . 2011-05-16 23:30 258048 ----a-w- c:\windows\system32\nvrssl.dll
2011-07-23 18:57 . 2011-05-16 23:30 253952 ----a-w- c:\windows\system32\nvrsda.dll
2011-07-23 18:57 . 2011-05-16 23:30 249856 ----a-w- c:\windows\system32\nvrsfi.dll
2011-07-23 18:57 . 2011-05-16 23:30 229376 ----a-w- c:\windows\system32\nvrszhc.dll
2011-07-23 18:57 . 2011-05-16 23:30 335872 ----a-w- c:\windows\system32\nvrsar.dll
2011-07-23 18:57 . 2011-05-16 23:30 282624 ----a-w- c:\windows\system32\nvrses.dll
2011-07-23 18:57 . 2011-05-16 23:30 278528 ----a-w- c:\windows\system32\nvrsde.dll
2011-07-23 18:57 . 2011-05-16 23:30 266240 ----a-w- c:\windows\system32\nvrsko.dll
2011-07-23 18:57 . 2011-05-16 23:30 258048 ----a-w- c:\windows\system32\nvrstr.dll
2011-07-23 18:57 . 2011-05-16 23:30 253952 ----a-w- c:\windows\system32\nvrssv.dll
2011-07-23 18:57 . 2011-05-16 23:30 249856 ----a-w- c:\windows\system32\nvrscs.dll
2011-07-23 18:57 . 2011-05-16 23:30 282624 ----a-w- c:\windows\system32\nvrsit.dll
2011-07-23 18:57 . 2011-05-16 23:30 274432 ----a-w- c:\windows\system32\nvrspt.dll
2011-07-23 18:57 . 2011-05-16 23:30 270336 ----a-w- c:\windows\system32\nvrsptb.dll
2011-07-23 18:57 . 2011-05-16 23:30 270336 ----a-w- c:\windows\system32\nvrsja.dll
2011-07-23 18:57 . 2011-05-16 23:30 258048 ----a-w- c:\windows\system32\nvrssk.dll
2011-07-23 18:57 . 2011-05-16 23:30 258048 ----a-w- c:\windows\system32\nvrspl.dll
2011-07-23 18:57 . 2011-05-16 23:30 253952 ----a-w- c:\windows\system32\nvrsno.dll
2011-07-23 18:57 . 2011-05-16 23:30 13892200 ----a-w- c:\windows\system32\nvcpl.dll
2011-07-23 18:57 . 2011-05-16 23:30 111208 ----a-w- c:\windows\system32\nvmctray.dll
2011-07-23 18:57 . 2011-05-16 23:30 146024 ----a-w- c:\windows\system32\nvsvc32.exe
2011-07-23 18:57 . 2011-05-16 23:30 145000 ----a-w- c:\windows\system32\nvcolor.exe
2011-07-23 18:57 . 2011-05-14 14:50 5427200 ----a-w- c:\windows\system32\nvcuda.dll
2011-07-23 18:57 . 2011-05-14 14:50 2387560 ----a-w- c:\windows\system32\nvcuvid.dll
2011-07-23 18:57 . 2011-05-14 14:50 2090088 ----a-w- c:\windows\system32\nvcuvenc.dll
2011-07-23 18:57 . 2011-05-14 14:50 16191488 ----a-w- c:\windows\system32\nvoglnt.dll
2011-07-23 18:57 . 2011-05-14 14:50 2404864 ----a-w- c:\windows\system32\nvapi.dll
2011-07-23 18:57 . 2011-01-30 20:07 61440 ----a-w- c:\windows\system32\OpenCL.dll
2011-07-23 18:57 . 2011-01-30 20:07 17186816 ----a-w- c:\windows\system32\nvcompiler.dll
2011-07-23 18:57 . 2011-01-07 18:44 914024 ----a-w- c:\windows\system32\nvdispco32.dll
2011-07-23 18:57 . 2011-01-07 18:44 875112 ----a-w- c:\windows\system32\nvgenco32.dll
2011-07-23 18:57 . 2009-04-30 20:02 4210816 ----a-w- c:\windows\system32\nv4_disp.dll
2011-07-23 18:57 . 2009-04-30 20:02 12542880 ----a-w- c:\windows\system32\drivers\nv4_mini.sys
2011-06-24 19:12 . 2011-06-19 00:33 281656 ----a-w- c:\windows\system32\PnkBstrB.xtr
2011-06-24 18:48 . 2010-09-03 11:28 281656 ----a-w- c:\windows\system32\PnkBstrB.ex0
2011-06-19 15:39 . 2011-05-15 07:14 404640 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-06-06 11:35 . 2008-04-14 05:45 1858944 ----a-w- c:\windows\system32\win32k.sys
2011-06-02 17:53 . 2011-06-02 17:53 94208 ----a-w- c:\windows\system32\dpl100.dll
2011-05-26 17:23 . 2009-08-18 09:30 564632 ----a-w- c:\documents and settings\All Users\Data aplikací\Microsoft\IdentityCRL\production\wlidui.dll
2011-05-26 17:23 . 2009-08-18 09:24 18328 ----a-w- c:\documents and settings\All Users\Data aplikací\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2011-05-25 06:09 . 2011-06-10 18:09 865896 ----a-w- c:\windows\system32\nvgenco322090.dll
2011-05-25 06:09 . 2011-06-10 18:09 899688 ----a-w- c:\windows\system32\nvdispco3220150.dll
2011-05-17 08:01 . 2011-05-14 14:50 944232 ----a-w- c:\windows\system32\nvdispco3220140.dll
2011-05-17 08:01 . 2011-05-14 14:50 855656 ----a-w- c:\windows\system32\nvgenco322060.dll
2011-05-16 23:30 . 2011-05-16 23:30 277608 ----a-w- c:\windows\system32\nvmccs.dll
2011-05-06 11:40 . 2010-04-16 18:35 1302528 ----a-w- c:\windows\system32\rapture3d_oal.dll
2011-06-16 04:30 . 2011-06-28 13:24 142296 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((( SnapShot@2011-08-03_18.04.36 )))))))))))))))))))))))))))))))))))))))))
.
+ 2011-08-03 20:25 . 2011-08-03 20:25 16384 c:\windows\Temp\Perflib_Perfdata_80.dat
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{872b5b88-9db5-4310-bdd0-ac189557e5f5}"= "c:\program files\DVDVideoSoftTB\prxtbDVD0.dll" [2011-01-17 175912]
.
[HKEY_CLASSES_ROOT\clsid\{872b5b88-9db5-4310-bdd0-ac189557e5f5}]
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
2011-01-17 14:54 175912 ----a-w- c:\program files\ConduitEngine\prxConduitEngine.dll
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{872b5b88-9db5-4310-bdd0-ac189557e5f5}]
2011-01-17 14:54 175912 ----a-w- c:\program files\DVDVideoSoftTB\prxtbDVD0.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{872b5b88-9db5-4310-bdd0-ac189557e5f5}"= "c:\program files\DVDVideoSoftTB\prxtbDVD0.dll" [2011-01-17 175912]
"{30F9B915-B755-4826-820B-08FBA6BD249D}"= "c:\program files\ConduitEngine\prxConduitEngine.dll" [2011-01-17 175912]
.
[HKEY_CLASSES_ROOT\clsid\{872b5b88-9db5-4310-bdd0-ac189557e5f5}]
.
[HKEY_CLASSES_ROOT\clsid\{30f9b915-b755-4826-820b-08fba6bd249d}]
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{872B5B88-9DB5-4310-BDD0-AC189557E5F5}"= "c:\program files\DVDVideoSoftTB\prxtbDVD0.dll" [2011-01-17 175912]
.
[HKEY_CLASSES_ROOT\clsid\{872b5b88-9db5-4310-bdd0-ac189557e5f5}]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2011-04-18 17:25 122512 ----a-w- c:\program files\Alwil Software\Avast5\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BitTorrent DNA"="c:\program files\DNA\btdna.exe" [2010-05-13 323392]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Ai Nap"="c:\program files\ASUS\AI Suite\AiNap\AiNap.exe" [2009-07-01 1435136]
"P17Helper"="SPIRun.dll" [2006-07-03 10752]
"NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
"amd_dc_opt"="c:\program files\AMD\Dual-Core Optimizer\amd_dc_opt.exe" [2008-07-22 77824]
"Start WingMan Profiler"="c:\program files\Logitech\Gaming Software\LWEMon.exe" [2010-06-14 153672]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2011-06-08 37296]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2011-03-30 937920]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2010-11-29 421888]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2011-04-08 254696]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2011-07-23 13892200]
"NvMediaCenter"="NvMCTray.dll" [2011-07-23 111208]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^GamersFirst LIVE!.lnk]
path=c:\documents and settings\All Users\Nabídka Start\Programy\Po spuštění\GamersFirst LIVE!.lnk
backup=c:\windows\pss\GamersFirst LIVE!.lnkCommon Startup
.
[HKLM\~\startupfolder\C:^Documents and Settings^User^Nabídka Start^Programy^Po spuštění^Registration .LNK]
path=c:\documents and settings\User\Nabídka Start\Programy\Po spuštění\Registration .LNK
backup=c:\windows\pss\Registration .LNKStartup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Comrade.exe]
2007-06-29 13:03 36864 ----a-w- c:\program files\GameSpy\Comrade\Comrade.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Cpu Level Up help]
2007-11-30 18:03 881152 ----a-w- c:\program files\ASUS\AI Suite\CpuLevelUpHelp.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
2007-12-19 20:13 486856 ----a-w- c:\program files\DAEMON Tools Lite\daemon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate]
2011-03-21 18:56 1230704 ----a-w- c:\program files\DivX\DivX Update\DivXUpdate.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QFan Help]
2009-07-01 18:19 601088 ----a-w- c:\program files\ASUS\AI Suite\QFan3\QFanHelp.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
2004-11-02 18:24 32768 ----a-w- c:\program files\CyberLink\PowerDVD\PDVDServ.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
2011-05-26 19:50 15147400 ----a-r- c:\program files\Skype\Phone\Skype.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMAX]
2007-10-08 05:47 864256 ----a-w- c:\program files\Analog Devices\SoundMAX\SMax4.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMAXPnP]
2007-10-09 10:02 1036288 ----a-w- c:\program files\Analog Devices\Core\smax4pnp.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
2011-06-04 18:38 1242448 ----a-w- c:\program files\Steam\Steam.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"ICQ Service"=2 (0x2)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"d:\\ZalohaC\\Program Files\\Atari\\Test Drive Unlimited\\TestDriveUnlimited.exe"=
"c:\\Program Files\\NFSU2\\speed2.exe"=
"c:\\Program Files\\Java\\jre6\\launch4j-tmp\\frd.exe"=
"c:\\Program Files\\Atari\\Test Drive Unlimited\\TestDriveUnlimited.exe"=
"c:\\Program Files\\Codemasters\\DiRT2\\dirt2_game.exe"=
"c:\\Program Files\\Ubisoft\\Ubisoft Game Launcher\\UbisoftGameLauncher.exe"=
"c:\\Program Files\\DNA\\btdna.exe"=
"c:\\Program Files\\BitTorrent\\bittorrent.exe"=
"c:\\Program Files\\Autodesk\\backburner\\monitor.exe"=
"c:\\Program Files\\Autodesk\\backburner\\manager.exe"=
"c:\\Program Files\\Autodesk\\backburner\\server.exe"=
"d:\\ZalohaC\\Program Files\\Counter-Strike Source\\hl2.exe"=
"d:\\ZalohaC\\TDU-zaloha\\Atari\\Test Drive Unlimited\\TestDriveUnlimited.exe"=
"c:\\Program Files\\Ubisoft\\Crytek\\Far Cry\\Bin32\\FarCry.exe"=
"d:\\ZalohaC\\Program Files\\rFactor\\rFactor.exe"=
"c:\\Documents and Settings\\User\\Dokumenty\\EA Games\\NFS World Online\\Data\\nfsw.exe"=
"d:\\ZalohaC\\Program Files\\Live For Speed S2 alpha z+keygen+program na vyrovnání volantu\\LfsRevLimiter.0.9.exe"=
"c:\\Program Files\\Steam\\Steam.exe"=
"c:\\Program Files\\TrackMania United\\TmUnited.exe"=
"c:\\Program Files\\TmUnitedForever\\TmForever.exe"=
"d:\\Program Files\\Counter-Strike Source\\hl2.exe"=
"c:\\Program Files\\Steam\\steamapps\\common\\mafia ii - public demo\\launcher.exe"=
"c:\\Program Files\\Activision\\Blur(TM)\\Blur.exe"=
"c:\\Program Files\\Counter-Strike Source\\hl2.exe"=
"d:\\Program Files\\Electronic Arts\\Battlefield Bad Company 2\\BFBC2Updater.exe"=
"d:\\Program Files\\Codemasters\\F1 2010\\F1_2010_game.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\WINDOWS\\system32\\dpvsetup.exe"=
"d:\\ZalohaC\\Program Files\\Live For Speed S2 alpha z+keygen+program na vyrovnání volantu\\CSR\\CSR.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"d:\\Program Files\\FlatOut2\\FlatOut2.exe"=
"d:\\Program Files\\EA GAMES\\Need for Speed Most Wanted\\speed.exe"=
"c:\\Program Files\\Insane\\Game.exe"=
"c:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FarCry2.exe"=
"c:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FC2Launcher.exe"=
"c:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FC2Editor.exe"=
"c:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FC2ServerLauncher.exe"=
"d:\\Program Files\\GTR 2\\GTR2.exe"=
"c:\\Program Files\\Atari\\TDU2\\TestDrive2.exe"=
"c:\\Program Files\\Atari\\TDU2\\UpLauncher.exe"=
"c:\\Program Files\\Ford Racing 3\\fr3.exe"=
"d:\\Program Files\\racer 0.8.32\\racer.exe"=
"d:\\SIMS\\RACER\\racer.exe"=
"d:\\Program Files\\racer 0.63\\racer.exe"=
"d:\\Program Files\\racer 0.8.31\\racer.exe"=
"d:\\ZalohaC\\Program Files\\Driving Speed PRO\\DrivingSpeedPro\\DrivingSpeed.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\Pando Networks\\Media Booster\\PMB.exe"=
"d:\\Program Files\\GamersFirst\\APB Reloaded\\Binaries\\APB.exe"=
"d:\\Program Files\\GamersFirst\\APB Reloaded\\Binaries\\VivoxVoiceService.exe"=
"c:\\Program Files\\VideoLAN\\VLC\\vlc.exe"=
"d:\\Program Files\\WB Games\\F.E.A.R. 3\\F.E.A.R. 3.exe"=
"d:\\Program Files\\Ubisoft\\Tom Clancy's Splinter Cell Double Agent\\SCDA-Offline\\System\\SplinterCell4.exe"=
"d:\\Program Files\\Codemasters\\DiRT 3\\dirt3_game.exe"=
"c:\\Program Files\\NVIDIA Corporation\\NVIDIA Updatus\\daemonu.exe"=
"c:\\Program Files\\Tunngle\\tnglctrl.exe"=
"c:\\Program Files\\Tunngle\\tunngle.exe"=
"c:\\Program Files\\Electronic Arts\\Crytek\\Crysis\\Bin32\\Crysis.exe"=
"c:\\Program Files\\Electronic Arts\\Crytek\\Crysis\\Bin32\\CrysisDedicatedServer.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"58776:TCP"= 58776:TCP:Pando Media Booster
"58776:UDP"= 58776:UDP:Pando Media Booster
.
R0 SmartDefragDriver;SmartDefragDriver;c:\windows\system32\drivers\SmartDefragDriver.sys [10.4.2011 10:21 13496]
R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [15.4.2010 16:59 715248]
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [30.4.2011 19:46 441176]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [13.4.2010 11:33 307288]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [13.4.2010 11:33 19544]
R2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [28.7.2011 22:55 2255464]
R2 TunngleService;TunngleService;c:\program files\Tunngle\TnglCtrl.exe [26.10.2010 17:54 741624]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda32.sys [14.5.2011 16:50 119272]
R3 tap0901t;TAP-Win32 Adapter V9 (Tunngle);c:\windows\system32\drivers\tap0901t.sys [26.10.2010 17:54 27136]
S2 AODService;AODService;c:\program files\AMD\OverDrive\AODAssist --> c:\program files\AMD\OverDrive\AODAssist [?]
S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service;c:\program files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [1.8.2010 21:12 79360]
S3 GPU-Z;GPU-Z;\??\c:\docume~1\User\LOCALS~1\Temp\GPU-Z.sys --> c:\docume~1\User\LOCALS~1\Temp\GPU-Z.sys [?]
S4 ICQ Service;ICQ Service;c:\program files\ICQ6Toolbar\ICQ Service.exe [16.4.2010 17:55 247096]
.
Obsah adresáře 'Naplánované úlohy'
.
2011-07-16 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2011-06-01 15:57]
.
2010-10-24 c:\windows\Tasks\expressburnShakeIcon.job
- c:\program files\NCH Swift Sound\ExpressBurn\expressburn.exe [2010-10-17 07:36]
.
2010-10-24 c:\windows\Tasks\expressripShakeIcon.job
- c:\program files\NCH Swift Sound\ExpressRip\expressrip.exe [2010-10-17 07:36]
.
2011-01-14 c:\windows\Tasks\mixpadShakeIcon.job
- c:\program files\NCH Swift Sound\MixPad\mixpad.exe [2010-10-17 07:36]
.
2011-08-03 c:\windows\Tasks\SmartDefrag_Startup.job
- c:\program files\IObit\Smart Defrag 2\SmartDefrag.exe [2011-04-10 16:19]
.
2011-07-10 c:\windows\Tasks\switchShakeIcon.job
- c:\program files\NCH Swift Sound\Switch\switch.exe [2010-10-17 07:37]
.
2011-07-17 c:\windows\Tasks\wavepadShakeIcon.job
- c:\program files\NCH Swift Sound\WavePad\wavepad.exe [2010-10-17 07:36]
.
2011-01-14 c:\windows\Tasks\zuluShakeIcon.job
- c:\program files\NCH Software\Zulu\zulu.exe [2011-01-14 20:23]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://start.icq.com/
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: Free YouTube Download - c:\documents and settings\User\Data aplikací\DVDVideoSoftIEHelpers\freeyoutubedownload.htm
IE: Free YouTube to Mp3 Converter - c:\documents and settings\User\Data aplikací\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
IE: {{5dddf69e-5e63-4a0a-8886-b2323fba6d62} - c:\program files\Clip Extractor\ClipExtractor.exe
Trusted Zone: tdu-central.com\forum
TCP: DhcpNameServer = 10.0.0.138
FF - ProfilePath - c:\documents and settings\User\Data aplikací\Mozilla\Firefox\Profiles\nr5dut4c.default\
FF - prefs.js: browser.search.selectedEngine - ICQ Search
FF - prefs.js: browser.startup.homepage - hxxp://start.icq.com/
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
AddRemove-Peklo SNOW - c:\documents and settings\User\Plocha\Nová složka\Uninstal.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-08-03 22:26
Windows 5.1.2600 Service Pack 3 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
P17Helper = Rundll32 SPIRun.dll,RunDLLEntry?
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
[HKEY_LOCAL_MACHINE\System\ControlSet002\Services\AODService]
"ImagePath"="c:\program files\AMD\OverDrive\AODAssist"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-1960408961-562591055-682003330-1003\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
"??"=hex:13,09,38,c6,eb,be,e0,9c,fe,e7,fb,12,9a,78,b4,ca,f3,07,c5,77,51,2b,43,
8b,4e,fe,3d,c9,cc,07,dc,5c,de,71,b7,c5,37,27,d2,7a,de,2d,84,1d,50,bb,6c,e4,\
"??"=hex:d5,1e,c4,c5,98,8d,90,4d,78,c4,a6,23,f1,a2,70,d2
.
[HKEY_USERS\S-1-5-21-1960408961-562591055-682003330-1003\Software\SecuROM\License information*]
"datasecu"=hex:65,53,1d,c7,48,b1,16,fe,f6,fa,fa,4a,fc,b2,da,0f,e7,dd,6d,62,e9,
af,5d,f4,aa,3f,06,a1,53,94,b6,80,5d,61,58,f2,f1,3f,46,95,06,6e,51,57,0b,3d,\
"rkeysecu"=hex:74,24,5e,01,95,0e,f9,65,08,16,fa,54,a6,43,9e,29
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'explorer.exe'(640)
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\Alwil Software\Avast5\AvastSvc.exe
c:\program files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
c:\windows\system32\CTsvcCDA.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
c:\program files\Autodesk\3dsMax8\mentalray\satellite\raysat_3dsmax8server.exe
c:\windows\system32\nvsvc32.exe
c:\windows\system32\PnkBstrA.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
c:\windows\system32\wscntfy.exe
c:\windows\system32\Rundll32.exe
c:\windows\system32\RunDLL32.exe
.
**************************************************************************
.
Celkový čas: 2011-08-03 22:32:05 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-08-03 20:32
ComboFix2.txt 2011-08-03 19:18
ComboFix3.txt 2011-08-03 18:09
.
Před spuštěním: Volných bajtů: 80 016 318 464
Po spuštění: Volných bajtů: 79 999 688 704
.
- - End Of File - - 0438D2952B46AA39D2184ED3FF456635
Nahr nˇ probŘhlo ŁspŘçnŘ