Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

preventivka!

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz


Ve dnech 5.9. - 7.9.2025 budou někteří z nás na každoročním srazu teamu našeho fóra. V této době se může stát, že budete o něco déle čekat na naší odezvu. Děkujeme a omlouváme se.
Odpovědět
Zpráva
Autor
fugee
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 02 črc 2005 21:45
Kontaktovat uživatele:

preventivka!

#1 Příspěvek od fugee »

Procesor Celeron se zda behat hodne pomalu. Pravidelne hlasi nizkou virtualni pamet.
Neni tam nejaka havet?


Logfile of random's system information tool 1.09 (written by random/random)
Run by Marie at 2011-09-05 14:37:31
Microsoft Windows XP Professional Service Pack 3
System drive C: has 32 GB (44%) free of 73 GB
Total RAM: 2031 MB (45% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:37:45, on 5.9.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\PROGRA~1\AVG\AVG10\avgchsvx.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\AVG\AVG10\avgfws.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\AVG\AVG10\avgwdsvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\LGScsiCommandService.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\AVG\AVG10\avgtray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\AVG\AVG10\avgam.exe
C:\Program Files\AVG\AVG10\avgnsx.exe
C:\Program Files\AVG\AVG10\avgcsrvx.exe
C:\Program Files\AVG\AVG10\Identity Protection\agent\bin\avgidsmonitor.exe
C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXE
C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE
C:\Program Files\AVG\AVG10\avgcsrvx.exe
C:\PROGRA~1\AVG\AVG10\avgrsx.exe
C:\Program Files\AVG\AVG10\avgcsrvx.exe
C:\Program Files\Microsoft Office\OFFICE11\EXCEL.EXE
C:\Program Files\Winamp\winamp.exe
C:\Documents and Settings\Marie\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Marie\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Marie\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Marie\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Marie\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Marie\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Marie\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Marie\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Marie\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Program Files\Lingea\Lex2002\lexicon.exe
C:\Documents and Settings\Marie\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Marie\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Marie\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Marie\Desktop\RSIT (1).exe
C:\Program Files\trend micro\Marie.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.idnes.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG10\avgssie.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [AVG_TRAY] C:\Program Files\AVG\AVG10\avgtray.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe (file missing)
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupda ... 6310468875
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftup ... 6315096687
O16 - DPF: {88D969C0-F192-11D4-A65F-0040963251E5} (XML DOM Document 4.0) - file://C:\TempEI4\EI40_\msxml4.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG10\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\DOCUME~1\Marie\LOCALS~1\APPLIC~1\Skype\Shared\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll
O23 - Service: AVG Firewall (avgfws) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG10\avgfws.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG10\avgwdsvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: LG SCSI command service (LGScsiCommandService) - Mobile Leader Co.,Ltd. - C:\WINDOWS\system32\LGScsiCommandService.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O24 - Desktop Component 0: (no name) - file:///C:/DOCUME~1/Marie/LOCALS~1/Temp/msohtml1/01/clip_image002.jpg

--
End of file - 7852 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\AppleSoftwareUpdate.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1645522239-1284227242-725345543-1003Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1645522239-1284227242-725345543-1003UA.job

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\Marie\Application Data\Mozilla\Firefox\Profiles\8wfch2sk.default

prefs.js - "browser.startup.homepage" - "www.gmail.com"
prefs.js - "extensions.enabledItems" - "{AB2CE124-6272-4b12-94A9-7303C7397BD1}:5.0.0.6906, {1E73965B-8B48-48be-9C8D-68B920ABC1C4}:10.0.0.1390, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.13"

"{1E73965B-8B48-48be-9C8D-68B920ABC1C4}"=C:\Program Files\AVG\AVG10\Firefox4\


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\WINDOWS\system32\Adobe\Director\np32dsw.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{AB2CE124-6272-4b12-94A9-7303C7397BD1}

C:\Program Files\Mozilla Firefox\components\
browser.xpt
browserdirprovider.dll
brwsrcmp.dll
components.list
FeedConverter.js
FeedProcessor.js
FeedWriter.js
fuelApplication.js
GPSDGeolocationProvider.js
jsconsole-clhandler.js
NetworkGeolocationProvider.js
nsAddonRepository.js
nsBadCertHandler.js
nsBlocklistService.js
nsBrowserContentHandler.js
nsBrowserGlue.js
nsContentDispatchChooser.js
nsContentPrefService.js
nsDefaultCLH.js
nsDownloadManagerUI.js
nsExtensionManager.js
nsFormAutoComplete.js
nsHandlerService.js
nsHelperAppDlg.js
nsINIProcessor.js
nsIQTScriptablePlugin.xpt
nsLivemarkService.js
nsLoginInfo.js
nsLoginManager.js
nsLoginManagerPrompter.js
nsMicrosummaryService.js
nsPlacesAutoComplete.js
nsPlacesDBFlush.js
nsPlacesTransactionsService.js
nsPrivateBrowsingService.js
nsProxyAutoConfig.js
nsSafebrowsingApplication.js
nsSearchService.js
nsSearchSuggestions.js
nsSessionStartup.js
nsSessionStore.js
nsSetDefaultBrowser.js
nsSidebar.js
nsTaggingService.js
nsTryToClose.js
nsUpdateService.js
nsUpdateServiceStub.js
nsUpdateTimerManager.js
nsUrlClassifierLib.js
nsUrlClassifierListManager.js
nsURLFormatter.js
nsWebHandlerApp.js
pluginGlue.js
storage-Legacy.js
storage-mozStorage.js
txEXSLTRegExFunctions.js
WebContentConverter.js

C:\Program Files\Mozilla Firefox\plugins\
np-mswmp.dll
npnul32.dll
NPOFFICE.DLL
nppdf32.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
npwachk.dll
QuickTimePlugin.class
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
jyxo-cz.xml
mall-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

C:\Documents and Settings\Marie\Application Data\Mozilla\Firefox\Profiles\8wfch2sk.default\extensions\
{B13721C7-F507-4982-B2E5-502A71474FED}

C:\Documents and Settings\Marie\Application Data\Mozilla\Firefox\Profiles\8wfch2sk.default\searchplugins\
icqplugin.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-06-06 63912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG10\avgssie.dll [2011-08-05 2274144]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0\bin\ssv.dll [2007-05-24 501384]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe [2006-01-12 155648]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2010-11-29 421888]
"igfxtray"=C:\WINDOWS\system32\igfxtray.exe [2005-09-20 94208]
"igfxhkcmd"=C:\WINDOWS\system32\hkcmd.exe [2005-09-20 77824]
"igfxpers"=C:\WINDOWS\system32\igfxpers.exe [2005-09-20 114688]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-06-06 937920]
"AVG_TRAY"=C:\Program Files\AVG\AVG10\avgtray.exe [2011-04-18 2334560]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds]
C:\WINDOWS\System32\hkcmd.exe [2005-09-20 77824]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray]
C:\WINDOWS\System32\igfxtray.exe [2005-09-20 94208]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\WINDOWS\system32\NeroCheck.exe [2006-01-12 155648]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\QuickTime\QTTask.exe [2010-11-29 421888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMAX]
C:\Program Files\Analog Devices\SoundMAX\Smax4.exe [2003-05-30 585728]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMAXPnP]
C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe [2003-05-30 790528]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Java\jre1.6.0\bin\jusched.exe [2007-05-24 77824]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Marie^Start Menu^Programs^Startup^OpenOffice.org 2.2.lnk]
C:\PROGRA~1\OPENOF~1.2\program\QUICKS~1.EXE []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2005-09-20 135168]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2007-03-16 236928]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Messenger\livecall.exe"="C:\Program Files\Windows Live\Messenger\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour Service"
"C:\Program Files\Winamp\winamp.exe"="C:\Program Files\Winamp\winamp.exe:*:Enabled:Winamp"
"C:\Documents and Settings\Marie\Local Settings\Application Data\Skype\Phone\Skype.exe"="C:\Documents and Settings\Marie\Local Settings\Application Data\Skype\Phone\Skype.exe:*:Enabled:Skype "
"C:\Documents and Settings\Marie\Local Settings\Application Data\Skype\Plugin Manager\skypePM.exe"="C:\Documents and Settings\Marie\Local Settings\Application Data\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\AVG\AVG10\avgmfapx.exe"="C:\Program Files\AVG\AVG10\avgmfapx.exe:*:Enabled:Instalátor AVG"
"C:\Program Files\AVG\AVG10\avgdiagex.exe"="C:\Program Files\AVG\AVG10\avgdiagex.exe:*:Enabled:AVG Diagnostika 2011"
"C:\Program Files\AVG\AVG10\avgnsx.exe"="C:\Program Files\AVG\AVG10\avgnsx.exe:*:Enabled:Webový štít"
"C:\Program Files\AVG\AVG10\avgam.exe"="C:\Program Files\AVG\AVG10\avgam.exe:*:Enabled:Správce událostí AVG"
"C:\Program Files\AVG\AVG10\avgemcx.exe"="C:\Program Files\AVG\AVG10\avgemcx.exe:*:Enabled:Obecná kontrola pošty"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Messenger\livecall.exe"="C:\Program Files\Windows Live\Messenger\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"msacm.siren"=sirenacm.dll

======List of files/folders created in the last 1 month======

2011-09-05 14:25:18 ----D---- C:\Program Files\trend micro
2011-09-05 14:25:16 ----D---- C:\rsit
2011-09-02 10:24:45 ----SHD---- C:\Config.Msi
2011-08-29 16:21:28 ----SHD---- C:\RECYCLER
2011-08-29 14:34:02 ----D---- C:\WINDOWS\temp
2011-08-29 14:33:58 ----A---- C:\ComboFix.txt
2011-08-29 14:19:07 ----A---- C:\WINDOWS\zip.exe
2011-08-29 14:19:07 ----A---- C:\WINDOWS\SWXCACLS.exe
2011-08-29 14:19:07 ----A---- C:\WINDOWS\SWSC.exe
2011-08-29 14:19:07 ----A---- C:\WINDOWS\SWREG.exe
2011-08-29 14:19:07 ----A---- C:\WINDOWS\sed.exe
2011-08-29 14:19:07 ----A---- C:\WINDOWS\PEV.exe
2011-08-29 14:19:07 ----A---- C:\WINDOWS\NIRCMD.exe
2011-08-29 14:19:07 ----A---- C:\WINDOWS\MBR.exe
2011-08-29 14:19:07 ----A---- C:\WINDOWS\grep.exe
2011-08-29 14:18:58 ----D---- C:\ComboFix
2011-08-25 10:12:13 ----HDC---- C:\WINDOWS\$NtUninstallKB2570791$
2011-08-24 17:28:29 ----A---- C:\Boot.bak
2011-08-24 17:28:24 ----RASHD---- C:\cmdcons
2011-08-24 17:23:12 ----D---- C:\WINDOWS\ERDNT
2011-08-24 17:23:04 ----D---- C:\Qoobox
2011-08-16 16:01:28 ----D---- C:\Documents and Settings\Marie\Application Data\Softland
2011-08-16 16:01:24 ----A---- C:\WINDOWS\system32\dopdfmn7.dll
2011-08-16 16:01:24 ----A---- C:\WINDOWS\system32\dopdfmi7.dll
2011-08-16 16:01:12 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2011-08-16 16:01:09 ----D---- C:\Program Files\Softland
2011-08-10 11:14:57 ----HDC---- C:\WINDOWS\$NtUninstallKB2567680$
2011-08-10 11:14:39 ----HDC---- C:\WINDOWS\$NtUninstallKB2536276-v2$
2011-08-10 11:14:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2570222$
2011-08-10 11:05:28 ----HDC---- C:\WINDOWS\$NtUninstallKB2566454$
2011-08-10 11:04:35 ----HDC---- C:\WINDOWS\$NtUninstallKB2562937$

======List of files/folders modified in the last 1 month======

2011-09-05 14:27:53 ----D---- C:\WINDOWS\Prefetch
2011-09-05 14:25:18 ----RD---- C:\Program Files
2011-09-05 13:17:28 ----D---- C:\WINDOWS\system32\drivers\AVG
2011-09-05 09:17:56 ----D---- C:\WINDOWS\system32\CatRoot2
2011-09-05 09:17:43 ----D---- C:\WINDOWS\system32
2011-09-02 17:41:59 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-09-02 10:50:07 ----SHD---- C:\WINDOWS\Installer
2011-09-02 10:49:57 ----HD---- C:\WINDOWS\inf
2011-09-02 10:49:57 ----D---- C:\WINDOWS\system32\drivers
2011-09-02 10:41:13 ----D---- C:\Program Files\Common Files
2011-09-02 10:28:08 ----DC---- C:\WINDOWS\system32\DRVSTORE
2011-09-01 08:01:06 ----D---- C:\Documents and Settings\Marie\Application Data\skypePM
2011-08-31 10:42:06 ----D---- C:\Documents and Settings\Marie\Application Data\Skype
2011-08-29 14:34:02 ----D---- C:\WINDOWS
2011-08-29 14:29:00 ----A---- C:\WINDOWS\system.ini
2011-08-29 14:25:36 ----D---- C:\WINDOWS\AppPatch
2011-08-24 17:44:47 ----D---- C:\WINDOWS\system32\drivers\etc
2011-08-24 17:37:16 ----D---- C:\WINDOWS\system32\config
2011-08-24 17:28:29 ----RASH---- C:\boot.ini
2011-08-24 17:24:44 ----SHD---- C:\System Volume Information
2011-08-24 17:24:44 ----D---- C:\WINDOWS\system32\Restore
2011-08-23 17:14:02 ----SHD---- C:\WINDOWS\CSC
2011-08-17 17:17:13 ----D---- C:\Program Files\Mozilla Firefox
2011-08-10 11:15:04 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-08-10 11:15:03 ----A---- C:\WINDOWS\imsins.BAK
2011-08-10 11:14:30 ----HD---- C:\WINDOWS\$hf_mig$
2011-08-10 11:08:24 ----A---- C:\WINDOWS\system32\MRT.exe
2011-08-10 11:06:37 ----D---- C:\WINDOWS\system32\CatRoot
2011-08-10 11:06:20 ----D---- C:\Program Files\Internet Explorer
2011-08-10 11:06:02 ----D---- C:\WINDOWS\ie8updates

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 AVGIDSEH;AVGIDSEH; C:\WINDOWS\system32\DRIVERS\AVGIDSEH.Sys [2011-02-22 22992]
R0 Avgrkx86;AVG Anti-Rootkit Driver; C:\WINDOWS\system32\DRIVERS\avgrkx86.sys [2011-03-16 32592]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2009-04-28 44944]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 Avgldx86;AVG AVI Loader Driver; C:\WINDOWS\system32\DRIVERS\avgldx86.sys [2011-01-07 248656]
R1 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield; C:\WINDOWS\system32\DRIVERS\avgmfx86.sys [2011-03-01 34896]
R1 Avgtdix;AVG TDI Driver; C:\WINDOWS\system32\DRIVERS\avgtdix.sys [2011-04-05 297168]
R1 intelppm;Intel Processor Driver; C:\WINDOWS\System32\DRIVERS\intelppm.sys [2008-04-13 36352]
R1 sf;SFI Service; C:\WINDOWS\system32\drivers\sf.sys [2003-05-09 33248]
R3 aeaudio;aeaudio; C:\WINDOWS\system32\drivers\aeaudio.sys [2003-03-14 100224]
R3 Avgfwdx;Avgfwdx; C:\WINDOWS\system32\DRIVERS\avgfwdx.sys [2010-07-12 30432]
R3 AVGIDSDriver;AVGIDSDriver; C:\WINDOWS\system32\DRIVERS\AVGIDSDriver.Sys [2011-04-14 134480]
R3 AVGIDSFilter;AVGIDSFilter; C:\WINDOWS\system32\DRIVERS\AVGIDSFilter.Sys [2011-02-10 24144]
R3 AVGIDSShim;AVGIDSShim; C:\WINDOWS\system32\DRIVERS\AVGIDSShim.Sys [2011-02-10 27216]
R3 E100B;Intel(R) PRO Adapter Driver; C:\WINDOWS\System32\DRIVERS\e100b325.sys [2003-03-04 145408]
R3 ialm;ialm; C:\WINDOWS\System32\DRIVERS\ialmnt5.sys [2005-09-20 1302332]
R3 SMBios;Intel (R) System Management BIOS Service; C:\WINDOWS\System32\DRIVERS\SMBios.sys [2003-10-14 36484]
R3 smwdm;smwdm; C:\WINDOWS\system32\drivers\smwdm.sys [2003-06-02 578304]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2004-08-04 20480]
S1 ethgfpms;ethgfpms; C:\WINDOWS\system32\drivers\ethgfpms.sys []
S1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-13 14592]
S3 {6080A529-897E-4629-A488-ABA0C29B635E};Intel(R) Graphics Platform (SoftBIOS) Driver; C:\WINDOWS\system32\drivers\ialmsbw.sys [2003-04-15 113504]
S3 {D31A0762-0CEB-444e-ACFF-B049A1F6FE91};Intel(R) Graphics Chipset (KCH) Driver; C:\WINDOWS\system32\drivers\ialmkchw.sys [2003-04-15 78752]
S3 Avgfwfd;AVG network filter service; C:\WINDOWS\system32\DRIVERS\avgfwdx.sys [2010-07-12 30432]
S3 catchme;catchme; \??\C:\DOCUME~1\Marie\LOCALS~1\Temp\catchme.sys []
S3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
S3 LgBttPort;LGE Bluetooth TransPort; C:\WINDOWS\system32\DRIVERS\lgbtport.sys []
S3 lgbusenum;LG Bluetooth Bus Enumerator; C:\WINDOWS\system32\DRIVERS\lgbtbus.sys []
S3 LGVMODEM;LGE Virtual Modem; C:\WINDOWS\system32\DRIVERS\lgvmodem.sys []
S3 MidiSyn;MidiSyn; C:\WINDOWS\system32\drivers\MidiSyn.sys [2002-09-20 235100]
S3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
S3 USBAAPL;Apple Mobile USB Driver; C:\WINDOWS\System32\Drivers\usbaapl.sys [2008-02-18 30464]
S3 usbbus;LGE Mobile Composite USB Device; C:\WINDOWS\system32\DRIVERS\lgusbbus.sys []
S3 UsbDiag;LGE Mobile USB Serial Port; C:\WINDOWS\system32\DRIVERS\lgusbdiag.sys []
S3 USBModem;LGE Mobile USB Modem; C:\WINDOWS\system32\DRIVERS\lgusbmodem.sys []
S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 avgfws;AVG Firewall; C:\Program Files\AVG\AVG10\avgfws.exe [2011-03-09 2708024]
R2 AVGIDSAgent;AVGIDSAgent; C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe [2011-04-18 7398752]
R2 avgwd;AVG WatchDog; C:\Program Files\AVG\AVG10\avgwdsvc.exe [2011-02-08 269520]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2010-10-07 345376]
R2 LGScsiCommandService;LG SCSI command service; C:\WINDOWS\system32\LGScsiCommandService.exe [2010-04-12 47616]
R2 SoundMAX Agent Service (default);SoundMAX Agent Service; C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe [2002-09-21 45056]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WLSetupSvc;Windows Live Setup Service; C:\Program Files\Windows Live\installer\WLSetupSvc.exe [2007-10-25 266240]
S3 WMPNetworkSvc;Windows Media Player Network Sharing Service; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-10-18 913408]

-----------------EOF-----------------

Uživatelský avatar
Mc_Murphy
VIP in memoriam
VIP in memoriam
Příspěvky: 6706
Registrován: 03 lis 2008 15:55
Bydliště: Plzeň [ZČ]
Kontaktovat uživatele:

Re: preventivka!

#2 Příspěvek od Mc_Murphy »

Zdravím. :bye:

Dej mi minutku, hnedle se na to mrknu. :97:
Obrázek-Obrázek
Obrázek-Obrázek

  • ... I'm moving on, I'm moving on, I'm moving on by the Spirit.
    • You gave me love, I've found my identity, found my identity.

    I'm moving on, I'm moving on, I'm moving on by the Spirit.
    • You gave me hope, I've found my identity in Christ...

Uživatelský avatar
Mc_Murphy
VIP in memoriam
VIP in memoriam
Příspěvky: 6706
Registrován: 03 lis 2008 15:55
Bydliště: Plzeň [ZČ]
Kontaktovat uživatele:

Re: preventivka!

#3 Příspěvek od Mc_Murphy »

V logu nic špatného nevidím. :?:

:!: Ten Combofix jsi pouštěl na vlastní triko?!

:arrow: Fixni v HJT tyto zbytečnosti:
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"


"Fixnout" znamená, že spustíš HJT, zvolíš možnost [Do a system scan only] a zaškrtneš čtvereček vlevo od mnou vypsaných položek. Poté klikneš na [Fix checked] a odsouhlasíš [ANO].
HJT najdeš zde: C:\Program Files\trend micro\Marie.exe

:arrow: Stáhni si utilitu OTM z jednoho z těchto odkazů: Ulož ji na Plochu a dvojklikem spusť.

Do levého okna Paste Instructions for Items to be Moved zkopíruj tento script:

Kód: Vybrat vše

:Reg
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMAX]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMAXPnP]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Marie^Start Menu^Programs^Startup^OpenOffice.org 2.2.lnk]

:Files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp /s
C:\WINDOWS\tasks\AppleSoftwareUpdate.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1645522239-1284227242-725345543-1003Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1645522239-1284227242-725345543-1003UA.job
C:\Documents and Settings\Marie\Application Data\Mozilla\Firefox\Profiles\8wfch2sk.default\searchplugins\icqplugin.xml

:Commands
[Purity]
[ResetHosts]
[EmptyTemp]
[ClearAllRestorePoints]
Nyní klikni na tlačítko [MoveIt!], čímž vše spustíš.
Po restartu mi sem hoď log, který najdeš v C:\_OTM\MovedFiles\

:???: Proč je procesor pomalý, netuším. Zeptám se kolegů.

:arrow: Každopádně zkus zatím defragmentovat všechny diskové jednotky. Doporučoval bych program Defraggler.
:arrow: Potom ještě dočistíme.
Obrázek-Obrázek
Obrázek-Obrázek

  • ... I'm moving on, I'm moving on, I'm moving on by the Spirit.
    • You gave me love, I've found my identity, found my identity.

    I'm moving on, I'm moving on, I'm moving on by the Spirit.
    • You gave me hope, I've found my identity in Christ...

MiliNess
Přítel fóra
Přítel fóra
Příspěvky: 4144
Registrován: 15 říj 2009 18:15
Bydliště: Cheb

Re: preventivka!

#4 Příspěvek od MiliNess »

Ahoj
1)Proč se ti zdá, že procesor běží pomalu? Jak se to konkrétně projevuje?
2) Podívej se na nastavení stránkovacího souboru
Tento počítač->Vlastnosti->Upřesnit->Výkon->Nastavení->Upřesnit->Virtuální paměť
a napiš mi, jak to máš nastaveno.
3)Spusť zátěžový test v HeavyLoad a zároveň s ním pusť Hardware Monitor. Nech oba spuštěné tak 15min a pak sem hoď screen Hardware Monitoru.
Pokud jste s naší pomocí spokojeni, můžete nás podpořit. Informace zde

fugee
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 02 črc 2005 21:45
Kontaktovat uživatele:

Re: preventivka!

#5 Příspěvek od fugee »

Mc Murphy: provedl jsem vse podle instrukci.

Po spusteni OTM vse probehlo, ale pocitac mi zamrznul v okne se spravou, ze "estore points set", ale pocitac se nerestartoval a nereaguje na click mysi.

Mam tedy pocitac restartovat natvrdo?

fugee
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 02 črc 2005 21:45
Kontaktovat uživatele:

Re: preventivka!

#6 Příspěvek od fugee »

Ok restartoval jsem to a log je zde:



All processes killed
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMAX\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMAXPnP\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Marie^Start Menu^Programs^Startup^OpenOffice.org 2.2.lnk\ deleted successfully.
========== FILES ==========
File/Folder C:\WINDOWS\system32\*.tmp.dll not found.
C:\WINDOWS\system32\SET160.tmp moved successfully.
C:\WINDOWS\system32\SET165.tmp moved successfully.
C:\WINDOWS\002384_.tmp moved successfully.
C:\WINDOWS\006089_.tmp moved successfully.
C:\WINDOWS\SET3.tmp moved successfully.
C:\WINDOWS\SETA.tmp moved successfully.
C:\WINDOWS\CSC\csc1.tmp moved successfully.
C:\WINDOWS\Installer\MSI14C9.tmp moved successfully.
C:\WINDOWS\system32\CONFIG.TMP moved successfully.
C:\WINDOWS\temp\avg-cbcf7867-f272-4748-8c80-e640bf23d404.tmp moved successfully.
C:\WINDOWS\tasks\AppleSoftwareUpdate.job moved successfully.
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1645522239-1284227242-725345543-1003Core.job moved successfully.
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1645522239-1284227242-725345543-1003UA.job moved successfully.
C:\Documents and Settings\Marie\Application Data\Mozilla\Firefox\Profiles\8wfch2sk.default\searchplugins\icqplugin.xml moved successfully.
========== COMMANDS ==========
C:\WINDOWS\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: Admin
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes
->FireFox cache emptied: 14358538 bytes
->Flash cache emptied: 434 bytes

User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes

User: All Users

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 32902 bytes

User: Marie
->Temp folder emptied: 6734169 bytes
->Temporary Internet Files folder emptied: 48753430 bytes
->Java cache emptied: 15631048 bytes
->FireFox cache emptied: 48183860 bytes
->Google Chrome cache emptied: 384929383 bytes
->Flash cache emptied: 1865443 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 1602 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33728 bytes
RecycleBin emptied: 1637888 bytes

Total Files Cleaned = 498,00 mb


Restore points cleared and new OTM Restore Point set!

OTM by OldTimer - Version 3.1.18.0 log created on 09062011_101223

Files moved on Reboot...

Registry entries deleted on Reboot...

Uživatelský avatar
Mc_Murphy
VIP in memoriam
VIP in memoriam
Příspěvky: 6706
Registrován: 03 lis 2008 15:55
Bydliště: Plzeň [ZČ]
Kontaktovat uživatele:

Re: preventivka!

#7 Příspěvek od Mc_Murphy »

To je v pořádku, to se občas při tvorbě nového bodu obnovení může stát.
OTM provedlo, co mělo, tak se vrhni na postupy, co Ti napsal MiliNess a odpověz mu na jeho dotazy. Pak ještě dočistíme. :81:
Obrázek-Obrázek
Obrázek-Obrázek

  • ... I'm moving on, I'm moving on, I'm moving on by the Spirit.
    • You gave me love, I've found my identity, found my identity.

    I'm moving on, I'm moving on, I'm moving on by the Spirit.
    • You gave me hope, I've found my identity in Christ...

fugee
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 02 črc 2005 21:45
Kontaktovat uživatele:

Re: preventivka!

#8 Příspěvek od fugee »

MiliNess:

1) Pokud mi bezi nekolik aplikaci najednou: Outlook, CHrome (FB, YouTube, Gmail,etc.), Excel,

Winamp,atd. pravidelne mi hlasi system nedostatek virutalni pameti. Navic extremne pomalu se nacitaji PDFka.

2) v nastaveni strankovaciho souboru mam nastaveno: min 500MB max 1000MB
3)


CPUID HWMonitor Report
-------------------------------------------------------------------------

Binaries
-------------------------------------------------------------------------

HWMonitor version 1.1.8.0

Monitoring
-------------------------------------------------------------------------

Mainboard Model D865GLC (0x000001BD - 0x004F67C3)

LPCIO
-------------------------------------------------------------------------

LPCIO Vendor NS
LPCIO Model PC87372
LPCIO Vendor ID 0xFF02
LPCIO Chip ID 0xF0
LPCIO Revision ID 0x4
Config Mode I/O address 0x2E
Config Mode LDN 0x9
Config Mode registers
00 01 02 03 04 05 06 07 08 09 0A 0B 0C 0D 0E 0F
00 00 00 00 00 00 00 00 09 00 00 00 00 00 00 00 00
10 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
20 F0 D1 30 00 00 00 00 04 00 90 00 00 00 00 00 00
30 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
40 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
50 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
60 06 E0 00 00 00 00 00 00 00 00 00 00 00 00 00 00
70 00 03 00 00 04 04 00 00 00 00 00 00 00 00 00 00

Hardware Monitors
-------------------------------------------------------------------------

Hardware monitor SMSC EMC6D10X
Voltage 0 1.46 Volts [0x70] (+1.5V)
Voltage 1 1.47 Volts [0x7D] (CPU VCORE)
Voltage 2 3.32 Volts [0xC1] (ATX +3.3V)
Voltage 3 5.05 Volts [0xC2] (ATX +5V)
Voltage 4 11.92 Volts [0xBE] (ATX +12V)
Temperature 0 43°C (109°F) [0x2B] (Diode 1)
Temperature 1 37°C (98°F) [0x25] (Internal)
Temperature 2 41°C (105°F) [0x29] (Diode 2)
Fan 0 3107 RPM [0x6CA] (FANIN0)
Register space SMBus, base address = 0x0C400
SMBus request channel 0x0, address 0x2E

00 01 02 03 04 05 06 07 08 09 0A 0B 0C 0D 0E 0F
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
10 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
20 70 7D C1 C3 BF 2D 25 2A CB 06 FF FF FF FF FF FF
30 FF FF 70 00 00 00 00 00 00 00 00 00 00 00 5C 65
40 05 00 00 0D 00 FF 00 FF 00 FF 00 FF 00 FF 81 7F
50 81 7F 81 7F FF FF FF FF FF FF FF FF 62 62 22 C0
60 70 70 E0 00 80 80 4D 1F 23 23 3F 2D 2D 44 40 00
70 FF FF 70 09 09 09 09 09 09 00 00 00 40 00 EC 18
80 1E A4 0E 00 00 23 1F 9C 6B 00 4D 4D 09 09 0B 00
90 04 04 04 04 0C 0C 0C 5A F1 00 00 00 00 00 00 00
A0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
B0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
C0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
D0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
E0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
F0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 12


Processors
-------------------------------------------------------------------------

Number of processors 1
Number of threads 1

APICs
-------------------------------------------------------------------------

Processor 0
-- Core 0
-- Thread 0 0

Processors Information
-------------------------------------------------------------------------

Processor 1 ID = 0
Number of cores 1 (max 1)
Number of threads 1 (max 1)
Name Intel Celeron
Codename Northwood
Specification Intel(R) Celeron(R) CPU 2.40GHz
Package (platform ID) Socket 478 mPGA (0x2)
CPUID F.2.9
Extended CPUID F.2
Brand ID 10
Core Stepping D1
Technology 0.13 um
Core Speed 2394.3 MHz
Multiplier x FSB 24.0 x 99.8 MHz
Rated Bus speed 399.1 MHz
Stock frequency 2400 MHz
Instructions sets MMX, SSE, SSE2
L1 Data cache 8 KBytes, 4-way set associative, 64-byte line size
Trace cache 12 Kuops, 8-way set associative
L2 cache 128 KBytes, 2-way set associative, 64-byte line size
FID/VID Control no



Thread dumps
-------------------------------------------------------------------------

CPU Thread 0
APIC ID 0
Topology Processor ID 0, Core ID 0, Thread ID 0
Type 01001005h
Max CPUID level 00000002h
Max CPUID ext. level 80000004h
Cache descriptor Level 2, U, 128 KB, 1 thread(s)
Cache descriptor Level 1, T, 12 KB, 1 thread(s)
Cache descriptor Level 1, D, 8 KB, 1 thread(s)

CPUID
0x00000000 0x00000002 0x756E6547 0x6C65746E 0x49656E69
0x00000001 0x00000F29 0x0001080A 0x00004400 0xBFEBFBFF
0x00000002 0x665B5101 0x00000000 0x00000000 0x003B7040
0x80000000 0x80000004 0x00000000 0x00000000 0x00000000
0x80000001 0x00000000 0x00000000 0x00000000 0x00000000
0x80000002 0x20202020 0x20202020 0x20202020 0x20202020
0x80000003 0x65746E49 0x2952286C 0x6C654320 0x6E6F7265
0x80000004 0x20295228 0x20555043 0x30342E32 0x007A4847

MSR 0x0000001B 0x00000000 0xFEE00900
MSR 0x00000017 0x000A0000 0x00000000
MSR 0x0000002C 0x00000000 0x18100018
MSR 0x000001A0 0x00000000 0x00000089



Storage
-------------------------------------------------------------------------


Graphic APIs
-------------------------------------------------------------------------

API Intel I/O

Display Adapters
-------------------------------------------------------------------------

Display adapter 0
Display name \\.\DISPLAY1
Name Intel(R) 82865G Graphics Controller
PCI device bus 0 (0x0), device 2 (0x2), function 0 (0x0)
Vendor ID 0x8086 (0x8086)
Model ID 0x2572 (0x4C43)


ACPI
-------------------------------------------------------------------------

ACPI Tree
_GPE
_L0B
_L1D
_L03
_L04
_L0C
_L0D
_L0E
_L05
_PR_
CPU1
CPU2
_SB_
PR00
AR00
PR01
AR01
PR02
AR02
PR03
AR03
PRSA
PRSB
PRSC
PRSD
PRSE
PRSF
PRSG
PRSH
PCI0
_HID
_ADR
_BBN
_UID
_PRT
P0P1
_ADR
_PRT
_S1D
_S3D
_S4D
P0P2
_ADR
_PRT
TANA
_ADR
_PRW
P0P3
_ADR
_PRW
_PRT
AC97
_ADR
BAR0
[ ]
A97W
_PSW
_PRW
_S1D
_S3D
_S4D
IDE0
_ADR
REGF
_REG
BAR0
[ ]
[ ]
TIMP
TIMS
STMP
STMS
[ ]
UDMP
UDMS
[ ]
UDTP
[ ]
UDTS
[ ]
PCB0
SCB0
PCA0
SCA0
[ ]
FPB0
FSB0
TIM0
TMD0
PIO0
DMA0
PIO1
DMA1
CHNF
GTIM
GSTM
GUDM
GUDT
GCB0
GFB0
CHN0
_ADR
IDE0
[ ]
DATA
FEAT
SECC
SECN
CYLL
CYLH
DVHD
STAT
ATP0
ATP1
_GTM
_STM
DRV0
_ADR
_GTF
DRV1
_ADR
_GTF
CHN1
_ADR
IDE1
[ ]
DATA
FEAT
SECC
SECN
CYLL
CYLH
DVHD
STAT
ATS0
ATS1
_GTM
_STM
DRV0
_ADR
_GTF
DRV1
_ADR
_GTF
TIM1
MPIO
MDMA
SPIO
SDMA
FLGS
_PS3
BOOT
_PS0
PRGT
GTM_
STM_
AT01
AT02
AT03
AT04
AT05
ATA0
ATA1
ATA2
ATA3
ATAB
CMDC
GTFB
GTF_
RATA
NATA
USB0
_ADR
BAR0
[ ]
UBL1
[ ]
USBW
_PSW
_PRW
_S1D
_S3D
USB1
_ADR
BAR0
[ ]
UBL1
[ ]
USBW
_PSW
_PRW
_S1D
_S3D
USB2
_ADR
BAR0
[ ]
UBL1
[ ]
USBW
_PSW
_PRW
_S1D
_S3D
USB3
_ADR
BAR0
[ ]
UBL1
[ ]
USBW
_PSW
_PRW
_S1D
_S3D
USB7
_ADR
BAR0
[ ]
USBW
_PSW
_PRW
_S1D
_S3D
SBRG
_ADR
PIC_
_HID
_CRS
DMAD
_HID
_CRS
TMR_
_HID
_CRS
RTC0
_HID
_CRS
PS2K
_HID
_CID
_STA
_CRS
PS2M
_HID
_CID
_STA
CRS1
CRS2
_CRS
SPKR
_HID
_CRS
COPR
_HID
_CRS
SMC1
[ ]
INDX
DATA
[ ]
[ ]
CFG_
[ ]
LDN_
[ ]
SDID
[ ]
ACTR
[ ]
IOAH
IOAL
[ ]
INTR
[ ]
INT1
[ ]
DMCH
[ ]
GP40
[ ]
OPT0
OPT1
OPT2
OPT3
OPT4
OPT5
OPT6
OPT7
OPT8
MUT0
ENFG
EXFG
KCLR
LDFD
LDLP
LDU1
LDPW
LDMO
LDKB
LDGP
FDC0
_HID
_STA
_DIS
_CRS
_PRS
_SRS
UAR1
_HID
_UID
_STA
_DIS
_CRS
_SRS
_PRS
_PRW
_PSW
LPT_
_HID
_STA
_DIS
_CRS
_SRS
_PRS
ECP_
_HID
_STA
_DIS
_CRS
_SRS
_PRS
FDST
U1ST
LPST
IODT
GSTA
DDIS
DENB
PCRS
PSRS
ECRS
ESRS
CSCP
URP1
_STA
_ON_
_OFF
FDDP
_STA
_ON_
_OFF
LPTP
_STA
_ON_
_OFF
FCRS
PBUF
EBUF
FPRS
C1PR
LPPR
EPRS
SYSR
_HID
_UID
_CRS
FWH_
_HID
CRS_
_CRS
OSYS
_HID
_UID
CRS_
_CRS
IROR
PMC3
SIOS
SIOW
SIOH
TPM_
_HID
_UID
_CRS
_STA
IDE1
_ADR
REGF
_REG
BAR0
[ ]
[ ]
TIMP
TIMS
STMP
STMS
[ ]
UDMP
UDMS
[ ]
UDTP
[ ]
UDTS
[ ]
PCB0
SCB0
PCA0
SCA0
[ ]
FPB0
FSB0
TIM0
TMD0
PIO0
DMA0
PIO1
DMA1
CHNF
GTIM
GSTM
GUDM
GUDT
GCB0
GFB0
CHN0
_ADR
IDE0
[ ]
DATA
FEAT
SECC
SECN
CYLL
CYLH
DVHD
STAT
ATP0
ATP1
_GTM
_STM
DRV0
_ADR
_GTF
DRV1
_ADR
_GTF
CHN1
_ADR
IDE1
[ ]
DATA
FEAT
SECC
SECN
CYLL
CYLH
DVHD
STAT
ATS0
ATS1
_GTM
_STM
DRV0
_ADR
_GTF
DRV1
_ADR
_GTF
TIM1
MPIO
MDMA
SPIO
SDMA
FLGS
_PS3
BOOT
_PS0
PRGT
GTM_
STM_
AT01
AT02
AT03
AT04
AT05
ATA0
ATA1
ATA2
ATA3
ATAB
CMDC
GTFB
GTF_
RATA
_INI
CRS_
MIN5
MAX5
LEN5
MIN6
MAX6
LEN6
_CRS
_S1D
_S3D
_S4D
SYSM
_HID
_UID
CRS_
_CRS
[ ]
[ ]
PIRA
PIRB
PIRC
PIRD
[ ]
PIRE
PIRF
PIRG
PIRH
BUFA
ICRS
LSTA
LCRS
LSRS
LDIS
LNKA
_HID
_UID
_STA
_PRS
_DIS
_CRS
_SRS
LNKB
_HID
_UID
_STA
_PRS
_DIS
_CRS
_SRS
LNKC
_HID
_UID
_STA
_PRS
_DIS
_CRS
_SRS
LNKD
_HID
_UID
_STA
_PRS
_DIS
_CRS
_SRS
LNKE
_HID
_UID
_STA
_PRS
_DIS
_CRS
_SRS
LNKF
_HID
_UID
_STA
_PRS
_DIS
_CRS
_SRS
LNKG
_HID
_UID
_STA
_PRS
_DIS
_CRS
_SRS
LNKH
_HID
_UID
_STA
_PRS
_DIS
_CRS
_SRS
SLPB
_HID
_UID
_STA
_PRW
_SI_
SIOR
[ ]
[ ]
LDGY
LDBL
_SST
_MSG
_TZ_
_REV
_OS_
_OSI
_GL_
BIOS
[ ]
SS1_
SS2_
SS3_
SS4_
[ ]
IOST
SPIO
PMBS
PMLN
SMBS
SMLN
IO1B
IO1L
IO2B
IO2L
TOPM
ROMS
APCB
APCL
MG1B
MG1L
MG2B
MG2L
ANGE
VEBA
RMBA
VEXT
GCIC
CVPD
DVPD
MVPD
[ ]
MAEN
MASL
SWAP
ASFF
TPMF
[ ]
S1DX
S3DX
ASFA
[ ]
AZBA
AZLN
PXBA
PXLN
RRIO
RDMA
PICM
_PIC
OSFL
MCTH
GPRW
WAKP
DEB0
[ ]
DBG8
DEB1
[ ]
DBG9
_PTS
RNTR
[ ]
PMST
[ ]
[ ]
[ ]
PMEE
[ ]
[ ]
[ ]
EVST
[ ]
[ ]
[ ]
RI1E
KBDE
MSEE
[ ]
[ ]
AFG3
_WAK
CBK2
[ ]
IND_
DAT_
[ ]
[ ]
[ ]
PRFA
[ ]
LAST
[ ]
DRVI
[ ]
[ ]
OSYS
PSWP
SBIO
[ ]
SKIP
SLPE
[ ]
[ ]
NONE
SLPS
_S0_
_S1_
_S3_
_S4_
_S5_
PTS_
WAK_

MiliNess
Přítel fóra
Přítel fóra
Příspěvky: 4144
Registrován: 15 říj 2009 18:15
Bydliště: Cheb

Re: preventivka!

#9 Příspěvek od MiliNess »

Co se týká stránkovacího souboru, nastavte to tak, aby si systém sám určoval velikost. Tím by se měl vyřešit problém s virtuální pamětí.
Pokud ne, budete muset ve správci úloh sledovat, zda nějaký proces nevyužívá nadměrné množství paměti. Ve špatně napsané aplikaci může docházet k memory leaku, kdy aplikace neuvolňuje alokovanou paměť, když už s ní nepracuje.
Co se týká pomalého běhu aplikací, s jednojádrovým procesorem Celeron Northwood na 2,4GHz už je to spíše přirozená věc.
Hold by to chtělo upgrade.
Pokud jste s naší pomocí spokojeni, můžete nás podpořit. Informace zde

fugee
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 02 črc 2005 21:45
Kontaktovat uživatele:

Re: preventivka!

#10 Příspěvek od fugee »

díky za pomoc.

už běhá lépe.

M.

Uživatelský avatar
Mc_Murphy
VIP in memoriam
VIP in memoriam
Příspěvky: 6706
Registrován: 03 lis 2008 15:55
Bydliště: Plzeň [ZČ]
Kontaktovat uživatele:

Re: preventivka!

#11 Příspěvek od Mc_Murphy »

Takže vše ke spokojenosti? Já moc děkuji Rádci MiliNess za pomoc, protože tohle není zrovna má nejsilnější stránka. :worship:
A pokud jsi provedl všechny zmiňované kroky, tak už jen dočistíme.

Na zbytky po Combofixu:

:arrow: T-Cleaner http://vyosek.ic.cz/pro_usery/T-Cleaner.exe
  • Stáhni a spusť.
  • Pro potvrzení volby mačkej A, Enter.
  • Po použití utilitu smaž.
  • Antiviry mohou tuto utilitu chybně označit jako vir - jedná se o falešný poplach - takže v pohodě stáhni (případně vypni při stahování antivir).
A ostatní:

:arrow: OTC http://oldtimer.geekstogo.com/OTC.exe
  • Stáhni a spusť.
  • Klikni na CleanUp a potvrď YES.
  • Program uklidí a restartuje PC.

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stáhni a spusť.
  • Klikni na Start a potvrď OK.
  • Program uklidí a restartuje PC.
  • Po použití utilitu smaž.
:arrow: Pokud nemáš, stáhni CCleaner z tohoto odkazu.
  • Panel čistič
  • Vše nech jak je, jen dej Analyzovat a poté Spustit CCleaner.
  • Panel registry
  • Klikni na Hledej problémy.
  • Následně na Opravit problémy - zálohu registrů doporučuji udělat, oprav všechny problémy.
  • Postup opakuj, dokud nebude bez problémů - většinou cca 3x.
  • Panel nástroje
  • Zde můžeš odinstalovat nepotřebné programy.
:100: CCleaner doporučuji používat cca jednou za týden.

A to by bylo z mé strany vše. :worship:
Obrázek-Obrázek
Obrázek-Obrázek

  • ... I'm moving on, I'm moving on, I'm moving on by the Spirit.
    • You gave me love, I've found my identity, found my identity.

    I'm moving on, I'm moving on, I'm moving on by the Spirit.
    • You gave me hope, I've found my identity in Christ...

Odpovědět