svchost maximálně vytěžuje procesor - prosím o radu
Napsal: 19 led 2012 21:12
Zdravím
Mám problém nejen s svchost ale i aktualizacemi na start/windows update - prostě se mi to nenačte. I rychlost celého pc je nějaká divná.
Měl byste na mě někdo čas? Díky moc.
Logfile of random's system information tool 1.09 (written by random/random)
Run by Michal at 2012-01-19 21:04:23
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 65 GB (86%) free of 76 GB
Total RAM: 1023 MB (51% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:06:07, on 19.1.2012
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\oprava\Malwarebytes' Anti-Malware\mbamservice.exe
C:\WINDOWS\system32\Mx-3 B-Cup Service.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
C:\WINDOWS\system32\outinst.exe
C:\WINDOWS\system32\atiptaxx.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\taskmgr.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Adobe\Reader 8.0\Reader\AcroRd32.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\totalcmd\TOTALCMD.EXE
c:\INSTALL\RSIT.exe
C:\Program Files\trend micro\Michal.exe
C:\Program Files\process explorer\procexp.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files\oprava\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb04.exe
O4 - HKLM\..\Run: [OutlookFriend] outinst.exe
O4 - HKLM\..\Run: [AtiPTA] atiptaxx.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\oprava\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: MX-3 B-Cup XP (Mx-3 B-Cup Service) - n.v.t. MX-3 - C:\WINDOWS\system32\Mx-3 B-Cup Service.exe
--
End of file - 5502 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\MP Scheduled Scan.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{326E768D-4182-46FD-9C16-1449A49795F4}]
DivX Plus Web Player HTML5 <video> - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll [2011-12-12 194432]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Share-to-Web Namespace Daemon"=C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe [2002-04-11 69632]
"Malwarebytes' Anti-Malware"=C:\Program Files\oprava\Malwarebytes' Anti-Malware\mbamgui.exe [2011-12-24 460872]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2011-06-15 997920]
"HPDJ Taskbar Utility"=C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb04.exe [2001-12-06 196608]
"OutlookFriend"=C:\WINDOWS\system32\outinst.exe [2005-02-25 29184]
"AtiPTA"=C:\WINDOWS\system32\atiptaxx.exe [2001-09-21 270336]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"SpybotSD TeaTimer"=C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2009-03-05 2260480]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= []
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDrives"=0
"NoDriveAutoRun"=67108863
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\System32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"vidc.DIVX"=DivX.dll
"vidc.yv12"=DivX.dll
======List of files/folders created in the last 1 month======
2012-01-19 21:04:24 ----D---- C:\Program Files\trend micro
2012-01-19 21:04:23 ----D---- C:\rsit
2012-01-19 20:41:30 ----HDC---- C:\WINDOWS\ie8
2012-01-19 00:01:06 ----D---- C:\Documents and Settings\Michal\Data aplikací\DivX
2012-01-19 00:00:11 ----N---- C:\WINDOWS\system32\vxblock.dll
2012-01-19 00:00:11 ----N---- C:\WINDOWS\system32\pxwave.dll
2012-01-19 00:00:11 ----N---- C:\WINDOWS\system32\pxsfs.dll
2012-01-19 00:00:11 ----N---- C:\WINDOWS\system32\pxmas.dll
2012-01-19 00:00:11 ----N---- C:\WINDOWS\system32\pxinsi64.exe
2012-01-19 00:00:11 ----N---- C:\WINDOWS\system32\pxinsa64.exe
2012-01-19 00:00:11 ----N---- C:\WINDOWS\system32\pxhpinst.exe
2012-01-19 00:00:11 ----N---- C:\WINDOWS\system32\pxdrv.dll
2012-01-19 00:00:11 ----N---- C:\WINDOWS\system32\pxcpyi64.exe
2012-01-19 00:00:11 ----N---- C:\WINDOWS\system32\pxcpya64.exe
2012-01-19 00:00:11 ----N---- C:\WINDOWS\system32\pxafs.dll
2012-01-19 00:00:11 ----N---- C:\WINDOWS\system32\px.dll
2012-01-19 00:00:11 ----N---- C:\WINDOWS\system32\drivers\PxHelp20.sys
2012-01-19 00:00:11 ----N---- C:\WINDOWS\system32\drivers\cdralw2k.sys
2012-01-19 00:00:11 ----N---- C:\WINDOWS\system32\drivers\cdr4_xp.sys
2012-01-18 23:58:36 ----D---- C:\Program Files\Common Files\DivX Shared
2012-01-18 23:56:52 ----D---- C:\Program Files\DivX
2012-01-18 23:49:32 ----D---- C:\Documents and Settings\All Users\Data aplikací\DivX
2012-01-18 23:46:26 ----D---- C:\Program Files\process explorer
2012-01-18 22:48:48 ----A---- C:\WINDOWS\system32\drivers\redbook.sys
2012-01-18 09:00:05 ----D---- C:\Program Files\Microsoft Security Client
2012-01-18 00:01:34 ----A---- C:\WINDOWS\system32\drivers\ACPI.SYS
2012-01-17 17:25:12 ----A---- C:\WINDOWS\system32\drivers\kpucjlai.sys
2012-01-17 17:08:29 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2012-01-17 16:32:37 ----N---- C:\WINDOWS\system32\spmsg2.dll
2012-01-17 16:32:36 ----HDC---- C:\WINDOWS\$NtUninstallXPSEPSCLP$
2012-01-17 14:29:27 ----HDC---- C:\WINDOWS\$NtUninstallKB963093$
2012-01-17 14:27:23 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2012-01-17 13:48:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2492386$
2012-01-17 13:47:22 ----D---- C:\WINDOWS\ie8updates
2012-01-17 13:33:10 ----D---- C:\WINDOWS\system32\XPSViewer
2012-01-17 13:32:55 ----D---- C:\Program Files\Reference Assemblies
2012-01-17 13:32:28 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2012-01-17 13:32:28 ----N---- C:\WINDOWS\system32\prntvpt.dll
2012-01-17 13:32:27 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2012-01-17 13:28:21 ----HDC---- C:\WINDOWS\$NtUninstallbasecsp$
2012-01-17 13:27:34 ----D---- C:\WINDOWS\system32\GroupPolicy
2012-01-17 13:27:34 ----D---- C:\Program Files\Windows Desktop Search
2012-01-17 13:27:20 ----HDC---- C:\WINDOWS\$NtUninstallKB915800-v4$
2012-01-17 13:24:57 ----D---- C:\WINDOWS\system32\URTTEMP
2012-01-12 21:14:36 ----D---- C:\WINDOWS\system32\en-US
2012-01-12 21:14:18 ----D---- C:\Program Files\Microsoft.NET
2012-01-12 21:14:15 ----D---- C:\WINDOWS\Microsoft.NET
2012-01-12 21:08:03 ----HDC---- C:\WINDOWS\$NtUninstallKB2585542$
2012-01-12 20:57:11 ----A---- C:\WINDOWS\system32\drivers\ACC07D.sys
2012-01-12 17:55:26 ----HDC---- C:\WINDOWS\$NtUninstallKB2646524$
2012-01-12 17:55:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2631813$
2012-01-12 17:52:39 ----HDC---- C:\WINDOWS\$NtUninstallKB2598479$
2012-01-12 17:52:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2603381$
2012-01-12 17:52:15 ----HDC---- C:\WINDOWS\$NtUninstallKB2584146$
2012-01-12 13:28:04 ----D---- C:\Documents and Settings\Michal\Data aplikací\Malwarebytes
2012-01-12 13:27:56 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2012-01-12 13:27:55 ----D---- C:\Program Files\oprava
2012-01-12 13:27:55 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2011-12-24 10:47:26 ----RSD---- C:\WINDOWS\assembly
======List of files/folders modified in the last 1 month======
2012-01-19 21:04:24 ----RD---- C:\Program Files
2012-01-19 21:03:41 ----A---- C:\WINDOWS\wincmd.ini
2012-01-19 21:03:04 ----D---- C:\INSTALL
2012-01-19 20:53:16 ----D---- C:\WINDOWS\temp
2012-01-19 20:52:31 ----A---- C:\WINDOWS\SchedLgU.Txt
2012-01-19 20:52:25 ----SD---- C:\WINDOWS\Tasks
2012-01-19 20:50:15 ----D---- C:\WINDOWS\system32\drivers
2012-01-19 20:47:59 ----D---- C:\WINDOWS\system32\CatRoot2
2012-01-19 20:47:42 ----D---- C:\WINDOWS
2012-01-19 20:47:39 ----D---- C:\WINDOWS\system32
2012-01-19 20:47:06 ----D---- C:\WINDOWS\system32\cs-cz
2012-01-19 20:47:06 ----D---- C:\WINDOWS\Media
2012-01-19 20:47:05 ----RSHDC---- C:\WINDOWS\system32\dllcache
2012-01-19 20:47:05 ----HD---- C:\WINDOWS\inf
2012-01-19 20:47:05 ----D---- C:\WINDOWS\Help
2012-01-19 20:47:05 ----D---- C:\Program Files\Internet Explorer
2012-01-19 20:46:00 ----D---- C:\WINDOWS\system32\CatRoot
2012-01-19 20:45:20 ----A---- C:\WINDOWS\imsins.BAK
2012-01-19 18:14:08 ----D---- C:\WINDOWS\system32\drivers\etc
2012-01-19 15:42:47 ----D---- C:\Záloha
2012-01-19 13:44:05 ----D---- C:\WINDOWS\Prefetch
2012-01-19 00:14:56 ----N---- C:\WINDOWS\win.ini
2012-01-19 00:14:56 ----N---- C:\WINDOWS\system.ini
2012-01-19 00:14:56 ----ASH---- C:\boot.ini
2012-01-18 23:58:47 ----SHD---- C:\WINDOWS\Installer
2012-01-18 23:58:46 ----D---- C:\WINDOWS\WinSxS
2012-01-18 23:58:36 ----D---- C:\Program Files\Common Files
2012-01-18 22:23:06 ----D---- C:\WINDOWS\system32\wbem
2012-01-18 22:17:15 ----AC---- C:\WINDOWS\system32\SndDrv32b.ini
2012-01-18 22:17:14 ----D---- C:\Program Files\jv16 PowerTools
2012-01-18 21:56:09 ----SHD---- C:\System Volume Information
2012-01-18 21:56:09 ----D---- C:\WINDOWS\system32\Restore
2012-01-18 18:40:12 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2012-01-18 18:34:56 ----RSD---- C:\WINDOWS\Fonts
2012-01-18 18:34:31 ----D---- C:\Program Files\Common Files\Microsoft Shared
2012-01-18 18:33:34 ----D---- C:\Program Files\Microsoft Works
2012-01-18 18:30:19 ----D---- C:\Program Files\Common Files\System
2012-01-18 09:00:34 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2012-01-18 01:42:05 ----SHD---- C:\RECYCLER
2012-01-17 16:39:25 ----HD---- C:\WINDOWS\$hf_mig$
2012-01-17 14:29:01 ----D---- C:\WINDOWS\Registration
2012-01-17 14:19:09 ----D---- C:\WINDOWS\AppPatch
2012-01-17 14:18:34 ----D---- C:\WINDOWS\security
2012-01-17 13:33:05 ----D---- C:\Program Files\MSBuild
2012-01-17 13:32:37 ----D---- C:\WINDOWS\system32\spool
2012-01-17 13:26:28 ----D---- C:\WINDOWS\system32\mui
2012-01-12 17:52:56 ----A---- C:\WINDOWS\system32\MRT.exe
2012-01-12 15:00:18 ----AC---- C:\WINDOWS\ntbtlog.txt
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2011-11-29 45648]
R0 viaagp;Filtr VIA sběrnice AGP ; C:\WINDOWS\System32\DRIVERS\viaagp.sys [2008-04-13 42240]
R1 AFS2K;AFS2k; C:\WINDOWS\system32\drivers\AFS2K.sys [2007-09-21 82380]
R1 MpFilter;Microsoft Malware Protection Driver; C:\WINDOWS\system32\DRIVERS\MpFilter.sys [2011-04-18 165648]
R1 MpKsld66eda60;MpKsld66eda60; \??\c:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{DAA124B9-B061-4D66-A7EF-7763372596C6}\MpKsld66eda60.sys []
R1 P3;Ovladač procesoru Intel PentiumIII; C:\WINDOWS\System32\DRIVERS\p3.sys [2008-04-14 46592]
R3 ati2mtag;ati2mtag; C:\WINDOWS\System32\DRIVERS\ati2mtag.sys [2001-10-09 357760]
R3 EN1207D;Accton EN1207D/2242A Adapter Driver; C:\WINDOWS\system32\DRIVERS\ACC07D.SYS [2001-07-09 23661]
R3 MBAMProtector;MBAMProtector; \??\C:\WINDOWS\system32\drivers\mbam.sys []
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 VIAudio;VIA AC'97 Audio Controller (WDM); C:\WINDOWS\system32\drivers\viaudio.sys [2001-10-26 37248]
S0 ati1bexx;ati1bexx; C:\WINDOWS\System32\Drivers\ati1bexx.sys []
S0 ati2ycxx;ati2ycxx; C:\WINDOWS\System32\Drivers\ati2ycxx.sys []
S0 ati4qtxx;ati4qtxx; C:\WINDOWS\System32\Drivers\ati4qtxx.sys []
S0 ati5orxx;ati5orxx; C:\WINDOWS\System32\Drivers\ati5orxx.sys []
S3 atimtag;atimtag; C:\WINDOWS\System32\DRIVERS\atimtag.sys []
S3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
S3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2001-10-24 12160]
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\System32\DRIVERS\RTL8139.SYS [2004-08-03 20992]
S3 SASENUM;SASENUM; C:\WINDOWS\system32\drivers\SASENUM.sys []
S3 usbprint;Třída USB Printer; C:\WINDOWS\System32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\System32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 MBAMService;MBAMService; C:\Program Files\oprava\Malwarebytes' Anti-Malware\mbamservice.exe [2011-12-24 652872]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe [2011-04-27 11736]
R2 Mx-3 B-Cup Service;MX-3 B-Cup XP; C:\WINDOWS\system32\Mx-3 B-Cup Service.exe [2010-01-11 124928]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
Mám problém nejen s svchost ale i aktualizacemi na start/windows update - prostě se mi to nenačte. I rychlost celého pc je nějaká divná.
Měl byste na mě někdo čas? Díky moc.
Logfile of random's system information tool 1.09 (written by random/random)
Run by Michal at 2012-01-19 21:04:23
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 65 GB (86%) free of 76 GB
Total RAM: 1023 MB (51% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:06:07, on 19.1.2012
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\oprava\Malwarebytes' Anti-Malware\mbamservice.exe
C:\WINDOWS\system32\Mx-3 B-Cup Service.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
C:\WINDOWS\system32\outinst.exe
C:\WINDOWS\system32\atiptaxx.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\taskmgr.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Adobe\Reader 8.0\Reader\AcroRd32.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\totalcmd\TOTALCMD.EXE
c:\INSTALL\RSIT.exe
C:\Program Files\trend micro\Michal.exe
C:\Program Files\process explorer\procexp.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files\oprava\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb04.exe
O4 - HKLM\..\Run: [OutlookFriend] outinst.exe
O4 - HKLM\..\Run: [AtiPTA] atiptaxx.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\oprava\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: MX-3 B-Cup XP (Mx-3 B-Cup Service) - n.v.t. MX-3 - C:\WINDOWS\system32\Mx-3 B-Cup Service.exe
--
End of file - 5502 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\MP Scheduled Scan.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{326E768D-4182-46FD-9C16-1449A49795F4}]
DivX Plus Web Player HTML5 <video> - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll [2011-12-12 194432]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Share-to-Web Namespace Daemon"=C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe [2002-04-11 69632]
"Malwarebytes' Anti-Malware"=C:\Program Files\oprava\Malwarebytes' Anti-Malware\mbamgui.exe [2011-12-24 460872]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2011-06-15 997920]
"HPDJ Taskbar Utility"=C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb04.exe [2001-12-06 196608]
"OutlookFriend"=C:\WINDOWS\system32\outinst.exe [2005-02-25 29184]
"AtiPTA"=C:\WINDOWS\system32\atiptaxx.exe [2001-09-21 270336]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"SpybotSD TeaTimer"=C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2009-03-05 2260480]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= []
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDrives"=0
"NoDriveAutoRun"=67108863
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\System32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"vidc.DIVX"=DivX.dll
"vidc.yv12"=DivX.dll
======List of files/folders created in the last 1 month======
2012-01-19 21:04:24 ----D---- C:\Program Files\trend micro
2012-01-19 21:04:23 ----D---- C:\rsit
2012-01-19 20:41:30 ----HDC---- C:\WINDOWS\ie8
2012-01-19 00:01:06 ----D---- C:\Documents and Settings\Michal\Data aplikací\DivX
2012-01-19 00:00:11 ----N---- C:\WINDOWS\system32\vxblock.dll
2012-01-19 00:00:11 ----N---- C:\WINDOWS\system32\pxwave.dll
2012-01-19 00:00:11 ----N---- C:\WINDOWS\system32\pxsfs.dll
2012-01-19 00:00:11 ----N---- C:\WINDOWS\system32\pxmas.dll
2012-01-19 00:00:11 ----N---- C:\WINDOWS\system32\pxinsi64.exe
2012-01-19 00:00:11 ----N---- C:\WINDOWS\system32\pxinsa64.exe
2012-01-19 00:00:11 ----N---- C:\WINDOWS\system32\pxhpinst.exe
2012-01-19 00:00:11 ----N---- C:\WINDOWS\system32\pxdrv.dll
2012-01-19 00:00:11 ----N---- C:\WINDOWS\system32\pxcpyi64.exe
2012-01-19 00:00:11 ----N---- C:\WINDOWS\system32\pxcpya64.exe
2012-01-19 00:00:11 ----N---- C:\WINDOWS\system32\pxafs.dll
2012-01-19 00:00:11 ----N---- C:\WINDOWS\system32\px.dll
2012-01-19 00:00:11 ----N---- C:\WINDOWS\system32\drivers\PxHelp20.sys
2012-01-19 00:00:11 ----N---- C:\WINDOWS\system32\drivers\cdralw2k.sys
2012-01-19 00:00:11 ----N---- C:\WINDOWS\system32\drivers\cdr4_xp.sys
2012-01-18 23:58:36 ----D---- C:\Program Files\Common Files\DivX Shared
2012-01-18 23:56:52 ----D---- C:\Program Files\DivX
2012-01-18 23:49:32 ----D---- C:\Documents and Settings\All Users\Data aplikací\DivX
2012-01-18 23:46:26 ----D---- C:\Program Files\process explorer
2012-01-18 22:48:48 ----A---- C:\WINDOWS\system32\drivers\redbook.sys
2012-01-18 09:00:05 ----D---- C:\Program Files\Microsoft Security Client
2012-01-18 00:01:34 ----A---- C:\WINDOWS\system32\drivers\ACPI.SYS
2012-01-17 17:25:12 ----A---- C:\WINDOWS\system32\drivers\kpucjlai.sys
2012-01-17 17:08:29 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2012-01-17 16:32:37 ----N---- C:\WINDOWS\system32\spmsg2.dll
2012-01-17 16:32:36 ----HDC---- C:\WINDOWS\$NtUninstallXPSEPSCLP$
2012-01-17 14:29:27 ----HDC---- C:\WINDOWS\$NtUninstallKB963093$
2012-01-17 14:27:23 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2012-01-17 13:48:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2492386$
2012-01-17 13:47:22 ----D---- C:\WINDOWS\ie8updates
2012-01-17 13:33:10 ----D---- C:\WINDOWS\system32\XPSViewer
2012-01-17 13:32:55 ----D---- C:\Program Files\Reference Assemblies
2012-01-17 13:32:28 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2012-01-17 13:32:28 ----N---- C:\WINDOWS\system32\prntvpt.dll
2012-01-17 13:32:27 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2012-01-17 13:28:21 ----HDC---- C:\WINDOWS\$NtUninstallbasecsp$
2012-01-17 13:27:34 ----D---- C:\WINDOWS\system32\GroupPolicy
2012-01-17 13:27:34 ----D---- C:\Program Files\Windows Desktop Search
2012-01-17 13:27:20 ----HDC---- C:\WINDOWS\$NtUninstallKB915800-v4$
2012-01-17 13:24:57 ----D---- C:\WINDOWS\system32\URTTEMP
2012-01-12 21:14:36 ----D---- C:\WINDOWS\system32\en-US
2012-01-12 21:14:18 ----D---- C:\Program Files\Microsoft.NET
2012-01-12 21:14:15 ----D---- C:\WINDOWS\Microsoft.NET
2012-01-12 21:08:03 ----HDC---- C:\WINDOWS\$NtUninstallKB2585542$
2012-01-12 20:57:11 ----A---- C:\WINDOWS\system32\drivers\ACC07D.sys
2012-01-12 17:55:26 ----HDC---- C:\WINDOWS\$NtUninstallKB2646524$
2012-01-12 17:55:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2631813$
2012-01-12 17:52:39 ----HDC---- C:\WINDOWS\$NtUninstallKB2598479$
2012-01-12 17:52:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2603381$
2012-01-12 17:52:15 ----HDC---- C:\WINDOWS\$NtUninstallKB2584146$
2012-01-12 13:28:04 ----D---- C:\Documents and Settings\Michal\Data aplikací\Malwarebytes
2012-01-12 13:27:56 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2012-01-12 13:27:55 ----D---- C:\Program Files\oprava
2012-01-12 13:27:55 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2011-12-24 10:47:26 ----RSD---- C:\WINDOWS\assembly
======List of files/folders modified in the last 1 month======
2012-01-19 21:04:24 ----RD---- C:\Program Files
2012-01-19 21:03:41 ----A---- C:\WINDOWS\wincmd.ini
2012-01-19 21:03:04 ----D---- C:\INSTALL
2012-01-19 20:53:16 ----D---- C:\WINDOWS\temp
2012-01-19 20:52:31 ----A---- C:\WINDOWS\SchedLgU.Txt
2012-01-19 20:52:25 ----SD---- C:\WINDOWS\Tasks
2012-01-19 20:50:15 ----D---- C:\WINDOWS\system32\drivers
2012-01-19 20:47:59 ----D---- C:\WINDOWS\system32\CatRoot2
2012-01-19 20:47:42 ----D---- C:\WINDOWS
2012-01-19 20:47:39 ----D---- C:\WINDOWS\system32
2012-01-19 20:47:06 ----D---- C:\WINDOWS\system32\cs-cz
2012-01-19 20:47:06 ----D---- C:\WINDOWS\Media
2012-01-19 20:47:05 ----RSHDC---- C:\WINDOWS\system32\dllcache
2012-01-19 20:47:05 ----HD---- C:\WINDOWS\inf
2012-01-19 20:47:05 ----D---- C:\WINDOWS\Help
2012-01-19 20:47:05 ----D---- C:\Program Files\Internet Explorer
2012-01-19 20:46:00 ----D---- C:\WINDOWS\system32\CatRoot
2012-01-19 20:45:20 ----A---- C:\WINDOWS\imsins.BAK
2012-01-19 18:14:08 ----D---- C:\WINDOWS\system32\drivers\etc
2012-01-19 15:42:47 ----D---- C:\Záloha
2012-01-19 13:44:05 ----D---- C:\WINDOWS\Prefetch
2012-01-19 00:14:56 ----N---- C:\WINDOWS\win.ini
2012-01-19 00:14:56 ----N---- C:\WINDOWS\system.ini
2012-01-19 00:14:56 ----ASH---- C:\boot.ini
2012-01-18 23:58:47 ----SHD---- C:\WINDOWS\Installer
2012-01-18 23:58:46 ----D---- C:\WINDOWS\WinSxS
2012-01-18 23:58:36 ----D---- C:\Program Files\Common Files
2012-01-18 22:23:06 ----D---- C:\WINDOWS\system32\wbem
2012-01-18 22:17:15 ----AC---- C:\WINDOWS\system32\SndDrv32b.ini
2012-01-18 22:17:14 ----D---- C:\Program Files\jv16 PowerTools
2012-01-18 21:56:09 ----SHD---- C:\System Volume Information
2012-01-18 21:56:09 ----D---- C:\WINDOWS\system32\Restore
2012-01-18 18:40:12 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2012-01-18 18:34:56 ----RSD---- C:\WINDOWS\Fonts
2012-01-18 18:34:31 ----D---- C:\Program Files\Common Files\Microsoft Shared
2012-01-18 18:33:34 ----D---- C:\Program Files\Microsoft Works
2012-01-18 18:30:19 ----D---- C:\Program Files\Common Files\System
2012-01-18 09:00:34 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2012-01-18 01:42:05 ----SHD---- C:\RECYCLER
2012-01-17 16:39:25 ----HD---- C:\WINDOWS\$hf_mig$
2012-01-17 14:29:01 ----D---- C:\WINDOWS\Registration
2012-01-17 14:19:09 ----D---- C:\WINDOWS\AppPatch
2012-01-17 14:18:34 ----D---- C:\WINDOWS\security
2012-01-17 13:33:05 ----D---- C:\Program Files\MSBuild
2012-01-17 13:32:37 ----D---- C:\WINDOWS\system32\spool
2012-01-17 13:26:28 ----D---- C:\WINDOWS\system32\mui
2012-01-12 17:52:56 ----A---- C:\WINDOWS\system32\MRT.exe
2012-01-12 15:00:18 ----AC---- C:\WINDOWS\ntbtlog.txt
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2011-11-29 45648]
R0 viaagp;Filtr VIA sběrnice AGP ; C:\WINDOWS\System32\DRIVERS\viaagp.sys [2008-04-13 42240]
R1 AFS2K;AFS2k; C:\WINDOWS\system32\drivers\AFS2K.sys [2007-09-21 82380]
R1 MpFilter;Microsoft Malware Protection Driver; C:\WINDOWS\system32\DRIVERS\MpFilter.sys [2011-04-18 165648]
R1 MpKsld66eda60;MpKsld66eda60; \??\c:\Documents and Settings\All Users\Data aplikací\Microsoft\Microsoft Antimalware\Definition Updates\{DAA124B9-B061-4D66-A7EF-7763372596C6}\MpKsld66eda60.sys []
R1 P3;Ovladač procesoru Intel PentiumIII; C:\WINDOWS\System32\DRIVERS\p3.sys [2008-04-14 46592]
R3 ati2mtag;ati2mtag; C:\WINDOWS\System32\DRIVERS\ati2mtag.sys [2001-10-09 357760]
R3 EN1207D;Accton EN1207D/2242A Adapter Driver; C:\WINDOWS\system32\DRIVERS\ACC07D.SYS [2001-07-09 23661]
R3 MBAMProtector;MBAMProtector; \??\C:\WINDOWS\system32\drivers\mbam.sys []
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 VIAudio;VIA AC'97 Audio Controller (WDM); C:\WINDOWS\system32\drivers\viaudio.sys [2001-10-26 37248]
S0 ati1bexx;ati1bexx; C:\WINDOWS\System32\Drivers\ati1bexx.sys []
S0 ati2ycxx;ati2ycxx; C:\WINDOWS\System32\Drivers\ati2ycxx.sys []
S0 ati4qtxx;ati4qtxx; C:\WINDOWS\System32\Drivers\ati4qtxx.sys []
S0 ati5orxx;ati5orxx; C:\WINDOWS\System32\Drivers\ati5orxx.sys []
S3 atimtag;atimtag; C:\WINDOWS\System32\DRIVERS\atimtag.sys []
S3 HidUsb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
S3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2001-10-24 12160]
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\System32\DRIVERS\RTL8139.SYS [2004-08-03 20992]
S3 SASENUM;SASENUM; C:\WINDOWS\system32\drivers\SASENUM.sys []
S3 usbprint;Třída USB Printer; C:\WINDOWS\System32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\System32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 MBAMService;MBAMService; C:\Program Files\oprava\Malwarebytes' Anti-Malware\mbamservice.exe [2011-12-24 652872]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe [2011-04-27 11736]
R2 Mx-3 B-Cup Service;MX-3 B-Cup XP; C:\WINDOWS\system32\Mx-3 B-Cup Service.exe [2010-01-11 124928]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------